We're gradually updating threat actor names in our reports to align with the new weather-themed taxonomy. Learn about Microsoft threat actor names
Exploit:JS/Belmoo
Detected by Microsoft Defender Antivirus
Aliases: JS_NINDYA.A (Trend Micro) CVE-2010-3765 (other) Exploit:JS/Belmoo (other)
Summary
This is a detection for a malicious JavaScript that attempts to exploit a vulnerability in the web browser Firefox versions 3.6.8, 3.6.9, 3.6.10 and 3.6.11. The exploit could download and execute arbitrary code. In the wild, this exploit is known to download and execute Backdoor:Win32/Belmoo.A.
To detect and remove this threat and other malicious software that may be installed in your computer, run a full-system scan with an up-to-date antivirus product such as the following:
For more information on antivirus software, see http://www.microsoft.com/windows/antivirus-partners/.
Update vulnerable applications
This threat exploits a known vulnerability in Mozilla Firefox. After removing this threat, make sure that you install the updates available from the vendor. You can read more about the vulnerability here.