BoxImageWindow Form kilobytes Protect Box Root from access by unsandboxed processes TextLabel Show Password Enter Password New Password Repeat Password Disk Image Size Encryption Cipher Lock the box when all processes stop. CAddonManager Do you want to download and install %1? Installing: %1 Add-on not found, please try updating the add-on list in the global settings! Add-on Not Found Add-on is not available for this platform Addon is not available for this paltform Missing installation instructions Missing instalation instructions Executing add-on setup failed Failed to delete a file during add-on removal Updater failed to perform add-on operation Updater failed to perform plugin operation Updater failed to perform add-on operation, error: %1 Updater failed to perform plugin operation, error: %1 Do you want to remove %1? Removing: %1 Add-on not found! CAdvancedPage Advanced Sandbox options On this page advanced sandbox options can be configured. Prevent sandboxed programs on the host from loading sandboxed DLLs Prevent sandboxed programs installed on the host from loading DLLs from the sandbox This feature may reduce compatibility as it also prevents box located processes from writing to host located ones and even starting them. This feature may reduce compatybility as it also prevents box located processes from writing to host located once and even starting them. This feature can cause a decline in the user experience because it also prevents normal screenshots. Shared Template Shared template mode This setting adds a local template or its settings to the sandbox configuration so that the settings in that template are shared between sandboxes. However, if 'use as a template' option is selected as the sharing mode, some settings may not be reflected in the user interface. To change the template's settings, simply locate the '%1' template in the App Templates list under Sandbox Options, then double-click on it to edit it. To disable this template for a sandbox, simply uncheck it in the template list. This option does not add any settings to the box configuration and does not remove the default box settings based on the removal settings within the template. This option adds the shared template to the box configuration as a local template and may also remove the default box settings based on the removal settings within the template. This option adds the settings from the shared template to the box configuration and may also remove the default box settings based on the removal settings within the template. This option does not add any settings to the box configuration, but may remove the default box settings based on the removal settings within the template. Remove defaults if set Shared template selection This option specifies the template to be used in shared template mode. (%1) Disabled Advanced Options Prevent sandboxed windows from being captured Use as a template Append to the configuration CBeginPage Troubleshooting Wizard Welcome to the Troubleshooting Wizard for Sandboxie-Plus. This interactive assistant is designed to help you in resolving sandboxing issues. With a valid <a href="https://sandboxie-plus.com/go.php?to=sbie-cert">supporter certificate</a> the wizard would be even more powerful. It could access the <a href="https://sandboxie-plus.com/go.php?to=sbie-issue-db">online solution database</a> to retrieve the latest troubleshooting instructions. With a valid <a href="https://sandboxie-plus.com/go.php?to=sbie-cert">supporter certificate</a> the wizard would be even more powerfull. It could access the <a href="https://sandboxie-plus.com/go.php?to=sbie-issue-db">online solution database</a> to retriev the latest troubleshooting instructions. Another issue CBoxAssistant Troubleshooting Wizard Toggle Debugger To debug troubleshooting scripts you need the V4 Script Debugger add-on, do you want to download and install it? Debugger Enabled V4ScriptDebuggerBackend could not be instantiated, probably V4ScriptDebugger.dll and or its dependencies are missing, script debugger could not be opened. V4ScriptDebuggerBackend could not be instantiated, probably V4ScriptDebugger.dll and or its dependencies are missing, script debuger could not be opened. A troubleshooting procedure is in progress, canceling the wizard will abort it, this may leave the sandbox in an inconsistent state. A troubleshooting procedure is in progress, canceling the wizard will abort it, this may leave the sandbox in an incosistent state. Don't ask in future CBoxEngine Uncaught exception at line %1: %2 CBoxImageWindow Sandboxie-Plus - Password Entry Creating new box image, please enter a secure password, and choose a disk image size. Enter Box Image password: Enter Box Image passwords: Enter Encryption passwords for archive export: Enter Encryption passwords for archive import: kilobytes (%1) Passwords don't match!!! WARNING: Short passwords are easy to crack using brute force techniques! It is recommended to choose a password consisting of 20 or more characters. Are you sure you want to use a short password? The password is constrained to a maximum length of 128 characters. This length permits approximately 384 bits of entropy with a passphrase composed of actual English words, increases to 512 bits with the application of Leet (L337) speak modifications, and exceeds 768 bits when composed of entirely random printable ASCII characters. The Box Disk Image must be at least 256 MB in size, 2GB are recommended. CBoxPicker Sandbox CBoxTypePage Create new Sandbox A sandbox isolates your host system from processes running within the box, it prevents them from making permanent changes to other programs and data in your computer. A sandbox isolates your host system from processes running within the box, it prevents them from making permanent changes to other programs and data in your computer. The level of isolation impacts your security as well as the compatibility with applications, hence there will be a different level of isolation depending on the selected Box Type. Sandboxie can also protect your personal data from being accessed by processes running under its supervision. Enter box name: Select box type: Sellect box type: <a href="sbie://docs/security-mode">Security Hardened</a> Sandbox with <a href="sbie://docs/privacy-mode">Data Protection</a> This box type offers the highest level of protection by significantly reducing the attack surface exposed to sandboxed processes. It strictly limits access to user data, allowing processes within this box to only access C:\Windows and C:\Program Files directories. The entire user profile remains hidden, ensuring maximum security. <a href="sbie://docs/security-mode">Security Hardened</a> Sandbox This box type offers the highest level of protection by significantly reducing the attack surface exposed to sandboxed processes. Sandbox with <a href="sbie://docs/privacy-mode">Data Protection</a> In this box type, sandboxed processes are prevented from accessing any personal user files or data. The focus is on protecting user data, and as such, only C:\Windows and C:\Program Files directories are accessible to processes running within this sandbox. This ensures that personal files remain secure. Standard Sandbox This box type offers the default behavior of Sandboxie classic. It provides users with a familiar and reliable sandboxing scheme. Applications can be run within this sandbox, ensuring they operate within a controlled and isolated space. <a href="sbie://docs/compartment-mode">Application Compartment</a> Box with <a href="sbie://docs/privacy-mode">Data Protection</a> This box type prioritizes compatibility while still providing a good level of isolation. It is designed for running trusted applications within separate compartments. While the level of isolation is reduced compared to other box types, it offers improved compatibility with a wide range of applications, ensuring smooth operation within the sandboxed environment. <a href="sbie://docs/compartment-mode">Application Compartment</a> Box <a href="sbie://docs/boxencryption">Encrypt</a> Box content and set <a href="sbie://docs/black-box">Confidential</a> In this box type the sandbox uses an encrypted disk image as its root folder. This provides an additional layer of privacy and security. Access to the virtual disk when mounted is restricted to programs running within the sandbox. Sandboxie prevents other processes on the host system from accessing the sandboxed processes. This ensures the utmost level of privacy and data protection within the confidential sandbox environment. Hardened Sandbox with Data Protection Security Hardened Sandbox Sandbox with Data Protection Standard Isolation Sandbox (Default) Application Compartment with Data Protection Application Compartment Box Confidential Encrypted Box Remove after use After the last process in the box terminates, all data in the box will be deleted and the box itself will be removed. Configure advanced options To use encrypted boxes you need to install the ImDisk driver, do you want to download and install it? To use ancrypted boxes you need to install the ImDisk driver, do you want to download and install it? CBrowserOptionsPage Create Web Browser Template Configure web browser template options. Force the Web Browser to run in this sandbox Allow direct access to the entire Web Browser profile folder Allow direct access to Web Browser's phishing database Allow direct access to Web Browser's session management Allow direct access to Web Browser's sync data Allow direct access to Web Browser's preferences Allow direct access to Web Browser's passwords Allow direct access to Web Browser's cookies Allow direct access to Web Browser's bookmarks Allow direct access to Web Browser's bookmark and history database CBrowserPathsPage Create Web Browser Template Configure your Web Browser's profile directories. Configure your Web Browsers profile directories. User profile(s) directory: Show also imperfect matches Browser Executable (*.exe) Continue without browser profile Configure your Gecko based Browsers profile directories. Configure your Chromium based Browsers profile directories. No suitable folders have been found. Note: you need to run the browser unsandboxed for them to get created. Please browse to the correct user profile directory. No suitable fodlers have been found. Note: you need to run the browser unsandboxed for them to get created. Please browse to the correct user profile directory. Please choose the correct user profile directory, if it is not listed you may need to browse to