Hello, Welcome to BleepingComputer.
I'm nasdaq and will be helping you.
If you can please print this topic it will make it easier for you to follow the instructions and complete all of the necessary steps in the order listed.
This is the infection - CryptoWall and HELP_DECRYPT Ransomware Information Guidehttp://www.bleepingcomputer.com/virus-removal/cryptowall-ransomware-information
Other than paying the ransom if it's not too late there is nothing we can do to restore your files.
I know one thing I would not trust them, your call.
If you want us to clean what has been left over the the infections please run these tools and submit the logs for my review.
Open notepad (Start =>All Programs => Accessories => Notepad). Please copy the entire contents of the code box below.
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
S4 blbdrive; \SystemRoot\system32\drivers\blbdrive.sys [X]
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]
Save the files as fixlist.txt
in the same folder where the Farbar tool is running from.
The location is listed in the 3rd line of the Farbar log you have submitted.
and click Fix
only once and wait.
Restart the computer normally to reset the registry.
The tool will create a log (Fixlog.txt) please post it to your reply.
How is the computer running now?