Windows Secrets

Subscribers: Sign in

Enter your e-mail address to get a free subscription.
We guarantee your privacy
Skip to content
  • Home
  • Newsletter Archives
    • Current
    • LangaList Plus
    • Patch Watch
    • Wacky Web Week
    • Security Baseline
  • E-Books
  • Lounge
  • About us
    • Refunds
    • Privacy Policy
    • Advertise
  • Contact
  • Your Account
    • Upgrade
    • Preferences
    • Bonus Download
    • Unsubscribe
Home>Perimeter Scan>Free tool identifies unsecure ActiveX controls

Free tool identifies unsecure ActiveX controls

Tweet

Ryan russell By Ryan Russell

If you use Internet Explorer 7, some of your ActiveX controls may make your system susceptible to a drive-by browser attack.

Now you can find and disable these unsecured controls by running a free program, though you may not want to disable all of them.


The care and feeding of ActiveX killbits

When Microsoft wants to disable an ActiveX control that makes Internet Explorer vulnerable to attack, the company releases a killbit as part of a security bulletin. This TechNet article describes how killbits work by editing the Registry.

As far as I know, the standard security tools don’t check specifically for vulnerable ActiveX controls. Nor do they let you manage the killbits for them. Errata Security’s free AxBan does just that.

Errata Security is a small company founded by a couple of friends of mine, Robert Graham and David Maynor. (I have no financial interest in the company.) In addition to whatever consulting services and commercial products the company offers, it has been putting out some nice free security tools. The utilities may lack polish, but they are highly useful.

To try AxBan, simply download it to any directory and run it. There’s no installer. Click OK at the warning, and then click the ActiveX tab. Any lines in red are installed ActiveX controls that have (or at one time had) some security problem. You don’t necessarily want to killbit everything, however.

Knowing what to killbit and what not to killbit

On my Windows XP system, AxBan identified my Flash and QuickTime plug-ins as being installed and not killbitted. This is accurate. In my case, I don’t wish to killbit those players because I use them. I did make sure they’re patched, though.

This article is part of our paid content. Subscribe.

Already a paid subscriber? Click here to login.

Related posts:

  1. A Free And Useful ActiveX Diagnostic Tool
  2. Finally, real ActiveX support for Firefox and Opera
  3. Don’t let social-networking viruses bite you
  4. ActiveX buffer over-run patch
  5. Internet Explorer Security Settings
= Paid content

All Windows Secrets articles posted on 2008-07-03:

  • Top Story The DIY guide to PC troubleshooting and repair
  • Known Issues Outlook corrupts HTML to text for some readers
  • Wacky Web Week A suit you can recycle for spare change
  • Best Software From paper to searchable PDF on the cheap
  • Woody's Windows Seven uncommon keyboard shortcuts you’ll love
  • Perimeter Scan Free tool identifies unsecure ActiveX controls
  •  Show all articles on a single page
Ryan Russell

About Ryan Russell

Ryan Russell is a quality assurance manager at BigFix Inc., a configuration management company. He moderated the vuln-dev mailing list for three years under the alias "Blue Boar." He was the lead author of Hack-Proofing Your Network, 2nd Ed., and the technical editor of the Stealing the Network book series.
View all posts by Ryan Russell →
E-books

We’ve pored through years of back issues, picking the best tips, to create these ebooks:

E-book series
  • PC Maintenance Guide
  • PC Security Guide
  • Windows 7 Guide Vol 1
  • Windows 7 Guide Vol 2
  • Win XP Survival Guide
See the e-book series
Top-scoring articles in the past 12 months
  • Leaving long cookie trails throughout the Web 5.00
  • Windows-like security for Android devices 5.00
  • Win7′s no-reformat, nondestructive reinstall 4.53
  • The sorry tale of the (un)Secure Sockets Layer 4.42
  • RPV: Win7′s least-known data-protection system 4.33
  • Recovery: the last step in total data security 4.30
  • Time for a .NET update we can’t ignore 4.30
  • Getting the most from Windows Search — Part 1 4.25
  • Revising printing habits saves money and trees 4.25
  • Upgrades end in erratic, partial hangs 4.25
  • Pros and cons of a ‘keyfile’ password 4.21
  • Beating back Duku and a plethora of other threats 4.20
  • Office 2007 gets its final service pack 4.19
  • Putting Registry-/system-cleanup apps to the test 4.19
  • One year and 99 security bulletins later 4.18
  • 1.8TB external drive goes down hard 4.17
  • Don’t pay for software you don’t need — Part 3 4.16
  • Internet Explorer gets another round of patches 4.15
  • Is your free AV tool a ‘resource pig?’ 4.15
  • Vacation’s over; it’s a big round of patches 4.15
  • Remote access leads to remote attacks 4.15
  • Keeping you up to date: say no to .NET — again 4.14
  • Take control of Google’s privacy policy settings 4.14
  • Office File Validation patch leads to problems 4.14
  • The advanced system-recover toolkit 4.13
  • New “419″ scam involves PayPal and Western Union 4.12
  • Readers’ best personal-privacy tips 4.11
  • Getting the most from Windows Search — Part 2 4.11
  • Re-examining Dropbox and its alternatives 4.10
  • Easily edit Windows’ right-click context menus 4.09
Connect with us Follow us on Twitter Connect with us on Facebook View our RSS Feeds
  • Home|
  • Newsletter|
  • About Windows Secrets|
  • Advertise with us|
  • Unsubscribe|
  • Sitemap|
  • Affiliates|
Trademarks: Microsoft and Windows are registered trademarks of Microsoft Corporation. The Windows Secrets series of books is published by Wiley Publishing Inc. The Windows Secrets Newsletter, WindowsSecrets.com, WinFind, Windows Gizmos, Security Baseline, Patch Watch, Perimeter Scan, Wacky Web Week, the Logo Design (W, S or road, and Star), and the slogan Everything Microsoft Forgot to Mention all are trademarks and service marks of iNET Interactive. All other marks are the trademarks or service marks of their respective owners.
iNET Interactive Copyright © 2011 iNET Interactive.
All rights reserved.
Terms of Use  |  Privacy Policy
Internet Services
  • Web Hosting Talk
  • HostingCon
  • Hosting Catalog
  • Host Voice
Web Development
  • Hot Scripts
  • DB Forums
Digital Marketing
  • ABestWeb
  • Search Marketing Standard
  • PayPerClickUniverse
  • SEMCompare
Consumer Tech
  • Windows Secrets
  • Overclockers
  • Mac Forums

Learn more about
advertising opportunities across the iNET Interactive Network.

LiquidWeb