cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

ComboFix 15-05-09.01 - House-L.A 13/05/2015 15:21:39.1.2 - x86
Microsoft Windows 7 Professionnel 6.1.7601.1.1256.963.1036.18.3071.1249 [GMT 1:00]
Running from: c:\users\House-L.A\Downloads\Programs\ComboFix.exe
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files\YoutubeAdblocker
c:\program files\YoutubeAdblocker\vDAxvggVVg3kXe.dat
c:\program files\YoutubeAdblocker\vDAxvggVVg3kXe.tlb
c:\programdata\1665548354994591528
c:\programdata\1665548354994591528\cd5b15e575e1c3d0acc31d8d95209536.ini
c:\users\House-L.A\AppData\Local\Microsoft\Windows\Temporary Internet Files\{72B892B2-2D72-45CD-976C-AE34D5473EFB}.xps
c:\users\House-L.A\AppData\Local\Microsoft\Windows\Temporary Internet Files\{77FEA745-F943-45E3-95B0-39A55F399CA0}.xps
c:\users\House-L.A\AppData\Local\Microsoft\Windows\Temporary Internet Files\{7A2930C5-93C6-4F6C-A114-C44159CBE84C}.xps
c:\users\House-L.A\AppData\Local\Temp\C7C0\temp\4CC0.exe
c:\users\House-L.A\AppData\Roaming\A15.tmp
c:\users\House-L.A\AppData\Roaming\DefaultTab\DefaultTab
c:\users\House-L.A\AppData\Roaming\DefaultTab\DefaultTab\DTUpdate.exe
c:\users\House-L.A\AppData\Roaming\Mozilla\Firefox\Profiles\rcr5qtvx.default-1425390276094\extensions\HncftC@I.net
c:\users\House-L.A\AppData\Roaming\Mozilla\Firefox\Profiles\rcr5qtvx.default-1425390276094\extensions\HncftC@I.net\bootstrap.js
c:\users\House-L.A\AppData\Roaming\Mozilla\Firefox\Profiles\rcr5qtvx.default-1425390276094\extensions\HncftC@I.net\chrome.manifest
c:\users\House-L.A\AppData\Roaming\Mozilla\Firefox\Profiles\rcr5qtvx.default-1425390276094\extensions\HncftC@I.net\content\bg.js
c:\users\House-L.A\AppData\Roaming\Mozilla\Firefox\Profiles\rcr5qtvx.default-1425390276094\extensions\HncftC@I.net\install.rdf
c:\users\House-L.A\AppData\Roaming\Mozilla\Firefox\Profiles\rcr5qtvx.default-1425390276094\extensions\Ow@rF.com
c:\users\House-L.A\AppData\Roaming\Mozilla\Firefox\Profiles\rcr5qtvx.default-1425390276094\extensions\Ow@rF.com\bootstrap.js
c:\users\House-L.A\AppData\Roaming\Mozilla\Firefox\Profiles\rcr5qtvx.default-1425390276094\extensions\Ow@rF.com\chrome.manifest
c:\users\House-L.A\AppData\Roaming\Mozilla\Firefox\Profiles\rcr5qtvx.default-1425390276094\extensions\Ow@rF.com\content\bg.js
c:\users\House-L.A\AppData\Roaming\Mozilla\Firefox\Profiles\rcr5qtvx.default-1425390276094\extensions\Ow@rF.com\install.rdf
c:\users\House-L.A\AppData\Roaming\nss3.dll
c:\users\House-L.A\AppData\Roaming\Popper
.
----- File Replicators -----
.
D:\dxtx.exe
D:\dyds.exe
D:\eciux.exe
D:\eybv.exe
D:\fskj.exe
D:\mywgw.exe
D:\qklqam.exe
D:\rkmkf.exe
D:\srsdj.exe
D:\stlbs.exe
D:\tprx.exe
D:\unhqg.exe
D:\vsbu.exe
D:\xdto.exe
D:\xucjj.exe
D:\ytbxab.exe
E:\agotn.exe
E:\bjio.exe
E:\bnynnq.exe
E:\bullvc.exe
E:\bvsh.exe
E:\dtredc.exe
E:\dyqac.exe
E:\fskwsa.exe
E:\idytjv.exe
E:\jybjpd.exe
E:\kvbhux.exe
E:\kwdnk.exe
E:\laton.exe
E:\otepcr.exe
E:\ppsvd.exe
E:\pypxb.exe
E:\sfqv.exe
E:\wgcus.exe
E:\wmctul.exe
E:\xgktr.exe
E:\ybqg.exe
.
