Drive-by Exploit Plants Trojans onto Fully Patched Windows Systems Running IE

Drive-by Exploit Plants Trojans onto Fully Patched Windows Systems Running IE

Written By
Lisa Vaas
Lisa Vaas
Mar 29, 2007
1 minute read
eWeek content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More

McAfee’s Avert Labs have discovered a drive-by exploit on the Web that preys on fully patched Windows XP SP2 systems running IE 6 and 7 browsers. In preliminary tests, McAfee found that the IE/XP systems proved vulnerable to an attack that delivers a Trojan download in complete silence.

McAfee Avert Labs said on its site on Wednesday that its researchers had discovered the exploit posted to a message board. The posting described a proof of concept, but McAfee Avert Labs have since also received a malicious sample. “It is quite likely that similar exploits targeting this vulnerability are currently being used in other attacks on the web,” according to the Labs.

McAfee so far hasn’t found Windows XP SP0 or SP1 to be vulnerable. Firefox 2.0 is also bearing up to the attack.

The vulnerability lies in the handling of malformed Windows animated cursor (.ani) files. The Avert Labs suggests that this vulnerability is reminiscent of a Microsoft security bulletin that went out in January 2005, MS05-002. In that instance, many versions of Windows were found to be critically vulnerable to remote code execution due to a problem with cursor and icon format handling.

McAfee hasn’t offered any workaround to the unpatched vulnerability, although it does rate it as being of low risk to home or corporate users. The Avert Labs are tracking the exploit and will post more information as they find it.

eWeek Logo

eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site's focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

Property of TechnologyAdvice. © 2026 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.