PDF Spams Originating from My Domain

I’ve been receiving a large number of returned email notices lately because some spammers have been using my domain in the FROM field of their spams. It seems to be pretty common from my research, and I’m looking into it now, because a client of my just reported the same issue.

These emails will most times come in with the subject line, “Delivery Status Notification (Failure)” with the sender/From address being something like gibberish@mydomain.com. This has been going on for some time, with many people:

However, this latest PDF spam case which makes use of Zombie computers (which all good spam does), also uses random domains as the sender and that’s really starting to fill the inbox.

The latest PDF scam seems to be a big one:


So, taking this all together, the new PDF spamming and the spammers injecting your domain into the return address makes for a bad day. There isn’t much you can do about these spammers using your domain unfortunately:


That’s it for now. I’ll need to update these links to actually make sense, but in summary, there’s basically nothing you can do to stop these guys out of Spamistan from spoofing your email/domain in their emails.

