sdupdsvc.exe may be a dangerous application, according to an automatic analysis of the program's operation. This program triggers many of the "possible danger" criteria detailed bellow. It is yet unknown if sdupdsvc.exe is malware or not that doesn't cause harm your computer. We recommend you to be careful with this application.

Executable file path

 C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe

C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe.

MD5 hash of the executable file


The MD5 checksum for this file is 94653c9cfdc15b30eeecd94ba7219654.

Is running as a service


This program is registered as a Windows service. This means it runs on your PC in background, usually without displaying any user interface to you. Most Windows services are ok programs, which perform useful features to other applications or to the Windows Operating System.

Accesses the internet


This application uses the net to communicate. In this day and age this is expected from a program. For example, most of the apps on your computer check for updates. For this, Internet communications are necessary.

Is a 32 bit executable file


This exe runs in 32-bit mode. It does not exploit the entire set of features of nowadays' computer processors. This ordinarily happens because the makers did not upgrade it to use the x64 instruction set.

File description

 Spybot-S&D 2 Background update service

File version

 Safer-Networking Ltd.

 © 2008-2016 Safer-Networking Ltd. All rights reserved.

Is an encrypted file


The machine code of this program appears to be compressed or obfuscated so it can not be easily evaluated by an expert.

Potentially dangerous functions


Some dangerous features of Windows have been used, such as functions for tapping the keyboard. We advise you to be very careful regarding this program.

Digitally signed


sdupdsvc.exe has a digital signature. Nowadays most virus-free programs are digitally signed.

Valid digital signature


The digital signature is invalid, which indicates this program may be malware and that somebody probably tampered with it after the signature was generated. We advise extreme caution!

Certifier email

Certifier name

 Safer-Networking Ltd.

Issuer name

 StartCom Class 2 Primary Intermediate Object CA

Can be uninstalled


It has an uninstall string in registry, which is good. si are uninstall.