# rozoxfin.com — SUSPICIOUS > Avoid rozoxfin.com, an active phishing domain posing risks to users. Stay vigilant and do not share personal info on this suspicious site. ## Summary PhishDestroy has identified rozoxfin.com as a medium-risk phishing domain, likely masquerading as a financial service platform. The domain is classified under generic phishing due to its potential to deceive users into divulging sensitive information. Rozoxfin.com was registered recently, raising concerns about its legitimacy and intent. Technical analysis shows rozoxfin.com resolving to IP address 188.114.97.3. The domain was created on June 09, 2025, via GMO Internet, Inc. Although only 3 out of 95 security vendors flagged this domain, its relatively new registration and hosting details point towards a malicious infrastructure commonly used for phishing campaigns. Currently, rozoxfin.com remains active and poses a tangible threat, requiring proactive blocking and monitoring measures. Users and organizations are advised to avoid interactions with this domain and report any suspicious emails or links referencing it. PhishDestroy recommends updating security controls to detect and prevent potential credential theft or fraud stemming from this site. ## Threat Details - Verdict: SUSPICIOUS - Site status: alive (HTTP 405) ## Domain Intelligence - Registered: 2025-06-09 09:01:23 - Registrar: GMO Internet, Inc. - Country: JP - IP: 188.114.97.3 - Nameservers: gene.ns.cloudflare.com mcgrory.ns.cloudflare.com ## Detection Status - VirusTotal: 3 vendors flagged Vendors: ["ESET", "Fortinet", "Webroot"] - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Screenshot: https://i.ibb.co/mVnscLPL/fcb3d6342063.png - Cloudflare Radar: https://radar.cloudflare.com/scan/fd9a6568-681b-434c-960c-c9b0d4cbc781 - PhishDestroy: https://phishdestroy.io/domain/rozoxfin.com/ - LLM endpoint: https://phishdestroy.io/domain/rozoxfin.com/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/rozoxfin.com/ Last updated: 2026-03-19