Troj/ExpJS-R is a malicious JavaScript embedded in a web page that attempts to exploit CVE-2010-0806.
Troj/ExpJS-R may attempt to contact subdomains of topix21century.com via http(s).
Files downloaded by Troj/ExpJS-R may include:
- notes.exe
- clipsvc.exe
- rsvm.exe
Samples seen have been proactively detected as Mal/Dropper-Y, or added as Troj/Dloadr-CYS.