Start Your System in Safe Mode for this How to Do Follow the Bottom 2 Links:-
Source: https://www.pcrisk.com/removal-guides/13791-gandcrab-502-ransomwareSource: https://www.2-spyware.com/remove-gandcrab-5-0-2-ransomware.html
After Booting in safe mode with Networking.
Download Windows Resource Kit:-
https://www.microsoft.com/en-us/download/details.aspx?id=17657
https://www.technlg.net/windows/download-windows-resource-kit-tools/
Copy this code on desktop in notepad and save as FIX.bat
Script for renewing Registry Editor: subinacl /subkeyreg HKEY_LOCAL_MACHINE /setowner=Administrators subinacl /subkeyreg HKEY_CURRENT_USER /setowner=Administrators subinacl /subkeyreg HKEY_CLASSES_ROOT /setowner=Administrators subinacl /subdirectories %SystemDrive% /setowner=Administrators subinacl /subkeyreg HKEY_LOCAL_MACHINE /grant=system=f subinacl /subkeyreg HKEY_CURRENT_USER /grant=system=f subinacl /subkeyreg HKEY_CLASSES_ROOT /grant=system=f subinacl /subdirectories %SystemDrive% /grant=system=f
and Now Copy this FIX.bat File to:-
C drive> program Files(X86)> Window Resource Kits > Tools>
Now Open Command Prompt with Admin Rights and Go to
cd "C:\Program Files(X86)\Windows Resource Kits\Tols" and Type FIX.bat and Hit enter.
It will Repair the modified Ststem File and After successful, Restart and Install and Scan Your Ststem With Anti Ransomeware Tool.
https://www.bleepingcomputer.com/download/malwarebytes-anti-ransomware/
https://www.spyhunter.com/2QmOi1F/
Petya Ransomeware:
http://www.mediafire.com/file/2ct37vf81k9ix4h/Petya_Ransomeware.zip#
Password: petyabyitzluk3