IOC Radar
DomainMediumSignal 93/100

www.lrs.tax

First Seen
Jan 11, 2022
Last Seen
Nov 28, 2025
Jan 11
First Seen
1616d ago
Nov 28
Last Seen
199d ago
6
Reports
source reports
93%
Confidence
medium
Found in 6 reports. Confidence: medium. · Confidence scores are heuristic. Verify before acting on results.
Domain Name
Malicious domain used for C2, phishing, or malware distribution.
MISP Category
Network Activity
Confidence
93%
Signal Score
93 / 100
IDS Rule
No
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

26 techniques

Feed Intelligence Summary

6 reports93% confidence
6
Source reports
93%
Confidence score
Category tags
abuseabuse reportbotnetbrand abusebrand impersonationcommand and controlcredential harvestingcredential theftdata exfiltrationdeceptive marketingdistributed attacksfraudulent websiteindicatorinfrastructure acquisitionreconnaissanceingress tool transfermalicious downloadmalicious linkmalicious linksmalicious softwaremalwaremalware deliverymalware distributionmalware hostingnetworkphishingphishing attackphishing campaignphishing domain detectionphishing kitprocess injectionresearchedrogue domainsocial engineeringsocial engineering attackspam campaignt1055t1071t1071.001t1105t1189t1192t1204t1204.001t1486t1496t1499.002t1499.003t1565t1566t1566.001t1566.002t1566.003t1566.004t1583t1583.001t1587.001t1588t1588.002t1590.001t1598t1598.003typosquattingweb security

Activity Timeline

1 total obs
Nov 28Nov 28

Threat Activity Heatmap

· Peak: 2025-11-28
Less
More
Mon
Wed
Fri
Jun
·
·
Jul
·
·
·
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
24h
0
Dormant
7d
0
Dormant
30d
0
Dormant
3mo
0
Dormant
Threat ScoreHigh Risk
93
SIGNAL
Signal Score
93%
Confidence
6
Reports
First seenJan 11, 2022
Last seenNov 28, 2025

VirusTotal

Not checked

WHOIS

registrar
Google Inc.
description
Phishing, scams, all junk goes here.
raw
Admin City: REDACTED FOR PRIVACY Admin Country: REDACTED FOR PRIVACY Admin Organization: REDACTED FOR PRIVACY Admin Postal Code: REDACTED FOR PRIVACY Admin State/Province: REDACTED FOR PRIVACY Creation Date: 2022-01-10T17:52:08Z DNSSEC: signedDelegation Domain Name: lrs.tax Domain Status: clientHold https://icann.org/epp#clientHold Domain Status: clientTransferProhibited https://icann.org/epp#clientTransferProhibited Domain Status: redemptionPeriod https://icann.org/epp#redemptionPeriod Name Server: ns-cloud-e1.googledomains.com Name Server: ns-cloud-e2.googledomains.com Name Server: ns-cloud-e3.googledomains.com Name Server: ns-cloud-e4.googledomains.com Registrant City: 1f8f4166599d23ee Registrant Country: CA Registrant Email: f651612a2f356ad3s@ Registrant Fax Ext: 1f8f4166599d23ee Registrant Fax: 1f8f4166599d23ee Registrant Name: 1f8f4166599d23ee Registrant Organization: 5fa648b96eeb677f Registrant Phone Ext: 1f8f4166599d23ee Registrant Phone: 1f8f4166599d23ee Registrant Postal Code: 1f8f4166599d23ee Registrant State/Province: 07ac7e47d3a73f45 Registrant Street: 1f8f4166599d23ee Registrar Abuse Contact Email: [email protected] Registrar Abuse Contact Phone: +1.8772376466 Registrar IANA ID: 895 Registrar URL: http://domains.google.com Registrar WHOIS Server: whois.donuts.co Registrar: Google Inc. Registry Admin ID: REDACTED FOR PRIVACY Registry Domain ID: 110d4c1ec64d4d5fb3dfef0e10eeb8bd-DONUTS Registry Expiry Date: 2023-01-10T17:52:08Z Registry Registrant ID: REDACTED FOR PRIVACY Registry Tech ID: REDACTED FOR PRIVACY Tech City: REDACTED FOR PRIVACY Tech Country: REDACTED FOR PRIVACY Tech Organization: REDACTED FOR PRIVACY Tech Postal Code: REDACTED FOR PRIVACY Tech State/Province: REDACTED FOR PRIVACY Updated Date: 2023-02-09T21:24:19Z

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

medium
First detected 4 years ago · Last seen 6 months ago
Appeared in 6 threat reports