Phishing detection: sign-in-to-xfinity-updatee.weebly.com

Xfinity (Comcast)
http://sign-in-to-xfinity-updatee.weebly.com Access site
Screenshot
Screenshot of sign-in-to-xfinity-updatee.weebly.com
Investigate
Domain sign-in-to-xfinity-updatee.weebly.com20 CT hosts on apex
URL http://sign-in-to-xfinity-updatee.weebly.com
Phishunt analysis Beta
44 high suspicion likely_phishingheuristic risk score · not a probability
Why?
  • +6.1 Google Safe Browsing
  • +5.3 Keyword match
  • +5.1 Site cluster
  • +4.5 Brand in title
  • +4.1 Brand in screenshot
  • +3.4 Cert reuse
  • +3.4 Shared IP cluster
  • +3.0 OpenPhish
  • +2.6 Brand in subdomain
  • +1.3 Brand typo
  • +1.1 ASN reputation
  • +1.1 No CSP header
  • +1.1 No HSTS header
  • +0.6 Long domain
  • +0.6 Login text in screenshot
  • +0.4 Hyphens
  • +0.3 Free CA
  • +0.2 External scripts
  • +0.2 Suspicious TLD
  • +0.1 Deep subdomain
25 signals fired · detector v3.0.0
AI analysis AIBeta
Credential harvesting

Impersonates an Xfinity account update sign-in page on a Weebly subdomain packed with hyphens to simulate a legitimate portal URL. Flagged as social engineering by Google Safe Browsing and confirmed by OpenPhish. Clusters with multiple Xfinity phishing pages on the same Weebly IP.

Google Safe BrowsingOpenPhishBrand in subdomain
AI-generated from stored detector signals - the AI never visited the site. · 2026-09-25 · confidence 91%
Domain & Network
Whois
Registrar MarkMonitor Inc.
Network
Country United StatesUnited States
Hosting Weebly, Inc.
ASN AS27647
TLS Cert YE2
External detection Google Safe Browsing OpenPhish
GSB category: SOCIAL_ENGINEERING
CleanPhishTank · TweetFeed · urlscan.io
Report this phishing
PaaS platform Weebly
Registrar MarkMonitor Inc.

Tracked from 2026-09-25 13:05 UTC  ·  Last refreshed 2026-10-04 15:30 UTC