dl.babylon.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain dl.babylon.com is registered by proxy through GODADDY.COM, LLC and was originally registered in August of 1998. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Chicago, Illinois within the United States which resides on the SingleHop, Inc. network.
Remove Malware from dl.babylon.com - Powered by Reason Core Security
Registrar:
GODADDY.COM, LLC

Server location:
Illinois, United States (US)

Create date:
Saturday, August 01, 1998

Expires date:
Tuesday, July 31, 2018

Updated date:
Monday, January 21, 2013

ASN:
AS32475 SINGLEHOP-INC - SingleHop

Root domain:

Scanner detections:
Detections  (98% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.VisualTools.N, PUP.Installer.Babylon.P, PUP.Installer.Babylon.O, PUP.Installer.Babylon.S, PUP.NextRadioTV.N, PUP.Installer.Babylon.M, PUP.Babylon.V, PUP.Babylon.DD, PUP.Babylon.Installer (M)
97.96%

ESET NOD32
Win32/Toolbar.Babylon (variant), Win32/Toolbar.Conduit, Win32/Toolbar.Babylon.AD (variant), Win32/Toolbar.Babylon.C potentially unwanted (variant)
89.80%

Dr.Web
Adware.Toolbar.146, Adware.Downware.1733, Adware.Babylon.10, Adware.Babylon.8, Adware.Babylon.15, Adware.Babylon.9, Adware.Toolbar.111, Adware.Downware.885
75.51%

VIPRE Antivirus
Babylon, Trojan.Win32.Generic
75.51%

Agnitum Outpost
PUA.Toolbar.Babylon, Trojan.Agent
73.47%

Malwarebytes
PUP.Optional.Delta.A, PUP.Optional.Babylon.A
63.27%

Trend Micro House Call
TROJ_GEN.R047H08IA13, TROJ_GEN.F47V1215, TROJ_GEN.F47V0207, TROJ_GEN.F47V0504, TROJ_GEN.F47V0225, TROJ_GEN.F47V0806, TROJ_GEN.F47V1007, TROJ_GEN.F47V0121, TROJ_GEN.F47V0802
63.27%

Comodo Security
UnclassifiedMalware, Application.Win32.Babylon.ac
51.02%

Bkav FE
W32.Clod95a.Trojan, W32.Clod96b.Trojan, W32.Clod347.Trojan, W32.Clod152.Trojan
51.02%

Emsisoft Anti-Malware
Riskware.Win32.Toolbar.Babylon.AMN, Gen:Variant.Barys.23877, Gen:Variant.Barys.7801
46.94%

Baidu Antivirus
Trojan.Win32.Toolbar, Adware.Win32.Bbylon, Trojan.Win32.Agent
42.86%

NANO AntiVirus
Riskware.Win32.Babylon.craswq, Trojan.Win32.Babylon.csuksh, Trojan.Win32.Downware.ctimdd, Riskware.Win32.Searcher.dotdbm
42.86%

McAfee
Artemis!77445EC53390, Artemis!6E78AB2014C9, Artemis!3D780C59D744, Artemis!2FC14D228580, Artemis!52C88A3FDD9C, Artemis!E569050C46CA, Artemis!D37870ECD5BB, Artemis!20CD50EEED33
38.78%

Fortinet FortiGate
Riskware/Babylon, Riskware/Toolbar_Babylon, Adware/Toolbar
36.73%

K7 Gateway Antivirus
Unwanted-File , Trojan , DoS-Trojan , Virus
36.73%

The domain dl.babylon.com has been seen to resolve to the following 6 IP addresses.

July 22, 2013

July 22, 2013

July 22, 2013

July 22, 2013

July 22, 2013

July 22, 2013

File downloads found at URLs served by dl.babylon.com.

