Mededeling

Collapse
No announcement yet.

PC waarschijnlijk geinfecteerd. verwijderd en installeert zelf bestaden!?

Collapse
X
  •  
  • Filter
  • Tijd
  • Show
Clear All
new posts

  • PC waarschijnlijk geinfecteerd. verwijderd en installeert zelf bestaden!?

    Hej!

    ik heb sinds vandaag enorme problemen met me pc. Na het installeren van waarvan ik dacht een download programma is me computer nu druk bezig met zelf bestanden instaleren en verwijderen. google chrome knikkert die weg en krijg opera en crossbrowse ervoor in de plaats? en zo zijn er tal van bestandjes en programma's die die zelf installeert. Waarschijnlijk dus een virus of mallware?

    zou iemand mij kunnen helpen met dit eraf te krijgen want er valt niet meer met me pc te werken zo

    ik hoor het graag!

    Gr, Mord

  • #2
    Schakel eerst de Antivirussoftware uit voordat je zoek.exe download of uitvoert.
    Schakel je antivirus- en antispywareprogramma's tijdelijk uit, deze kunnen namelijk de werking van Zoek.exe nadelig beïnvloeden.
    (hier en hier) kan je lezen hoe je dat doet.

    Download Zoek.exe naar het bureaublad (klik hier voor meer informatie over hoe zoek.exe te gebruiken)
    • Wanneer Internet Explorer of een andere browser of virusscanner melding geeft dat dit bestand onveilig zou zijn kan je dat negeren, het is namelijk een onterechte waarschuwing.
    • Dubbelklik vervolgens op Zoek.exe om de tool te starten.
    • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
    • Kopieer nu onderstaande code en plak die in het grote invulvenster:
    • Note: Dit script is speciaal bedoeld voor deze Computer, gebruik dit dan ook niet op andere computers met een gelijkaardig probleem.
      Code:
      torpigcheck; 
      shortcutfix;
      emptyfolderscheck;delete
      firefoxlook; 
      Chromelook; 
      CHRdefaults;
      autoclean; 
      iedefaults;
    • Klik nu op de knop "Run script".
    • Wacht nu geduldig af tot er een logje opent (dit kan na een herstart zijn als deze benodigd is).
    • Mocht er geen logje verschijnen, start zoek.exe dan opnieuw en klik op de knop zoek-results.log, de log verschijnt dan alsnog.
    • Post het geopende logje in het volgende bericht als bijlage.

    Windows 10 opstarten in Veilige Modus

    Comment


    • #3
      Zoek.exe v5.0.0.0 Updated 04-May-2015
      Tool run by Maron on 2015-08-27 at 19:15:25,69.
      Microsoft Windows 7 Ultimate 6.1.7601 Service Pack 1 x64
      Running in: Normal Mode Internet Access Detected
      Launched: C:\Users\Maron\Downloads\zoek.exe [Scan all users] [Script inserted]

      ==== System Restore Info ======================

      2015-08-27 19:17:26 Zoek.exe System Restore Point Created Successfully.

      ==== Torpig Check ======================

      HKEY_CLASSES_ROOT\Directory\shellex\CopyHookHandlers\DropboxCopyHook {FBC9D74C-AF55-4309-9FB2-C426E071637F} C:\Users\Maron\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll
      HKEY_CLASSES_ROOT\Directory\shellex\CopyHookHandlers\FileSystem {217FC9C0-3AEA-1069-A2DB-08002B30309D} %SystemRoot%\system32\shell32.dll
      HKEY_CLASSES_ROOT\Directory\shellex\CopyHookHandlers\Sharing {40dd6e20-7c17-11ce-a804-00aa003ca9f6} %SystemRoot%\system32\ntshrui.dll


      ==== Empty Folders Check ======================

      C:\PROGRA~2\predm deleted successfully
      C:\Program Files\ATI Technologies deleted successfully
      C:\PROGRA~3\Babylon deleted successfully
      C:\PROGRA~3\Oracle deleted successfully
      C:\PROGRA~3\update deleted successfully
      C:\Users\Maron\AppData\Roaming\Opera Software deleted successfully
      C:\Users\Maron\AppData\Roaming\TP deleted successfully
      C:\Users\Maron\AppData\Local\Conduit deleted successfully
      C:\Users\Maron\AppData\Local\EmieBrowserModeList deleted successfully
      C:\Users\Maron\AppData\Local\EmieSiteList deleted successfully
      C:\Users\Maron\AppData\Local\EmieUserList deleted successfully
      C:\Users\Maron\AppData\Local\Opera Software deleted successfully
      C:\Users\Maron\AppData\Local\WMTools Downloaded Files deleted successfully

      ==== Deleting CLSID Registry Keys ======================

      HKEY_USERS\S-1-5-21-2205342287-664300204-618407795-1000\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} deleted successfully
      HKEY_USERS\S-1-5-21-2205342287-664300204-618407795-1000\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} deleted successfully
      HKEY_USERS\S-1-5-21-2205342287-664300204-618407795-1000\Software\Microsoft\Internet Explorer\SearchScopes\{F058C085-8951-4119-A570-5A2A0C634DCC} deleted successfully
      HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} deleted successfully
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} deleted successfully

      ==== Deleting CLSID Registry Values ======================


      ==== Deleting Services ======================

      HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\cijipewu deleted successfully
      HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\cijipewu deleted successfully
      HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\hyverumu deleted successfully
      HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\hyverumu deleted successfully
      HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\kefowydy deleted successfully
      HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\kefowydy deleted successfully
      HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\globalUpdate deleted successfully
      HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\globalUpdate deleted successfully
      HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\globalUpdatem deleted successfully
      HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\globalUpdatem deleted successfully
      HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Service Mgr MagicalFind deleted successfully
      HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Service Mgr MagicalFind deleted successfully
      HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Update Mgr MagicalFind deleted successfully
      HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Update Mgr MagicalFind deleted successfully

      ==== Registry Fix Code ======================

      Windows Registry Editor Version 5.00

      [HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\Google Chrome\shell\open\command]
      @="C:\\Program Files (x86)\\Google\\Chrome\\Application\\chrome.exe"
      [HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command]
      @="C:\\Program Files\\Internet Explorer\\iexplore.exe"
      [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
      "bProtector Start Page"=-
      [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
      "bProtectorDefaultScope"=-

