For several days I'm getting a LOT of bounced returned spam messages all supposedly originating from one of my domains, each one using a different username@, none of which are the single one I've ever used for it, so this is not harvested addresses but spoofing many non-existent ones @mydomain.com
When I first saw them I thought they might be trojan related but I haven't had a chance for more than a couple minutes online for the past few days so when I got to check them out today I find they are all spam for a single affiliate link and what I am receiving are legitimate bounce-back messages to the various non-existent addresses on my domain. From the number of these bounces I have received I can imagine the actual total number sent using my domain as a return addy is pretty high.
The domain is not a dictionary word and it's a wordplay using a number that would not likely be used by anyone else, so either the person was aware of the domain or got it from a list of known valid domains.
Since the sponsor is a board advertiser chances are the perp may read this, so I'll ask... If you are going to use a fake return address, why not use a FAKE return address?
