uhm
you can't really detect external software
...
do you even know what you are talking about
intercept the downloaded list via a MITM attack handled by Inject Hack.exe utilizing DNS lookups and the hosts.txt file to redirect connections to auth.blockland.us to localhost, which are then handled by Inject Hack.exe, which throws "BLHack.dll" into the list
nasty anti-malware problem solved
your solution will not work.
yeah, the first this I though about this was MITM
this wouldn't really work unless the list's MD5 hash would be checked
unless you can crack MD5 (I don't remember if they're secure anymore or not)