Sandbox for windows. Running suspicious files

Program version: 5.24
Official website: Sandboxie LTD
Interface language: Russian, English and others
Treatment: not required (the installer has already been disinfected)

System Requirements:

  • Windows XP SP 3 through Windows 10; 32-bit + 64-bit

Description: Sandboxie is a utility for monitoring the operation of various programs. After installing the utility, all kinds of programs will interact with the system through it. This will make it possible to delete traces of the last application session. Thus, Sandboxie acts as a kind of filter, which delays all changes made to the system by various programs. Thanks to this approach, it is possible to remove installed spyware modules and promotional utilities that penetrate the computer, for example, through a browser. In the same way, the utility monitors the operation of the mail program, sending viruses and Trojans attached to letters into its “trap”.

The main function performed by this program is to protect and keep your computer in working condition. This is achieved by creating “temporary storage” in the system, like a cache. All actions on the Internet performed by the user, all software installation processes do not use changing permanent system parameters, but temporary Sandboxie storage. Thanks to this, you can make a “rollback” quite easily. The program can be configured for use with any browser; it also supports an email client, but only one - Outlook Express. The target audience of the Sandboxie program is quite large, from people testing software to ordinary users using the Internet, or simply not wanting to harm their computer with an unknown program.

Added support for Secure Boot.
Fixed Win 7-64 Sbie driver load failure with KB4056897 /KB4056894.
Fixed BSOD in Win 10-32 CU with KB4074592.
Fixed Win 10-32 FCU dllhost.exe / sbiedll.dll initialization fail.
Fixed crash in Windows 10 FR Build 17035 and added support for FR up to 17101.
Fixed BSOD with Print2Flash install.
Fixed Office 2013-C2R failure to start.
Source code updated to Visual Studio 2015.
Added support for Firefox Favicons (Right-click on your Sandbox --> Sandbox Settings--> Applications ---> Web Browser ---> Firefox --> Allow direct access to Firefox bookmark and history database).
Addressed an issue in which Opera 51/Chrome v64 dev/Canary were crashing when Sandboxed
For x86 systems --> If you encounter “SBIE2335 Initialization failed for process Start.exe ” after creating a new Sandbox/installing this beta, please allow 30 seconds to go by, then re-try the action. This is being investigated.

Type: installation [official installer]
Languages: Russian, english, multi [select in the first installer window]
Treatment: carried out

Install only in default folder: C:Program FilesSandboxie

Please note that some paranoid antiviruses may interfere with the automatic activation process, so it is advisable to turn them off while installing the program.

Sandboxie creates an isolated environment on your computer. An isolated environment or sandbox is an environment where running programs do not have direct access to system files and important computer settings.

Processes occurring in a running program are isolated from the rest of the system. At the same time, the operating system is protected from changes that may occur when running a potentially dangerous program.

You can use an isolated environment to run a program unknown to you, or after launching your browser, visit a potentially dangerous site without risk to your computer.

If a malicious program does get onto your computer, it will not have access to system files to change them. And when you exit the sandbox, all files that entered the sandbox will be deleted.

You can create your own isolated environment using specialized programs that restrict access to system files. One such program is Sandboxie.

The Sandboxie program is a sandbox for potentially dangerous and unfamiliar programs, as well as for safe surfing the Internet.

The Sandboxie program has shareware status. Upon completion of 30 days of working with the program, the program will ask you to upgrade to the paid version. But most of the program’s functions will work in free mode for as long as you like. Only some features of this program will be disabled (for example, running multiple sandboxes at the same time).

You can download the Sandboxie program from the manufacturer's official website.

sandboxie download

After downloading the Sandboxie program to your computer, run its installation. In the program installation window, select Russian language.

In the next window, you agree to install the driver for the Sandboxie program, and then click on the “Next” button. In the last program installation window, click on the “Finish” button.

The program can be launched from the Start menu => All Programs => Sandboxie. There are several points for launching the program for specific purposes.

The Sandboxie program can also be launched from the Notification Panel (tray) by clicking on the program icon. From a shortcut on the Desktop, you can launch the browser in the “sandbox”, the one that is selected as the default browser on your system.

Launch Sandboxie to make a few program settings. The main window of the program displays the isolated environment created by default - “sandbox”.

Now let's consider this question: how to configure Sandboxie.

Setting up Sandboxie

To configure the program, right-click on the sandbox name. After that, in the context menu, click on the “Sandbox Settings” item.

In the sandbox settings window - “DefaultBox”, in the “Behavior” section, you can check the box next to “Do not show the Sandboxie indicator in the window title” if you do not want the windows of programs open in the sandbox to be marked with a special icon. You can do this at your own discretion.

When you click on the yellow field in the “Color” window that opens, you can select a color to display a thin border around the window of the program running in the sandbox. After these settings, if you changed something in the program settings, click on the “Apply” button.

In the "Recovery" section, in the "Quick Recovery" subsection, you can select folders for quick recovery if you want to change the program's default settings.

In the Immediate Recovery subsection, you can exclude files, folders, or file extension types from immediate recovery if these files are saved by a program running in the sandbox.

In the “Delete” section, in the “Deletion Suggestion” subsection, you can check the box “Never delete this sandbox or clear its contents” in order not to lose the data stored in the sandbox.

In the “Restrictions” section, in the “Internet Access” subsection, you can add programs to the list or remove programs from the list of programs that can access the Internet. You can allow or block programs from accessing the Internet when they are in a secure environment. If you click on the Block all programs button, then all programs running in the sandbox will be blocked from accessing the Internet.

In the "Applications" section, you can select rules of conduct for various programs running in the Sandboxie program.

In the “Sandbox” menu section, by clicking on the “Set storage folder” item, you can change the drive on which the sandboxes will be stored if you have little space on the “C” drive.

After clicking on the “Create a new sandbox” item, you can create an unlimited number of sandboxes, each with its own settings, to run programs with different behavior settings from your sandbox.

This mode of launching several sandboxes simultaneously, works only in the paid version of the program, after completing the trial period of working with the program.

Each virtual space operates separately, sandboxes are isolated from the system and from each other. By default, the application offers one isolated Sandbox DefaultBox space.

How to use Sandboxie

First way. In order to run the program in safe mode, right-click on the name of the “sandbox” and in the context menu click on the “Run in sandbox” item. In the list of launch items, you can select the appropriate item to launch the program.

You can launch your browser, your default email client, and any program from here or from the Start menu. You can also launch Explorer in a safe environment if you click on “Launch Windows Explorer.”

After this, Explorer will be launched in a secure environment. To shut down Explorer, in the “Manage Sandboxie” window, right-click on the program folder and select “End Program” in the context menu, or simply close Explorer in the usual way for programs by clicking on the red button.

Second way. It’s even easier to launch a program in Sandboxie by simply clicking on the program’s folder or shortcut, and then selecting “Run in Sandbox” from the context menu.

If you have created several sandboxes, the Sandboxie program will prompt you to select the desired sandbox to run the program. Select an isolated environment, and then click on the “OK” button.

After this, the program runs in an isolated environment. When you hover your mouse over a program running in a sandbox, a thin colored border will be visible around the program window.

Recovering files in Sandboxie

Sandboxie does not allow files from programs running in the sandbox to enter the operating system without your permission. All files created by the program or downloaded from the Internet will be deleted by default after the sandbox is closed.

Working in the Sandboxie program, you can create and save files in regular folders on your computer. These files will not be visible until you give Sandboxie permission to move the data from the sandboxed environment to the regular environment.

After you have downloaded some files from the Internet using a browser running in an isolated environment, these files will be located in the place where downloads are saved on your computer.

But, you will not see these files while they are in the sandbox. You will need to move these files from the sandboxed environment to the regular environment.

