Security Scan Report: ndxx1-bento123.com

Site favicon
Submitted: Jan 2, 2026, 11:52:01 PMCompleted: Jan 2, 2026, 11:53:26 PMpubliccompleted
Loading additional data...

Summary

This website contacted 8 IPs in 3 countries across 7 domains to perform 321 HTTP transactions. The main domain is ndxx1-bento123.com and was registered NaN years ago.

Submitted URL: https://ndxx1-bento123.com/desktop/game/slot/advantplay

AI Security Verdict

High Risk

Confidence: 92%

10
Risk Score

High risk phishing site; likely credential harvesting.

Risk Factors
Login form with password field on a newly registered domain
Hidden password field (not visible to user)
Very new domain (<30 days) with no reputation
Unranked domain lacking established trust
Domain age information unavailable

Details

Page Title

BENTO123 # Situs Slot Online Dengan Bonus Promosi Paling Menguntungkan 2025.

Scan Type

public

Language

🇮🇩

ID

(80% confidence)

Category

entertainment media

(85%)

Domain Information

Domain 'ndxx1-bento123.com' uses the commercial generic top-level domain (.com) with no subdomain. The core label 'ndxx1-bento123' covers 14 characters holding two vowels versus 7 consonants, along with 4 digits and one hyphen. It segments into 5 words: nd, xx, 1, bento, 123. Average segment length settles at two characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://ndxx1-bento123.com/desktop/game/slot/advantplay

Page Load Overview

8.36s
Total Load Time
234
HTTP Requests
7
Domains
749 KB
Total Size

Language Analysis

Primary Language

🇮🇩Indonesian
Code: id
Confidence:80%
Script:Unknown
Direction:ltr

Detection Details

Language Code:id
Detection Confidence:80%
Script Type:Unknown
HTML Lang Attribute:id
Text Length:4,066 chars
Detector Agreement:80%

Website Classification

Primary Category

entertainment media85% confidence
Type: webapp
Method: ml+structural

All Detected Categories

entertainment media
85%
gambling betting
80%
adult content
46%
technology software
33%
education learning
28%

Detected Features

Login Form
OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
312.21.239.210Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
2913.226.247.71United States
AS16509AMAZON-02
2945.192.223.64Mauritius
AS13335CLOUDFLARENET
2923.50.131.150Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
2965.8.102.99United States
AS16509AMAZON-02
2995.100.110.19Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
2923.36.162.17Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
292.21.239.206Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
2348--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T14314DD3254F1342212B380E53DA4AE4BAFD1E603C61A4F84B1FD57A55FE7E96AC03369

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:LCZdOTXOYBtZbDTBeu3QfupeHJjS6x/sauhp:LCZdOTXOYBtZbDTBeQQfupeHxra

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:202024:Akj9YQGYkcMDOiogsQUCBtIRMkKgPDRIQSTBICAoHwEiACAI4JUdAWFMAaMXEAzUkRABSBREsQSa6sMGMmNHA3FcSGILBADk

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:2010fd3d003c3d3d
Perceptual Hash:8a742377278bd638
Difference Hash:4db0f171f1697971
Wavelet Hash:2038ff3f003c3d3d
Color Hash:#6c96e0

Scan History

Scan history not available

Unable to load historical scan data