239e6b.icefactory.cl
Category: Malicious
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCrisk.com may earn a referral commission when users sign up through this link.
Description of 239e6b.icefactory.cl
239e6b.icefactory.cl appears to be a subdomain hosted under icefactory.cl rather than a standalone consumer-facing brand. Based on the page title and screenshot, the page presents itself as an "Adobe Acrobat" or "secure PDF document" access portal and prompts visitors to enter an email address before continuing. This kind of layout is commonly used to imitate document-sharing or file-viewing workflows.
The broader domain structure suggests the page may be part of infrastructure hosted on an existing Chilean domain rather than an official Adobe-owned property. The random-looking subdomain label and the long path shown in the scan data do not resemble a typical branded document service. Available categorization data also associates the page with phishing and fraud-related classifications rather than a normal technology or productivity service.
Based on the visible content, the page appears intended to collect user input by presenting a document-access pretext. There is no indication in the scan data that this is an official Adobe service, and the branding shown in the screenshot may be used in a misleading way.
Safety Assessment for 239e6b.icefactory.cl
Multiple scan signals indicate elevated risk at the time of this scan. The domain was flagged by 19 out of 91 security engines, with many of those detections describing phishing, fraud, malware, or other malicious behavior. In addition, the visible page content shows an email-entry form branded as an Adobe Acrobat secure PDF access page, which may be consistent with credential-harvesting or document-themed phishing tactics.
Blacklist and reputation data were mixed rather than fully clean. Major content-malice checks shown in the scan were not listed at the time of review, but the domain's IP address was listed on one mail-reputation blocklist. That type of listing is a weaker signal than direct phishing or malware detections, yet it still adds some caution. The malware scan also produced a suspicious result on one scanned file, although that finding appears less conclusive than the broader multi-engine phishing consensus.
The domain itself is several years old, which can sometimes reduce concern in isolation, but age does not outweigh the combination of repeated phishing classifications, the deceptive-looking document prompt, and the very low published trust score. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site was reachable over HTTPS with a valid Let's Encrypt certificate that, at the time of this scan, was set to expire on 2026-11-08. It appears to be served by an Apache web server on IP address 186.64.119.45, hosted by ZAM LTDA in Curicó, Chile. The domain uses the nameservers ns1.pymedns.net, ns2.pymedns.net, and ns3.pymedns.net.
DNSSEC status was reported as unknown, and the scan did not provide a confirmed TLS protocol configuration beyond the presence of a valid certificate. From a security perspective, the main concern is not the transport layer itself but the application content: a branded email-capture page on a non-official subdomain, combined with substantial phishing-related detection consensus at the time of scanning.
Share your experience with this website. Was it safe? Did you encounter any issues?