43643c.icefactory.cl
Category: Malicious
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCrisk.com may earn a referral commission when users sign up through this link.
Description of 43643c.icefactory.cl
The subdomain 43643c.icefactory.cl appears to host a single-purpose web page styled as an "Adobe Acrobat" or "Adobe Acrobat Reader" document-access portal. Based on the page title, screenshot, and visible form fields, the page is presented as a secure PDF access screen that asks visitors to enter an email address before continuing to a document.
The broader parent domain icefactory.cl may belong to a legitimate Chilean website or hosting environment, but this specific subdomain does not appear to function as a normal corporate or informational page. Instead, it appears to be a narrowly focused landing page using document-themed branding and a login-style prompt, which is a pattern commonly associated with credential-harvesting campaigns when used outside an official vendor domain.
Available classification data also places this URL in phishing and fraud-related categories. Based on the visible content and the lack of broader site navigation or business context, this subdomain appears to be intended primarily as a gated document-access page rather than a full public website.
Safety Assessment for 43643c.icefactory.cl
Multiple security signals indicate elevated risk at the time of this scan. The URL was flagged by 17 out of 91 security engines, and several web-classification sources categorized it as phishing or fraud-related. The screenshot also shows a page imitating an Adobe document-access experience while requesting an email address, which may be consistent with credential collection or social-engineering activity.
Additional scan context supports caution. A malware scan marked the page as suspicious, and one scanned file path was flagged, although no specific malware family name was provided. The domain's IP address is also listed on one mail-reputation blocklist, which is a weaker signal than direct phishing detections but still worth noting. At the same time, some major threat databases were clean at the time of this scan, so the evidence should be viewed as point-in-time rather than permanent.
Taken together, the combination of multi-engine phishing detections, phishing-related categorization, and a brand-themed document lure suggests this website may pose potential risks to visitors. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site was reachable over HTTPS with a valid Let's Encrypt SSL certificate that, at the time of this scan, was set to expire on 2026-11-08. It appears to be hosted on an Apache web server at IP address 186.64.119.45, operated by ZAM LTDA in Curicó, Chile. DNSSEC status was not confirmed from the available data.
From an infrastructure perspective, the parent domain is not newly registered, with an age of about 8 years, but this does not materially reduce concern for the specific subdomain because compromised or delegated subdomains can be abused independently. The use of a long, opaque subdomain/path structure and a minimal form-based page may be consistent with disposable phishing infrastructure.
Share your experience with this website. Was it safe? Did you encounter any issues?