I normally find that Mark's evil-monger detection and removal too much for even experienced users, but here is a simple case of where Process Explorer and Autoruns removed the malware.
Pity that the chap didn't have a copy of the Microsoft Standalone System Sweeper on a USB stick. The Standalone Sweeper gets almost everything since the system isn't booted from the hard disk but rather from a ram disk created by a specialized version of the Win 7 PE.
In any case, here is the link which I view as recommendied rreading:
The Case of the Mysterious Reboots - Mark's Blog - Site Home - TechNet Blogs