http://www.symantec.ru/smb/security_...120318-2712-99
W32.Medbot.A is a worm that opens a back door on the compromised computer and works as a relay proxy. It may also spread through network shares and download remote files.
Вероятнее всего, модификация версии А c теми же функциями....
Ставь firewall.