On 31 March 2017 19:14:36 Steven Morgan <smor...@sourcefire.com> wrote:
It is not clear what MailFollowURL did. Have a look at
docs/phishsigs_howto.pdf for a description of how to scan for URLs. This
may have subsumed MailFollowURL.
It did a curl on any urls found in the body and fetched the content...
before scanning the content... bit of a summary here...
clamav-users mailing list
Help us build a comprehensive ClamAV guide: