followed the instructions and ran outlook in box. got the error msg <something went wrong> from all office programs.
In sbie cur ver (not the beta now inst) other office progs ran, but outlook would draw the window frame then hang, never displaying calender panel
sb.ini
Code: Select all
[GlobalSettings]
Template=OfficeClickToRun
Template=OfficeLicensing
Template=ComodoInternetSecurity
Template=LogitechSetPoint
TemplateReject=Logitech_G15_Keyboard
FileRootPath=D:\Sandbox\%USER%\%SANDBOX%
ExperimentalProtection64Bit=y
ActivationPrompt=n
ForceDisableSeconds=999999
#[Template_OfficeClickToRun]
#Tmpl.Title=Microsoft Office Click-to-Run (registered Sandboxie only)
#Tmpl.Class=Desktop
#Tmpl.Url=http://office.microsoft.com
#Tmpl.Scan=s
#Tmpl.ScanService=ClickToRunSvc
#HostInjectDll=C:\Program Files\Sec\Sandboxie\SboxHostDll.dll
#HostInjectDll64=c:\Program Files\Sec\Sandboxie\SboxHostDll.dll
#HostInjectProcess=OfficeClicktoRun.exe|ClickToRunSvc
#OpenIpcPath=\RPC Control\C2RClientAPI_Server_System*
#OpenIpcPath=\RPC Control\ClickToRun_Pipeline*
#OpenIpcPath=\RPC Control\AppV-ISV-*
#[Template_Office_Outlook]
#Tmpl.Title=Office Outlook
#Tmpl.Class=EmailReader
#ProcessGroup=<Office_Outlook>,outlook.exe
#OpenFilePath=<Office_Outlook>,%Tmpl.Office_Outlook%
#OpenFilePath=<Office_Outlook>,%AppData%\Microsoft\Outlook
#OpenFilePath=<Office_Outlook>,%Local AppData%\Microsoft\Outlook
#OpenFilePath=<Office_Outlook>,d:\users\%user%\outlook files
#OpenFilePath=outlook.exe,*.eml
#OpenKeyPath=<Office_Outlook>,HKEY_CURRENT_USER\Software\Microsoft\Office
#OpenKeyPath=<Office_Outlook>,HKEY_CURRENT_USER\Software\Microsoft\Internet Account Manager
#OpenKeyPath=<Office_Outlook>,HKEY_CURRENT_USER\Software\Microsoft\Windows NT\CurrentVersion\Windows Messaging Subsystem\Profiles\Outlook
# Outlook pst locks
#OpenIpcPath=<Office_Outlook>,*\BaseNamedObjects*\OLKCRPC.OBJ=*
#OpenIpcPath=<Office_Outlook>,*\BaseNamedObjects*\MAPI-HP*
#OpenIpcPath=<Office_Outlook>,*\BaseNamedObjects*\*_WCIDXPACKED
#OpenIpcPath=<Office_Outlook>,*\BaseNamedObjects*\*_WCEMPTY
#OpenIpcPath=<Office_Outlook>,*\BaseNamedObjects*\*_WCWRITE
#OpenIpcPath=<Office_Outlook>,*\BaseNamedObjects*\*_WCINFO
#OpenIpcPath=<Office_Outlook>,*\BaseNamedObjects*\*_CACHEMUTEX
#OpenIpcPath=<Office_Outlook>,*\BaseNamedObjects*\*_NDB_ZOMBIE
#OpenIpcPath=<Office_Outlook>,*\BaseNamedObjects*\NDB_ROOT_MUTEX
#OpenIpcPath=<Office_Outlook>,*\BaseNamedObjects*\Shared-NDB-FE
#OpenIpcPath=<Office_Outlook>,*\BaseNamedObjects*\Optex_*_LogOptex
#OpenIpcPath=<Office_Outlook>,*\BaseNamedObjects*\OfficeSharedLocks_*
#OpenIpcPath=<Office_Outlook>,*\BaseNamedObjects\WMS Notif Engine*
#OpenWinClass=<Office_Outlook>,WMS ST Notif Class
# Integration with Windows Desktop Search
#OpenClsid={7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}
#OpenClsid={9E175B6D-F52A-11D8-B9A5-505054503030}
#OpenPipePath=\Device\NamedPipe\MsFteWds
[UserSettings_0C600210]
SbieCtrl_UserName=grahm
SbieCtrl_NextUpdateCheck=1501587995
SbieCtrl_UpdateCheckNotify=n
SbieCtrl_ShowWelcome=n
SbieCtrl_WindowCoords=462,228,707,455
SbieCtrl_ActiveView=40022
SbieCtrl_HideWindowNotify=n
SbieCtrl_EnableLogonStart=y
SbieCtrl_EnableAutoStart=y
SbieCtrl_AddDesktopIcon=n
SbieCtrl_AddQuickLaunchIcon=n
SbieCtrl_AddContextMenu=y
SbieCtrl_AddSendToMenu=y
SbieCtrl_TerminateWarn=n
SbieCtrl_AutoApplySettings=n
SbieCtrl_ProcessViewColumnWidths=250,70,300
SbieCtrl_RecoverTarget=E:\Docs & Sets\Grahm\My Documents\Cent\Sem-3\rach-212
SbieCtrl_RecoverTarget=D:\Users\Grahm\Downloads
SbieCtrl_RecoverTarget=E:\Docs & Sets\Grahm\My Documents\GamSav\AoW\Scenario
SbieCtrl_SaveRecoverTargets=y
SbieCtrl_BoxExpandedView=DefaultBox,FireFox,Outlook,test,TorBrowser
[DefaultBox]
ConfigLevel=7
AutoRecover=y
Template=BlockPorts
Template=LingerPrograms
Template=Firefox_Phishing_DirectAccess
Template=AutoRecoverIgnore
RecoverFolder=E:\Install\OpSrc
RecoverFolder=%{374DE290-123F-4565-9164-39C4925E467B}%
RecoverFolder=%Personal%
RecoverFolder=%Favorites%
RecoverFolder=%Desktop%
BorderColor=#00FFFF,ttl
DropAdminRights=y
Enabled=y
AutoDelete=y
NeverDelete=n
ForceProcess=iexplore.exe
ForceProcess=plugin-container.exe
ForceProcess=firefox.exe
BoxNameTitle=y
[TorBrowser]
Enabled=y
ConfigLevel=7
AutoRecover=y
Template=WindowsFontCache
Template=BlockPorts
Template=LingerPrograms
Template=Chrome_Phishing_DirectAccess
Template=Firefox_Phishing_DirectAccess
Template=AutoRecoverIgnore
RecoverFolder=%{374DE290-123F-4565-9164-39C4925E467B}%
RecoverFolder=%Personal%
RecoverFolder=%Favorites%
RecoverFolder=%Desktop%
BorderColor=#00FFFF,ttl
AutoDelete=y
NeverDelete=n
BoxNameTitle=y
[FireFox]
Enabled=y
ConfigLevel=7
AutoRecover=y
Template=WindowsFontCache
Template=BlockPorts
Template=LingerPrograms
Template=Chrome_Phishing_DirectAccess
Template=Firefox_Phishing_DirectAccess
Template=AutoRecoverIgnore
RecoverFolder=E:\Docs & Sets\Grahm
RecoverFolder=E:\Install\OpSrc
RecoverFolder=%{374DE290-123F-4565-9164-39C4925E467B}%
RecoverFolder=%Personal%
RecoverFolder=%Favorites%
RecoverFolder=%Desktop%
BorderColor=#00FFFF,ttl
AutoDelete=y
NeverDelete=n
BoxNameTitle=y
[Outlook]
Enabled=y
ConfigLevel=7
AutoRecover=y
BlockNetworkFiles=y
Template=Office_Outlook
Template=qWave
Template=WindowsFontCache
Template=BlockPorts
Template=LingerPrograms
Template=Chrome_Phishing_DirectAccess
Template=Firefox_Phishing_DirectAccess
Template=AutoRecoverIgnore
RecoverFolder=%{374DE290-123F-4565-9164-39C4925E467B}%
RecoverFolder=%Personal%
RecoverFolder=%Desktop%
BorderColor=#00FFFF,ttl
BoxNameTitle=-
#OpenWinClass=mspim_wnd32
Code: Select all
(Drive) \Device\CdRom0
(Drive) \Device\HarddiskVolume1
