Wilders Security Forums  

Go Back   Wilders Security Forums > Software, Hardware and General Services > sandboxing & virtualization
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #26  
Old December 1st, 2010, 08:37 PM
Cutting_Edgetech's Avatar
Cutting_Edgetech Cutting_Edgetech is offline
Very Frequent Poster
 
Join Date: Mar 2006
Location: USA
Posts: 1,728
Default Re: Trustware’s Holiday Giveaway- BufferZone Pro for Free

Quote:
Originally Posted by jdixon2278
I never heard of BufferZone before, but because it is free, I thought I would try it in a virtual machine. My conclusion: be careful with BufferZone.

I installed BufferZone and ran IE in the buffer and downloaded Cpu-Z and installed it with the Ask toolbar (also executed in the buffer). The toolbar showed up in the buffered IE as expected, BUT it also showed up when I unloaded the program and ran IE regularly. The Ask toolbar got installed on the real system.

To make sure I wasn't imagining things, I tried the same steps with Sandboxie. The Ask toolbar existed inside the sandbox, but did not exist when running IE regularly.
Jdixon2278, Thanks for the heads up!
__________________
Netgear Prosecure UTM25 | Online Armor | NOD 32 | Appguard | VoodooShield | Shadow Defender 1.1.0.325
  #27  
Old December 1st, 2010, 09:59 PM
acr1965's Avatar
acr1965 acr1965 is offline
Massive Poster
 
Join Date: Oct 2006
Posts: 4,432
Default Re: Trustware’s Holiday Giveaway- BufferZone Pro for Free

Does this seem to slow down a computer at all?
__________________
"Being safe on the internet is a lot like being safe in real life. Always have a back-up plan and be careful where you stick your pointer." -- anonymous (but probably not Anonymous)
  #28  
Old December 2nd, 2010, 01:02 AM
Rilla927's Avatar
Rilla927 Rilla927 is offline
Very Frequent Poster
 
Join Date: May 2005
Posts: 1,620
Default Re: Trustware’s Holiday Giveaway- BufferZone Pro for Free

Thanks for the heads up. Do they send you a license code?
__________________
~Rilla927~
  #29  
Old December 2nd, 2010, 01:42 PM
Chuck57 Chuck57 is offline
Very Frequent Poster
 
Join Date: Sep 2002
Location: New Mexico, USA
Posts: 1,358
Default Re: Trustware’s Holiday Giveaway- BufferZone Pro for Free

Quote:
Originally Posted by acr1965
Does this seem to slow down a computer at all?

I'm running it on a Dell Inspiron 1525, cheapie model with 2G RAM, Vista HP 32 bit. No slowdown at all. In fact, the computer boots faster and even with MSIE 8, it's quicker than when using my old combo of ZA Pro and AVAST, both of which are gone.

I'm relying on BZ to protect, along with a couple of free on demand programs, MBAM and Hitman Pro as backups. I ran an older version of BZ a while back. Never had anything get through. I empty the bufferzone each day, just as I delete sandboxie files at the end of the day. I like BZ, always have.
__________________
"If guns are outlawed, only the government will have guns. Only the police, the secret police and the military.... Only the government - and the outlaws. I intend to be among the outlaws." - Edward Abbey
  #30  
Old December 2nd, 2010, 02:12 PM
acuariano acuariano is offline
Frequent Poster
 
Join Date: Nov 2005
Posts: 786
Default Re: Trustware’s Holiday Giveaway- BufferZone Pro for Free

has this benn tested with serious threats?
  #31  
Old December 2nd, 2010, 02:42 PM
acr1965's Avatar
acr1965 acr1965 is offline
Massive Poster
 
Join Date: Oct 2006
Posts: 4,432
Default Re: Trustware’s Holiday Giveaway- BufferZone Pro for Free

Quote:
Originally Posted by Chuck57
I'm running it on a Dell Inspiron 1525, cheapie model with 2G RAM, Vista HP 32 bit. No slowdown at all. In fact, the computer boots faster and even with MSIE 8, it's quicker than when using my old combo of ZA Pro and AVAST, both of which are gone.

