Scanning with Xsoftspy I get a result:
Proxy-Agent.g Trojan C:\\Windows\\System32\\Spoolsv.exe Threat.
I opt to remove, but when I reboot and scan again, I get the same results. I have done this in BOTH Normal Mode and Safe Mode. I looked at the Spoolsv.exe file in the folders:
C:\\I386 C:\\Windows\\System32 C:\\WINDOWS\\SYSTEM32\\DLLCACHE
All three are the same version: 5.1.2600.0 All three are the same size: 50.0 KB All three say Created: Friday December 19, 2003 and Modified Thursday August 29, 2002
(How can a file be modified four months before it was created?)
and Accessed today (probably all three claim to be accessed today because I right clicked Properties for all of them).
Am I getting a false positive for a Trojan?
AND, should spoolsv.exe ALWAYS be listed in Task Manager Processes?
T.C.