Search found 9 matches

by operat0r2
Fri Apr 11, 2014 2:53 pm
Forum: Problem Reports
Topic: sandboxie.ini encoding
Replies: 6
Views: 2274

Re: sandboxie.ini encoding

***RANT *** Yay ! now my laptop is locked in a broken sandboxie lol ... !@#$ it happy Friday ! Sandboxie.ini: Big-endian UTF-16 Unicode text, with CRLF line terminators Sandboxie.ORIG.txt: Little-endian UTF-16 Unicode text, with CRLF, CR line terminators not working .. iconv.exe -t UTF-16 -f WINDOWS...
by operat0r2
Fri Mar 28, 2014 11:37 am
Forum: Contributed Utilities & Templates
Topic: [Q] Buster Sandbox Analyzer
Replies: 18
Views: 37942

Re: [Q] Buster Sandbox Analyzer

Yup ... thats the same one I am running :( * closed BSA * removed the config folder * started BSA * set the correct path.. * running win7 64bit no firewall no AV * same thing inside of windows XP image.. * maybe you could send your entire BSA setup with Sandboxie ini maybe im missing something some ...
by operat0r2
Thu Mar 27, 2014 11:04 pm
Forum: Contributed Utilities & Templates
Topic: [Q] Buster Sandbox Analyzer
Replies: 18
Views: 37942

Re: [Q] Buster Sandbox Analyzer

Can you send me a link to the BSA binary you are using ? I am still getting "Could not connect to Virus Total" :( I think its all setup prefect other wise .. I got portable sandboxie with BSA
by operat0r2
Sun Mar 16, 2014 1:05 pm
Forum: Contributed Utilities & Templates
Topic: [Q] Buster Sandbox Analyzer
Replies: 18
Views: 37942

Re: [Q] Buster Sandbox Analyzer

Herm same issue today. I tried to force proxy the https request though burp but I could not get it to work. Is there a proxy setting in BSA I can enable to tunnel though ? I plan on doing a nice video when I get most of the tool figured out... I have a Cuckoo Sandbox setup but I am trying to make it...
by operat0r2
Sat Mar 15, 2014 10:15 pm
Forum: Contributed Utilities & Templates
Topic: [Q] Buster Sandbox Analyzer
Replies: 18
Views: 37942

Re: [Q] Buster Sandbox Analyzer

Thanks! Looks like Virustotal changed something can't seem to get anything to connect. * if I goto the redirected url I get * working: https://www.virustotal.com/en/file/17f746d82695fa9b35493b41859d39d786d32b23a9d2e00f4011dec7a02402ae/analysis/ * what we get forwarded in BSA to (broken?) https://www...
by operat0r2
Tue Mar 11, 2014 12:43 pm
Forum: Contributed Utilities & Templates
Topic: [Q] Buster Sandbox Analyzer
Replies: 18
Views: 37942

Re: [Q] Buster Sandbox Analyzer

Its seems to run fine on 32bit VM 32bit dll and in my host windows 7 32bit dll but it does not apper to have any info about reg changes etc.. missing data .. Maybe somebody can post a working Sandboxie.ini I was reading about order of params etc ... maybe it has to do with that ? 32bit inject on win...
by operat0r2
Mon Mar 10, 2014 5:01 pm
Forum: Contributed Utilities & Templates
Topic: [Q] Buster Sandbox Analyzer
Replies: 18
Views: 37942

Re: [Q] Buster Sandbox Analyzer

Oohh THANKS ! it ran that time .. but seems unstable with 64bit DLL notepad crashes on save and wordpad wont even start ?
sandboxie 4.09

http://rmccurdy.com/scripts/videos/rmcc ... issue2.mp4

http://pastebin.ca/2653468 ( api VERBOSE logs )
by operat0r2
Sun Mar 09, 2014 6:02 pm
Forum: Contributed Utilities & Templates
Topic: [Q] Buster Sandbox Analyzer
Replies: 18
Views: 37942

Re: [Q] Buster Sandbox Analyzer

what ever the latest is .. 4.08 64bit

Again same results with portable and full install and 32bit install on VM with XP SP3 .. if I put in the stuff to inject dll for BSA it dies like the video above
by operat0r2
Fri Mar 07, 2014 3:12 pm
Forum: Contributed Utilities & Templates
Topic: [Q] Buster Sandbox Analyzer
Replies: 18
Views: 37942

[Q] Buster Sandbox Analyzer

* if I put the DLL hook in on 32bit XP VM or in the windows7 64bit i get hand on 'start.exe' .. ? Here is a video of my issue ... ( i have the same issue on full install NOT PORTABLE on a XP 32 bit with just the32bit hooks ... ) http://rmccurdy.com/scripts/videos/rmccurdy_com/Buster_Sandbox_Analyzer...