Thanks all for your replies, i was able to remove it by doing an offline scan from Windows defender, and i found that the contaminated files was downloaded by windows mail, to the file location : “C:\Users\UFO\AppData\Local\Packages\microsoft.windowscommunicationsapps….. “ i was able to remove the hole folder and reset my mail app, then windows mail try to download some files again in the same type : “ Aujourd'hui, 27/09/2021 21:27:39;Un objet malveillant a été détecté;Microsoft Outlook Communications;HxTsr.exe;C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20436.0_x64__8wekyb3d8bbwe\HxTsr.exe;C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20436.0_x64__8wekyb3d8bbwe;28004;DESKTOP-QU81LGQ\UFO;Utilisateur actif;Détecté;Détecté;HEUR:Trojan.PDF.Badur.gena;Cheval de Troie;Élevé;Exactement;https://outlook.office365.com/outlookservice/servicechannel.hxs;servicechannel.hxs;https://outlook.office365.com/outlookservice;Fichier;Analyse des experts ” But Kasperky blocked it, and I don't have the virus popping off again on Windows defender I’m not an expert I hope if someone can correct me if I’m wrong but I think I’m safe for now.