sancomcomcf.weebly.com
Category: Phishing And Fraud
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Description of sancomcomcf.weebly.com
This domain appears to be a page hosted on Weebly, a website-building platform, rather than an official standalone corporate domain. Based on the screenshot, the page presents itself as an Xfinity sign-in portal and asks visitors to enter an email, mobile number, or username along with a password. The visible content is minimal and resembles a login capture page rather than a full telecommunications service website.
Available classification data associates the page with telecommunications in one source, while other web-classification providers label it as phishing or fraud. The subdomain structure and hosting context suggest it may be user-created content on a third-party platform rather than a verified property operated by the Xfinity brand or its parent company.
Safety Assessment for sancomcomcf.weebly.com
Multiple scan signals indicate elevated risk at the time of this scan. The URL was flagged by 12 out of 91 security engines, and a major threat database listed it for social-engineering activity. In addition, the page screenshot shows a login form using Xfinity branding on a Weebly subdomain, which may indicate an attempt to imitate a well-known telecommunications provider in order to collect account credentials.
Although the on-page malware scan did not detect malicious files and no suspicious external links were flagged in the page resources that were scanned, that does not offset the stronger phishing-related indicators. The domain's IP address is also listed on one mail-reputation blocklist, which is a weaker signal on its own but adds a small amount of caution in context. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site is hosted on Weebly infrastructure and served behind a cloud-based web server layer, with the resolved IP located in the United States. It presents a valid Let's Encrypt SSL certificate that was current at the time of scanning. However, the presence of HTTPS only indicates encrypted transport and does not by itself verify the legitimacy of the page or the entity behind it.
DNSSEC appears to be unsigned, and the domain uses AWS nameservers. The scanned page contained no flagged files, no flagged external links, and no iframes in the collected resource list. Even so, the main technical concern here is not malware delivery but the apparent use of a hosted subdomain and brand-themed login page structure that may support credential phishing.
Share your experience with this website. Was it safe? Did you encounter any issues?