
First, you have to have a flash drive and a clean computer to work from. Then, download FixExe.reg and then MalwareBytes, you can get both for free. Make sure that the infected computer is actively running the scripts and plug the Flash Drive in and run FixExe.reg. It'll ask you about running things in the registry, say "yes." That'll get your internet up and running so you can then run MalwareBytes. Run it and let it get the newest definitions. Then do a full scan on the PC. (it's a overnight kinda thing) It'll see them and let you remove them, both programs and regkeys. Then you'll have the problem where your system restore will be disabled even after this. You need to go into "run" and then type in "rstrui.exe." It won't appear to do anything for a minute, but it'll bring back your System Restore functionality.
Well, I'm just glad my stupidity didn't cost me about 7 hours of work. You can still get it from the most seemingly harmless places even with AV software running. But you can recover without losing all of your time and data. Most of this latest junk is just "scareware." It doesn't eat data. I hope this helps someone else who gets hit. Here's my little screen of MalwareBytes, I really recommend it! Brian

Comment