Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Instant Share Devices And Error 1706


  • Please log in to reply
1 reply to this topic

#1 Pancho5428

Pancho5428

  • Members
  • 3 posts
  • OFFLINE
  •  
  • Local time:05:57 PM

Posted 20 December 2007 - 02:08 AM

I get the problem when I, boot up, gets into the installer for InstantShareDevices gets into a loop, finally I get error 1706, and the computer is very slow, I have TrendMicro Internet Security Pro, here is the

Francisco

StartupList report, 20/12/2007, 01:06:51 a.m.
StartupList version: 1.52.2
Started from : C:\Documents and Settings\pancho\Escritorio\HiJackThis_v2.EXE
Detected: Windows XP SP2 (WinNT 5.01.2600)
Detected: Internet Explorer v7.00 (7.00.6000.16574)
* Using default options
==================================================

Running processes:

C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Archivos de programa\Digital Media Reader\shwiconem.exe
C:\Archivos de programa\CyberLink\PowerDVD\PDVDServ.exe
C:\WINDOWS\zHotkey.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Archivos de programa\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
C:\Archivos de programa\QuickTime\qttask.exe
C:\ARCHIV~1\MUSICM~1\MUSICM~1\MMDiag.exe
C:\WINDOWS\vVX3000.exe
C:\Archivos de programa\Trend Micro\TrendSecure\TSCFPlatformCOMSvr.exe
C:\Archivos de programa\Mindjet\MindManager 6\MMReminderService.exe
C:\Archivos de programa\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe
C:\ARCHIV~1\HEWLET~1\HPSHAR~1\hpgs2wnf.exe
C:\Archivos de programa\Musicmatch\Musicmatch Jukebox\mim.exe
C:\Archivos de programa\Microsoft Office\Office12\GrooveMonitor.exe
C:\Archivos de programa\Archivos comunes\Real\Update_OB\realsched.exe
C:\Archivos de programa\Macrogaming\SweetIM\SweetIM.exe
C:\Archivos de programa\Nero\Nero8\InCD\NBHGui.exe
C:\Archivos de programa\Nero\Nero8\InCD\InCD.exe
C:\Archivos de programa\Trend Micro\Internet Security\UfSeAgnt.exe
C:\Archivos de programa\HP\HP Software Update\HPWuSchd2.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Archivos de programa\Tracker Software\PDF-XChange 3\pdfSaver\pdfSaver3.exe
C:\Archivos de programa\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe
C:\Archivos de programa\Trend Micro\TrendSecure\RemoteFileLock\FLMain.exe
C:\Archivos de programa\Windows Media Player\WMPNSCFG.exe
C:\Archivos de programa\Archivos comunes\DataViz\DvzIncMsgr.exe
C:\Archivos de programa\palmOne\Hotsync.exe
C:\Archivos de programa\InterVideo\Common\Bin\WinCinemaMgr.exe
C:\Archivos de programa\Yahoo!\Yahoo! Music Jukebox\ymetray.exe
C:\WINDOWS\system32\netdde.exe
C:\WINDOWS\System32\svchost.exe
C:\Archivos de programa\Nero\Nero8\InCD\InCDsrv.exe
C:\Archivos de programa\Archivos comunes\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Archivos de programa\Microsoft LifeCam\MSCamS32.exe
C:\Archivos de programa\Nero\Nero8\Nero BackItUp\NBService.exe
C:\Archivos de programa\Archivos comunes\New Boundary\PrismXL\PRISMXL.SYS
C:\Archivos de programa\Trend Micro\Internet Security\SfCtlCom.exe
C:\WINDOWS\system32\tcpsvcs.exe
C:\WINDOWS\System32\snmp.exe
C:\WINDOWS\system32\svchost.exe
C:\Archivos de programa\UPSmart\UPServ.exe
C:\Archivos de programa\UPSmart\UPSmart.EXE
C:\Archivos de programa\Trend Micro\BM\TMBMSRV.exe
C:\Archivos de programa\Archivos comunes\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
C:\WINDOWS\system32\msiexec.exe
C:\ARCHIV~1\TRENDM~1\INTERN~4\TmPfw.exe
C:\Archivos de programa\Trend Micro\Internet Security\TmProxy.exe
C:\Archivos de programa\Trend Micro\TrendSecure\TSCFCommander.exe
C:\Archivos de programa\Trend Micro\TrendSecure\TransactionProtector\Dependent\HSChkProxyExe.exe
C:\Archivos de programa\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\kdfmgr.exe
C:\Archivos de programa\Archivos comunes\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\WINDOWS\system32\taskmgr.exe
C:\WINDOWS\system32\notepad.exe
C:\Archivos de programa\Microsoft IntelliPoint\ipoint.exe
C:\Documents and Settings\pancho\Escritorio\HiJackThis_v2.exe

