off-hand, C:\WINDOWS\system32\mytnidgh.exe looks suspicious