: It collects technical details about the machine, including the OS version, IP address, hardware specifications, and running processes. Data Exfiltration
It records keystrokes and system information, which are then exfiltrated to the attacker's command-and-control server.