VIRUS ALERT
July 14, 2003
HIGH

Panda Virus Alert - LoHack.B Worm

[pic] New Lohack.B worm reaches computers WITH e-mail that APPEARS TO BE SENT BY Panda Software FOR IMMEDIATE RELEASE GLENDALE, CA – July 15, 2003 – Panda Software’s Virus Laboratory has detected the appearance of a new mass-mailing worm called Lohack.B. This malicious code uses so-called social engineering, as, for example, it tricks users into thinking that the message has been sent from trustworthy sources, for example a friend or the multinational antivirus manufacturer Panda Software. It is also capable of exploiting a known vulnerability in the Microsoft browser Internet Explorer in order to run automatically when the message carrying the worm is viewed through the preview pane. Lohack.B reaches computers in an e-mail message, which is always in Spanish, with the following characteristics: Sender: - Ministerio de Ciencia y Tecnologia [[email protected]] - Panda Antivirus [[email protected]] Subject: The many possible subjects include: - Información sobre la LSSICE - Información sobre la LSSICE y sus consecuencias - Nuestras libertades en internet en peligro - FW:AVISO IMPORTANTE: un nuevo virus llamado LSSICE aparece en internet - FW:CAMPAÑA de información sobre la LSSICE Message: One of the possible texts is: AVISO URGENTE PandaSoftware Antivirus acaba de publicar su última herramienta para remover el gusano hop.a Esta herramienta no solo remueve de su sistema el gusano/virus si es encontrado, sino que le protege de posibles infecciones futuras. The file attached to this message, which contains Lohack.B, always has an exe or scr extension. The tech support services at Panda Software have not yet received incidents involving this worm, however, it is advisable to treat all e-mails received with caution. About Panda Software Panda Software (http://www.pandasoftware.com) is the first company to allow truly automatic daily signature updates, as well as centralized administration of antivirus protection, both of which have revolutionized the antivirus industry. On receiving a possibly infected file, Panda Software's technical staff immediately analyze to determine the threat potential. Depending on the type, the action taken may include: disassembly, macro scanning, code analysis etc. If the file does in fact contain a new virus, the disinfection and detection routines are prepared and quickly distributed to users Panda Software is known for its user-friendly policies, including free telephone support for corporate customers, expanded competitive renewal programs and free disinfection services. All of its products feature exclusive SmartClean™ technology and are endorsed by major industry watchdogs including ICSA Labs and Checkmark. # # # FOR MORE INFORMATION: Alan Wallace Panda Software VP, Corporate Communications & Public Relations USA www.pandasecurity.com

Original source: panda-us-virusalert-2003-07-15-LOHACK.BWORM.doc