CastleCops® Network
--------------------
About CastleCops
Become Premium
Our Sponsors
--------------------
CastleCops
CastleCops Blog
CastleCops Deutsch
CastleCops Hashes
CastleCops Mirrors
CastleCops Wiki
PIRT Squad
--------------------
Malware Removal & Prevention
How did I get infected?
Unknown file uploads
UDRP
--------------------
R3 URL SearchHook
O2/O3 BHOs/Toolbars
O4 Startups
O9 Internet Explorer Buttons
O10 LSPs
O16 ActiveX
O18 Protocol Hijackers
O20 AppInit_DLLs
O21 ShellServiceObjectDelayLoad
O22 Shared Task Scheduler
O23 XP/NT Services
--------------------
Need help
? Click
here
to register for free!
Absolutely zero advertisements on this site
!
ActiveX Objects (Downloaded Program Files) aka O16
Currently 1652 activex entries and growing...
Last updated on 2008-06-26 13:28:20 Eastern.
CastleCops ActiveX List AKA O16 List. Gargantuan thanks to Daemon for letting us insert 1,097 of his entries on 24 Jul 2005.
KEY:
"L" - Legitimate
"O" - Open to debate
"U" - User's choice - depends whether a user deems it necessary
"X" - Definitely not required - typically viruses, spyware, adware and "resource hogs"
"?" - Unknown
ABC List:
A
-
B
-
C
-
D
-
E
-
F
-
G
-
H
-
I
-
J
-
K
-
L
-
M
-
N
-
O
-
P
-
Q
-
R
-
S
-
T
-
U
-
V
-
W
-
X
-
Y
-
Z
Select ActiveX Range
--------------------
[
0-24
]
0-24
[
25-49
]
25-49
[
50-74
]
50-74
[
75-99
]
75-99
[
100-124
]
100-124
[
125-149
]
125-149
[
150-174
]
150-174
[
175-199
]
175-199
[
200-224
]
200-224
[
225-249
]
225-249
[
250-274
]
250-274
[
275-299
]
275-299
[
300-324
]
300-324
[
325-349
]
325-349
[
350-374
]
350-374
[
375-399
]
375-399
[
400-424
]
400-424
[
425-449
]
425-449
[
450-474
]
450-474
[
475-499
]
475-499
[
500-524
]
500-524
[
525-549
]
525-549
[
550-574
]
550-574
[
575-599
]
575-599
[
600-624
]
600-624
[
625-649
]
625-649
[
650-674
]
650-674
[
675-699
]
675-699
[
700-724
]
700-724
[
725-749
]
725-749
[
750-774
]
750-774
[
775-799
]
775-799
[
800-824
]
800-824
[
825-849
]
825-849
[
850-874
]
850-874
[
875-899
]
875-899
[
900-924
]
900-924
[
925-949
]
925-949
[
950-974
]
950-974
[
975-999
]
975-999
[
1000-1024
]
1000-1024
[
1025-1049
]
1025-1049
[
1050-1074
]
1050-1074
[
1075-1099
]
1075-1099
[
1100-1124
]
1100-1124
[
1125-1149
]
1125-1149
[
1150-1174
]
1150-1174
[
1175-1199
]
1175-1199
[
1200-1224
]
1200-1224
[
1225-1249
]
1225-1249
[
1250-1274
]
1250-1274
[
1275-1299
]
1275-1299
[
1300-1324
]
1300-1324
[
1325-1349
]
1325-1349
[
1350-1374
]
1350-1374
[
1375-1399
]
1375-1399
[
1400-1424
]
1400-1424
[
1425-1449
]
1425-1449
[
1450-1474
]
1450-1474
[
1475-1499
]
1475-1499
[
1500-1524
]
1500-1524
[
1525-1549
]
1525-1549
[
1550-1574
]
1550-1574
[
1575-1599
]
1575-1599
[
1600-1624
]
1600-1624
[
1625-1649
]
1625-1649
[
1650-1674
]
1650-1674
Name
Status
CLSID
Filename
Description
Online-Dialer
X
11BF0E2B-4229-4ADC-9C11-1C6968731018
http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453072541
Online-Dialer
X
AB1E62EB-3DE3-428F-A417-64AB3C9B6CF0
http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453072541
Online-Dialer
X
E44151C8-0C6C-4A7D-B677-4FCC9552E957
http://www3.ca.com/securityadvisor/pest/pest.aspx?id=453072541
OnlineScanner Control
L
56762DEC-6B0D-4AB4-A8AD-989993B5D08B
OnlineScanner.cab
NOD32 online scanner
OnTop.ocx
?
