What is ShopSafer?
The Malwarebytes research team has determined that ShopSafer is adware. These adware applications display advertisements not originating from the sites you are browsing.
How do I know if my computer is affected by ShopSafer?
You may see this entry in your list of installed programs:
and this warning during install:
How did ShopSafer get on my computer?
Adware applications use different methods for distributing themselves. This particular one was bundled with other software.
How do I remove ShopSafer?
Our program Malwarebytes Anti-Malware can detect and remove this potentially unwanted program.
It is advisable to run the programs own uninstaller first (see earlier screenshot).
- Please download Malwarebytes Anti-Malware to your desktop.
- Double-click mbam-setup-version.exe and follow the prompts to install the program.
- At the end, be sure a check-mark is placed next to the following:
- Enable free trial of Malwarebytes Anti-Malware Premium
- Launch Malwarebytes Anti-Malware
- Then click Finish.
- If an update is found, you will be prompted to download and install the latest version.
- Once the program has loaded, select Scan now. Or select the Threat Scan from the Scan menu.
- When the scan is complete , make sure that everything is set to "Quarantine", and click Apply Actions.
- Reboot your computer if prompted.
- No, this method removes ShopSafer completely.
- You should be prompted twice to reboot after removal. Malwarebytes Anti-Malware needs to restore your connection after removing this LSP-hijacker.
We hope our application and this guide have helped you eradicate this hijacker.
As you can see below the full version of Malwarebytes Anti-Malware would have protected you against the ShopSafer adware. It would have warned you before the rogue could install itself, giving you a chance to stop it before it became too late.
Technical details for experts
You will see these signs in a HijackThis log:
O4 - HKLM\..\Run: [Shopsafer] C:\Program Files\Shopsafer\Shopsafer\shopsafer.exe O10 - Unknown file in Winsock LSP: c:\windows\system32\shopsaferservice.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\shopsaferservice.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\shopsaferservice.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\shopsaferservice.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\shopsaferservice.dll O23 - Service: ShopSaferService - Shopsafer OU - C:\ProgramData\Shopsafer\Komodia\ShopSaferService.exeYou may see these signs in FRST logs:
(Shopsafer OU) C:\ProgramData\Shopsafer\Komodia\ShopSaferService.exe (Shopsafer OU) C:\Program Files\Shopsafer\Shopsafer\shopsafer.exe (Shopsafer OU) C:\Program Files\Shopsafer\Shopsafer\shopsafer.exe HKLM-x32\...\Run: [Shopsafer] => C:\Program Files\Shopsafer\Shopsafer\shopsafer.exe [860672 2015-04-20] (Shopsafer OU) Winsock: Catalog9 01 C:\Windows\system32\ShopSaferService.dll [332224 2015-05-29] (Shopsafer OU) Winsock: Catalog9 02 C:\Windows\system32\ShopSaferService.dll [332224 2015-05-29] (Shopsafer OU) Winsock: Catalog9 03 C:\Windows\system32\ShopSaferService.dll [332224 2015-05-29] (Shopsafer OU) Winsock: Catalog9 04 C:\Windows\system32\ShopSaferService.dll [332224 2015-05-29] (Shopsafer OU) Winsock: Catalog9 23 C:\Windows\system32\ShopSaferService.dll [332224 2015-05-29] (Shopsafer OU) R2 ShopSaferService; C:\ProgramData\Shopsafer\Komodia\ShopSaferService.exe [1705816 2015-03-20] (Shopsafer OU) [File not signed] () C:\Windows\system32\ShopSaferServiceOff.ini () C:\Users\{username}\AppData\Local\Shopsafer () C:\ProgramData\Shopsafer () C:\Program Files\Shopsafer (Shopsafer OU) C:\Windows\system32\ShopSaferService.dll Shopsafer (HKLM\...\{0DB47114-974D-4333-91DD-2D5208FE5402}) (Version: 1.0.0.0 - Shopsafer OU) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ShopSaferService => ""="service"Malwarebytes Anti-Malware log:
