Security Scan Report: www.rbcroyalbank.com

Submitted: Oct 23, 2025, 8:50:29 PMCompleted: Oct 23, 2025, 8:54:01 PMpubliccompleted
Loading additional data...

Summary

This website contacted 82 IPs in 4 countries across 22 domains to perform 182 HTTP transactions. The main domain is rbcroyalbank.com and was registered NaN years ago.

Submitted URL: https://www.rbcroyalbank.com/mortgages/mortgage-rates.html

AI Security Verdict

High Risk

Confidence: 85%

7
Risk Score

High‑risk phishing page with credential‑harvesting forms impersonating a major bank

Risk Factors
Credential harvesting form with disguised password input
Hidden password field that can capture user credentials
Password field lacking a username field, typical of phishing
Unicode characters used to obscure form fields
Domain not listed in Cisco Umbrella top 1M while displaying major brand
Domain age information unavailable

Details

Page Title

Current Mortgage Rates - Royal Bank of Canada

Scan Type

public

Language

🇺🇸

English

(80% confidence)

Category

finance banking

(91%)

Domain Information

You're looking at domain 'www.rbcroyalbank.com' on the commercial generic top-level domain (.com), featuring subdomain 'www'. The second-level label 'rbcroyalbank' is 12 characters long split between three vowels and nine consonants. Tokenizing the label suggests three words: rbc, royal, bank. Median word length comes out to four characters. Most frequently, 'royal' shows up in English. You may catch it in Malay and Chinese (Pinyin) as well.

Screenshot

Security scan screenshot of https://www.rbcroyalbank.com/mortgages/mortgage-rates.html

Page Load Overview

4.48s
Total Load Time
182
HTTP Requests
22
Domains
3.5 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

Language Code:en
Detection Confidence:80%
Script Type:Latin
HTML Lang Attribute:en
Text Length:21,644 chars
Detector Agreement:100%

Website Classification

Primary Category

finance banking91% confidence
Type: spa
Method: ml+structural

All Detected Categories

finance banking
91%
technology software
60%
government public service
37%
e-commerce
25%

Detected Features

Search
Payment

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
11023.201.254.153Frankfurt am Main, Hesse, Germany
AS16625AKAMAI-AS
20142.250.185.227United States
AS15169GOOGLE
15150.171.28.10United States
AS8075MICROSOFT-CORP-MSN-AS-BLOCK
10104.18.87.42United States
AS13335CLOUDFLARENET
7216.239.34.36United States
AS15169GOOGLE
7142.250.185.168United States
AS15169GOOGLE
4172.217.18.4United States
AS15169GOOGLE
3142.250.186.100United States
AS15169GOOGLE
3157.240.0.35Frankfurt am Main, Hesse, Germany
AS32934FACEBOOK
3142.250.185.99United States
AS15169GOOGLE
18282--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T18C84C85735F0122A92D3C78A6A627E487920A54BFD27ACDCF18E63784F8DFE14D07609

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

3072:PjzVJNUD60vkC3fp4d2nTwXV9bhHyegKstnIRzZ6GlIUsv:PnVJetIzl9b3RzJ2

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:383324:FEAMKUooYFA0QgEFConAsIBAkCCJgLKVGRRAlbIepBVQYoAWAEWjMhIDJgA2cCjNDx5mE6wICrkEiXKUUsigTUICBgQQk0ER

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:00ffdfe7efffffff
Perceptual Hash:b71d1d074766613a
Difference Hash:4c30968e4dcd2e2a
Wavelet Hash:00ff030000e7ffff
Color Hash:#8788c5

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data