ThreatInfo Detection Digest: May 23, 2026

ThreatInfo research digest

A concise set of new file reports that were not used in recent digests. Each entry includes the detection name, MD5 hash, and a direct report link so analysts can verify the exact sample before taking action.

New report links20
Tracked categories5
Primary actionVerify hash

Category overview

Reports worth opening

Adware

Review browser changes, bundled installers, extensions, and unexpected advertising behavior.

DetectionUnder review
MD5821fc895831b719afa0d5d2be2027893
DetectionAdware.ELEX
MD56d223d145756a7443279e252feb4c536
DetectionAdware.ELEX
MD5c5f511a6edc09cdfdc563fef9be92c69
DetectionAdware.ELEX
MD55c2ccd9975cade566e85fd37bb814b25

PUP/PUA

Check whether the file came from an installer bundle, optimizer, updater, or optional offer.

DetectionUnder review
MD57da6f3c5c9be4a3a53c520b19c9309a1
DetectionUnder review
MD54298ef1f49d563b2190ae5783468a58c
DetectionUnder review
MD5921b64a7dace4c93161b942b80b6b41b
DetectionAdware.SweetIM
MD5da746ebbb1e7952da96ef0e0667fc740

Trojan

Verify the hash and origin before trusting the filename; trojans often imitate legitimate software.

DetectionHack.Patcher
MD55325db41669aea870e16f48fbaa5dc22
DetectionTrojan.Keygen
MD50ff7b0aa3840d67bfef3a7c77c26468b
DetectionPUP.SpeedUpMyPC
MD5edc7eb442a17faeb8bc02a7c16551bf1
DetectionTrojan.Gen
MD55a5c0885cf60d6f6f39c5db45e5e1211

Ransomware

Prioritize isolation and backup checks when this class appears on an endpoint.

DetectionRansom.Presenoker
MD5f99bfddac9cb3be6465347635c295975
DetectionRansom.Sabsik
MD532cdbc9e95342182db48567c457642e7
DetectionRansom.Zpevdo
MD51f1affdcb7b7175e077b359abc7bbb4e
DetectionRansom.Gandcrab
MD5c9d7b4f352a2362d676c850dc923f662

Virus

Look for copied or modified executables and scan related files created around the same time.

DetectionHack.Patcher
MD57121485fbe0554cc054adfaa374b3f38
DetectionVirus.Jeefo
MD5b7e4e623e707ebce5c6ca5fffbd1acc2
DetectionVirus.Neshta
MD5d469a3a77f27c430bf5d65e6b6335764
DetectionVirus.Neshta
MD58364677c293fdbdc1d485a227815f2b1

How to use this digest

Start with the MD5 hash, not the filename. If the hash or file path matches a system you manage, open the report, review the publisher and detection details, then scan the endpoint with GridinSoft Anti-Malware. ThreatInfo reports show whether GridinSoft already detects the file and which detection name is used.

Exit mobile version