Mar 25 2021
06:23 PM
- last edited on
Feb 07 2023
07:39 PM
by
TechCommunityAP
Mar 25 2021
06:23 PM
- last edited on
Feb 07 2023
07:39 PM
by
TechCommunityAP
We have a Malware policy to block incoming htm and html attachments, just recently we have started to see incoming emails blocked because of an attachment called Nameless.htm.
Examples
It looks like this might be something that is being created by Office 365, Exchange Online when an email has a MS Word document attached to. These Word documents can be either type; .doc or docx. The source of these emails are both local applications and Web Apps.
Is anyone seeing something similar? Web searched have just three results for namless.htm.
Aug 31 2021 09:42 AM - edited Sep 03 2021 12:28 AM
Hello,
We have exactly the same behavior and filtering problem with ghost HTML attachments (nameless.htm) added to others attached documents.
It looks the same for PNG, PDF files etc: it seems to depends on the sender
Have you found a solution ?
Regards
Yann+
Mar 08 2022 01:05 AM
Mar 17 2022 12:09 PM
@Phraramond I believe one instance where this issue happens when the sender is using Apple Mail. If they place their attachments In-line (In the middle of their text) the text after the attachment will be sent as an htm attachment. If they have images in their signature, that can cause issues also.
I don't own any Apple products to test, but from my research the Apple mail sender can select Edit > Attachments > Always Send Windows-Friendly Attachments; and Always Insert Attachments at the End of Message.
Good luck trying to get an Apple user to alter their email attachment behavior to work with what they consider an inferior system (Anything not Apple). They do not care and they will find another company to do business with that doesn't block their emails. (Until that company gets ransomware, that is.)
I have raised a ticket with Microsoft (Which they closed without resolution.) to work with Apple to get this sorted out. We can't have htm, html, or eml attachments in this day and age. We need this issue to get addressed.
Apr 29 2022 11:58 AM
Please see the Feedback portal and Up Vote this topic.
https://feedbackportal.microsoft.com/feedback/idea/c931c674-29c7-ec11-a81b-000d3a00c008
Oct 31 2022 04:36 AM
Feb 20 2023 09:01 AM
Not sure if this is still an issue ,we resolved it & I thought I would share the solution
We encountered this issue in Feb of 2023.
1. Do not add .htm & html to the list of files in malware filter.
2. Create a transport rule as shown below.
Works like a charm
Mar 15 2023 08:02 AM
I wouldn't recommend doing this. How long do you think it will take for bad guys to figure this out and start naming their malicious attachments "Nameless.htm"?
Mar 15 2023 08:09 AM
Agreed , but I cannot see what else to do. MS and Apple are both saying it is the others problem.
This at least stops many
Mar 15 2023 08:25 AM
Fair enough. We wanted to maintain a safer approach so what I did instead is leave htm and html in the block list, but created a rule that notifies the user when (s)he receives a message with nameless.htm attachment.