Security Scan Report: ndxx1-bento123.com

Site favicon
Submitted: Jan 1, 2026, 5:43:44 AMCompleted: Jan 1, 2026, 5:44:59 AMpubliccompleted
Loading additional data...

Summary

This website contacted 9 IPs in 3 countries across 7 domains to perform 322 HTTP transactions. The main domain is ndxx1-bento123.com and was registered NaN years ago.

Submitted URL: https://ndxx1-bento123.com/desktop/home

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

New, unranked domain with hidden password fields; confirmed phishing site.

Risk Factors
Domain registered within 7 days with credential collection forms
Hidden password fields indicating attempt to harvest passwords
Unranked, brand‑new domain used for a site claiming promotional bonuses
Domain age information unavailable

Details

Page Title

BENTO123 # Situs Slot Online Dengan Bonus Promosi Paling Menguntungkan 2025.

Scan Type

public

Language

🇮🇩

ID

(80% confidence)

Category

gambling betting

(92%)

Domain Information

Within the commercial generic top-level domain (.com), 'ndxx1-bento123.com' is registered with no subdomain. Its registrable label 'ndxx1-bento123' stretches across 14 characters holding 2 vowels versus 7 consonants, notching 4 digits and 1 hyphen. Word splitting yields five words: nd, xx, 1, bento, 123. Average segment length settles at 2 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://ndxx1-bento123.com/desktop/home

Page Load Overview

5.75s
Total Load Time
235
HTTP Requests
7
Domains
2.0 MB
Total Size

Language Analysis

Primary Language

🇮🇩Indonesian
Code: id
Confidence:80%
Script:Unknown
Direction:ltr

Detection Details

Language Code:id
Detection Confidence:80%
Script Type:Unknown
HTML Lang Attribute:id
Text Length:3,385 chars
Detector Agreement:80%

Website Classification

Primary Category

gambling betting92% confidence
Type: webapp
Method: ml+structural

All Detected Categories

gambling betting
92%
entertainment media
84%
adult content
43%
social_media
25%
corporate
25%

Detected Features

Login Form
OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
2752.222.232.119United States
AS16509AMAZON-02
2623.36.162.17Mauritius
2665.8.102.99United States
AS16509AMAZON-02
2665.8.102.45UnknownUnknown
2652.222.232.141United States
AS16509AMAZON-02
2645.192.223.64Mauritius
AS13335CLOUDFLARENET
262.21.239.210Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
2623.50.131.150Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
2623.50.131.153UnknownUnknown
2359--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1F1F3FF2258E1342312B350F569B47E4BEEC5A203C25A8E04B1FD07A59FE7F969C1376E

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:LCrOXOYBtZbDTsMQfupekC2r5N4GdS4WVvbx/bauhp:LCrOXOYBtZbDTRQfupemdS42ph

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:171744:HtiGUAgLoAyXGcSoQBICAgWVCJ1lCrWQQtHiQIoBDgES6JMDEVkRso5j0GQAVmAJIFokkJDAbD7wDYARFkAoKTaI8KgFAAAL

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:0020fcfe3cfd0101
Perceptual Hash:8b5522571dacd593
Difference Hash:58e1f03278ebcb6b
Wavelet Hash:0038fcff3efd0121
Color Hash:#2d8655

Scan History

Scan history not available

Unable to load historical scan data