Our DNSMon flagged an abnormal demesne name magento-analytics[.]com, through continuous tracking, and correlation with various data, we found out that the domain call has been used to inject malicious JS script to various online shopping sites to steal the credit card owner / card number / termination time / CVV information.