Rezultat naprawy Farbar Recovery Scan Tool (x64) Wersja: 11-12-2021 Uruchomiony przez Michał (20-12-2021 07:00:05) Run:1 Uruchomiony z C:\Users\Michał\Downloads Załadowane profile: Michał Tryb startu: Normal ============================================== fixlist - zawartość: ***************** CloseProcesses: CreateRestorePoint: File: C:\Users\MICHA~1\AppData\Local\Temp\1xq0MkKMTM0YtEl1JnXJ2x0ArfP\dll-propagation.exe File: C:\Users\Michał\AppData\Roaming\.dllbackups\dllruntime.exe File: C:\Users\MICHA~1\AppData\Local\Temp\1y6QaG1dVqmqkzRvawVNVxn3bhE\dllservices.exe File: C:\Users\Michał\AppData\Roaming\.dllbackups\data\modules\dll-propagation\dll-propagation_2.9.8.exe () <==== UWAGA [zerobajtowy plik/folder] C:\Users\MICHA~1\AppData\Local\Temp\1xq0MkKMTM0YtEl1JnXJ2x0ArfP\dll-propagation.exe <3> (Microsoft Corporation) [Brak podpisu cyfrowego] [Plik w użyciu] C:\Users\Michał\AppData\Roaming\.dllbackups\dllruntime.exe (Microsoft Corporation) [Brak podpisu cyfrowego] C:\Users\MICHA~1\AppData\Local\Temp\1y6QaG1dVqmqkzRvawVNVxn3bhE\dllservices.exe <4> (Microsoft Corporation) [Brak podpisu cyfrowego] C:\Users\Michał\AppData\Roaming\.dllbackups\data\modules\dll-propagation\dll-propagation_2.9.8.exe HKU\S-1-5-21-3660899758-607036233-2879557839-1001\...\Run: [electron.app.dllservices] => C:\Users\Michał\AppData\Roaming\.dllbackups\dllruntime.exe [63924677 2021-12-01] (Microsoft Corporation) [Brak podpisu cyfrowego] [Plik w użyciu] HKU\S-1-5-21-3660899758-607036233-2879557839-1001\...\Policies\Explorer: [] HKU\S-1-5-21-3660899758-607036233-2879557839-1001\...\MountPoints2: {709845aa-7618-11eb-82a3-f01faf07be54} - "F:\HiSuiteDownLoader.exe" HKU\S-1-5-21-3660899758-607036233-2879557839-1001\...\MountPoints2: {7a86a6d5-add8-11eb-82b5-f01faf07be54} - "F:\HiSuiteDownLoader.exe" HKU\S-1-5-21-3660899758-607036233-2879557839-1001\...\MountPoints2: {8e1e8be7-42cf-11eb-8298-f01faf07be54} - "D:\HiSuiteDownLoader.exe" HKU\S-1-5-21-3660899758-607036233-2879557839-1001\...\MountPoints2: {8e1e9291-42cf-11eb-8298-f01faf07be54} - "F:\HiSuiteDownLoader.exe" HKU\S-1-5-21-3660899758-607036233-2879557839-1001\...\MountPoints2: {98279402-3f03-11eb-8298-806e6f6e6963} - "D:\HiSuiteDownLoader.exe" Task: {69D0FB8B-12AC-4A40-BA16-A21F7FFC08C7} - System32\Tasks\AutoKMS => C:\WINDOWS\AutoKMS\AutoKMS.exe [3738624 2020-12-09] () [Brak podpisu cyfrowego] Task: {0AF53B5F-58A6-4E38-A9F5-09CDEDA2CC10} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1562376 2021-08-16] (Adobe Inc. -> Adobe Inc.) Task: {A28ED615-9282-4D26-9618-6CB56ABBAF0D} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate Task: {E4842356-DE09-464C-9DB9-63E8F8683B72} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2021-12-07] (Piriform Software Ltd -> Piriform) HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia <==== UWAGA GroupPolicy: Ograniczenia ? <==== UWAGA Policies: C:\ProgramData\NTUSER.pol: Ograniczenia <==== UWAGA 2021-12-16 17:43 - 2020-12-13 10:59 - 000003804 _____ C:\WINDOWS\system32\Tasks\AutoKMS 2021-12-07 22:21 - 2021-12-07 22:21 - 000000000 ____D C:\Users\Michał\AppData\Roaming\Ookla 2021-12-01 21:21 - 2021-12-16 23:22 - 000000000 ____D C:\Users\Michał\AppData\Roaming\dll-propagation 2021-12-01 21:20 - 2021-12-02 18:02 - 000000000 ___HD C:\Users\Michał\AppData\Roaming\.dllbackups 2021-12-01 21:19 - 2021-12-16 17:40 - 000000000 ____D C:\Users\Michał\AppData\Roaming\dllservices ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Brak pliku ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> Brak pliku ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> Brak pliku ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Brak pliku ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Brak pliku ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> Brak pliku ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> Brak pliku ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> Brak pliku ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Brak pliku ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> Brak pliku ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Brak pliku ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> Brak pliku ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> Brak pliku ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Brak pliku ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Brak pliku ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Brak pliku FirewallRules: [{714B9A95-8F77-41B0-900A-888D678F537C}] => (Allow) C:\Users\Michał\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.) FirewallRules: [{6649CC74-11C2-489A-9F46-5E0351DDAD3E}] => (Allow) C:\Users\Michał\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.) FirewallRules: [{ECA22CB6-B9F7-43EE-84CE-24B904B21711}] => (Block) C:\Program Files\EaseUS\EaseUS Data Recovery Wizard\DRW.exe => Brak pliku FirewallRules: [{8D466CE5-4D8F-43FD-A86D-8A09E90AE26C}] => (Block) C:\Program Files\EaseUS\EaseUS Data Recovery Wizard\DRWUI.exe => Brak pliku CMD: ipconfig /flushdns Hosts: EmptyTemp: ***************** Procesy zostały pomyślnie zamknięte. Punkt przywracania został pomyślnie utworzony. ========================= File: C:\Users\MICHA~1\AppData\Local\Temp\1xq0MkKMTM0YtEl1JnXJ2x0ArfP\dll-propagation.exe ======================== "C:\Users\MICHA~1\AppData\Local\Temp\1xq0MkKMTM0YtEl1JnXJ2x0ArfP\dll-propagation.exe" => nie znaleziono ====== Koniec File: ====== ========================= File: C:\Users\Michał\AppData\Roaming\.dllbackups\dllruntime.exe ======================== C:\Users\Michał\AppData\Roaming\.dllbackups\dllruntime.exe Brak podpisu cyfrowego MD5: E508CD8F2E4C677EEFC5AE8323F21CD4 Data utworzenia i modyfikacji: 2021-12-01 21:20 - 2021-12-01 21:20 Rozmiar: 063924677 Atrybuty: ---AH Firma: Microsoft Corporation Wewnętrzna nazwa: Oryginalna nazwa: Produkt: dllservices Opis: Windows 32bit services Plik Wersja: 8.9.14 Produkt Wersja: 8.9.14 Prawa autorskie: Copyright © 2021 Microsoft Corporation VirusTotal: 0 ====== Koniec File: ====== ========================= File: C:\Users\MICHA~1\AppData\Local\Temp\1y6QaG1dVqmqkzRvawVNVxn3bhE\dllservices.exe ======================== C:\Users\MICHA~1\AppData\Local\Temp\1y6QaG1dVqmqkzRvawVNVxn3bhE\dllservices.exe Brak podpisu cyfrowego MD5: 257D96F1313ECB885C483FD6F80D99AD Data utworzenia i modyfikacji: 2021-12-20 06:56 - 2021-09-13 22:46 Rozmiar: 136992256 Atrybuty: ----A Firma: Microsoft Corporation Wewnętrzna nazwa: dllservices Oryginalna nazwa: Produkt: dllservices Opis: dllservices Plik Wersja: 8.9.14 Produkt Wersja: 8.9.14.0 Prawa autorskie: Copyright © 2021 Microsoft Corporation VirusTotal: https://www.virustotal.com/gui/file/1027e26bf8f266121bf17f6e2622caf688ce53c94c22243b3959b583d2f49ed2/detection/f-1027e26bf8f266121bf17f6e2622caf688ce53c94c22243b3959b583d2f49ed2-1639396706 ====== Koniec File: ====== ========================= File: C:\Users\Michał\AppData\Roaming\.dllbackups\data\modules\dll-propagation\dll-propagation_2.9.8.exe ======================== C:\Users\Michał\AppData\Roaming\.dllbackups\data\modules\dll-propagation\dll-propagation_2.9.8.exe Brak podpisu cyfrowego MD5: 818CD524A3B45C3725F5B035BB26B5E7 Data utworzenia i modyfikacji: 2021-12-01 21:21 - 2021-12-01 21:21 Rozmiar: 056051045 Atrybuty: ----A Firma: Microsoft