...
ACOnet-CERT welcomes feedback, preferably by e-mail to cert@aco.net. If you are aware of other sites covering this topic, please let us know.
FAQ
Q: Are you saying we have hacked you?
On the contrary! During the analysis of a security breach that happened in our constituency, we found that the hackers may also have your systems on their radar.
Q: Can you prove it?
Short answer: No.
Long story: Following our investigation, we alerted the owners of any IP addresses we came across, that they may have a security problem and suggested to check the corresponding systems. We do not state that a compromise has taken place or that a vulnerability is present. Operators will have to decide themselves whether they want to take the time to check.
Q: What does the name 750x7 stand for?
A.: Nothing in particular. We felt it necessary to clearly distinguish this case/pattern from others like, for instance, the bitcoin mining malware for windows that was found a couple of years ago. Since the attack we investigated had no outstanding characteristics, we couldn't figure out an obvious name. Eventually, we went for an "opaque character string".