Phishing detection: xfinityon.com

Xfinity (Comcast)
https://xfinityon.com Access site
Screenshot
No screenshot available yet Captured automatically on the next refresh cycle
Phishunt analysis Beta
33 medium suspicion suspiciousheuristic risk score · not a probability
Why?
  • +6.1 Google Safe Browsing
  • +5.3 Keyword match
  • +4.1 Brand in screenshot
  • +4.0 Young domain
  • +3.7 Brand in domain label
  • +1.9 Brand typo
  • +1.1 ASN reputation
  • +1.1 No CSP header
  • +1.1 No HSTS header
  • +0.9 Young certificate
  • +0.9 No registrar lock
  • +0.7 Brand in cert SAN
  • +0.7 Unrecognised DNS provider
  • +0.6 Registrar reputation
  • +0.3 Free CA
  • +0.3 Long domain
  • +0.2 Suspicious TLD
19 signals fired · detector v3.0.0
AI analysis AIBeta
Credential harvesting

Lookalike domain 'xfinityon' impersonating Comcast Xfinity, registered about one day ago with minimal domain status. Flagged by Google Safe Browsing as social engineering. Likely harvests Xfinity account credentials.

Google Safe BrowsingBrand in domain labelYoung domain
AI-generated from stored detector signals - the AI never visited the site. · 2026-10-02 · confidence 80%
Domain & Network
Whois
Network
Country United StatesUnited States
ASN AS46475
TLS Cert YR2
External detection Google Safe Browsing
GSB category: SOCIAL_ENGINEERING
CleanOpenPhish · PhishTank · TweetFeed · urlscan.io · SANS ISC
Report this phishing

Tracked from 2026-10-02 17:25 UTC  ·  Last refreshed 2026-10-04 15:30 UTC