Malwarebytes Anti-Malware www.malwarebytes.org Scan Date: 5/29/2015 Scan Time: 8:34:03 AM Logfile: mbamShopSafer.txt Administrator: Yes Version: 2.01.6.1022 Malware Database: v2015.05.29.01 Rootkit Database: v2015.05.24.01 License: Premium Malware Protection: Disabled Malicious Website Protection: Enabled Self-protection: Disabled OS: Windows 7 Service Pack 1 CPU: x86 File System: NTFS User: Malwarebytes Scan Type: Threat Scan Result: Completed Objects Scanned: 292513 Time Elapsed: 6 min, 0 sec Memory: Enabled Startup: Enabled Filesystem: Enabled Archives: Enabled Rootkits: Disabled Heuristics: Enabled PUP: Enabled PUM: Enabled Processes: 3 PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\ShopSaferService.exe, 984, Delete-on-Reboot, [44217722cbbfd3632ca43c2dba4ce51b] PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\shopsafer.exe, 1912, Delete-on-Reboot, [b0b5a6f3197160d6eae62d3c1bebcb35] PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\shopsafer.exe, 184, Delete-on-Reboot, [b0b5a6f3197160d6eae62d3c1bebcb35] Modules: 17 PUP.Optional.ShopSafer.A, C:\Windows\System32\ShopSaferService.dll, Delete-on-Reboot, [ff66fd9cdeac2115359b1c4dd82ec838], PUP.Optional.ShopSafer.A, C:\Windows\System32\ShopSaferService.dll, Delete-on-Reboot, [ff66fd9cdeac2115359b1c4dd82ec838], PUP.Optional.ShopSafer.A, C:\Windows\System32\ShopSaferService.dll, Delete-on-Reboot, [ff66fd9cdeac2115359b1c4dd82ec838], PUP.Optional.ShopSafer.A, C:\Windows\System32\ShopSaferService.dll, Delete-on-Reboot, [ff66fd9cdeac2115359b1c4dd82ec838], PUP.Optional.ShopSafer.A, C:\Windows\System32\ShopSaferService.dll, Delete-on-Reboot, [ff66fd9cdeac2115359b1c4dd82ec838], PUP.Optional.ShopSafer.A, C:\Windows\System32\ShopSaferService.dll, Delete-on-Reboot, [ff66fd9cdeac2115359b1c4dd82ec838], PUP.Optional.ShopSafer.A, C:\Windows\System32\ShopSaferService.dll, Delete-on-Reboot, [ff66fd9cdeac2115359b1c4dd82ec838], PUP.Optional.ShopSafer.A, C:\Windows\System32\ShopSaferService.dll, Delete-on-Reboot, [ff66fd9cdeac2115359b1c4dd82ec838], PUP.Optional.ShopSafer.A, C:\Windows\System32\ShopSaferService.dll, Delete-on-Reboot, [ff66fd9cdeac2115359b1c4dd82ec838], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\ShopSaferCert.dll, Delete-on-Reboot, [075e70292b5f072f636d78f1de28f808], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\freebl3.dll, Delete-on-Reboot, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\libnspr4.dll, Delete-on-Reboot, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\libplc4.dll, Delete-on-Reboot, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\libplds4.dll, Delete-on-Reboot, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\nss3.dll, Delete-on-Reboot, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\nssutil3.dll, Delete-on-Reboot, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\smime3.dll, Delete-on-Reboot, [ce97dcbd5634c373822e558be122dc24], Registry Keys: 34 PUP.Optional.ShopSafer.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\ShopSaferService, Quarantined, [44217722cbbfd3632ca43c2dba4ce51b], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{B49B02F3-03FE-41DD-BA6F-F8F79E2D5717}, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{0B3F6D64-8861-46F1-851B-2B1255C1C431}, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{32EDB16B-1C87-4342-BD1D-EB37DF0A55C1}, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{3779D470-2F87-4C21-A8CB-CA62ED9015D4}, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{430CB252-3C12-4251-BEBC-15E205F12304}, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{5CE472B0-75AA-4DB3-85C7-3F15BFCEA0F8}, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{6521206F-6FDF-4C38-BF1B-2E5C5C79FB83}, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{6B65C978-F4B5-4CFE-84A3-28EF8038A55F}, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{70739A5D-AB9B-4A36-AD94-E6B27C7F4FB3}, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{8F715EC7-A1EC-4636-A53C-D4214CEFF062}, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{9F5667B7-4026-45A4-B2C4-6BECBCEB3C0F}, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{A18D22AF-CC1F-44E6-9CFA-A44499AE2852}, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{ADAAB456-75C7-403D-B6CB-5A2153E0D758}, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{F5E8FF24-DB24-4024-A208-35673430833F}, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\Shopsafer, Quarantined, [d98c4d4c3258171f9b1a4799a55e7987], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\ShopSaferServiceLib.DataContainer, Quarantined, [105594053b4f86b09919469a7291dd23], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\ShopSaferServiceLib.DataContainer.1, Quarantined, [e97c1b7e4b3f3df9189abd23d13234cc], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\ShopSaferServiceLib.DataController, Quarantined, [dc89990077131c1abbf7479904fff40c], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\ShopSaferServiceLib.DataController.1, Quarantined, [baab6d2c01897fb70ba736aa9b68619f], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\ShopSaferServiceLib.DataTable, Quarantined, [a2c38b0e7a102e08a30f4f91877cde22], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\ShopSaferServiceLib.DataTable.1, Quarantined, [4f16bfda3e4c61d5c7ebd60a5fa4b64a], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\ShopSaferServiceLib.DataTableFields, Quarantined, [24415e3b523896a0308236aa867da759], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\ShopSaferServiceLib.DataTableFields.1, Quarantined, [83e25841fc8ecd692c860fd15ba81be5], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\ShopSaferServiceLib.DataTableHolder, Quarantined, [ef7674251b6f51e58e2413cdf60d22de], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\ShopSaferServiceLib.DataTableHolder.1, Quarantined, [7ce9d7c27e0c73c3a70b4b9522e1ef11], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\ShopSaferServiceLib.LSPLogic, Quarantined, [c99ce2b7fd8dbd799919b0300ff4d22e], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\ShopSaferServiceLib.LSPLogic.1, Quarantined, [aeb7970298f2b086ad05d20e6c970000], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\ShopSaferServiceLib.ReadOnlyManager, Quarantined, [e382396065253006575b776913f0c937], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\ShopSaferServiceLib.ReadOnlyManager.1, Quarantined, [ec794257deaca88e377b617fab581ce4], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\ShopSaferServiceLib.WFPController, Quarantined, [22438e0bf1994aecbcf6cf110ff47f81], PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\CLASSES\ShopSaferServiceLib.WFPController.1, Quarantined, [cc99a4f5f199053172405a86f70c936d], PUP.Optional.ShopSafer.A, HKU\S-1-5-18\SOFTWARE\Shopsafer, Quarantined, [026305946228d363c9eac41cf013a060], PUP.Optional.ShopSafer.A, HKCU\SOFTWARE\Shopsafer, Quarantined, [e283e7b23f4bbb7b872c02de59aaec14], Registry Values: 1 PUP.Optional.ShopSafer.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|Shopsafer, C:\Program Files\Shopsafer\Shopsafer\shopsafer.exe, Quarantined, [b0b5a6f3197160d6eae62d3c1bebcb35] Registry Data: 0 (No malicious items detected) Folders: 5 PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia, Delete-on-Reboot, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer, Delete-on-Reboot, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.Winsock.HijackBoot, C:\Windows\System32\config\systemprofile\AppData\Local\ShopSaferService, Quarantined, [174e97027812c076a61ad40c20e3da26], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer, Delete-on-Reboot, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], Files: 57 PUP.Optional.ShopSafer.A, C:\Windows\System32\ShopSaferService.dll, Delete-on-Reboot, [ff66fd9cdeac2115359b1c4dd82ec838], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\ShopSaferService.exe, Delete-on-Reboot, [44217722cbbfd3632ca43c2dba4ce51b], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\ShopSaferCert.dll, Delete-on-Reboot, [075e70292b5f072f636d78f1de28f808], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\shopsafer.exe, Delete-on-Reboot, [b0b5a6f3197160d6eae62d3c1bebcb35], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\ShopsaferLSP.exe, Quarantined, [32339306107ac373844cf574bc4a8c74], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\ShopsaferLSP64.exe, Quarantined, [e87d3e5b3e4cbd794b8582e719ede917], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\ShopSaferService.dll, Quarantined, [5e076435117973c310c09dcce91d19e7], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\ShopSaferService64.dll, Quarantined, [e3826930ee9c7eb88b45d09966a037c9], PUP.Optional.ShopSafer.A, C:\Users\{username}\Desktop\Shopsafer.msi, Quarantined, [77ee6b2edab011251eb2baaf986e9868], PUP.Optional.ShopSafer.A, C:\Windows\Installer\5f4fb.msi, Quarantined, [21448d0c92f8e353eae6de8b61a5c040], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\freebl3.dll, Delete-on-Reboot, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\install.bat, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\install64.bat, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\libnspr4.dll, Delete-on-Reboot, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\libplc4.dll, Delete-on-Reboot, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\libplds4.dll, Delete-on-Reboot, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\nss3.dll, Delete-on-Reboot, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\nssckbi.dll, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\nssdbm3.dll, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\nssutil3.dll, Delete-on-Reboot, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\ShopsaferLSP.ini, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\ShopSaferService.tlb, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\smime3.dll, Delete-on-Reboot, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\softokn3.dll, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\sqlite3.dll, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\ssl3.dll, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\uninstall.bat, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\ProgramData\Shopsafer\Komodia\uninstall64.bat, Quarantined, [ce97dcbd5634c373822e558be122dc24], PUP.Optional.ShopSafer.A, C:\Users\{username}\AppData\Local\Temp\ShopSaferServicer.log, Quarantined, [5c09b5e44644e155733e726e59aa0ef2], PUP.Optional.ShopSafer.A, C:\Windows\Temp\ShopSaferService.log, Delete-on-Reboot, [0c59435654362a0c4e63e5fb3fc4ab55], PUP.Optional.ShopSafer.A, C:\Windows\Temp\ShopSaferServicer.log, Quarantined, [04611089e8a230066e43c21ea162946c], PUP.Optional.Winsock.HijackBoot, C:\Windows\System32\config\systemprofile\AppData\Local\ShopSaferService\ShopSaferService.ini, Quarantined, [174e97027812c076a61ad40c20e3da26], PUP.Optional.Winsock.HijackBoot, C:\Windows\System32\ShopSaferServiceOff.ini, Quarantined, [94d1564365254aec8939766a5aa917e9], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\freebl3.dll, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\install.bat, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\install64.bat, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\libnspr4.dll, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\libplc4.dll, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\libplds4.dll, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\nss3.dll, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\nssckbi.dll, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\nssdbm3.dll, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\nssutil3.dll, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\ShopSaferCert.dll, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\ShopsaferLSP.exe, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\ShopsaferLSP.ini, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\ShopsaferLSP64.exe, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\ShopSaferService.dll, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\ShopSaferService.exe, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\ShopSaferService.tlb, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\ShopSaferService64.dll, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\smime3.dll, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\softokn3.dll, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\sqlite3.dll, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\ssl3.dll, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\uninstall.bat, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], PUP.Optional.ShopSafer.A, C:\Program Files\Shopsafer\Shopsafer\Komodia\uninstall64.bat, Quarantined, [70f52a6fbbcf87afd79e914f4ab9aa56], Physical Sectors: 0 (No malicious items detected) (end)As mentioned before the full version of Malwarebytes Anti-Malware could have protected your computer against this threat.
We use different ways of protecting your computer(s):
- Dynamically Blocks Malware Sites & Servers
- Malware Execution Prevention