It was reported that ryviu.com was hosting keylogging malware. This website allegedly was loading the script at the time of compromise as reported by https://publicwww.com/websites/%22cdn.ryviu.com%2Fjs%2Freviews.js%22/ with the code snippet cript' src='https://cdn.ryviu.com/js/reviews.js?shop=www.dealtrove.