Back to Error Database
LAZARUS-BLUENOROFF-APT

Lazarus Group / Bluenoroff APT threat

CRITICAL malware ID: VIR-016

What is LAZARUS-BLUENOROFF-APT?

LAZARUS_BLUENOROFF_APT is a critical-severity malware/security problem. Lazarus and its sub-group Bluenoroff are state-sponsored advanced persistent threat (APT) actors. They target global financial institutions, SWIFT networks, cryptocurrency exchanges, and blockchain platforms using sophisticated custom malware, trojanized applications, and spear-phishing. It's also often linked to exploitation of public-facing server vulnerabilities. See the troubleshooting steps below for the fix.

Common Causes

Step-by-Step Fix Guide

Commands & Diagnostics

powershell.exe Get-AuthenticodeSignature -FilePath C:\Windows\System32\cmd.exe
Get-Process | Where-Object {$_.Company -eq $null}

Frequently Asked Questions

Still Need Help?

Search our full database of 535+ documented PC errors for more solutions and step-by-step repair guides.

Search Error Database