user winblows posted elsewhere about it... seems to work like the previous ones, but no AV software is catching/killing it yet (updated my tools this morning !)
i found that safe mode w/command prompt would let me IN - but as soon as i tried to run anything, the ruddy DOJ screen would blow up and freeze the machine.... but i could ctrl-alt-del and logout, then relogin and get the command prompt again.
after much searching and cursing, i ran farbar from Recovery Mode and noticed that the user32.dll in SYSWOW64 wasn't passing hash checks (the same as his post)... so i hit that directory and noticed that there was a second file - user32.ini which was ALMOST the same size (and mighty frick'n huge for a INI file - guessing the virus made a backup there before patching itself into user32.dll.
renamed user32.dll to user32.bad and copied user32.ini to user32.dll, then ran SFC /scannow /frombootdir=c: /fromwindir=c:\windows and let it do its thing. when it finished, i rebooted into safe mode w/command prompt - and NOW i can run my scanning tools (running right now, in fact). when they get done, i'll boot into normal mode and see what happens
hope this helps someone else out there !!