/ Sign-up
Your question

Runtime Error 216 at 004045a6

  • Security
  • Runtime
  • Windows 7
Last response: in Windows 7
March 2, 2012 8:12:02 PM

Hi, I've just started getting the message 'Runtime Error 216 at 004045a6' whenever I try to open a program called mp3 book helper. The program ran fine yesterday. This morning, however, before I'd had my coffee and so wasn't thinking straight, I clicked on a link in an email from a friend, an email that turned out to be from someone who'd hijacked my friend's computer. Anyway, I have run a full antimalwarebytes scan, and it found nothing. Because Runtime Error 216 has been associated with the Sub7 trojan, I'm a bit nervous and am wondering what else I should do to confirm that I either do or do not have a virus somewhere on my computer. Thanks in advance for any suggestions! I am running Windows 7 Home Premium 64, by the way.

More about : runtime error 216 004045a6

March 2, 2012 9:40:42 PM

Thanks! I should have mentioned that I tried that already. I ran system restore for a point 2 days ago, and I did a registry clean with Advanced System Care (and just now with CCleaner, as you suggested). I still get the error message, unfortunately.
Related resources
Can't find your answer ? Ask !
a b 8 Security
a b $ Windows 7
March 2, 2012 9:55:18 PM

is it only that program that gives the error?

if so uninstall and re-install it if you havent already
March 2, 2012 10:12:37 PM

I've tried that, too. So far it is the only program that gives me the error. It worked correctly yesterday, and it runs just fine on my other Windows 7 computer. It's a program that I use fairly frequently. I can live without it, but I'm really worried about is that the 216 error means I've got some sort of trojan infecting my computer. So far though, no scans have picked up anything that does not belong.
a b 8 Security
a b $ Windows 7
March 2, 2012 10:19:40 PM

yeah that error can be down to a trojan

what else have you scanned with other than malwarebytes--which is a good program

how about spybot search and destroy?

have also seen people use this software which generates a log to look at--some one may be able to help if the

log file shows something suspicious
March 2, 2012 10:24:54 PM

I'm running a scan now with Microsoft Security Essentials. I previously did a scan with something called Super AntiSpyware, which was recommended at another site. I haven't tried hijackthis yet. I'll download it now. Thanks for the suggestions!
a b 8 Security
a b $ Windows 7
March 2, 2012 10:32:12 PM

no problem

hijack this can make a log file which you can post here if need be

might be beyond me to read it but some one here will know what to look for in it
March 2, 2012 10:44:54 PM

Here is my HijackThis logfile:

