The US still tops the list of the spam-relaying countries, according to a report by Sophos, a provider of integrated threat management products. However, the US has made significant reductions and for the first time accounts for less than a quarter of all spam.
However, the UK has managed to slip out of the 'dirty dozen' - the top 12 spam-relaying nations. It is responsible for 1.6 percent of spam and now holds 14th position.
The report shows that the amount of non-English language spam is increasing, with the majority being relayed by "zombie" computers, hijacked by Trojan horses, worms and viruses and under the control of hackers. "Pump-and-dump" stock spam, which artificially inflates stock prices before spammers sell shares at a fairly large profit, is also increasing, the report says.
"The bad news is that the contribution of China is up by seven percentage points since October 2005, as the spam economy takes off over there. Further bad news - and perhaps more of a surprise - is the continued rise in the percentage of spam from France, which has gone from 1.2 percent a year ago to 3.5 percent in October to five percent now."
Ducklin can only speculate as to why France has climbed up the list.
"More people are connecting to the internet and it is becoming more affordable to surf the net."
He points out that five percent is still quite low and hopes that the dirty dozen-ranking will act as a wake-up call for the French.
The dirty dozen consists of nations from four different continents and this indicates the nature of the spam problem, says Sophos.
Zombie computers allow spammers to escape country-specific legislation, as they do not have to be located in the same country as the spamming machines they operate.
"Zombie networks make law enforcement very difficult," says Ducklin. "If someone in Latvia is sending spam to someone in Canada to sell a product out of China, using a zombie in Argentina, who do you call?
"But the good news is that law enforcement has had some spectacular successes lately in bringing spammers and zombie operators to justice," he says.
Sophos recommends that computer users keep anti-virus software and operating system security patches up-to-date and use a properly configured firewall, to reduce the risk of their PCs becoming part of a zombie network.
"The flipside is that these numbers do not represent the demand side of spam. As long as people continue to respond to spammers, that gives them a reason to exist and the need for zombie computers will continue," Ducklin says.
"So the message we want to get across is this: no matter how intriguing the spammer's offer seems, don't try, don't buy, don't reply.
That will definitely help drive down the effectiveness of spam campaigns."