Here Quttera to flag 28 malicious files!

Re: https://www.virustotal.com/nl/url/1860277ba112efafbc7b10b996df362dc04e082a74e6ac41f60bb2c354d6ecaf/analysis/1437810814/
Re: http://toolbar.netcraft.com/site_report?url=http%3A%2F%2Fuploaded.net%2Ffile%2Fu6zu5sf0
28 files found to be malicious: -/data%3Aimage/png;base64%2Civborw0kggoaaaansuheugaaabuaaaaycayaaaavibziaaaaqkleqvq4y2nggawjyoid/1ama/jafb5njcjd/yh4pralyda0h4lnnup/dxld59pcubcip3zewya%2Bnzlukbgfgweaan%2Bhlx9sb8u8aaaaaelftksuqmccSeverity: Malicious
Reason: Detected reference to blacklisted domain
Details: Detected reference to malicious blacklisted domain -delivery.uauniverse.com
Re: https://www.virustotal.com/nl/domain/delivery.uauniverse.com/information/
Re: https://malwr.com/analysis/MjkwZjMzYmYxYTk4NGQ0MmIyOTdlZDJmNzg1YTkwYmY/
Associated with: -https://infotomb.com/about/?

Potentially malicious file: /js2/history.js
Severity: Potentially Suspicious
Reason: Detected potentially suspicious content.
Details: Detected potentially suspicious initialization of function pointer to JavaScript method write __tmpvar584315141 = write;
File name: /js2/history.js


[[=k[c]||e(c);k=[function(e){returnr[e]}];e=function(){return'\\w+'};c=1};while(c--)if(k[c])p=p.replace(newRegExp('\\b'+e(c)+'\\b','g'),k[c]);returnp}('4(!H.l)6l={};l.x=2(){9.h={};t(6i=0;i<I.m;i++){9.h[I[i]]=[]}};l.x.J={K:2(a,b){t(6i=0;iɡ.h[a].m;i++)4(9.h[a][i]==b)7;9.h[a].18(b)},19:2(a,b){t(6i=0;iɡ.h[a].m;i++){4(9.h[a][i]==b){9.h.1a(i,1);7}}},p:2(a,b){t(6i=0;iɡ.h[a].m;i++)9.h[a][i](b)}};l.L=(2(){2y(){6c=9,z=1b,u,3;6d=2(){7M.N.1c(1)};3=d();6e=2(a){H.M.N=a};2O(){6a=]]

polonus