.wtf() Skimmer Still Targeting WooCommerce Websites

Almost identical to the one from back in March 2021 except this uses convert-server.com as the exfiltration domain.
.wtf() Skimmer Targets WooCommerce PayPal Pro

A JavaScript skimmer designed to steal payment data entered into the WooCommerce PayPal Pro gateway on the victim’s infected ecommerce website. Lowkey exfiltration domain: templatesurvey[.]com.