MalwareBazaar Database

This page shows some basic information the YARA rule VenomRAT_v36 including corresponding malware samples.

Database Entry


YARA Rule:VenomRAT_v36
Author:kirkderp
Description:VenomRAT v3.6 (dcRAT/qwqdanchun fork) -- AMSI/ETW bypass, plugin loader, process kill list
Firstseen:2026-04-21 14:26:42 UTC
Lastseen:2026-05-17 12:55:50 UTC
Sightings:12

Malware Samples


The table below shows all malware samples that matching this particular YARA rule (max 1000).

Firstseen (UTC)SHA256 hashTagsSignatureReporter