Security Scan Report: xfinity2.vercel.app

Site favicon
Submitted: Sep 30, 2026, 1:51:55 PMCompleted: Sep 30, 2026, 1:52:31 PMpubliccompleted

AI Security Verdict

Confirmed Scam

Confidence: 92%

9
Risk Score

Fake Xfinity sign-in page hosted on a vercel.app subdomain using Xfinity's favicon, UI and branding, reported as phishing. It solicits Xfinity ID credentials — do not enter any details.

Risk Factors (5)
Brand impersonation of Xfinity (Comcast) on a domain that is not xfinity.com
Favicon brand impersonation: Xfinity's favicon served on a non-Xfinity host
Single-source phishing threat-intel report on the scanned page's primary domain
Credential sign-in prompt (Xfinity ID) on a throwaway vercel.app subdomain
Namespace on shared/free hosting platform with unknown actual page age
Domain age information unavailable

Details

Page Title

Xfinity

Scan Type

public

Domain Name Analysis

The domain 'xfinity2.vercel.app' uses the application-focused generic top-level domain (.app), featuring subdomain 'xfinity2'. Count 6 characters in 'vercel' split between 2 vowels and four consonants. Splitting it apart reveals two words: ver, cel. Average segment length settles at three characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://xfinity2.vercel.app/

Page Load Overview

0.88s
Total Load Time
210 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:160 chars
Detector Agreement:100%

Website Classification

Primary Category

government public service38% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

government public service
38%
technology software
30%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
564.29.17.131Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
523.45.99.17Akamai · CDNFrankfurt am Main, Hesse, Germany
AS16625Akamai Technologies, Inc.
5216.198.79.131Aws · CLOUDUnited States
AS16509Amazon.com, Inc.
153--

Detected Technologies2

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T150125439FC06DD47AC22AD5D217DAE3F54CD8C3FC6758DA892CDCE4906619BA0B91C84

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:xvfTBZuPanvbj+5+47SrJHxeagnqzcpm0bwdr6:pfTvuPWvbawefBwdr6

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:9902:4iBwMAwEECGiAARrBKWkBC5xECQi0CgRB4EpgYo2yQoZIqKnyRRRpIPDQKDBoEEuWIFCYP18RMZB4WKACC0DdAAY1gAIUQgW

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:e3e3e32301e1ffff
Perceptual Hash:e664d01b1fd0f01f
Difference Hash:0f078747678b2300
Wavelet Hash:e1e161210121ffff
Color Hash:#4c2d86

Other Hashes

Scan History

Scan history not available

Unable to load historical scan data