(sigh). If you want your report to treated seriously:
a) what trojan/virus? A link to the characteristics would be appreciated.
b) what AV scanner was used? Some fire off more false positives than others
c) when was this virus scanner last updated in terms of definitions? When was the last full version release?
d) what operating system are you using? is your gateway AV scanner "tuned" to a particular operating system?
e) if this is something that communicates with the outside world, one way you can protect yourself is to create a firewall rule (built into vista and 7 at least) that blocks this program from sending any data over the internet. Other than for a process to
check for updates (which you can always do manually) this program has no need to communicate, so you'd be safe shutting that ability off of this program.
If it's reporting on the "hidden windows" activity, that's already been explained.
If you're convinced there is a virus/spyware/trojan, it's your duty to report this to google with a full report. I believe that google and all reputable download sites scan programs that they host for viruses, but I suppose there's always a chance that they
miss something.
I personally use Sophos AV (11.0 - definitions today, core program updated 2010) on the computer on which I have this application installed. This program produces a frustrating level of false positives (e.g. thinking "hacking tools" and "key cracks" are evil)
and quarantines practically EVERYTHING, however does not detect a virus in mDesktop.
So, adding to Haplo's AVs that do not produce a positive virus response we have
Avast, symantec, sophos, mcaffee. I'm assuming latest definitions on all of those. It's possible that the makers all of these virus scanners are being lazy and are missing a current/emerging threat. It's happened before historically for sure.