Increase in FP for Heuristics.Phishing.Email

I'm seeing an increase in instances of false positive reports for emails marked as phishing. In particular Heuristics.Phishing.Email.SpoofedDomain.

This is typically showing up in genuine PayPal or eBay emails but I've also seen it with genuine emails from credit card suppliers.

These never used to trigger warnings so I'm wondering if something has changed recently?


Please submit your patches to our Bugzilla: