Wilders Security Forums  

Go Back   Wilders Security Forums > Software, Hardware and General Services > sandboxing & virtualization
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #1  
Old October 16th, 2012, 11:19 AM
JohnMult's Avatar
JohnMult JohnMult is offline
Infrequent Poster
 
Join Date: Mar 2012
Posts: 42
Question Question about sandboxie settings

I use Sandboxie for surfing with chrome mainlly and i believe i am quite happy about it.
My question is if I can add in Resource Access -- File Access -- Blocked Access the executables:
1 taskmgr.exe (Task Manager)
2 regedit.exe (Registry Editor)
3 taskkill.exe (Task Killer)
4 mmc.exe (Microsoft Management Console)
5 wscript.exe (Windows Based Script Host)
I have already added my "Panda Security" Folder and "My Documents"
  #2  
Old October 16th, 2012, 02:16 PM
bo elam bo elam is offline
Very Frequent Poster
 
Join Date: Jun 2010
Posts: 1,041
Default Re: Question about sandboxie settings

Hi John, I have never block or set as read only any of the files you listed. Personally, I prefer to use the blocked access setting to block personal files and folders and use the read only setting for system files. Doing it like that, I don't get any messages from SBIE.

You could test it yourself and see what happens. If I was you, I would test one or two at a time and see if SBIE works fine. If it doesn't, set the resources as read only. Blocking the My Documents folders is OK.

Bo
  #3  
Old October 18th, 2012, 05:37 AM
PJC PJC is offline
Very Frequent Poster
 
Join Date: Feb 2010
Location: Internet
Posts: 2,962
Question Question about sandboxie settings

Why blocking these files?
For further security?
  #4  
Old October 18th, 2012, 01:35 PM
tomazyk's Avatar
tomazyk tomazyk is offline
Frequent Poster
 
Join Date: Dec 2006
Location: Slovenia
Posts: 601
Default Re: Question about sandboxie settings

I have blocked file access on my personal data only. I don't see much risk in reading access on those applications.
If you don't want those apps to be run in sandbox, you can try to create a list of allowed apps in Start/Run access.
__________________
ESET Nod32 AV • Sandboxie • EMET • OpenDNS
My security setup in detail
• Always remember you're unique, just like everyone else •

  #5  
Old November 1st, 2012, 01:11 AM
sweater's Avatar
sweater sweater is offline
Very Frequent Poster
 
Join Date: Jun 2005
Location: The Philippines, the New Jerusalem
Posts: 1,592
Default Re: Question about sandboxie settings

Maybe, you can check this proven & tested settings of ours:

http://www.wilderssecurity.com/showthread.php?t=310281
__________________
Eset NOD32 Sandboxie Firefox

"The Internet? We are not interested in it" - Bill Gates, 1993
http://www.gatesfoundation.org/Pages/home.aspx
“We are coming to think of God as dwelling in man rather than as operating on men from without.” - Lyman Abbott
  #6  
Old November 2nd, 2012, 12:20 AM
Amit's Avatar
Amit Amit is offline
Massive Poster
 
Join Date: May 2011
Location: Parallel Universe
Posts: 4,631
Default Re: Question about sandboxie settings

Quote:
Originally Posted by bo elam
Hi John, I have never block or set as read only any of the files you listed. Personally, I prefer to use the blocked access setting to block personal files and folders and use the read only setting for system files. Doing it like that, I don't get any messages from SBIE.

You could test it yourself and see what happens. If I was you, I would test one or two at a time and see if SBIE works fine. If it doesn't, set the resources as read only. Blocking the My Documents folders is OK.

Bo
Same here.
__________________
✓The first principle is that you must not fool yourself, and you are the easiest person to fool.
✓Science is the belief in the ignorance of experts.
✓I don't know anything, but I do know that everything is interesting if you go into it deeply enough.


-------Richard P. Feynman---------
  #7  
Old November 2nd, 2012, 01:12 PM
Jarmo P Jarmo P is offline
Frequent Poster
 
Join Date: Aug 2005
Posts: 473
Default Re: Question about sandboxie settings

I use Sandboxie in it's default setting and with experimental protection for 64 bit. Does it need any more strengthening if just mostly using as browser surfing?

The only thing I have allowed is 'Allow direct access to Firefox bookmark and history database' and 'Allow direct access to Google Chrome bookmark and history database'. It used to be that only bookmarks needed to allow but it has changed into needing to allow also the surfing history, which is not so good IMO?
__________________
Avast free, Firefox NoScript extension and internet applications "inside" Sandboxie.
  #8  
Old November 2nd, 2012, 09:24 PM
bo elam bo elam is offline
Very Frequent Poster
 
Join Date: Jun 2010
Posts: 1,041
Default Re: Question about sandboxie settings

Quote:
Originally Posted by Jarmo P
I use Sandboxie in it's default setting and with experimental protection for 64 bit. Does it need any more strengthening if just mostly using as browser surfing?
If I was using SBIE only for browsing, I would restrict the sandbox: allowing to run the browser and any program that I normally use while browsing, like for example, the Plugin container in Firefox or the PDF reader if its opened out of the browser. Also, I would only allow the browser to connect.

You ask if a default settings sandbox needs to be restricted. In my honest opinion, no, but it is a nice feeling when you are browsing and you know that nothing but what you allow to run, can run. I mean, nothing in the background will do nothing. In the almost four years that I have been using SBIE, I have never seen anything that looks like malware attempt to run. Never. I credit that to Sandboxies Start/Run restrictions.

Now, at the same time, I totally trust a default settings sandbox because most of the people that I know that are using Sandboxie, are using a default settings sandbox, they don't even know what restricting a sandbox is but don't get infected anymore. A couple of this friends always have their AV either disabled or not working but don't get infected. That kind of tells me that the default settings sandbox is working well for the average user.

Restricted or not, Sandboxies sandbox is great, IMO.

Bo
  #9  
Old November 2nd, 2012, 10:20 PM
jo3blac1's Avatar
jo3blac1 jo3blac1 is offline
Frequent Poster
 
Join Date: Sep 2012
Location: U.S.
Posts: 739
Default Re: Question about sandboxie settings

I enabled the option to empty sandbox whenever I close chrome. Besides that everything else is in default settings.
 

Wilders Security Forums > Software, Hardware and General Services > sandboxing & virtualization « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 04:24 PM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums