Correct me if I'm wrong but..
are you not prompted by windows that play_mp3.exe is attempting to execute and given the option to cancel it? If you're stupid enough to think "Ooh yes - I'll run this unrequested software to play a file that I've just downloaded from an unknown source" then no amount of security/anti virus solutions will ever save you.