brilliant-dragon-98a015.netlify.app
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCrisk.com may earn a referral commission when users sign up through this link.
Description of brilliant-dragon-98a015.netlify.app
This domain appears to host a web page presented as an Xfinity sign-in portal, with the page title "Sign in to Xfinity" and a layout that imitates a telecommunications account login screen. The screenshot shows branding, login prompts, and promotional text associated with Xfinity, but the site is served from a Netlify subdomain rather than an apparent official Xfinity-owned domain.
Based on the available page content and classification data, the site appears to be designed to collect user credentials by resembling a legitimate customer login page. Multiple web-classification providers categorize it as phishing or fraud-related, while one provider labels it under telecommunications, likely due to the copied branding and theme rather than legitimate ownership or operation.
The operator is not clearly identified on the page itself. The infrastructure indicates the content is hosted on a cloud website platform, which may allow users to publish pages under platform subdomains; in this case, that setup may be being used to mimic a known telecom brand.
Safety Assessment for brilliant-dragon-98a015.netlify.app
The scan results indicate substantial risk signals at the time of this scan. The domain was flagged by 23 out of 91 security engines, with many of those detections identifying phishing or fraud-related behavior. In addition, major threat-database checks show the URL was listed for social-engineering activity, and another phishing-focused database also listed it. These are stronger indicators than a lone heuristic alert and suggest the page may be intended to deceive visitors.
The page content itself adds to that concern. The domain closely resembles a generic hosted site rather than an official customer-login domain, yet the screenshot presents a sign-in page for Xfinity and references assets associated with login.xfinity.com. That mismatch may indicate a look-alike login page intended to capture account details from users who believe they are interacting with the real service.
There is also a secondary signal showing the domain's IP address is listed on one mail-reputation blocklist, though that type of listing is a weaker indicator for website content than the phishing detections and threat-database listings noted above. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site uses a valid TLS certificate issued by a mainstream certificate authority, with expiry extending to 2027-03-19. It is hosted on Netlify infrastructure backed by AWS EC2 in Frankfurt, Germany, and resolves to IP address 35.157.26.135. The domain has existed for several years, is registered through Name.com, and uses nsone.net nameservers.
DNSSEC appears to be unsigned, which is not uncommon but does mean DNS responses do not benefit from that additional authenticity layer. From a security-review perspective, the main concern is not the certificate or hosting stack itself, but that a cloud-hosted page on a third-party subdomain appears to imitate a branded login experience and has been broadly flagged by security scanners and phishing databases at the time of this scan.
Share your experience with this website. Was it safe? Did you encounter any issues?