D
@Umbra
What kind of profile you have?
Let's say profile for:
- surfing
- testing programs
- for USB devices
Please advice settings for free version of Sandboxie.
http://malwaretips.com/threads/how-to-secure-your-sandboxie.49380/I'm new in the use of Sandboxie and if you can a little more detailed and put some pictures that would be great, thanks.
The exploit is simple yet sinful. Combine them, you get sinple.(Sorry for being nitpicky here... But there is a minor typo in the topic title.)
That, sir. Epic. Why haven't I thought of that. ?The exploit is simple yet sinful. Combine them, you get sinple.
HJLBX,Comodo can be configured to a much, much tighter security than default settings.
In fact, one can probably go too far with the rules and configuration...
In the end, it all depends upon what the user wishes to achieve - and how much time and effort they wish to put into configuring Comodo.
Comodo gives the user over-the-top options if they so choose to go that route.
So as per cruelsister settings i.e block connections for unknown - this settings could be prob as those trusted programs connections will be blocked.
HJLBX,
With CIS default settings I never observed any probs related to Windows files or Microsoft products after update/upgrade too.
For other programs too I observe very little prob...could be new versions are added fast in the whitelists...atleast for popular & most used or most observed programs on majority of the systems.
For ex- Shadow Defender is a popular program but I think not majority of the users run it. I had installed the latest version of Shadow Defender the day itself it was released & CIS find it safe - was good to know whitelist have improved.
On the contrary I have noticed that almost all programs issue automatic updates after certain period of time...one can manually upgrade the programs by downloading the installer/updates/upgrades from the official site. Now with CIS I have noticed that if you wait for the automatic updates of those programs...you will face lesser probs i.e by the time automatic updates are issued Comodo too would have whitelisted the new versions. But if you try to upgrade the programs the day itself it was released or as soon as you can get your hands on the upgrade then you could face the prob like newer versions not yet whitelisted by Comodo.
So in my opinion...to have lesser probs with CIS its best to wait for the automatic updates than manual upgrade of the programs on the release day itself...from my observation.
Not now, I haven't been so active recently.the white-list\black-list file submission champion is MT's very own @Malware1...
2). One of the primary complaints was that seperate sandboxes should be set up for different things. This is a valid point and will be addressed.
3). Another issue pointed out was that the malware could be easily stopped by a simple setting (namely by checking the Drop Rights box in Restrictions). This is also very valid as it would most definitely stop the Exploit from proceeding. The issue here, however, is that this would be a form of Reactive Protection- by this is meant that we know the file is malware, we know what it can do, so we set up a system that will stop the malicious activity from occurring.
This may look good on a Video test but will it actually be useful in Real-World computer use?
Not now, I haven't been so active recently.
I meant with whitelisting... But with blacklisting I'm also not so active.