Security Scan Report: oauthcomcast.vercel.app

Submitted: Sep 30, 2026, 1:51:40 PMCompleted: Sep 30, 2026, 1:52:17 PMpubliccompleted

AI Security Verdict

Confirmed Scam

Confidence: 93%

10
Risk Score

Fake Xfinity sign-in page on a free vercel.app subdomain that funnels entered Xfinity IDs to an external formsubmit.co address; reported phishing — do not enter credentials.

Risk Factors (5)
Brand impersonation of Xfinity/Comcast on a non-official domain (oauthcomcast.vercel.app)
Credential-collecting form submitted to an external relay (formsubmit.co) with attacker-controlled Gmail recipient
Threat-intel phishing report on the primary domain
Anonymous, unranked subdomain on shared hosting platform with unknown creation date
Abused cloud-hosting infrastructure observed by network IDS
Domain age information unavailable

Details

Page Title

Sign in to Xfinity

Scan Type

public

Domain Name Analysis

Within the application-focused generic top-level domain (.app), 'oauthcomcast.vercel.app' is registered with subdomain 'oauthcomcast'. The second-level label 'vercel' is 6 characters long with 2 vowels and 4 consonants. Word splitting yields 2 words: ver, cel. The median word length lands at 3 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://oauthcomcast.vercel.app/

Page Load Overview

2.03s
Total Load Time
675 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:5,375 chars
Detector Agreement:100%

Website Classification

Primary Category

finance banking54% confidence
Type: spa
Method: ml+structural

All Detected Categories

finance banking
54%
e-commerce shopping
47%
entertainment media
45%
technology software
35%

Detected Features

Search

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
964.29.17.3Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
492.123.104.34Akamai · CDNFrankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
423.197.131.194Akamai · CDNFrankfurt am Main, Hesse, Germany
AS16625Akamai Technologies, Inc.
423.45.99.17Akamai · CDNFrankfurt am Main, Hesse, Germany
AS16625Akamai Technologies, Inc.
423.56.207.217Akamai · CDNFrankfurt am Main, Hesse, Germany
AS16625Akamai Technologies, Inc.
4216.198.79.3Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
492.123.104.46Akamai · CDNFrankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
337--

Detected Technologies4

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T19A94B7491163622F9C9363B8A3DBB20672269087FE67DCDCFBCD5224CF887E5486164D

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

12288:Hn9IjiP5EoJu+IQ6pnDFso8KJBccj5AE9vwy:HW

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:438118:AA2UjIUXZVFgAIZCCmEmAkCJEgHAx4xFinaAQQktpCLvCp1CUIQwylQIQYSoJAQEwiBIaG5kgwA4KCEJDMpIwIAIhBTCSBSA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ff9fbfbfffffff00
Perceptual Hash:9f9f60e0478761f0
Difference Hash:0030706020600013
Wavelet Hash:f09090b09f9fff00
Color Hash:#2d2fd2

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data