Security Scan Report: bento123ndxhealth.xyz

Site favicon
Submitted: Dec 30, 2025, 7:32:16 PMCompleted: Dec 30, 2025, 7:33:41 PMpubliccompleted
Loading additional data...

Summary

This website contacted 10 IPs in 2 countries across 7 domains to perform 336 HTTP transactions. The main domain is bento123ndxhealth.xyz and was registered NaN years ago.

Submitted URL: https://bento123ndxhealth.xyz/desktop/game/slot/besoft

AI Security Verdict

Unknown

Confidence: 96%

10
Risk Score

Confirmed phishing scam: newly registered domain with hidden password field harvesting credentials.

Risk Factors
Newly registered domain (<7 days) with credential collection
Hidden password field suggests attempt to harvest credentials
Presence of a login form on a brand‑new gambling site
Unranked domain lacking any reputation
Multiple username/email fields increase data harvesting scope
Domain age information unavailable

Details

Page Title

BENTO123 # Situs Slot Online Dengan Bonus Promosi Paling Menguntungkan 2025.

Scan Type

public

Language

🇮🇩

ID

(80% confidence)

Category

entertainment media

(87%)

Domain Information

You're looking at domain 'bento123ndxhealth.xyz' on the open generic top-level domain (.xyz) while skipping any subdomain. The second-level label 'bento123ndxhealth' is 17 characters long split between four vowels and ten consonants, plus 3 digits. Tokenizing the label suggests five words: bento, 123, nd, x, health. Expect three characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://bento123ndxhealth.xyz/desktop/game/slot/besoft

Page Load Overview

11.88s
Total Load Time
231
HTTP Requests
7
Domains
720 KB
Total Size

Language Analysis

Primary Language

🇮🇩Indonesian
Code: id
Confidence:80%
Script:Unknown
Direction:ltr

Detection Details

Language Code:id
Detection Confidence:80%
Script Type:Unknown
HTML Lang Attribute:id
Text Length:3,839 chars
Detector Agreement:80%

Website Classification

Primary Category

entertainment media87% confidence
Type: webapp
Method: ml+structural

All Detected Categories

entertainment media
87%
gambling betting
79%
technology software
67%
adult content
53%
e-commerce shopping
43%

Detected Features

Login Form
OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
2452.222.232.47Germany
AS20940Akamai International B.V.
2352.222.232.119Germany
AS16509AMAZON-02
2365.8.102.72Germany
AS13335CLOUDFLARENET
2323.36.162.25Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
2323.36.162.17Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
2323.38.98.79GermanyUnknown
2323.38.98.94GermanyUnknown
2323.50.131.153GermanyUnknown
2365.8.102.45GermanyUnknown
23188.114.96.3United States
AS13335CLOUDFLARENET
23110--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1FF14DC3254F1343212B380E539A46E0BAFD1E603C65A8F84B1FD57A55FE7E96AC03369

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:xrCdOOYBtZ+gDT+sSCcWQf/NYvpwLCsagvVknyNFMa2QJAxLbX0/SmJYrauh3Z:ZCdOOYBtZbDTs8Qfupy3BQVrauhp

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:190727:FZvpIATAoRJA8ZclxgIARFSNkFgYQiwKAB0IKYQhB2ALBSQuYhKKIIacwQAdAEeIIASH4iLIHgMSklEIgEE3gOgFC6wgQAiI

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:2010fd3d003c3d3d
Perceptual Hash:8a7423772d8bd338
Difference Hash:4db0f171f1696969
Wavelet Hash:2038ff3f003c3d3d
Color Hash:#90bf40

Scan History

Scan history not available

Unable to load historical scan data