18746.exe

Quadra

ManySign Inc.

The application 18746.exe by ManySign has been detected as a potentially unwanted program by 3 anti-malware scanners.
Publisher:
ManySign Inc.  (signed and verified)

Product:
Quadra

Version:
7.2.4

MD5:
99143beda14ef5e3c4d61b1de091a481

SHA-1:
993c9b5cede42d9b4911ee49a4d6d944360013be

SHA-256:
5e437f473074d63f5444081fd19a437d447462438de9a12fb732f1525f413c95

Scanner detections:
3 / 68

Status:
Potentially unwanted

Analysis date:
1/3/2026 5:23:27 PM UTC  (today)

Scan engine
Detection
Engine version

avast!
Win32:Evo-gen [Susp]
160518-2

ESET NOD32
MSIL/Injector.OJL trojan
8.0.319.0

Reason Heuristics
Adware.Downloader.ManySign.Meta (M)
16.6.14.13

File size:
1 MB (1,095,008 bytes)

Product version:
7.2.4

Copyright:
Copyright @2014

Original file name:
UpdatorOne.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\18746.exe

Digital Signature
Signed by:

Authority:
ManySign Inc.

Valid from:
2/27/2016 4:36:13 AM

Valid to:
2/26/2017 4:36:13 AM

Subject:
E=contact@manysign.com, OU=ManySign Authority, O=ManySign Inc., L=Lansing, S=Michigan, C=US, CN=ManySign

Issuer:
E=contact@manysign.com, OU=ManySign Authority, O=ManySign Inc., L=Lansing, S=Michigan, C=US, CN=ManySign

Serial number:
00A9CE1EFF3DF92E00

File PE Metadata
Compilation timestamp:
3/7/2016 8:30:30 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
24576:uFWLQC21Oznm0BwTCNu/8BlE78KXOlEyMAVJ59T+Ip:u0q14miu04Ev+Ip

Entry address:
0x10166E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
1024 KB (1,048,576 bytes)

Remove 18746.exe - Powered by Reason Core Security