babylontoolbar.dll

Babylon Toolbar

Babylon BHO

This is part of the Babylon web browser toolbar and extension that will modify the browser's default search provider, DNS, and home page functions. The module babylontoolbar.dll has been detected as adware by 2 anti-malware scanners. It is installed within the context of Internet Explore as a BHO (Browser Helper Object) under the name ‘Babylon toolbar helper’. This will display context specific advertisements in the browser as well as attempt to modify the browser's search provider.
Publisher:
Babylon BHO

Product:
Babylon Toolbar

Version:
1.8.0.0

MD5:
15649e30f8fc5cf90d2469a48429ca01

SHA-1:
5e0438ac8156c6b4b05f598516409ecbff2599af

SHA-256:
a0c8e34d7204ee614ea04f3ebdeeaa68f1a4b55d50aec9cb0c59b611358e0ade

Scanner detections:
2 / 68

Status:
Adware

Analysis date:
4/25/2024 9:17:01 AM UTC  (today)

Scan engine
Detection
Engine version

Boost by Reason
Optional.BHO.BabylonBHO.O
188163

Reason Heuristics
PUP.BHO.BabylonBHO.O
14.3.2.12

File size:
242 KB (247,808 bytes)

Product version:
1.8.0.0

Copyright:
(c) Babylon Ltd. All rights reserved.

File type:
Dynamic link library (Win32 DLL)

Language:
héber (Izrael)

Common path:
C:\Program Files\babylontoolbar\babylontoolbar\1.8.0.7\bh\babylontoolbar.dll

File PE Metadata
Compilation timestamp:
9/24/2012 1:56:22 PM

OS version:
6.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

CTPH (ssdeep):
3072:qb1J8I7p65vtRIlFT+TWzWIiVuC9zq+RCOo4oASfwMq:qgI7p6VIfT+VIiQ2WjgY

Entry address:
0x17D7C

Entry point:
55, 8B, EC, 83, 7D, 0C, 01, 75, 05, E8, 5D, 76, 00, 00, FF, 75, 10, FF, 75, 0C, FF, 75, 08, E8, 07, 00, 00, 00, 83, C4, 0C, 5D, C2, 0C, 00, 6A, 0C, 68, E8, 29, 03, 10, E8, 25, 3A, 00, 00, 33, C0, 40, 8B, 75, 0C, 85, F6, 75, 0C, 39, 35, 10, 7F, 03, 10, 0F, 84, E4, 00, 00, 00, 83, 65, FC, 00, 83, FE, 01, 74, 05, 83, FE, 02, 75, 35, 8B, 0D, DC, C8, 02, 10, 85, C9, 74, 0C, FF, 75, 10, 56, FF, 75, 08, FF, D1, 89, 45, E4, 85, C0, 0F, 84, B1, 00, 00, 00, FF, 75, 10, 56, FF, 75, 08, E8, 17, FE, FF, FF, 89, 45, E4...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
162 KB (165,888 bytes)

Internet Explorer BHO
Display name:
Babylon toolbar helper

CLSID:
{2EECD738-5844-4a99-B4B6-146BF802613B}


Remove babylontoolbar.dll - Powered by Reason Core Security