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_globalUpdate
.
.
((((((((((((((((((((((((( Files Created from 2015-04-13 to 2015-05-13 )))))))))))))))))))))))))))))))
.
.
2015-05-13 14:30 . 2015-05-13 14:30 -------- d-----w- c:\users\Default\AppData\Local\temp
2015-05-12 14:29 . 2015-04-04 06:39 9201616 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{A244B40B-34A0-4B06-AD3F-3B8DC3D522B8}\mpengine.dll
2015-05-11 23:24 . 2015-05-11 23:24 -------- d-----w- c:\users\House-L.A\AppData\Roaming\Microsoft Office
2015-04-21 14:46 . 2015-04-21 14:46 -------- d-----w- c:\program files\Common Files\Java
2015-04-16 12:49 . 2015-04-16 12:49 -------- d-s---w- c:\windows\system32\CompatTel
2015-04-16 12:49 . 2015-04-16 12:49 -------- d-----w- c:\windows\system32\appraiser
2015-04-15 14:08 . 2015-04-15 14:08 -------- d-----w- c:\users\House-L.A\AppData\Local\DocumentScanner
2015-04-15 14:06 . 2015-04-15 14:06 -------- d-----w- c:\program files\Documalis
2015-04-15 12:57 . 2015-03-23 03:06 576000 ----a-w- c:\windows\system32\generaltel.dll
2015-04-15 12:57 . 2015-03-23 03:06 331264 ----a-w- c:\windows\system32\devinv.dll
2015-04-15 12:57 . 2015-01-27 23:36 1167520 ----a-w- c:\windows\system32\aitstatic.exe
2015-04-15 12:57 . 2015-03-23 03:06 630784 ----a-w- c:\windows\system32\invagent.dll
2015-04-15 12:57 . 2015-03-23 03:06 26112 ----a-w- c:\windows\system32\acmigration.dll
2015-04-15 12:57 . 2015-03-23 03:06 202752 ----a-w- c:\windows\system32\aepdu.dll
2015-04-15 12:57 . 2015-03-23 03:06 159744 ----a-w- c:\windows\system32\aepic.dll
2015-04-15 12:57 . 2015-03-23 02:59 896000 ----a-w- c:\windows\system32\aeinv.dll
2015-04-15 12:34 . 2015-03-25 03:00 92672 ----a-w- c:\windows\system32\wudriver.dll
2015-04-15 12:34 . 2015-03-25 03:00 566784 ----a-w- c:\windows\system32\wuapi.dll
2015-04-15 12:34 . 2015-03-25 03:00 35328 ----a-w- c:\windows\system32\wups2.dll
2015-04-15 12:34 . 2015-03-25 03:00 3088384 ----a-w- c:\windows\system32\wucltux.dll
2015-04-15 12:34 . 2015-03-25 03:00 29696 ----a-w- c:\windows\system32\wups.dll
2015-04-15 12:34 . 2015-03-25 03:00 2020864 ----a-w- c:\windows\system32\wuaueng.dll
2015-04-15 12:34 . 2015-03-25 03:00 173056 ----a-w- c:\windows\system32\wuwebv.dll
2015-04-15 12:34 . 2015-03-25 03:00 50176 ----a-w- c:\windows\system32\WinSetupUI.dll
2015-04-15 12:34 . 2015-03-25 03:00 11776 ----a-w- c:\windows\system32\wu.upgrade.ps.dll
2015-04-15 12:34 . 2015-03-25 03:00 33792 ----a-w- c:\windows\system32\wuapp.exe
2015-04-15 12:34 . 2015-03-25 03:00 131584 ----a-w- c:\windows\system32\wuauclt.exe
2015-04-15 12:30 . 2015-02-25 03:03 514560 ----a-w- c:\windows\system32\drivers\http.sys
2015-04-15 12:30 . 2015-03-10 03:08 1237504 ----a-w- c:\windows\system32\msxml3.dll
2015-04-15 12:30 . 2015-03-10 03:05 2048 ----a-w- c:\windows\system32\msxml3r.dll
2015-04-14 00:03 . 2015-04-14 00:04 -------- d-----w- c:\users\House-L.A\AppData\Local\Prompt Downloader
2015-04-14 00:03 . 2015-04-14 00:37 -------- d-----w- c:\program files\Prompt Downloader
