This morning I received an email supposedly from AOMCI, see also the image below.
This seems to be a phishing email, or worse. Do NOT save the attachment OR open it as the email instructs.
What troubles me is that I use different email address for every site that I have an account for, and in this case the email address I use for AOMCI is indeed the one used in the email. That would suggest that the website might have been compromised, and the attackers have had access to the sql table storing the email addresses. This would imply root access to all sql data. The alternative would be that someone has these email addresses stored in a mailing list on his or her PC, and that pc has been compromised.
I’ve just changed my password for AOMCI as a precautionary measure. This would make even more sense if you are using the same combination of username and password for multiple sites or accounts. Some people still do that.