      ==== Deleting Files \ Folders ======================

      C:\PROGRA~2\predm not found
      C:\Users\Maron\AppData\Roaming\mystartsearch not found
      C:\Users\Maron\AppData\Roaming\oursurfing not found
      C:\Users\Maron\AppData\Roaming\mystartsearch not found
      C:\Users\Maron\AppData\Roaming\mystartsearch not found
      C:\PROGRA~2\78e22e6c-867a-4197-926e-bd9c802e0473 deleted
      C:\Program Files (x86)\Adobe\cd8ccd9d-3e63-44c1-87b0-56abec91062d.dll deleted
      C:\Program Files (x86)\Adobe\78e22e6c-867a-4197-926e-bd9c802e0473.dll deleted
      C:\PROGRA~3\1c1e4ef3-a4fe-42a4-a546-08f69e47d2d1 deleted
      C:\Users\Maron\AppData\LocalLow\Conduit deleted
      C:\PROGRA~2\globalUpdate deleted
      C:\PROGRA~2\Conduit deleted
      C:\PROGRA~2\COMMON~1\1c1e4ef3-a4fe-42a4-a546-08f69e47d2d1 deleted
      C:\task.vbs deleted
      C:\found.000 deleted
      C:\Users\Maron\AppData\Roaming\VOPackage deleted
      C:\Users\Maron\AppData\Roaming\Babylon deleted
      C:\Users\Maron\AppData\Roaming\OpenCandy deleted
      C:\PROGRA~3\Package Cache deleted
      C:\Users\Maron\AppData\Local\CRE deleted
      C:\Users\Maron\AppData\Local\onlysearch deleted
      C:\Users\Maron\AppData\Local\D54D98C0-1440111675-11E0-A04E-14DAE9471D94 deleted
      C:\Users\Maron\AppData\Local\globalUpdate deleted
      C:\Users\Maron\AppData\Local\avgchrome deleted
      C:\Users\Maron\AppData\Local\CrashRpt deleted
      C:\Users\Maron\AppData\Local\Google\Chrome\User Data\Default\bprotector web data deleted
      C:\Users\Maron\AppData\Local\Google\Chrome\User Data\Default\bprotectorpreferences deleted
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GAMESDESKTOP deleted
      C:\Users\Maron\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage deleted
      C:\Users\Maron\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitGuard deleted
      C:\Windows\Tasks\b3541457-2800-46b8-9322-d3b74b718152-1-6.job deleted
      C:\Windows\Tasks\b3541457-2800-46b8-9322-d3b74b718152-1-7.job deleted
      C:\Windows\Tasks\b3541457-2800-46b8-9322-d3b74b718152-10_user.job deleted
      C:\Windows\Tasks\b3541457-2800-46b8-9322-d3b74b718152-3.job deleted
      C:\Windows\Tasks\b3541457-2800-46b8-9322-d3b74b718152-5.job deleted
      C:\Windows\Tasks\b3541457-2800-46b8-9322-d3b74b718152-5_user.job deleted
      C:\Windows\Tasks\b3541457-2800-46b8-9322-d3b74b718152-6.job deleted
      C:\Windows\Tasks\b3541457-2800-46b8-9322-d3b74b718152-7.job deleted
      C:\windows\SysNative\Tasks\b3541457-2800-46b8-9322-d3b74b718152-1-6 deleted
      C:\windows\SysNative\Tasks\b3541457-2800-46b8-9322-d3b74b718152-1-7 deleted
      C:\windows\SysNative\Tasks\b3541457-2800-46b8-9322-d3b74b718152-10_user deleted
      C:\windows\SysNative\Tasks\b3541457-2800-46b8-9322-d3b74b718152-3 deleted
      C:\windows\SysNative\Tasks\b3541457-2800-46b8-9322-d3b74b718152-5 deleted
      C:\windows\SysNative\Tasks\b3541457-2800-46b8-9322-d3b74b718152-5_user deleted
      C:\windows\SysNative\Tasks\b3541457-2800-46b8-9322-d3b74b718152-6 deleted
      C:\windows\SysNative\Tasks\b3541457-2800-46b8-9322-d3b74b718152-7 deleted
      C:\Users\Maron\Downloads\SoftonicDownloader_for_free-video-flip-and-rotate.exe deleted
      C:\Users\Maron\Downloads\SoftonicDownloader_for_windows-movie-maker.exe deleted
      C:\Users\Maron\Downloads\SoftonicDownloader_voor_pc-wizard.exe deleted
      C:\Users\Maron\Downloads\SoftonicDownloader_voor_speedfan.exe deleted
      C:\Users\Maron\Downloads\SoftonicDownloader_voor_utorrent.exe deleted
      C:\Users\Maron\Downloads\SoftonicDownloader_voor_vlc-media-player.exe deleted
      C:\Users\Maron\Downloads\SoftonicDownloader_voor_winrar.exe deleted
      C:\Users\Maron\AppData\LocalLow\Delta deleted
      C:\Users\Maron\AppData\LocalLow\PriceGong deleted
      C:\Windows\tasks\sZsk4N9.job deleted
      C:\windows\SysNative\tasks\sZsk4N9 deleted
      C:\Windows\tasks\Z6NloZFJ35cXC13Qd0ppwDaZ.job deleted
      C:\windows\SysNative\tasks\Z6NloZFJ35cXC13Qd0ppwDaZ deleted
      C:\Windows\tasks\globalUpdateUpdateTaskMachineCore.job deleted
      C:\Windows\tasks\globalUpdateUpdateTaskMachineUA.job deleted
      C:\windows\SysNative\tasks\globalUpdateUpdateTaskMachineCore deleted
      C:\windows\SysNative\tasks\globalUpdateUpdateTaskMachineUA deleted
      C:\windows\SysNative\tasks\BitGuard deleted
      C:\Windows\SysNative\config\systemprofile\Searches deleted
      C:\Windows\SysWow64\searchplugins deleted
      C:\Windows\SysWow64\Extensions deleted
      C:\Users\Maron\Documents\Updater deleted
      C:\Users\Maron\Desktop\Continue Games Desktop.lnk deleted
      C:\Users\Maron\AppData\Roaming\9jexaMnJ9qf7dxM7FfufRE.exe deleted
      C:\Users\Maron\AppData\Roaming\sZsk4N9.exe deleted
      C:\Users\Maron\AppData\Roaming\Z6NloZFJ35cXC13Qd0ppwDaZ.exe deleted
      "C:\Users\Maron\AppData\Roaming\9jexaMnJ9qf7dxM7FfufRE" deleted
      "C:\Windows\tasks\9jexaMnJ9qf7dxM7FfufRE.job" deleted
      "C:\Windows\SysNative\tasks\9jexaMnJ9qf7dxM7FfufRE" deleted
      "C:\Users\Maron\AppData\Roaming\sZsk4N9" deleted
      "C:\Users\Maron\AppData\Roaming\Z6NloZFJ35cXC13Qd0ppwDaZ" deleted
      "C:\Users\Maron\AppData\Local\Labsoltax.exe" deleted
      "C:\PROGRA~2\gmsd_nl_005010066\gmsd_nl_005010066.exe" deleted
      "C:\PROGRA~2\gmsd_nl_005010066\gmsd_nl_005010066.exe" deleted
      "C:\Users\Maron\AppData\Local\gmsd_nl_005010066\upgmsd_nl_005010066.exe" deleted
      "C:\Users\Maron\AppData\Local\gmsd_nl_005010066\upgmsd_nl_005010066.exe" deleted
      "C:\PROGRA~2\gmsd_nl_005010066" deleted
      "C:\PROGRA~2\gmsd_nl_005010066" deleted
      "C:\Users\Maron\AppData\Local\gmsd_nl_005010066" deleted
      "C:\Users\Maron\AppData\Local\gmsd_nl_005010066" deleted

      ==== Folders in C:\PROGRA~3 0-6 Months Old ======================

      2015-03-23 22:14:14 -------- d-----w- C:\PROGRA~3\Adobe Systems
      2015-04-19 18:45:00 -------- d---a-w- C:\PROGRA~3\TEMP
      2015-04-21 11:14:02 -------- d-----w- C:\PROGRA~3\E1864A66-75E3-486a-BD95-D1B7D99A84A7
      2015-06-02 18:13:26 -------- d-----w- C:\PROGRA~3\Dropbox
      2015-06-14 18:05:47 -------- d-----w- C:\PROGRA~3\McAfee
      2015-08-02 22:12:46 -------- d-----w- C:\PROGRA~3\ATI
      2015-08-20 20:59:39 -------- d-----w- C:\PROGRA~3\XWinManProX
      2015-08-22 17:46:27 -------- d-----w- C:\PROGRA~3\ExtTag
      2015-08-22 17:48:06 -------- d-----w- C:\PROGRA~3\ExtTags

      ==== Chromium Look ======================

      Google Chrome Version: 44.0.2403.157

      HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
      cjofdnhdkbflacojpfpkchgafjahijbb - C:\Users\Maron\AppData\Local\CRE\cjofdnhdkbflacojpfpkchgafjahijbb.crx
      dnligehkhogpcngalffdoomehjcbecna - No path found
      gehmndecgbcffhmfjkenpamdgechcgpe - No path found

      HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions
      cjofdnhdkbflacojpfpkchgafjahijbb - C:\Users\Maron\AppData\Local\CRE\cjofdnhdkbflacojpfpkchgafjahijbb.crx

      uTorrentBar_NL - Maron\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\cjofdnhdkbflacojpfpkchgafjahijbb
      Baboom New Tab - Maron\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\dnligehkhogpcngalffdoomehjcbecna
      Baboom Search - Maron\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\gehmndecgbcffhmfjkenpamdgechcgpe
      Chrome Web Store Payments - Maron\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
      Google Docs - Maron\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake
      Google Drive - Maron\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf
      YouTube - Maron\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo
      uTorrentBar_NL - Maron\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjofdnhdkbflacojpfpkchgafjahijbb
      Google Search - Maron\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf
      Baboom New Tab - Maron\AppData\Local\Google\Chrome\User Data\Default\Extensions\dnligehkhogpcngalffdoomehjcbecna
      AdBlock - Maron\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom
      Chrome Hotword Shared Module - Maron\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg
      Chrome Web Store Payments - Maron\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
      CinemaPlus-3.2cV20.08 - Maron\AppData\Local\Google\Chrome\User Data\Default\Extensions\papbadoldddalgcjcicnikcfenodpghp
      Gmail - Maron\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia

      ==== Chromium Startpages ======================

      C:\Users\Maron\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Preferences
      "homepage": "http://www.mystartsearch.com/?type=sy&ts=1440104999&z=720c1c8ce108b816abef1f0g6z0zde6g3e0z6bdt5w&from=cmi&uid=HitachiXHDS721010CL A332_JP2940J81XBTMV1XBTMVX",

      C:\Users\Maron\AppData\Local\Google\Chrome\User Data\Default\Preferences
      \"local\",\"customMargins\":null,\"undefined\":{\"version\":\"1.0\",\"printer\":{\"collate\":{\"defa ult\":true},\"color\":{\"option\":[{\"type\":\"STANDARD_COLOR\",\"is_default\":true},{\"type\":\"STANDARD_MONOCHROME\",\"is_default\":f alse}]},\"copies\":{\"default\":1},\"page_orientation\":{\"option\":[{\"type\":\"PORTRAIT\",\"is_default\":true},{\"type\":\"LANDSCAPE\"}]}}},\"selectedDestinationName\":\"HP Officejet 6600 (Network)\",\"selectedDestinationAccount\":\"\",\"selectedDestinationCapabilities\":{\"printer\":{\" collate\":{},\"color\":{\"option\":[{\"is_default\":true,\"type\":\"STANDARD_COLOR\",\"vendor_id\":\"2\"},{\"type\":\"STANDARD_MONOCHROM E\",\"vendor_id\":\"1\"}]},\"copies\":{},\"dpi\":{\"option\":[{\"horizontal_dpi\":600,\"is_default\":true,\"vertical_dpi\":600}]},\"media_size\":{\"option\":[{\"custom_display_name\":\"Letter\",\"height_microns\":279400,\"name\":\"NA_LETTER\",\"vendor_id\":\ "1\",\"width_microns\":215900},{\"custom_display_name\":\"Legal\",\"height_microns\":355600,\"name\" :\"NA_LEGAL\",\"vendor_id\":\"5\",\"width_microns\":215900},{\"custom_display_name\":\"Statement\",\ "height_microns\":215900,\"name\":\"NA_INVOICE\",\"vendor_id\":\"6\",\"width_microns\":139700},{\"cu stom_display_name\":\"Executive\",\"height_microns\":266700,\"name\":\"NA_EXECUTIVE\",\"vendor_id\": \"7\",\"width_microns\":184100},{\"custom_display_name\":\"A4\",\"height_microns\":297000,\"is_defau lt\":true,\"name\":\"ISO_A4\",\"vendor_id\":\"9\",\"width_microns\":210000},{\"custom_display_name\" :\"A5\",\"height_microns\":210000,\"name\":\"ISO_A5\",\"vendor_id\":\"11\",\"width_microns\":148000} ,{\"custom_display_name\":\"B5 (JIS)\",\"height_microns\":257000,\"name\":\"JIS_B5\",\"vendor_id\":\"13\",\"width_microns\":182000} ,{\"custom_display_name\":\"Envelope #10\",\"height_microns\":241300,\"name\":\"NA_NUMBER_10\",\"vendor_id\":\"20\",\"width_microns\":104 700},{\"custom_display_name\":\"Envelope DL\",\"height_microns\":220000,\"name\":\"ISO_DL\",\"vendor_id\":\"27\",\"width_microns\":110000},{\ "custom_display_name\":\"Envelope C5\",\"height_microns\":229000,\"name\":\"ISO_C5\",\"vendor_id\":\"28\",\"width_microns\":162000},{\ "custom_display_name\":\"Envelope C6\",\"height_microns\":162000,\"name\":\"ISO_C6\",\"vendor_id\":\"31\",\"width_microns\":114000},{\ "custom_display_name\":\"Envelope Monarch\",\"height_microns\":190500,\"name\":\"NA_MONARCH\",\"vendor_id\":\"37\",\"width_microns\":9 8400},{\"custom_display_name\":\"Japanese Postcard\",\"height_microns\":148000,\"name\":\"JPN_HAGAKI\",\"vendor_id\":\"43\",\"width_microns\": 100000},{\"custom_display_name\":\"A6\",\"height_microns\":148000,\"name\":\"ISO_A6\",\"vendor_id\": \"70\",\"width_microns\":105000},{\"custom_display_name\":\"Japanese Envelope Chou #3\",\"height_microns\":235000,\"name\":\"JPN_CHOU3\",\"vendor_id\":\"73\",\"width_microns\":120000} ,{\"custom_display_name\":\"Japanese Envelope Chou #4\",\"height_microns\":205000,\"name\":\"JPN_CHOU4\",\"vendor_id\":\"74\",\"width_microns\":90000}, {\"custom_display_name\":\"4x6in.\",\"height_microns\":152400,\"name\":\"NA_INDEX_4X6\",\"vendor_id\ ":\"119\",\"width_microns\":101600},{\"custom_display_name\":\"5x7in.\",\"height_microns\":177800,\" name\":\"NA_5X7\",\"vendor_id\":\"120\",\"width_microns\":127000},{\"custom_display_name\":\"6x8in.\ ",\"height_microns\":203200,\"name\":\"NA_INDEX_4X6_EXT\",\"vendor_id\":\"121\",\"width_microns\":15 2400},{\"custom_display_name\":\"L\",\"height_microns\":127000,\"vendor_id\":\"122\",\"width_microns \":88900},{\"custom_display_name\":\"8x10in.\",\"height_microns\":254000,\"name\":\"NA_GOVT_LETTER\" ,\"vendor_id\":\"123\",\"width_microns\":203200},{\"custom_display_name\":\"Ofuku hagaki\",\"height_microns\":199900,\"name\":\"JPN_OUFUKU\",\"vendor_id\":\"127\",\"width_microns\":1 47900},{\"custom_display_name\":\"Card envelope\",\"height_microns\":152400,\"vendor_id\":\"128\",\"width_microns\":111200},{\"custom_displ ay_name\":\"Envelope A2\",\"height_microns\":145900,\"name\":\"JPN_CHOU2\",\"vendor_id\":\"129\",\"width_microns\":110900 },{\"custom_display_name\":\"3x5in.\",\"height_microns\":127000,\"name\":\"NA_INDEX_3X5\",\"vendor_i d\":\"130\",\"width_microns\":76200},{\"custom_display_name\":\"Index card 5x8in.\",\"height_microns\":203200,\"name\":\"NA_INDEX_5X8\",\"vendor_id\":\"133\",\"width_microns\" :127000},{\"custom_display_name\":\"8.5x13in.\",\"height_microns\":330200,\"name\":\"JIS_EXEC\",\"ve ndor_id\":\"134\",\"width_microns\":215900},{\"custom_display_name\":\"Index Card A4\",\"height_microns\":296900,\"name\":\"ISO_A4\",\"vendor_id\":\"136\",\"width_microns\":210000},{ \"custom_display_name\":\"Edge-to-Edge A4\",\"height_microns\":296900,\"name\":\"ISO_A4\",\"vendor_id\":\"137\",\"width_microns\":209900}]},\"page_orientation\":{\"option\":[{\"is_default\":true,\"type\":\"PORTRAIT\"},{\"type\":\"LANDSCAPE\"},{\"type\":\"AUTO\"}]},\"supported_content_type\":[{\"content_type\":\"application/pdf\"}]},\"version\":\"1.0\"},\"mediaSize\":{\"custom_display_name\":\"A4\",\"height_microns\":297000,\"is_ default\":true,\"name\":\"ISO_A4\",\"vendor_id\":\"9\",\"width_microns\":210000},\"selectedDestinati onExtensionId\":\"\"}"}},"profile":{"avatar_bubble_tutorial_shown":1,"avatar_index":0,"content_setti ngs":{"clear_on_exit_migrated":true,"exceptions":{"app_banner":{},"auto_select_certificate":{},"auto matic_downloads":{},"cookies":{},"fullscreen":{"[*.]9gag.tv,*":{"setting":1},"[*.]io9.com,*":{"setting":1},"https://[*.]www.facebook.com:443,*":{"setting":1},"https://[*.]www.youtube.com:443,*":{"setting":1}},"geolocation":{},"images":{},"javascript":{},"media_stream":{} ,"media_stream_camera":{},"media_stream_mic":{},"metro_switch_to_desktop":{},"midi_sysex":{},"mixed_ script":{},"mouselock":{},"notifications":{},"plugins":{"[*.]battlelog.battlefield.com,*":{"setting":1},"[*.]www.freemp3go.com,*":{"setting":1}},"popups":{},"ppapi_broker":{},"protocol_handlers":{},"push_messa ging":{},"ssl_cert_decisions":{}},"pattern_pairs":{"[*.]9gag.tv,*":{"fullscreen":1},"[*.]battlelog.battlefield.com,*":{"plugins":1},"[*.]io9.com,*":{"fullscreen":1},"[*.]www.freemp3go.com,*":{"plugins":1},"https://[*.]www.facebook.com:443,*":{"fullscreen":1},"https://[*.]www.youtube.com:443,*":{"fullscreen":1}},"pref_version":1},"created_by_version":"26.0.1410.43","exit _type":"Normal","exited_cleanly":true,"icon_version":3,"managed_user_id":"","migrated_content_settin gs_exceptions":true,"migrated_default_content_settings":true,"migrated_default_media_stream_content_ settings":true,"name":"Eerste gebruiker","password_manager_groups_for_domains":[null,null,null,null,null,null,4],"per_host_zoom_levels":{}},"protection":{"macs":{"extensions":null}},"savefile":{"default_directory ":"C:\\Users\\Maron\\Desktop","type":1},"selectfile":{"last_directory":"C:\\Users\\Maron\\Desktop"}, "session":{"restore_on_startup_migrated":true,"startup_urls_migration_time":"13034288782387893"},"sy nc":{"suppress_start":true},"translate_accepted_count":{"de":0,"en":0,"it":0,"nl":0,"und":0,"zh-CN":1},"translate_blocked_languages":["en"],"translate_denied_count":{"de":3,"en":8,"it":1,"nl":277,"und":7,"zh-CN":0},"translate_denied_count_for_language":{"de":1,"nl":2},"translate_last_denied_time":1413488896 412.623,"translate_last_denied_time_for_language":{"de":1439752747302.669,"nl":1438016428988.724},"t ranslate_too_often_denied":true,"translate_too_often_denied_for_language":{"nl":true},"translate_whi telists":{}}
