Malware

What is “Malware.AI.1931274370”?

Malware Removal

The Malware.AI.1931274370 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Malware.AI.1931274370 virus can do?

  • Creates RWX memory
  • The binary likely contains encrypted or compressed data.
  • Exhibits behavior characteristic of iSpy Keylogger
  • Installs itself for autorun at Windows startup
  • Network activity detected but not expressed in API logs

How to determine Malware.AI.1931274370?


File Info:

crc32: 56A87AD0
md5: a51f40191d10fef53b83b751fdb916ff
name: A51F40191D10FEF53B83B751FDB916FF.mlw
sha1: 58713fb817d90884e622183add6ad18edaf3f696
sha256: 5b6aaa4deec072cb54b26cff03770e4622cd656c3ee10e5356289549a73a8cdd
sha512: fcfad83e4eda9ae61b791dbb9784cfed2360bef6890df0da1c5e986219614834438a64de8219bdc16da14d9bfe93adb139ffe42360252d0bb33dd8685c17e10b
ssdeep: 3072:O3xA+jXi9yLWqIdzZhMrjEjnDmk9u2iiwSIkbDjBCW9au/NBjNw:gx5XiwL4gvE7Dpiih/C2auV
type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

Version Info:

Translation: 0x0000 0x04b0
LegalCopyright: (C) 2016 NVIDIA Corporation. All rights reserved.
Assembly Version: 55.2883.1519.2
InternalName: serv.exe
FileVersion: 55.2883.1519.2
CompanyName: NVIDIA Corporation
Comments: NVIDIA GeForce Experience
ProductName: NVIDIA GeForce Experience
ProductVersion: 55.2883.1519.2
FileDescription: NVIDIA GeForce Experience
OriginalFilename: serv.exe

Malware.AI.1931274370 also known as:

Elasticmalicious (high confidence)
DrWebTrojan.DownLoader19.28708
MicroWorld-eScanGen:Variant.Razy.133676
FireEyeGeneric.mg.a51f40191d10fef5
Qihoo-360Win32/Trojan.b2d
ALYacGen:Variant.Razy.133676
CylanceUnsafe
VIPRETrojan.Win32.Generic!BT
SangforMalware
CrowdStrikewin/malicious_confidence_100% (D)
BitDefenderGen:Variant.Razy.133676
K7GWTrojan ( 00504e131 )
K7AntiVirusTrojan ( 00504e131 )
BitDefenderThetaGen:NN.ZemsilF.34804.Jm0@aSWaHNd
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Malware-gen
KasperskyHEUR:Trojan.MSIL.Generic
NANO-AntivirusTrojan.Win32.Razy.elwura
RisingDropper.Generic!8.35E (CLOUD)
Ad-AwareGen:Variant.Razy.133676
SophosMal/Generic-S
ComodoMalware@#3plqjsml6j8f0
F-SecureTrojan.TR/Dropper.Gen
ZillyaTrojan.Injector.Win32.492095
McAfee-GW-EditionPacked-FQD!A51F40191D10
EmsisoftGen:Variant.Razy.133676 (B)
IkarusTrojan.MSIL.Injector
AviraTR/Dropper.Gen
MAXmalware (ai score=83)
Antiy-AVLTrojan/Win32.AGeneric
KingsoftWin32.Troj.Undef.(kcloud)
MicrosoftBackdoor:Win32/Bladabindi!ml
ArcabitTrojan.Razy.D20A2C
ZoneAlarmHEUR:Trojan.MSIL.Generic
GDataGen:Variant.Razy.133676
CynetMalicious (score: 90)
McAfeePacked-FQD!A51F40191D10
MalwarebytesMalware.AI.1931274370
PandaTrj/GdSda.A
ESET-NOD32a variant of MSIL/Injector.RKA
TencentMsil.Trojan.Generic.Ljtv
SentinelOneStatic AI – Malicious PE
eGambitUnsafe.AI_Score_100%
FortinetMSIL/Injector.RKA!tr
AVGWin32:Malware-gen
Paloaltogeneric.ml

How to remove Malware.AI.1931274370?

Malware.AI.1931274370 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment