7af1c9.icefactory.cl
Category: Malicious
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCrisk.com may earn a referral commission when users sign up through this link.
Description of 7af1c9.icefactory.cl
The domain 7af1c9.icefactory.cl appears to be a subdomain hosted under icefactory.cl, a Chilean domain. Based on the page title and screenshot, this specific subdomain is presenting itself as an "Adobe Acrobat - Secure PDF Document" access page that asks visitors to enter an email address before continuing to a document.
This does not appear to be a normal corporate homepage or a public-facing content site. Instead, it appears to be a single-purpose landing page designed to imitate a document-sharing or secure PDF access workflow. The parent domain structure suggests it may be hosted on infrastructure associated with another organization, but the scanned subdomain itself appears to be focused on credential-style document access rather than a broader business service.
Safety Assessment for 7af1c9.icefactory.cl
Multiple scan sources classify this URL as phishing-related, and 15 out of 91 security engines flagged it at the time of this scan. In addition, the screenshot shows a document-themed page branded as Adobe Acrobat Reader that prompts for an email address to access a supposedly protected PDF. That pattern is commonly associated with credential-harvesting campaigns, especially when presented on an unrelated subdomain rather than an official document platform.
The malware scan also reported one flagged page with a generic suspicious verdict, although no named malware family was provided. At the same time, several major threat databases were clean at the time of this scan, which can happen when phishing pages are newly deployed, short-lived, or inconsistently reported across systems. Even so, the combination of multi-engine phishing detections, a very low trust score, and the page’s impersonation-style document prompt materially increases concern.
Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site was reachable over HTTPS with a valid Let's Encrypt certificate that was set to expire in November 2026. It appears to be hosted on an Apache web server at IP address 186.64.119.45, with hosting attributed to ZAM LTDA in Curicó, Chile. The domain itself is relatively old, having been created in 2017, while DNSSEC status was not available in the scan data.
From a technical risk perspective, the presence of valid SSL/TLS should not be treated as proof of legitimacy, since phishing pages commonly use HTTPS as well. The use of a long, unusual subdomain label and a suspicious path flagged by the malware scan may indicate disposable or campaign-specific infrastructure rather than a stable public service.
Share your experience with this website. Was it safe? Did you encounter any issues?