MalwareBazaar Database
This page shows some basic information the YARA rule VenomRAT_v36 including corresponding malware samples.
Database Entry
| YARA Rule: | VenomRAT_v36 |
|---|---|
| Author: | kirkderp |
| Description: | VenomRAT v3.6 (dcRAT/qwqdanchun fork) -- AMSI/ETW bypass, plugin loader, process kill list |
| Firstseen: | 2026-04-21 14:26:42 UTC |
| Lastseen: | 2026-05-17 12:55:50 UTC |
| Sightings: | 12 |
Malware Samples
The table below shows all malware samples that matching this particular YARA rule (max 1000).
| Firstseen (UTC) | SHA256 hash | Tags | Signature | Reporter |
|---|