URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: cld.platsandgo.com
Domain registrar:OVH -
Domain registration date:2020-05-05 11:06:17 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2022-01-11 20:30:04 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-01-11 20:30:05 92.222.139.190cluster028.hosting.ovh.netNot listedAS16276 OVH- FRyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-01-11 20:30:10http://cld.platsandgo.com/assets/c2538/Offlineemotet ext epoch5 redir-doc xls waga_tw
2022-01-11 20:30:05http://cld.platsandgo.com/assets/c2538/?i=1Offlinedoc emotet ext epoch5 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-01-12 06:47:184b2ced5ad04b4256bef5bee0fb95867913b271eabac843923fc16220f924b332xlsm Heodo
2022-01-12 06:24:24db88756a23fe6c0998ddbf1864efe7e4a28073dca342fa7712775388ac757529xlsm Heodo
2022-01-12 06:06:3878692618c12acca00b6da84e155086145c3d8140bf9bbfa308510e77da32c4d7xlsm Heodo
2022-01-12 05:42:25ee114d49a4192550bd7b5094c73f545ad17e8e0514684f8124f3b13f204bc061xlsm Heodo
2022-01-12 04:59:03a49d524f974becd9753ec5781b8d2ea4788fd2826e762a18a8e737cf579b3eedxlsm Heodo
2022-01-12 04:37:0695761ae4efbb60ee498b7d56d6c84e48753a21ab59a655f5439b47167baf6ea2xlsmHeodo
2022-01-12 04:08:358232bffcdf155d94e02d6bf3de90b25764ddf81e8d0071b283d866debed7e5a3xlsm Heodo
2022-01-12 03:46:101c873e22b4b174756cf0b84c5fd5af1b12515761507c3723ff77a95572ef0823xlsm Heodo
2022-01-12 03:04:222d954283067945efe19a87dfbb59f88f2bb4eb034fe285fce5448bf092faa730xlsm Heodo
2022-01-12 02:48:37b1fdd5d25639259cc813c570979343d8e297a624df7f477788cc0c0622f2a671xlsmHeodo
2022-01-12 02:21:25ef5bb2b9bf9fc8c4f7d325cddd5202c205f256d0d59689570a2b332203c23314xlsm Heodo
2022-01-12 01:42:38f84556b6185aa546506bdc7eddba5d3b4cc4a44f32366edcd3755baa19c73f2dxlsm Heodo
2022-01-12 01:32:08b467daf3c66e48745f7c878e38cffc2bd0a1d0c9409e7a7be13e5c76a285d542xlsm Heodo
2022-01-12 00:56:55f28bbe346a1043a08f1cdc244ca35bb345e7a7dd491c22e9197cfc449e5a59b4xlsm Heodo
2022-01-12 00:31:473c650d7a8587b1e9fd3720682611258f730d5762a31eec35e66269191f376295xlsm Heodo
2022-01-12 00:03:26697ea1260245ebb08b7387e6d6f4eddd9f9d37d4849abb996244b79526827a11xlsmHeodo
2022-01-11 23:51:222bcd5baa2d280f6afd51a5beb204c382fce0fa58f20ff76076d27cb2323e8ac6xlsm Heodo
2022-01-11 23:20:55427080f3d4da3ec0746fc297c0a922b5212a53ae04504f5efd17ff4f9208c662xlsm Heodo
2022-01-11 23:06:54d232986e906c448669c346c5edefc1d51b9224b6d53afd360e4768f9861eafadxlsm Heodo
2022-01-11 22:39:01aa920a2c74b8982c5dd77f97f0dd2d6c7fd69f047983447d6ae43cdf1573b07dxlsm Heodo
2022-01-11 22:08:318a9101b7343bf1a4608ae17b84bd290c1e40f510ec792e9c5d3cc5ace4ca5490xlsm Heodo
2022-01-11 21:42:028ad61be673c186c9cdfb6c6c8d750fbcf80f920d4905742c0ed9d67833026ed7xlsm Heodo
2022-01-11 21:28:1371da6e57fe5adfa0b06f8ba9525e6db95e7c25246179fa8563561d24e79e6c65xlsm Heodo
2022-01-11 21:14:31929fd76e8373d3c14a1fa542d4222dba73cb21f0c5cdaa0c8b7acea0a53d8f0bxlsm Heodo
2022-01-11 20:55:25c9e970aa711be04a18931e15dbeb8bc9e24beeaa6d8e95ec64d11c3c9d0eeff6xlsm Heodo
2022-01-11 20:30:10efb17c631864a8e6304ec9e9b09ef69e05482338a3a2a136658431652d2dcfe0html  
2022-01-11 20:30:0554ea8278be35064a8017aefe7f5c1f1497983d965e89621a056edb730b109bdcxlsm