Jump to content

Removal instructions for ShopSafer


Recommended Posts

  • Staff

What is ShopSafer?

The Malwarebytes research team has determined that ShopSafer is adware. These adware applications display advertisements not originating from the sites you are browsing.

How do I know if my computer is affected by ShopSafer?

You may see this entry in your list of installed programs:

warning4.png

and this warning during install:

main.png

How did ShopSafer get on my computer?

Adware applications use different methods for distributing themselves. This particular one was bundled with other software.

How do I remove ShopSafer?

Our program Malwarebytes Anti-Malware can detect and remove this potentially unwanted program.

It is advisable to run the programs own uninstaller first (see earlier screenshot).

  • Please download Malwarebytes Anti-Malware to your desktop.
  • Double-click mbam-setup-version.exe and follow the prompts to install the program.
  • At the end, be sure a check-mark is placed next to the following:
    • Enable free trial of Malwarebytes Anti-Malware Premium
    • Launch Malwarebytes Anti-Malware
  • Then click Finish.
  • If an update is found, you will be prompted to download and install the latest version.
  • Once the program has loaded, select Scan now. Or select the Threat Scan from the Scan menu.
  • When the scan is complete , make sure that everything is set to "Quarantine", and click Apply Actions.
  • Reboot your computer if prompted.
Is there anything else I need to do to get rid of ShopSafer?
  • No, this method removes ShopSafer completely.
  • You should be prompted twice to reboot after removal. Malwarebytes Anti-Malware needs to restore your connection after removing this LSP-hijacker.
How would the full version of Malwarebytes Anti-Malware help protect me?

We hope our application and this guide have helped you eradicate this hijacker.

As you can see below the full version of Malwarebytes Anti-Malware would have protected you against the ShopSafer adware. It would have warned you before the rogue could install itself, giving you a chance to stop it before it became too late.

protection1.png

Technical details for experts

You will see these signs in a HijackThis log:

O4 - HKLM\..\Run: [Shopsafer] C:\Program Files\Shopsafer\Shopsafer\shopsafer.exeO10 - Unknown file in Winsock LSP: c:\windows\system32\shopsaferservice.dllO10 - Unknown file in Winsock LSP: c:\windows\system32\shopsaferservice.dllO10 - Unknown file in Winsock LSP: c:\windows\system32\shopsaferservice.dllO10 - Unknown file in Winsock LSP: c:\windows\system32\shopsaferservice.dllO10 - Unknown file in Winsock LSP: c:\windows\system32\shopsaferservice.dllO23 - Service: ShopSaferService - Shopsafer OU - C:\ProgramData\Shopsafer\Komodia\ShopSaferService.exe
You may see these signs in FRST logs:

 (Shopsafer OU) C:\ProgramData\Shopsafer\Komodia\ShopSaferService.exe (Shopsafer OU) C:\Program Files\Shopsafer\Shopsafer\shopsafer.exe (Shopsafer OU) C:\Program Files\Shopsafer\Shopsafer\shopsafer.exe HKLM-x32\...\Run: [Shopsafer] => C:\Program Files\Shopsafer\Shopsafer\shopsafer.exe [860672 2015-04-20] (Shopsafer OU) Winsock: Catalog9 01 C:\Windows\system32\ShopSaferService.dll [332224 2015-05-29] (Shopsafer OU) Winsock: Catalog9 02 C:\Windows\system32\ShopSaferService.dll [332224 2015-05-29] (Shopsafer OU) Winsock: Catalog9 03 C:\Windows\system32\ShopSaferService.dll [332224 2015-05-29] (Shopsafer OU) Winsock: Catalog9 04 C:\Windows\system32\ShopSaferService.dll [332224 2015-05-29] (Shopsafer OU) Winsock: Catalog9 23 C:\Windows\system32\ShopSaferService.dll [332224 2015-05-29] (Shopsafer OU) R2 ShopSaferService; C:\ProgramData\Shopsafer\Komodia\ShopSaferService.exe [1705816 2015-03-20] (Shopsafer OU) [File not signed] () C:\Windows\system32\ShopSaferServiceOff.ini () C:\Users\{username}\AppData\Local\Shopsafer () C:\ProgramData\Shopsafer () C:\Program Files\Shopsafer (Shopsafer OU) C:\Windows\system32\ShopSaferService.dllShopsafer (HKLM\...\{0DB47114-974D-4333-91DD-2D5208FE5402}) (Version: 1.0.0.0 - Shopsafer OU)HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ShopSaferService => ""="service"
Malwarebytes Anti-Malware log:

