| 
 Danke für die Hilfe Mathias! 
Adw Log:   Code: 
 # AdwCleaner v3.012 - Bericht erstellt am 16/11/2013 um 12:55:46# Updated 11/11/2013 von Xplode
 # Betriebssystem : Windows 7 Ultimate Service Pack 1 (64 bits)
 # Benutzername : Alex - ALEX-PC
 # Gestartet von : C:\Users\Alex\Downloads\adwcleaner.exe
 # Option : Suchen
 
 ***** [ Dienste ] *****
 
 
 ***** [ Dateien / Ordner ] *****
 
 Datei Gefunden : C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\bProtector Web Data
 Datei Gefunden : C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\bprotectorpreferences
 Datei Gefunden : C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www1.delta-search.com_0.localstorage
 Datei Gefunden : C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www1.delta-search.com_0.localstorage-journal
 Datei Gefunden : C:\Users\Alex\AppData\Roaming\Microsoft\Windows\Start Menu\Startfenster.lnk
 Datei Gefunden : C:\Users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\d4wu5ku0.default\bprotector_extensions.sqlite
 Datei Gefunden : C:\Users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\d4wu5ku0.default\bprotector_prefs.js
 Datei Gefunden : C:\Users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\d4wu5ku0.default\Extensions\pricepeep@getpricepeep.com.xpi
 Datei Gefunden : C:\Users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\d4wu5ku0.default\searchplugins\Babylon.xml
 Datei Gefunden : C:\Users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\d4wu5ku0.default\searchplugins\BrowserDefender.xml
 Datei Gefunden : C:\Users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\d4wu5ku0.default\user.js
 Datei Gefunden : C:\Users\Studio\AppData\Roaming\Mozilla\Firefox\Profiles\xuxhqpt3.default\bprotector_extensions.sqlite
 Datei Gefunden : C:\Users\Studio\AppData\Roaming\Mozilla\Firefox\Profiles\xuxhqpt3.default\bprotector_prefs.js
 Datei Gefunden : C:\Windows\System32\Tasks\EPUpdater
 Ordner Gefunden : C:\Users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\d4wu5ku0.default\Extensions\ffxtlbr@delta.com
 Ordner Gefunden : C:\Users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\d4wu5ku0.default\Extensions\pricepeep@getpricepeep.com
 Ordner Gefunden : C:\Users\Studio\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde
 Ordner Gefunden C:\Program Files (x86)\Delta
 Ordner Gefunden C:\Program Files (x86)\PricePeep
 Ordner Gefunden C:\ProgramData\Babylon
 Ordner Gefunden C:\ProgramData\BitGuard
 Ordner Gefunden C:\Users\Alex\AppData\Roaming\BabSolution
 Ordner Gefunden C:\Users\Alex\AppData\Roaming\Babylon
 Ordner Gefunden C:\Users\Alex\AppData\Roaming\Delta
 Ordner Gefunden C:\Users\Alex\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitGuard
 
