Multiple high-confidence indicators point to an active intrusion by APT-C-TETRAX. Initial vector likely involved exploitation of CVE-2024-T3TR4. Persistence established via WMI event subscription. Immediate action required to prevent data exfiltration and ransomware deployment.