Avast flagged my website — how removal works

CATALOG ENTRY VERIFIED 2026-09-21

// ANSWER

To clear an Avast false positive on a clean website, open Avast's 'Submit a website or a file to Avast for review' page, choose False positive, select URL, and give the exact blocked URL, the detection name (such as URL:Mal or URL:Phishing) and a short description. Avast and AVG share one Gen Digital engine, so one accepted report clears both. Avast states no turnaround.

Avast at a glance
List typeantivirus engine
ChannelEmail request
What unflagdomain doesSends the request for you
Step-by-step guideAvast Flagged My Website: How to Report a False Positive
Longer readWhy Avast flags clean sites

What Avast is

Avast Web Shield blocks URLs using the Gen Digital threat engine that Avast and AVG share. A single report clears both.

What a Avast flag looks like

An Avast 'Web Shield has blocked a harmful webpage' alert with a threat name such as URL:Mal, URL:Phishing or URL:Blacklist.

Why clean sites end up flagged here

  • A past compromise — an injected redirect, spam pages, a phishing directory — that the engine recorded and has not re-scanned since the cleanup.
  • A file hosted on the site (an installer, an archive) that matched a signature, which flags the URL that served it.
  • A verdict copied from another engine's feed, so the flag appears here days after the original source.
  • A genuinely clean page that the engine's heuristics read as suspicious: obfuscated JavaScript, a login form, a redirect chain.

How a removal request reaches Avast

This vendor accepts a website false-positive report by email at an address it publishes in its own documentation. The message must be plain text, come from an address at the affected domain or a contact the vendor can verify, and state the URL, what was found, what was removed and when.

The exact portal, the fields it asks for, a template and the reasons requests get rejected are in the Avast false-positive guide.

What unflagdomain does for this vendor

When a scan shows this vendor flagging your domain, a separately written plain-text request goes out to it in the dispatch, with your address as Reply-To, so the vendor's answer lands in your inbox. If the address bounces, another working contact is looked for and the request re-sent.

This is one of 133 vendors in the catalog. A scan shows which of them flag a domain right now; the €39 dispatch covers every one that does.

// AVAST FAQ
  • Avast is an antivirus URL-reputation system: its verdict on a domain reaches everyone who runs that product, and it surfaces through multi-engine scanners such as VirusTotal, where other products and firewalls read it. A past compromise — an injected redirect, spam pages, a phishing directory — that the engine recorded and has not re-scanned since the cleanup. A file hosted on the site (an installer, an archive) that matched a signature, which flags the URL that served it.

  • Clean the site first and verify it from outside. Then this vendor accepts a website false-positive report by email at an address it publishes in its own documentation. The message must be plain text, come from an address at the affected domain or a contact the vendor can verify, and state the URL, what was found, what was removed and when. The Avast guide on this site has the portal, the fields and a template.

  • No stated turnaround. Not measured per vendor yet. In our most recent measured dispatch, all 12 flagging vendors had cleared within 15 days.

  • When a scan shows this vendor flagging your domain, a separately written plain-text request goes out to it in the dispatch, with your address as Reply-To, so the vendor's answer lands in your inbox. If the address bounces, another working contact is looked for and the request re-sent. We guarantee the request is sent or prepared; Avast decides the outcome.

// OTHER ANTIVIRUS ENGINES WE COVER