4f94f8.icefactory.cl
Category: Malicious
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCrisk.com may earn a referral commission when users sign up through this link.
Description of 4f94f8.icefactory.cl
This domain is a subdomain under icefactory.cl and, based on the page title and screenshot, appears to present itself as a document-access portal themed around a secure PDF viewer. The visible page asks visitors to enter an email address to continue to a supposedly protected PDF document, using branding and wording associated with document-sharing workflows.
The hostname itself is a random-looking subdomain rather than a branded service address, and the page does not appear to identify a clear operator or organization responsible for the content. Based on the available categories and the screenshot, this does not appear to be a normal corporate homepage or public-facing business website; instead, it appears to be a narrowly targeted landing page that may be intended to collect user credentials or other submitted information.
Safety Assessment for 4f94f8.icefactory.cl
Multiple security signals indicate elevated risk at the time of this scan. The domain was flagged by 16 out of 91 security engines, and multiple web-classification providers categorized it as phishing or fraud-related. In addition, the screenshot shows a page styled as an Adobe Acrobat document-access screen that prompts for an email address before allowing access to a supposed PDF, which is a pattern commonly associated with credential-harvesting campaigns.
The malware scan also reported a suspicious finding on one scanned page, although that result on its own would be lower confidence without corroboration. In this case, however, it is accompanied by broad phishing-related detections from multiple security engines. While major content-malice threat databases listed in the scan were otherwise clean, the domain's IP address was listed on one mail-reputation blocklist, which adds a minor supporting caution rather than serving as primary evidence by itself.
The domain is several years old and uses valid HTTPS, but those factors do not outweigh the phishing-style page design and the multi-engine detection consensus seen here. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site was reachable over HTTPS with a valid Let's Encrypt certificate that, at the time of this scan, was set to expire on 2026-11-08. It is hosted on IP address 186.64.119.45 in Curicó, Chile, reportedly through ZAM LTDA, and the web server identified itself as Apache. DNSSEC status was not confirmed in the provided data, and the domain uses nameservers under pymedns.net.
From a technical risk perspective, the presence of TLS only indicates encrypted transport and should not be taken as proof of legitimacy. The use of a long, random-looking subdomain and a suspicious path structure may be consistent with disposable phishing infrastructure or a compromised hosting environment, although that cannot be confirmed from scan data alone.
Share your experience with this website. Was it safe? Did you encounter any issues?