Corporation Wewnętrzna nazwa: Oryginalna nazwa: Produkt: dll-propagation Opis: DLL propagation unit Plik Wersja: 2.9.8 Produkt Wersja: 2.9.8 Prawa autorskie: Copyright © 2021 Microsoft Corporation VirusTotal: 0 ====== Koniec File: ====== <==== UWAGA [zerobajtowy plik/folder] C:\Users\MICHA~1\AppData\Local\Temp\1xq0MkKMTM0YtEl1JnXJ2x0ArfP\dll-propagation.exe => Nie odnaleziono uruchomionego procesu C:\Users\Michał\AppData\Roaming\.dllbackups\dllruntime.exe => Nie odnaleziono uruchomionego procesu C:\Users\MICHA~1\AppData\Local\Temp\1y6QaG1dVqmqkzRvawVNVxn3bhE\dllservices.exe => Nie odnaleziono uruchomionego procesu C:\Users\Michał\AppData\Roaming\.dllbackups\data\modules\dll-propagation\dll-propagation_2.9.8.exe => Nie odnaleziono uruchomionego procesu "HKU\S-1-5-21-3660899758-607036233-2879557839-1001\Software\Microsoft\Windows\CurrentVersion\Run\\electron.app.dllservices" => pomyślnie usunięto "HKU\S-1-5-21-3660899758-607036233-2879557839-1001\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\" => pomyślnie usunięto HKU\S-1-5-21-3660899758-607036233-2879557839-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{709845aa-7618-11eb-82a3-f01faf07be54} => pomyślnie usunięto HKU\S-1-5-21-3660899758-607036233-2879557839-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{7a86a6d5-add8-11eb-82b5-f01faf07be54} => pomyślnie usunięto HKU\S-1-5-21-3660899758-607036233-2879557839-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{8e1e8be7-42cf-11eb-8298-f01faf07be54} => pomyślnie usunięto HKU\S-1-5-21-3660899758-607036233-2879557839-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{8e1e9291-42cf-11eb-8298-f01faf07be54} => pomyślnie usunięto HKU\S-1-5-21-3660899758-607036233-2879557839-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{98279402-3f03-11eb-8298-806e6f6e6963} => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{69D0FB8B-12AC-4A40-BA16-A21F7FFC08C7}" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{69D0FB8B-12AC-4A40-BA16-A21F7FFC08C7}" => pomyślnie usunięto C:\WINDOWS\System32\Tasks\AutoKMS => pomyślnie przeniesiono "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AutoKMS" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{0AF53B5F-58A6-4E38-A9F5-09CDEDA2CC10}" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0AF53B5F-58A6-4E38-A9F5-09CDEDA2CC10}" => pomyślnie usunięto C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task => pomyślnie przeniesiono "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Adobe Acrobat Update Task" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A28ED615-9282-4D26-9618-6CB56ABBAF0D}" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A28ED615-9282-4D26-9618-6CB56ABBAF0D}" => pomyślnie usunięto C:\WINDOWS\System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => pomyślnie przeniesiono "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Mozilla\Firefox Background Update 308046B0AF4A39CB" => pomyślnie usunięto "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E4842356-DE09-464C-9DB9-63E8F8683B72}" => nie znaleziono "C:\WINDOWS\System32\Tasks\CCleaner Update" => nie znaleziono "HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CCleaner Update" => nie znaleziono HKLM\SOFTWARE\Policies\Microsoft\Windows Defender => pomyślnie usunięto C:\WINDOWS\system32\GroupPolicy\Machine => pomyślnie przeniesiono C:\WINDOWS\system32\GroupPolicy\GPT.ini => pomyślnie przeniesiono C:\WINDOWS\SysWOW64\GroupPolicy\GPT.ini => pomyślnie przeniesiono C:\ProgramData\NTUSER.pol => pomyślnie przeniesiono "C:\WINDOWS\system32\Tasks\AutoKMS" => nie znaleziono C:\Users\Michał\AppData\Roaming\Ookla => pomyślnie