is an exploit for the vulnerability in Internet Explorer described in Microsoft Security Advisory 2757760 and described in detail in CVE-2012-4969.
It is triggered when you visit a specially-crafted webpage, for example named "exploit.html". This page loads a SWF file, which is detected as Exploit:SWF/ShellCode.G.
If the SWF file loads, it tries to load another webpage, for example named "protect.html". This page contains the actual exploit and is detected as Exploit:Win32/CVE-2012-4969.A. If the vulnerability is successfully exploited, Exploit:Win32/CVE-2012-4969.A downloads a file from the server located in "220.127.116.11". The downloaded file is detected as Backdoor:Win32/Poison.BR.
Analysis by Daniel Chipiristeanu
There are no common symptoms associated with this threat. Alert notifications from installed antivirus software may be the only symptoms.