I'm relying on BZ to protect, along with a couple of free on demand programs, MBAM and Hitman Pro as backups. I ran an older version of BZ a while back. Never had anything get through. I empty the bufferzone each day, just as I delete sandboxie files at the end of the day. I like BZ, always have.

thanks for the info
__________________
"Being safe on the internet is a lot like being safe in real life. Always have a back-up plan and be careful where you stick your pointer." -- anonymous (but probably not Anonymous)
  #32  
Old December 3rd, 2010, 04:29 AM
Trustware Trustware is offline
Infrequent Poster
 
Join Date: Jun 2006
Posts: 15
Default Re: Trustware’s Holiday Giveaway- BufferZone Pro for Free

Hello,

In regards to the Ask Toolbar - BufferZone has a new feature which allows you to select whether a signed installer will be installed Inside or Outside BufferZone.

You can go to the Policy tab of BufferZone and select the relevant level for you.

** Maximum protection **

o All programs will automatically be installed inside BufferZone

o BufferZone will not prompt for confirmation

o Recommended only when most strict protection is required

** Notify All **

o BufferZone will prompt for destination before every installation

o Recommended when manual control is required

** Notify Unsigned **

o Signed programs will automatically be installed outside of BufferZone

o BufferZone will prompt for destination before installing unsigned programs

** Automatic (Default) **

o Signed programs will be installed outside BufferZone

o Unsigned programs will be installed inside BufferZone

o BufferZone will not prompt for confirmation

o Recommended for most situations

** No Protection **

o All programs will automatically be installed outside of BufferZone

o Not recommended
  #33  
Old December 3rd, 2010, 04:31 AM
Trustware Trustware is offline
Infrequent Poster
 
Join Date: Jun 2006
Posts: 15
Default Re: Trustware’s Holiday Giveaway- BufferZone Pro for Free

In regards to 64 bit support -
BufferZone currently supports 32 bit operating systems.
64 bit support is planned for the Q1 2011.
  #34  
Old December 3rd, 2010, 05:00 AM
Boyfriend Boyfriend is offline
Very Frequent Poster
 
Join Date: Jun 2010
Location: Pakistan
Posts: 1,071
Default Re: Trustware’s Holiday Giveaway- BufferZone Pro for Free

Thanks Trustware for info In my tests, Ask toolbar was permanently installed too with out of box configuration. I will check it with modified BZ configuration.
BTW, Is Ask toolbar digitally signed?
__________________
Windows 8 Pro x64 + Kaspersky Internet Security 2013 + Shadow Defender 1.2.0.376 + Sandboxie 3.76
  #35  
Old December 3rd, 2010, 10:17 AM
Kees1958's Avatar
Kees1958 Kees1958 is offline
Massive Poster
 
Join Date: Jul 2006
Posts: 5,857
Default Re: Trustware’s Holiday Giveaway- BufferZone Pro for Free

Most important settings

1. Specify installers from untrusted sources (e.g. IE and USB to run inside BZ when installers are NOT signed
Attached Images
 
  #36  
Old December 3rd, 2010, 10:18 AM
Kees1958's Avatar
Kees1958 Kees1958 is offline
Massive Poster
 
Join Date: Jul 2006
Posts: 5,857
Default Re: Trustware’s Holiday Giveaway- BufferZone Pro for Free

2. When trusted programs drop down a new executable, run unknown INside BZ (works the same as CIS Sandbox)
Attached Images
 
  #37  
Old December 3rd, 2010, 10:19 AM
Kees1958's Avatar
Kees1958 Kees1958 is offline
Massive Poster
 
Join Date: Jul 2006
Posts: 5,857
Default Re: Trustware’s Holiday Giveaway- BufferZone Pro for Free

3 Run scripts inside BZ sandbox
Attached Images
 
  #38  
Old December 3rd, 2010, 10:20 AM
Kees1958's Avatar
Kees1958 Kees1958 is offline
Massive Poster
 
Join Date: Jul 2006
Posts: 5,857
Default Re: Trustware’s Holiday Giveaway- BufferZone Pro for Free

4 Allow or DENY untrusted programs to go outbound (allow should be after deny)
In this example Chrome is allowed outbound
Attached Images
 
  #39  
Old December 3rd, 2010, 10:22 AM
Kees1958's Avatar
Kees1958 Kees1958 is offline
Massive Poster
 
Join Date: Jul 2006
Posts: 5,857
Default Re: Trustware’s Holiday Giveaway- BufferZone Pro for Free

enjoy this freeware on x32 bits See pic on how to set confifential files/folders

Now you know the basics you don't have to be cautious (beware a signed ask bar installs yes that is correct, it is the default setting, until you clear the BZ sandbox as Franklin so kindly showed you) RTFM

