: Modifies the Windows Registry to run automatically on startup. 📊 Technical Indicators
: Look for suspicious entries in your Task Manager "Startup" tab or Registry keys ( HKCU\Software\Microsoft\Windows\CurrentVersion\Run ).
: Attempts to connect to known Command & Control (C2) servers.