Sandboxie calls this "recovery" of files. There are three file recovery modes: Immediate Recovery, Quick Recovery and Manual Recovery.

Immediate recovery in Sandboxie

This is the best recovery method as it can automatically call the recovery function as soon as the files are created. By default, the program pays especially close attention to the Downloads, Documents, Favorites, and Desktop folders.

You can add other folders to these folders at your discretion in the program settings (right-click on the sandbox folder => “Sandbox settings” => “Recovery”).

Once the file is saved to your computer, Sandboxie will immediately display the "Instant Recovery" window. You can click on the “Restore” button, and if you click on the “Restart” button, then “Restore and Explore” or “Restore and Run”.

Fast recovery in Sandboxie

With fast recovery, files are transferred from a sandboxed environment in a quick, manual process. You can configure the program to recover files saved in the sandbox when accessing this mode.

Manual recovery in Sandboxie

If you want to clear the sandbox, right-click on the sandbox name and select the “Delete Contents” context menu item. After this, the “Delete sandbox” window appears.

In this window, you can “Restore to the same folder”, “Recover to any folder” or “Add folder” for files located in the isolated environment. If you click on the “Delete sandbox” button, all processes in it are terminated and all its contents are deleted.

Using Sandboxie allows you to be more secure when using your computer. You can safely run some programs in an isolated environment, surf the Internet safely.

Some antivirus programs also have sandboxing tools, such as .

Conclusions of the article

Sandboxie runs applications in a sandbox, thereby preventing possible dangerous components from entering the system. You can also use this program to test new programs without installing them on your computer.

Sandboxie 5.28

Sandbox Sandboxie download in Russian for Windows 7

Free program Sandboxie is designed to safely run applications in a sandbox, that is, a virtual protected environment. This makes it possible to control all running processes. A sandbox is necessary when you have to run unknown or obviously dangerous programs, eliminating the risk of infecting your PC and disrupting its performance. you can do it for free, at the bottom of the page there is a link where you can easily do this.

The sandbox increases the security of the Windows OS, provides protection against malware when surfing the web, and when installing unknown programs. Sandboxie has the ability to protect against unwanted updates, can monitor email, and uses its own trap for Trojans, viruses and spyware that may be hidden in incoming emails.

The advantages of the sandbox are:

  • extended protection functions: now files temporarily saved when browsing pages will not harm the operating system; they can be easily deleted without harm to the PC;
  • ensuring mail security: viruses, malware, and Trojans that get into mail with letters do not pose a threat, since the utility effectively monitors them and blocks them using its own systems.

The sandbox works very simply; any program running in it does not have access to system data, the registry, cannot make changes, indirectly or directly disrupt the operation of the OS. Running an unknown or potentially dangerous program in a sandbox helps keep your PC safe. just enough download sandbox Sandboxie, assign it to a whole group of programs, setting their access to different resources depending on the purpose.

Through Sandboxie, you can surf the web safely without the fear of viruses while visiting various pages. The advantage is that settings and changes should be made only once, using them further. This makes working with the utility more convenient and simpler.

Sandboxie download free

Download Sandboxie sandbox in Russian for free for Windows 7, 8 and Windows 10. Our website monitors all software updates to ensure that you have the latest version of Sandboxie.

You can endlessly look at the fire, water and activity of programs isolated in the sandbox. Thanks to virtualization, with one click you can send the results of this activity - often unsafe - into oblivion.

However, virtualization is also used for research purposes: for example, you wanted to control the impact of a freshly compiled program on the system or run two different versions of an application at the same time. Or create a standalone application that will leave no traces on the system. There are many options for using a sandbox. It is not the program that dictates its terms in the system, but you who show it the way and distribute resources.

If you are not satisfied with the slowness of the process, using the ThinApp Converter tool you can put virtualization on stream. Installers will be created based on the config you specify.

