Discussion in 'spyware news and general information' started by Pieter_Arntz, Oct 27, 2004.

Thread Status:
Not open for further replies.
  1. Pieter_Arntz

    Pieter_Arntz Spyware Veteran

    Apr 27, 2002
    The hijacker itself can be removed simply with HijackThis or uninstalling SBSoft in Add/Remove Programs. However, people with Norton and other antivirus software still might experience the software detecting IWantSearch files, specifically rundlg32.dll. This file is located in the C:WINDOWS\Downloaded Program Files folder. Unfortunately, the file is hidden from normal view even with super hidden files enabled.

    The Object Control Viewer, occache.dll, needs to be unregistered. Then rundlg32.dll needs to be deleted in Safe Mode. Finally, occache.dll needs to be registered again.

    Here is a canned speech for it:


    Start | Run
    Paste in this command and press enter:

    regsvr32 /u occache.dll

    Boot into Safe Mode:
    Restart your computer and as soon as it starts booting up again continuously tap F8. A menu should come up where you will be given the option to enter Safe Mode.
    To get back to normal mode just restart the computer as you normally would.

    Now go to the C:\WINDOWS\Downloaded Program Files Folder and find the rundlg32.dll file and delete it .

    When you finish go back to:
    Start | Run
    Paste in this command:

    regsvr32 occache.dll


    Credits to LineOFire
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.