D8F001C6-43B1-4CFD-9DAF-C8BEAE0E2B6D
OnTop.ocx
Appears to be related to a Korean news/video website
OnWebMedia Variant
X
4C226336-4032-489F-9674-67E74225979B
identified by SpywareBlaster
OpenSiteInstall.opensite_install
X
ED2E4BB5-60EA-4624-9DE2-998E441C699B
OpenSiteInstall.CAB
ADWARE! See
Adware.OpenSite
Opinion Square - MarketScore related
X
35B7E48B-9D81-4C6C-9578-5FD4F620D886
http://www.spywareguide.com/product_show.php?id=488
)
Overclocking Software
L
1A439C04-0108-4DB6-859E-508EC337C319
http://www.cpuid.org
PaciMedia Installer
X
2F5B39C5-C6F5-447A-A946-48B382C53985
pcs_####.exe
Trojan - see
here
PaciMedia Installer
X
972BB342-14A7-4660-83C1-51DDBEE171DB
pcs_####.exe
Trojan - see
here
PaciMedia Installer
X
C0B285F6-DB2B-4908-9C58-F6D95397D747
pcs_####.exe
Trojan - see
here
PaciMedia Installer
X
EC51659D-721F-4CBF-9CEA-5E776D89CEA9
pcs_####.exe
Trojan - see
here
PaciMedia Installer
X
26098EA2-C95D-48EA-89B4-63C5A63BD42F
pcs_####.exe
Trojan - see
here
PackageHtmlCab
X
PackageHtmlCab.CAB
May be related to CoolWebSearch Parasite
Pamela Dialer
X
27DA08CF-FCDB-C812-102C-35416A233200
detected by Kaspersky
Panda ActiveScan
L
9A9307A0-7DA4-4DAF-B042-5009F29E09E1
http://www.pandasoftware.com/activescan/com/activescan_principal.htm
Parallel Graphics Cortona VRML Client
L
10B80396-96A7-11D3-B7A6-00A0C94C6AE0
http://www.parallelgraphics.com
Parallel Graphics Cortona VRML Client
L
86A88967-7A20-11D2-8EDA-00600818EDB1
http://www.parallelgraphics.com
Parisvoyeur Dialer
X
869518C3-FBA5-4D75-8A14-7047437E9498
http://www.spywareguide.com/product_show.php?id=789
Parisvoyeur Dialer
X
90D610E8-F6D0-4AD4-93CE-178A46F8C412
http://www.spywareguide.com/product_show.php?id=789
Parisvoyeur Dialer
X
B4E0F9CB-BC06-4A33-BBB3-F75F16B6FF5E
http://www.spywareguide.com/product_show.php?id=789
Payload
L
5623F093-DACE-4027-ABBE-751F5BB7878E
http://www.payload.nl
PB_Uploader Class
U
CE3409C4-9E26-4F8E-83E4-778498F9E7B4
uploader_uni.cab
Photo uploader for photobox.co.uk, a digital photo printing site
PC Powerscan
O
DC187740-46A9-11D5-A815-00B0D0428C0C
http://www.pcpowerscan.com
Ranges
[
0
] [
25
] [
50
] [
75
] [
100
] [
125
] [
150
] [
175
] [
200
] [
225
] [
250
] [
275
] [
300
] [
325
] [
350
] [
375
] [
400
] [
425
] [
450
] [
475
] [
500
] [
525
] [
550
] [
575
] [
600
] [
625
] [
650
] [
675
] [
700
] [
725
] [
750
] [
775
] [
800
] [
825
] [
850
] [
875
] [
900
] [
925
] [
950
] [
975
] [
1000
] [
1025
] [
1050
] [
1075
] [
1100
] [
1125
] [
1150
] [
1175
] [
1200
] [
1225
] [
1250
] [
1275
] [
1300
] [
1325
] [
1350
] [
1375
] [
1400
] [
1425
] [
1450
] [
1475
] [
1500
] [
1525
] [
1550
] [
1575
] [
1600
] [
1625
] [
1650
]
2002-2008 © Computer Cops LLC dba CastleCops®. All rights reserved.
Acceptable Use Policy
. Use signifies your agreement.
167ppm 0.080s (0.004s)
Making cybercriminals unhappy since 2002
*