Security Scan Report: hokwin.xyz

Submitted: Apr 8, 2026, 5:07:05 PMCompleted: Apr 8, 2026, 5:08:33 PMpubliccompleted
Loading additional data...

Summary

This website contacted 7 IPs in 2 countries across 8 domains to perform 236 HTTP transactions. The main domain is hokwin.xyz and was registered NaN years ago.

Submitted URL: https://hokwin.xyz/desktop/game/slot/kagaming

AI Security Verdict

Moderate Risk

Confidence: 78%

4
Risk Score

New gambling site with a login form; moderate risk but not confirmed scam.

Risk Factors
Very new domain (<30 days) with a login form
Unranked domain (not in Cisco Umbrella top 1M)
Password field on a newly registered site
Safety Factors
No malicious Indicators of Compromise matches
No JavaScript malware patterns detected
No cross‑origin credential exfiltration
No payment collection fields
Domain age information unavailable

Details

Page Title

N/A

Scan Type

public

Language

🇺🇸

English

(45% confidence)

Category

entertainment media

(91%)

Domain Information

The domain 'hokwin.xyz' uses the open generic top-level domain (.xyz). The second-level label 'hokwin' is 6 characters long containing 2 vowels alongside four consonants. Breaking it apart gives three words: h, okw, in. Median word length is two characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://hokwin.xyz/desktop/game/slot/kagaming

Page Load Overview

11.20s
Total Load Time
266
HTTP Requests
11
Domains
6.1 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:45%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:45%
Script Type:Latin
HTML Lang Attribute:id
Text Length:15,627 chars
Detector Agreement:100%
Language mismatch: Declared as id but detected as en

Website Classification

Primary Category

entertainment media91% confidence
Type: webapp
Method: ml+structural

All Detected Categories

entertainment media
91%
gambling betting
71%
adult content
42%
social_media
25%
forum
20%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
3845.43.142.5Germany
3818.172.111.92United States
AS16509Amazon.com, Inc.
38104.21.22.12United States
AS13335Cloudflare, Inc.
3823.50.131.150Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
3823.36.162.17Unknown
3823.36.162.25Unknown
38157.240.0.6Frankfurt am Main, Hesse, Germany
AS32934Facebook, Inc.
2667--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1BF15CB3510F6742316A384D17C10AB4FAF91FA4BD65A9B80B5BC2BE21FD7DD4AC63224

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:6CGv9MudGnZUiNZsVbPLdsxDRwHBUFoDi1M:6C69mnZUiAVbPeoDi1M

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:941167:gHSDMQADEARAm4BFtw0iRqvp9FZJWMARCEgIAylAMACCIJIIKNIqEKEGMCRBdylggeOASECVJQDoBG9EFqAIkCYgQUwCIKgG

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:20ff3c3c003f3d3d
Perceptual Hash:8ff0b227624f1378
Difference Hash:4db6f171f36b6b69
Wavelet Hash:00ff3c3c013d3d3d
Color Hash:#5f862d

Scan History

Scan history not available

Unable to load historical scan data