# x-money.lat — SUSPICIOUS > x-money.lat is linked to ongoing phishing activity. Stay vigilant and avoid interactions with this domain. Learn more and protect yourself now. ## Summary PhishDestroy identifies the domain x-money.lat as involved in generic phishing activities. While the nature of the threat remains under investigation, early indicators suggest that this domain could be utilized to fraudulently capture sensitive information from unsuspecting users. This assessment is based on behavioral patterns common in phishing schemes, even though no specific attack vector has yet been confirmed. The domain x-money.lat was registered recently on March 5, 2026, via PDR Ltd. d/b/a PublicDomainRegistry.com, a detail that often aligns with emerging malicious infrastructures. The domain resolves to IP address 188.114.97.3 and, although VirusTotal scans show zero vendor detections, the domain has been added to two security blocklists, reinforcing suspicion. Such listings imply preliminary recognition of threat activity by certain monitoring entities despite a lack of broad vendor consensus. Currently, x-money.lat remains active and under close observation by PhishDestroy analysts. Users and cybersecurity professionals are strongly advised to exercise caution by avoiding this domain and reporting any suspicious encounters associated with it. Continuous monitoring and timely updates will be provided as further intelligence is collected to confirm the full scope and risk level of this potential phishing threat. ## Threat Details - Verdict: SUSPICIOUS - Site status: dead (HTTP 403) - Page title: Just a moment... ## Domain Intelligence - Registered: 2026-03-07 17:07:01 - Registrar: PDR Ltd. d/b/a PublicDomainRegistry.com - Country: IN - IP: 188.114.97.3 - IP Country: US - IP City: San Francisco - IP Org: AS13335 Cloudflare, Inc. - Nameservers: ["audrey.ns.cloudflare.com", "rohin.ns.cloudflare.com"] - SSL Issuer: Let's Encrypt / E7 ## Detection Status - VirusTotal: 2 vendors flagged Vendors: ["Gridinsoft", "SOCRadar"] - Google Safe Browsing: clean - Blocklists: 3 hits Lists: ["PhishDestroy", "MetaMask", "SEAL"] ## Evidence - Screenshot: https://urlscan.io/screenshots/019cc92f-77e1-71ab-8fc4-51b990fc5513.png - Cloudflare Radar: https://radar.cloudflare.com/scan/96b3f0a2-984b-4bd9-83d3-da1ec49c359d - Wayback Machine: https://web.archive.org/web/https://x-money.lat - PhishDestroy: https://phishdestroy.io/domain/x-money.lat/ - LLM endpoint: https://phishdestroy.io/domain/x-money.lat/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/x-money.lat/ Last updated: 2026-03-19