Franklin tip: http://www.wilderssecurity.com/showp...9&postcount=18 also important to know (BZ does not clear the sandbox by default, but leaves it as is, until you clear it, it is not Sandboxie, it is a cross over of Avast/CIS sandbox, SBIE and GW).
Attached Thumbnails
Click image for larger version

Name:	5.png
Views:	19
Size:	154.4 KB
ID:	223773  


Last edited by Kees1958 : December 3rd, 2010 at 06:41 PM.
  #40  
Old December 4th, 2010, 02:07 AM
Rilla927's Avatar
Rilla927 Rilla927 is offline
Very Frequent Poster
 
Join Date: May 2005
Posts: 1,620
Default Re: Trustware’s Holiday Giveaway- BufferZone Pro for Free

Thanks Kees very informative.

I have never run this program before so I have a question or two.

Are you able to save your bookmarks and certain things in browser profiles? I see this has a FW. You guys run this a long your normal FW?
__________________
~Rilla927~
  #41  
Old December 4th, 2010, 03:19 AM
Basic's Avatar
Basic Basic is offline
Regular Poster
 
Join Date: Jul 2004
Posts: 101
Default Re: Trustware’s Holiday Giveaway- BufferZone Pro for Free

Thank you Kees1958 for your informative post here and in your BufferZone second thoughts thread. Makes me want to try it again.

My problem with Bufferzone is minor and cosmetic. Bufferzone does not seem to recognize that my taskbar is at the top of my desktop instead of at the bottom. Attempts to move the sandboxed windows when they are maximized are to no avail.

I know the easy fix is to move taskbar to the bottom of the screen but I happen to like it at the top. Running XP SP3.
  #42  
Old December 4th, 2010, 03:21 AM
Kees1958's Avatar
Kees1958 Kees1958 is offline
Massive Poster
 
Join Date: Jul 2006
Posts: 5,857
Default Re: Trustware’s Holiday Giveaway- BufferZone Pro for Free

Quote:
Originally Posted by Rilla927
Thanks Kees very informative.

I have never run this program before so I have a question or two.

Are you able to save your bookmarks and certain things in browser profiles? I see this has a FW. You guys run this a long your normal FW?

Yes, these are excluded by default (at least in older Pro versions, I could see it was excluded in the XML steering tables).

Well, when you run XP/Vista/Windows FW as inbound, it is a nice outbound protection addition. When you tell all unsigned programs to run inside BZ (as shown in the screen prints), it is effectively an outbound application filter for unsigned programs. Make sure you add your email and webbrowsers in the BZ firewall.

Regards Kees
  #43  
Old December 4th, 2010, 03:38 AM
Rilla927's Avatar
Rilla927 Rilla927 is offline
Very Frequent Poster
 
Join Date: May 2005
Posts: 1,620
Default Re: Trustware’s Holiday Giveaway- BufferZone Pro for Free

What do they mean by unsigned and signed programs? This looks like a nifty program. I'm using Vista.
__________________
~Rilla927~
  #44  
Old December 4th, 2010, 05:18 AM
Franklin's Avatar
Franklin Franklin is offline
Very Frequent Poster
 
Join Date: May 2005
Location: West Aussie
Posts: 2,517
Default Re: Trustware’s Holiday Giveaway- BufferZone Pro for Free

If you want to test malware via BZ then you need all programs to connect out so any lovely malware extras can be downloaded.

I find it easier to have a shortcut on desktop to BZ's working folder where I can drag and drop anything then execute.
  #45  
Old December 4th, 2010, 07:00 AM
Technical's Avatar
Technical Technical is offline
Frequent Poster
 
Join Date: Oct 2003
Location: Brazil
Posts: 471
Default Re: Trustware’s Holiday Giveaway- BufferZone Pro for Free

Can I save a file out of the sandbox?
I mean, can I download and save files from Internet or I need to turn off Buffer Zone to do so?
__________________
avast! team member
  #46  
Old December 4th, 2010, 07:46 AM
Kees1958's Avatar
Kees1958 Kees1958 is offline
Massive Poster
 
Join Date: Jul 2006
Posts: 5,857
Default Re: Trustware’s Holiday Giveaway- BufferZone Pro for Free

@Franklin,

You old bugger. Look at the questions people are asking: it is on the primary functions of BZ. You are giving them advice of a pro or at least someone who knows how to play with malware. Have some consideration


@Others

Bufferzone is a cross over of a application sandbox like Sandboxie and Sandbox of Comodo or Avast.

