How to remove BNUpdate.exe

BNUpdate.exe

The module BNUpdate.exe has been detected as Ransom.Wacatac

BNUpdate.exe
Product Name:

Blizzard Update Program

Company Name:

Blizzard Entertainment

MD5: 2b90d4c10c0fd69525f8c36e4c6948c8
Size: 408 KB
First Published: 2023-06-22 23:45:52 (2 years ago)
Latest Published: 2025-02-19 23:00:41 (7 months ago)
Status: Ransom.Wacatac (on last analysis)
Analysis Date: 2025-02-19 23:00:41 (7 months ago)
%desktop%\warcraft
%sysdrive%\$recycle.bin\s-1-5-21-530576872-231449882-819686416-1000\$rxp3x2d
%desktop%
66.7%
33.3%
Windows 10 100.0%
Subsystem: Windows GUI
PE Type: pe
OS Bitness: 32
Image Base: 0x00400000
Entry Address: 0x000078f0

PE Sections:

Name Size of data MD5
.text 229376 531c6164817fc559094057de7b422677
.rdata 28672 a1a444d53df1a042589360bb0ef8bfa1
.data 110592 4779a7dc3ffd559689094a387f4565f7
.rsrc 45056 51a58eefc650a372d2b3bb1396da9eb9

More information:

Download GridinSoft Anti-Malware - Removal tool for BNUpdate.exe