2015-04-13 23:06 . 2015-04-14 00:57 -------- d-----w- c:\program files\TampaModule
2015-04-13 23:05 . 2015-04-14 00:37 -------- d-----w- c:\program files\SalePlus
2015-04-13 23:05 . 2015-04-14 00:57 -------- d-----w- c:\program files\SallePlus
2015-04-13 23:04 . 2015-04-13 23:04 -------- d-----w- c:\programdata\jklcojjijekmpmncfgpmbmhpfpjdgicd
2015-04-13 23:04 . 2015-04-15 20:25 -------- d-----w- c:\programdata\{9f51bcda-da48-d455-9f51-1bcdada4f36b}
2015-04-13 21:50 . 2015-04-13 21:50 -------- d-----w- c:\program files\DroidCam
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-05-13 12:58 . 2014-07-01 10:56 778416 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2015-05-13 12:58 . 2014-07-01 10:56 142512 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2015-04-21 14:45 . 2015-02-20 22:23 96680 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2015-03-22 21:59 . 2015-03-22 21:59 38984 ----a-w- c:\windows\system32\drivers\aswTap.sys
2015-03-12 10:58 . 2015-04-10 19:19 326288 ----a-w- c:\windows\system32\LavasoftTcpService.dll
2015-02-26 03:11 . 2015-03-10 20:19 2381312 ----a-w- c:\windows\system32\win32k.sys
2015-02-24 03:23 . 2014-01-31 15:53 246920 ------w- c:\windows\system32\MpSigStub.exe
2015-02-20 04:13 . 2015-03-10 20:13 26624 ----a-w- c:\windows\system32\lpk.dll
2015-02-20 04:13 . 2015-03-10 20:13 70656 ----a-w- c:\windows\system32\fontsub.dll
2015-02-20 04:13 . 2015-03-10 20:13 10240 ----a-w- c:\windows\system32\dciman32.dll
2015-02-20 04:13 . 2015-03-10 20:13 34304 ----a-w- c:\windows\system32\atmlib.dll
2015-02-20 03:09 . 2015-03-10 20:13 299008 ----a-w- c:\windows\system32\atmfd.dll
2015-02-19 12:57 . 2015-02-19 12:54 73216 ----a-w- c:\windows\ST6UNST.EXE
2015-02-19 12:57 . 2015-02-19 12:54 172032 ------w- c:\windows\Setup1.exe
2015-02-17 14:26 . 2015-02-17 14:26 1217184 ----a-w- c:\windows\system32\FM20.DLL
2015-02-15 21:59 . 2015-02-15 21:59 81768 ----a-w- c:\windows\system32\drivers\ksapi.sys
2015-02-15 21:59 . 2015-02-15 21:59 56680 ----a-w- c:\windows\system32\drivers\ksapi64.sys
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\IDM Shell Extension]
@="{CDC95B92-E27C-4745-A8C5-64A52A78855D}"
[HKEY_CLASSES_ROOT\CLSID\{CDC95B92-E27C-4745-A8C5-64A52A78855D}]
2012-02-08 00:49 22376 ----a-w- c:\program files\Internet Download Manager\IDMShellExt.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2015-04-17 31282816]
"IDMan"="c:\program files\Internet Download Manager\IDMan.exe" [2012-05-02 3487128]
"Microsoft Excel"="wscript.exe" [2013-10-12 141824]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"vProt"="c:\program files\AVG Web TuneUp\vprot.exe" [2014-11-12 3060248]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2015-04-10 335232]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"SPReview"="c:\windows\System32\SPReview\SPReview.exe" [2014-07-20 280576]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
"SoftwareSASGeneration"= 1 (0x1)
.
