Security Scan Report: rdrr.io

Site favicon
Submitted: Jan 18, 2026, 8:35:59 AMCompleted: Jan 18, 2026, 8:37:36 AMpubliccompleted
Loading additional data...

Summary

This website contacted 6 IPs in 3 countries across 6 domains to perform 1 HTTP transaction. The main domain is rdrr.io and was registered NaN years ago.

Submitted URL: https://rdrr.io

The Cisco Umbrella rank of the primary domain is #470,926 of the top 1 million websites

AI Security Verdict

High Risk

Confidence: 88%

7
Risk Score

Site shows credential‑harvesting forms and evasion techniques; treat as high‑risk phishing.

Risk Factors
Credential harvesting form (password field) on a low‑ranking domain
Disguised password field (type='text' with password placeholder)
Hidden password field
Unicode characters used to evade detection
Password field without username field
Domain age information unavailable

Details

Page Title

R Package Documentation

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

corporate

(35%)

Domain Information

Domain 'rdrr.io' uses the British Indian Ocean Territory country-code top-level domain (.io) and has no subdomain. The second-level label 'rdrr' is 4 characters long split between zero vowels and 4 consonants. It segments into 2 words: rd, rr. Average segment length settles at 2 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://rdrr.io

Page Load Overview

1.65s
Total Load Time
29
HTTP Requests
11
Domains
1.1 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:1,840 chars
Detector Agreement:100%

Website Classification

Primary Category

corporate35% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

corporate
35%
technology software
27%

Detected Features

Search
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
9162.159.140.229Sweden
AS15169GOOGLE
4172.217.20.130United States
AS54113FASTLY
4138.201.54.179Falkenstein, Saxony, Germany
AS24940Hetzner Online GmbH
4146.75.120.157Unknown
AS13335CLOUDFLARENET
4216.58.206.72Unknown
AS16509AMAZON-02
4142.251.141.138UnknownUnknown
296--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1797240A1C8E05833059691C2B5B55B1BBF92E007ED475952BAFC4AE62FC7D83CD2324E

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:HZIA2Ua61U+uwLVknQpiDIKKXMedevGar:HSVUasU+/LV7oOcederr

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:16658:AIR3CjRBBoMDQEAJsYdABEGANs40QAAjIIQwesgYW2MbQgyTAcmNYn6rhAQDIgvwDTBVAGILCAAaxwRgEgwCN4CAAo6PgUGC

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:01fff3ff81c7dffe
Perceptual Hash:bc27132b390b672d
Difference Hash:3b0c0616332f3030
Wavelet Hash:00e7f2c281e78f9e
Color Hash:#8790c5

Scan History

Scan history not available

Unable to load historical scan data