Il reste donc quelques éléments à supprimer à la main :

  • Rendez-vous sur la page de téléchargement de ZHPFix, puis cliquez sur le bouton bleu "Nicolas Coolman - Télécharger".
  • Enregistrez le fichier sur votre bureau et lancez-le (par un clic-droit -> Exécuter en temps qu'administrateur).
  • Laissez-vous guider pendant l'installation, à la fin, un raccourci se crée sur le bureau, lancez le (par un...


I have no control of my phone's or computers someone has gotten in my Google acc and taken over can I get help somewhere I buy new phone's and they get in them as soon as they are turn ed d on help please it's been a year


Souris double clic toute seule

quand je clic sur la souris  elle fait au moin un double clic :

en suvant les instructions de

j'ai utilsé  Hijackthis  ,le rapport donne:


Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 03:45:34, on 27/04/2016 Platform: Windows 7  (WinNT 6.00.3504) MSIE: Internet Explorer v9.00 (9.00.8112.16514) Boot mode: Normal...

on Disinfection by ****

Here is the log :

Résultats de correction de Farbar Recovery Scan Tool (x86) Version:18-04-2016
Exécuté par Paul (2016-04-19 20:58:21) Run:1
Exécuté depuis C:\Users\Paul\Desktop
Profils chargés: Paul (Profils disponibles: Paul)
Mode d'amorçage: Normal


fixlist contenu:
S3 avchv; \S...

Yes, but your computer doesn't seem to have some remainings, so we need to spot what is re-creating this folder at each reboot.

Since I didn't see it with ZHPDiag, we'll try with FRST :

  1. Download FRST
  2. Right-click on the file -> "Execute as Administrator"
  3. Click on the "Scan" button
  4. The logfile is saved as FRST.txt , and additional informations are in Addition.txt.
  5. Please host them on Up2Sha...

OK here it is:

Windows PowerShell Copyright (C) 2015 Microsoft Corporation. All rights reserved.

PS C:\Users\Steve> Get-Process

Handles  NPM(K)    PM(K)      WS(K) VM(M)   CPU(s)     Id  SI ProcessName
 -------  ------    -----      ----- -----   ------     --  -- -----------
    659      41    88744      20340   483    31.63   7860   1 Adguard
    1230      65   173272      44460   514    ...

2016-04-15 11:23:20 : [Notice]		Scan started
2016-04-15 11:23:20 : [Success]		Internet connection is UP
2016-04-15 11:23:22 : [Success]		Loaded C:\Users\tloft\AppData\Local\Temp\sqlite.dll
2016-04-15 11:23:22 : [Success]		Opened C:\AdwCleaner\adwcleaner.db
2016-04-15 11:23:22 : [Success]		Database v2016-04-15.1
2016-04-15 11:23:23 : [Success]		Retrieved 1711 elements from 'chrome_extensions' t...

I'll keep checking back over the next hour to see if you reply again.

EDIT: Tried to put log in code snippet, hopefully displays correct on your end >.<


Handles  NPM(K)    PM(K)      WS(K) VM(M)   CPU(s)     Id  SI ProcessName
-------  ------    -----      ----- -----   ------     --  -- -----------
    127       8     1356       6572    67     0.03   1624   0 AdaptiveSleepService


Good morning !

To your suggestions:

Removing DocMgr would of course be fine !

lanconf.exe is checked, false positive :-)

MyPhoneExplorer: Used it two times till now to get the SMS archive on the PC, what is a special task ;-)

ZHPCleaner: Ran it, removed the threats. But I noticed two strange behaviors when runing ZHPCleaner - first I started it when IE and Firefox were active (which were r...


Hi :)

I do a cleanup of the installed software frequently, there should be not to much unknown.

Most of the programs you listed are installed since a while and known to me (some are quite famous like Corel or Paragon), only DocMgr is quite questionable - it isn't listed in the installed programs, and I can find it listed in the start menu.

I ran cCleaner to see if there are invalid registry...