My computer was compromised, possibly by a keylogger that I downloaded onto the D: drive. I reinstalled Windows on the C: drive, but the D: drive still contained its original data. Do I need to wipe or reformat the D: drive as well, and can I do that without reinstalling Windows again? I eventually reinstalled Windows and erased the system, but I still have questions about security. I had six Google accounts signed in on the computer; my main account had two-factor authentication enabled and a debit card linked to it. I removed the card and enabled two-factor authentication on the other accounts. Are those accounts and banking details still at risk? I also kept two folders containing mostly work-related Word documents and PDFs. How can I check that those files are safe before using them again?
3 Answers
Change every password that was used on the compromised computer, preferably from a different trusted device. Start with email, banking, and password-manager accounts, then revoke active sessions and check recovery addresses, forwarding rules, sign-in history, and saved payment methods. Two-factor authentication helps a lot, but contact the bank and monitor the account because a keylogger could have captured passwords or financial information before the reinstall.
For the documents, scan them with an up-to-date security tool and upload suspicious files to a reputable multi-engine scanner if company policy allows. Keep the files in a separate folder while checking them, and open them only with current, patched applications and protected view enabled. PDFs and Office files can contain malicious scripts or exploits, so delete anything you do not recognize rather than trying to repair it.
If the malware may have been stored or run from D:, treat that drive as compromised too. The safest approach is to copy only essential, known-good documents to external storage, scan them from the freshly installed system, and then fully wipe and reformat D:. Avoid copying executables, scripts, cracked software, or unknown downloads. A clean Windows installation should be performed from official installation media, with the other drives disconnected during setup if possible.

Related Questions
Can't Load PhpMyadmin On After Server Update
Redirect www to non-www in Apache Conf
How To Check If Your SSL Cert Is SHA 1
Windows TrackPad Gestures