 ***** [ Verknüpfungen ] *****
 
 
 ***** [ Registrierungsdatenbank ] *****
 
 Schlüssel Gefunden : HKCU\Software\BabSolution
 Schlüssel Gefunden : HKCU\Software\BI
 Schlüssel Gefunden : HKCU\Software\d558b88b335bf17
 Schlüssel Gefunden : HKCU\Software\DataMngr
 Schlüssel Gefunden : HKCU\Software\DataMngr_Toolbar
 Schlüssel Gefunden : HKCU\Software\Delta
 Schlüssel Gefunden : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
 Schlüssel Gefunden : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings
 Schlüssel Gefunden : [x64] HKCU\Software\BabSolution
 Schlüssel Gefunden : [x64] HKCU\Software\BI
 Schlüssel Gefunden : [x64] HKCU\Software\DataMngr
 Schlüssel Gefunden : [x64] HKCU\Software\DataMngr_Toolbar
 Schlüssel Gefunden : [x64] HKCU\Software\Delta
 Schlüssel Gefunden : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\{38A066B0-DD5F-4226-AC4F-6A27C1BFB892}
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\{39CB8175-E224-4446-8746-00566302DF8D}
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\escort.DLL
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\PricePeep.DLL
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{261DD098-8A3E-43D4-87AA-63324FA897D8}
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{4FCB4630-2A1C-4AA1-B422-345E8DC8A6DE}
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{82E1477C-B154-48D3-9891-33D83C26BCD3}
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{86838207-681D-469D-9511-D0DCC6F19F9B}
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{E97A663B-81A6-49C5-A6D3-BCB05BA1DE26}
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007}
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\delta.deltaappCore
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\delta.deltaappCore.1
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\delta.deltadskBnd
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\delta.deltadskBnd.1
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\delta.deltaHlpr
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\delta.deltaHlpr.1
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\escort.escortIEPane
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\escort.escortIEPane.1
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\esrv.deltaESrvc
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\esrv.deltaESrvc.1
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{1231839B-064E-4788-B865-465A1B5266FD}
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{1B97A696-5576-43AC-A73B-E1D2C78F21E8}
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{2DAC2231-CC35-482B-97C5-CED1D4185080}
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{3F1CD84C-04A3-4EA0-9EA1-7D134FD66C82}
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{3F83A9CA-B5F0-44EC-9357-35BB3E84B07F}
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{47E520EA-CAD2-4F51-8F30-613B3A1C33EB}
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{57C91446-8D81-4156-A70E-624551442DE9}
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{70AFB7B2-9FB5-4A70-905B-0E9576142E1D}
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{75BF416E-4326-45B5-8A2D-AE32D05B930B}
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{7AD65FD1-79E0-406D-B03C-DD7C14726D69}
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{97DD820D-2E20-40AD-B01E-6730B2FCE630}
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{B177446D-54A4-4869-BABC-8566110B4BE0}
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{D9D1DFC5-502D-43E4-B1BB-4D0B7841489A}
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{E0B07188-A528-4F9E-B2F7-C7FDE8680AE4}
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{F05B12E1-ADE8-4485-B45B-898748B53C37}
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\PricePeep.PricePeepBho
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\PricePeep.PricePeepBho.1
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Prod.cap
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TypeLib\{39CB8175-E224-4446-8746-00566302DF8D}
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TypeLib\{3BF3DED5-0FC8-4207-AC09-AA7B5AF4E408}
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TypeLib\{4599D05A-D545-4069-BB42-5895B4EAE05B}
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
 Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
 Schlüssel Gefunden : HKLM\SOFTWARE\d558b88b335bf17
 Schlüssel Gefunden : HKLM\Software\DataMngr
 Schlüssel Gefunden : HKLM\Software\Delta
 Schlüssel Gefunden : HKLM\SOFTWARE\Google\Chrome\Extensions\eooncjejnppfjjklapaamhcdmjbilmde
 Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{348C2DF3-1191-4C3E-92A6-B3A89A9D9C85}
 Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
 Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
 Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
 Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007}
 Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{15D2D75C-9CB2-4EFD-BAD7-B9B4CB4BC693}
 Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\bi_uninstaller
 Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Delta
 Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Delta Chrome Toolbar
 Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PricePeep
 Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{1231839B-064E-4788-B865-465A1B5266FD}
 Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{1B97A696-5576-43AC-A73B-E1D2C78F21E8}
 Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{2DAC2231-CC35-482B-97C5-CED1D4185080}
 Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{3F1CD84C-04A3-4EA0-9EA1-7D134FD66C82}
 Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{3F83A9CA-B5F0-44EC-9357-35BB3E84B07F}
 Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{47E520EA-CAD2-4F51-8F30-613B3A1C33EB}
 Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{57C91446-8D81-4156-A70E-624551442DE9}
 Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{70AFB7B2-9FB5-4A70-905B-0E9576142E1D}
 Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{75BF416E-4326-45B5-8A2D-AE32D05B930B}
 Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{7AD65FD1-79E0-406D-B03C-DD7C14726D69}
 Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{97DD820D-2E20-40AD-B01E-6730B2FCE630}
 Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{B177446D-54A4-4869-BABC-8566110B4BE0}
 Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{D9D1DFC5-502D-43E4-B1BB-4D0B7841489A}
 Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{E0B07188-A528-4F9E-B2F7-C7FDE8680AE4}
 Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{F05B12E1-ADE8-4485-B45B-898748B53C37}
 Wert Gefunden : HKCU\Software\Microsoft\Internet Explorer\Main [bprotector start page]
 Wert Gefunden : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [bProtectorDefaultScope]
 Wert Gefunden : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{82E1477C-B154-48D3-9891-33D83C26BCD3}]
 
 ***** [ Browser ] *****
 
 -\\ Internet Explorer v10.0.9200.16736
 
 Einstellung Gefunden : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxp://www1.delta-search.com/?babsrc=HP_ss&mntrId=FCEA001E658B5A20&affID=123884&tsp=4955
 
 -\\ Mozilla Firefox v25.0.1 (de)
 
 [ Datei : C:\Users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\d4wu5ku0.default\prefs.js ]
 
