Should I block it?

20%
20% of PCs block this file from running.

VersionsAdditional versions

1, 6, 2, 14 96.40%
1, 6, 2, 14 2.70%
1, 3, 0, 12 0.90%

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
RegQueryValueExA, RegOpenKeyExA, RegCloseKey, SetSecurityDescriptorDacl, RegSetValueExA, RegQueryInfoKeyA, RegFlushKey, RegEnumKeyA, RegEnumKeyExA, RegDeleteValueA, RegDeleteKeyA, RegCreateKeyExA, InitializeSecurityDescriptor, GetUserNameA, FreeSid, AllocateAndInitializeSid
comctl32.dll
_TrackMouseEvent, ImageList_SetIconSize, ImageList_GetIconSize, ImageList_Write, ImageList_Read, ImageList_GetDragImage, ImageList_DragShowNolock, ImageList_DragMove, ImageList_DragLeave, ImageList_DragEnter, ImageList_EndDrag, ImageList_BeginDrag, ImageList_Remove, ImageList_DrawEx, ImageList_Replace, ImageList_Draw, ImageList_GetBkColor, ImageList_SetBkColor, ImageList_Add, ImageList_GetImageCount, ImageList_Destroy, ImageList_Create, InitCommonControls
comdlg32.dll
PrintDlgA, GetSaveFileNameA
gdi32.dll
UnrealizeObject, TextOutA, StretchDIBits, StretchBlt, StartPage, StartDocA, SetWindowOrgEx, SetWinMetaFileBits, SetViewportOrgEx, SetTextColor, SetStretchBltMode, SetROP2, SetPixel, SetMapMode, SetEnhMetaFileBits, SetDIBColorTable, SetBrushOrgEx, SetBkMode, SetBkColor, SetAbortProc, SelectPalette, SelectObject, SelectClipRgn, SaveDC, RoundRect, RestoreDC, Rectangle, RectVisible, RealizePalette, Polyline, PlayEnhMetaFile, PatBlt, MoveToEx, MaskBlt, LineTo, LPtoDP, IntersectClipRect, GetWindowOrgEx, GetWinMetaFileBits, GetTextMetricsA, GetTextFaceA, GetTextExtentPointA, GetTextExtentPoint32W, GetTextExtentPoint32A, GetSystemPaletteEntries, GetStockObject, GetRgnBox, GetPixel, GetPaletteEntries, GetObjectA, GetNearestPaletteIndex, GetEnhMetaFilePaletteEntries, GetEnhMetaFileHeader, GetEnhMetaFileDescriptionA, GetEnhMetaFileBits, GetDeviceCaps, GetDIBits, GetDIBColorTable, GetDCOrgEx, GetCurrentPositionEx, GetClipBox, GetBrushOrgEx, GetBitmapBits, GdiFlush, ExtTextOutA, ExtFloodFill, ExcludeClipRect, EndPage, EndDoc, DeleteObject, DeleteEnhMetaFile, DeleteDC, CreateSolidBrush, CreateRoundRectRgn, CreateRectRgnIndirect, CreatePenIndirect, CreatePen, CreatePalette, CreateICA, CreateHalftonePalette, CreateFontIndirectA, CreateFontA, CreateEnhMetaFileA, CreateDIBitmap, CreateDIBSection, CreateDCA, CreateCompatibleDC, CreateCompatibleBitmap, CreateBrushIndirect, CreateBitmap, CopyEnhMetaFileA, CombineRgn, CloseEnhMetaFile, BitBlt
kernel32.dll
GetACP, Sleep, VirtualFree, VirtualAlloc, GetTickCount, QueryPerformanceCounter, GetCurrentThreadId, InterlockedDecrement, InterlockedIncrement, VirtualQuery, WideCharToMultiByte, MultiByteToWideChar, lstrlenA, lstrcpynA, LoadLibraryExA, GetThreadLocale, GetStartupInfoA, GetProcAddress, GetModuleHandleA, GetModuleFileNameA, GetLocaleInfoA, GetLastError, GetCommandLineA, FreeLibrary, FindFirstFileA, FindClose, ExitProcess, ExitThread, CreateThread, CompareStringA, WriteFile, UnhandledExceptionFilter, SetFilePointer, SetEndOfFile, RtlUnwind, ReadFile, RaiseException, GetStdHandle, GetFileSize, GetFileType, CreateFileA, CloseHandle, TlsSetValue, TlsGetValue, TlsFree, TlsAlloc, LocalFree, LocalAlloc, lstrcpyA, lstrcmpA