--------------------------------------------------

Listing of startup folders:

Shell folders Startup:
[C:\Documents and Settings\pancho\Menú Inicio\Programas\Inicio]
OneNote 2007 Screen Clipper and Launcher.lnk = C:\Archivos de programa\Microsoft Office\Office12\ONENOTEM.EXE

Shell folders Common Startup:
[C:\Documents and Settings\All Users\Menú Inicio\Programas\Inicio]
AutoCAD Startup Accelerator.lnk = C:\Archivos de programa\Archivos comunes\Autodesk Shared\acstart16.exe
DataViz Inc Messenger.lnk = C:\Archivos de programa\Archivos comunes\DataViz\DvzIncMsgr.exe
HotSync Manager.lnk = C:\Archivos de programa\palmOne\Hotsync.exe
Inicio rápido de HP Photosmart Premier.lnk = C:\Archivos de programa\HP\Digital Imaging\bin\hpqthb08.exe
Install Pending Files.LNK = C:\Archivos de programa\SIFXINST\SIFXINST.EXE
InterVideo WinCinema Manager.lnk = C:\Archivos de programa\InterVideo\Common\Bin\WinCinemaMgr.exe
ymetray.lnk = C:\Archivos de programa\Yahoo!\Yahoo! Music Jukebox\ymetray.exe

--------------------------------------------------

Checking Windows NT UserInit:

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
UserInit = C:\WINDOWS\system32\userinit.exe,

--------------------------------------------------

Autorun entries from Registry:
HKLM\Software\Microsoft\Windows\CurrentVersion\Run

SunKistEM = C:\Archivos de programa\Digital Media Reader\shwiconem.exe
RemoteControl = "C:\Archivos de programa\CyberLink\PowerDVD\PDVDServ.exe"
CHotkey = zHotkey.exe
IntelAudioStudio = "C:\Archivos de programa\Intel Audio Studio\IntelAudioStudio.exe" BOOT
IgfxTray = C:\WINDOWS\system32\igfxtray.exe
HotKeysCmds = C:\WINDOWS\system32\hkcmd.exe
Persistence = C:\WINDOWS\system32\igfxpers.exe
Share-to-Web Namespace Daemon = C:\Archivos de programa\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
MimBoot = C:\ARCHIV~1\MUSICM~1\MUSICM~1\mimboot.exe
QuickTime Task = "C:\Archivos de programa\QuickTime\qttask.exe" -atboottime
VX3000 = C:\WINDOWS\vVX3000.exe
LifeCam = "C:\Archivos de programa\Microsoft LifeCam\LifeExp.exe"
IntelliPoint = "c:\Archivos de programa\Microsoft IntelliPoint\ipoint.exe"
MMReminderService = C:\Archivos de programa\Mindjet\MindManager 6\MMReminderService.exe
Acrobat Assistant 8.0 = "C:\Archivos de programa\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe"
GrooveMonitor = "C:\Archivos de programa\Microsoft Office\Office12\GrooveMonitor.exe"
TkBellExe = "C:\Archivos de programa\Archivos comunes\Real\Update_OB\realsched.exe" -osboot
NeroFilterCheck = C:\Archivos de programa\Archivos comunes\Nero\Lib\NeroCheck.exe
SecurDisc = C:\Archivos de programa\Nero\Nero8\InCD\NBHGui.exe
InCD = C:\Archivos de programa\Nero\Nero8\InCD\InCD.exe
NBKeyScan = "C:\Archivos de programa\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
UfSeAgnt.exe = "C:\Archivos de programa\Trend Micro\Internet Security\UfSeAgnt.exe"
HP Software Update = C:\Archivos de programa\HP\HP Software Update\HPWuSchd2.exe
ToolBoxFX = "C:\Archivos de programa\HP\ToolBoxFX\bin\HPTLBXFX.exe" /enum:on /alerts:on /systrayIcon:on
(Default) =
HPUsageTracking = "C:\Archivos de programa\HP\HP UT\bin\hppusg.exe" "C:\Archivos de programa\HP\HP UT\"
RegistryMechanic =