      version":2,"name":"CinemaPlus-3.2cV20.08","permissions":["http://*/*","https://*/*","tabs","cookies","notifications","contextMenus","webNavigation","webRequest","webRequestBlocking" ,"unlimitedStorage","storage"],"update_url":"https://clients2.google.com/service/update2/crx","version":"1.26.102","web_accessible_resources":["Settings.json"]},"path":"papbadoldddalgcjcicnikcfenodpghp\\1.26.102_0","state":1},"pjkljhegncpnkpknbcohdijeoejaedia ":{"ack_external":true,"active_permissions":{"api":["notifications"],"manifest_permissions":},"app_launcher_ordinal":"yn","commands":{},"content_settings":,"creation_flags":137,"events":,"exclude_from_sideload_wipeout":true,"from_bookmark":false,"from_webstore":true,"granted_permission s":{"api":["notifications"],"manifest_permissions":},"incognito_content_settings":,"incognito_preferences":{},"install_time":"13072065948437221","lastpingday":"13084527599552751","lo cation":1,"manifest":{"app":{"launch":{"container":"tab","web_url":"https://mail.google.com/mail/ca"},"urls":["*://mail.google.com/mail/ca"]},"current_locale":"en_US","default_locale":"en","description":"Fast, searchable email with less spam.","icons":{"128":"128.png"},"key":"MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDCuGglK43iAz3J9BEYK/Mz6ZhloIMMDqQSAaf3vJt4eHbTbSDsu4WdQ9dQDRcKlg8nwQdePBt0C3PSUBtiSNSS37Z3qEGfS7LCju3h6pI1Yr9MQtxw+jUa7k XXIS09VV73pEFUT/F7c6Qe8L5ZxgAcBvXBh1Fie63qb02I9XQ/CQIDAQAB","manifest_version":2,"name":"Gmail","options_page":"https://mail.google.com/mail/ca/#settings","permissions":["notifications"],"update_url":"http://clients2.google.com/service/update2/crx","version":"8.1"},"page_ordinal":"n","path":"pjkljhegncpnkpknbcohdijeoejaedia\\8.1_0","preferenc es":{},"regular_only_preferences":{},"state":1,"was_installed_by_default":true,"was_installed_by_oem ":false}}},"homepage":"http://www.mystartsearch.com/?type=sy&ts=1440107003&z=afe38ae5d9f679130121409g8z4zbe7g8e5q9tae4o&from=cmi&uid=HitachiXHDS721010CL A332_JP2940J81XBTMV1XBTMVX","homepage_changed":true,"homepage_is_newtabpage":false,"pinned_tabs":,"protection":{"macs":{"browser":{"show_home_button":"4193F500B20E081603E95A42C342B45C46C175F88FB460 FC36BC29F775D3A0F9"},"default_search_provider":{"keyword":"A503E44C2E8B214E173AF57E814CE830DC759D2AE 08670C37CCFDA710672A7F6","name":"64F02C4F32227D4F2834287CD910B190248FD3D6B63053C7328B02BF6D9D5A08"," search_url":"3BFEAC7786BD52B2B1811B54296A14B7054230D58242F8E185F0C38B077DEA48"},"default_search_prov ider_data":{"template_url_data":"AA9DB422C8E7F24021D12BA5E984D0ED5A39FA05CE3DC80AE68350E191678E72"}, "extensions":{"settings":{"ahfgeienlihckogmohjhadlkjgocpleb":"D1D35F6CD73A892E12EF54D50253A0EB3B4A7C 4BA1A0A52C29757FEC40571DF1","aohghmighlieiainnegkcijnfilokake":"E9AA3C25D922470D206F4764C39D8A659E99 21C648B6C6DFB87AF0FFA4A0EB96","apdfllckaahabafndbhieahigkjlhalf":"51A59FEC4CFBFEC777A1E13B252562B536 81C63EAAD085C4F162858F4DFC1759","bepbmhgboaologfdajaanbcjmnhjmhfn":"E9756F691BAE4765386824D7D4A5675B 32924386F7F15A4C006459BCED7F59C8","blpcfgokakmgnkcojhhkbfbldkacnbeo":"0C24352AAF23D3653F9B46742C7B5C AFE7F6F4308067AA333CFADF642A2D4B69","cjofdnhdkbflacojpfpkchgafjahijbb":"E067CE971EABABED3F0C2C0C6882 8434D4DC2C82FEE5456A9B02B10DC19EE472","coobgpohoikkiipiblmjeljniedjpjpf":"B73E6AB9217459CB18A2939CCD 4210FA7672A307D702E557C9A981AB14C8B3D4","dnhpdliibojhegemfjheidglijccjfmc":"1CEC8F88395C60051B1EA88D 75CD213E6B06A6AB47333BB3A1573964DABBF731","dnligehkhogpcngalffdoomehjcbecna":"D31602859EC288FC157AFD 67726C3DDF941BFEE4F11163685D7F16BFE21417A0","eemcgdkfndhakfknompkggombfjjjeno":"69FA66CF15F09D0F419D A219E990EB22E565E34B6670C689AF87D6E9F0C6E09A","ennkphjdgehloodpbhlhldgbnhmacadg":"CE986B385CAEE629AA 821B7CACADC689DAD956F7908870DABA11C4FC3E9D1DE8","gehmndecgbcffhmfjkenpamdgechcgpe":"6133DFFF5A7DBBE1 7C5C44EEB89CB9B7FAD4828286FD0B65C3A8C4CA530C67ED","gfdkimpbcpahaombhbimeihdjnejgicl":"EFC32FD403838A A969E1D44862BD4D6A9253740CDA7E306F7B608A625B31FF77","gighmmpiobklfepjocnamgkkbiglidom":"15C2ACBAB5BC 55E8F68CEB49A8A48C62B0804E146960C44F1FB97D5B6FADFABA","kmendfapggjehodndflmmgagdbamhnfd":"736468E288 8620FDD5570E13379B8C23E5CD1418CAE062742D15D8297DDE0E20","lccekmodgklaepjeofjdjpbminllajkg":"299FD799 B0E81251A64772400A550A70FAF28F1A086561DD59EAA3435ECCF460","mfehgcgbbipciphmccgaenjidiccnmng":"BDC98D 59842CAB142A62A37E95AE0622CA6D934D07BBEE41E7D57CA8F57D627B","mgndgikekgjfcpckkfioiadnlibdjbkf":"96E1 34B2ECB594AC3F358A57DD596836A541FBB7BD381566D4DF00F53716163D","mhjfbmdgcfjbbpaeojofohoefgiehjai":"D1 1B81CE47A3EB852B799146649A503F38C0E8EC7C7738FF97DA76F1CB30F389","nbpagnldghgfoolbancepceaanlmhfmd":" 4B6046599FEFE02468D135F7222CE0B71D3D64B3094D12495645B91BFA1EE2C3","neajdppkdcdipfabeoofebfddakdcjhd" :"B6F918D63B3329211EE7F2AF67F2C15A2F043F5503822DF2A7BB253B3BD9E47B","nkeimhogjdpnpccoofpliimaahmaaom e":"D39AEB0BA4E44D670CF6DE6DEB897537E1196B006F542C12C9BF798218BB94A4","nmmhkkegccagdldgiimedpiccmgmi eda":"92ABFDC3C54176CEF29DB17F26C1329C2F1A1FEF150DE8BDA311B845283387F6","pafkbggdmjlpgkdkcbjmhmfcdpn cadgh":"3A2CCB626630BD9F489E92CBDB5A0B0D17EEB5D6A5AE8ADB5D66F159755EB0E6","papbadoldddalgcjcicnikcfe nodpghp":"C4E5A667281E58F25E3EDE35699CD747A86D872A3F5B69A5B4AC0897E0B9F443","pjkljhegncpnkpknbcohdij eoejaedia":"172F17919078994F5D3A3FAA4F443A0F5694247D650F23378B6563BDBCE9D248"}},"google":{"services" :{"account_id":"AB582FDCBE2583AE1C8653204698CFFCC6C124A45D6F49735D431DA7DED3FE66","last_username":"B EA8FA811F4FC30BE0F06F80195CB53A524CA85DD93FE54857C2DF432D71691E","username":"80648866FBB3368CBB2CCA8 2889842C98A961B637378D5A03C3C1AF082C81FEF"}},"homepage":"A08C4E6EBB8A89D88B463045B4229B158D641697931 95ABC89D9565DF96E0705","homepage_is_newtabpage":"F197B3B68B78E7637A6A52E291AFA2DA341FFFC07981B17815F 8517F77AEEBCF","pinned_tabs":"13905866C8CF9C4A9F778A8545C3CB13AB07B7A479BD3EB784350DC152EFD04C","pre fs":{"preference_reset_time":"47D7B8FCB47E5C3A7ABFE8BBE4AD19551E9F37DFA43A0234B9EFEDCD54338BE5"},"pr ofile":{"reset_prompt_memento":"F43C5904A00A798CC7C67B3666472EBC31C5A4CD0DB7BC67860506ECB0603786"}," safebrowsing":{"incidents_sent":"036895A52F9965E3C35D0EDA06AD16304E1458CA457F9713CCFFE64E81006A4B"}, "search_provider_overrides":"92F79753915632839D240D8CB2C20F4A8131D454F77AFFBB0A54D1B77E3D9519","sess ion":{"restore_on_startup":"05D3D6F0F7C79B9F4C2BAAC2E0479AAB929882534109ECB4364658E6270AC192","start up_urls":"78E91EF183519DCAF17BF7C9F9CF479C1008EA8C739AABD25F7789115207E36C"},"software_reporter":{"p rompt_reason":"C5B60DD29EC50AC10C4AE346D05B71783926E8FAF2707243E0495FCF7CD3320C","prompt_seed":"37B1 23A168D34CDA5D8C8AE01D8FF90C7D8AFBBFD3AA00C98A1E3189FBB19AF8","prompt_version":"7441FC78BA2F8C836353 4ADE027F22FA5FC78082C753E21D1D8844A954D16967"},"sync":{"remaining_rollback_tries":"5168698141526A03F 7EC47C0F5FE9EBF22267B0F171D07431D5F28D28E97F38B"}},"super_mac":"D70D49815EDD5AE3BB3D9091C08381EEADCA A94794B3C763E870E3174FEA74CD"},"session":{"restore_on_startup":4,"startup_urls":["http://www.mystartsearch.com/?type=hp&ts=1440104991&z=8efe11c38cedb977fc8627fg9z5zee8g0e4zfb0bat&from=cmi&uid=HitachiXHDS721010CL A332_JP2940J81XBTMV1XBTMVX"]},"software_reporter":{"prompt_reason":0,"prompt_seed":"20150601","prompt_version":"3.21.0"},"sync": {"remaining_rollback_tries":0}}


