> Here's a weird one that I just thought of...
> Would it be possible to imbed some executable code into the .ZIP
> comment that is in many .ZIP files that shows up before it's
> unzip'd (not the ones that show up after). I have been able to
> imbed ANSI as well as control characters (BELL, TAB, and so on)
> in mine, but I wonder if I changed it to binary, if it would
> infect/load when the file was unzip'd....
> Ideas anyone?
Naw .. zip utilities expect text in the .ZIP comment. They display it (using
one text display method or another), no way for it to EXEC.
You _could_ possibly install an ANSI bomb in the comments .. but that would
only catch the idiots that still have dangerous versions of ANSI drivers
installed.
Now, there _are_ some self-extracting archives that could be hacked or
infected, made to do 'orrible things during (or in lieu of) their user query
and/or extraction .. but I never run a self-extracting archive anyway. I
always use the original archiving tool to view, test, and extract the
mbers.
---
---------------
* Origin: Toad Hall (1:3634/2.4)
|