Phishing detection: xfinityservices.vercel.app

Xfinity (Comcast)
http://xfinityservices.vercel.app Access site
Screenshot
Screenshot of xfinityservices.vercel.app
Investigate
Domain xfinityservices.vercel.app0 CT hosts on apex
URL http://xfinityservices.vercel.app
Phishunt analysis Beta
75 high suspicion likely_phishingheuristic risk score · not a probability
Why?
  • +6.1 Google Safe Browsing
  • +5.3 Keyword match
  • +5.1 Site cluster
  • +5.1 urlscan.io
  • +4.1 Brand in screenshot
  • +3.9 Password field
  • +3.7 Brand in domain label
  • +3.4 Shared IP cluster
  • +3.0 OpenPhish
  • +1.6 Young domain
  • +1.1 ASN reputation
  • +1.1 No CSP header
  • +0.6 Login text in screenshot
  • +0.6 Script exfil endpoint
  • +0.6 Suspicious TLD
  • +0.5 Long domain
  • +0.1 External scripts
  • +0.1 Deep subdomain
  • Boosted to 75: Credential exfil kit
23 signals fired · detector v3.0.0
AI analysis AIBeta
Credential harvesting

High-confidence Xfinity phishing page hosted on Vercel, confirmed malicious by Google Safe Browsing, OpenPhish, and urlscan. Notably contains both password and payment input fields, indicating the site harvests both account credentials and financial information from victims.

Payment fieldPassword fieldGoogle Safe Browsing
AI-generated from stored detector signals - the AI never visited the site. · 2026-08-13 · confidence 92%
Domain & Network
Whois
Registrar Tucows Domains Inc
Network
Country United StatesUnited States
ASN AS16509
TLS Cert -
GSB category: SOCIAL_ENGINEERING
CleanPhishTank · TweetFeed
Report this phishing
Network / ASN Amazon.com, Inc.
Registrar Tucows Domains Inc

Tracked from 2026-08-12 23:02 UTC  ·  Last refreshed 2026-09-01 21:30 UTC