orotonmail.com favicon

orotonmail.com

Category: Malicious

Scanned: Jun 10, 2026, 03:54 PM UTC · First seen: Jun 10, 2026 · Threat Engines: 2 / 91 · Times Scanned: 1
0 / 100 Trust Score Based on scan findings at the time of analysis
Potentially Dangerous
0 - High Risk50 - Moderate100 - No Threats
Fresh scan recommended
Last scanned 66 days ago - security status may have changed since then.
Not scanned has not been scanned yet. Hit Scan Now to check it.

Scans can take up to 5 minutes to complete. Please keep this tab open - we'll redirect you to the report when it's ready.

Failed
Scan unavailable
Scan failed
Protect yourself from potentially harmful websites
Combo Cleaner's real-time web protection module actively blocks access to scam, phishing & malware-infected websites.
★★★★★ 4.8 / 5 Recommended by PCrisk.com editors Windows · Mac · Android · iOS
Download Combo Cleaner Free scan · no signup

To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.

Screenshot of orotonmail.com Captured Jun 10, 2026
https://orotonmail.com
Screenshot of orotonmail.com
This website has been flagged as potentially harmful
Screenshot blurred for safety. Multiple security engines flagged potential threats at the time of scanning.
2 years 4 months
Not Ranked - This website does not appear in the Tranco top list
Flagged by 2 of 91 engines
✓ Valid (TLS)
Leaseweb USA, Inc
Warrenton, United States
nginx/1.28.0
Unknown
23.105.175.18
Domain & WHOIS Information
Registrar Media Elite Holdings Limited, S.A.
Registered April 5, 2024
Expires April 5, 2027
Name Servers NS1.THEDNSCLOUD.COM
DNSSEC Unsigned
Hosting Leaseweb USA, Inc
Look-Alike Domain Check
Likely typosquat This domain is 1 character apart from proton.me - a curated brand we track. A character was replaced with its keyboard neighbour - the kind of slip typed without looking.
Reinforcing Signals: Not in Tranco top 1M
Reputation & Threat Check 91 security engines checked
2
2 of 91 engines flagged this website Flagged by 2 security vendors at the time of scanning
Not flagged Flagged
Flagged by 2 of 91 engines
Direct Threat Database Sources
View detailed engine results on VirusTotal
File Scan Summary Powered by Quttera Engine
4 files scanned
No threats
3
Low Risk
0
Medium Risk
1
High Risk
0
No threats Low Risk Medium Risk High Risk
/index Flagged: medium risk
survey-smiles.com.http-redirect 85 B No threats
survey-smiles.com/1 26.7 KB No threats
survey-smiles.com/# 26.5 KB No threats
Quttera flagged medium risk files - is this your website?
Investigate and remove potential threats with Quttera
Remove Malware

Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCrisk.com may earn a referral commission when users sign up through this link.

External Links & Domains
3
External Links
1 Flagged
0
Iframes
Clean
2
Referenced Domains
1 Flagged
2
Flagged Resources
Detected
orotonmail.comFlagged: Generic Malicious Object
http://orotonmail.com/1Flagged: Generic Malicious Object
http://orotonmail.com/1Flagged: Generic Malicious Object
https://l.cdn-fileserver.com/bping.php?mspa%3D0&vgd_cdv%3DO3329&vgd_wlstp%3D0&cid%3D8CU7G8B38&vi%3D1781106846612274846&sc%3D18&r%3D1781106846760&vgd_tsce%3DL1256&vgd_l2type%3Ddmola&vgd_oresf%3Done&vgd_setup%3Dc21&prid%3D8PR11258V&crid%3D342704488&cc%3DFI&lper%3D100&wsip%3D170762372&vgd_a-Not flagged
https://l.cdn-fileserver.com/bping.php?vgd_wlstp%3D0&prid%3D8PR11258V&vi%3D1781106847963683962&vgd_rpth%3D%2Fola&r%3D1781106847298&vgd_cage%3D5&vgd_setup%3Dc21&ugd%3D6&cc%3DFI&sc%3D18&lper%3D100&vgd_cdv%3DO3329&vgd_l2type%3Ddmola&vgd_oresf%3Done&crid%3D342704488&hvsid%3D00001781106847296-Not flagged
orotonmail.comFlagged: Generic Malicious Object
l.cdn-fileserver.comNot flagged
orotonmail.com Overview

Description of orotonmail.com

orotonmail.com appears to be a low-content landing page rather than a full business or service website. Based on the screenshot, it presents a small set of clickable promotional tiles such as "Designer Handbags Sale," "Cowhide Products," and other leather-accessory themed links, with very limited supporting information and only a minimal privacy-policy reference visible.

The domain name itself does not clearly match the page topic, and the site does not appear to identify a transparent operator, company background, or clear service purpose. The layout and content are more consistent with an advertising, redirect, or placeholder-style page than with a developed retail storefront or a legitimate email-related service suggested by the "mail" portion of the domain name.

Safety Assessment for orotonmail.com

This domain shows several cautionary signals at the time of this scan. It was flagged by 2 out of 91 security engines, and a malware scan marked the main page as suspicious with a generic malicious-object label. One blacklist-style provider also listed the domain, while major content-malice databases referenced in the scan were otherwise clean. In addition, the page contains very little original content and includes flagged redirect-style links, which may indicate traffic-routing or monetized landing-page behavior.

A further concern is that the domain closely resembles proton.me in spelling and may be a look-alike intended to benefit from user confusion. That resemblance, combined with the lack of meaningful site identity, no visible brand transparency, and the domain's absence from major traffic rankings, increases the overall risk profile. Based on these findings, this website may pose potential risks to visitors.

Technical Description

The site was reachable over HTTPS with a valid Let's Encrypt certificate expiring in September 2026. It appears to be hosted on an nginx/1.28.0 web server at IP address 23.105.175.18, associated with Leaseweb USA, Inc., with geolocation data pointing to Warrenton, United States. DNSSEC is not enabled, and the domain uses nameservers at thednscloud.com.

From a security posture standpoint, the basic TLS setup appears present, but that alone does not establish trustworthiness. The more notable technical concerns are the suspicious scan result on the index page, the flagged self-referential link, and the mismatch between the domain name and the visible page purpose, all of which may be consistent with low-quality redirect infrastructure or deceptive use.

HTTP Redirect Chain
302 https://orotonmail.com/
307 http://ww1.orotonmail.com/
307 https://ww1.orotonmail.com/
200 http://ww1.orotonmail.com/
Website Insights
Not Ranked
Tranco Rank
Not in Top 1M
Visitors Unknown
Category: Malicious
Rank History (30 days)
No rank data available
3 cookies detected
Essential3
Analytics0
Advertising0
Social0
3 1st party cookies
0 3rd party (trackers)
Dispute This Score For website owners
Believe this score is inaccurate?
If you are the website owner and believe the scan results contain errors or false positives, you can submit a dispute for manual review. Our team typically responds within 1-2 business days.
You will be asked to verify your email before the dispute can be processed.
By submitting this form, you confirm that the information provided is accurate. Disputes are reviewed manually and results may take up to 48 hours to update.
One more step…
To submit your dispute for orotonmail.com, please click the verification link we just emailed you. Once verified, we'll review it within 1-2 business days.
This report was generated automatically and is provided for informational purposes only. Results are based on a point-in-time scan and may contain false positives or incomplete data. This does not constitute a security audit or certification. No vendor in the market can guarantee a 100% detection rate. If you believe this report is inaccurate, please submit a dispute.

Share your experience with this website. Was it safe? Did you encounter any issues?