How to remove passwordfox64.exe

passwordfox64.exe

The module passwordfox64.exe has been detected as PUP.NirSoft

passwordfox64.exe
Product Name:

PasswordFox

Company Name:

NirSoft

MD5: b01492825160cee01821c34133a1294c
Size: 134 KB
First Published: 2017-05-24 20:02:51 (6 years ago)
Latest Published: 2021-01-13 03:13:50 (3 years ago)
Status: PUP.NirSoft (on last analysis)
Analysis Date: 2021-01-13 03:13:50 (3 years ago)
Signed By: Nir Sofer
Status: Valid
%sysdrive%\$recycle.bin\s-1-5-21-3026355524-453306283-1535374647-1001\$rqg1g27\nirsoft\x64
%desktop%\nirsoft_package_1.20.2\nirsoft\x64
%profile%\downloads\nirsoft_package_1.20.2\nirsoft\x64
%programfiles%\nirsoft\nirsoft\x64
%localappdata%\microsoft\windows\inetcache\ie\8kkbgkhc\nirsoft_package_1.20.5[1].zip\nirsoft\x64
%profile%\downloads\ns\nirsoft_package_1.19.118.zip\nirsoft\x64
%desktop%\nirsoft\nirsoft_package_1.19.119.zip\nirsoft\x64
%desktop%\nirsoft\nirsoft_package_1.19.119\nirsoft\x64
%profile%\downloads\ns\nirsoft_package_1.19.118\nirsoft_package_1.19.119.zip\nirsoft\x64
%profile%\downloads\portable\windows_repair_toolbox\downloads\nirlauncher\nirsoft\x64
passwordfox.exe
passwordfox64.exe
A0347903.exe
PasswordFox.exe
19.7%
17.9%
12.7%
6.9%
6.4%
5.8%
3.5%
3.5%
3.5%
2.3%
2.3%
1.7%
1.7%
1.7%
1.2%
1.2%
1.2%
1.2%
1.2%
1.2%
0.6%
0.6%
0.6%
0.6%
0.6%
0.6%
Windows 10 60.9%
Windows 7 28.7%
Windows XP 5.2%
Windows 8.1 4.0%
Windows Server 2012 R2 0.6%
Windows 8 0.6%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 64
Image Base: 0x0000000140000000
Entry Address: 0x00015030

PE Sections:

Name Size of data MD5
.text 83456 792284a7080ed29798b43a18815965ac
.rdata 20992 30ab050eabaa2f85d0b3c89e7e8687da
.data 1536 962fcef3dcc79721d0cce272ef499f78
.pdata 4096 ada344a10d67955fc84f0583b3f0ed95
.rsrc 14336 a0249d0a8b1a556cb8b68a2c5cd8cf14

More information:

Download GridinSoft Anti-Malware - Removal tool for passwordfox64.exe