Security Scan Report: ndxx-bento123.com

Site favicon
Submitted: Jan 1, 2026, 4:48:54 AMCompleted: Jan 1, 2026, 4:50:23 AMpubliccompleted
Loading additional data...

Summary

This website contacted 10 IPs in 3 countries across 6 domains to perform 316 HTTP transactions. The main domain is ndxx-bento123.com and was registered NaN years ago.

Submitted URL: https://ndxx-bento123.com/desktop/game/livecasino/aesexy

AI Security Verdict

Confirmed Scam

Confidence: 96%

10
Risk Score

Confirmed phishing scam; do not provide credentials and report the site.

Risk Factors
Newly registered domain (<7 days) with login form
Hidden password field indicating credential harvesting
Unranked domain with no established reputation
Domain age information unavailable

Details

Page Title

BENTO123 # Situs Slot Online Dengan Bonus Promosi Paling Menguntungkan 2025.

Scan Type

public

Language

🇮🇩

ID

(80% confidence)

Category

gambling betting

(83%)

Domain Information

Within the commercial generic top-level domain (.com), 'ndxx-bento123.com' is registered without a subdomain. The second-level label 'ndxx-bento123' is 13 characters long split between two vowels and seven consonants; it also includes three digits and one hyphen. Splitting it apart reveals 4 words: nd, xx, bento, 123. Average segment length settles at 2.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://ndxx-bento123.com/desktop/game/livecasino/aesexy

Page Load Overview

21.17s
Total Load Time
229
HTTP Requests
6
Domains
349 KB
Total Size

Language Analysis

Primary Language

🇮🇩Indonesian
Code: id
Confidence:80%
Script:Unknown
Direction:ltr

Detection Details

Language Code:id
Detection Confidence:80%
Script Type:Unknown
HTML Lang Attribute:id
Text Length:2,961 chars
Detector Agreement:80%

Website Classification

Primary Category

gambling betting83% confidence
Type: webapp
Method: ml+structural

All Detected Categories

gambling betting
83%
entertainment media
73%
social media network
66%
technology software
50%
cryptocurrency blockchain
48%

Detected Features

Login Form
OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
3123.50.131.150Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
2265.8.102.45Mauritius
222.18.64.99United States
2223.36.162.17UnknownUnknown
2245.192.223.64Mauritius
AS13335CLOUDFLARENET
2223.50.131.153Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
222.16.241.87Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
2265.8.102.72UnknownUnknown
222.16.241.67Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
222.18.64.83Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
22910--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1E0D3EB2358E13022127394F579A47E0AEAC5A203C21A8E44F1FD47B95FE7F569C137AA

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

768:xCCZOXOYBtZ+gDT+s5chXQf/NYvpULCsagvVkndJlxLbX0/SBgrx/sauh3Z:8CZOXOYBtZbDT0QfupeQVYx/sauhp

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:139147:gEG1s4KiwRqA4BoCW9YBiIHg2gBWuAIFyCATyIgtkKBswCAKIdEBAGLmUIJPDAAQAkBAvAGDSACjSkRFRYN9QAAkpDKkYygj

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:20183f3c3c3c3919
Perceptual Hash:8ad42177768ed989
Difference Hash:4df3f1616979716b
Wavelet Hash:20183f3d3c3c3d3d
Color Hash:#d22d32

Scan History

Scan history not available

Unable to load historical scan data