Was it really running hidden?
Well, avast says it was a 'hidden process' from the alert I saw (image posted at beginning of thread).
I don't know a lot about rootkits -- except that they are very bad and can be hard to get rid of. If David's explanation of how avast compares what is actually running to what Windows says is running is right, then sounds to me like somehow this process was running.
I'm going to make a list of the files in 'SmitfraudFix' folder with size & dates and then delete... or rename those files that happen to show up in the "Sytem32" folder.
Thanks to everyone for their help. This forum is one of the best things about avast... users helping users. Not to mention that the developers or programmers step in here as well when needed.
I'll post back if it "rears its ugly head" again.