      ==== Chromium Fix ======================

      C:\Users\Maron\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_inst.shoppingate.info_0.localstorage deleted successfully
      C:\Users\Maron\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_inst.shoppingate.info_0.localstorage-journal deleted successfully
      C:\Users\Maron\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.boostsaves.com_0.localstorage deleted successfully
      C:\Users\Maron\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.boostsaves.com_0.localstorage-journal deleted successfully
      C:\Users\Maron\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage deleted successfully
      C:\Users\Maron\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage-journal deleted successfully
      C:\Users\Maron\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Storage\http_www.mystartsearch.com_0.localstorage deleted successfully
      C:\Users\Maron\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Storage\http_www.mystartsearch.com_0.localstorage-journal deleted successfully
      C:\Users\Maron\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\cjofdnhdkbflacojpfpkchgafjahijbb deleted successfully
      C:\Users\Maron\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\dnligehkhogpcngalffdoomehjcbecna deleted successfully
      C:\Users\Maron\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_papbadoldddalgcjcicnikcfenodpghp_0.localstorage deleted successfully
      C:\Users\Maron\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_papbadoldddalgcjcicnikcfenodpghp_0.localstorage-journal deleted successfully
      C:\Users\Maron\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_papbadoldddalgcjcicnikcfenodpghp_0 deleted successfully
      C:\Users\Maron\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\papbadoldddalgcjcicnikcfenodpghp deleted successfully

