I see if the log C:\WINDOWS\System32\svchost.exe Anti-virus Standard Protection:Prevent mass mailing worms from sending mail for the Acess Protection Log.
However a scan does not find any virus etc.
I have auto upgrade definitions for virus and up to date.
I also used AdAware and it also found no virus.
As the process is the generic svhost I have no way to see what it is using it.
I get this message once/twice a day or similar from the Mcafee log
2/2/2551 20:21:51 Deleted NT AUTHORITY\SYSTEM C:\WINDOWS\system32\svchost.exe C:\WINDOWS\TEMP\BN1.TMP Spy-Agent.bv (Trojan)
2/2/2551 20:21:57 Deleted NT AUTHORITY\SYSTEM C:\WINDOWS\system32\svchost.exe C:\WINDOWS\TEMP\BN1.tmp\00001860.EXE Spy-Agent.bv (Trojan)