Full Disclosure mailing list archives
Re: Z***ING EMAILS !
From: "I.R. van Dongen" <vdongen () hetisw nl>
Date: Sat, 06 Mar 2004 19:04:48 +0100
http-equiv () excite com wrote:
Saturday, March 06, 2004The seems to be a lot of excitement at the moment regarding .zip files and emails. What if the actual .zip file is the email or the email is the actual .zip file:MIME-Version: 1.0 Content-Type: application/x-zip-compressed Content-Transfer-Encoding: binaryX-Source: 06.03.04 http://www.malware.comPK ¯.áSÃâ D malware.exeí•[Lf†_Qk ÇŽ#Ì002†áðªµ, €ˆUlQWorking example: http://www.malware.com/eml.zip
How would this work? afaik no emailsoftware will unpack a zip archive by default.Even then, It has to be passwordless zip, and the zip will be unpacked by the virusscanner too.
Gr, Ivo _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.netsys.com/full-disclosure-charter.html
Current thread:
- Z***ING EMAILS ! http-equiv () excite com (Mar 06)
- Re: Z***ING EMAILS ! I.R. van Dongen (Mar 06)
- Re: Z***ING EMAILS ! Paul Schmehl (Mar 06)