R2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [2015-02-18 315488]
R2 Update maucampo;Update maucampo;c:\program files\maucampo\updatemaucampo.exe [x]
R2 Update PacFunction;Update PacFunction;c:\program files\PacFunction\updatePacFunction.exe [x]
R2 Update webget;Update webget;c:\program files\webget\updatewebget.exe [x]
R2 Util PacFunction;Util PacFunction;c:\program files\PacFunction\bin\utilPacFunction.exe [x]
R3 aswTap;avast! SecureLine TAP Adapter v3;c:\windows\system32\DRIVERS\aswTap.sys [2015-03-22 38984]
R3 BprotectEx;Baidu ProtectEx;c:\windows\System32\drivers\BprotectEx.sys [x]
R3 globalUpdatem;globalUpdate Update Service (globalUpdatem);c:\program files\globalUpdate\Update\GoogleUpdate.exe [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe [2015-03-13 102912]
R3 ksapi;ksapi;c:\windows\system32\drivers\ksapi.sys [2015-02-15 81768]
R3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\MBAMSwissArmy.sys [x]
R3 PCFApiUtil;PCFApiUtil;c:\program files\PC Faster\5.1.0.0\PCFApiUtil.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 52224]
R3 WatAdminSvc;Service Windows Activation Technologies;c:\windows\system32\Wat\WatAdminSvc.exe [2014-07-19 1343400]
S0 Bhbase;Baidu Hook Base;c:\windows\System32\drivers\Bhbase.sys [2014-03-11 47456]
S1 avgtp;avgtp;c:\windows\system32\drivers\avgtpx86.sys [2014-11-12 42784]
S2 c2cautoupdatesvc;Skype Click to Call Updater;c:\program files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2014-07-14 1390176]
S2 c2cpnrsvc;Skype Click to Call PNR Service;c:\program files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2014-07-14 1767520]
S2 CodeMeter.exe;CodeMeter Runtime Server;c:\program files\CodeMeter\Runtime\bin\CodeMeter.exe [2013-11-27 3105144]
S2 IDMWFP;IDMWFP;c:\windows\system32\DRIVERS\idmwfp.sys [2012-04-23 96056]
S3 DroidCam;DroidCam Virtual Audio;c:\windows\system32\DRIVERS\droidcam.sys [2015-02-09 30008]
S3 DroidCamVideo;DroidCam Source 3;c:\windows\system32\DRIVERS\droidcamvideo.sys [2015-02-09 224824]
S3 RTL8167;Pilote Realtek 8167 NT;c:\windows\system32\DRIVERS\Rt86win7.sys [2009-07-13 139776]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2015-03-03 13:15 1091912 ----a-w- c:\program files\Google\Chrome\Application\35.0.1916.114\Installer\chrmstp.exe
.
Contents of the 'Scheduled Tasks' folder
.
2015-05-13 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-07-01 12:58]
.
2015-05-13 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2015-03-03 13:15]
.
2015-05-13 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2015-03-03 13:15]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.arabyonline.com/?src=1000
mStart Page = hxxp://www.arabyonline.com/?src=1000
IE: E&xporter vers Microsoft Excel - c:\progra~1\MICROS~1\Office12\EXCEL.EXE/3000
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\MICROS~1\Office14\EXCEL.EXE/3000
IE: Od&eslat do aplikace OneNote - c:\progra~1\MICROS~1\Office14\ONBttnIE.dll/105
IE: T�l�charger avec IDM - c:\program files\Internet Download Manager\IEExt.htm
IE: T�l�charger tous les liens avec IDM - c:\program files\Internet Download Manager\IEGetAll.htm
TCP: DhcpNameServer = 193.95.57.20 193.95.59.20
Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:\program files\Common Files\AVG Secure Search\ViProtocolInstaller\18.1.10\ViProtocol.dll
FF - ProfilePath - c:\users\House-L.A\AppData\Roaming\Mozilla\Firefox\Profiles\rcr5qtvx.default-1425390276094\
FF - prefs.js: browser.search.defaulturl - hxxp://websearch.goodforsearch.info/?pid=2261&r=2015/04/13&hid=12448826288911717686&lg=EN&cc=TN&unqvl=86&l=1&q=
FF - prefs.js: browser.search.selectedEngine - WebSearch
FF - prefs.js: browser.startup.homepage - hxxp://websearch.goodforsearch.info/?pid=2261&r=2015/04/13&hid=12448826288911717686&lg=EN&cc=TN&unqvl=86
FF - prefs.js: keyword.URL - hxxp://websearch.goodforsearch.info/?pid=2261&r=2015/04/13&hid=12448826288911717686&lg=EN&cc=TN&unqvl=86&l=1&q=
user_pref(extensions.autoDisableScopes,14);
.
- - - - ORPHANS REMOVED - - - -
.
