Spybot - Search & Destroy

Spybot - Search & Destroy

by Safer-Networking Ltd.

What is Spybot - Search & Destroy?

Spybot - Search & Destroy is software application developed by Safer-Networking Ltd.. It is most commonly found on computers running Windows 7 with nearly 63.60% of installations running this operating system. Spybot - Search & Destroy's installer is typically 65.00 MB in size and installs around 114 files. The most common release is 1.3 with 30.93% of all installations currently using this version.

Spybot - Search & Destroy is most popular in the United States with 61.58% of installations residing in this country.

Spybot - Search & Destroy adds 1 scheduled task to the Windows Task Scheduler launching the program at randomly scheduled times. When using a computer that is connected to the internet, Spybot - Search & Destroy is known to create 1 firewall exception to allow inbound and outbound connectivity.

About Spybot - Search & Destroy?

Spybot Search & Destroy (S&D) is a professional-grade spyware and adware removal software designed specifically for Microsoft Windows operating systems. It conducts a thorough scan of the computer's hard disk and RAM to identify and eliminate malicious software. In addition to detecting and disinfecting spyware and adware, Spybot-S&D can also address issues with the registry, winsock LSPs, ActiveX objects, browser hijackers, PUPS, computer cookies, trackerware, homepage hijackers, keyloggers, LSP, tracks, trojans, spybots, revision, and various other types of malware. The program is also capable of removing tracking cookies for an added layer of protection.

Software Behaviors

Services:
  • SDWinSec.exe runs as a service named 'SBSD Security Center Service' (SBSDWSCService).
Firewall:
  • SDMain.exe is added as a firewall exception for 'C:\Program Files\Spybot - Search & Destroy\SDMain.exe'.
Scheduled tasks:
  • SDWinSec.exe is scheduled as a task with the class '{FC9AC3CC-0EC6-4CF1-96F3-CF906C157937}' (runs on registration).

Startup Entries

Startup tasks:
  • TeaTimer.exe is automatically launched at startup through a scheduled task named 2.
  • SpybotSD.exe is automatically launched at startup through a scheduled task named Spybot - Search & Destroy.
Registry entries:
  • TeaTimer.exe is loaded in the current user (HKCU) registry as an auto-starting executable named 'SpybotSD TeaTimer' and executes as C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe.
  • SDCleaner.exe is loaded in the current user (HKCU) registry as an auto-starting executable named 'Spybot-S&D Cleaning' and executes as "C:\Program Files\Spybot - Search & Destroy 2\SDCleaner.exe" /autoclean.
  • TeaTimer_original.exe is loaded in the current user (HKCU) registry as an auto-starting executable named 'SpybotSD TeaTimer' and executes as C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe.

Software Details

URL:
https://www.safer-networking.org
Support:
https://www.safer-networking.org/index.php?page=support
Installation path:
C:\Program Files\Spybot - Search & Destroy\
Uninstaller:
"C:\Program Files\Spybot - Search & Destroy\unins000.exe"
Size:
65.00 MB
Language:
English

Spybot - Search & Destroy Executable Details

Primary executable:
SpybotSD.exe
Name:
Spybot - Search & Destroy
Path:
C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
MD5:
SHA-1:
SHA-256:
Files installed by Spybot - Search & Destroy
File Type Filename MD5
DLL
d067ff36759d4bb7c98481d62af6bc50
DLL
53b8f516d1383e1703d12a9714a01084
EXE
48fae038f51676a795cefad780448d94
EXE
8bee20ed52b19d2169598e56a48d381d
EXE
159b659b77452d87ce9e6371ab25a2ec
EXE
46027885d6c6183ad8487082de6f34cd
SYS
3d7f459ba223d75b325fc11be6600961
SYS
617de7ebf433cb621e29e3202ab1784e
DLL
88672f72a8a8237eca6cedbc318dd01e
DLL
9393a174f440ee1b43e73823647c023b