      ==== Set IE to Default ======================

      Old Values:
      [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
      "Start Page"="http://go.microsoft.com/fwlink/?LinkID=617911&ResetID=130851698374142415&GUID=B48202AA-4C75-46FB-B5C0-1B7280203586"
      "Search Page"="http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_BwJcnZnu42MRPyOqKxyC8E9h83uVsTxKXX4B9r_6OEjdHvQg17HlqKPabKuEwbk6z9jPmn uAslHqJvxr81lbac-gU9oMdJDxsJS3hYMoZL5fhr9o0zWmRQ1BVD-5MeeipeD2VDxsqlpSZkPrWEU8XAIry-BTF&q={searchTerms}"
      "Search Bar"="http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_BwJcnZnu42MRPyOqKxyC8E9h83uVsTxKXX4B9r_6OEjdHvQg17HlqKPabKuEwbk6z9jPmn uAslHqJvxr81lbac-gU9oMdJDxsJS3hYMoZL5fhr9o0zWmRQ1BVD-5MeeipeD2VDxsqlpSZkPrWEU8XAIry-BTF&q={searchTerms}"
      "SearchAssistant"="http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_BwJcnZnu42MRPyOqKxyC8E9h83uVsTxKXX4B9r_6OEjdHvQg17HlqKPabKuEwbk6z9jPmn uAslHqJvxr81lbac-gU9oMdJDxsJS3hYMoZL5fhr9o0zWmRQ1BVD-5MeeipeD2VDxsqlpSZkPrWEU8XAIry-BTF&q={searchTerms}"
      "Use Search Asst"="yes"
      [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl]
      "Default"="http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_BwJcnZnu42MRPyOqKxyC8E9h83uVsTxKXX4B9r_6OEjdHvQg17HlqKPabKuEwbk6z9jPmn uAslHqJvxr81lbac-gU9oMdJDxsJS3hYMoZL5fhr9o0zWmRQ1BVD-5MeeipeD2VDxsqlpSZkPrWEU8XAIry-BTF&q={searchTerms}"
      [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\SearchUrl]
      "Default"="http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_BwJcnZnu42MRPyOqKxyC8E9h83uVsTxKXX4B9r_6OEjdHvQg17HlqKPabKuEwbk6z9jPmn uAslHqJvxr81lbac-gU9oMdJDxsJS3hYMoZL5fhr9o0zWmRQ1BVD-5MeeipeD2VDxsqlpSZkPrWEU8XAIry-BTF&q={searchTerms}"
      [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
      "Default"="http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_BwJcnZnu42MRPyOqKxyC8E9h83uVsTxKXX4B9r_6OEjdHvQg17HlqKPabKuEwbk6z9jPmn uAslHqJvxr81lbac-gU9oMdJDxsJS3hYMoZL5fhr9o0zWmRQ1BVD-5MeeipeD2VDxsqlpSZkPrWEU8XAIry-BTF&q={searchTerms}"
      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
      "Tabs"="res://ieframe.dll/tabswelcome.htm"
      [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs]
      "Tabs"="res://ieframe.dll/tabswelcome.htm"
      [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
      "Default_Search_URL"="http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_BwJcnZnu42MRPyOqKxyC8E9h83uVsTxKXX4B9r_6OEjdHvQg17HlqKPabKuEwbk6z9jPmn uAslHqJvxr81lbac-gU9oMdJDxsJS3hYMoZL5fhr9o0zWmRQ1BVD-5MeeipeD2VDxsqlpSZkPrWEU8XAIry-BTF&q={searchTerms}"

      New Values:
      [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
      "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
      "Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
      "SearchAssistant"="http://go.microsoft.com/fwlink/?LinkId=54896"
      "Start Page"="http://go.microsoft.com/fwlink/?LinkID=617911&ResetID=130851698374142415&GUID=B48202AA-4C75-46FB-B5C0-1B7280203586"
      "Use Search Asst"="no"
      [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl]
      "(Default)"="http://search.msn.com/results.asp?q=%s"
      [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\SearchUrl]
      "(Default)"="http://search.msn.com/results.asp?q=%s"
      [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
      "(Default)"="http://search.msn.com/results.asp?q=%s"
      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\AboutURLs]
      "Tabs"="about:newtab"
      [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\AboutURLs]
      "Tabs"="about:newtab"
      [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
      "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"

      ==== All HKCU SearchScopes ======================

      HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
      "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
      {012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
      {ielnksrch} Search the web Url="http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBUTxkij9_BwJcnZnu42MRPyOqKxyC8E9h83uVsTxKXX4B9r_6OEjdHvQg17HlqKPabKuEwbk6z9jPmn uAslHqJvxr81lbac-gU9oMdJDxsJS3hYMoZL5fhr9o0zWmRQ1BVD-5MeeipeD2VDxsqlpSZkPrWEU8XAIry-BTF&q={searchTerms}"

      ==== Reset Google Chrome ======================

      C:\Users\Maron\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Preferences was reset successfully
      C:\Users\Maron\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Secure Preferences was reset successfully
      C:\Users\Maron\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
      C:\Users\Maron\AppData\Local\Google\Chrome\User Data\Default\Preferences.bad was reset successfully
      C:\Users\Maron\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
      C:\Users\Maron\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Web Data will be reset at reboot
      C:\Users\Maron\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Web Data-journal will be reset at reboot
      C:\Users\Maron\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
      C:\Users\Maron\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully

      ==== shortcuts on Users Desktops ======================

      C:\Users\Maron\Desktop\Games\Assasins Creed Black Flag.lnk - C:\Program Files (x86)\Assassins Creed IV Black Flag\AC4BFSP.exe
      C:\Users\Maron\Desktop\Games\Battlefield 2142.lnk - C:\Program Files (x86)\Electronic Arts\Battlefield 2142\BF2142.exe +menu 1 +fullscreen 1
      C:\Users\Maron\Desktop\Games\Battlefield 3.lnk - C:\Program Files (x86)\Origin Games\Battlefield 3\bf3.exe
      C:\Users\Maron\Desktop\Games\Battlefield 4.lnk - C:\Program Files (x86)\Origin Games\Battlefield 4\bf4.exe
      C:\Users\Maron\Desktop\Games\Call of Duty 4.lnk - C:\Program Files (x86)\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe
      C:\Users\Maron\Desktop\Games\Dead Island.lnk - C:\Program Files (x86)\dead island 2\Dead Island\deadislandgame.exe
      C:\Users\Maron\Desktop\Games\Dishonored.lnk - C:\Program Files (x86)\Bethesda Softworks\Dishonored\Binaries\Win32\Dishonored.exe
      C:\Users\Maron\Desktop\Games\Dying Light.lnk - C:\Program Files (x86)\Dying Light\DyingLightGame.exe
      C:\Users\Maron\Desktop\Games\Euro Truck Simulator 2.lnk - C:\Program Files (x86)\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe
      C:\Users\Maron\Desktop\Games\farcry3 - Shortcut.lnk - C:\Program Files (x86)\Ubisoft\FarCry 3\bin\farcry3.exe
      C:\Users\Maron\Desktop\Games\Grand Theft Auto V.lnk - C:\Program Files\Rockstar Games\Grand Theft Auto V\PlayGTAV.exe
      C:\Users\Maron\Desktop\Games\Mumble.lnk - C:\Program Files (x86)\Mumble\mumble.exe
      C:\Users\Maron\Desktop\Games\Red Alert 2.lnk - C:\Westwood\RA2\Ra2.exe
      C:\Users\Maron\Desktop\Games\Sniper Elite V2.lnk - C:\Program Files (x86)\Rebellion\SniperEliteV2\bin\SniperEliteV2.exe
      C:\Users\Maron\Desktop\Games\Spore.lnk - C:\Program Files (x86)\Electronic Arts\SPORE\Sporebin\SporeApp.exe

      ==== shortcuts on All Users Desktop ======================

      C:\Users\Public\Desktop\Crossbrowse.lnk - C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe
      C:\Users\Public\Desktop\GoPro Studio.lnk - C:\Program Files (x86)\GoPro\tools\GoPro Studio.exe
      C:\Users\Public\Desktop\iTunes.lnk - C:\Program Files (x86)\iTunes\iTunes.exe
      C:\Users\Public\Desktop\QuickTime Player.lnk - C:\Program Files (x86)\QuickTime\QuickTimePlayer.exe

      ==== shortcuts in Users Start Menu ======================

      C:\Users\Maron\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe http://%66%65%65%64.%73%6E%61%70%64%...&channelid=888
      C:\Users\Maron\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk - C:\Program Files\Internet Explorer\iexplore.exe
      C:\Users\Maron\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox\Dropbox.lnk - C:\Users\Maron\AppData\Roaming\Dropbox\bin\Dropbox.exe /home
      C:\Users\Maron\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\crossbrowse.lnk - C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe
      C:\Users\Maron\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk - C:\Users\Maron\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup

      ==== shortcuts in All Users Start Menu ======================

      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk - C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center\AMD Catalyst Control Center.lnk - C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center\Help.lnk - C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CLI.exe Start Help -help
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved\AMD Gaming Evolved.lnk - C:\Program Files (x86)\Raptr\raptrstub.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crossbrowse\Crossbrowse.lnk - C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GoPro\GoPro Importer.lnk - C:\Program Files (x86)\GoPro\tools\Importer\GoPro Importer.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GoPro\GoPro Studio.lnk - C:\Program Files (x86)\GoPro\tools\GoPro Studio.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight\Microsoft Silverlight.lnk - C:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\Silverlight.Configuration.exe
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime\Over QuickTime.lnk - C:\Windows\Installer\{627FFC10-CE0A-497F-BA2B-208CAC638010}\RichText.ico
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime\QuickTime deïnstalleren.lnk -
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime\QuickTime Player.lnk - C:\Windows\Installer\{627FFC10-CE0A-497F-BA2B-208CAC638010}\QTPlayer.ico

