Wilders Security Forums  

Go Back   Wilders Security Forums > Software, Hardware and General Services > sandboxing & virtualization
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #26  
Old August 31st, 2012, 04:21 PM
AlexC's Avatar
AlexC AlexC is offline
Very Frequent Poster
 
Join Date: Apr 2009
Posts: 1,111
Default Re: What is Sandboxie and how / when to use it?

I also recommend Sandboxie to people who insist to run keygens and say that the AV detections of this kind of software are always false positives.

By running them sandboxed they prevent that the OS get infected, and also are able to see what's going on behind the curtains.

All that is needed to do is to click in the taskbar icon and see the files and registry entries that would be created in the "real" system by the supposed "harmless" keygen...
__________________
Linux Mint 13 MATE x64
  #27  
Old August 31st, 2012, 07:21 PM
mick92z's Avatar
mick92z mick92z is offline
Frequent Poster
 
Join Date: Apr 2007
Location: In the box
Posts: 353
Default Re: What is Sandboxie and how / when to use it?

Quote:
Originally Posted by AlexC
I also recommend Sandboxie to people who insist to run keygens and say that the AV detections of this kind of software are always false positives.

By running them sandboxed they prevent that the OS get infected, and also are able to see what's going on behind the curtains.

All that is needed to do is to click in the taskbar icon and see the files and registry entries that would be created in the "real" system by the supposed "harmless" keygen...
While I agree that people should run possibly dangerous files sandboxed, the mentality of people running cracks and keygens, never fails to astound me. Sandboxie, itself is subject to being exploited. So are you advocating someone running a keygen for sandboxie, sandboxed ? One such person even posted on the sandboxie forum recently, and wanted to know why his ' key ' was rejected
  #28  
Old August 31st, 2012, 09:47 PM
AlexC's Avatar
AlexC AlexC is offline
Very Frequent Poster
 
Join Date: Apr 2009
Posts: 1,111
Default Re: What is Sandboxie and how / when to use it?

Quote:
Originally Posted by mick92z
So are you advocating someone running a keygen for sandboxie, sandboxed ?
Lool! No! Where did you get that? I only meant what i said in the post.

And Tzuk really deserves to be well paid for the exceptionally great software he develops.


Quote:
Originally Posted by mick92z
One such person even posted on the sandboxie forum recently, and wanted to know why his ' key ' was rejected
What a nerve!
__________________
Linux Mint 13 MATE x64
  #29  
Old September 8th, 2012, 09:06 AM
TomFace's Avatar
TomFace TomFace is offline
Regular Poster
 
Join Date: Jan 2011
Location: USA/Ohio
Posts: 73
Default Re: What is Sandboxie and how / when to use it?

From what I have read, Sandboxie sounds pretty cool (I have a little knowledge so that makes me dangerous in a "runs with scissors" kind of way!).

Is http://www.sandboxie.com/ "THE" official website?
__________________
Sincerely,

TomFace

Panic = Chaos/Fools rush in where Angels fear to tread
Win 7 x64 Home Prem/IE 9 - ESS 6.0.316 - HitmanPro - MBAM Pro - EEK - Sandboxie - SAS Free - Microsoft SS
  #30  
Old September 8th, 2012, 09:21 AM
mick92z's Avatar
mick92z mick92z is offline
Frequent Poster
 
Join Date: Apr 2007
Location: In the box
Posts: 353
Default Re: What is Sandboxie and how / when to use it?

Quote:
Originally Posted by Tomface
From what I have read, Sandboxie sounds pretty cool
Absolutely

Quote:
Originally Posted by Tomface

Is http://www.sandboxie.com/ "THE" official website?
Yes.
  #31  
Old September 8th, 2012, 10:07 AM
TomFace's Avatar
TomFace TomFace is offline
Regular Poster
 
Join Date: Jan 2011
Location: USA/Ohio
Posts: 73
Default Re: What is Sandboxie and how / when to use it?

Thanks mick92z-wanted to be sure-we'll check it out!
__________________
Sincerely,

TomFace

Panic = Chaos/Fools rush in where Angels fear to tread
Win 7 x64 Home Prem/IE 9 - ESS 6.0.316 - HitmanPro - MBAM Pro - EEK - Sandboxie - SAS Free - Microsoft SS
  #32  
Old September 8th, 2012, 10:55 AM
mattbiernat mattbiernat is offline
Regular Poster
 
Join Date: Aug 2012
Location: U.S.
Posts: 179
Default Re: What is Sandboxie and how / when to use it?