In general, the developers advise making all of these preparations under sterile conditions, on fresh OS, so that all the installation nuances are taken into account. For these purposes, you can use a virtual machine, but, of course, this will leave its mark on the speed of work. VMware ThinApp already loads system resources quite heavily, and not only in scanning mode. However, as they say, slowly but surely.

BufferZone

  • Website: www.trustware.com
  • Developer: Trustware
  • License: freeware

BufferZone controls Internet and software activity of applications using a virtual zone, closely approaching firewalls. In other words, it uses rule-governed virtualization. BufferZone easily works in conjunction with browsers, instant messengers, email and P2P clients.

At the time of writing, the developers warned about possible problems when working with Windows 8. The program can kill the system, after which it will have to be removed through safe mode. This is due to the BufferZone drivers, which come into serious conflict with the OS.

What falls under BufferZone's radar can be tracked in the main Summary section. You determine the number of limited applications yourself: the Programs to run inside BufferZone list is intended for this. It already includes potentially unsafe applications such as browsers and email clients. A red border appears around the captured app window, giving you confidence to surf safely. If you want to run outside the zone - no problem, the control can be bypassed through the context menu.

In addition to the virtual zone, there is such a thing as a private zone. You can add sites where strict confidentiality is required. It should be noted right away that the function only works in retro versions of Internet Explorer. More modern browsers have built-in anonymity features.

The Policy section configures policies in relation to installers and updates, as well as programs launched from devices and network sources. In Configurations also see additional security policy options (Advanced Policy). There are six levels of control, depending on which BufferZone’s attitude towards programs changes: without protection (1), automatic (2) and semi-automatic (3), notifications about the launch of all (4) and unsigned programs (5), maximum protection (6) .

As you can see, the value of BufferZone lies in total Internet control. If you need more flexible rules, then any firewall will help you. BufferZone also has it, but more for show: it allows you to block applications, network addresses and ports. From a practical point of view, it is not very convenient for actively accessing settings.

Evalaze

  • Website: www.evalaze.de/en/evalaze-oxide/
  • Developer: Dögel GmbH
  • License: freeware / commercial (2142 euros)

The main feature of Evalaze is the flexibility of virtualized applications: they can be launched from removable media or from a network environment. The program allows you to create completely autonomous distributions that operate in an emulated file system and registry environment.

The main feature of Evalaze is its convenient wizard, which is understandable without reading the manual. First, you make an OS image before installing the program, then you install it, do a test run, and configure it. Next, following the Evalaze wizard, you analyze the changes. Very similar to the principle of operation of uninstallers (for example, Soft Organizer).

Virtualized applications can operate in two modes: in the first case, write operations are redirected to the sandbox; in the second, the program can write and read files on the real system. Whether the program will delete traces of its activities or not is up to you; the Delete Old Sandbox Automatic option is at your service.

Many interesting features are available only in the commercial version of Evalaze. Among them are editing environmental elements (such as files and registry keys), importing projects, and setting reading mode. However, the license costs more than two thousand euros, which, I agree, slightly exceeds the psychological price barrier. The use of an online virtualization service is offered at a similarly prohibitive price. As a consolation, the developer's website has prepared virtual sample applications.

Cameyo

  • Website: www.cameyo.com
  • Developer: Cameyo
  • License: freeware

A quick look at Cameyo suggests that the functions are similar to Evalaze, and in three clicks you can create a distribution with a virtualized application. The packager takes a snapshot of the system, compares it with the changes after installing the software and creates an ecosystem for launch.

The most important difference from Evalaze is that the program is completely free and does not block any options. The settings are conveniently concentrated: switching the virtualization method with saving to disk or memory, selecting an isolation mode: saving documents to specified directories, prohibiting writing or full access. In addition to this, you can configure the virtual environment using the file and registry key editor. Each folder also has one of three isolation levels, which can be easily overridden.

You can specify the sandbox cleaning mode after exiting the standalone application: removing traces, without cleaning, and writing registry changes to a file. Integration with Explorer and the ability to link to specific file types in the system are also available, which is not available even in Cameyo’s paid counterparts.