 Zeile gefunden : user_pref("browser.search.order.1", "Delta Search");
 Zeile gefunden : user_pref("extensions.delta.admin", false);
 Zeile gefunden : user_pref("extensions.delta.aflt", "babsst");
 Zeile gefunden : user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}");
 Zeile gefunden : user_pref("extensions.delta.autoRvrt", "false");
 Zeile gefunden : user_pref("extensions.delta.dfltLng", "de");
 Zeile gefunden : user_pref("extensions.delta.excTlbr", false);
 Zeile gefunden : user_pref("extensions.delta.ffxUnstlRst", true);
 Zeile gefunden : user_pref("extensions.delta.id", "fcea79cf000000000000001e658b5a20");
 Zeile gefunden : user_pref("extensions.delta.instlDay", "15912");
 Zeile gefunden : user_pref("extensions.delta.instlRef", "sst");
 Zeile gefunden : user_pref("extensions.delta.newTab", false);
 Zeile gefunden : user_pref("extensions.delta.prdct", "delta");
 Zeile gefunden : user_pref("extensions.delta.prtnrId", "delta");
 Zeile gefunden : user_pref("extensions.delta.rvrt", "false");
 Zeile gefunden : user_pref("extensions.delta.smplGrp", "none");
 Zeile gefunden : user_pref("extensions.delta.tlbrId", "base");
 Zeile gefunden : user_pref("extensions.delta.tlbrSrchUrl", "");
 Zeile gefunden : user_pref("extensions.delta.vrsn", "1.8.22.0");
 Zeile gefunden : user_pref("extensions.delta.vrsnTs", "1.8.22.012:55:16");
 Zeile gefunden : user_pref("extensions.delta.vrsni", "1.8.22.0");
 Zeile gefunden : user_pref("extensions.delta_i.babExt", "");
 Zeile gefunden : user_pref("extensions.delta_i.babTrack", "affID=123884&tsp=4955");
 Zeile gefunden : user_pref("extensions.delta_i.srcExt", "ss");
 
 [ Datei : C:\Users\Studio\AppData\Roaming\Mozilla\Firefox\Profiles\xuxhqpt3.default\prefs.js ]
 
 Zeile gefunden : user_pref("browser.search.order.1", "Delta Search");
 
 -\\ Google Chrome v31.0.1650.57
 
 [ Datei : C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\preferences ]
 
 Gefunden : homepage
 Gefunden : urls_to_restore_on_startup
 
 [ Datei : C:\Users\Studio\AppData\Local\Google\Chrome\User Data\Default\preferences ]
 
 
 *************************
 
 AdwCleaner[R0].txt - [13673 octets] - [16/11/2013 12:55:46]
 
 ########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [13734 octets] ##########
 JRT Log:   Code: 
 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~Junkware Removal Tool (JRT) by Thisisu
 Version: 6.0.8 (11.05.2013:1)
 OS: Windows 7 Ultimate x64
 Ran by Alex on 16.11.2013 at 13:04:24,36
 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 
 
 
 
 ~~~ Services
 
 
 
 ~~~ Registry Values
 
 Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{82E1477C-B154-48D3-9891-33D83C26BCD3}
 Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Start Page
 Successfully repaired: [Registry Value] HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page
 Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Main\\Start Page
 Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\Main\\Start Page
 Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\Main\\Start Page
 Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-21-608561246-1273621892-622091736-1001\Software\Microsoft\Internet Explorer\Main\\Start Page
 
