Event ID - 30100

Port No30100
Service NameNetSphere
RFC Doc0
ProtocolTCP
DescriptionNet Sphere is a old trojan from 1999. This trojan is no longer devolped and most not likely used.
Reference LinkNetSphere
AttackIt Autoloads: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ Key: NSSX

Features:

Add to ICQ list
Capture screen
Client chat
File System
Get Info
Messaging
Misc. app functions (List, rename, switch to, etc...)
Monitor on and off
Mouse control
Shutdown/log off/Hang pentiums

Fix:
Delete the registry key named NSSX located at HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\. This can be done using regedit or another registry editing program
Reboot the computer or close the trojan listed in the registry.
Delete the trojan file nssx.exe in the windows directory

Catch threats immediately

We work side-by-side with you to rapidly detect cyberthreats
and thwart attacks before they cause damage.

See what we caught

Did this information help you to resolve the problem?

Yes: My problem was resolved.
No: The information was not helpful / Partially helpful.