> something, someone that has my public key but let's say is running PGP
> whatever version, they *can* decrypt my messages right?
Only the owner of the secret key can decrypt a message once it has been encoded for that key. In short, the answer is "no."
> question... What's the use of signing a file/message ?
The same as signing anything else in life: the prove that you really sent something, or wrote something.
> really understand the trust thign.. I typed gpg --edit-key Acid-Duck
You assign trust based on how much you trust the owner of the key to authenticate other keys.