Is "Decode" option secure ?

Posted: Mon Jun 03, 2002 11:54 pm
by Gerapa
Hi all,

Is there a risk to use the "Decode preview message" option ? Could some script or active X virus be run if this option is in use ?

Thanks for the help,


Posted: Tue Jun 04, 2002 3:00 am
by Curtz
It is just decoded as text as far as I know, not executed or send to a HTML viewer or anyting... it is why I use it to view mails that I don't really trust...

Posted: Sat Jun 15, 2002 6:21 am
by Gerapa
Ok, thank you very much for your answer.


Posted: Thu Jun 20, 2002 6:39 pm
by ilNebbioso
My experience with PopTray says that my Norton Antivirus Corporate Edition 7.6 stops decoding of infected files while previewing....

Curtz, isn't it totally different from what you say? :oops:


Posted: Thu Jun 20, 2002 7:44 pm
by Curtz
The real issue here is: can poptrays decoder EXECUTE attachments or HTML code. I think not. I just think Norton recoqnizes a virus pattern in the data that poptray retrieves, but I can hardly imagine that PopTray can execute any code.


Posted: Thu Jun 20, 2002 7:50 pm
by Renier
No, PopTray never executes any HTML. I've had requests to show the HTML message (using IE component), but I don't want to include that into PopTray.

The Indy component that PopTray uses saves the attachments to disk when you preview, and NAV recognizes the virus then.

Posted: Fri Jun 21, 2002 5:12 am
by Gerapa
Thank you again all and Renier for the clear answers. I have now turned the option "ON" with no fear.