 
 
 ~~~ Registry Keys
 
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\delta.deltadskbnd
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\delta.deltadskbnd.1
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\escort.escortiepane
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\escort.escortiepane.1
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{38A066B0-DD5F-4226-AC4F-6A27C1BFB892}
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{39CB8175-E224-4446-8746-00566302DF8D}
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\escort.dll
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\escortapp.dll
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\escorteng.dll
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\escortlbr.dll
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\esrv.exe
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\AppID\pricepeep.dll
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{261DD098-8A3E-43D4-87AA-63324FA897D8}
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{4FCB4630-2A1C-4AA1-B422-345E8DC8A6DE}
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{82E1477C-B154-48D3-9891-33D83C26BCD3}
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{86838207-681D-469D-9511-D0DCC6F19F9B}
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{E97A663B-81A6-49C5-A6D3-BCB05BA1DE26}
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{1231839B-064E-4788-B865-465A1B5266FD}
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{1B97A696-5576-43AC-A73B-E1D2C78F21E8}
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{2DAC2231-CC35-482B-97C5-CED1D4185080}
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{3F1CD84C-04A3-4EA0-9EA1-7D134FD66C82}
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{3F83A9CA-B5F0-44EC-9357-35BB3E84B07F}
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{47E520EA-CAD2-4F51-8F30-613B3A1C33EB}
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{57C91446-8D81-4156-A70E-624551442DE9}
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{70AFB7B2-9FB5-4A70-905B-0E9576142E1D}
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{75BF416E-4326-45B5-8A2D-AE32D05B930B}
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{7AD65FD1-79E0-406D-B03C-DD7C14726D69}
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{97DD820D-2E20-40AD-B01E-6730B2FCE630}
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{B177446D-54A4-4869-BABC-8566110B4BE0}
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{D9D1DFC5-502D-43E4-B1BB-4D0B7841489A}
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{E0B07188-A528-4F9E-B2F7-C7FDE8680AE4}
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{F05B12E1-ADE8-4485-B45B-898748B53C37}
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{39CB8175-E224-4446-8746-00566302DF8D}
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
 Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\babsolution
 Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\bi
 Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\delta
 Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-608561246-1273621892-622091736-1001\Software\sweetim
 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\delta
 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\delta.deltaappcore
 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\delta.deltaappcore.1
 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\delta.deltahlpr
 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\delta.deltahlpr.1
 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\esrv.deltaesrvc
 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\esrv.deltaesrvc.1
 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\pricepeep.pricepeepbho
 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\pricepeep.pricepeepbho.1
 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\prod.cap
 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\apnstub_rasapi32
 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\apnstub_rasmancs
 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\bi_uninstaller
 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\delta
 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\delta chrome toolbar
 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\pricepeep
 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Uninstall\{15d2d75c-9cb2-4efd-bad7-b9b4cb4bc693}
 Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9}
 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007}
 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007}
 Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{FD6D90C0-E6EE-4BC6-B9F7-9ED319698007}
 
 
 
 ~~~ Files
 
 Successfully deleted: [File] "C:\Users\Alex\appdata\local\google\chrome\user data\default\bprotector web data"
 Successfully deleted: [File] "C:\Users\Alex\appdata\local\google\chrome\user data\default\bprotectorpreferences"
 Successfully deleted: [File] "C:\Users\Alex\appdata\local\google\chrome\user data\default\local storage\http_www1.delta-search.com_0.localstorage"
 Successfully deleted: [File] "C:\Users\Alex\appdata\local\google\chrome\user data\default\local storage\http_www1.delta-search.com_0.localstorage-journal"
 
 
 
 ~~~ Folders
 
 Successfully deleted: [Folder] "C:\ProgramData\babylon"
 Failed to delete: [Folder] "C:\ProgramData\bitguard"
 Successfully deleted: [Folder] "C:\Users\Alex\AppData\Roaming\babsolution"
 Successfully deleted: [Folder] "C:\Users\Alex\AppData\Roaming\babylon"
 Successfully deleted: [Folder] "C:\Users\Alex\AppData\Roaming\delta"
 Successfully deleted: [Folder] "C:\Program Files (x86)\delta"
 Successfully deleted: [Folder] "C:\Program Files (x86)\pricepeep"
 Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{00477854-D8E7-41AA-8BB9-A2A05FD42A2B}
 Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{3A78FACE-F476-4F24-ADB4-7BFE7B39DF05}
 Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{AAF8FFAD-889C-4389-88FE-D28EF88C90CA}
 Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{BBD8EBC6-6610-4318-ACC5-8F9D49C4E02A}
 Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{C174513F-31F1-4D65-96D5-0191831937AE}
 Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{C3F98BF2-FEB0-49AA-B328-8B432B46601A}
 Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{CAFC0E13-1A62-415F-87A6-24001D80F273}
 Successfully deleted: [Empty Folder] C:\Users\Alex\appdata\local\{E6EC4789-B3F8-47D3-B197-9CC317C7B48A}
 
 
 
 ~~~ FireFox
 
 Successfully deleted: [File] C:\Users\Alex\AppData\Roaming\mozilla\firefox\profiles\d4wu5ku0.default\user.js
 Successfully deleted: [File] C:\Users\Alex\AppData\Roaming\mozilla\firefox\profiles\d4wu5ku0.default\bprotector_extensions.sqlite
 Successfully deleted: [File] C:\Users\Alex\AppData\Roaming\mozilla\firefox\profiles\d4wu5ku0.default\bprotector_prefs.js
 Successfully deleted: [File] C:\Users\Alex\AppData\Roaming\mozilla\firefox\profiles\d4wu5ku0.default\extensions\pricepeep@getpricepeep.com.xpi
 Successfully deleted: [File] C:\Users\Alex\AppData\Roaming\mozilla\firefox\profiles\d4wu5ku0.default\searchplugins\babylon.xml
 Successfully deleted: [Folder] C:\Users\Alex\AppData\Roaming\mozilla\firefox\profiles\d4wu5ku0.default\extensions\ffxtlbr@delta.com
 Successfully deleted: [Folder] C:\Users\Alex\AppData\Roaming\mozilla\firefox\profiles\d4wu5ku0.default\extensions\pricepeep@getpricepeep.com
 Successfully deleted the following from C:\Users\Alex\AppData\Roaming\mozilla\firefox\profiles\d4wu5ku0.default\prefs.js
 
 user_pref("browser.search.order.1", "Delta Search");
 user_pref("extensions.delta.admin", false);
 user_pref("extensions.delta.aflt", "babsst");
 user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}");
 user_pref("extensions.delta.autoRvrt", "false");
 user_pref("extensions.delta.dfltLng", "de");
 user_pref("extensions.delta.excTlbr", false);
 user_pref("extensions.delta.ffxUnstlRst", true);
 user_pref("extensions.delta.id", "fcea79cf000000000000001e658b5a20");
 user_pref("extensions.delta.instlDay", "15912");
 user_pref("extensions.delta.instlRef", "sst");
 user_pref("extensions.delta.newTab", false);
 user_pref("extensions.delta.prdct", "delta");
 user_pref("extensions.delta.prtnrId", "delta");
 user_pref("extensions.delta.rvrt", "false");
 user_pref("extensions.delta.smplGrp", "none");
 user_pref("extensions.delta.tlbrId", "base");
 user_pref("extensions.delta.tlbrSrchUrl", "");
 user_pref("extensions.delta.vrsn", "1.8.22.0");
 user_pref("extensions.delta.vrsnTs", "1.8.22.012:55:16");
 user_pref("extensions.delta.vrsni", "1.8.22.0");
 user_pref("extensions.delta_i.babExt", "");
 user_pref("extensions.delta_i.babTrack", "affID=123884&tsp=4955");
 user_pref("extensions.delta_i.srcExt", "ss");
 Emptied folder: C:\Users\Alex\AppData\Roaming\mozilla\firefox\profiles\d4wu5ku0.default\minidumps [435 files]
 
 
 
 ~~~ Chrome
 
 Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Google\Chrome\Extensions\eooncjejnppfjjklapaamhcdmjbilmde
 
 
 
 ~~~ Event Viewer Logs were cleared
 
 
 
 
 
 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 Scan was completed on 16.11.2013 at 13:11:19,89
 End of JRT log
 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 MBAM Log:   Code: 
 Malwarebytes Anti-Malware 1.75.0.1300www.malwarebytes.org
 
 Datenbank Version: v2013.11.16.02
 
 Windows 7 Service Pack 1 x64 NTFS
 Internet Explorer 10.0.9200.16736
 Alex :: ALEX-PC [Administrator]
 
 16.11.2013 13:13:20
 mbam-log-2013-11-16 (13-13-20).txt
 
 Art des Suchlaufs: Quick-Scan
 Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM
 Deaktivierte Suchlaufeinstellungen: P2P
 Durchsuchte Objekte: 234601
 Laufzeit: 4 Minute(n), 59 Sekunde(n)
 
 Infizierte Speicherprozesse: 0
 (Keine bösartigen Objekte gefunden)
 
 Infizierte Speichermodule: 0
 (Keine bösartigen Objekte gefunden)
 
 Infizierte Registrierungsschlüssel: 3
 HKCR\Typelib\{3BF3DED5-0FC8-4207-AC09-AA7B5AF4E408} (Adware.Agent) -> Erfolgreich gelöscht und in Quarantäne gestellt.
 HKCR\Typelib\{4599D05A-D545-4069-BB42-5895B4EAE05B} (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
 HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{348C2DF3-1191-4C3E-92A6-B3A89A9D9C85} (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
 
 Infizierte Registrierungswerte: 2
 HKCU\SOFTWARE\Microsoft\Internet Explorer\Main|bProtector Start Page (PUP.BProtector) -> Daten: hxxp://www.golsearch.com/?babsrc=HP_ss_Btisdt6&mntrId=FCEA001E658B5A20&affID=123884&tsp=4955 -> Erfolgreich gelöscht und in Quarantäne gestellt.
 HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes|bProtectorDefaultScope (PUP.BProtector) -> Daten: {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} -> Erfolgreich gelöscht und in Quarantäne gestellt.
 