, WaitForSingleObject, VirtualProtect, UnmapViewOfFile, TerminateThread, TerminateProcess, SystemTimeToFileTime, SuspendThread, SizeofResource, SetUnhandledExceptionFilter, SetThreadPriority, SetThreadLocale, SetLastError, SetFileAttributesA, SetEvent, SetErrorMode, ResumeThread, ResetEvent, RemoveDirectoryA, ReleaseMutex, ReadProcessMemory, QueryPerformanceFrequency, OutputDebugStringA, OpenProcess, OpenFileMappingA, MulDiv, MapViewOfFile, LockResource, LocalSize, LoadResource, LoadLibraryA, LeaveCriticalSection, IsBadReadPtr, InitializeCriticalSection, GlobalUnlock, GlobalSize, GlobalReAlloc, GlobalMemoryStatus, GlobalHandle, GlobalLock, GlobalFree, GlobalFindAtomA, GlobalDeleteAtom, GlobalAlloc, GlobalAddAtomA, GetWindowsDirectoryA, GetVersionExW, GetVersionExA, GetVersion, GetUserDefaultLCID, GetTimeZoneInformation, GetThreadPriority, GetThreadContext, GetTempPathA, GetSystemTime, GetSystemDirectoryA, GetShortPathNameA, GetProfileStringA, GetPriorityClass, GetModuleHandleW, GetModuleFileNameW, GetLogicalDrives, GetLocalTime, GetFullPathNameA, GetFileTime, GetFileAttributesA, GetExitCodeThread, GetDriveTypeA, GetDiskFreeSpaceA, GetDateFormatA, GetCurrentThread, GetCurrentProcessId, GetCurrentProcess, GetComputerNameA, GetCPInfo, FreeResource, InterlockedExchange, FormatMessageA, FindResourceA, FindNextFileA, FileTimeToSystemTime, FileTimeToLocalFileTime, FileTimeToDosDateTime, ExpandEnvironmentStringsA, EnumCalendarInfoA, EnterCriticalSection, DuplicateHandle, DeleteFileA, DeleteCriticalSection, CreateRemoteThread, CreateProcessA, CreatePipe, CreateMutexA, CreateFileMappingW, CreateFileMappingA, CreateFileW, CreateEventA, CreateDirectoryA, CopyFileA, CompareStringW, Beep
ole32.dll
CreateStreamOnHGlobal, IsAccelerator, OleDraw, OleSetMenuDescriptor, CoTaskMemFree, CoTaskMemAlloc, ProgIDFromCLSID, StringFromCLSID, CoCreateInstance, CoLockObjectExternal, CoDisconnectObject, CoRevokeClassObject, CoRegisterClassObject, CoGetClassObject, CoUninitialize, CoInitialize, IsEqualGUID
oleaut32.dll
SysFreeString, SysReAllocStringLen, SysAllocStringLen, CreateErrorInfo, GetErrorInfo, SetErrorInfo, GetActiveObject, RegisterTypeLib, LoadTypeLibEx, SafeArrayPtrOfIndex, SafeArrayGetUBound, SafeArrayGetLBound, SafeArrayCreate, VariantChangeType, VariantCopy, VariantClear, VariantInit
shell32.dll
ShellExecuteExA, ShellExecuteW, ShellExecuteA, ExtractIconA, SHGetSpecialFolderLocation, SHGetPathFromIDListA, SHGetMalloc
user32.dll
GetKeyboardType, DestroyWindow, LoadStringA, MessageBoxA, CharNextA, DllMain
version.dll
VerQueryValueA, GetFileVersionInfoSizeA, GetFileVersionInfoA
wininet.dll
UnlockUrlCacheEntryFile, FindNextUrlCacheEntryA, FindFirstUrlCacheEntryA, FindCloseUrlCache, DeleteUrlCacheEntry, HttpQueryInfoA, HttpSendRequestA, HttpOpenRequestA, InternetReadFile, InternetConnectA, InternetCloseHandle, InternetOpenA
winspool.drv
OpenPrinterA, EnumPrintersA, DocumentPropertiesA, ClosePrinter
wsock32.dll
WSACleanup, WSAStartup, gethostbyname, socket, setsockopt, sendto, send, select, recvfrom, recv, inet_addr, htons, connect, closesocket, bind
Export table
DllCanUnloadNow
DllGetClassObject
DllRegisterServer
DllUnregisterServer
madTraceProcess

