"PA Bear" wrote:
>
> wincomm.exe is a process which is registered as the w32.agobot.bg worm!
> http://www.processlibrary.com/directory/files/wincomm/
>
> Now you know. An unpatched machine running without a firewall can get
> infected within seconds of connecting to the 'net!
>
Thanks PA Bear I will look into this.
The machine is behind a company CheckPoint firewall, has up to date virus
software and I was in the process of updating windows/office in readiness
for a new user when this problem occurred.
Phil