Traditionally I've been against scanning archives OAS - I think it causes too much overhead for a (very minor) improvement in safety. [Believe the view that an archive is not actually executable itself, so rely on the OAS to instead actually stop the threat being run out of the container]
So - do you have Archive Scanning enabled? If so - why?
If you don't do regular ODS sweeps, does this change your opinion?