This is done to avoid potential attacks by incorporating ZIP archives into the signature body. The WinRAR program and the ZIP SFX module refuse to extract the contents in ZIP SFX archives if ZIP central directory is created following the beginning in Authenticode Digital Signature. This is to protect against any attacks through the inclusion of a ZIP archive within the body of the signature.Ĭontrary to -ad1, this does not create a distinct subfolder to store each archive unpacked.
ZIP SFX module is unable to handle SFX commands that are stored in archive comments if that comment is stored after the start of the digital signature of Authenticode. It only works in command line mode and doesn’t affect interactive WinRAR’s graphical interface, as well in the console version of RAR. For instance, “WinRAR x -imon2 arc name” will begin extraction on a second monitor. New -imon switch lets you select a specific monitor to display WinRAR progress and dialogues in commands line mode.