Encyclopedia

LoadImage

 
Threat LevelModerate threatDamageHighDistributionNot widespread
Common name:LoadImage
Technical name:Exploit/LoadImage
Threat level:Low
Type:Hacking Tool
Effects:  

It is a detection for specially crafted ANI files that attempt to exploit the vulnerability in the Cursor and Icon Format Handling.

Affected platforms:

Windows 2003/XP/2000/NT/ME/98/95

First detected on:Dec. 30, 2004
Detection updated on:Nov. 8, 2007
StatisticsNo
Yes, using TruPrevent Technologies

Brief Description 

    

LoadImage is a detection for specially crafted ANI files that attempt to exploit the vulnerability in the Cursor and Icon Format Handling, described in the Microsoft security bulletin MS05-002.

This vulnerability allows to remotely execute any piece of code on the affected computer, with the same rights as the user who opens the image or views it through the preview pane in web style folders.

If this user had administrator rights, the risk level rises, as the malicious code could carry out the same actions as the system administrator: install programs, delete or modify files, etc.

If your Panda solution detects LoadImage, it does not necessarily mean that your computer is vulnerable to LoadImage. It warns the user of the presence of a malicious ANI file.

 

If you have a Windows 2003/XP/2000/NT/Me/98 computer, it is very recommendable to visit Microsoft's official website and download and install the security patch for the Cursor and Icon Format Handling vulnerability.

Visible Symptoms 

    

LoadImage is difficult to recognize, as it does not display any messages or warnings that indicate it has reached the computer.

Last updated:  08/11/2007 

Virus News

3/10/09.-More than 10 Million Worldwide Were Actively Exposed to Identity Theft in 2008

3/5/09.-Cyber-crooks manipulate Internet searches to sell fake antivirus products

3/2/09.-VideoPlay adware infections grew 400% in February through malicious use of Web 2.0 pages

[+ Noticias]