i probably think this subject is not a trojan because it come from mircosoft. 0 n: R0 G# A* U5 ~% X8 v0 S7 abut trojan will always follow this svchost file into your system32 through inbound connection.finally,i use firewall to block this activities(svchost).