An attacker may inject a client-side script into a vulnerable website, which then executes when a user visits the compromised page.
Furthermore, this detection was specifically identified linked to a Facebook comment spam URL, which leads to installation of Worm:Win32/Gamarue.A.
Analysis by Methusela Cebrian Ferrer
There are no common symptoms associated with this threat - links are activated within IFrames while viewing web content on maliciously modified pages. Alert notifications from installed antivirus software may be the only symptoms.