--------------------------------------------------

Autorun entries from Registry:
HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce

AOLRebootNeeded = regsvr32.exe /s

--------------------------------------------------

Autorun entries from Registry:
HKCU\Software\Microsoft\Windows\CurrentVersion\Run

ctfmon.exe = C:\WINDOWS\system32\ctfmon.exe
pdfSaver3 = "C:\Archivos de programa\Tracker Software\PDF-XChange 3\pdfSaver\pdfSaver3.exe"
OE = "C:\Archivos de programa\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe"
TrendSecure Remote File Lock = C:\Archivos de programa\Trend Micro\TrendSecure\RemoteFileLock\FLMain.exe
WMPNSCFG = C:\Archivos de programa\Windows Media Player\WMPNSCFG.exe

--------------------------------------------------

File association entry for .SCR:
HKEY_CLASSES_ROOT\AutoCADScriptFile\shell\open\command

(Default) = "C:\WINDOWS\system32\notepad.exe" "%1"

--------------------------------------------------

Shell & screensaver key from C:\WINDOWS\SYSTEM.INI:

Shell=*INI section not found*
SCRNSAVE.EXE=*INI section not found*
drivers=*INI section not found*

Shell & screensaver key from Registry:

Shell=Explorer.exe
SCRNSAVE.EXE=C:\WINDOWS\system32\logon.scr
drivers=*Registry value not found*

Policies Shell key:

HKCU\..\Policies: Shell=*Registry key not found*
HKLM\..\Policies: Shell=*Registry value not found*

--------------------------------------------------


Enumerating Browser Helper Objects:

(no name) - (no file) - {02478D38-C3F9-4EFB-9B51-7695ECA05670}
(no name) - C:\Archivos de programa\Archivos comunes\Adobe\Acrobat\ActiveX\AcroIEHelper.dll - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}
SWEETIE - blank (file missing) - {1A0AADCD-3A72-4b5f-900F-E3BB5A838E2A}
Yahoo! IE Suggest - C:\Archivos de programa\Yahoo!\Search\YSearchSuggest.dll - {5A263CF7-56A6-4D68-A8CF-345BE45BC911}
(no name) - C:\Archivos de programa\Yahoo!\Common\yiesrvc.dll - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897}
(no name) - C:\ARCHIV~1\MICROS~3\Office12\GRA8E1~1.DLL - {72853161-30C5-4D22-B7F9-0BBC1D38A37E}
(no name) - (no file) - {7E853D72-626A-48EC-A868-BA8D5E23E045}
(no name) - C:\Archivos de programa\Archivos comunes\Microsoft Shared\Windows Live\WindowsLiveLogin.dll - {9030D464-4C02-4ABF-8ECC-5164760863C6}
(no name) - C:\Archivos de programa\Mindjet\MindManager 6\Mm6InternetExplorer.dll - {AC41D38F-B56D-40AD-94E0-B493D130C959}
(no name) - C:\Archivos de programa\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll - {AE7CD045-E861-484f-8273-0445EE161910}
(no name) - C:\Archivos de programa\Windows Live Toolbar\msntb.dll - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0}
TransactionProtector BHO - C:\Archivos de programa\Trend Micro\TrendSecure\TransactionProtector\TSToolbar.dll - {C1656CCA-D2EA-4A32-94AE-AE0B180E6449}

--------------------------------------------------

Enumerating Task Scheduler jobs:

Check Updates for Windows Live Toolbar.job
User_Feed_Synchronization-{94015C7E-30BA-4FB7-8504-7038C93F181A}.job

