Threat Alert:
#MuddyWater — Phoenix Backdoor C2 Activity Observed
C2 / Compromised Hosts:
support[.]micsoft[.]store
fourdjecem[.]shop
poundpills[.]com
IP: 64[.]7[.]198[.]12
ThreatBook Intelligence: na2.hubs.ly/H01XKrN0
Nov 10, 2025 · 1:00 AM UTC


