4ec655.icefactory.cl
Category: Malicious
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCrisk.com may earn a referral commission when users sign up through this link.
Description of 4ec655.icefactory.cl
The domain 4ec655.icefactory.cl appears to be a subdomain hosted under icefactory.cl, using Chile's .cl country-code namespace. Based on the page title and screenshot, the specific page presents itself as an "Adobe Acrobat Reader" or "Secure PDF Document" access page and prompts visitors to enter an email address before continuing to view a document.
This does not appear to be a normal corporate homepage or a public-facing product website. Instead, it looks more like a single-purpose landing page designed to collect credentials or contact information under the pretext of opening a shared PDF. The underlying operator is not clearly identified on the page, and the available scan data does not show visible branding or ownership details beyond the hosting environment and domain structure.
Although one web-classification source labeled the domain as technology-related, the visible content is more consistent with a document-themed login or access portal. That kind of presentation is commonly used for file-sharing lures and email-harvesting pages, so the site appears to function primarily as a gated document-access form rather than a general technology service.
Safety Assessment for 4ec655.icefactory.cl
The scan results indicate elevated risk at the time of this scan. The domain was flagged by 16 out of 91 security engines, with multiple detections describing phishing, fraud, malware, or other malicious behavior. In addition, the screenshot shows a page imitating an Adobe-branded secure PDF access screen and requesting an email address before allowing access to a supposed document, which is a pattern often associated with credential harvesting.
Blacklist and threat-database results were mixed. Major content-focused threat databases in the provided data did not report a listing at the time of this scan, but the domain's IP address was listed on one mail-reputation blocklist. That kind of DNS-based listing is a weaker signal than direct phishing or malware detections, but it still adds a small amount of caution rather than clearing the site.
The domain itself is not newly registered, which slightly reduces the likelihood of a throwaway setup, but age alone does not offset the combination of multi-engine phishing detections and the deceptive-looking document prompt. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site uses a valid Let's Encrypt SSL certificate with an expiry date of 2026-11-08, which means traffic to the page can be encrypted in transit. However, HTTPS alone does not verify the legitimacy of the content. The server appears to run Apache and resolves to IP address 186.64.119.45, hosted by ZAM LTDA in Curicó, Chile.
WHOIS data indicates the parent domain has existed since 2017 and is set to expire in 2027. DNSSEC status was not available in the provided data, so no conclusion can be drawn there. From a technical risk perspective, the main concern is not the TLS setup but the page behavior and reputation signals: a suspicious flagged path, a document-themed credential prompt, and substantial agreement among security engines that the page may be involved in phishing-related activity.
Share your experience with this website. Was it safe? Did you encounter any issues?