sdhelper.dll

Spybot - Search & Destroy by Safer Networking Ltd. (Signed)

Remove sdhelper.dll
Version:   1, 3, 0, 12
MD5:   abf5ba518c6a5ed104496ff42d19ad88
SHA1:   0011db7826e9079cf9ea15266f512e298d33e64e
SHA256:   457b10df1bb47c47dcaf029b041b37bffc405c1c2a897a603b9df53027cf18f8

What is sdhelper.dll?

SBSD IE Protection for Spybot Search & Destroy (S&D) is a spyware and adware removal computer program that scans the computer hard disk and/or RAM for malicious software. In addition to spyware and adware detection and disinfection, Spybot-S&D can repair the registry, winsock LSPs, ActiveX objects, browser hijackers and BHOs, PUPS, computer cookies, trackerware, heavy duty, homepage hijackers, keyloggers, LSP, tracks, trojans, spybots, revision, and other kinds of malware.

About sdhelper.dll (from Safer Networking Ltd.)

Spybot-S&D is free for private use. Even if you don’t see the symptoms, your computer may be infected. The creators of spyware are constantly developing new ways of invading your privacy. Team Spybot

DetailsDetails

File name:sdhelper.dll
Publisher:Safer Networking Limited
Product name:Spybot - Search & Destroy
Description:SBSD IE Protection
Typical file path:C:\Program Files\spybot - search & destroy\sdhelper.dll
File version:1, 3, 0, 12
Size:727.5 KB (744,960 bytes)
Certificate
Issued to:Safer Networking Ltd.
Authority (CA):VeriSign
Effective date:Thursday, March 23, 2006
Expiration date:Wednesday, April 8, 2009
Digital DNA
Entropy:6.569144
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following program will install this file
Safer-Networking Ltd.
9% remove
Spybot Search & Destroy (S&D) is a spyware and adware removal computer program compatible with Microsoft Windows. It scans the computer hard disk and/or RAM for malicious software. In addition to spyware and adware detection and disinfection, Spybot-S&D can repair the registry, winsock LSPs, ActiveX objects, browser hijackers and BHOs, PUPS, computer cookies, trackerware, heavy duty, homepage hijackers, keyloggers, LSP, tracks, trojans,...

BehaviorsBehaviors

Internet Explorer Browser Helper Object
Located in the registry at 'SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects'
  • BHO CLSID: {53707962-6F74-2D53-2644-206D7942484F}
Internet Explorer extensions
  • CLSID: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2}

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 38.74%
Microsoft Windows XP 30.63%
Windows 7 Ultimate 9.01%
Windows Vista Home Premium 7.21%
Windows 7 Professional 6.31%
Windows 8 3.60%
Windows Vista Home Basic 1.80%
Windows Vista Business 1.80%
Windows XP Professional 0.90%

Distribution by countryDistribution by country

United States installs about 58.33% of Spybot - Search & Destroy.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Dell 35.29%
Hewlett-Packard 15.69%
ASUS 13.73%
Acer 9.80%
Intel 7.84%
Medion 5.88%
Sahara 3.92%
Lenovo 3.92%
American Megatrends 2.94%
GIGABYTE 0.98%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE