... mad about email, sane about security ...
Phishing and Scam Signatures for ClamAV

Please send general feedback regarding the signatures (or even just to say that you're using the signatures) to:

False Positive samples (where possible) should either be emailed to:
or use a service such as pastbin (to past in the whole email) and then email the unique pastbin link you are given, to the above email address.

For help with how to access all the headers/body in your email client, this link may help

In order to speed up the resolution process when sending a False Positive Report, please send the signature name (eg: Email.ScamL.Gen708.Sanesecurity.08062503) and also, where possible, the raw text (including all headers of you blocked email)
.

Note: If you are trying to send a copy of a fraudulent email to your bank or other organisation (such as PayPal/Ebay) and it is getting blocked by your ISP... then please use the pastbin service to send the fraudulent email instead, as this will not be blocked by them.

Other comments should be sent to:

GPG key
Key ID: 0x97CD8EE6
Fingerprint: 890D 413C 9E6E FD80 9D0E E892 D6F4 C536 97CD 8EE6


If you have problems with a signature, please check the signature names first.

.UNOFFICIAL means that the signature is not an Offical ClamAV signature and therefore you need to contact one of the following people when you have a problem:

Sanesecurity: contact Sanesecurity
MSRBL-Images or MSRBL-SPAM: contact MSRBL

MBL: contact Malware Block List
-SecuriteInfo.com: contact SecuriteInfo

Note: Some of the Sanesecurity download scripts also download other Third-Party signatures and are therefore not under the control of SaneSecurity.

If the signature name doesn't have .UNOFFICIAL
tag at the end, that please submit a false positive report to the ClamAV Team here

 

 


HOME | NEWS | BLOG | USAGE | DOWNLOADS | STATISTICS | QUOTES | DOCUMENTS | THANKS | FEEDBACK
© sanesecurity.com. All Rights Reserved. Legal Notice ClamAV is a registered trademark of Sourcefire, Inc.