(Drive) \Device\HarddiskVolume2
(Drive) \Device\HarddiskVolume3
(Drive) \Device\HarddiskVolume5
(Drive) \Device\HarddiskVolume6
(Drive) \Device\HarddiskVolume7
(Drive) \Device\HarddiskVolume8
(Drive) \Device\HarddiskVolume9
(Drive) \Device\ImDisk0
Clsid -------------------------------
Clsid {00021401-0000-0000-C000-000000000046} Shortcut
File/Key -------------------------------
Image -------------------------------
Image *:\program files\microsoft office 15\clientx64\officec2rclient.exe
Image *:\program files\microsoft office 15\root\office15\outlook.exe
Image *:\program files\sec\sandboxie\sandboxiedcomlaunch.exe
Image *:\program files\sec\sandboxie\sandboxierpcss.exe
Image *:\program files\sec\sandboxie\start.exe
Image c:\program files (x86)\utl\dexpot\hooxpot64.dll
Image c:\program files\microsoft office 15\clientx64\apiclient.dll
Image c:\program files\microsoft office 15\clientx64\c2rui.dll
Image c:\program files\microsoft office 15\clientx64\msvcp100.dll
Image c:\program files\microsoft office 15\clientx64\msvcr100.dll
Image c:\program files\microsoft office 15\root\office15\appvisvstream64.dll
Image c:\program files\microsoft office 15\root\office15\appvisvsubsystems64.dll
Image c:\program files\microsoft office 15\root\office15\c2r64.dll
Image c:\program files\microsoft office 15\root\office15\msvcp100.dll
Image c:\program files\microsoft office 15\root\office15\msvcr100.dll
Image c:\program files\sec\sandboxie\sbiedll.dll
Image c:\windows\system32\advapi32.dll
Image c:\windows\system32\apphelp.dll
Image c:\windows\system32\cfgmgr32.dll
Image c:\windows\system32\clbcatq.dll
Image c:\windows\system32\comdlg32.dll
Image c:\windows\system32\credssp.dll
Image c:\windows\system32\cryptbase.dll
Image c:\windows\system32\cryptsp.dll
Image c:\windows\system32\devobj.dll
Image c:\windows\system32\dwmapi.dll
Image c:\windows\system32\gdi32.dll
Image c:\windows\system32\imm32.dll
Image c:\windows\system32\kernel32.dll
Image c:\windows\system32\kernelbase.dll
Image c:\windows\system32\lpk.dll
Image c:\windows\system32\msctf.dll
Image c:\windows\system32\msvcr100.dll
Image c:\windows\system32\msvcrt.dll
Image c:\windows\system32\nsi.dll
Image c:\windows\system32\ntdll.dll
Image c:\windows\system32\ntmarta.dll
Image c:\windows\system32\ole32.dll
Image c:\windows\system32\oleaut32.dll
Image c:\windows\system32\powrprof.dll
Image c:\windows\system32\profapi.dll
Image c:\windows\system32\propsys.dll
Image c:\windows\system32\psapi.dll
Image c:\windows\system32\rpcepmap.dll
Image c:\windows\system32\rpcrt4.dll
Image c:\windows\system32\rpcrtremote.dll
Image c:\windows\system32\rpcss.dll
Image c:\windows\system32\rsaenh.dll
Image c:\windows\system32\sechost.dll
Image c:\windows\system32\secur32.dll
Image c:\windows\system32\setupapi.dll
Image c:\windows\system32\shell32.dll
