VenomRAT

First seen
2020-05-01 00:00:00
Malware type
ransomware, rat
Family
Malware family
Last IoC activity
2026-07-22 01:55:25
Profile updated
2026-07-07 16:17:23

Targeted industries: financial-services government-and-public-sector technology-and-telecommunications

Context

VenomRAT is a dual-purpose malware that functions as both a remote access trojan (RAT) and ransomware. It is used in cybercrime operations to gain unauthorized access to systems and encrypt sensitive data for ransom.

Detection coverage

  • 1 YARA rules

Used by threat actors

  • WebDAV Malware Delivery Activity (campaign)

Detection rules

  • DITEKSHEN_MALWARE_Win_Venomrat (yara-rule)