This JavaScript (JS) malware may be hosted on a Web site and run when a user accesses the said Web site.
It takes advantage of an unknown vulnerability in Internet Explorer to allow to download possible malicious files on the affected machine. It does this by using certain vulnerable CLSIDs from the affected system.
Once it successfully exploits the vulnerability, it then accesses certain Web sites to download files. Though most of the sites are already inaccessible, this script can still download and execute a file that Trend Micro detects as BKDR_AGENT.AASP. As a result, malicious routines of the downloaded backdoor are exhibited on the affected system.
More...