see: https://www.virustotal.com/nl/url/0f01f7f562862721a9671a7c8da476c02def26d7ff6712d3debfbb8fb1ae2c71/analysis/1412698647/
amd
https://www.virustotal.com/nl/file/2e29c60275f0d21724bc44337bb4db1590031b7b43b149133c424db9583bc234/analysis/1411962079/
100/100% malicious confirmed: http://zulu.zscaler.com/submission/show/9483d6ce608be4c99cdec992a7b4bca3-1412700730
See code anomalities: http://jsunpack.jeek.org/?report=8520886a29596e92b59d6ed934d2afe8311e1b32
Open link with NoScript active and inside a VM - for security researchers only.
Malware downloads detected: http://app.webinspector.com/public/reports/25824330
Links to malware files detected:
Link to Malware File. Found by Antivirus Engine.
SHA1: 5ebb94e52c2a0132ff21901dcea4ccd81a279158
→ https://www.virustotal.com/nl/file/2e29c60275f0d21724bc44337bb4db1590031b7b43b149133c424db9583bc234/analysis/
Also found on virussign.
polonus