 Infizierte Dateiobjekte der Registrierung: 0
 (Keine bösartigen Objekte gefunden)
 
 Infizierte Verzeichnisse: 3
 C:\Users\Alex\AppData\Local\Temp\mt_ffx\Delta (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
 C:\Users\Alex\AppData\Local\Temp\mt_ffx\Delta\delta (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
 C:\Users\Alex\AppData\Local\Temp\mt_ffx\Delta\delta\1.8.22.0 (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
 
 Infizierte Dateien: 24
 C:\Users\Alex\AppData\Local\Temp\awhB706.tmp (PUP.Optional.Amonetize.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
 C:\Users\Alex\AppData\Local\Temp\CC45.tmp (PUP.Optional.Conduit.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
 C:\Users\Alex\AppData\Local\Temp\D391.tmp (PUP.Optional.Conduit.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
 C:\Users\Alex\AppData\Local\Temp\DeltaTB.exe (PUP.Optional.DeltaTB) -> Erfolgreich gelöscht und in Quarantäne gestellt.
 C:\Users\Alex\AppData\Local\Temp\KP7CLUVa.exe.part (PUP.Optional.Installrex) -> Erfolgreich gelöscht und in Quarantäne gestellt.
 C:\Users\Alex\AppData\Local\Temp\sam__2268_il166570.exe (PUP.Optional.Amonetize.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
 C:\Users\Alex\AppData\Local\Temp\45623B27-BAB0-7891-99FE-9A2C74C0D244\Latest\BabMaint.exe (PUP.Optional.Babylon.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
 C:\Users\Alex\AppData\Local\Temp\45623B27-BAB0-7891-99FE-9A2C74C0D244\Latest\BExternal.dll (PUP.Optional.Babylon.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
 C:\Users\Alex\AppData\Local\Temp\45623B27-BAB0-7891-99FE-9A2C74C0D244\Latest\CrxInstaller.dll (PUP.Optional.Babylon.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
 C:\Users\Alex\AppData\Local\Temp\45623B27-BAB0-7891-99FE-9A2C74C0D244\Latest\MntrDLLInstall.dll (PUP.Optional.Babylon.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
 C:\Users\Alex\AppData\Local\Temp\45623B27-BAB0-7891-99FE-9A2C74C0D244\Latest\Setup.exe (PUP.Optional.Babylon.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
 C:\Users\Alex\AppData\Local\Temp\bus1804\CrxUpdater_d.exe (PUP.Optional.CRX.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
 C:\Users\Alex\AppData\Local\Temp\bus6226\BUSolution.dll (PUP.Optional.BabSolution.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
 C:\Users\Alex\AppData\Local\Temp\bus8414\CrxUpdater_d.exe (PUP.Optional.CRX.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
 C:\Users\Alex\AppData\Local\Temp\bus8D83\CrxUpdater_d.exe (PUP.Optional.CRX.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
 C:\Users\Alex\AppData\Local\Temp\bus95AA\CrxUpdater_d.exe (PUP.Optional.CRX.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
 C:\Users\Alex\AppData\Local\Temp\bus9AD8\CrxUpdater_d.exe (PUP.Optional.CRX.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
 C:\Users\Alex\AppData\Local\Temp\busB8A4\CrxUpdater_d.exe (PUP.Optional.CRX.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
 C:\Users\Alex\AppData\Local\Temp\busBC5B\CrxUpdater_d.exe (PUP.Optional.CRX.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
 C:\Users\Alex\AppData\Local\Temp\busBDA3\CrxUpdater_d.exe (PUP.Optional.CRX.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
 C:\Users\Alex\AppData\Local\Temp\busDDDF\CrxUpdater_d.exe (PUP.Optional.CRX.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
 C:\Users\Alex\AppData\Local\Temp\busEACB\CrxUpdater_d.exe (PUP.Optional.CRX.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
 C:\Users\Alex\AppData\Local\Temp\is-F0BQ1.tmp\sam__2268_il166570.exe (PUP.Optional.Amonetize.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
 C:\Users\Studio\AppData\Local\Temp\F5DF.tmp (PUP.Optional.Conduit.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
 
 (Ende)
 Zoek Log:   Code: 
 Zoek.exe Version 4.0.0.5 Updated 14-November-2013Tool run by Alex on 16.11.2013 at 13:25:57,45.
 Microsoft Windows 7 Ultimate  6.1.7601 Service Pack 1 x64
 Running in: Normal Mode Internet Access Detected
 Launched: C:\Users\Alex\Desktop\zoek\zoek.scr [Script inserted]
 
 ==== System Restore Info ======================
 
 16.11.2013 13:30:23 Zoek.exe System Restore Point Created Succesfully.
 
 ==== Deleting CLSID Registry Keys ======================
 
 
 ==== Deleting CLSID Registry Values ======================
 
 
 ==== Deleting Services ======================
 
 
 ==== FireFox Fix ======================
 
 Deleted from C:\Users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\d4wu5ku0.default\prefs.js:
 user_pref("browser.startup.homepage", "google.de");
 user_pref("browser.newtab.url", "");
 user_pref("browser.search.defaultenginename", "Google Deutschland");
 user_pref("browser.search.selectedEngine", "Google Deutschland");
 user_pref("browser.search.useDBForOrder", true);
 
 Added to C:\Users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\d4wu5ku0.default\prefs.js:
 user_pref("browser.startup.homepage", "hxxp://www.google.com");
 user_pref("browser.search.defaulturl", "hxxp://www.google.com/search?btnG=Google+Search&q=");
 user_pref("browser.newtab.url", "hxxp://www.google.com/");
 user_pref("browser.search.defaultengine", "Google");
 user_pref("browser.search.defaultenginename", "Google");
 user_pref("browser.search.selectedEngine", "Google");
 user_pref("browser.search.order.1", "Google");
 user_pref("keyword.URL", "hxxp://www.google.com/search?btnG=Google+Search&q=");
 user_pref("browser.search.suggest.enabled", true);
 user_pref("browser.search.useDBForOrder", true);
 
 Deleted from C:\Users\Studio\AppData\Roaming\Mozilla\Firefox\Profiles\xuxhqpt3.default\prefs.js:
 user_pref("browser.startup.homepage", "google.de");
 user_pref("browser.newtab.url", "");
 user_pref("browser.search.selectedEngine", "Google Deutschland");
 user_pref("browser.search.order.1", "Delta Search");
 
 Added to C:\Users\Studio\AppData\Roaming\Mozilla\Firefox\Profiles\xuxhqpt3.default\prefs.js:
 user_pref("browser.startup.homepage", "hxxp://www.google.com");
 user_pref("browser.search.defaulturl", "hxxp://www.google.com/search?btnG=Google+Search&q=");
 user_pref("browser.newtab.url", "hxxp://www.google.com/");
 user_pref("browser.search.defaultengine", "Google");
 user_pref("browser.search.defaultenginename", "Google");
 user_pref("browser.search.selectedEngine", "Google");
 user_pref("browser.search.order.1", "Google");
 user_pref("keyword.URL", "hxxp://www.google.com/search?btnG=Google+Search&q=");
 user_pref("browser.search.suggest.enabled", true);
 user_pref("browser.search.useDBForOrder", true);
 
 ProfilePath: C:\Users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\d4wu5ku0.default
 
 user.js not found
 ---- FireFox user.js and prefs.js backups ----
 
 prefs__1340_.backup
 
 ProfilePath: C:\Users\Studio\AppData\Roaming\Mozilla\Firefox\Profiles\xuxhqpt3.default
 
 user.js not found
 ---- FireFox user.js and prefs.js backups ----
 
 prefs__1340_.backup
 
 ==== Deleting Files \ Folders ======================
 
 C:\PROGRA~2\Amazon deleted
 C:\Users\Alex\Favorites\Startfenster.lnk deleted
 C:\Users\Alex\Favorites\Links\Startfenster.lnk deleted
 C:\Users\Alex\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Startfenster.lnk deleted
 C:\Users\Alex\AppData\Local\avgchrome deleted
 C:\Users\Alex\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitGuard deleted
 C:\windows\SysNative\Tasks\EPUpdater deleted
 C:\Windows\SysWow64\searchplugins deleted
 C:\Windows\SysWow64\Extensions deleted
 C:\Users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\d4wu5ku0.default\searchplugins\BrowserDefender.xml deleted
 C:\Users\Studio\AppData\Roaming\Mozilla\Firefox\Profiles\xuxhqpt3.default\bprotector_extensions.sqlite deleted
 C:\Users\Studio\AppData\Roaming\Mozilla\Firefox\Profiles\xuxhqpt3.default\bprotector_prefs.js deleted
 
 ==== Firefox Extensions ======================
 
 ProfilePath: C:\Users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\d4wu5ku0.default
 - Default Manager - %ProfilePath%\extensions\DefaultManager@Microsoft
 - Stealthy - %ProfilePath%\extensions\stealthyextension@gmail.com.xpi
 
