VIRUS: Win32 Executable Attachment in Zip File

This signature detects uncompressed Win32 executables sent within a ZIP file as a MIME attachment. Many viruses, worms, and other malicious programs are transmitted through SMTP attachments. You might want to block all executable attachments.

Extended Description

The impact on the target system is dependent on the instructions contained in the malicious zip file.

Short Name
VIRUS:SMTP:EXE-IN-ZIP
Severity
Minor
Recommended
False
Recommended Action
None
Category
VIRUS
Keywords
Attachment Executable File Win32 Zip in
Release Date
01/28/2004
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3375
False Positive
Unknown

Found a potential security threat?