On the other hand, Sophos says:

{Troj/Ptsnoop

Infects: Trojan horse
Memory resident: Yes

This is a backdoor Trojan. It copies itself to \windows\system\ptsnoop.exe and changes win.ini adding "c:\windows\system\ptsnoop.exe" to "load = ".

First reported in March 2001.}

I still think you should kill it, just to be sure.

[This message has been edited by Spiny (edited 11-30-2001).]