BLINDTOAD

Malware type
loader
Profile updated
2026-07-07 12:46:30

Targeted industries: government-and-public-sector defense-and-aerospace

Context

BLINDTOAD is 64-bit Service DLL that loads an encrypted file from disk and executes it in memory.

Reports & references

  • Mandiant — Rpt Apt38 (report)
  • baesystemsai.blogspot.com — Taiwan Heist Lazarus Tools (report)
  • malpedia.caad.fkie.fraunhofer.de — Win.Blindtoad (report)
  • Trend Micro — Lazarus Continues Heists Mounts Attacks On Financial Organizations In Latin America (report)
  • adeo.com.tr — Adeo Lazarus Apt38 (report)

External references