castcum.com
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
File names for this site are not listed here - some contain content that isn't appropriate for general-audience display. The counts above reflect the full scan.
Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCrisk.com may earn a referral commission when users sign up through this link.
Detailed link, domain and iframe URLs from this site are not shown here - some of the strings contain content that isn’t appropriate for general-audience display. The counts above reflect the full scan.
Description of castcum.com
The domain castcum.com appears to host a page presenting itself as an Xfinity sign-in portal. Based on the page title, screenshot, and referenced assets, the site is designed to resemble a customer login page for a telecommunications or internet-service brand rather than an independent business or informational website.
The domain itself does not match the official branding shown on the page, and the content appears focused on collecting user sign-in details through a branded login interface. Available scan data suggests the page may be operated by an unknown third party rather than by the company whose branding is displayed.
Safety Assessment for castcum.com
Several security signals indicate elevated risk at the time of this scan. The domain was flagged by 8 out of 89 security engines, with multiple detections describing phishing or malware-related concerns. The page also closely imitates an Xfinity login experience while being hosted on an unrelated domain, which may indicate a look-alike credential-harvesting setup. In addition, the domain is very new at 21 days old and has no established traffic ranking, both of which can increase uncertainty.
The malware scan also reported a suspicious finding tied to a referenced Xfinity login asset, and the domain's IP address is listed on one mail-reputation blocklist. While a single DNS-based reputation listing is a weaker signal than direct content-based detections, it still adds some caution. Although some blacklist databases were clean at the time of this scan, the combination of multi-engine detections, brand imitation, and the newly registered domain materially raises concern.
Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site was reachable over HTTPS with a valid TLS certificate issued by a mainstream certificate authority, expiring in March 2027. It appears to be hosted on an Apache web server at IP address 208.180.77.176, with hosting attributed to Optimum in Tyler, United States. The domain uses GKG.Net nameservers and is currently configured without DNSSEC signing.
From a security perspective, the presence of a valid certificate should not be treated as proof of legitimacy, since phishing pages commonly use HTTPS as well. The more notable technical concerns here are the domain's very recent registration, unsigned DNSSEC status, and the mismatch between the domain name and the branded login content shown on the page.
Share your experience with this website. Was it safe? Did you encounter any issues?