:OTL
PRC - C:\Program Files\Mobogenie\MgAssist.exe ()
PRC - C:\Program Files\Mobogenie\DaemonProcess.exe ()
PRC - C:\Program Files\webget\updatewebget.exe ()
PRC - C:\ProgramData\WPM\wprotectmanager.exe (Cherished Technololgy LIMITED)
PRC - C:\ProgramData\IePluginService\PluginService.exe (Cherished Technololgy LIMITED)
MOD - C:\Program Files\Mobogenie\Device.dll ()
MOD - C:\Program Files\Mobogenie\DaemonProcess.exe ()
SRV - (MgAssistService) -- C:\Program Files\Mobogenie\MgAssist.exe ()
SRV - (Update webget) -- C:\Program Files\webget\updatewebget.exe ()
SRV - (Wpm) -- C:\ProgramData\WPM\wprotectmanager.exe (Cherished Technololgy LIMITED)
SRV - (IePluginService) -- C:\ProgramData\IePluginService\PluginService.exe (Cherished Technololgy LIMITED)
DRV - (nkoauuuu) -- C:\Windows\system32\drivers\nkoauuuu.sys File not found
DRV - (dgderdrv) -- System32\drivers\dgderdrv.sys File not found
DRV - (bpyjstjo) -- C:\Windows\system32\drivers\bpyjstjo.sys File not found
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.sweet-page.com/?type=hp&ts=1399037302&from=cor&uid=ST3500418AS_Z2A2K9ZXXXXXZ2A2K9ZXIE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://www.sweet-page.com/web/?type=ds&ts=1399037302&from=cor&uid=ST3500418AS_Z2A2K9ZXXXXXZ2A2K9ZX&q={searchTerms}
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = Reg Error: Value error.
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
http://www.sweet-page.com/web/?type=ds&ts=1399037302&from=cor&uid=ST3500418AS_Z2A2K9ZXXXXXZ2A2K9ZX&q={searchTerms}
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = Reg Error: Value error.
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.sweet-page.com/?type=hp&ts=1399037302&from=cor&uid=ST3500418AS_Z2A2K9ZXXXXXZ2A2K9ZXIE - HKLM\..\SearchScopes,DefaultScope = {33BB0A4E-99AF-4226-BDF6-49120163DE86}
IE - HKLM\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" =
http://www.sweet-page.com/web/?type=ds&ts=1399037302&from=cor&uid=ST3500418AS_Z2A2K9ZXXXXXZ2A2K9ZX&q={searchTerms}
IE - HKU\S-1-5-21-654464585-3551784114-2677922777-1339\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.sweet-page.com/?type=hp&ts=1399037302&from=cor&uid=ST3500418AS_Z2A2K9ZXXXXXZ2A2K9ZXIE - HKU\S-1-5-21-654464585-3551784114-2677922777-1339\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.sweet-page.com/?type=hp&ts=1399037302&from=cor&uid=ST3500418AS_Z2A2K9ZXXXXXZ2A2K9ZXIE - HKU\S-1-5-21-654464585-3551784114-2677922777-1339\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" =
http://www.sweet-page.com/web/?type=ds&ts=1399037302&from=cor&uid=ST3500418AS_Z2A2K9ZXXXXXZ2A2K9ZX&q={searchTerms}
FF - prefs.js..browser.search.defaultenginename: "sweet-page"
FF - prefs.js..browser.search.selectedEngine: "sweet-page"
FF - prefs.js..browser.search.suggest.enabled: false
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://www.sweet-page.com/?type=hp&ts=1399037302&from=cor&uid=ST3500418AS_Z2A2K9ZXXXXXZ2A2K9ZX"
FF - prefs.js..extensions.enabledAddons: extension%40openitonline.com:3.2.2
FF - prefs.js..extensions.enabledAddons: %7Bb68dfae5-1903-4a03-8094-c973bf7e483e%7D:4.0.2
FF - prefs.js..extensions.enabledAddons: %7B0153E448-190B-4987-BDE1-F256CADA672F%7D:15.0.6
FF - prefs.js..extensions.enabledAddons: %7Ba7c6cf7f-112c-4500-a7ea-39801a327e5f%7D:2.0.18
FF - prefs.js..extensions.enabledAddons: quick_start%40gmail.com:3.2.0
FF - prefs.js..extensions.enabledAddons: %7B9edd0ea8-2819-47c2-8320-b007d5996f8a%7D:1.0.1
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:28.0
CHR - default_search_provider: sweet-page (Enabled)
CHR - default_search_provider: search_url =
http://www.sweet-page.com/web/?type=ds&ts=1399037302&from=cor&uid=ST3500418AS_Z2A2K9ZXXXXXZ2A2K9ZX&q={searchTerms}
CHR - default_search_provider: suggest_url =
CHR - homepage:
http://www.sweet-page.com/?type=hp&ts=1399037302&from=cor&uid=ST3500418AS_Z2A2K9ZXXXXXZ2A2K9ZXCHR - Extension: Media Buzz = C:\Users\direzione07\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfiaamldgpagknjkpngbmpbkmkabanep\1.1_0\
O1 - Hosts: 127.0.0.1 activate.adobe.com
O2 - BHO: (IETabPage Class) - {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} - C:\Program Files\SupTab\SupTab.dll (Thinknice Co. Limited)
O2 - BHO: (Media Buzz) - {698dba47-f57e-4780-97a1-34aaa44d36d0} - C:\Program Files\MediaBuzzV1\MediaBuzzV1mode5416\ie\MediaBuzzV1mode5416.dll File not found
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O4 - HKLM..\Run: [mobilegeni daemon] C:\Program Files\Mobogenie\DaemonProcess.exe ()
O9 - Extra 'Tools' menuitem : Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - Reg Error: Key error. File not found
O15 - HKU\S-1-5-21-654464585-3551784114-2677922777-1339\..Trusted Domains: localhost ([]http in Intranet locale)
O15 - HKU\S-1-5-21-654464585-3551784114-2677922777-1339\..Trusted Ranges: GD ([http] in Intranet locale)
O16 - DPF: {7ECB1A47-6647-4B2C-A8DA-675569C9FF15}
http://ww2.photocity.it/WebResource.axd?d=6oAwKa3vp2o4yAvcqCUdtfDKO6UsI1mMendfOi5UZZY_P8DqngTW0hBDybb_8A1RdzpF8IiWamDLE1ji1KWMN4RcCMlJMaFOQ89a4mNQvfAuVtA9E4fILhgtwx2JDoh0lV8cvRgkHRY1mK79eAsYKUcGIdtTcwOZXMlQ3T3QKxFh97zIt1186opln55OXW-s0&t=634783040800000000 (Image Uploader Control)
O16 - DPF: {82E5DF24-51E8-47CD-864A-F4BD5005AA73}
https://www.icloud.com/system/iCloud.cab (iCloud Web App Plugin)
O33 - MountPoints2\{836f1516-27e1-11e2-ba25-1078d2e43b56}\Shell - "" = AutoRun
O33 - MountPoints2\{836f1516-27e1-11e2-ba25-1078d2e43b56}\Shell\AutoRun\command - "" = H:\iLinker.exe
[2014/05/02 15:32:07 | 000,000,000 | ---D | C] -- C:\Program Files\webget
[2014/05/02 15:30:32 | 000,000,000 | ---D | C] -- C:\Users\direzione07\.android
[2014/05/02 15:30:13 | 000,000,000 | ---D | C] -- C:\Users\direzione07\Documents\Mobogenie
[2014/05/02 15:30:13 | 000,000,000 | ---D | C] -- C:\Users\direzione07\AppData\Local\Mobogenie
[2014/05/02 15:30:06 | 000,000,000 | ---D | C] -- C:\Users\direzione07\AppData\Roaming\SupTab
[2014/05/02 15:30:00 | 000,000,000 | ---D | C] -- C:\ProgramData\IePluginService
[2014/05/02 15:29:59 | 000,000,000 | ---D | C] -- C:\Program Files\SupTab
[2014/05/02 15:29:40 | 000,000,000 | ---D | C] -- C:\Users\direzione07\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mobogenie
[2014/05/02 15:28:59 | 000,000,000 | ---D | C] -- C:\Program Files\Mobogenie
[2014/05/02 15:28:49 | 000,000,000 | ---D | C] -- C:\Users\direzione07\AppData\Roaming\sweet-page
[2014/04/30 16:17:12 | 000,000,000 | ---D | C] -- C:\Users\direzione07\AppData\Roaming\Uvmemio
[2014/04/30 16:17:06 | 000,000,000 | ---D | C] -- C:\Users\direzione07\AppData\Roaming\Soebukcy
[2014/04/30 16:17:00 | 000,000,000 | ---D | C] -- C:\Users\direzione07\AppData\Roaming\Ovohdu
[2014/05/02 15:29:40 | 000,000,941 | ---- | M] () -- C:\Users\direzione07\Desktop\Mobogenie.lnk
[2014/05/02 15:29:40 | 000,000,941 | ---- | C] () -- C:\Users\direzione07\Desktop\Mobogenie.lnk
[2013/02/06 14:18:48 | 000,000,000 | -HSD | M] -- C:\$Recycle.Bin\S-1-5-18\$9d2b19e58662a7bf45415af79ff1eea2\L
[2013/08/29 13:40:06 | 000,000,000 | -HSD | M] -- C:\$Recycle.Bin\S-1-5-18\$9d2b19e58662a7bf45415af79ff1eea2\U
[2011/07/11 11:19:27 | 000,000,000 | ---D | M] -- C:\Users\direzione07\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
2014/05/02 15:30:06 | 000,000,000 | ---D | M] -- C:\Users\direzione07\AppData\Roaming\SupTab
[2014/05/02 15:28:52 | 000,000,000 | ---D | M] -- C:\Users\direzione07\AppData\Roaming\sweet-page
[2014/04/30 16:17:12 | 000,000,000 | ---D | M] -- C:\Users\direzione07\AppData\Roaming\Uvmemio
[2013/02/06 18:30:00 | 000,000,000 | ---D | M] -- C:\Users\direzione07\AppData\Roaming\Uxwaeg
:Files
C:\Program Files\Mobogenie
C:\Program Files\webget
C:\$Recycle.Bin\S-1-5-18\$9d2b19e58662a7bf45415af79ff1eea2
ipconfig /flushdns /c
:reg
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\exefile\shell\open\command]
""=""%1" %*"
:commands
[purity]
[emptytemp]
[Emptyjava]
[RESETHOSTS]
[EMPTYFLASH]
[start explorer]
[Reboot]