WowApp.exe

WowApp

YouWowMe Limited

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘WowApp’.
Publisher:
YouWowMe Romania SRL  (signed by YouWowMe Limited)

Product:
WowApp

Version:
9.1.0

MD5:
bc7b42bc109e298ec4ded5374dcb160d

SHA-1:
d41c1c2a9371b5889225b890ef3203cf931e9b9f

SHA-256:
c270c2e8f7b82263f923b202ea0f43b3b75b27ee947e4ff5ec04ec4b5f2d42bf

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/5/2024 9:37:34 AM UTC  (today)

File size:
14.2 MB (14,909,336 bytes)

Product version:
9.1.0

Copyright:
Copyright © 2009-2016 by WowApp

Original file name:
WowApp.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\roaming\wowapp\wowapp.exe

Digital Signature
Authority:
Symantec Corporation

Valid from:
6/8/2015 2:00:00 AM

Valid to:
7/8/2016 1:59:59 AM

Subject:
CN=YouWowMe Limited, O=YouWowMe Limited, L=Wanchai, S=Hong Kong, C=HK

Issuer:
CN=Symantec Class 3 SHA256 Code Signing CA, OU=Symantec Trust Network, O=Symantec Corporation, C=US

Serial number:
717BB6E5C35C04B5C40A6E7CCDD043B4

File PE Metadata
Compilation timestamp:
5/18/2016 1:36:51 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
12.0

CTPH (ssdeep):
196608:TK1R3F/ayQkzmf6+EpTkTtWlxj7KZPPXl1A1blZY6jG1+8P:mR3FSyvxkJs1w/A15

Entry address:
0x42E824

Entry point:
E8, E8, 0B, 00, 00, E9, 00, 00, 00, 00, 6A, 14, 68, 28, 28, 13, 01, E8, 76, 07, 00, 00, 33, F6, 89, 75, E4, 89, 75, E0, FF, 15, 64, D3, 9B, 00, 0F, B7, D8, 89, 75, FC, 64, A1, 18, 00, 00, 00, 8B, 50, 04, 8B, FE, BE, 80, F2, 18, 01, 8B, CA, 33, C0, F0, 0F, B1, 0E, 85, C0, 74, 0B, 3B, C2, 75, F0, 33, F6, 46, 8B, FE, EB, 03, 33, F6, 46, 39, 35, 84, F2, 18, 01, 75, 0A, 6A, 1F, E8, 27, 0A, 00, 00, 59, EB, 3B, 83, 3D, 84, F2, 18, 01, 00, 75, 2C, 89, 35, 84, F2, 18, 01, 68, FC, 2E, 9C, 00, 68, E8, 2E, 9C, 00, E8...
 
[+]

Code size:
5.7 MB (6,012,416 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
WowApp

Command:
C:\users\{user}\appdata\roaming\wowapp\wowapp.exe


The file WowApp.exe has been discovered within the following program.

WowApp  by WowApp
About 54% of users remove it
 
Powered by Should I Remove It?

Scan WowApp.exe - Powered by Reason Core Security