A swf based attack was found targetting Live Journal (livejournal.com). This attack which employs the use of Action Scripts, attempts to collect username, email addr and "last post" related information. The SWF file is embedded as a part of a post. Any user that reads and infected post would be vulnerable to loss of private information and may have their post appended with the malicious SWF file. In this way the worm retrieves user information while spreading. Network activity to the followings domains are related to this attack:
Exploit-SWFRedirector.b is a detection for SWF related exploits. They may cover a broad range of detections that may encompass Action Scripts written with malicious intent, such as those that may cause redirection to websites which may host exploits.