Another twist in the continuing spam campaigns that spoof Amazon notifications arrives:
From: “email@example.com” <firstname.lastname@example.org>
Subject: Your Order with Amazon.com
And while past fake Amazon emails intended on spreading malware to the recipient’s computer, this one is just old fashioned spam, looking to sell pirated software online.
The message itself is well designed, using actual Amazon graphics. Additionally, the “Order” numbers and purported sales amounts are both randomized in an attempt to evade spam filtering:
While the message looks quite good, all links actually direct the recipient to sites such as “bestcomputerized.com” (among others).
Another version, and a large one, from the same spammer:
An interesting twist with this campaign is the use of injected (faked) Internet Delivery Headers to again, attempt to fool many simple spam filters. Inspecting the headers will reveal spoofed (but convincingly so) entries such as:
# : ‘from mm-notify-out-209-16.amazon.com (mm-notify-out-209-16.amazon.com [18.104.22.168]) by mail.rosselltea.com
When in fact the actual connecting server (in this example) is a computer in Russia at 22.214.171.124 and most definitely not part of Amazon’s network.
OnlyMyEmail is an award winning hosted spam filtering service and business email hosting provider. Our enterprise cloud computing anti-spam solution, the MX-Defender, has the highest capture rate of any spam filter ever tested in the VBSpam Challenge, blocking a record setting 99.9993% of all malicious and junk email.
Our Personal spam filtering system is also a Software as a Service (SaaS) solution and has won both the PC World "World Class Award" and also the PC Magazine "Editor's Choice Award."
OME-Kids is a webmail solution that protects children from spam and other harmful emails. OME-Kids offers unique Parental Controls that allow you to choose the level of security and oversight that's right for your child.