SL-Message

SL-Message monitors running applications and processes on the remote machine.0

General information:

Malware Name: SL-Message
Malware Type: Remote Control
Company Name: Seli-Soft
Company URL: http://selisoft.com/
Threat Level: Low Risk
Operating System: WIN XP
Installation Type: Installed through EXE
Operation: Time of After Installation

Company Description:

It provides utilities for administrators that works with various web servers Microsoft Windows NT based networks Microsoft exchange. It provides us with the remote control tool SL-Message that allows us to control our network clients remotely from our desktop. It can send alert messages, manage running tasks and start new programs. It can connect and disconnect network resources on remote clients.

Spyware Description:

SL-Message monitors running applications and processes on the remote machine.0

Characteristics/Symptoms:

    -> It is a network application that allows to manage and control PCs or networks from a remote location. -> It allows to access another computer without explicit authorization. -> It can also be used to monitor and steal information from the remote computer -> Slows down the performance of PC0

Additional information might be found here:

google Search at Google for SL-Message
bing Search at Bing for SL-Message
yahoo Search at Yahoo for SL-Message

Processes Running:

SL-Send.exe

File information Created after Installation:

File Location Size (Bytes) Type
C:\Program Files\seliSoft\Message\Custom\VBS\MessageSend.vbs 4027 VBScript Script File
C:\Program Files\seliSoft\Message\PlugIns\ExternalPrograms.dll 208384 Application Extension
C:\Program Files\seliSoft\Message\Setup\ClientUpdate.ini 63 Configuration Settings

Folder information Created after Installation:

Folder Location
C:\Program Files\seliSoft\Message
C:\Program Files\seliSoft\Message\Custom

Registry information Created after Installation:

Main Registry Key Sub Registry Key Key Value Name
HKEY_LOCAL_MACHINE SOFTWAREseliSoftMessageListen UseSBW
HKEY_LOCAL_MACHINE SOFTWAREseliSoftMessageListen UserWindow
HKEY_LOCAL_MACHINE SOFTWAREseliSoftMessagePopUp UseSBW