27 / 68    (Adware)
http://dl.babylon.com/site/files/.../Babylon9_setup.exe  (1c1f35648b1c0e3200b72a6d681be627)

8 / 68      (Adware)

12 / 68    (Adware)
http://dl.babylon.com/site/files/.../Babylon9_setup.exe  (ab9b8276d19e80cdfd2877ae0850e7cf)

12 / 68    (Adware)
http://dl.babylon.com/site/files/.../Babylon9_setup.exe  (cf820e582904d4d55f55b2ab85c41ba0)

27 / 68    (Adware)
http://dl.babylon.com/site/files/.../Babylon9_setup.exe  (fe85d2ec1e7ba834af794b8f14905873)

1 / 68      (Adware)
http://dl.babylon.com/site/files/.../Babylon9_setup.exe  (c6edcb7a83d170b178c554d18b8b4b9b)

27 / 68    (Adware)
http://dl.babylon.com/site/files/.../Babylon9_setup.exe  (0dc19fb4477f360d682096431bcb6529)

27 / 68    (Adware)
http://dl.babylon.com/site/files/.../Babylon9_setup.exe  (4e4b05670fc0c9c44a0ece8af3215c8d)

27 / 68    (Adware)
http://dl.babylon.com/site/files/.../Babylon9_setup.exe  (3e91479e0d2e02afc5cd5df47845549e)

6 / 68      (Adware)
http://dl.babylon.com/files/prtnrp/.../FreeRideGames.exe  (3a206fbd101d28464eba49e16b37eecb)

12 / 68    (Adware)
http://dl.babylon.com/site/files/.../Babylon9_setup.exe  (6d6fecbb36e820bf64d3d434bfdd199a)

4 / 68      (Adware)

12 / 68    (Adware)
http://dl.babylon.com/site/files/.../Babylon10_setup.exe  (cb7f16ae7b7cb6be4d63ee42fd472631)

21 / 68    (Adware)
http://dl.babylon.com/site/files/.../Babylon10_setup.exe  (20cd50eeed33d5772d35c6a3a9aa4460)

22 / 68    (Adware)
http://dl.babylon.com/site/files/.../Babylon10_setup.exe  (2cac0199d40d44ae358caf667fa73e37)

7 / 68      (Adware)

11 / 68    (Adware)
http://dl.babylon.com/site/files/.../Babylon9_setup.exe  (4c1c6ba2b375277dbbb50dd78f399fa3)

8 / 68      (Adware)

11 / 68    (Adware)
http://dl.babylon.com/site/files/.../Babylon10_setup.exe  (d37870ecd5bb93fe99758c48ac64794e)

1 / 68      (Adware)

21 / 68    (Adware)
http://dl.babylon.com/site/files/.../Babylon10_setup.exe  (433ad2fca61a293ef6171a82f90f4160)

11 / 68    (Adware)
http://dl.babylon.com/site/files/.../Babylon9_setup.exe  (bc95cb91b8efff97555435db890f2608)

2 / 68      (Adware)
http://dl.babylon.com/files/prtnrp/.../RealPlayer_fr.exe  (8dfc164b33212d42bfb4f5e9f78cb117)

2 / 68

8 / 68      (Adware)
http://dl.babylon.com/site/files/.../Babylon9_buy.exe  (3d780c59d74459d51ce011c4701a3914)

3 / 68      (Adware)

1 / 68      (Adware)
http://dl.babylon.com/files/.../Babylon10_PCE_setup.msi  (babylon.pro.10.0.2.r15_soft98.ir.msi)

6 / 68      (Adware)
http://dl.babylon.com/site/files/.../Babylon10_setup.exe  (c249e293948b31729fbcc11e51ad09a4)

12 / 68    (Adware)

6 / 68      (Adware)
http://dl.babylon.com/site/files/.../Babylon8_setup.exe  (0a5d778c7618c389c1bbff68a221d00b)

 
Latest 30 of 156 download URLs

The following file have been seen to comunicate with dl.babylon.com in live environments.

URL:
http://dl.babylon.com/

Web server:
nginx/0.8.54

Remove Malware from dl.babylon.com - Powered by Reason Core Security