However, the most interesting thing is not the local part of Cameyo, but the online packager and public virtual applications. It is enough to specify the URL or upload the MSI or EXE installer to the server, indicating the system bit depth, and you will receive a stand-alone package. From now on it is available under the roof of your cloud.

Resume

Sandboxie will be the best choice for sandbox experiments. The program is the most informative among the listed tools; it has a monitoring function. Wide range of settings and good capabilities for managing a group of applications.

It does not have any unique functions, but it is very simple and trouble-free. An interesting fact: the article was written inside this “sandbox”, and due to an unfortunate mistake, all the changes went into the “shadow” (read: astral plane). If it weren't for Dropbox, a completely different text would have been published on this page - most likely by a different author.

Evalaze offers not an integrated approach to virtualization, but an individual one: you control the launch of a specific application, creating artificial living conditions for this. There are advantages and disadvantages here. However, given the stripped-down nature of the free version of Evalaze, its advantages will fade in your eyes.

Cameyo has a certain “cloud” flavor: the application can be downloaded from the website, uploaded to a flash drive or Dropbox - this is convenient in many cases. True, it brings to mind associations with fast food: you can’t vouch for the quality and compliance of the content with the description.

But if you prefer to cook according to a recipe, VMware ThinApp- your option. This is a solution for experts who care about every detail. A set of unique features is complemented by the capabilities of the console. You can convert applications from the command line using configs, scripts - in individual and batch mode.

BufferZone is a sandbox with a firewall function. This hybrid is far from perfect and the settings are up-to-date, but BufferZone can be used to control Internet activity and applications, protect against viruses and other threats.

The Internet is simply teeming with viruses. They can be disguised as useful programs, or they can even be built into a working program. (Quite often found in hacked programs, so you should treat hacked programs with distrust, especially if you download from suspicious sites). So you installed the program and something else was installed on your computer as a bonus (at best, programs for hidden surfing or miners), and at worst, warriors, backdoors, stealers and other dirty tricks.

There are 2 options if you don't trust the file.
— Running a virus in the sandbox
— Using virtual machines

In this article we will look at the 1st option - sandbox for windows.

Sandbox for Windows is a great opportunity to work with suspicious files, we will look at how to start using the sandbox.
If you use antiviruses, sandboxes are often built into them. But I don’t like these things and I think it’s best to download the sandbox on the website www.sandboxie.com.

The program allows you to run a file in a specially designated area, beyond which viruses cannot escape and harm the computer.

You can download the program for free. But, after 2 weeks of use, a sign indicating an offer to buy a subscription will appear when turned on, and the program can be launched in a few seconds. But the program still remains fully functional. Installation will not be difficult. And the interface itself is quite simple.

By default, the program will start itself when you turn on the computer. If the program is running, a tray icon will appear. If not, go to Start-All Programs-Sandboxie-Manage sandboxie.
The easiest way to run a program in the sandbox is to right-click on the launch file or shortcut of the desired program, and in the menu you will see the words “Run in sandbox”, click and run. Select the desired profile in which to run and click OK. That's it, the required program runs in a safe environment and viruses will not escape the sandbox.


Attention: some infected programs do not allow launching in sandboxes and virtual machines, forcing you to launch them directly. If you encounter such a reaction, the best thing to do is delete the file, otherwise you run at your own peril and risk

.

If launch in the sandbox does not appear in the context menu (when you right-click), go to the program window, select Configure - Integration into Windows Explorer - and check the two boxes under the words "Actions - run in the sandbox."

You can create different sandboxes. To do this, click Sandbox - create a sandbox and write the name of the new one. You can also delete old ones in the sandbox section (recommended).

There is nothing more to consider in the program. Lastly, I want to say - Take care of your data and your computer! Until next time

Related posts:

Removing undeletable files on your computer Virtual machine for windows. Program overview and setup Windows 10 disable tracking