  1. Logfile of Trend Micro HijackThis v2.0.4
  2. Scan saved at 4:37:55 PM, on 3/2/2012
  3. Platform: Windows 7 SP1 (WinNT 6.00.3505)
  4. MSIE: Internet Explorer v9.00 (9.00.8112.16421)
  5. Boot mode: Normal
  7. Running processes:
  8. C:\Program Files (x86)\HP SimplePass 2011\TouchControl.exe
  9. C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe
  10. C:\Program Files (x86)\HP SimplePass 2011\BioMonitor.exe
  11. C:\Program Files (x86)\Hewlett-Packard\HP Odometer\hpsysdrv.exe
  12. C:\Users\quartet1977\AppData\Roaming\Google\Google Talk\googletalk.exe
  13. C:\Program Files (x86)\uTorrent\uTorrent.exe
  14. C:\Steam\Steam.exe
  15. C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqtra08.exe
  16. C:\Program Files (x86)\Stardock\ObjectDockFree\ObjectDock.exe
  17. C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
  18. C:\Program Files (x86)\iTunes\iTunesHelper.exe
  19. C:\Program Files (x86)\Hp\HP Software Update\hpwuschd2.exe
  20. C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
  21. C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe
  22. C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe
  23. C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe
  24. C:\Windows\SysWOW64\Macromed\Flash\FlashUtil11f_ActiveX.exe
  25. C:\Program Files (x86)\iTunes\iTunes.exe
  26. C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceHelper.exe
  27. C:\Program Files (x86)\Common Files\Apple\Apple Application Support\distnoted.exe
  28. C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
  29. C:\Program Files (x86)\Internet Explorer\iexplore.exe
  30. C:\Program Files (x86)\Internet Explorer\iexplore.exe
  31. C:\Program Files (x86)\Internet Explorer\iexplore.exe
  32. C:\Program Files (x86)\Internet Explorer\iexplore.exe
  33. C:\Program Files (x86)\Internet Explorer\iexplore.exe
  34. C:\Users\quartet1977\Desktop\HijackThis.exe
  36. R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
  37. R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
  38. R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
  39. R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
  40. R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
  41. R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
  42. R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
  43. R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
  44. R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
  45. R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
  46. F2 - REG:system.ini: UserInit=userinit.exe
  47. O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
  48. O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
  49. O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
  50. O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll
  51. O2 - BHO: TSBHO Class - {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} - C:\Program Files (x86)\HP SimplePass 2011\IEBHO.dll
  52. O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
  53. O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
  54. O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
  55. O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
  56. O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
  57. O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
  58. O4 - HKLM\..\Run: [amd_dc_opt] C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe
  59. O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
  60. O4 - HKLM\..\Run: [VirtualCloneDrive] "C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
  61. O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
  62. O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
  63. O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
  64. O4 - HKCU\..\Run: [googletalk] C:\Users\quartet1977\AppData\Roaming\Google\Google Talk\googletalk.exe /autostart
  65. O4 - HKCU\..\Run: [uTorrent] "C:\Program Files (x86)\uTorrent\uTorrent.exe" /MINIMIZED
  66. O4 - HKCU\..\Run: [Advanced SystemCare 5] "C:\Program Files (x86)\IObit\Advanced SystemCare 5\ASCTray.exe" /Manual
  67. O4 - HKCU\..\Run: [Steam] "C:\Steam\steam.exe" -silent
  68. O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
  69. O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
  70. O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
  71. O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
  72. O4 - HKUS\S-1-5-21-2339302458-273949380-3351493025-1011\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
  73. O4 - HKUS\S-1-5-21-2339302458-273949380-3351493025-1011\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
  74. O4 - Startup: OneNote 2010 Screen Clipper and Launcher.lnk = C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
  75. O4 - Startup: Stardock ObjectDock.lnk = C:\Program Files (x86)\Stardock\ObjectDockFree\ObjectDock.exe
  76. O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files (x86)\Hp\Digital Imaging\bin\hpqtra08.exe
  77. O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
  78. O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
  79. O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
  80. O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
  81. O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
  82. O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
  83. O9 - Extra button: Add to Wish List - {76c5fb99-dd0a-4186-9e75-65d1bf3da283} - C:\Program Files (x86)\Amazon\Add to Wish List IE Extension\run.htm
  84. O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
  85. O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
  86. O9 - Extra button: Show or hide HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
  87. O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
  88. O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
  89. O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
  90. O15 - Trusted Zone: http://*
  91. O15 - Trusted Zone: http://*
  92. O15 - Trusted Zone: http://*
  93. O15 - Trusted Zone: http://*
  94. O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} (System Requirements Lab) -
  95. O16 - DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} (GMNRev Class) -
  96. O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
  97. O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
  98. O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
  99. O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
  100. O23 - Service: Advanced SystemCare Service 5 (AdvancedSystemCareService5) - IObit - C:\Program Files (x86)\IObit\Advanced SystemCare 5\ASCService.exe
  101. O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Program Files\IDT\WDM\AESTSr64.exe
  102. O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
  103. O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
  104. O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
  105. O23 - Service: @%systemroot%\system32\CISVC.EXE,-1 (CISVC) - Unknown owner - C:\Windows\system32\CISVC.EXE (file missing)
  106. O23 - Service: Dragon Age: Origins - Content Updater (DAUpdaterSvc) - BioWare - C:\Program Files (x86)\Dragon Age\bin_ship\DAUpdaterSvc.Service.exe
  107. O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
  108. O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
  109. O23 - Service: TrueSuiteService (FPLService) - HP - C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe
  110. O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
  111. O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
  112. O23 - Service: HP Client Services (HPClientSvc) - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
  113. O23 - Service: HP Quick Synchronization Service (HPDrvMntSvc.exe) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
  114. O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
  115. O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
  116. O23 - Service: Intel(R) Identity Protection Technology Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe
  117. O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
  118. O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
  119. O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
  120. O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
  121. O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
  122. O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files (x86)\PDF Complete\pdfsvc.exe
  123. O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
  124. O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
  125. O23 - Service: RoxioNow Service - Roxio - C:\Program Files (x86)\Roxio\RoxioNow Player\RNowSvc.exe
  126. O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
  127. O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
  128. O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
  129. O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
  130. O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10101 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
  131. O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
  132. O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
  133. O23 - Service: STSService - Unknown owner - C:\Program Files (x86)\SoundTaxi Media Suite\STSService.exe
  134. O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
  135. O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
  136. O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
  137. O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
  138. O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
  139. O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
  140. O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
  141. O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
  143. --
  144. End of file - 14731 bytes
a b 8 Security
a b $ Windows 7
March 2, 2012 10:51:15 PM

might be a bit too much for my brain as its 1 am :D 

but some one will come along who knows what it all means

March 2, 2012 11:01:53 PM

Thanks for your suggestions! Enjoy your weekend. I will as soon as I get this problem sorted out!
a b $ Windows 7
March 2, 2012 11:56:23 PM

malwarebytes should catch and clean this error as its more often than not caused by a trojan. it does pop occasional with non M.S compatible mice but i guess your mouse drivers are fine. so i would look at the infection side of things.

i also notice you have a lot of security risks on your pc. things like java running as browser helper objects. its ok to have java on your machine but it does pose a threat when its allowed to attach to your browser... if you use firefox then make sure you run no script and turn off auto run scripts in the browsers options.

you also have stardock which is a well known inroad for trojans especaily adware downloaders my guess is thats where your infection stems from...
spooler and things like hp remote printing should be disabled if you dont have a home network and you print directly from your pc. all remote access should be disabled for that matter.
itunes and other things need to be removed from startup and there servises set to manual... seriously m8 your pc is a walking disaster as far as security is concerned... i also dont see any antivirus all i see ith the piece of crap adv system card by iobit... a program that has been know to be issued with other companies detection libraries... its is a pants antimalware app that should be replaced asap...
avira and malwarebytes are 2 great free apps that will give you much better protection.
March 3, 2012 1:44:07 PM

Thanks for your suggestions. I do have Microsoft Security Essentials running, so I do have antivirus protection. As for my current problem, I booted in safe mode with networking and ran the following: malwarebytes, super antispyware, microsoft's malicious software removal tool, and spybot search and destroy. None of them found anything. Other than following your tips about removing items from my startup, which I'll do with CCleaner, is there anything else you suggest for the Runtime Error 216 message that I've been getting? Thank you again!