SDWELCOME.EXE

SDWELCOME.EXE

The file SDWelcome.exe has internal name: SDWelcome.exe. The file SDWelcome.exe description is: Start Center. The file SDWelcome.exe is related to the Safer-Networking Ltd.. The version of the file SDWelcome.exe: 2.0.9.123. The SDWelcome.exe is a part of software product: Spybot – Search & Destroy LegalCopyright: ? 1999-2012 Safer-Networking Ltd. All rights reserved..
The file SDWelcome.exe size is: 3 605 528 bytes.
Default location: %Program Files%\Spybot – Search & Destroy 2\SDWelcome.exe
SDWelcome.exe MD5: D714D74F1CAE456C001C0D17FA8A6F85
SDWelcome.exe SHA1: 1479EEAD 27F39525 20579892 7E08BA0B 8FEB3E77

Registry strings in the SDWelcome.exe:

\SOFTWARE\Microsoft\Internet Explorer\
\SOFTWARE\Microsoft\Windows\CurrentVersion\
\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\Opera.exe\
\Software\Microsoft\Windows\CurrentVersion\Explorer
\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders
\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\
\Software\Safer Networking Limited\Games\Knight Hop\
MACHINE,”\Software\Microsoft\Windows\CurrentVersion\”,”HidingSpywareValue”
Software\CLASSES\CLSID\
Software\Microsoft\Windows NT\CurrentVersion\
Software\Microsoft\Windows\CurrentVersion\
Software\Microsoft\Windows\CurrentVersion\Installer\
Software\Microsoft\Windows\CurrentVersion\Setup\
Software\Wow6432Node\
SYSTEM\CurrentControlSet\services\
USER,”\Software\Example.com\RecentFiles”
USER,”\Software\Microsoft\Internet Explorer\Main\”,”Save Directory=”
USER,\SOFTWARE\,”Spyware”

The SDWELCOME.EXE related files:
advapi32.dll comctl32.dll crypt32.dll gdi32.dll kernel32.dll ModuleUsage:”spyware/spyware.dllnetapi32.dll ole32.dll oleaut32.dll SharedDLL:library.dll shell32.dll sqlite3.dll SYSDIR>\spyware.dlluser32.dll utildll.dll version.dll WINDIR>\*.exe“,”:malware: wininet.dll winmm.dll

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Download UnHackMe
Fully Functional 30-day Trial. No credit is required. Reviews. EULA. Privacy Policy.

Leave a Reply