A couple of other options to Sandboxie you might want to consider:
1) Bufferzone - very similar to sandboxie except that there is no configuration, everything works out of the box and new programs are automatically added to the sandbox
2) Rollback Rx (14 days free) , Comodo Time Machine (free) - basically this one takes a quick snapshot of your system, so if you get a malware or virus you can restore in 20 seconds
3) DeepFreeze (30 days free), Shadow Defender (works only with HDDs), Toolwiz Time Freeze (weak rootkit protection but free and probably will get one sooner rather than later) - these guys are light visualization. Basically they are like sandboxie but for your entire computer, that way you can install whatever you like into the Windows and after restart everything is back to normal.
  #33  
Old September 8th, 2012, 01:54 PM
bo elam bo elam is offline
Very Frequent Poster
 
Join Date: Jun 2010
Posts: 1,043
Default Re: What is Sandboxie and how / when to use it?

Quote:
Originally Posted by Tomface
From what I have read, Sandboxie sounds pretty cool
Tom, a lot of programs sound pretty cool, SBIE not only sounds pretty cool it actually it is pretty cool.

In my case, my internet experinece can be divided in two parts. Before and after Sandboxie. Before, I use to get infected all the time and always wondered why?, why, am I getting infected?, I was using the best protection/AV money can buy and still was getting infected. That changred the day I discovered and started using SBIE. Its been almost 4 years since my last infection and I know for sure that as long as I use SBIE the way that it is supposed to be used, infections belong in my past.

Enjoy the sandbox.

Bo
  #34  
Old September 8th, 2012, 02:05 PM
TomFace's Avatar
TomFace TomFace is offline
Regular Poster
 
Join Date: Jan 2011
Location: USA/Ohio
Posts: 73
Default Re: What is Sandboxie and how / when to use it?

Bo & Matt-thanks for your input, it is appreciated-Bo this may sound silly, but I will ask anyway, I trust SBIE = Sandboxie? (yes I am old enough that I have to ask )
__________________
Sincerely,

TomFace

Panic = Chaos/Fools rush in where Angels fear to tread
Win 7 x64 Home Prem/IE 9 - ESS 6.0.316 - HitmanPro - MBAM Pro - EEK - Sandboxie - SAS Free - Microsoft SS
  #35  
Old September 8th, 2012, 03:48 PM
bo elam bo elam is offline
Very Frequent Poster
 
Join Date: Jun 2010
Posts: 1,043
Default Re: What is Sandboxie and how / when to use it?

Quote:
Originally Posted by Tomface
Bo & Matt-thanks for your input, it is appreciated-Bo this may sound silly, but I will ask anyway, I trust SBIE = Sandboxie? (yes I am old enough that I have to ask )
I am like you, I never take nothing for granted. Yes, SBIE is Sandboxie.

Take care.

Bo
  #36  
Old September 8th, 2012, 06:59 PM
RejZoR's Avatar
RejZoR RejZoR is offline
Polymorphic Sheep
 
Join Date: May 2004
Location: Europe/Slovenia/Ljubljana
Posts: 5,367
Default Re: What is Sandboxie and how / when to use it?

Anyone managed to find out how to click magnet links inside of sandboxed Firefox to launch an unsandboxed BitTorrent/uTorrent client?

I don't get it why this isn't transparent if you give direct access to uTorrent folders... things seems to break with the denied inject DLL thing and complaining about compatibility with avast!.

I really loved the restricted idea for browser but this incompatibility with Bittorrent/uTorrent is a real showstopper. Copying links and torrent files isn't exactly practical...
__________________
RejZoR's Little Secrets
  #37  
Old September 21st, 2012, 11:24 AM
Solarlynx's Avatar
Solarlynx Solarlynx is online now
Frequent Poster
 
Join Date: Jun 2011
Posts: 714
Default Re: What is Sandboxie and how / when to use it?

Quote:
Originally Posted by mattbiernat
A couple of other options to Sandboxie you might want to consider:
1) Bufferzone - very similar to sandboxie except that there is no configuration, everything works out of the box and new programs are automatically added to the sandbox
2) Rollback Rx (14 days free) , Comodo Time Machine (free) - basically this one takes a quick snapshot of your system, so if you get a malware or virus you can restore in 20 seconds
3) DeepFreeze (30 days free), Shadow Defender (works only with HDDs), Toolwiz Time Freeze (weak rootkit protection but free and probably will get one sooner rather than later) - these guys are light visualization. Basically they are like sandboxie but for your entire computer, that way you can install whatever you like into the Windows and after restart everything is back to normal.

One thing - Bufferzone isn't compatible with Comodo Time Machine and most probalbly with Rollback Rx as they use MBR.

SBIE is compatible with all enlisted progs!
  #38  
Old September 21st, 2012, 03:14 PM
jasonbourne's Avatar
jasonbourne jasonbourne is offline
Frequent Poster
 
Join Date: Aug 2010
Posts: 227
Default Re: What is Sandboxie and how / when to use it?

Quote:
Originally Posted by Solarlynx
One thing - Bufferzone isn't compatible with Comodo Time Machine and most probalbly with Rollback Rx as they use MBR.

SBIE is compatible with all enlisted progs!


I had an issue when i tried out Bufferzone Pro with CIS ver5.8 on a Win 7 x32 system. The boot was long and it went on for about 25 minutes with a "Please Wait-Welcome-Preparing your desktop" afterwards blackscreen. Nothing. Can't see anything.

With Avast free / Avast IS (with firewall enabled) BZ was fine though in Avast IS it felt a bit sluggish. Maybe it was the HIPS that was conflicting with the BZ firewall.

Sandboxie is the best here with less compatibility issues.
  #39  
Old September 21st, 2012, 09:49 PM
Solarlynx's Avatar
Solarlynx Solarlynx is online now
Frequent Poster
 
Join Date: Jun 2011
Posts: 714
Default Re: What is Sandboxie and how / when to use it?

Quote:
Originally Posted by jasonbourne
I had an issue when i tried out Bufferzone Pro with CIS ver5.8 on a Win 7 x32 system. The boot was long and it went on for about 25 minutes with a "Please Wait-Welcome-Preparing your desktop" afterwards blackscreen. Nothing. Can't see anything.

Me too had exactly the same thing when tried Bufferzone Pro with CIS 5.8 and Comodo Time Machine on XP 32bit. I thought it was because of CTM.
  #40  
Old September 25th, 2012, 08:05 AM
chronomatic chronomatic is offline
Very Frequent Poster
 
Join Date: Apr 2009
Posts: 1,324
Default Re: What is Sandboxie and how / when to use it?

Sandboxie will only be marginally effective. The reason it cannot provide real security is because it does not run at Ring 0 (i.e. it is not hooked directly into the kernel). Rather, it runs at the library level and does a lot of hooking. For this reason, an attacker could make direct syscalls and bypass it (because syscalls work at a lower level).

So I am not saying it is useless, but it cannot be as strong as something hooked directly into the kernel.
  #41  
Old September 25th, 2012, 08:14 AM
3x0gR13N 3x0gR13N is offline
Frequent Poster
 
Join Date: May 2008
Posts: 580
Default Re: What is Sandboxie and how / when to use it?

It does run from kernel.
  #42  
Old September 25th, 2012, 09:05 AM
Get's Avatar
Get Get is offline
Frequent Poster
 
Join Date: Nov 2009
Location: the Netherlands
Posts: 374
Default Re: What is Sandboxie and how / when to use it?

Quote:
Originally Posted by RejZoR
Copying links and torrent files isn't exactly practical...

Isn't sandboxing your torrentclient the smart thing to do? Download files sandboxed, scan it and when clean cut/paste it.
__________________
if I were you I wouldn't bother,
for there are brighter sides to life and I should know,
because I've seen them,
but not very often.
  #43  
Old September 25th, 2012, 03:04 PM
chronomatic chronomatic is offline
Very Frequent Poster
 
Join Date: Apr 2009
Posts: 1,324
Default Re: What is Sandboxie and how / when to use it?

Quote:
Originally Posted by 3x0gR13N
It does run from kernel.

From my understanding with the newer 64 bit versions it does not (due to Patchguard).
  #44  
Old September 25th, 2012, 03:27 PM
bo elam bo elam is offline
Very Frequent Poster
 
Join Date: Jun 2010
Posts: 1,043
Default Re: What is Sandboxie and how / when to use it?

chronomatic, my personal experience using SBIE proves you wrong when you say that Sandboxie "cannot provide real security". I stopped getting infected the day that I installed SBIE for the first time, almost four years ago. Despite knowing very little about computers and stopping using real time antiviruses or anything else along SBIE, I dont get infected anymore. Sure, I must be doing something right, I must of learn something this past four years but most of the credit for my computers to be 100% clean, belongs to Sandboxie.

Bo
  #45  
Old September 26th, 2012, 08:13 AM
3x0gR13N 3x0gR13N is offline
Frequent Poster
 
Join Date: May 2008
Posts: 580
Default Re: What is Sandboxie and how / when to use it?

Quote:
Originally Posted by chronomatic
From my understanding with the newer 64 bit versions it does not (due to Patchguard).
http://www.sandboxie.com/index.php?E...ntalProtection
 

Wilders Security Forums > Software, Hardware and General Services > sandboxing & virtualization « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 12:26 PM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums