84f7a2.icefactory.cl
Category: Malicious
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCrisk.com may earn a referral commission when users sign up through this link.
Description of 84f7a2.icefactory.cl
The domain 84f7a2.icefactory.cl appears to be a subdomain hosted under the Chilean domain icefactory.cl rather than a standalone brand website. Based on the page title and screenshot, the page presents itself as an "Adobe Acrobat Reader" or "secure PDF document access" portal and prompts visitors to enter an email address before continuing to a document. This type of page is commonly used to imitate document-sharing or secure file-viewing workflows.
The available data does not indicate that this is an official Adobe property, and the random-looking subdomain structure suggests it may be a temporary or campaign-specific page rather than a normal business-facing website. The content shown is minimal and focused on credential-style interaction rather than providing general information about a service, organization, or legitimate document platform.
Safety Assessment for 84f7a2.icefactory.cl
Multiple independent security signals indicate elevated risk at the time of this scan. The domain was flagged by 15 out of 91 security engines, and several web-classification sources categorized it as phishing or fraud-related. The screenshot also shows a login-style prompt framed as access to a secure PDF document, which is a common social-engineering pattern used to collect email credentials or other sensitive information.
Additional context supports a cautious assessment. A malware scan marked one scanned path as suspicious, although that finding on its own would be lower confidence without corroboration. In this case, however, it is reinforced by the broader multi-engine phishing consensus. The domain's IP address is also listed on one mail-reputation blocklist, which is a weaker signal than content-based phishing detections but still adds some caution.
Although the parent domain is several years old and the site uses a valid SSL certificate, age and HTTPS do not offset the phishing-style page design and the volume of security detections. Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site was reachable over HTTPS with a valid Let's Encrypt SSL certificate that was set to expire on 2026-11-08. It appears to be served by an Apache web server from IP address 186.64.119.45, hosted by ZAM LTDA in Curicó, Chile. DNSSEC status was reported as unknown, and the domain uses nameservers under pymedns.net.
From a technical risk perspective, the main concern is not the TLS setup itself but the combination of a random-looking subdomain, a sparse credential-collection page, and broad phishing-related detections from security engines. One scanned file path was also marked suspicious, which may indicate dynamically generated or campaign-specific content.
Share your experience with this website. Was it safe? Did you encounter any issues?