Worm

Worm.Bloored removal instruction

Malware Removal

The Worm.Bloored is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Worm.Bloored virus can do?

  • At least one process apparently crashed during execution
  • The PE file contains a PDB path
  • Authenticode signature is invalid
  • Anomalous binary characteristics

How to determine Worm.Bloored?


File Info:

name: D99B253906651310BCA3.mlw
path: /opt/CAPEv2/storage/binaries/dc91c8724e4df1dabe3f3cdf663245ec77b171477ad4f712f2802fda7dd40cae
crc32: D4768331
md5: d99b253906651310bca32dbcff8d20cc
sha1: 98948825faa6e8d197eceb191fef7a2f85578222
sha256: dc91c8724e4df1dabe3f3cdf663245ec77b171477ad4f712f2802fda7dd40cae
sha512: f2b3bb8e3e552cc7591c83940ada0d5202a61be3bd76036e211995978aa47b708157551360c32f79077aaafefe693e9605d67376a6aa498294bbf94cdcf19cfb
ssdeep: 12288:qsZTP2kioZNM2GAu1mt0LDwrepiOzL1jndvQSrrXvbGIqBGr1m+91:qsNP2k9NM84pbLJ5qMr1nD
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T13005AD21BAE0D036D2BB1C714AF9D725497DF9301F2152CBE3D496AE1E20AD1A731B1B
sha3_384: 1664f5cbb77258224f455848d4f62de64d050b7b4a0ea011be864c425b5af15ca4493796c971ce406b4e38f880acab35
ep_bytes: 558bec6aff68381b000168e054000164
timestamp: 1999-09-25 11:29:49

Version Info:

0: [No Data]

Worm.Bloored also known as:

BkavW32.AIDetect.malware1
MicroWorld-eScanGen:Variant.Barys.61157
FireEyeGeneric.mg.d99b253906651310
ALYacGen:Variant.Barys.61157
CylanceUnsafe
VIPREGen:Variant.Barys.61157
Sangfor[ARMADILLO V1.71]
K7AntiVirusRiskware ( 00584baa1 )
K7GWRiskware ( 00584baa1 )
CrowdStrikewin/malicious_confidence_90% (W)
CyrenW32/Bloored.A.gen!Eldorado
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
APEXMalicious
ClamAVWin.Malware.Dqan-9882956-0
KasperskyHEUR:Email-Worm.Win32.Bloored.gen
BitDefenderGen:Variant.Barys.61157
NANO-AntivirusTrojan.Win32.Bloored.dqyzls
AvastWin32:Derdero-B@UPX [Wrm]
Ad-AwareGen:Variant.Barys.61157
EmsisoftGen:Variant.Barys.61157 (B)
DrWebWin32.HLLP.Dermedo
ZillyaWorm.Bloored.Win32.178
McAfee-GW-EditionBehavesLike.Win32.Generic.ch
SophosGeneric ML PUA (PUA)
SentinelOneStatic AI – Malicious PE
AviraHEUR/AGEN.1238963
MicrosoftTrojan:Win32/Wacatac.B!ml
GDataGen:Variant.Barys.61157
CynetMalicious (score: 100)
AhnLab-V3Worm/Win32.Bloored.R233465
McAfeeArtemis!D99B25390665
MAXmalware (ai score=88)
VBA32Trojan.Ditertag
MalwarebytesWorm.Bloored
IkarusTrojan.Dropper
MaxSecureTrojan.midie.47441
FortinetW32/Agent.55BE!tr
BitDefenderThetaGen:NN.ZexaF.34742.YmZ@a0AK3wc
AVGWin32:Derdero-B@UPX [Wrm]
Cybereasonmalicious.906651
PandaTrj/Genetic.gen

How to remove Worm.Bloored?

Worm.Bloored removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment