VenomRAT
- First seen
- 2020-05-01 00:00:00
- Malware type
- ransomware, rat
- Family
- Malware family
- Last IoC activity
- 2026-07-22 01:55:25
- Profile updated
- 2026-07-07 16:17:23
Targeted industries: financial-services government-and-public-sector technology-and-telecommunications
Context
VenomRAT is a dual-purpose malware that functions as both a remote access trojan (RAT) and ransomware. It is used in cybercrime operations to gain unauthorized access to systems and encrypt sensitive data for ransom.
Detection coverage
- 1 YARA rules
Used by threat actors
- WebDAV Malware Delivery Activity (campaign)
Detection rules
- DITEKSHEN_MALWARE_Win_Venomrat (yara-rule)