Toolbar-10 - (no file)
ShellIconOverlayIdentifiers-{472083B0-C522-11CF-8763-00608CC02F24} - (no file)
HKCU-Run-MyCuteBuddy - c:\program files\My Cute Buddy\myCuteBuddy.exe
HKCU-Run-Web Companion - c:\program files\Lavasoft\Web Companion\Application\WebCompanion.exe
HKCU-Run-KMPConnect - c:\program files\KMPConnect\kair_view.exe
HKCU-Run-ALLUpdate - c:\program files\ALLPlayer\ALLUpdate.exe
HKCU-Run-ALLPlayer WiFi Remote - c:\program files\ALLPlayer Remote\ALLPlayerRemoteControl.exe
HKLM-Run-BlueStacks Agent - c:\program files\BlueStacks\HD-Agent.exe
c:\users\House-L.A\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Clean Master for PC.lnk - c:\programdata\{59dd6a9d-f6c0-b835-59dd-d6a9df6caa77}\Clean Master for PC.exe --startup=1
AddRemove-ALUpdate_is1 - c:\program files\ESTsoft\ALUpdate\unins000.exe
AddRemove-ALZip_is1 - c:\program files\ESTsoft\ALZip\unins000.exe
AddRemove-{12DA0E6F-5543-440C-BAA2-28BF01070AFA}{3d03b121} - c:\progra~1\TAMPAM~1\TAMPAM~1.DLL
.
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_USERS\S-1-5-21-3677044604-2178747155-4045936603-1001_Classes\CLSID\{5ED60779-4DE2-4E07-B862-974CA4FF2E9C}]
@Denied: (Full) (Everyone)
@Allowed: (Read) (RestrictedCode)
"scansk"=hex(0):0b,af,ec,21,3d,ff,ad,63,9a,c5,bd,8a,d2,04,9c,59,20,39,84,f8,f1,
5f,dc,b3,b3,09,d3,06,0f,5e,b7,25,a0,ba,11,ae,82,0b,82,73,00,00,00,00,00,00,\
.
[HKEY_USERS\S-1-5-21-3677044604-2178747155-4045936603-1001_Classes\CLSID\{7B8E9164-324D-4A2E-A46D-0165FB2000EC}]
@Denied: (Full) (Everyone)
"scansk"=hex(0):4f,d0,6f,7c,4a,0a,d9,5a,74,72,b4,c1,cd,cf,31,50,98,4f,d7,12,45,
fe,74,d0,6f,e7,2c,49,83,d9,cf,22,51,d1,64,bf,71,b1,15,56,00,00,00,00,00,00,\
.
[HKEY_USERS\S-1-5-21-3677044604-2178747155-4045936603-1001_Classes\CLSID\{8f2a66fa-2f4e-4094-b35e-a24ca2393b80}]
@Denied: (Full) (Everyone)
@Allowed: (Read) (RestrictedCode)
"Model"=dword:000000af
"Therad"=dword:0000001e
"MData"=hex(0):73,d5,cf,b8,a4,07,89,80,31,e4,35,6b,2a,ca,fe,43,b6,1f,81,1f,5a,
1b,4d,36,46,8f,3c,f2,5c,68,ee,21,46,8f,3c,f2,5c,68,ee,21,46,8f,3c,f2,5c,68,\
.
[HKEY_USERS\S-1-5-21-3677044604-2178747155-4045936603-1001_Classes\CLSID\{cc80c63a-203b-49ee-9e73-98bae07df75c}]
@Denied: (Full) (Everyone)
@Allowed: (Read) (RestrictedCode)
"Model"=dword:00000034
"Therad"=dword:00000017
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Other Running Processes ------------------------
.
c:\program files\Common Files\Adobe\ARM\1.0\armsvc.exe
c:\windows\system32\taskhost.exe
c:\windows\system32\WUDFHost.exe
c:\windows\servicing\TrustedInstaller.exe
c:\windows\system32\conhost.exe
c:\windows\System32\wscript.exe
c:\program files\Windows Media Player\wmpnetwk.exe
c:\windows\system32\sppsvc.exe
c:\kmplayer\KMPlayer.exe
c:\windows\system32\DllHost.exe
.
**************************************************************************
.
Completion time: 2015-05-13 15:37:27 - machine was rebooted
ComboFix-quarantined-files.txt 2015-05-13 14:37
.
Pre-Run: 6�019�756�032 octets libres
Post-Run: 6�911�070�208 octets libres
.
- - End Of File - - BFEBAE452914A4C8D0C726757F4E19E2
A36C5E4F47E84449FF07ED3517B43A31

Publicité


Signaler le contenu de ce document

Publicité