Security Scan Report: ndx-kijangbucin.click

Submitted: Nov 11, 2025, 1:08:45 AMCompleted: Nov 11, 2025, 1:09:54 AMpubliccompleted
Loading additional data...

Summary

This website contacted 36 IPs in 0 countries across 8 domains to perform 540 HTTP transactions. The main domain is ndx-kijangbucin.click.

Submitted URL: https://ndx-kijangbucin.click/desktop/game/slot/spadegaming

AI Security Verdict

Confirmed Scam

Confidence: 88%

10
Risk Score

New domain with hidden and disguised password fields; likely phishing credential harvest.

Risk Factors
Newly registered domain with login form
Disguised password fields (type='text' with password placeholder)
Hidden password fields
Unicode evasion in form inputs
Multiple password fields on a gambling‑style site
Domain age information unavailable

Details

Page Title

KIJANGWIN: Slot Game Kijang Gunung Petualangan Menakjubkan di Alam Liar

Scan Type

public

Language

🇮🇩

ID

(80% confidence)

Category

gambling betting

(93%)

Domain Information

Within the .click top-level domain, 'ndx-kijangbucin.click' is registered with no subdomain. The second-level label 'ndx-kijangbucin' is 15 characters long containing four vowels alongside ten consonants; it also includes 1 hyphen. It segments into seven words: nd, x, ki, jang, bu, c, in. Median word length is two characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://ndx-kijangbucin.click/desktop/game/slot/spadegaming

Page Load Overview

33.28s
Total Load Time
540
HTTP Requests
8
Domains
3.9 MB
Total Size

Language Analysis

Primary Language

🇮🇩Indonesian
Code: id
Confidence:80%
Script:Unknown
Direction:ltr

Detection Details

Language Code:id
Detection Confidence:80%
Script Type:Unknown
HTML Lang Attribute:id
Text Length:10,015 chars
Detector Agreement:80%

Website Classification

Primary Category

gambling betting93% confidence
Type: webapp
Method: ml+structural

All Detected Categories

gambling betting
93%
entertainment media
90%
documentation technical
79%
technology software
69%
adult content
54%

Detected Features

Login Form
OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
1523.50.131.150UnknownUnknown
152.17.100.209UnknownUnknown
15172.67.156.223UnknownUnknown
1523.50.131.153UnknownUnknown
1552.222.232.47UnknownUnknown
1552.222.232.184UnknownUnknown
152.16.1.171UnknownUnknown
152.17.100.185UnknownUnknown
1552.222.232.141UnknownUnknown
15104.21.8.54UnknownUnknown
54036--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1C784E63156D63427313370D87CA12B499EB19247C6278F4872FC5BA27FE3DA8AC13A59

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

6144:pC3wj2f5+KJYGwfE8dH3Lr+rnZu09m/59m/CBbQVk:pYJYG4td3+rkJOa6Vk

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:372000:TblyEAfApQAOKAVdAeWcgEieBkCYBgCEkC9CMAEAAwmyQfBCBQmMsQVAABBHgYDKjCVGAgAoIIp+oToeRAoPDFAMJk7aSQEB

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:2c00fd3d183c3d3d
Perceptual Hash:8a742357af8bd238
Difference Hash:69e5b17171697979
Wavelet Hash:2c00fd3f183c3d3d
Color Hash:#bf406e

Scan History

Scan history not available

Unable to load historical scan data