{"id":113,"date":"2025-12-28T20:56:39","date_gmt":"2025-12-28T19:56:39","guid":{"rendered":"https:\/\/mybox.com\/help\/?post_type=manual_kb&#038;p=113"},"modified":"2026-06-09T04:04:18","modified_gmt":"2026-06-09T02:04:18","slug":"block-specific-attachments-in-emails","status":"publish","type":"manual_kb","link":"https:\/\/mybox.com\/help\/en\/knowledgebase\/block-specific-attachments-in-emails\/","title":{"rendered":"Block specific attachments in emails"},"content":{"rendered":"\n<div class=\"translation-block translation-block-merged\">\n<p class=\"wp-block-paragraph\">Email attachments are one of the most common ways malware is distributed. Blocking high-risk file types can help reduce the risk of malicious software reaching users&#8217; inboxes and improve the overall security of your email environment.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">This article explains which attachment types are commonly considered risky and why organizations may choose to block them.<\/p>\n\n\n\n<div id=\"ez-toc-container\" class=\"ez-toc-v2_0_86 ez-toc-wrap-left counter-hierarchy ez-toc-counter ez-toc-custom ez-toc-container-direction\">\n<div class=\"ez-toc-title-container\">\n<p class=\"ez-toc-title\" style=\"cursor:inherit\">Table of Contents<\/p>\n<span class=\"ez-toc-title-toggle\"><\/span><\/div>\n<nav><ul class='ez-toc-list ez-toc-list-level-1 ' ><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-1\" href=\"https:\/\/mybox.com\/help\/en\/knowledgebase\/block-specific-attachments-in-emails\/#Why_block_specific_attachments\" >Why block specific attachments?<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-2\" href=\"https:\/\/mybox.com\/help\/en\/knowledgebase\/block-specific-attachments-in-emails\/#Common_high-risk_attachment_types\" >Common high-risk attachment types<\/a><ul class='ez-toc-list-level-3' ><li class='ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-3\" href=\"https:\/\/mybox.com\/help\/en\/knowledgebase\/block-specific-attachments-in-emails\/#Executable_files\" >Executable files<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-4\" href=\"https:\/\/mybox.com\/help\/en\/knowledgebase\/block-specific-attachments-in-emails\/#Script_files\" >Script files<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-5\" href=\"https:\/\/mybox.com\/help\/en\/knowledgebase\/block-specific-attachments-in-emails\/#Macro-enabled_documents\" >Macro-enabled documents<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-6\" href=\"https:\/\/mybox.com\/help\/en\/knowledgebase\/block-specific-attachments-in-emails\/#Compressed_archives\" >Compressed archives<\/a><\/li><\/ul><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-7\" href=\"https:\/\/mybox.com\/help\/en\/knowledgebase\/block-specific-attachments-in-emails\/#Additional_considerations\" >Additional considerations<\/a><ul class='ez-toc-list-level-3' ><li class='ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-8\" href=\"https:\/\/mybox.com\/help\/en\/knowledgebase\/block-specific-attachments-in-emails\/#Password-protected_archives\" >Password-protected archives<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-9\" href=\"https:\/\/mybox.com\/help\/en\/knowledgebase\/block-specific-attachments-in-emails\/#Large_attachments\" >Large attachments<\/a><\/li><\/ul><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-10\" href=\"https:\/\/mybox.com\/help\/en\/knowledgebase\/block-specific-attachments-in-emails\/#Best_practices_for_handling_attachments\" >Best practices for handling attachments<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-11\" href=\"https:\/\/mybox.com\/help\/en\/knowledgebase\/block-specific-attachments-in-emails\/#Practical_implications\" >Practical implications<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-12\" href=\"https:\/\/mybox.com\/help\/en\/knowledgebase\/block-specific-attachments-in-emails\/#Summary\" >Summary<\/a><\/li><\/ul><\/nav><\/div>\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Why_block_specific_attachments\"><\/span>Why block specific attachments?<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<\/div>\n\n<div id=\"mybox-1472561109\" class=\"mybox-content mybox-entity-placement\"><div class=\"early-access-banner-inpost\">\r\n  <div class=\"banner-left-inpost\">\r\n    <div class=\"icon-box-inpost\">\r\n      <img decoding=\"async\" src=\"https:\/\/mybox.com\/help\/wp-content\/uploads\/2026\/02\/square-info-icon.svg\" alt=\"Info\">\r\n    <\/div>\r\n    <div class=\"text-box-inpost\">\r\n      <span class=\"label-inpost\"><span class=\"translation-block translation-block-banner-text\">Early access<\/span><\/span>\r\n      <h4><span class=\"translation-block translation-block-banner-text\">Still need help?<\/span><\/h4>\r\n      <p><span class=\"translation-block translation-block-banner-text\">Contact our customer service team.<\/span><\/p>\r\n    <\/div>\r\n  <\/div>\r\n\r\n  <div class=\"banner-right-inpost\">\r\n    <a href=\"https:\/\/panel.mybox.com\/helpdesk2\/v\/list\/\" class=\"banner-button-inpost\"><span class=\"translation-block translation-block-banner-text\">Message us<\/span><\/a>\r\n  <\/div>\r\n<\/div><\/div>\n\n<div class=\"translation-block translation-block-merged\"><p class=\"wp-block-paragraph\">Some file types can execute code directly on a computer or trigger automated actions when opened. If a malicious file reaches a user&#8217;s inbox and is opened, it may install malware, steal data, or compromise the device.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Blocking these file types before delivery reduces the likelihood of accidental execution and helps protect users from common email-based threats.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Common_high-risk_attachment_types\"><\/span>Common high-risk attachment types<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">While any file can potentially be harmful, certain attachment types are more frequently used in phishing and malware campaigns.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Executable_files\"><\/span>Executable files<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Examples:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>.exe<\/li>\n\n\n\n<li>.com<\/li>\n\n\n\n<li>.bat<\/li>\n\n\n\n<li>.msi<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">These files are designed to run programs directly on a computer. For this reason, they are often blocked by email providers and security systems.