Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

2.3.39.2 5.88%
2.2.22.2 17.65%
2.1.18.2 10.59%
2.0.12.2 60.00%
2.0.8.2 4.71%
2.0.3.1 1.18%

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
ControlService, RegOpenKeyExW, SetServiceStatus, QueryServiceStatus, StartServiceW, RegQueryValueExW, RegisterServiceCtrlHandlerExW, OpenServiceW, StartServiceCtrlDispatcherW, OpenSCManagerW, DeleteService, CloseServiceHandle, CreateServiceW, RegCloseKey
kernel32.dll
SetLastError, CreateThread, LocalFree, CloseHandle, lstrcmpiW, CreateEventW, GetLastError, GetModuleFileNameW, GetVersionExW, FormatMessageW, SetEvent, CreateProcessW, GetCommandLineW, CreateFileW, WriteConsoleW, SetStdHandle, GetSystemTimeAsFileTime, HeapSetInformation, RaiseException, TerminateProcess, GetCurrentProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, HeapAlloc, HeapFree, IsProcessorFeaturePresent, EnterCriticalSection, LeaveCriticalSection, DecodePointer, EncodePointer, GetProcAddress, GetModuleHandleW, ExitProcess, WriteFile, GetStdHandle, FreeEnvironmentStringsW, GetEnvironmentStringsW, SetHandleCount, InitializeCriticalSectionAndSpinCount, GetFileType, GetStartupInfoW, DeleteCriticalSection, TlsAlloc, TlsGetValue, TlsSetValue, TlsFree, InterlockedIncrement, GetCurrentThreadId, InterlockedDecrement, HeapCreate, QueryPerformanceCounter, GetTickCount, GetCurrentProcessId, Sleep, GetCPInfo, GetACP, GetOEMCP, IsValidCodePage, WideCharToMultiByte, RtlUnwind, HeapSize, SetFilePointer, GetConsoleCP, GetConsoleMode, LoadLibraryW, HeapReAlloc, FlushFileBuffers, LCMapStringW, MultiByteToWideChar, GetStringTypeW, GetVersionExA, LoadLibraryA
ole32.dll
CoCreateInstance, CoUninitialize, CoInitialize
user32.dll
MsgWaitForMultipleObjects

SDWSCSvc.exe

Spybot - Search & Destroy by Safer Networking Ltd. (Signed)

Remove SDWSCSvc.exe
Version:   2.3.39.2
MD5:   9b9b368a8ff5caf91d7a333cf62cd2cc
SHA1:   c79b42b3f39efa7af3321850d4ad83cad74642e3

What is SDWSCSvc.exe?

Windows Security Center integration for Spybot Search & Destroy (S&D) is a spyware and adware removal computer program that scans the computer hard disk and/or RAM for malicious software. In addition to spyware and adware detection and disinfection, Spybot-S&D can repair the registry, winsock LSPs, ActiveX objects, browser hijackers and BHOs, PUPS, computer cookies, trackerware, heavy duty, homepage hijackers, keyloggers, LSP, tracks, trojans, spybots, revision, and other kinds of malware.

About SDWSCSvc.exe (from Safer Networking Ltd.)

Spybot-S&D is free for private use. Even if you don’t see the symptoms, your computer may be infected. The creators of spyware are constantly developing new ways of invading your privacy. Team Spybot

DetailsDetails

File name:sdwscsvc.exe
Publisher:Safer-Networking Ltd.
Product name:Spybot - Search & Destroy
Description:Windows Security Center integration.
Typical file path:C:\Program Files\spybot - search & destroy 2\sdwscsvc.exe
File version:2.3.39.2
Product version:2.3.39.0
Size:167.9 KB (171,928 bytes)
Build date:4/25/2014 7:12 AM
Certificate
Issued to:Safer Networking Ltd.
Authority (CA):VeriSign
Effective date:Tuesday, March 20, 2012
Expiration date:Tuesday, April 7, 2015
Digital DNA
File packed:No
.NET CLR:No
More details

BehaviorsBehaviors

Services
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • SDWSCService
  • 'SDWSCService' (Spybot-S&D 2 Security Center Service)

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00052293%
0.028634%
Kernel CPU:0.00035579%
0.013761%
User CPU:0.00016714%
0.014873%
Kernel CPU time:70,528 ms/min
100,923,805ms/min
Memory
Private memory:6.59 MB
21.59 MB
Private (maximum):11.36 MB
Private (minimum):7.52 MB
Non-paged memory:6.59 MB
21.59 MB
Virtual memory:68.4 MB
140.96 MB
Virtual memory (peak):69.78 MB
169.69 MB
Working set:8.09 MB
18.61 MB
Working set (peak):11.46 MB
37.95 MB
Page faults:1,513,891/min
2,039/min
Resource allocations
Threads:6
12
Handles:141
600

BehaviorsProcess properties

Integrety level:System
Platform:64-bit
Command line:"C:\Program Files\spybot - search & destroy 2\sdwscsvc.exe"
Owner:SYSTEM
Windows Service
Service name:SDWSCService
Display name:SDWSCService
Description:“Integrates Spybot into the Windows Security Center.”
Type:Win32OwnProcess
Parent process:services.exe (Services and Controller app by Microsoft)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 50.59%
Windows 7 Professional 10.59%
Windows 7 Ultimate 7.06%
Microsoft Windows XP 7.06%
Windows 8 5.88%
Windows 8.1 Pro 4.71%
Windows 8 Single Language 2.35%
Windows Vista Home Basic 2.35%
Windows Vista Business 2.35%
Windows 8 Pro with Media Center 2.35%
Windows Vista Home Premium 2.35%
Windows 7 Home Basic 2.35%

Distribution by countryDistribution by country

United States installs about 62.35% of Spybot - Search & Destroy.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Dell 24.39%
Sony 19.51%
Hewlett-Packard 14.63%
Acer 10.98%
ASUS 9.76%
Toshiba 4.88%
Intel 4.88%
Alienware 2.44%
Lenovo 2.44%
American Megatrends 2.44%
Samsung 2.44%
GIGABYTE 1.22%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE