We checked some samples of GVUY_XXH97.TLB and detected the file GVUY_XXH97.TLB as threat.
Remove the GVUY_XXH97.TLB file from your computer right now.
Removal tool: http://www.unhackme.com
Malware Analysis of GVUY_XXH97.TLB
Full path on a computer: %COMMON APPDATA%\COSTMIN\GVUY_XXH97.TLB
Detected by UnHackMe:
GVUY_XXH97.TLB
Default location: %COMMON APPDATA%\COSTMIN\GVUY_XXH97.TLB
Removal Results: Success
Number of reboot: 1
GVUY_XXH97.TLB is known as:
Trojan MulDrop4
How to quickly detect GVUY_XXH97.TLB presence?
Files:
- %APPDATA%\MOZILLA\FIREFOX\PROFILES\CWDGT0Y8.DEFAULT\EXTENSIONS\STAGED\FXXV@JLJX.NET\BOOTSTRAP.JS
- %APPDATA%\MOZILLA\FIREFOX\PROFILES\CWDGT0Y8.DEFAULT\EXTENSIONS\STAGED\FXXV@JLJX.NET\CHROME.MANIFEST
- %TEMP%\7ZS1.TMP\FXXV@JLJX.NET\INSTALL.RDF
- %TEMP%\7ZS1.TMP\GVUY_XXH97.TLB
- %COMMON APPDATA%\COSTMIN\GVUY_XXH97.TLB