Our DNSMon flagged an abnormal demesne nominate magento-analytics[.]com, through continuous tracking, and correlation with various data, we found out that the domain make has been used to inject malicious JS script to various online shopping sites to rip the citation card possessor / card number / expiration time / CVV information.