e9f59b.icefactory.cl
Category: Malicious
To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.
Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCrisk.com may earn a referral commission when users sign up through this link.
Description of e9f59b.icefactory.cl
This domain appears to be a subdomain hosted under icefactory.cl rather than a standalone brand website. Based on the page title and screenshot, it presents itself as an "Adobe Acrobat Reader" or "Secure PDF Document" access page and prompts visitors to enter an email address before continuing. The content suggests it is intended to imitate a document-sharing or protected PDF access workflow.
The naming pattern of the subdomain, combined with the minimal single-purpose page design, does not indicate a normal corporate or informational website. Instead, it appears to be a narrowly targeted landing page that may be used to collect credentials or personal information under the pretense of document access. Available scan categories also associate the page with phishing and fraud-related classifications at the time of this scan.
Safety Assessment for e9f59b.icefactory.cl
Multiple security signals indicate elevated risk at the time of this scan. The domain was flagged by 14 out of 91 security engines, and several web-classification sources categorized it as phishing or fraud-related. In addition, the screenshot shows a login-style form branded as an Adobe Acrobat document access page, asking for an email address before allowing access to a supposed PDF. That pattern is commonly associated with credential-harvesting campaigns and may indicate an attempt to impersonate a trusted document service.
The malware scan also reported a suspicious finding on one scanned path, although that result appears to be heuristic rather than tied to a named malware family. Separately, the domain's IP address is listed on one mail-reputation blocklist, which is a weaker signal than direct phishing detections but still adds some caution. While some major threat databases were clean at the time of this scan, the broader multi-engine consensus and the page's apparent impersonation of Adobe-branded document access weigh more heavily.
Based on these findings, this website may pose potential risks to visitors.
Technical Description
The site uses a valid Let's Encrypt SSL certificate with an expiry date in November 2026, which means the connection appears to be encrypted in transit. It is hosted on an Apache web server at IP address 186.64.119.45, associated with ZAM LTDA in Curicó, Chile. The domain itself is relatively old, having been created in 2017, and it uses nameservers under pymedns.net.
DNSSEC status is unknown based on the available data. Although the certificate is valid, SSL alone does not establish legitimacy, and in this case the technical setup appears consistent with a hosted phishing page on a long-lived domain or subdomain. The use of a subdomain with a random-looking label and a single-purpose credential prompt may be a technical red flag.
Share your experience with this website. Was it safe? Did you encounter any issues?