Remote Access Trojan

Venom RAT

First seen: 2020-01 • Status: active

Currently Active Threat

Venom RAT is a fork of AsyncRAT sold to criminals. It can steal passwords and mine cryptocurrency on infected computers.

Overview

Venom RAT is based on AsyncRAT and sold as malware-as-a-service. It features modular plugins for credential theft and crypto mining.

Also Known As

VenomRAT

How It Spreads

  • Phishing
  • Malicious documents

What It Does

  • Remote access
  • Credential theft
  • Cryptomining

Is your business exposed?

Target Platforms

Windows

Detection Tips

  • Monitor for AsyncRAT-based variants

MITRE ATT&CK Techniques

T1059, T1555, T1496

If You're Infected

  1. 1.

    Full malware removal

  2. 2.

    Reset credentials

Related Malware

Asyncrat

Is your business exposed?

Check if your company data is circulating on the dark web

Free scan • No credit card required