Well you were all clean last night so you are being reinfected by what you access on the web or email or Flash drive etc..
So lets get you some protections in now.
Get SpywareBlaster
http://www.javacoolsoftware.com/spywareblaster.html install update and enable all
SpyBot S&D
http://majorgeeks.com/download2471.html install it update it then do the Immunize then scan for good measure.
Hostman (Host Manager)
http://www.abelhadigital.com/2008/07/hostsman-3157-released.html install let it update and download all 4 of the host blockers. Also let it disable DNS Client if it asks.
Finally Threatfire
http://www.threatfire.com/download/ update and scan
I have been using ThreatFire for more than a year, it just went from ver 3 to ver 4.
It was designed to co-exist and compliment other Virus scanners.
Additionally it uses totally different process to protect. While conventional Virus scanners work from definitions ThreatFire works on recognizing Virus/Malware activity. Use in conjuction with you Virus scanner, it's like looking at it with 2 sets of eyes and from a different angle.
You will need to read the docs on this, as it works like some Firewalls that learn. When TF finds something it asks for approval or denial and if to remember this answer. It is very wordy for a few hours as it learns, as you allow or disallow different programs. The trick here is to recognize a baddie from a goodie.
For example the first time after you install TF and run IE it will tell you that IE is trying to run well you know you just clicked it ans that you do want to permit it so you would approve and remember the answer and you will not be asked about IE again.
Only after we get the above installed and working. Then we clean again with mbam sas and combofix. Then likely the Spybot Immunize, or SWBlaster or Hostman will block them and you will not even know it, or TF will catch it and you will know were the reinfections are coming from.
Mike