7b4b6e.icefactory.cl
Category: Malicious
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCrisk.com may earn a referral commission when users sign up through this link.
Description of 7b4b6e.icefactory.cl
This subdomain, 7b4b6e.icefactory.cl, appears to host a single-purpose web page rather than a full public website. Based on the page title and screenshot, it presents itself as an "Adobe Acrobat Reader" or "Secure PDF Document" access page and prompts visitors to enter an email address before continuing. The parent domain uses Chile's .cl country-code extension, but the visible content does not appear to represent a normal corporate homepage or document-sharing portal.
The naming pattern of the subdomain is random-looking, and the page design appears intended to imitate a document-access workflow associated with a well-known software brand. That combination is commonly seen on temporary campaign pages used to capture credentials or other user input. Based on the available categories and page presentation, this page appears to be associated with phishing-themed activity rather than a legitimate document service.
Safety Assessment for 7b4b6e.icefactory.cl
Multiple independent signals indicate elevated risk at the time of this scan. The domain was flagged by 16 out of 91 security engines, and several web-classification providers categorized it as phishing, fraud, or malicious. In addition, the screenshot shows a branded document-access page asking for an email address before allowing access to a supposed PDF, which is a common social-engineering pattern used to collect login details or other sensitive information.
The malware scan also reported a suspicious finding on one scanned path, although that result appears to be heuristic rather than tied to a named malware family. Separately, the domain's IP address is listed on one mail-reputation blocklist, which may indicate broader reputation issues but is a weaker signal than the phishing classifications and page content. While some major threat databases were clean at the time of this scan, the multi-engine detection consensus and the visible credential-harvesting pattern outweigh those cleaner signals.
Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site was reachable over HTTPS with a valid Let's Encrypt certificate that, at the time of this scan, was set to expire on 2026-11-08. It appears to be served by an Apache web server on IP address 186.64.119.45, hosted by ZAM LTDA in Curicó, Chile. DNSSEC status was not confirmed from the available data.
From an infrastructure perspective, the use of TLS is positive but does not by itself indicate legitimacy. The random-looking subdomain, lack of ranking, suspicious single-page workflow, and phishing-related detections suggest the subdomain may have been created for a narrowly targeted campaign or temporary abuse on otherwise ordinary hosting infrastructure.
Share your experience with this website. Was it safe? Did you encounter any issues?