SDTray.exe

Spybot - Search & Destroy

Safer Networking Ltd.

It is set to automatically execute when any user logs into Windows (through the local user run registry setting) with the name ‘SDTray’. This is installed with Spybot - Search & Destroy.
Publisher:
Safer-Networking Ltd.  (signed by Safer Networking Ltd.)

Product:
Spybot - Search & Destroy

Description:
Spybot - Search & Destroy tray access

Version:
2.3.39.129

MD5:
f336ad03be347dd5b585ad36ac78751b

SHA-1:
a28d521ba467e3b0bc458221caa07d6b67ed61ed

SHA-256:
994219ca29fce455d0af8267fb2460786a6e7abd930f80aa3750e70457fd3a7f

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/25/2024 12:18:53 AM UTC  (today)

File size:
3.9 MB (4,101,584 bytes)

Product version:
2.3.39.0

Copyright:
© 2009-2014 Safer-Networking Ltd. All rights reserved.

Trademarks:
Spybot® and Spybot - Search & Destroy® are registered trademarks.

Original file name:
SDTray.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\spybot - search & destroy 2\sdtray.exe

Digital Signature
Authority:
VeriSign, Inc.

Valid from:
3/21/2012 6:00:00 AM

Valid to:
4/8/2015 5:59:59 AM

Subject:
CN=Safer Networking Ltd., OU=Security Solutions, OU=Digital ID Class 3 - Microsoft Software Validation v2, O=Safer Networking Ltd., L=Greystones, S=County Wicklow, C=IE

Issuer:
CN=VeriSign Class 3 Code Signing 2010 CA, OU=Terms of use at https://www.verisign.com/rpa (c)10, OU=VeriSign Trust Network, O="VeriSign, Inc.", C=US

Serial number:
1ABEE452F106342568D826705DC1F4B1

File PE Metadata
Compilation timestamp:
4/25/2014 6:14:26 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
49152:COJdoDUz31ZCJA4u/rg8x31JWE9I3STq49RTOKcuAL5/itcoc2iD:YDUz3HC2M8x3HWESk9RTOKjAL5/iqt2s

Entry address:
0x21DFEC

Entry point:
55, 8B, EC, 83, C4, F0, 53, 56, 57, B8, 04, 00, 61, 30, E8, 0D, 37, DE, FF, 8B, 1D, 04, FB, 63, 30, B8, E0, E0, 61, 30, E8, 5D, 7A, DE, FF, 33, D2, 55, 68, C5, E0, 61, 30, 64, FF, 32, 64, 89, 22, E8, 02, 1F, FF, FF, E8, CD, 89, FC, FF, 84, C0, 74, 0A, E8, A8, 31, DE, FF, E9, 97, 00, 00, 00, 33, D2, 55, 68, 8B, E0, 61, 30, 64, FF, 32, 64, 89, 22, 8B, 03, E8, 3A, 76, DE, FF, 8B, 03, BA, FC, E0, 61, 30, E8, 1E, 76, DE, FF, 8B, 03, 66, BA, E8, 03, E8, CF, 25, E2, FF, 8B, 03, C6, 40, 5B, 00, 8B, 0D, A8, 79, 63...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
2.1 MB (2,215,424 bytes)

Startup File (All Users Run)
Registry location:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
SDTray

Command:
"C:\Program Files\spybot - search & destroy 2\sdtray.exe"


The file SDTray.exe has been discovered within the following program.

Spybot - Search & Destroy  by Safer-Networking Ltd.
Spybot Search & Destroy (S&D) is a spyware and adware removal computer program compatible with Microsoft Windows. It scans the computer hard disk and/or RAM for malicious software.
www.safer-networking.org
8% remove it
 
Powered by Should I Remove It?

Scan SDTray.exe - Powered by Reason Core Security