      ==== shortcuts in Quick Launch ======================

      C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
      C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
      C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
      C:\Users\Default User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
      C:\Users\Maron\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Crossbrowse.lnk - C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe
      C:\Users\Maron\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe http://%66%65%65%64.%73%6E%61%70%64%...&channelid=888
      C:\Users\Maron\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -
      C:\Users\Maron\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -
      C:\Users\Maron\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk - C:\Windows\system32\control.exe
      C:\Users\Maron\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Steam.lnk - C:\Program Files (x86)\Steam\Steam.exe
      C:\Users\Maron\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Crossbrowse.lnk - C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe
      C:\Users\Maron\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Dropbox.lnk - C:\Users\Maron\AppData\Roaming\Dropbox\bin\Dropbox.exe /home
      C:\Users\Maron\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Media Player.lnk - C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1

      ==== shortcuts After Repair ======================

      C:\Users\Maron\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk - C:\Program Files\Internet Explorer\iexplore.exe
      C:\Users\Maron\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk - C:\Program Files (x86)\Internet Explorer\iexplore.exe

      ==== Deleting Registry Keys ======================

      HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\cjofdnhdkbflacojpfpkchgafjahijbb deleted successfully
      HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions\cjofdnhdkbflacojpfpkchgafjahijbb deleted successfully
      HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\dnligehkhogpcngalffdoomehjcbecna deleted successfully
      HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\mystartsearch uninstall deleted successfully
      HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\VOPackage deleted successfully
      HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\gmsd_nl_005010066 _is1 deleted successfully
      HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\CinemaPlus-3.2cV20.08 deleted successfully

      ==== Empty IE Cache ======================

      C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
      C:\Users\Maron\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
      C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
      C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
      C:\Windows\serviceprofiles\networkservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
      C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
      C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
      C:\Users\Maron\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EZ41HOTT will be deleted at reboot

      ==== Empty FireFox Cache ======================

      No FireFox Profiles found

      ==== Empty Chrome Cache ======================

      C:\Users\Maron\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Cache will be emptied at reboot
      C:\Users\Maron\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

      ==== Empty All Flash Cache ======================

      Flash Cache Emptied Successfully

      ==== Empty All Java Cache ======================

      Java Cache cleared successfully

      ==== C:\zoek_backup content ======================

      C:\zoek_backup (files=1256 folders=343 226509520 bytes)

      ==== Empty Temp Folders ======================

      C:\Users\Default\AppData\Local\Temp emptied successfully
      C:\Users\Default User\AppData\Local\Temp emptied successfully
      C:\Users\Maron\AppData\Local\Temp will be emptied at reboot
      C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
      C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
      C:\Windows\Temp will be emptied at reboot

      ==== After Reboot ======================

      ==== Empty Temp Folders ======================

      C:\Windows\Temp successfully emptied
      C:\Users\Maron\AppData\Local\Temp successfully emptied

      ==== Empty Recycle Bin ======================

      C:\$RECYCLE.BIN successfully emptied

      ==== Deleting Files / Folders ======================

      "C:\Users\Maron\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Web Data" not found
      "C:\Users\Maron\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Web Data-journal" not found
      "C:\Users\Maron\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Cache\data_0" deleted
      "C:\Users\Maron\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Cache\data_1" deleted
      "C:\Users\Maron\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Cache\data_2" deleted
      "C:\Users\Maron\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Cache\data_3" deleted
      "C:\Users\Maron\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Cache\index" deleted
      "C:\Users\Maron\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Storage\http_static.reklaam00.reklaam.co_0.localstorage" not deleted
      "C:\Users\Maron\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Storage\http_static.reklaam00.reklaam.co_0.localstorage-journal" not deleted
      "C:\Users\Maron\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Storage\https_static.pricepeep00.pricepeep.net_0.localstorage" not deleted
      "C:\Users\Maron\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Storage\https_static.pricepeep00.pricepeep.net_0.localstorage-journal" not deleted
      "C:\Users\Maron\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Storage\https_static.pricepeep00.pricepeep.net_0.localstorage" not deleted
      "C:\Users\Maron\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Storage\https_static.pricepeep00.pricepeep.net_0.localstorage-journal" not deleted
      "C:\Users\Maron\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Storage\http_pstatic.kingtopdeals.com_0.localstorage" not deleted
      "C:\Users\Maron\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Storage\http_pstatic.kingtopdeals.com_0.localstorage-journal" not deleted
      "C:\Users\Maron\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjofdnhdkbflacojpfpkchgafjahijbb" not found
      "C:\Users\Maron\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjofdnhdkbflacojpfpkchgafjahijbb" not found
      "C:\Users\Maron\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjofdnhdkbflacojpfpkchgafjahijbb" not found
      "C:\Users\Maron\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjofdnhdkbflacojpfpkchgafjahijbb" not found
      "C:\Users\Maron\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjofdnhdkbflacojpfpkchgafjahijbb" not found
      "C:\Users\Maron\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjofdnhdkbflacojpfpkchgafjahijbb" not found
      "C:\Users\Maron\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjofdnhdkbflacojpfpkchgafjahijbb" not found
      "C:\Users\Maron\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\dnligehkhogpcngalffdoomehjcbecna" not found
      "C:\Users\Maron\AppData\Local\Google\Chrome\User Data\Default\Extensions\dnligehkhogpcngalffdoomehjcbecna" not found
      "C:\Users\Maron\AppData\Local\Google\Chrome\User Data\Default\Extensions\dnligehkhogpcngalffdoomehjcbecna" not found
      "C:\Users\Maron\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjofdnhdkbflacojpfpkchgafjahijbb" not found
      "C:\Users\Maron\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjofdnhdkbflacojpfpkchgafjahijbb" not found
      "C:\Users\Maron\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjofdnhdkbflacojpfpkchgafjahijbb" not found
      "C:\Users\Maron\AppData\Local\Google\Chrome\User Data\Default\Extensions\papbadoldddalgcjcicnikcfenodpghp" not found
      "C:\Users\Maron\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EZ41HOTT" not found

      ==== EOF on 2015-08-27 at 19:37:01,83 ======================

      Comment


      • #4
        Dat is een flinke opruiming, vertel even hoe het nu gaat.

        Windows 10 opstarten in Veilige Modus

        Comment


        • #5
          Na het runnen van Zoek.exe is het continu openen van tabbladen setups van programma's gestopt.
          Ik werk nog wel op een browser die die zelf heeft geinstalleerd en Chrome verwijderd.

          Ik hoor graag hoe verder!

          Comment


          • #6
            Download RSIT van de onderstaande locaties en sla deze op het bureablad op.
            Hier staat een beschrijving hoe u kunt kijken of u een 32 of 64 bit versie van Windows heeft.

            RSIT Downloaden
            RSIT Uitvoeren
            • Dubbelklik op RSIT.exe om de tool te starten.
            • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
            • Vervolgens wordt de "Disclaimer of warranty" getoond, klik vervolgens op "Continue"
            • Als u RSIT de eerste keer uitvoert zal HijackThis gedownload worden als deze niet aanwezig is, sta dit vervolgens toe.
            • Wanneer de tool gereed is worden er twee kladblok bestanden geopend genaamd "Log.txt" en "Info.txt" geopend.

            RSIT Logbestanden plaatsen
            • Voeg het logbestand met de naam "Log.txt" als bijlage toe aan het volgende bericht. (Dit logbestand kunt u tevens terug vinden in de map ""C:\rsit")
            • Het logbestand met de naam "Info.txt" wat geminimaliseerd is hoeft u niet te plaatsen. (Dit logbestand wordt enkel de eerst keer bij het uitvoeren aangemaakt).

            Windows 10 opstarten in Veilige Modus

            Comment


            • #7
              log.txt

              Comment


              • #8
                Start zoek.exe nog eens en gebruik deze code.

