View Single Post
Old 3rd June 2004, 19:30   #57
DJ Egg
Winamp & SHOUTcast Team
Join Date: Jun 2000
Posts: 35,821

1) Print out these instructions
Close all browser and Windows Explorer windows

2) Open the Task Manager (right click Taskbar, or Ctrl+Alt+Del)
Go to the Processes tab and end process for both instances of


Note: both "DPF" and "DOWNLO~1" stand for:
"Downloaded Program Files"

3) Run HJT again, click "Scan"
Checkmark the following items in HJT, then click "Fix checked"

O4 - HKLM\..\Run: [winhlp32.exe] C:\WINDOWS\DOWNLO~1\winhlp32.exe

O16 - DPF: {6C31790D-1EDF-4B05-83DC-925B3A8E2318} (Reactivator Class) -

4) Now go to "C:\Windows\Downloaded Program Files"
and, if it's still there,
make sure the Winhlp32 Reactivator Class file is deleted.

5) Reboot

Now run SpybotSD scan

Further steps and protection info can be found in my post above.

btw, there was one other entry in your HJT log that I wasn't sure about:

O16 - DPF: {31B7EB4E-8B4B-11D1-A789-00A0CC6651A8} (Cult3D ActiveX Player) -

If you know this to be 100% safe, then fine,
otherwise have HJT fix this entry as well.
DJ Egg is offline