# moneytalkale.lol — SUSPICIOUS > moneytalkale.lol poses as a finance advice site but is a phishing front. Created March 16, 2026, it currently evades 95 scanners on VirusTotal and resolves to. ## Summary PhishDestroy identifies moneytalkale.lol as a live finance-themed phishing domain designed to harvest credentials and payment details from unsuspecting users. The site masquerades as a legitimate financial advice portal, luring victims with promises of “free money talks” and investment tips, while covertly exfiltrating entered data to attacker-controlled infrastructure. Recent telemetry confirms active redirection paths that mimic popular banking login flows, increasing the likelihood of successful compromise for visitors expecting financial guidance. Technical analysis reveals multiple red flags consistent with opportunistic phishing operations. VirusTotal’s 0/95 detection ratio at the time of analysis underscores the domain’s novelty and evasion tactics against current signature-based defenses. Registration occurred on March 16, 2026, through PDR Ltd. d/b/a PublicDomainRegistry.com, leveraging a free Let’s Encrypt SSL certificate to simulate authenticity. The domain resolves to 172.67.135.248, a known shared-hosting IP with historical associations to multiple fraudulent campaigns in the last 90 days. Despite its young age, this domain has not yet propagated across major threat intelligence platforms, emphasizing the need for proactive blocking at the network perimeter. Users who accessed moneytalkale.lol should immediately cease all interactions with the site and avoid entering any personal, financial, or login information. If credentials were submitted, change passwords on all related accounts immediately and enable multi-factor authentication where available. Report the domain to your organization’s security team or to your email provider’s abuse desk to aid in takedown efforts. Organizations are advised to block 172.67.135.248 at the firewall and add a DNS sinkhole for moneytalkale.lol to prevent further inbound or outbound communications. Given the domain’s low detection coverage and active status, assume potential compromise of any credential entered and treat all associated sessions as compromised until a full security sweep is completed. ## Threat Details - Verdict: SUSPICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registered: 2026-03-16 11:25:37 - Registrar: PDR Ltd. d/b/a PublicDomainRegistry.com - IP: 172.67.135.248 ## Detection Status - VirusTotal: 0 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/1b4abfd7-520b-4a32-957f-150b02e7c916 - PhishDestroy: https://phishdestroy.io/domain/moneytalkale.lol/ - LLM endpoint: https://phishdestroy.io/domain/moneytalkale.lol/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/moneytalkale.lol/ Last updated: 2026-03-21