Phishing detection: xfinityservices.vercel.app
Xfinity (Comcast) Investigate
Domain
xfinityservices.vercel.app0 CT hosts on apex
IP
64.29.17.131
URL
http://xfinityservices.vercel.app
Cert
-
Phishunt analysis Beta
75
high suspicion likely_phishingheuristic risk score · not a probability
Why?
- +6.1 Google Safe Browsing
- +5.3 Keyword match
- +5.1 Site cluster
- +5.1 urlscan.io
- +4.1 Brand in screenshot
- +3.9 Password field
- +3.7 Brand in domain label
- +3.4 Shared IP cluster
- +3.0 OpenPhish
- +1.6 Young domain
- +1.1 ASN reputation
- +1.1 No CSP header
- +0.6 Login text in screenshot
- +0.6 Script exfil endpoint
- +0.6 Suspicious TLD
- +0.5 Long domain
- +0.1 External scripts
- +0.1 Deep subdomain
- Boosted to 75: Credential exfil kit
23 signals fired · detector v3.0.0
AI analysis AIBeta
Credential harvesting
High-confidence Xfinity phishing page hosted on Vercel, confirmed malicious by Google Safe Browsing, OpenPhish, and urlscan. Notably contains both password and payment input fields, indicating the site harvests both account credentials and financial information from victims.
Payment fieldPassword fieldGoogle Safe Browsing
AI-generated from stored detector signals - the AI never visited the site. · 2026-08-13 · confidence 92%
Domain & Network
Whois
Registrar
Tucows Domains Inc
Network
IP
64.29.17.131
Country
United States
Hosting
Amazon.com, Inc.
ASN
AS16509
TLS Cert
-
GSB category: SOCIAL_ENGINEERING
CleanPhishTank · TweetFeed
Requests
Resources
Observables
Related websites
Report this phishing
Submit to blocklists
urlscan
VirusTotal
Whois
ipinfo
Greynoise