 ProfilePath: C:\Users\Studio\AppData\Roaming\Mozilla\Firefox\Profiles\xuxhqpt3.default
 - Firefox Update Hotfix - %ProfilePath%\extensions\firefox-hotfix@mozilla.org.xpi
 
 AppDir: C:\Program Files (x86)\Mozilla Firefox
 - Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
 
 ==== Firefox Plugins ======================
 
 Profilepath: C:\Users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\d4wu5ku0.default
 4BF70B35B943BD73BD6E13EB7C1BA4B3        - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll -        Shockwave Flash
 2616B4D6D04F18C579B7861F02B0B592        - C:\Windows\SysWOW64\npDeployJava1.dll -        Java Deployment Toolkit 7.0.130.20
 8FE7BA502945BE735D09D5703BD76FDA        - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1165635.dll -        Shockwave for Director / Shockwave for Director
 15E298B5EC5B89C5994A59863969D9FF        - C:\Windows\SysWOW64\npmproxy.dll -        Microsoft® Windows® Operating System
 
 
 ==== Chrome Look ======================
 
 Delta Toolbar - Studio - Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde
 Chrome In-App Payments service - Studio - Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
 
 ==== Chrome Fix ======================
 
 C:\Users\Studio\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde deleted successfully
 
 ==== Set IE to Default ======================
 
 Old Values:
 [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
 "Start Page"="hxxp://www.google.com"
 [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
 "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
 [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}] not found
 
 New Values:
 [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
 "Start Page"="hxxp://www.google.com"
 [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
 "DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}"
 
 ==== All HKCU SearchScopes ======================
 
 HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
 {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing  Url="hxxp://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"
 {10EE2E61-0BA5-4AF8-90C6-1B2FF3C5A012} Bing  Url="hxxp://www.bing.com/search?FORM=WLETDF&PC=WLEM&q={searchTerms}&src=IE-SearchBox"
 {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google  Url="hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}"
 
 ==== Reset Google Chrome ======================
 
 C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
 C:\Users\Studio\AppData\Local\Google\Chrome\User Data\Default\preferences was reset successfully
 C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
 C:\Users\Studio\AppData\Local\Google\Chrome\User Data\Default\web data was reset successfully
 
 ==== Deleting Registry Keys ======================
 
 HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeCS5ServiceManager deleted successfully
 
 ==== Empty IE Cache ======================
 
 C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
 C:\Users\Alex\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
 C:\Users\Alex\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
 C:\Users\Alex\AppData\Local\Temp\acro_rd_dir\Temporary Internet Files\Content.IE5 emptied successfully
 C:\Users\Alex\AppData\Local\Temp\Temporary Internet Files\Content.IE5 emptied successfully
 C:\Users\Studio\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
 C:\Users\Studio\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5 emptied successfully
 C:\Users\Studio\AppData\Local\Temp\acro_rd_dir\Temporary Internet Files\Content.IE5 emptied successfully
 C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
 C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
 C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
 
 ==== Empty FireFox Cache ======================
 
 C:\Users\Alex\AppData\Local\Mozilla\Firefox\Profiles\d4wu5ku0.default\Cache emptied successfully
 C:\Users\Studio\AppData\Local\Mozilla\Firefox\Profiles\xuxhqpt3.default\Cache emptied successfully
 
 ==== Empty Chrome Cache ======================
 
 C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
 C:\Users\Studio\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
 
 ==== Empty All Flash Cache ======================
 
 Flash Cache is not empty, a reboot is needed
 
 ==== Empty All Java Cache ======================
 
 Java Cache cleared successfully
 
 ==== After Reboot ======================
 
 ==== Empty Temp Folders ======================
 
 C:\Windows\Temp successfully emptied
 C:\Users\Alex\AppData\Local\Temp successfully emptied
 
 ==== Empty Recycle Bin ======================
 
 C:\$RECYCLE.BIN successfully emptied
 
 ==== Deleting Files / Folders ======================
 
 "C:\Users\Alex\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8WXYL2UZ\cdn.visiblemeasures.com"  not found
 "C:\Users\Alex\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8WXYL2UZ\g-ecx.images-amazon.com"  not found
 "C:\Users\Alex\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8WXYL2UZ\lads.myspace.com"  not found
 "C:\Users\Alex\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8WXYL2UZ\www.musicsonglyrics.com"  not found
 "C:\Users\Alex\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\8WXYL2UZ\www33.zippyshare.com"  not found
 "C:\Users\Studio\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\QCN84XET\www.handy-und-festnetz.net"  not found
 
 ==== EOF on 16.11.2013 at 13:51:35,99 ======================
 |