Max, Thank you for bring this to our attention. The detection window is a bit too broad. We will get this resolved. The signature has been dropped from the signature database.
It will be corrected, and then added back to the signature database. Thanks again, Shaun Hurley Cisco Talos Malware Researcher On Wed, Jan 21, 2015 at 9:05 AM, max <m...@sbg.at> wrote: > hi, > > is anybody else seeing false positives triggered by > PDF.Exploit.CVE_2014_8449? > > eg > > > https://www.virustotal.com/en/file/d30b1be5880f2c380b1bac39f058e10f06c50b9aebae99dcd22a7e255deff060/analysis/ > > kind regards > max > _______________________________________________ > Help us build a comprehensive ClamAV guide: > https://github.com/vrtadmin/clamav-faq > > http://www.clamav.net/contact.html#ml > _______________________________________________ Help us build a comprehensive ClamAV guide: https://github.com/vrtadmin/clamav-faq http://www.clamav.net/contact.html#ml