Malwarebytes Anti-Malwarewww.malwarebytes.orgScan Date: 5/29/2015Scan Time: 8:34:03 AMLogfile: mbamShopSafer.txtAdministrator: YesVersion: 2.01.6.1022Malware Database: v2015.05.29.01Rootkit Database: v2015.05.24.01License: PremiumMalware Protection: DisabledMalicious Website Protection: EnabledSelf-protection: DisabledOS: Windows 7 Service Pack 1CPU: x86File System: NTFSUser: MalwarebytesScan Type: Threat ScanResult: CompletedObjects Scanned: 292513Time Elapsed: 6 min, 0 secMemory: EnabledStartup: EnabledFilesystem: EnabledArchives: EnabledRootkits: DisabledHeuristics: EnabledPUP: EnabledPUM: EnabledProcesses: 3PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\ShopSaferService.exe, 984, Delete-on-Reboot, [44217722cbbfd3632ca43c2dba4ce51b]PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\shopsafer.exe, 1912, Delete-on-Reboot, [b0b5a6f3197160d6eae62d3c1bebcb35]PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\shopsafer.exe, 184, Delete-on-Reboot, [b0b5a6f3197160d6eae62d3c1bebcb35]Modules: 17PUP.Optional.ShopSafer.A, C:\Windows\System32\ShopSaferService.dll, Delete-on-Reboot, [ff66fd9cdeac2115359b1c4dd82ec838], PUP.Optional.ShopSafer.A, C:\Windows\System32\ShopSaferService.dll, Delete-on-Reboot, [ff66fd9cdeac2115359b1c4dd82ec838], PUP.Optional.ShopSafer.A, C:\Windows\System32\ShopSaferService.dll, Delete-on-Reboot, [ff66fd9cdeac2115359b1c4dd82ec838], PUP.Optional.ShopSafer.A, C:\Windows\System32\ShopSaferService.dll, Delete-on-Reboot, [ff66fd9cdeac2115359b1c4dd82ec838], PUP.Optional.ShopSafer.A, C:\Windows\System32\ShopSaferService.dll, Delete-on-Reboot, [ff66fd9cdeac2115359b1c4dd82ec838], PUP.Optional.ShopSafer.A, C:\Windows\System32\ShopSaferService.dll, Delete-on-Reboot, [ff66fd9cdeac2115359b1c4dd82ec838], PUP.Optional.ShopSafer.A, C:\Windows\System32\ShopSaferService.dll, Delete-on-Reboot, [ff66fd9cdeac2115359b1c4dd82ec838], PUP.Optional.ShopSafer.A, C:\Windows\System32\ShopSaferService.dll, Delete-on-Reboot, [ff66fd9cdeac2115359b1c4dd82ec838], PUP.Optional.ShopSafer.A, C:\Windows\System32\ShopSaferService.dll, Delete-on-Reboot, [ff66fd9cdeac2115359b1c4dd82ec838], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\ShopSaferCert.dll, Delete-on-Reboot, [075e70292b5f072f636d78f1de28f808], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\freebl3.dll, Delete-on-Reboot, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\libnspr4.dll, Delete-on-Reboot, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\libplc4.dll, Delete-on-Reboot, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\libplds4.dll, Delete-on-Reboot, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\nss3.dll, Delete-on-Reboot, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\nssutil3.dll, Delete-on-Reboot, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\smime3.dll, Delete-on-Reboot, [ce97dcbd5634c373822e558be122dc24], Registry Keys: 34PUP.Optional.ShopSafer.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\ShopSaferService, Quarantined, [44217722cbbfd3632ca43c2dba4ce51b], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{B49B02F3-03FE-41DD-BA6F-F8F79E2D5717}, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{0B3F6D64-8861-46F1-851B-2B1255C1C431}, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{32EDB16B-1C87-4342-BD1D-EB37DF0A55C1}, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{3779D470-2F87-4C21-A8CB-CA62ED9015D4}, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{430CB252-3C12-4251-BEBC-15E205F12304}, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{5CE472B0-75AA-4DB3-85C7-3F15BFCEA0F8}, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{6521206F-6FDF-4C38-BF1B-2E5C5C79FB83}, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{6B65C978-F4B5-4CFE-84A3-28EF8038A55F}, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{70739A5D-AB9B-4A36-AD94-E6B27C7F4FB3}, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{8F715EC7-A1EC-4636-A53C-D4214CEFF062}, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{9F5667B7-4026-45A4-B2C4-6BECBCEB3C0F}, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{A18D22AF-CC1F-44E6-9CFA-A44499AE2852}, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{ADAAB456-75C7-403D-B6CB-5A2153E0D758}, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{F5E8FF24-DB24-4024-A208-35673430833F}, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\Shopsafer, Quarantined, [d98c4d4c3258171f9b1a4799a55e7987], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\ShopSaferServiceLib.DataContainer, Quarantined, [105594053b4f86b09919469a7291dd23], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\ShopSaferServiceLib.DataContainer.1, Quarantined, [e97c1b7e4b3f3df9189abd23d13234cc], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\ShopSaferServiceLib.DataController, Quarantined, [dc89990077131c1abbf7479904fff40c], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\ShopSaferServiceLib.DataController.1, Quarantined, [baab6d2c01897fb70ba736aa9b68619f], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\ShopSaferServiceLib.DataTable, Quarantined, [a2c38b0e7a102e08a30f4f91877cde22], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\ShopSaferServiceLib.DataTable.1, Quarantined, [4f16bfda3e4c61d5c7ebd60a5fa4b64a], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\ShopSaferServiceLib.DataTableFields, Quarantined, [24415e3b523896a0308236aa867da759], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\ShopSaferServiceLib.DataTableFields.1, Quarantined, [83e25841fc8ecd692c860fd15ba81be5], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\ShopSaferServiceLib.DataTableHolder, Quarantined, [ef7674251b6f51e58e2413cdf60d22de], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\ShopSaferServiceLib.DataTableHolder.1, Quarantined, [7ce9d7c27e0c73c3a70b4b9522e1ef11], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\ShopSaferServiceLib.LSPLogic, Quarantined, [c99ce2b7fd8dbd799919b0300ff4d22e], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\ShopSaferServiceLib.LSPLogic.1, Quarantined, [aeb7970298f2b086ad05d20e6c970000], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\ShopSaferServiceLib.ReadOnlyManager, Quarantined, [e382396065253006575b776913f0c937], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\ShopSaferServiceLib.ReadOnlyManager.1, Quarantined, [ec794257deaca88e377b617fab581ce4], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\ShopSaferServiceLib.WFPController, Quarantined, [22438e0bf1994aecbcf6cf110ff47f81], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\ShopSaferServiceLib.WFPController.1, Quarantined, [cc99a4f5f199053172405a86f70c936d], PUP.Optional.ShopSafer.A, HKU\S-1-5-18\SOFTWARE\Shopsafer, Quarantined, [026305946228d363c9eac41cf013a060], PUP.Optional.ShopSafer.A, HKCU\SOFTWARE\Shopsafer, Quarantined, [e283e7b23f4bbb7b872c02de59aaec14], Registry Values: 1PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|Shopsafer, C:\Program Files\Shopsafer\Shopsafer\shopsafer.exe, Quarantined, [b0b5a6f3197160d6eae62d3c1bebcb35]Registry Data: 0(No malicious items detected)Folders: 5PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia, Delete-on-Reboot, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer, Delete-on-Reboot, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.Winsock.HijackBoot, C:\Windows\System32\config\systemprofile\AppData\Local\ShopSaferService, Quarantined, [174e97027812c076a61ad40c20e3da26], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer, Delete-on-Reboot, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], Files: 57PUP.Optional.ShopSafer.A, C:\Windows\System32\ShopSaferService.dll, Delete-on-Reboot, [ff66fd9cdeac2115359b1c4dd82ec838], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\ShopSaferService.exe, Delete-on-Reboot, [44217722cbbfd3632ca43c2dba4ce51b], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\ShopSaferCert.dll, Delete-on-Reboot, [075e70292b5f072f636d78f1de28f808], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\shopsafer.exe, Delete-on-Reboot, [b0b5a6f3197160d6eae62d3c1bebcb35], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\ShopsaferLSP.exe, Quarantined, [32339306107ac373844cf574bc4a8c74], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\ShopsaferLSP64.exe, Quarantined, [e87d3e5b3e4cbd794b8582e719ede917], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\ShopSaferService.dll, Quarantined, [5e076435117973c310c09dcce91d19e7], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\ShopSaferService64.dll, Quarantined, [e3826930ee9c7eb88b45d09966a037c9], PUP.Optional.ShopSafer.A, C:\Users\{username}\Desktop\Shopsafer.msi, Quarantined, [77ee6b2edab011251eb2baaf986e9868], PUP.Optional.ShopSafer.A, C:\Windows\Installer\5f4fb.msi, Quarantined, [21448d0c92f8e353eae6de8b61a5c040], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\freebl3.dll, Delete-on-Reboot, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\install.bat, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\install64.bat, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\libnspr4.dll, Delete-on-Reboot, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\libplc4.dll, Delete-on-Reboot, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\libplds4.dll, Delete-on-Reboot, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\nss3.dll, Delete-on-Reboot, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\nssckbi.dll, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\nssdbm3.dll, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\nssutil3.dll, Delete-on-Reboot, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\ShopsaferLSP.ini, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\ShopSaferService.tlb, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\smime3.dll, Delete-on-Reboot, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\softokn3.dll, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\sqlite3.dll, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\ssl3.dll, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\uninstall.bat, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\uninstall64.bat, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\Users\{username}\AppData\Local\Temp\ShopSaferServicer.log, Quarantined, [5c09b5e44644e155733e726e59aa0ef2], PUP.Optional.ShopSafer.A, C:\Windows\Temp\ShopSaferService.log, Delete-on-Reboot, [0c59435654362a0c4e63e5fb3fc4ab55], PUP.Optional.ShopSafer.A, C:\Windows\Temp\ShopSaferServicer.log, Quarantined, [04611089e8a230066e43c21ea162946c], PUP.Optional.Winsock.HijackBoot, C:\Windows\System32\config\systemprofile\AppData\Local\ShopSaferService\ShopSaferService.ini, Quarantined, [174e97027812c076a61ad40c20e3da26], PUP.Optional.Winsock.HijackBoot, C:\Windows\System32\ShopSaferServiceOff.ini, Quarantined, [94d1564365254aec8939766a5aa917e9], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\freebl3.dll, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\install.bat, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\install64.bat, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\libnspr4.dll, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\libplc4.dll, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\libplds4.dll, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\nss3.dll, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\nssckbi.dll, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\nssdbm3.dll, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\nssutil3.dll, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\ShopSaferCert.dll, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\ShopsaferLSP.exe, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\ShopsaferLSP.ini, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\ShopsaferLSP64.exe, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\ShopSaferService.dll, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\ShopSaferService.exe, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\ShopSaferService.tlb, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\ShopSaferService64.dll, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\smime3.dll, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\softokn3.dll, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\sqlite3.dll, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\ssl3.dll, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\uninstall.bat, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\uninstall64.bat, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], Physical Sectors: 0(No malicious items detected)(end)
As mentioned before the full version of Malwarebytes Anti-Malware could have protected your computer against this threat.

We use different ways of protecting your computer(s):

  • Dynamically Blocks Malware Sites & Servers
  • Malware Execution Prevention
Save yourself the hassle and get protected.
Link to post
Share on other sites
  • Recently Browsing   0 members

    No registered users viewing this page.

Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.