7c82c9.icefactory.cl
Category: Malicious
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCrisk.com may earn a referral commission when users sign up through this link.
Description of 7c82c9.icefactory.cl
This subdomain, 7c82c9.icefactory.cl, appears to host a single-purpose web page rather than a full public website. Based on the page title and screenshot, it presents itself as an "Adobe Acrobat Reader" document-access page and prompts visitors to enter an email address to continue to a PDF. The naming pattern of the subdomain and URL path looks machine-generated, which may indicate a temporary campaign page or a hosted resource placed under the broader icefactory.cl domain.
The parent domain uses Chile's .cl country-code extension and appears to be hosted in Chile. However, the visible content does not resemble a normal corporate, informational, or consumer-facing site for an "ice factory" business. Instead, the page is narrowly focused on collecting an email address under the pretense of secure document access, which is a pattern commonly associated with credential-harvesting or deceptive document-delivery pages.
Safety Assessment for 7c82c9.icefactory.cl
Multiple independent security signals indicate elevated risk at the time of this scan. The domain was flagged by 15 out of 91 security engines, and several web-classification providers categorized it as phishing or fraud-related. In addition, the screenshot shows a page styled as an Adobe document-access prompt asking for an email address before allowing access to a supposed PDF, which may be consistent with a credential-collection lure rather than a legitimate document portal.
The malware scan also reported a suspicious finding on the scanned page path, although that result appears to be heuristic rather than tied to a named malware family. Separately, the domain's IP address is listed on one mail-reputation blocklist; this is a weaker signal than direct phishing detections, but it still adds some caution. While some major threat databases were clean at the time of this scan and the parent domain itself is several years old, the combination of multi-engine phishing detections, fraud-related categorization, and the deceptive-looking login-style PDF prompt materially increases concern.
Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site was reachable over HTTPS with a valid Let's Encrypt certificate that, at the time of the scan, was set to expire on 2026-11-08. It appears to be served by an Apache web server from IP address 186.64.119.45, hosted by ZAM LTDA in Curicó, Chile. DNSSEC status was not confirmed in the provided data, and the domain uses nameservers under pymedns.net.
From a technical risk perspective, the presence of valid TLS only indicates encrypted transport and should not be taken as proof of legitimacy. The suspicious content was hosted on a long, randomized-looking subpath under a randomized-looking subdomain, which may be consistent with disposable phishing infrastructure or a compromised hosting environment.
Share your experience with this website. Was it safe? Did you encounter any issues?