PUP detection or malware?

See: htxp://zulu.zscaler.com/submission/show/82ed0e17df33d74f50753f6ecc0e8997-1332001960
Accompanying VT scan results: htxps://www.virustotal.com/file/d42f84287a66973fdab2f753eb6b69f9a5577b10861a2fb6549728e3d0923a9c/analysis/
Must be recent, because BrightCloud gives a low risk status with a rep status of green 80 for the IP
Found with Comodo cloud checking
Suspicious: htxp://urlquery.net/report.php?id=32462
Analysis see: htxp://anubis.iseclab.org/?action=result&task_id=1a1f47934bf53d3d465ed46e5c40de373

polonus