30cb0d.icefactory.cl
Category: Malicious
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCrisk.com may earn a referral commission when users sign up through this link.
Description of 30cb0d.icefactory.cl
The domain 30cb0d.icefactory.cl appears to be a subdomain hosted under the Chilean icefactory.cl domain rather than a standalone branded website. Based on the page title and screenshot, it presents itself as an "Adobe Acrobat - Secure PDF Document" access page and prompts visitors to enter an email address to continue to a supposedly protected PDF document.
This type of page layout is commonly associated with document-sharing or webmail-themed credential collection pages that imitate familiar software or document portals. The visible content does not indicate a legitimate corporate homepage, publisher site, or document management service operated by Adobe; instead, it appears to be a narrowly focused landing page designed to solicit user input before granting access to a claimed document.
The domain naming pattern is also unusual, using a random-looking subdomain rather than a recognizable service name. Based on the available categories and page presentation, the site appears to be intended for phishing-style social engineering rather than normal business or informational use.
Safety Assessment for 30cb0d.icefactory.cl
Multiple security signals indicate elevated risk at the time of this scan. The domain was flagged by 13 out of 91 security engines, and several web-classification sources categorized it as phishing or fraud-related. In addition, the screenshot shows a page imitating an Adobe Acrobat document-access workflow while requesting an email address, which is a common pattern used to capture credentials or other sensitive information.
The malware scan also reported one flagged file with a generic suspicious finding. While generic heuristic detections alone can be low confidence, they add to the overall concern here because they are accompanied by substantial multi-engine phishing detections and a deceptive-looking login prompt. Blacklist data was mixed: major content-malice databases shown in the scan were clean, but the domain's IP address was listed on one mail-reputation blocklist, which is a weaker signal and should be interpreted cautiously.
Taken together, the combination of multi-engine phishing detections, phishing-related categorization, lack of established reputation indicators, and a credential-harvesting style page suggests this website may pose potential risks to visitors at the time of this scan. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site was reachable over HTTPS with a valid Let's Encrypt certificate that was set to expire on 2026-11-08. A valid certificate helps encrypt traffic in transit, but it does not by itself indicate legitimacy; phishing pages commonly use valid TLS certificates as well. The server appears to run Apache and resolves to IP address 186.64.119.45, hosted by ZAM LTDA in Curicó, Chile.
WHOIS and domain-registration details were largely unavailable in the provided scan, including domain age, registrar, nameservers, and DNSSEC status. That lack of transparency limits reputation assessment. No external links or iframes were observed in the scan, but the page structure and random-looking subdomain naming pattern may be consistent with a disposable or campaign-specific phishing deployment.
Share your experience with this website. Was it safe? Did you encounter any issues?