029d21.icefactory.cl
Category: Phishing
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCrisk.com may earn a referral commission when users sign up through this link.
Description of 029d21.icefactory.cl
The domain 029d21.icefactory.cl appears to be a subdomain hosted under icefactory.cl rather than a standalone consumer-facing brand site. Based on the page title and screenshot, it presents itself as an "Adobe Acrobat" secure PDF document access page and prompts visitors to enter an email address to continue to a document. This suggests the page is intended to mimic a document-sharing or document-login workflow rather than provide general website content.
The naming pattern of the subdomain is highly random-looking, and the page itself does not appear to identify a clear operator, publisher, or business purpose beyond the document-access prompt. The available content does not indicate a legitimate corporate portal, public service, or normal informational website. Instead, it appears to be a narrowly targeted landing page that may be used for credential collection under the guise of document access.
Safety Assessment for 029d21.icefactory.cl
This domain shows multiple risk indicators at the time of this scan. It was flagged by 16 out of 91 security engines, with many of those detections classifying the page as phishing or otherwise malicious. In addition, the screenshot shows a login-style form branded as an Adobe Acrobat secure PDF access page, asking for an email address before allowing access to a supposed shared document. That pattern is commonly associated with credential-harvesting campaigns, especially when presented on an unrelated subdomain rather than an official document platform.
Blacklist and reputation data were mixed. Major content-malice databases in the provided scan were largely clean at the time of review, but the domain's IP address was listed on one mail-reputation blocklist, which may indicate broader abuse activity on the host or surrounding infrastructure. A malware scan also produced a suspicious result on one scanned path, although that signal alone would be lower confidence without the broader multi-engine consensus.
Taken together, the combination of strong multi-engine phishing detections, the deceptive-looking document-access page, and the lack of clear legitimate site identity suggests this website may pose potential risks to visitors at the time of this scan.
Technical Description
The site was reachable over HTTPS with a valid Let's Encrypt SSL certificate expiring in November 2026. While valid TLS helps encrypt traffic in transit, it does not by itself indicate legitimacy; phishing pages commonly use valid certificates as well. The server appears to run Apache and resolves to IP address 186.64.119.45, hosted by ZAM LTDA in Curicó, Chile.
The domain is relatively old, with a creation date in 2017, which can sometimes lend credibility to infrastructure, but in this case the suspicious activity appears to be occurring on a subdomain rather than necessarily the apex domain. DNSSEC status was not confirmed in the scan data. No external links or iframes were observed in the provided crawl, which may indicate a simple, self-contained phishing landing page.
Share your experience with this website. Was it safe? Did you encounter any issues?