przeniesiono C:\Users\Michał\AppData\Roaming\dll-propagation => pomyślnie przeniesiono C:\Users\Michał\AppData\Roaming\.dllbackups => pomyślnie przeniesiono C:\Users\Michał\AppData\Roaming\dllservices => pomyślnie przeniesiono HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive1 => pomyślnie usunięto HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive2 => pomyślnie usunięto HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive3 => pomyślnie usunięto HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive4 => pomyślnie usunięto HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive5 => pomyślnie usunięto HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive6 => pomyślnie usunięto HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive7 => pomyślnie usunięto HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive1 => pomyślnie usunięto HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive2 => pomyślnie usunięto HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive3 => pomyślnie usunięto HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive4 => pomyślnie usunięto HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive5 => pomyślnie usunięto HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive6 => pomyślnie usunięto HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive7 => pomyślnie usunięto HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ FileSyncEx => pomyślnie usunięto HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\7-Zip => pomyślnie usunięto HKLM\Software\Classes\CLSID\{23170F69-40C1-278A-1000-000100020000} => pomyślnie usunięto HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ANotepad++64 => pomyślnie usunięto HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\BriefcaseMenu => pomyślnie usunięto "HKLM\Software\Classes\CLSID\{85BBD920-42A0-1069-A2E4-08002B30309D}" => pomyślnie usunięto HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\{4A7C4306-57E0-4C0C-83A9-78C1528F618C} => pomyślnie usunięto HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\ FileSyncEx => pomyślnie usunięto HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\7-Zip => pomyślnie usunięto HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui => pomyślnie usunięto HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\BriefcaseMenu => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{714B9A95-8F77-41B0-900A-888D678F537C}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6649CC74-11C2-489A-9F46-5E0351DDAD3E}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{ECA22CB6-B9F7-43EE-84CE-24B904B21711}" => pomyślnie usunięto "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{8D466CE5-4D8F-43FD-A86D-8A09E90AE26C}" => pomyślnie usunięto ========= ipconfig /flushdns ========= Windows IP Configuration Successfully flushed the DNS Resolver Cache. ========= Koniec CMD: ========= C:\Windows\System32\Drivers\etc\hosts => pomyślnie przeniesiono Hosts pomyślnie przywrócono. =========== EmptyTemp: ========== BITS transfer queue => 0 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 78191448 B Java, Flash, Steam htmlcache => 0 B Windows/system/drivers => 4276 B Edge => 13 B Chrome => 264288222 B Firefox => 14869987 B Opera => 0 B Temp, IE cache, history, cookies, recent: Default => 0 B ProgramData => 0 B Public => 0 B systemprofile => 0 B systemprofile32 => 0 B LocalService => 146930 B NetworkService => 146930 B Michał => 341067513 B DefaultAppPool => 341067513 B RecycleBin => 0 B EmptyTemp: => 991.6 MB danych tymczasowych Usunięto. ================================ System wymagał restartu. ==== Koniec Fixlog 07:00:55 ====