SL-Message
SL-Message monitors running applications and processes on the remote machine.0
General information:
Malware Name: |
SL-Message |
Malware Type: |
Remote Control |
Company Name: |
Seli-Soft |
Company URL: |
http://selisoft.com/
|
Threat Level: |
Low Risk |
Operating System: |
WIN XP |
Installation Type: |
Installed through EXE |
Operation: |
Time of After Installation |
Company Description:
It provides utilities for administrators that works with various web servers Microsoft Windows NT based networks Microsoft exchange. It provides us with the remote control tool SL-Message that allows us to control our network clients remotely from
our desktop. It can send alert messages, manage running tasks and start new programs. It can connect and disconnect network resources on remote clients.
Spyware Description:
SL-Message monitors running applications and processes on the remote machine.0
Characteristics/Symptoms:
-> It is a network application that allows to manage and control PCs or networks from a remote location. -> It allows to access another computer without explicit authorization. -> It can also be used to monitor and steal information
from the remote computer -> Slows down the performance of PC0
Additional information might be found here:
Processes Running:
SL-Send.exe
File information Created after Installation:
File Location |
Size (Bytes) |
Type |
C:\Program Files\seliSoft\Message\Custom\VBS\MessageSend.vbs |
4027 |
VBScript Script File |
C:\Program Files\seliSoft\Message\PlugIns\ExternalPrograms.dll |
208384 |
Application Extension |
C:\Program Files\seliSoft\Message\Setup\ClientUpdate.ini |
63 |
Configuration Settings |
Folder information Created after Installation:
Folder Location |
C:\Program Files\seliSoft\Message |
C:\Program Files\seliSoft\Message\Custom |
Registry information Created after Installation:
Main Registry Key |
Sub Registry Key |
Key Value Name |
HKEY_LOCAL_MACHINE |
SOFTWAREseliSoftMessageListen |
UseSBW |
HKEY_LOCAL_MACHINE |
SOFTWAREseliSoftMessageListen |
UserWindow |
HKEY_LOCAL_MACHINE |
SOFTWAREseliSoftMessagePopUp |
UseSBW |