Comodo/Avast like sandboxing
Signed programs are generally safe to execute (although Avast has reported malware which was included in some signed software, but that is an exception). Bufferzone offers protection for your complete system on:
a) executing new programs, downloaded by by safe programs
Which are unsigned in the Bufferzone sandbox (see post http://www.wilderssecurity.com/showp...7&postcount=36 )
b) execution of scripts, downloaded by safe programs inside the sandbox (also system wide protection) see http://www.wilderssecurity.com/showp...8&postcount=37


Sandboxie like application virtualisation with containment coverage like GesWall and DefenseWall
c) In stead of individual sandboxes for each application, BZ applies application virtualisation like GeSWall and DefenseWall apply it for all untrusted programs. (see top http://www.wilderssecurity.com/showp...6&postcount=35 )
d) Like DefenseWall you can set USB as threatgate or untrusted source also, meaning that unsigned programs are kept in the sandbox, signed are executed outside sandbox (same applies for internet facing contained BufferZoned programs) see bottem of http://www.wilderssecurity.com/showp...6&postcount=35

e) Next you can specify to control outbound internet connections of bufferzoned objects (programs, USB-drives, scripts) see http://www.wilderssecurity.com/showp...9&postcount=38

f) With right click command you can run a program in/outside the sandbox or move a file or a folder outside the sandbox. You can also tell Bufferzone to clear the sandbox (see http://www.wilderssecurity.com/showp...9&postcount=18 ) OR recover a saved sandbox 'snapshot'

Yes Bufferzone keeps sandboxed data by default, you have to clear (empty) it yourself. BZ also does a reasonable job installing programs in the sandbox. Those 'SNAPSHOTS' can be saved or recovered.


There is also an option to specify confidential folders (like GeSWall and DefenseWall) see http://www.wilderssecurity.com/showp...0&postcount=39 Untrusted objects are not allowed to access them.

For an application virtualisation unique feature: is the option to protect you from KEYLOGGERS (only on Internet Explorer) using the PRIVACY option (just specify the URL's you want to defend).
Attached Images
 

Last edited by Kees1958 : December 4th, 2010 at 08:16 AM.
  #47  
Old December 4th, 2010, 12:05 PM
taleblou taleblou is offline
Frequent Poster
 
Join Date: Jan 2010
Posts: 302
Question Re: Trustware’s Holiday Giveaway- BufferZone Pro for Free

Hi:
It seems bufferzone pro is very heavy and unusable on my windows xp pro sp3 pc. I tried it yesterday on a newly formatted pc and it slowed my windows to a crawl and froze it many times and made the bootup very lengthy and made normal operation useless. I had to manually shut down and return to a good snap shot on CTM to get rid of it. SO anyone here with win xp sp3 having the same issues or are there any possible way to resolve this. My pc has only 1.5GB of ddr2 ram and do not know if thats enough for bufferzone or not? Any help or inside into this is welcommed.
  #48  
Old December 4th, 2010, 12:39 PM
SafetyFirst's Avatar
SafetyFirst SafetyFirst is offline
Frequent Poster
 
Join Date: Jan 2007
Posts: 460
Default Re: Trustware’s Holiday Giveaway- BufferZone Pro for Free

Cheers, I don't have time to investigate in details, so please advise:

if I use Sandboxie, DefenseWall and Shadow Defender can/should I add BufferZone?
  #49  
Old December 4th, 2010, 12:42 PM
Scoobs72 Scoobs72 is offline
Very Frequent Poster
 
Join Date: Jul 2007
Location: Sofa (left side)
Posts: 1,084
Default Re: Trustware’s Holiday Giveaway- BufferZone Pro for Free

Quote:
Originally Posted by SafetyFirst

if I use Sandboxie, DefenseWall and Shadow Defender can/should I add BufferZone?

Short answer - no, you shouldn't.
  #50  
Old December 4th, 2010, 01:10 PM
SafetyFirst's Avatar
SafetyFirst SafetyFirst is offline
Frequent Poster
 
Join Date: Jan 2007
Posts: 460
Default Re: Trustware’s Holiday Giveaway- BufferZone Pro for Free

Quote:
Originally Posted by Scoobs72
Short answer - no, you shouldn't.
Thank you.
 

Wilders Security Forums > Software, Hardware and General Services > sandboxing & virtualization « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 12:32 AM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums