On my PC I have:
C:Windows 7
D:Windows xp
Avast Internet Security
hello everybody, I don't know IT, but I'm glad, I can ask friends for help!
On Dec.14.2018 around 13:10 PM, a few minutes after I turned on the PC, I got black screen and there was Gandcrab v.5.0.4 with his note... saying all my files are encrypted and so on...and only after a while I realized the DISASTER...The first since I have computer.
Unfortunately I don't have any backup of my other partitions (except S: system, C: win.7 and D: win.xp), so I have to wait until "Angels" have success with a Decryption Tool against this version of Gandcrab.
I ran Smart Scan 2-3 times the day after, but nothing found. Although Avast firewall had alerted 3 or 4 times the day before, when I was stupidly downloading freeware’s like iShare, wondershare, iTools and such crazy things for some reason...
I started searching in internet and found out that Malwarebytes could be the right one, so installed (last version premium Trial for two weeks) and scanned the PC....it found many files and some Malware, and PuPs and recommend to remove them and restart...so I did. Scanned again...everything was fine !!
So I took Malwarebytes away and reinstalled my Avast Internet Security again and since no more black screen, nothing.. Although in whole PC no file opens, except the ones in Avast File Shield.
My problems now:
1) I'm not sure if my PC is clean now?
_ because when I was going through instruction’s steps (report when infected), the adwCleaner found some 4 or 5 PuP's that some I had not seen before, which then, it had to remove them and restart the computer!
2) if I can start Restoring my systems ?
_ Using system restore points, or restore from AOMEI backups, (unfortunately both are on the same hdd, only different partition).
These are probably very primitive questions, but an old retired person can and is allowed to be a little scary though !
I don't really know what to do now.
Thanks for any help in advance.
PS: I have 3 more files to attach, where should I put them?