Avast flagged my website — how removal works
CATALOG ENTRY VERIFIED 2026-09-21
To clear an Avast false positive on a clean website, open Avast's 'Submit a website or a file to Avast for review' page, choose False positive, select URL, and give the exact blocked URL, the detection name (such as URL:Mal or URL:Phishing) and a short description. Avast and AVG share one Gen Digital engine, so one accepted report clears both. Avast states no turnaround.
| List type | antivirus engine |
|---|---|
| Channel | Email request |
| What unflagdomain does | Sends the request for you |
| Step-by-step guide | Avast Flagged My Website: How to Report a False Positive |
| Longer read | Why Avast flags clean sites |
What Avast is
Avast Web Shield blocks URLs using the Gen Digital threat engine that Avast and AVG share. A single report clears both.
What a Avast flag looks like
An Avast 'Web Shield has blocked a harmful webpage' alert with a threat name such as URL:Mal, URL:Phishing or URL:Blacklist.
Why clean sites end up flagged here
- A past compromise — an injected redirect, spam pages, a phishing directory — that the engine recorded and has not re-scanned since the cleanup.
- A file hosted on the site (an installer, an archive) that matched a signature, which flags the URL that served it.
- A verdict copied from another engine's feed, so the flag appears here days after the original source.
- A genuinely clean page that the engine's heuristics read as suspicious: obfuscated JavaScript, a login form, a redirect chain.
How a removal request reaches Avast
This vendor accepts a website false-positive report by email at an address it publishes in its own documentation. The message must be plain text, come from an address at the affected domain or a contact the vendor can verify, and state the URL, what was found, what was removed and when.
The exact portal, the fields it asks for, a template and the reasons requests get rejected are in the Avast false-positive guide.
What unflagdomain does for this vendor
When a scan shows this vendor flagging your domain, a separately written plain-text request goes out to it in the dispatch, with your address as Reply-To, so the vendor's answer lands in your inbox. If the address bounces, another working contact is looked for and the request re-sent.
This is one of 133 vendors in the catalog. A scan shows which of them flag a domain right now; the €39 dispatch covers every one that does.
Avast is an antivirus URL-reputation system: its verdict on a domain reaches everyone who runs that product, and it surfaces through multi-engine scanners such as VirusTotal, where other products and firewalls read it. A past compromise — an injected redirect, spam pages, a phishing directory — that the engine recorded and has not re-scanned since the cleanup. A file hosted on the site (an installer, an archive) that matched a signature, which flags the URL that served it.
Clean the site first and verify it from outside. Then this vendor accepts a website false-positive report by email at an address it publishes in its own documentation. The message must be plain text, come from an address at the affected domain or a contact the vendor can verify, and state the URL, what was found, what was removed and when. The Avast guide on this site has the portal, the fields and a template.
No stated turnaround. Not measured per vendor yet. In our most recent measured dispatch, all 12 flagging vendors had cleared within 15 days.
When a scan shows this vendor flagging your domain, a separately written plain-text request goes out to it in the dispatch, with your address as Reply-To, so the vendor's answer lands in your inbox. If the address bounces, another working contact is looked for and the request re-sent. We guarantee the request is sent or prepared; Avast decides the outcome.