[clamav-users] FP / PDF.Exploit.CVE_2014_8449

Shaun Hurley shahurle at sourcefire.com
Wed Jan 21 16:02:02 UTC 2015


Max,

Thank you for bring this to our attention.  The detection window is a bit
too broad. We will get this resolved.
The signature has been dropped from the signature database.

It will be corrected, and then added back to the signature database.

Thanks again,
Shaun Hurley
Cisco Talos Malware Researcher



On Wed, Jan 21, 2015 at 9:05 AM, max <mn at sbg.at> wrote:

> hi,
>
> is anybody else seeing false positives triggered by
> PDF.Exploit.CVE_2014_8449?
>
> eg
>
>
> https://www.virustotal.com/en/file/d30b1be5880f2c380b1bac39f058e10f06c50b9aebae99dcd22a7e255deff060/analysis/
>
> kind regards
> max
> _______________________________________________
> Help us build a comprehensive ClamAV guide:
> https://github.com/vrtadmin/clamav-faq
>
> http://www.clamav.net/contact.html#ml
>



More information about the clamav-users mailing list