--------------------------------------------------

Enumerating Download Program Files:

[QuickTime Object]
InProcServer32 = C:\Archivos de programa\QuickTime\QTPlugin.ocx
CODEBASE = http://a1540.g.akamai.net/7/1540/52/200609...ex/qtplugin.cab

[StagingUI Object]
InProcServer32 = C:\WINDOWS\Downloaded Program Files\StagingUI.ocx
CODEBASE = http://zone.msn.com/binFrameWork/v10/StagingUI.cab55579.cab

[Shockwave ActiveX Control]
InProcServer32 = C:\WINDOWS\system32\macromed\Director\SwDir.dll
CODEBASE = http://fpdownload.macromedia.com/get/shock...director/sw.cab

[TmHcmsX Control]
InProcServer32 = C:\WINDOWS\DOWNLO~1\TmHcmsX.ocx
CODEBASE = http://www.trendsecure.com/framework/contr...vex/TmHcmsX.CAB

[Trend Micro ActiveX Scan Agent 6.6]
InProcServer32 = C:\WINDOWS\Downloaded Program Files\Housecall_ActiveX.dll
CODEBASE = http://housecall65.trendmicro.com/housecal...ivex/hcImpl.cab

[Installation Support]
InProcServer32 = C:\Archivos de programa\Yahoo!\Common\Yinsthelper.dll
CODEBASE = C:\Archivos de programa\Yahoo!\Common\Yinsthelper.dll

[MSN Games – Buddy Invite]
InProcServer32 = C:\WINDOWS\Downloaded Program Files\ZBuddy.ocx
CODEBASE = http://zone.msn.com/BinFrameWork/v10/ZBuddy.cab55579.cab

[Office Update Installation Engine]
InProcServer32 = C:\WINDOWS\opuc.dll
CODEBASE = http://office.microsoft.com/officeupdate/content/opuc3.cab

[MSN Photo Upload Tool]
InProcServer32 = C:\WINDOWS\Downloaded Program Files\MsnPUpld.dll
CODEBASE = http://chapita1989unitedstates.spaces.live...ad/MsnPUpld.cab

[ZonePAChat Object]
InProcServer32 = C:\WINDOWS\Downloaded Program Files\ZPAChat.ocx
CODEBASE = http://zone.msn.com/binframework/v10/ZPAChat.cab55579.cab

[MessengerStatsClient Class]
InProcServer32 = C:\WINDOWS\Downloaded Program Files\messengerstatsclient.dll
CODEBASE = http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab

[{8FFBE65D-2C9C-4669-84BD-5829DC0B603C}]
CODEBASE = http://fpdownload.macromedia.com/get/flash...t/ultrashim.cab

[TSEasyInstallX Control]
InProcServer32 = C:\WINDOWS\DOWNLO~1\TSEASY~1.OCX
CODEBASE = http://www.trendsecure.com/easy_install/_a...asyInstallX.CAB

[MSN Games - Installer]
InProcServer32 = C:\WINDOWS\Downloaded Program Files\ZIntro.ocx
CODEBASE = http://cdn2.zone.msn.com/binFramework/v10/...ro.cab56649.cab

[MessengerStatsClient Class]
InProcServer32 = C:\WINDOWS\Downloaded Program Files\MessengerStatsPAClient.dll
CODEBASE = http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab

[CBankshotZoneCtrl Class]
InProcServer32 = C:\WINDOWS\Downloaded Program Files\zpa_pool.dll
CODEBASE = http://zone.msn.com/bingame/zpagames/zpa_pool.cab56649.cab

[Shockwave Flash Object]
InProcServer32 = C:\WINDOWS\system32\Macromed\Flash\Flash9d.ocx
CODEBASE = http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab

[MSN Games – Game Communicator]
InProcServer32 = C:\WINDOWS\Downloaded Program Files\StProxy.dll
CODEBASE = http://zone.msn.com/binframework/v10/StProxy.cab55579.cab

[{FFFFFFFF-CAFE-BABE-BABE-00AA0055595A}]
CODEBASE = http://www.networksolutionsemailpopwizard....rueSwitchEC.exe

