Should I block it?

20%
20% of PCs block this file from running.

VersionsAdditional versions

1, 6, 2, 14 96.40%
1, 6, 2, 14 2.70%
1, 3, 0, 12 0.90%

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
RegQueryValueExA, RegOpenKeyExA, RegCloseKey, SetSecurityDescriptorDacl, RegSetValueExA, RegQueryInfoKeyA, RegFlushKey, RegEnumKeyA, RegEnumKeyExA, RegDeleteValueA, RegDeleteKeyA, RegCreateKeyExA, InitializeSecurityDescriptor, GetUserNameA, FreeSid, AllocateAndInitializeSid
comctl32.dll
_TrackMouseEvent, ImageList_SetIconSize, ImageList_GetIconSize, ImageList_Write, ImageList_Read, ImageList_GetDragImage, ImageList_DragShowNolock, ImageList_DragMove, ImageList_DragLeave, ImageList_DragEnter, ImageList_EndDrag, ImageList_BeginDrag, ImageList_Remove, ImageList_DrawEx, ImageList_Replace, ImageList_Draw, ImageList_GetBkColor, ImageList_SetBkColor, ImageList_Add, ImageList_GetImageCount, ImageList_Destroy, ImageList_Create, InitCommonControls
comdlg32.dll
PrintDlgA, GetSaveFileNameA
gdi32.dll
UnrealizeObject, TextOutA, StretchDIBits, StretchBlt, StartPage, StartDocA, SetWindowOrgEx, SetWinMetaFileBits, SetViewportOrgEx, SetTextColor, SetStretchBltMode, SetROP2, SetPixel, SetMapMode, SetEnhMetaFileBits, SetDIBColorTable, SetBrushOrgEx, SetBkMode, SetBkColor, SetAbortProc, SelectPalette, SelectObject, SelectClipRgn, SaveDC, RoundRect, RestoreDC, Rectangle, RectVisible, RealizePalette, Polyline, PlayEnhMetaFile, PatBlt, MoveToEx, MaskBlt, LineTo, LPtoDP, IntersectClipRect, GetWindowOrgEx, GetWinMetaFileBits, GetTextMetricsA, GetTextFaceA, GetTextExtentPointA, GetTextExtentPoint32W, GetTextExtentPoint32A, GetSystemPaletteEntries, GetStockObject, GetRgnBox, GetPixel, GetPaletteEntries, GetObjectA, GetNearestPaletteIndex, GetEnhMetaFilePaletteEntries, GetEnhMetaFileHeader, GetEnhMetaFileDescriptionA, GetEnhMetaFileBits, GetDeviceCaps, GetDIBits, GetDIBColorTable, GetDCOrgEx, GetCurrentPositionEx, GetClipBox, GetBrushOrgEx, GetBitmapBits, GdiFlush, ExtTextOutA, ExtFloodFill, ExcludeClipRect, EndPage, EndDoc, DeleteObject, DeleteEnhMetaFile, DeleteDC, CreateSolidBrush, CreateRoundRectRgn, CreateRectRgnIndirect, CreatePenIndirect, CreatePen, CreatePalette, CreateICA, CreateHalftonePalette, CreateFontIndirectA, CreateFontA, CreateEnhMetaFileA, CreateDIBitmap, CreateDIBSection, CreateDCA, CreateCompatibleDC, CreateCompatibleBitmap, CreateBrushIndirect, CreateBitmap, CopyEnhMetaFileA, CombineRgn, CloseEnhMetaFile, BitBlt
kernel32.dll
GetACP, Sleep, VirtualFree, VirtualAlloc, GetTickCount, QueryPerformanceCounter, GetCurrentThreadId, InterlockedDecrement, InterlockedIncrement, VirtualQuery, WideCharToMultiByte, MultiByteToWideChar, lstrlenA, lstrcpynA, LoadLibraryExA, GetThreadLocale, GetStartupInfoA, GetProcAddress, GetModuleHandleA, GetModuleFileNameA, GetLocaleInfoA, GetLastError, GetCommandLineA, FreeLibrary, FindFirstFileA, FindClose, ExitProcess, ExitThread, CreateThread, CompareStringA, WriteFile, UnhandledExceptionFilter, SetFilePointer, SetEndOfFile, RtlUnwind, ReadFile, RaiseException, GetStdHandle, GetFileSize, GetFileType, CreateFileA, CloseHandle, TlsSetValue, TlsGetValue, TlsFree, TlsAlloc, LocalFree, LocalAlloc, lstrcpyA, lstrcmpA, WaitForSingleObject, VirtualProtect, UnmapViewOfFile, TerminateThread, TerminateProcess, SystemTimeToFileTime, SuspendThread, SizeofResource, SetUnhandledExceptionFilter, SetThreadPriority, SetThreadLocale, SetLastError, SetFileAttributesA, SetEvent, SetErrorMode, ResumeThread, ResetEvent, RemoveDirectoryA, ReleaseMutex, ReadProcessMemory, QueryPerformanceFrequency, OutputDebugStringA, OpenProcess, OpenFileMappingA, MulDiv, MapViewOfFile, LockResource, LocalSize, LoadResource, LoadLibraryA, LeaveCriticalSection, IsBadReadPtr, InitializeCriticalSection, GlobalUnlock, GlobalSize, GlobalReAlloc, GlobalMemoryStatus, GlobalHandle, GlobalLock, GlobalFree, GlobalFindAtomA, GlobalDeleteAtom, GlobalAlloc, GlobalAddAtomA, GetWindowsDirectoryA, GetVersionExW, GetVersionExA, GetVersion, GetUserDefaultLCID, GetTimeZoneInformation, GetThreadPriority, GetThreadContext, GetTempPathA, GetSystemTime, GetSystemDirectoryA, GetShortPathNameA, GetProfileStringA, GetPriorityClass, GetModuleHandleW, GetModuleFileNameW, GetLogicalDrives, GetLocalTime, GetFullPathNameA, GetFileTime, GetFileAttributesA, GetExitCodeThread, GetDriveTypeA, GetDiskFreeSpaceA, GetDateFormatA, GetCurrentThread, GetCurrentProcessId, GetCurrentProcess, GetComputerNameA, GetCPInfo, FreeResource, InterlockedExchange, FormatMessageA, FindResourceA, FindNextFileA, FileTimeToSystemTime, FileTimeToLocalFileTime, FileTimeToDosDateTime, ExpandEnvironmentStringsA, EnumCalendarInfoA, EnterCriticalSection, DuplicateHandle, DeleteFileA, DeleteCriticalSection, CreateRemoteThread, CreateProcessA, CreatePipe, CreateMutexA, CreateFileMappingW, CreateFileMappingA, CreateFileW, CreateEventA, CreateDirectoryA, CopyFileA, CompareStringW, Beep
ole32.dll
CreateStreamOnHGlobal, IsAccelerator, OleDraw, OleSetMenuDescriptor, CoTaskMemFree, CoTaskMemAlloc, ProgIDFromCLSID, StringFromCLSID, CoCreateInstance, CoLockObjectExternal, CoDisconnectObject, CoRevokeClassObject, CoRegisterClassObject, CoGetClassObject, CoUninitialize, CoInitialize, IsEqualGUID
oleaut32.dll
SysFreeString, SysReAllocStringLen, SysAllocStringLen, CreateErrorInfo, GetErrorInfo, SetErrorInfo, GetActiveObject, RegisterTypeLib, LoadTypeLibEx, SafeArrayPtrOfIndex, SafeArrayGetUBound, SafeArrayGetLBound, SafeArrayCreate, VariantChangeType, VariantCopy, VariantClear, VariantInit
shell32.dll
ShellExecuteExA, ShellExecuteW, ShellExecuteA, ExtractIconA, SHGetSpecialFolderLocation, SHGetPathFromIDListA, SHGetMalloc
user32.dll
GetKeyboardType, DestroyWindow, LoadStringA, MessageBoxA, CharNextA, DllMain
version.dll
VerQueryValueA, GetFileVersionInfoSizeA, GetFileVersionInfoA
wininet.dll
UnlockUrlCacheEntryFile, FindNextUrlCacheEntryA, FindFirstUrlCacheEntryA, FindCloseUrlCache, DeleteUrlCacheEntry, HttpQueryInfoA, HttpSendRequestA, HttpOpenRequestA, InternetReadFile, InternetConnectA, InternetCloseHandle, InternetOpenA
winspool.drv
OpenPrinterA, EnumPrintersA, DocumentPropertiesA, ClosePrinter
wsock32.dll
WSACleanup, WSAStartup, gethostbyname, socket, setsockopt, sendto, send, select, recvfrom, recv, inet_addr, htons, connect, closesocket, bind
Export table
DllCanUnloadNow
DllGetClassObject
DllRegisterServer
DllUnregisterServer
madTraceProcess

sdhelper.dll

Spybot - Search & Destroy by Safer Networking Ltd. (Signed)

