Spybot - Search & Destroy

Spybot - Search & Destroy

by Safer-Networking Ltd.

What is Spybot - Search & Destroy?

Spybot - Search & Destroy is software application developed by Safer-Networking Ltd.. It is most commonly found on computers running Windows 7 with nearly 63.60% of installations running this operating system. Spybot - Search & Destroy's installer is typically 65.00 MB in size and installs around 114 files. The most common release is 1.3 with 30.93% of all installations currently using this version.

Spybot - Search & Destroy is most popular in the United States with 61.58% of installations residing in this country.

Spybot - Search & Destroy adds 1 scheduled task to the Windows Task Scheduler launching the program at randomly scheduled times. When using a computer that is connected to the internet, Spybot - Search & Destroy is known to create 1 firewall exception to allow inbound and outbound connectivity.

About Spybot - Search & Destroy?

Spybot Search & Destroy (S&D) is a professional-grade spyware and adware removal software designed specifically for Microsoft Windows operating systems. It conducts a thorough scan of the computer's hard disk and RAM to identify and eliminate malicious software. In addition to detecting and disinfecting spyware and adware, Spybot-S&D can also address issues with the registry, winsock LSPs, ActiveX objects, browser hijackers, PUPS, computer cookies, trackerware, homepage hijackers, keyloggers, LSP, tracks, trojans, spybots, revision, and various other types of malware. The program is also capable of removing tracking cookies for an added layer of protection.

Software Behaviors

Services:
  • SDWinSec.exe runs as a service named 'SBSD Security Center Service' (SBSDWSCService).
Firewall:
  • SDMain.exe is added as a firewall exception for 'C:\Program Files\Spybot - Search & Destroy\SDMain.exe'.
Scheduled tasks:
  • SDWinSec.exe is scheduled as a task with the class '{FC9AC3CC-0EC6-4CF1-96F3-CF906C157937}' (runs on registration).

Startup Entries

Startup tasks:
  • TeaTimer.exe is automatically launched at startup through a scheduled task named 2.
  • SpybotSD.exe is automatically launched at startup through a scheduled task named Spybot - Search & Destroy.
Registry entries:
  • TeaTimer.exe is loaded in the current user (HKCU) registry as an auto-starting executable named 'SpybotSD TeaTimer' and executes as C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe.
  • SDCleaner.exe is loaded in the current user (HKCU) registry as an auto-starting executable named 'Spybot-S&D Cleaning' and executes as "C:\Program Files\Spybot - Search & Destroy 2\SDCleaner.exe" /autoclean.
  • TeaTimer_original.exe is loaded in the current user (HKCU) registry as an auto-starting executable named 'SpybotSD TeaTimer' and executes as C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe.

Software Details

URL:
https://www.safer-networking.org
Support:
https://www.safer-networking.org/index.php?page=support
Installation path:
C:\Program Files\Spybot - Search & Destroy\
Uninstaller:
"C:\Program Files\Spybot - Search & Destroy\unins000.exe"
Size:
65.00 MB
Language:
English

Spybot - Search & Destroy Executable Details

Primary executable:
SpybotSD.exe
Name:
Spybot - Search & Destroy
Path:
C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
MD5:
SHA-1:
SHA-256:
Files installed by Spybot - Search & Destroy
File Type Filename MD5
DLL
81af6f572d6213dc7d881c47791acc36
EXE
7b0bcffb8026ae2ef0b1264e24bbd781
DLL
3bcdd15401ba2aeebabf4d123bea5943
EXE
70496eee0ddbe485f658693826f44d38
DLL
327a945f573f64ee40870db923da2288
EXE
fdba243ef2929d33a73dd666e684ad6a
DLL
77fbbc098f1afd286b4928c47b86dbb4
DLL
9455204cd2b13e494ab1ab07a4a17056
DLL
117a05a0a6cbe10d5e92e64fc44949ee
DLL
279a23f355d2473022f8117272f5e73e