i probably think this subject is not a trojan because it come from mircosoft. 0 C: Y4 v2 Z8 h$ T& u' J8 o' e( }, Dbut trojan will always follow this svchost file into your system32 through inbound connection.finally,i use firewall to block this activities(svchost).