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Script_files\"><\/span>Script files<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Examples:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>.vbs<\/li>\n\n\n\n<li>.js<\/li>\n\n\n\n<li>.ps1<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">Script files can automate actions on a device and may be used to download or execute malicious software.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Macro-enabled_documents\"><\/span>Macro-enabled documents<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Examples:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>.docm<\/li>\n\n\n\n<li>.xlsm<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">These file types can contain embedded macros that perform automated actions when opened. In some cases, attackers use malicious macros to compromise systems.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Compressed_archives\"><\/span>Compressed archives<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Examples:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>.zip<\/li>\n\n\n\n<li>.rar<\/li>\n\n\n\n<li>.7z<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">Archives are commonly used for legitimate file sharing, but they can also be used to hide malicious files from basic filtering mechanisms.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Additional_considerations\"><\/span>Additional considerations<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<h3 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Password-protected_archives\"><\/span>Password-protected archives<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Encrypted archives cannot always be inspected by email security systems because their contents are protected by a password.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">If you receive an unexpected password-protected archive, verify its source before opening it.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Large_attachments\"><\/span>Large attachments<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Unusually large attachments may not necessarily be malicious, but they can create storage and delivery issues. Many organizations choose to enforce attachment size limits as part of their email security policies.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Best_practices_for_handling_attachments\"><\/span>Best practices for handling attachments<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">To improve email security:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Do not open unexpected attachments from unknown senders.<\/li>\n\n\n\n<li>Verify suspicious files through a separate communication channel.<\/li>\n\n\n\n<li>Scan downloaded files with security software before opening them.<\/li>\n\n\n\n<li>Keep operating systems and antivirus software up to date.<\/li>\n\n\n\n<li>Use cloud storage links when sharing large files instead of email attachments.<\/li>\n<\/ul>\n\n\n\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Practical_implications\"><\/span>Practical implications<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">Blocking high-risk attachment types helps reduce the likelihood of malware reaching users through email. However, attachment filtering should be combined with other security measures such as spam filtering, antivirus protection, user awareness training, and email authentication technologies.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">No single security measure eliminates all threats, but a layered approach can significantly reduce risk.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Summary\"><\/span>Summary<span class=\"ez-toc-section-end\"><\/span><\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">Certain attachment types are commonly associated with malware distribution and phishing campaigns. By identifying and restricting high-risk file formats, organizations can strengthen email security and reduce the risk of malicious files being opened by users.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Attachment filtering is most effective when combined with broader email security practices and user awareness.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n<\/div>\n","protected":false},"author":1,"featured_media":0,"parent":0,"menu_order":0,"template":"","format":"standard","manualknowledgebasecat":[41,45],"manual_kb_tag":[4123,4124,4125,4126,4127,4128,4129,246,811,4122],"class_list":["post-113","manual_kb","type-manual_kb","status-publish","format-standard","hentry","manualknowledgebasecat-email","manualknowledgebasecat-errors-sending-messages","manual_kb_tag-blocked-attachments","manual_kb_tag-file-extensions","manual_kb_tag-executable-files","manual_kb_tag-malicious-attachments","manual_kb_tag-malware-protection","manual_kb_tag-compressed-files","manual_kb_tag-double-extensions","manual_kb_tag-email-security","manual_kb_tag-phishing-prevention","manual_kb_tag-attachment-blocking"],"_links":{"self":[{"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/manual_kb\/113","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/manual_kb"}],"about":[{"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/types\/manual_kb"}],"author":[{"embeddable":true,"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/users\/1"}],"version-history":[{"count":3,"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/manual_kb\/113\/revisions"}],"predecessor-version":[{"id":4877,"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/manual_kb\/113\/revisions\/4877"}],"wp:attachment":[{"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/media?parent=113"}],"wp:term":[{"taxonomy":"manualknowledgebasecat","embeddable":true,"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/manualknowledgebasecat?post=113"},{"taxonomy":"manual_kb_tag","embeddable":true,"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/manual_kb_tag?post=113"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}