-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Török Edvin schrieb: > On 7/13/07, Robert Schetterer <[EMAIL PROTECTED]> wrote: >> -----BEGIN PGP SIGNED MESSAGE----- >> Hash: SHA1 >> >> Hi @ll >> >> can someone explain this virus type >> >> Phishing.Heuristics.Email.SpoofedDomain > > PhishingScanURLs BOOL > Scan URLs found in mails for phishing attempts using > heuristics. This will classify "Possibly Unwanted" phishing > emails as Phishing.Heuristics.Email.* > Default: yes >> this mail looks good , on a first look, >> >> seems to be amazon promotion, also spf record are fine > > Sent by amazon, or some 3rdparty? > > Submit it as a false positive at http://cgi.clamav.net/sendvirus.cgi > > --Edwin > _______________________________________________ > Help us build a comprehensive ClamAV guide: visit http://wiki.clamav.net > http://lurker.clamav.net/list/clamav-users.html >
Submited it as false positve, i think the Problem results out of using lots amazon.de urls in the body but comming from amazon.com servers - -- Mit freundlichen Gruessen Best Regards Robert Schetterer https://www.schetterer.org Germany -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.5 (GNU/Linux) Comment: Using GnuPG with SUSE - http://enigmail.mozdev.org iD8DBQFGl1sIfGH2AvR16oERAp7kAJ4scLmLzK9AIVAnXelxlXOiPljXBACffjSA 5WkEZtT/78b+S+fcVSfj0tA= =XdgV -----END PGP SIGNATURE----- _______________________________________________ Help us build a comprehensive ClamAV guide: visit http://wiki.clamav.net http://lurker.clamav.net/list/clamav-users.html