Hacked: @ProcterGamble's http://FirstAidBeauty.com has had a payment skimmer since May 5th. Fairly advanced: malware does not activate for non-US visitors, or if you run Linux (ie security researchers).pic.twitter.com/HAc7UunK5n
You can add location information to your Tweets, such as your city or precise location, from the web and via third-party applications. You always have the option to delete your Tweet location history. Learn more
To my untrained eye, that JS file looks like just a JavaScript AES implementation. Which is inherently suspicious for being on a web page, I'd think. But I'm guessing that the Linux and country detection, and skimmer capabilities reside elsewhere?
And even from a Windows UserAgent, and from two different USA IP addresses, in case there's some detection happening server-sidepic.twitter.com/tIIpMesTbQ
The skimmer is at the bottom of that code. Starts at Line 336 or so if you prettify it in Chromepic.twitter.com/vzjqJvATA4
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.