Image c:\windows\system32\shlwapi.dll
Image c:\windows\system32\sspicli.dll
Image c:\windows\system32\sxs.dll
Image c:\windows\system32\user32.dll
Image c:\windows\system32\userenv.dll
Image c:\windows\system32\usp10.dll
Image c:\windows\system32\uxtheme.dll
Image c:\windows\system32\version.dll
Image c:\windows\system32\wer.dll
Image c:\windows\system32\windowscodecs.dll
Image c:\windows\system32\wldap32.dll
Image c:\windows\system32\ws2_32.dll
Image c:\windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
Image c:\windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757\comctl32.dll
Image c:\windows\winsxs\amd64_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.23807_none_14556b8e8b95d1fc\gdiplus.dll
Ipc -------------------------------
Ipc \BaseNamedObjects\__ComCatalogCache__
Ipc \BaseNamedObjects\{A3BD3259-3E4F-428a-84C8-F0463A9D3EB5}
Ipc \BaseNamedObjects\{A64C7F33-DA35-459b-96CA-63B51FB0CDB9}
Ipc \BaseNamedObjects\d:*ProgramData*Microsoft*Windows*Caches*{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000030.db
Ipc \BaseNamedObjects\d:*ProgramData*Microsoft*Windows*Caches*{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000001.db
Ipc \BaseNamedObjects\d:*ProgramData*Microsoft*Windows*Caches*cversions.2.ro
Ipc \BaseNamedObjects\RotHintTable
Ipc \BaseNamedObjects\windows_shell_global_counters
Ipc \RPC Control\actkernel
Ipc \RPC Control\epmapper
Ipc \RPC Control\plugplay
Ipc \Sessions\1\BaseNamedObjects\__ComCatalogCache__
Ipc \Sessions\1\BaseNamedObjects\{A3BD3259-3E4F-428a-84C8-F0463A9D3EB5}
Ipc \Sessions\1\BaseNamedObjects\{A64C7F33-DA35-459b-96CA-63B51FB0CDB9}
Ipc \Sessions\1\BaseNamedObjects\ComPlusCOMRegTable
Ipc \Sessions\1\BaseNamedObjects\d:*ProgramData*Microsoft*Windows*Caches*{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000030.db
Ipc \Sessions\1\BaseNamedObjects\d:*ProgramData*Microsoft*Windows*Caches*{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000001.db
Ipc \Sessions\1\BaseNamedObjects\d:*ProgramData*Microsoft*Windows*Caches*cversions.2.ro
Ipc \Sessions\1\BaseNamedObjects\d:*Users*******AppData*Local*Microsoft*Windows*Caches*{AFBF9F1A-8EE8-4C77-AF34-C647E37CA0D9}.1.ver0x000000000000002b.db
Ipc \Sessions\1\BaseNamedObjects\d:*Users*******AppData*Local*Microsoft*Windows*Caches*cversions.1.ro
Ipc \Sessions\1\BaseNamedObjects\ErrorUI_8004_0
Ipc \Sessions\1\BaseNamedObjects\ProcmonExternalLoggerEnabled
Ipc \Sessions\1\BaseNamedObjects\RotHintTable
Ipc \Sessions\1\BaseNamedObjects\SBIE_BOXED_DummyEvent_2708
Ipc \Sessions\1\BaseNamedObjects\SBIE_BOXED_DummyEvent_5156
Ipc \Sessions\1\BaseNamedObjects\SBIE_BOXED_DummyEvent_7244
Ipc \Sessions\1\BaseNamedObjects\SBIE_BOXED_DummyEvent_8004
Ipc \Sessions\1\BaseNamedObjects\SBIE_BOXED_DummyEvent_9140
Ipc \Sessions\1\BaseNamedObjects\SBIE_BOXED_RPCSS_SXS_READY