--------------------------------------------------

Enumerating Windows NT logon/logoff scripts:
*No scripts set to run*

Windows NT checkdisk command:
BootExecute = autocheck autochk *

Windows NT 'Wininit.ini':
PendingFileRenameOperations: C:\DOCUME~1\pancho\CONFIG~1\Temp\A~NSISu_.exe||C:\Archivos de programa\Archivos comunes\AOL\||C:\DOCUME~1\pancho\CONFIG~1\Temp\B~NSISu_.exe||C:\DOCUME~1\pancho\CONFIG~1\Temp\C~NSISu_.exe||C:\DOCUME~1\pancho\CONFIG~1\Temp\nsf24.tmp\utility.dll||C:\DOCUME~1\pancho\CONFIG~1\Temp\nsf24.tmp\||C:\DOCUME~1\pancho\CONFIG~1\Temp\B~NSISu_.exe||C:\DOCUME~1\pancho\CONFIG~1\Temp\nsf2D.tmp\utility.dll||C:\DOCUME~1\pancho\CONFIG~1\Temp\nsf2D.tmp\||C:\DOCUME~1\pancho\CONFIG~1\Temp\B~NSISu_.exe||C:\Config.Msi\1d5f8.rbf||C:\Config.Msi\1d5f9.rbf||C:\Config.Msi\1d5fc.rbf||C:\Config.Msi\1d600.rbf||C:\Config.Msi\1d601.rbf||C:\Config.Msi\1d602.rbf||C:\Config.Msi\1d603.rbf||C:\Config.Msi\1d604.rbf||C:\Config.Msi\1d606.rbf||C:\Config.Msi\1d619.rbf||C:\Config.Msi\1d61a.rbf


--------------------------------------------------

Enumerating ShellServiceObjectDelayLoad items:

PostBootReminder: C:\WINDOWS\system32\SHELL32.dll
CDBurn: C:\WINDOWS\system32\SHELL32.dll
WebCheck: C:\WINDOWS\system32\webcheck.dll
SysTray: C:\WINDOWS\system32\stobject.dll
WPDShServiceObj: C:\WINDOWS\system32\WPDShServiceObj.dll

--------------------------------------------------
End of report, 15,488 bytes
Report generated in 0.188 seconds

Command line options:
/verbose - to add additional info on each section
/complete - to include empty sections and unsuspicious data
/full - to include several rarely-important sections
/force9x - to include Win9x-only startups even if running on WinNT
/forcent - to include WinNT-only startups even if running on Win9x
/forceall - to include all Win9x and WinNT startups, regardless of platform
/history - to list version history only

BC AdBot (Login to Remove)

 


m

#2 Papakid

Papakid

    Guru at being a Newbie


  • Malware Response Team
  • 6,522 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:05:57 PM

Posted 04 January 2008 - 10:53 AM

Hi Pancho5428,

Our apologies for the delay--we are really swamped lately. If you still require help, please post a new fresh log so I can see if anything has changed and please describe what is happening now.

If you have not done so already, please do the initial cleanup steps in the following instructions before posting your new log: Preparation Guide For Use Before Posting A Hijackthis Log

Please read over the instructions there for posting a normal log--what you have posted is a Startup list.

Also open HijackThis.

If you still have the New Users Quickstart screen enabled, click Open Misc Tools Section.
If you just have the regular opening screen, click the Config... button then the Misc Tools button.

Now click the Open Uninstall Manager button, then the Save List button. Save the list somewhere convenient like My Documents and then the list will open in Notepad. Copy and Paste that list into your next reply to this post.

I do however, think that the problem you have described is an issue with Hewlitt-Packard's software rather than any malware. Please be advised that HijackThis and this forum are intended for malware removal only, not for general diagnosis of every problem you may experience on your computer. If, after you have done the precleaning and there is no indication of a malware problem, you can get better and quicker help by posting in the Windows XP Home and Professional or
Hardware forums.

If it were me, I would contact HP support. Their software is very complex, even if you just have a printer by them. Several known issues can be found on their web site.

The fate of all mankind, I see

Is in the hands of fools

--King Crimson





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users