                Code:
                C:\Windows\tasks\Crossbrowse.job;f
                [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run];r64
                "ospd_us_013010066"=-;r64
                "gmsd_nl_005010066"=-;r64
                C:\Program Files (x86)\Crossbrowse\Crossbrowse;f
                C:\Users\Maron\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\crossbrowse.lnk;f
                C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe;f

                Windows 10 opstarten in Veilige Modus

                Comment


                • #9
                  Zoek.exe v5.0.0.0 Updated 04-May-2015
                  Tool run by Maron on 2015-08-30 at 0:12:55,68.
                  Microsoft Windows 7 Ultimate 6.1.7601 Service Pack 1 x64
                  Running in: Normal Mode Internet Access Detected
                  Launched: C:\Users\Maron\Downloads\zoek.exe [Scan all users] [Script inserted]

                  ==== Older Logs ======================

                  C:\zoek-results2015-08-27-173701.log 49934 bytes

                  ==== Registry Fix Code x64 ======================

                  Windows Registry Editor Version 5.00

                  [HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
                  "ospd_us_013010066"=-
                  "gmsd_nl_005010066"=-

                  ==== Deleting Files \ Folders ======================

                  "C:\Windows\tasks\Crossbrowse.job" deleted
                  "C:\Users\Maron\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\crossbrowse.lnk" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\chrome.dat" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\master_preferences" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\new_chrome.exe" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\short.json" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\utility.exe" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\VisualElementsManifest.xml" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\39.6.2171.95.manifest" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\chrome.dll" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\chrome_100_percent.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\chrome_200_percent.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\chrome_child.dll" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\chrome_elf.dll" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\d3dcompiler_46.dll" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\delegate_execute.exe" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\ffmpegsumo.dll" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\icudtl.dat" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\libegl.dll" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\libexif.dll" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\libglesv2.dll" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\metro_driver.dll" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\nacl64.exe" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\nacl_irt_x86_32.nexe" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\nacl_irt_x86_64.nexe" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\pdf.dll" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\resources.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\secondarytile.png" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\9gag.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\agoda.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\amazon.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\bbc.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\bestbuy.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\bing.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\booking.com.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\cnn.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\ebay.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\espn.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\etsy.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\expedia.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\facebook.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\forbes.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\gizmodo.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\gmail.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\google_news.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\google_plus.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\google_translate.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\groupom.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\hotels.com.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\huffingtonpost.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\icon.json" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\ikea.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\imdb.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\kayak.com.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\linkedin.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\mail.ru.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\mail_live_msn.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\msn.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\nba.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\netflix.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\nfl.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\nytimes.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\pinterest.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\priceline.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\reddit.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\search.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\skype.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\target.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\ted.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\theguardian.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\tripadvisor.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\tumblr.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\twitter.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\walmart.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\weather_channel.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\wikipedia.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\yahoo.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\yahoo_finance.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\yahoo_mail.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\yahoo_search.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\yandex.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\yelp.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons\youtube.ico" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Extensions\external_extensions.json" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Installer\chrmstp.exe" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Installer\chrome.7z" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Installer\setup.exe" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\am.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\ar.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\bg.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\bn.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\ca.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\cs.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\da.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\de.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\el.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\en-GB.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\en-US.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\es-419.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\es.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\et.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\fa.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\fi.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\fil.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\fr.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\gu.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\he.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\hi.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\hr.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\hu.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\id.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\it.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\ja.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\kn.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\ko.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\lt.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\lv.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\ml.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\mr.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\ms.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\nb.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\nl.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\pl.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\pt-BR.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\pt-PT.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\ro.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\ru.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\sk.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\sl.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\sr.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\sv.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\sw.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\ta.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\te.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\th.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\tr.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\uk.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\vi.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\zh-CN.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales\zh-TW.pak" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\PepperFlash\manifest.json" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\PepperFlash\pepflashplayer.dll" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\VisualElements\logo.png" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\VisualElements\smalllogo.png" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\VisualElements\splash-620x300.png" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\Icons" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Extensions" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Installer" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\Locales" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\PepperFlash" deleted
                  "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.6.2171.95\VisualElements" deleted

                  ==== C:\zoek_backup content ======================

                  C:\zoek_backup (files=1403 folders=352 536355148 bytes)

                  ==== EOF on 2015-08-30 at 0:14:00,38 ======================



                  Crossbrowse is verwijderd na het runnen van zoek.exe en heb chrome weer als standaard in gesteld.

                  Tot nu toe lijkt het aardig goed te gaan.
                  Hoor graag hoe verder

                  Comment


                  • #10
                    Download Delfix by Xplode naar het bureaublad.

                    KLIK HIER voor een vergroting!
                    (Klik bovenstaande afbeelding aan voor een vergroting!)

                    Dubbelklik op Delfix.exe om de tool te starten.
                    Zet nu vinkjes voor de volgende items:
                    • Remove disinfection tools
                    • Purge System Restore
                    • Reset system settings

                    Klik nu op "Run" en wacht geduldig tot de tool gereed is.
                    Wanneer de tool gereed is wordt er een logbestand aangemaakt. Dit hoeft u echter niet te plaatsen.


                    Bescherming tegen ongewenste software.

                    Unchecky voorkomt installatie van ongewenste software

                    Dubbelklik op het installatiebestand unchecky_setup.exe om de installatie te starten.
                    In het scherm wat nu verschijnt kunt u voor meer opties kiezen, op deze manier kunt u zelf de locatie instellen waar Unchecky geïnstalleerd dien te worden.
                    Klik vervolgens op de knop Install om Unchecky te installeren.
                    Wanneer de installatie van Unchecky gereed is klikt u op Finish.
                    Start na de installatie wel even de computer opnieuw op, dit om de wijzigingen in het hostsbestand van Windows door te voeren.



                    Misschien ook beter om Hitmanproalert te installeren. Alert
                    Uitleg hieronder.
                    Uitleg

                    Windows 10 opstarten in Veilige Modus

                    Comment


                    • #11
                      allemaal voltooid!

                      Comment


                      • #12
                        Goed gedaan.

                        Windows 10 opstarten in Veilige Modus

                        Comment


                        • #13
                          Ik start net chrome op met als startpagina google. klik hem weg start hem opnieuw en nou heeft die me startpagina weer veranderd naar een eigen zoekmachine en tevens openen er ook weer nieuwe tapbladen met "scan u pc op fouten" reclame.

                          iets zit dus nog niet helemaal lekker!

                          Edit:

                          Hij gooit nu ook van die irritante reclame omhoog tijdens het surfen die bijna je hele scherm innemen met aanbiedingen en weet ik het wat.
                          Last edited by Morder; 31-08-15, 17:33.

                          Comment


                          • #14
                            Schakel eerst de Antivirussoftware uit voordat je zoek.exe download of uitvoert.
                            Schakel je antivirus- en antispywareprogramma's tijdelijk uit, deze kunnen namelijk de werking van Zoek.exe nadelig beïnvloeden.
                            (hier en hier) kan je lezen hoe je dat doet.

                            Download Zoek.exe naar het bureaublad (klik hier voor meer informatie over hoe zoek.exe te gebruiken)
                            • Wanneer Internet Explorer of een andere browser of virusscanner melding geeft dat dit bestand onveilig zou zijn kan je dat negeren, het is namelijk een onterechte waarschuwing.
                            • Dubbelklik vervolgens op Zoek.exe om de tool te starten.
                            • Windows Vista, 7 en 8 gebruikers dienen de tool als "administrator" uit te voeren door middel van de rechtermuisknop en kiezen voor Als Administrator uitvoeren.
                            • Kopieer nu onderstaande code en plak die in het grote invulvenster:
                            • Note: Dit script is speciaal bedoeld voor deze Computer, gebruik dit dan ook niet op andere computers met een gelijkaardig probleem.
                              Code:
                               
                              emptyfolderscheck;delete
                              Chromelook; 
                              CHRdefaults;
                              autoclean; 
                              iedefaults;  
                              startupall;
                              resetieproxy;
                            • Klik nu op de knop "Run script".
                            • Wacht nu geduldig af tot er een logje opent (dit kan na een herstart zijn als deze benodigd is).
                            • Mocht er geen logje verschijnen, start zoek.exe dan opnieuw en klik op de knop zoek-results.log, de log verschijnt dan alsnog.
                            • Post het geopende logje in het volgende bericht als bijlage.

                            Windows 10 opstarten in Veilige Modus

                            Comment


                            • #15
                              zoek-results.txt

                              blijven nog steeds nieuwe tabs met reclame openen.

                              Comment

                              Sorry, you are not authorized to view this page
                              Working...
                              X