Printer Friendly

Trend Micro Protects Against New PrettyPark Trojan Worm; New Auto-Email Trojan Can Steal User Password and System Information -- Protection Available Now at

CUPERTINO, Calif.--(BUSINESS WIRE)--June 4, 1999--

Trend Micro Inc., the leader in centrally managed virus protection, has developed a protection against a new auto-email worm, PE_Pretty Park, that can steel computer users' passwords and system information.

The new virus, which is spreading through Europe and is expected to enter the United States, was discovered by Trend Micro's technical support team in France. Called PE_PrettyPark or Trojan.PSW.CHV, the new virus appears as a PrettyPark utility attached to email. It is a backdoor/password stealing Trojan that emails itself automatically to addresses found in the user's Outlook Address Book and sends information back to the virus writer via IRC, an Internet chat protocol.

To protect against the new virus, computer users will need to have an antivirus solution that has been updated to protect against PrettyPark. Trend Micro customers can download pattern file No. 538 to ensure they are protected. Concerned computer users can also surf to and use HouseCall(TM), Trend Micro's free Internet virus scanning service to detect and remove the malicious worm from their system.

The subject field of email messages carrying PrettyPark reads: C:\CoolProgs\PrettyPark.exe and the message itself contains only the attached copy of the infected executable file. Unlike a traditional virus which self replicates, PrettyPark is technically a "worm" that copies itself from computer to computer. PrettyPark attempts to use email to spread. The worm installs itself into the user's system and then attempts to forward emails with its attached copy to addresses listed in the Microsoft Outlook Address Book. Users can also spread the worm by innocently forwarding the infected email attachment to another user. Trend Micro has not been able to confirm the auto-email function of this worm.

After attempting to spread itself via email, PrettyPark will attempt to send critical system information back to the virus writer using IRC chat. This information can include Internet access passwords and telephone numbers, remote access service login names (RAS) and passwords, ICQ numbers, remote host system configuration and directory information.

"The danger inherent in this worm is that it creates a back door to your computer by taking passwords from your system and sending them back to the worm's author," said Dan Schrader, director of new technology at Trend Micro. "Hopefully, the auto-email aspect of the virus is malfunctioning, preventing it from spreading as quickly as the author intended." Schrader also stated that this type of virus demonstrates the need to add "virus wall" security at the firewall, to prevent malicious code like PrettyPark from entering organizations.

More information about PE_PrettyPark can be obtained from Trend's Web site at

About Trend Micro

Trend Micro provides centrally controlled server-based virus and malicious code protection. By protecting information that flows through file servers, e-mail servers and Internet gateways, Trend Micro helps major companies worldwide stop viruses and other malicious code from a central point before they ever reach the desktop.

Trend Micro's award-winning products have been chosen by Check Point Software Technologies, Hewlett-Packard, IBM, ISS, Lotus, Lucent Technologies, Microsoft, Netscape, Oracle, Pilot, Sun Microsystems and Wingra as a key part of their server security solutions.

Trend Micro is publicly held in Japan, with North American headquarters in Cupertino, Calif., and offices worldwide. Trend Micro's products are sold through a network of corporate and value-added resellers.

Evaluation copies of all of Trend Micro's products may be downloaded from its award-winning site, Web site visitors may also test-drive products online through Trend Micro's Virtual Lab.

Note to Editors: InterScan and VirusWall are registered trademarks of Trend Micro, Incorporated. HouseCall is a trademark of Trend Micro Incorporated. Other product and company names may be trademarks of their respective owners.
COPYRIGHT 1999 Business Wire
No portion of this article can be reproduced without the express written permission from the copyright holder.
Copyright 1999, Gale Group. All rights reserved. Gale Group is a Thomson Corporation Company.

Article Details
Printer friendly Cite/link Email Feedback
Publication:Business Wire
Geographic Code:1USA
Date:Jun 7, 1999
Previous Article:AVT Corporation Files Self Registration Statement.
Next Article:Christopher Thomas Resigns as Sizzler USA President.

Related Articles
Bugged by viruses?
Klez worm most prolific virus of year. (Virus Notes).
Peeping Tom webcam worm created by virus writers.
Kaspersky lab virus Top 20, February 2005.
"Malware evolution: January - March 2005".
Internet Security 2006 also spyware 2006.
Ransom Trojan horse demands money with menaces.
Sophos security threat management report: update July 2006.
Spyware--the hidden threat to business security.
2006 annual threat round-up and 2007 forecast: a special report by Trend Micro- December 2006 David Sancho, threat specialist Jamz Yaneza, senior...

Terms of use | Copyright © 2018 Farlex, Inc. | Feedback | For webmasters