Threat Database Worms Worm.Bloored.A

Worm.Bloored.A

By CagedTech in Worms

Threat Scorecard

Popularity Rank: 5,770
Threat Level: 50 % (Medium)
Infected Computers: 791
First Seen: May 3, 2017
Last Seen: July 3, 2026
OS(es) Affected: Windows

The detection of Worm.Bloored.A on your system indicates a potential security threat that requires immediate attention. This report provides an overview of the detected threat, its operating mechanisms, symptoms of infection, and a step-by-step guide on how to remove it from your system.

What Is Worm.Bloored.A?

Worm.Bloored.A is a type of malware that has been identified as a worm. Worms are self-replicating malware that can spread from system to system without the need for human interaction, unlike viruses which require a host program to spread. The name Worm.Bloored.A itself does not specify a known malware family but indicates it is a worm, suggesting its capability to propagate independently.

How Worm.Bloored.A Operates

Malware like Worm.Bloored.A typically operates by exploiting vulnerabilities in the operating system or applications to gain unauthorized access to a computer. Once inside, it can perform a variety of malicious activities, including data theft, installing additional malware, or using the infected computer as part of a botnet for distributed denial-of-service (DDoS) attacks. Worms can spread through various means, such as email attachments, infected software downloads, or through network vulnerabilities.

Symptoms of Infection

Symptoms of a Worm.Bloored.A infection can vary but may include unusual system behavior, such as slow performance, frequent crashes, or unfamiliar programs running in the background. You might also notice increased network activity, even when you're not using the internet, or find that your antivirus software is disabled. Sometimes, the infection might not display any noticeable symptoms, making it harder to detect without proper scanning tools.

How to Remove Worm.Bloored.A

  1. Enter Safe Mode with Networking: This will limit the malware's ability to spread or interfere with the removal process. Restart your computer and press the key to access the boot menu (usually F8, F12, or Del), then select Safe Mode with Networking.
  2. Perform a Full Scan: Use a reputable anti-malware tool, such as SpyHunter, to perform a full scan of your system. Ensure your antivirus and anti-malware software are updated with the latest definitions before scanning.
  3. Uninstall Suspicious Programs: Go through your installed programs and uninstall any that you don't recognize or that were installed around the time you suspect the infection occurred.
  4. Reset Your Browser: Malware often infects web browsers, so resetting them can help remove malicious extensions or settings. For Chrome, Firefox, and Edge, you can find reset options in their respective settings or preferences menus.
  5. Reboot and Re-scan: After completing the above steps, reboot your computer in normal mode and perform another full scan with your anti-malware tool to ensure that Worm.Bloored.A has been completely removed.

Conclusion

Removing Worm.Bloored.A requires careful and systematic steps to ensure that all components of the malware are eliminated from your system. It's crucial to stay vigilant and keep your software up to date to prevent future infections. Regularly backing up important data and using strong, unique passwords can also help protect against malware threats. If you're unsure about any part of the removal process, consider seeking help from a professional to avoid causing further damage to your system.

Analysis Report

General information

Family Name: Worm.Bloored.A
Packers: UPX
Signature status: No Signature

Known Samples

MD5: 027b7e821dfcdc43f5d1cd581afdb57a
SHA1: 753087ba2bb9f87c43a971a45fedbdb7c1ec2a5e
SHA256: 05DD89AFB59642320CD25F6E31CCDD8979D2D36844F4EE0375634357EF9A1773
File Size: 424.94 KB, 424941 bytes
MD5: 4513ed5c041ed07d14730735508aaac6
SHA1: 50c8d76597b48f4a263521ef31e07fed6cc006b6
SHA256: D9682747E5E78BF0EA743BDEC199A1D8610219EBCFC90A999C2F3D9D495AF423
File Size: 427.40 KB, 427404 bytes
MD5: be6b246036287b706c2de16a2bb08efb
SHA1: d52d27060efea712fd34bc44dd761a0f1acbe06a
SHA256: 4B09BEE2E635F37BE9CDC188DD8FA4A4F94D0D856308EEE08A394BB7ABB56CB1
File Size: 2.10 MB, 2103761 bytes
MD5: 3180a6b68f155f1302fe868d0608c237
SHA1: b8946f29753319a900002094af8d0c4d0bebe5be
SHA256: BA3F31F87FE4D499A3DD1AF8DD607CE61380630280BD70CF2891E4322E2D6CE1
File Size: 425.12 KB, 425117 bytes
MD5: cf4a22ae60716a1d26630ba30304e4d1
SHA1: bbdf9f36eba140f81718a94b3a12c60cac703daf
SHA256: 588D727328D54C84E9120B65977D30EEFD8D7B448CEF7287C90FCF91D2CAA3EF
File Size: 78.85 KB, 78848 bytes
Show More
MD5: 5737e52d1d741cf073ec0b21e163d308
SHA1: d5bb72b301d8e11238b54b178e7090f3da48f4b0
SHA256: 8544F1C77CF3C350CCA8C615143EDA154C2CBCC4804CC99072CFFE932B244CC2
File Size: 424.51 KB, 424515 bytes
MD5: 7e66e8aca3881a44005208819afd8d72
SHA1: d3eac971a86420fb717e8585fae2cabb9b9c5ba8
SHA256: 39B284A57E60C1E3E2FB06AD18C5A90999E3AF3643A6B0A4CDB27CFB46C0253F
File Size: 3.45 MB, 3446784 bytes
MD5: a1590229af2e2274fe064856294cc391
SHA1: 1a871e0f781a8725802889b778a53e735ba37a15
SHA256: F3E0800B145182B4C651E568DE69C15059D4F3DBCD2B68205AFA9B0EA18D380A
File Size: 1.02 MB, 1024694 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have exports table
  • File doesn't have relocations information
  • File doesn't have resources
  • File doesn't have security information
  • File has been packed
  • File is 32-bit executable
  • File is console application (IMAGE_SUBSYSTEM_WINDOWS_CUI)
  • File is either console or GUI application
Show More
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Windows PE Version Information

Name Value
File Description Golf Clubmakers Swingweight Estimator
File Version 1.0.0
Internal Name swingweight
Legal Copyright Copyright (c) 2002-2004 Douglas. J. Marsh
Original Filename swingweight.exe
Product Name Swingweight Estimator
Product Version 1.0.0

File Traits

  • big overlay
  • No Version Info
  • packed
  • x86

Block Information

Total Blocks: 346
Potentially Malicious Blocks: 39
Whitelisted Blocks: 307
Unknown Blocks: 0

Visual Map

0 x x 0 x x 0 x x 0 0 0 0 0 0 x 0 0 x x x 0 0 0 0 0 0 0 0 x 0 0 0 0 x 0 0 x x 0 0 0 0 x x x 0 0 0 x 0 0 0 0 0 0 0 0 0 x 0 0 0 x x 0 0 0 0 0 0 0 0 0 x 0 0 x 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 x 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 x x 0 x x x 0 x 0 0 0 0 0 0 0 0 x 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 x x 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Similar Families

  • Bloored.A
  • Lamer.CHB
  • Stealer.FDB
  • Surldoe.A

Files Modified

File Attributes
\device\namedpipe\gmdasllogger Generic Write,Read Attributes

Windows API Usage

Category API
Anti Debug
  • IsDebuggerPresent
User Data Access
  • GetUserObjectInformation
Keyboard Access
  • GetKeyState

Related Posts

Trending

Most Viewed

Loading...