View Single Post
Old 09-26-2005, 11:44 AM  
mardigras
Bon temps!
 
Join Date: Feb 2003
Location: down yonder
Posts: 14,194
Wow, somebody's spoofing one of my domains pretty hard

For several days I'm getting a LOT of bounced returned spam messages all supposedly originating from one of my domains, each one using a different username@, none of which are the single one I've ever used for it, so this is not harvested addresses but spoofing many non-existent ones @mydomain.com

When I first saw them I thought they might be trojan related but I haven't had a chance for more than a couple minutes online for the past few days so when I got to check them out today I find they are all spam for a single affiliate link and what I am receiving are legitimate bounce-back messages to the various non-existent addresses on my domain. From the number of these bounces I have received I can imagine the actual total number sent using my domain as a return addy is pretty high.

The domain is not a dictionary word and it's a wordplay using a number that would not likely be used by anyone else, so either the person was aware of the domain or got it from a list of known valid domains.

Since the sponsor is a board advertiser chances are the perp may read this, so I'll ask... If you are going to use a fake return address, why not use a FAKE return address?
mardigras is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote