Trust No Program
Reply to topic
Flash Player Installer avoids having [#] when sandboxed
Anonymouse
Guest

Reply with quote
Sandboxie 3.74 on Windows 7 (x64)

Download the Flash Player Installer from http://get.adobe.com/flashplayer/download/?installer=Flash_Player_11_for_Other_Browsers&os=Windows%207&browser_type=Gecko&browser_dist=Firefox&d=McAfee_Security_Scan_Plus_FireFox_Browser&dualoffer=false

Make a sandbox that has the [#] indicators in the title.
Run the Flash Player Installer inside the Sandbox.
The Flash Player Installer won't have the [#] indicators.
Also, the Flash Player Installer manages to move itself to the Temp folder.
Brummelchen


Joined: 13 Oct 2008
Posts: 274
Reply with quote
some installers dont show that although sandboxed - return to common use...

_________________
-------------------------------------
you can not buy or install security!
View user's profileSend private message
Re: Flash Player Installer avoids having [#] when sandboxed
DR_LaRRY_PEpPeR


Joined: 04 Jul 2012
Posts: 124
Location: St. Louis area
Reply with quote
Anonymouse wrote:
The Flash Player Installer won't have the [#] indicators.


What Brummelchen said. Depending how it's creating its title bar, etc. (custom or non-standard). I notice that with QuickTime, for example.


Quote:
Also, the Flash Player Installer manages to move itself to the Temp folder.


Yeah, anything can put anything in the Temp folder. %TEMP% and %TMP% seem to be Direct Access in Sandboxie no matter what.
View user's profileSend private message
Re: Flash Player Installer avoids having [#] when sandboxed
Guest10


Joined: 27 Apr 2008
Posts: 4340
Location: Ohio, USA
Reply with quote
DR_LaRRY_PEpPeR wrote:
Yeah, anything can put anything in the Temp folder. %TEMP% and %TMP% seem to be Direct Access in Sandboxie no matter what.
Since when? I don't see it.

_________________
Paul
XP Pro SP3 (Admin rights), Zone Alarm Pro Firewall, Malwarebytes Pro, Firefox 21, Thunderbird 17
View user's profileSend private message
DR_LaRRY_PEpPeR


Joined: 04 Jul 2012
Posts: 124
Location: St. Louis area
Reply with quote
Don't "see" it, literally, in Direct Access you mean? I didn't mean that. Smile I meant that it seems to be a default "hidden" OpenFilePath internally. (And since I started using it, which isn't long ago. Laughing)


I don't really like it. Especially that files there don't count as "in the sandbox" when using Start/Run Access (for me: *.exe or *.*). Put something there and it can be started... In my case, I'll just assume SRP isn't bypassed and processes running without admin privs can't run anything from there anyway. Very Happy (Even though I'm using XP as admin, I'm using a little trick with registry permissions to get 2 sets of SRP rules; everything allowed as true admin.)

I already don't like how Sandboxie allows otherwise protected files (in Windows and Program Files) to be modified in the sandbox, therefore weakening things a bit from inside a sandbox. Start/Run Access doesn't solve anything for DLLs... Mad
View user's profileSend private message
tzuk


Joined: 22 Jun 2004
Posts: 14999
Reply with quote
What are you talking about. Question
%TEMP% and %TMP% are not built-in exclusions. Exclamation

_________________
tzuk
View user's profileSend private message
DR_LaRRY_PEpPeR


Joined: 04 Jul 2012
Posts: 124
Location: St. Louis area
Reply with quote
Untouched DefaultBox with default settings... Run Explorer in it and put something in the Temp folder. It's on the real system, not in the sandbox. I don't think I ever remember seeing the Temp folder in any sandbox when browsing contents, but not certain. I assumed the OP is getting the same behavior.

I've never used the default Temp locations, if that would make a difference. I have User and System %TEMP% and %TMP% all set to D:\Temp
View user's profileSend private message
tzuk


Joined: 22 Jun 2004
Posts: 14999
Reply with quote
No, I don't see this. Maybe you have some template that gives access to D:\Temp ? Perhaps due to something in your Applications > Folders settings page? One more thing I can think about, if your print spooler directory was set to D:\Temp.
View user's profileSend private message
DR_LaRRY_PEpPeR


Joined: 04 Jul 2012
Posts: 124
Location: St. Louis area
Reply with quote
No, no Templates. But I guess you nailed it, thanks! I do have the print spool set to the same folder. Surprised So the print spool directory is a built-in exclusion? What, do programs that print need to write to that folder which is then used by the Print Spooler service? (Ahh yes, I guess that's how it works. I see the default system32\spool\PRINTERS allows the Users group to Create Files.)

I guess putting a spool folder under Temp will take care of that. Thanks again and sorry for the hijack. Smile

_________________
XP Home-as-Pro SP3 (Admin), permissions + "2-level" SRP, latest Sandboxie (registered), EMET 4, no anti-anything (ever)
View user's profileSend private message
Flash Player Installer avoids having [#] when sandboxed
You can post new topics in this forum
You can reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
All times are GMT  
Page 1 of 1  

Use the RSS feed to watch this topic for replies
  
  
 Reply to topic  

Sandboxie is Copyright © 2004-2012 by Sandboxie Holdings LLC.  All rights reserved.
Sandboxie.com | Contact Author
This site has been viewed 207,793,142 times since June 2004