www.babylon.com

Domains By Proxy, LLC  (Proxy Registrant)

Domain Information

The domain www.babylon.com is registered by proxy through GODADDY.COM, LLC and was originally registered in August of 1998. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Chicago, Illinois within the United States which resides on the SingleHop, Inc. network.
Registrar:
GODADDY.COM, LLC

Server location:
Illinois, United States (US)

Create date:
Saturday, August 01, 1998

Expires date:
Tuesday, July 31, 2018

Updated date:
Monday, January 21, 2013

ASN:
AS32475 SINGLEHOP-INC - SingleHop

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

Reason Heuristics
PUP.Installer.Babylon.P, PUP.Installer.Babylon.V, PUP.Installer.Babylon.S, PUP.Babylon.Installer, PUP.Babylon.BabylonSoftware.Installer (M)
100.00%

Dr.Web
Adware.Babylon.10, Adware.Downware.1733, Adware.Searcher.2766, Adware.Babylon.36
91.67%

Agnitum Outpost
Trojan.Agent, PUA.Toolbar.Babylon
75.00%

ESET NOD32
Win32/Toolbar.Babylon (variant), Win32/Toolbar.Babylon.AD (variant)
75.00%

NANO AntiVirus
Trojan.Win32.Babylon.csuksh, Trojan.Win32.Downware.ctimdd, Riskware.Win32.Searcher.dotdbm
75.00%

Trend Micro House Call
TROJ_GEN.F47V1103, TROJ_GEN.F47V1215, ADW_BABYLON, TROJ_GEN.F47V0109, TROJ_GEN.F47V0413, TROJ_GEN.F47V0207, Suspicious_GEN.F47V0119
66.67%

Baidu Antivirus
Adware.Win32.Bbylon, Trojan.Win32.Toolbar
50.00%

Fortinet FortiGate
Riskware/Toolbar_Babylon, Riskware/FirseriaInstaller
50.00%

McAfee
Artemis!77445EC53390, Artemis!18B6E11710FA, Artemis!9B39D8EF6D18, Artemis!B88B3030AB5C, Artemis!C2AD36565D51, Artemis!C139ADC7F3FC
50.00%

McAfee Web Gateway
Artemis!77445EC53390, Artemis!18B6E11710FA, Artemis!9B39D8EF6D18, Artemis!B88B3030AB5C, Artemis!C2AD36565D51, Artemis!C139ADC7F3FC
50.00%

Bkav FE
W32.Clodcfc.Trojan, W32.Clod95a.Trojan
41.67%

Malwarebytes
PUP.Optional.Babylon.A
41.67%

Vba32 AntiVirus
suspected of Trojan.Downloader.gen
41.67%

VIPRE Antivirus
Babylon
41.67%

K7 Gateway Antivirus
Trojan , Unwanted-File , DoS-Trojan
41.67%

The domain www.babylon.com has been seen to resolve to the following 7 IP addresses.

ba-sh-us-dc4-010.babylon.com
October 24, 2014

ba-sh-nl-dc-006.babylon.com
April 3, 2014

ba-sh-nl-dc1-.003.com
March 28, 2014

ba-sh-us-dc1-020.babylon.com
March 28, 2014

singhop0002.babylon.com
December 22, 2013

eul2400033-pip3.eu.verio.net
December 22, 2013

eul3300035-sip3.eu.verio.net
December 22, 2013

File downloads found at URLs served by www.babylon.com.

 
Latest 30 of 396 download URLs

The following 2 files have been seen to comunicate with www.babylon.com in live environments.

URL:
http://www.babylon.com/

Google Analytics:
UA-34701345

Title:
“Babylon 10 - Free Translator and Dictionaries”

Description:
“Babylon translator and dictionary for PC and Mac is the world's leading translation software, providing instant translation in over 77 languages”

Web server:
server/10001a

Facebook:
Likes:  4,689
Shares:  6,152
Comments:  998

Statistics are for the previous month.