Ipc \Sessions\1\BaseNamedObjects\SBIE_BOXED_ServiceInitComplete_DcomLaunch
Ipc \Sessions\1\BaseNamedObjects\SBIE_BOXED_ServiceInitComplete_Mutex1
Ipc \Sessions\1\BaseNamedObjects\SBIE_BOXED_ServiceInitComplete_RpcEptMapper
Ipc \Sessions\1\BaseNamedObjects\SBIE_BOXED_ServiceInitComplete_RpcSs
Ipc \Sessions\1\BaseNamedObjects\SboxSession
Ipc \Sessions\1\BaseNamedObjects\ScmCreatedEvent
Ipc \Sessions\1\BaseNamedObjects\windows_shell_global_counters
Ipc O \KernelObjects\HighMemoryCondition
Ipc O \KernelObjects\LowMemoryCondition
Ipc O \KernelObjects\MaximumCommitCondition
Ipc O \KnownDlls\advapi32.dll
Ipc O \KnownDlls\CFGMGR32.dll
Ipc O \KnownDlls\clbcatq.dll
Ipc O \KnownDlls\COMDLG32.dll
Ipc O \KnownDlls\DEVOBJ.dll
Ipc O \KnownDlls\gdi32.dll
Ipc O \KnownDlls\kernel32.dll
Ipc O \KnownDlls\kernelbase.dll
Ipc O \KnownDlls\LPK.dll
Ipc O \KnownDlls\MSCTF.dll
Ipc O \KnownDlls\MSVCRT.dll
Ipc O \KnownDlls\NSI.dll
Ipc O \KnownDlls\ole32.dll
Ipc O \KnownDlls\OLEAUT32.dll
Ipc O \KnownDlls\profapi.dll
Ipc O \KnownDlls\PSAPI.DLL
Ipc O \KnownDlls\rpcrt4.dll
Ipc O \KnownDlls\Setupapi.dll
Ipc O \KnownDlls\SHELL32.dll
Ipc O \KnownDlls\SHLWAPI.dll
Ipc O \KnownDlls\user32.dll
Ipc O \KnownDlls\USERENV.dll
Ipc O \KnownDlls\USP10.dll
Ipc O \KnownDlls\WLDAP32.dll
Ipc O \KnownDlls\WS2_32.dll
Ipc O \RPC Control\AppV-ISV-f8aafb30-5a05-4d48-a3c7-3789869186d8APPV-VIRTMAN-NOTIFICATIONS
Ipc O \RPC Control\C2RClientAPI_Server_System
Ipc O \RPC Control\ClickToRun_Pipeline
Ipc O \RPC Control\DNSResolver
Ipc O \RPC Control\lsapolicylookup
Ipc O \RPC Control\LSARPC_ENDPOINT
Ipc O \RPC Control\lsasspirpc
Ipc O \RPC Control\SbieSvcPort
Ipc O \RPC Control\umpo
Ipc O \Security\LSA_AUTHENTICATION_INITIALIZED
Ipc O \Sessions\1\BaseNamedObjects\CicLoadWinStaWinSta0
Ipc O \Sessions\1\BaseNamedObjects\MSCTF.CtfActivated.Default1
Ipc O \Sessions\1\BaseNamedObjects\MSCTF.CtfMonitorInstMutexDefault1
Ipc O \Sessions\1\Windows\ApiPort
Ipc O \Sessions\1\Windows\SharedSection
Ipc O \ThemeApiPort
Pipe -------------------------------
Pipe \Device\00000085
Pipe \Device\HarddiskVolume1
Pipe \Device\HarddiskVolume2
Pipe \Device\HarddiskVolume3
Pipe \Device\HarddiskVolume4
Pipe \Device\HarddiskVolume5
Pipe \Device\HarddiskVolume6
Pipe \Device\HarddiskVolume7
Pipe \Device\HarddiskVolume8
Pipe \Device\HarddiskVolume9
Pipe \Device\KsecDD
Pipe \Device\MountPointManager
Pipe \Device\Ndis
Pipe \Device\NDMP10
Pipe \Device\NDMP12
Pipe \Device\NDMP2
Pipe \Device\NDMP3
Pipe \Device\NDMP5
Pipe \Device\NDMP6
Pipe \Device\NDMP7
Pipe \Device\NDMP8
Pipe \Device\NDMP9
Pipe O \Device\Afd
WinCls -------------------------------
WinCls O Shell_TrayWnd
had to manually add panda cloud av, no change. I also use malwarebytes pro and that may have security hooks in office progs
Should i revert to the release ver?