Remove sdhelper.dll
Version:   1, 6, 2, 14
MD5:   35f73f1936bde91f1b6995510a61e7a8
SHA1:   2aafc85b24cfbec01c25a61cc026f7ae159210d0
SHA256:   97ceef032cd48be05ab03514219f264a500c6c651efbb7691d4e25df4579c5d9

What is sdhelper.dll?

SBSD IE Protection for Spybot Search & Destroy (S&D) is a spyware and adware removal computer program that scans the computer hard disk and/or RAM for malicious software. In addition to spyware and adware detection and disinfection, Spybot-S&D can repair the registry, winsock LSPs, ActiveX objects, browser hijackers and BHOs, PUPS, computer cookies, trackerware, heavy duty, homepage hijackers, keyloggers, LSP, tracks, trojans, spybots, revision, and other kinds of malware.

About sdhelper.dll (from Safer Networking Ltd.)

Spybot-S&D is free for private use. Even if you don’t see the symptoms, your computer may be infected. The creators of spyware are constantly developing new ways of invading your privacy. Team Spybot

DetailsDetails

File name:sdhelper.dll
Publisher:Safer Networking Limited
Product name:Spybot - Search & Destroy
Description:SBSD IE Protection
Typical file path:C:\Program Files\spybot - search & destroy\sdhelper.dll
File version:1, 6, 2, 14
Product version:1, 6, 0, 0
Size:1.49 MB (1,562,960 bytes)
Certificate
Issued to:Safer Networking Ltd.
Authority (CA):VeriSign
Effective date:Thursday, March 23, 2006
Expiration date:Wednesday, April 8, 2009
Digital DNA
Entropy:6.569144
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following programs will install this file
ElcomSoft Co. Ltd.
4% remove
Recover passwords protecting office documents, ZIP and RAR archives. ElcomSoft password recovery tools can instantly unlock documents created in all versions of Corel and Lotus office suites. Benefit from guaranteed recovery time when unlocking Microsoft Office XP and 2000 documents and Adobe PDF files no matter how long complex the passwords are. Perform comprehensive attacks or use multiple processors, CPU cores and networked workstat...
Safer-Networking Ltd.
6% remove
Spybot Search & Destroy (S&D) is a spyware and adware removal computer program compatible with Microsoft Windows. It scans the computer hard disk and/or RAM for malicious software. In addition to spyware and adware detection and disinfection, Spybot-S&D can repair the registry, winsock LSPs, ActiveX objects, browser hijackers and BHOs, PUPS, computer cookies, trackerware, heavy duty, homepage hijackers, keyloggers, LSP, tracks, trojans,...
Safer-Networking Ltd.
12% remove

BehaviorsBehaviors

Internet Explorer Browser Helper Object
Located in the registry at 'SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects'
  • BHO CLSID: {53707962-6F74-2D53-2644-206D7942484F}
Internet Explorer extensions
  • CLSID: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2}

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 38.74%
Microsoft Windows XP 30.63%
Windows 7 Ultimate 9.01%
Windows Vista Home Premium 7.21%
Windows 7 Professional 6.31%
Windows 8 3.60%
Windows Vista Home Basic 1.80%
Windows Vista Business 1.80%
Windows XP Professional 0.90%

Distribution by countryDistribution by country

United States installs about 58.33% of Spybot - Search & Destroy.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Dell 35.29%
Hewlett-Packard 15.69%
ASUS 13.73%
Acer 9.80%
Intel 7.84%
Medion 5.88%
Sahara 3.92%
Lenovo 3.92%
American Megatrends 2.94%
GIGABYTE 0.98%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE