Security Scan Report: berkawantotokuh.xyz

Site favicon
Submitted: Jan 31, 2026, 10:13:15 PMCompleted: Jan 31, 2026, 10:14:38 PMpubliccompleted
Loading additional data...

Summary

This website contacted 12 IPs in 2 countries across 12 domains to perform 180 HTTP transactions. The main domain is berkawantotokuh.xyz and was registered NaN years ago.

Submitted URL: https://berkawantotokuh.xyz/

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

New domain with login form; classified as confirmed scam.

Risk Factors
Domain age < 7 days (critical new domain)
Credential harvesting form on a newly registered domain
Unranked domain with no established reputation
Absence of legitimate brand affiliation
Domain age information unavailable

Details

Page Title

Berkawantoto » Platform Permainan Online Yang Aman Dan Nyaman

Scan Type

public

Language

🇮🇩

ID

(80% confidence)

Category

gambling betting

(54%)

Domain Information

Domain 'berkawantotokuh.xyz' uses the open generic top-level domain (.xyz) and has no subdomain. Its registrable label 'berkawantotokuh' stretches across 15 characters holding 6 vowels versus 9 consonants. Word splitting yields 5 words: berk, awan, to, to, kuh. Expect three characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://berkawantotokuh.xyz/

Page Load Overview

8.01s
Total Load Time
224
HTTP Requests
17
Domains
21.2 MB
Total Size

Language Analysis

Primary Language

🇮🇩Indonesian
Code: id
Confidence:80%
Script:Unknown
Direction:ltr

Detection Details

Language Code:id
Detection Confidence:80%
Script Type:Unknown
HTML Lang Attribute:id
Text Length:4,411 chars
Detector Agreement:80%

Website Classification

Primary Category

gambling betting54% confidence
Type: webapp
Method: ml+structural

All Detected Categories

gambling betting
54%
entertainment media
52%
cryptocurrency blockchain
27%

Detected Features

Login Form

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
26188.114.97.3United States
AS13335Cloudflare, Inc.
18142.251.140.170United States
AS15169Google LLC
18104.18.14.111United States
AS13335Cloudflare, Inc.
18199.232.196.193United States
18157.240.0.6Frankfurt am Main, Hesse, Germany
AS32934Facebook, Inc.
18146.75.121.155Frankfurt am Main, Hesse, Germany
AS54113Fastly, Inc.
1823.36.162.25United StatesUnknown
18188.114.96.3United States
AS13335Cloudflare, Inc.
1823.50.131.153Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
1823.36.162.135Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
22412--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1E2B43AF1E398587B23374AC9F056775D90125A0AFEAB8990FEBD4B1937C7CE118422D8

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:CNyDY1sOr+XV2B3qy0A6RStlVXx2Zf/zDNi0NJnulESLUvookvN8KNXrDBhI/K/Z:CTaVWcmMLSHU4U1MaMZZJE+

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:513805:BGBAYpkiQDRIEQMCgkDEqzJJToAgLAKWBgEBgoVFAsQNBVYUiDVQKMARACYJCtCCNCw+gJMBJBhFjcYyQQgLmWYmBiTZiFNl

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Scan History

Scan history not available

Unable to load historical scan data