Here a solution to remove the Grenam.A or Renamer Virus manually. Hope this will help you to safe your data.
The virus recursively enumerates folders on drives beginning with the drive C:. The virus will infect files found on mapped networked and attached drives, provided the security context where the virus was run allows it.
Once an executable for infection is found, the virus will copy it as g[original file name].exe with a "hidden" attribute, and then copy itself with the original program's name and icon; if the icon is not present in the resources of the original file, the virus will use its own icon and will leave a 0 size file g[original file name].ico, as seen in the image below:
picture of infected files in a folder
The virus will not infect if it finds that the g[original file name].exe already exists. It will only infect 123 files at a time, run the original program, then exit.
Virus:Win32/Grenam.A uses ShellExecute to run a renamed original file.
▶️For more tutorials and software reviews please subscribe to my channel
💻To Download the Software visit my website.
🌍engrsajidrehma...
📣 Please also subscribe to my other channel.
🌍 / @fishnfisherman
22 окт 2024