Hey Doomsayer, sorry I've been away for a few days. Let's see if we can manually fix the remaining nasties.
Once again, go into Safe Mode with System Restore turned off
Go to Start > Control Panel > Add or Remove Programs
See if there is an entry for SurfSideKick, if so remove it (you might have to enter a code that it gives you)
Also search for an entry called PSDream or something similar and remove it if it's there
Do a HJT scan again and put a check next to the following entries if still present:
R3 - URLSearchHook: (no name) - <default> - (no file)
R3 - URLSearchHook: (no name) - _{EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
R3 - URLSearchHook: (no name) - {02EE5B04-F144-47BB-83FB-A60BD91B74A9} - C:\Program Files\SurfSideKick 3\SskBho.dll
F2 - REG:system.ini: UserInit=userinit.exe,fmpkhdm.exe
O2 - BHO: SSL encrypt - {746455FE-D059-47e7-AF0E-140E03F5A447} - C:\WINDOWS\system32\nsu56.dll
O2 - BHO: CFG32S - {7564B020-44E8-4c9b-A887-C6EC41AC67DA} - C:\WINDOWS\cfg32r.dll
O2 - BHO: (no name) - {87E3AC65-4EF0-420D-F7A8-671331AA31B4} - C:\WINDOWS\system32\lcea.dll
O2 - BHO: Scaggy Insert - {C68AE9C0-0909-4DDC-B661-C1AFB9F59898} - C:\WINDOWS\cfg32o.dll
O4 - HKLM\..\Run: [ISUSPM Startup] c:\progra~1\common~1\instal~1\update~1\isuspm.exe -startup
O4 - HKLM\..\Run: [zmb] C:\WINDOWS\zmb.exe
O4 - HKLM\..\Run: [dywtvu] C:\WINDOWS\system32\dhrcww.exe reg_run
O4 - HKLM\..\Run: [adstart] "iexplore.exe" "
http://iesettingsupdate"
O4 - HKLM\..\Run: [SurfSideKick 3] C:\Program Files\SurfSideKick 3\Ssk.exe
O4 - HKCU\..\Run: [yvdvx] C:\WINDOWS\system32\dhrcww.exe reg_run
O4 - HKCU\..\Run: [Utprlvei] C:\Documents and Settings\Byron Irving\My Documents\s?curity\?poolsv.exe
O4 - HKCU\..\Run: [PSDream] "C:\Program Files\PSDream\PSDream.exe"
O4 - HKCU\..\Run: [SurfSideKick 3] C:\Program Files\SurfSideKick 3\Ssk.exe
O15 - Trusted Zone:
http://click.getmirar.com (HKLM)
O15 - Trusted Zone:
http://click.mirarsearch.com (HKLM)
O15 - Trusted Zone:
http://redirect.mirarsearch.com (HKLM)
O15 - Trusted Zone:
http://awbeta.net-nucleus.com (HKLM)
O20 - AppInit_DLLs: repairs303169590.dll
O20 - Winlogon Notify: App Management - C:\WINDOWS\system32\ugpnpmgr.dll (file missing)
O20 - Winlogon Notify: Controls Folder - C:\WINDOWS\system32\wsdsp.dll (file missing)
O20 - Winlogon Notify: MS-DOS Emulation - C:\WINDOWS\system32\dlvacm.dll (file missing)
O20 - Winlogon Notify: Themes - C:\WINDOWS\system32\mwhtml.dll (file missing)
O23 - Service: FreezeScreenSaver - Unknown owner - C:\WINDOWS\system32\FreezeScreenSaver.exe
Choose "Fix checked" (you might be prompted to reboot, if so boot back into safe mode again)
Delete the following files:
C:\WINDOWS\system32\fmpkhdm.exe (or C:\WINDOWS\fmpkhdm.exe)
C:\WINDOWS\system32\nsu56.dll
C:\WINDOWS\cfg32r.dll
C:\WINDOWS\system32\lcea.dll
C:\WINDOWS\cfg32o.dll
C:\WINDOWS\zmb.exe
C:\WINDOWS\system32\dhrcww.exe
C:\Documents and Settings\Byron Irving\My Documents\s?curity\?poolsv.exe
C:\WINDOWS\system32\FreezeScreenSaver.exe
Delete the following folders (and all their contents):
C:\Program Files\SurfSideKick 3
C:\Program Files\PSDream
After you've done all that, run another HJT scan and post the new log file.