Hi,
a few days ago Avast free edition (which I satisfactory use for around 8 years) warned me of a malware stopped "just in time".
Today I realised all my windows 7 SP1 PC directories contained a @README.HTML file which when opened in my other linux OS chrome browser (I have a multi-boot PC, windows and linux) stated that my files were strong encrypted and gave me directions to how I could have the password to decrypt them back paying some bitcoins.
I didn't notice any encrypted files so I thought it must have been the malware Avast stopped a few days earlier and kept a copy of the @README.HTML file, send to Avast Lab a msg explaining what happened attaching the stopped malware dll from the virus chest.
In the evening I found some 50% of all my HD files encrypted with hexadecimal long names and extensions.
I quit windows and now from linux I'm writing this msg.
I tried to identify the ransomware using
https://id-ransomware.malwarehunterteam.com/ but it says it's an unknown virus at the moment, to backup my encrypted files and hope someday a decrypter is released.
As of now I'm not sure at all it was the malware avast stopped some days ago, even if the creation date and time of all the @README.HTML files is almost exactly (a few seconds difference) the one from the avast virus chest, the latter makes it quite likely but it would mean avast failed to actually stop it.
I'm going to backup everything encypted and not on usb external disk from linux and then reinstall win7.
Anybody else faced this virus, some help from the avast team?
TIA and best regards
Vik