it. Please ensure the selected directory is correct, the wizard is not confident in all the presented options. Please ensure the selected directory is correct. This path does not look like a valid profile directory. CBrowserTypePage Create Web Browser Template Select your Web Browsers main executable, this will allow Sandboxie to identify the browser. Select your Web Browsers main executable, this will allow sandboxie to identify the browser. Enter browser name: Main executable (eg. firefox.exe, chrome.exe, msedge.exe, etc...): Mein executable (eg. firefox.exe, chrome.exe, msedge.exe, etc...): Browser executable (*.exe) Browser Executable (*.exe) The browser appears to be Gecko based, like Mozilla Firefox and its derivatives. The browser appears to be Chromium based, like Microsoft Edge or Google Chrome and its derivatives. Browser could not be recognized, template cannot be created. This browser name is already in use, please choose an other one. This browser name is already in use, please chooe an other one. CCertificatePage Install your <b>Sandboxie-Plus</b> support certificate If you have a supporter certificate, please fill it into the field below. Retrieve certificate using Serial Number: Start evaluation without a certificate for a limited period of time. <b><a href="_"><font color='red'>Get a free evaluation certificate</font></a> and enjoy all premium features for %1 days.</b> You can request a free %1-day evaluation certificate up to %2 times per hardware ID. You can request a free %1-day evaluation certificate up to %2 times for any one Hardware ID To use <b>Sandboxie-Plus</b> in a business setting, an appropriate <a href="https://sandboxie-plus.com/go.php?to=sbie-get-cert">support certificate</a> for business use is required. If you do not yet have the required certificate(s), you can get those from the <a href="https://xanasoft.com/shop/">xanasoft.com web shop</a>. <b>Sandboxie-Plus</b> provides additional features and box types exclusively to <u>project supporters</u>. Boxes like the Privacy Enhanced boxes <b><font color='red'>protect user data from illicit access</font></b> by the sandboxed programs. If you are not yet a supporter, then please consider <a href="https://sandboxie-plus.com/go.php?to=sbie-get-cert">supporting the project</a> to ensure further development of Sandboxie and to receive a <a href="https://sandboxie-plus.com/go.php?to=sbie-cert">supporter certificate</a>. Failed to retrieve the certificate. Failed to retrive the certificate. Error: %1 Retrieving certificate... Retreiving certificate... CCleanUpJob Deleting Content CCompletePage Troubleshooting Completed Thank you for using the Troubleshooting Wizard for Sandboxie-Plus. We apologize for any inconvenience you experienced during the process. If you have any additional questions or need further assistance, please don't hesitate to reach out. We're here to help. Thank you for your understanding and cooperation. You can click Finish to close this wizard. CCompressDialog Sandboxie-Plus - Sandbox Export 7-Zip Zip Store Fastest Fast Normal Maximum Ultra CExtractDialog Sandboxie-Plus - Sandbox Import Select Directory This name is already in use, please select an alternative box name CFileBrowserWindow %1 - Files CFileView Create Shortcut Pin to Box Run Menu Recover to Any Folder Recover to Same Folder Run Recovery Checks Select Directory Create Shortcut to sandbox %1 CFilesPage Sandbox location and behavior Sandbox location and behavioure On this page the sandbox location and its behavior can be customized. You can use %USER% to save each users sandbox to an own folder. On this page the sandbox location and its behaviorue can be customized. You can use %USER% to save each users sandbox to an own fodler. Sandboxed Files Select Directory Virtualization scheme Version 1 Version 2 Separate user folders Use volume serial numbers for drives Auto delete content when last process terminates Enable Immediate Recovery of files from recovery locations The selected box location is not a valid path. The sellected box location is not a valid path. The selected box location exists and is not empty, it is recommended to pick a new or empty folder. Are you sure you want to use an existing folder? The sellected box location exists and is not empty, it is recomended to pick a new or empty folder. Are you sure you want to use an existing folder? The selected box location is not placed on a currently available drive. The selected box location not placed on a currently available drive. CFinishPage Complete your configuration Almost complete, click Finish to apply all selected options and conclude the wizard. CFinishTemplatePage Create Web Browser Template Almost complete, click Finish to create a new Web Browser Template and conclude the wizard. Browser name: %1 Browser Type: Gecko (Mozilla Firefox) Browser Type: Gecko (Mozilla firefox) Browser Type: Chromium (Google Chrome) Browser executable path: %1 Browser profile path: %1 CGetFileJob Failed to download file from: %1 CGroupPage Select issue from group Please specify the exact issue: Another issue CIntroPage Introduction Welcome to the Setup Wizard. This wizard will help you to configure your copy of <b>Sandboxie-Plus</b>. You can start this wizard at any time from the Sandbox->Maintenance menu if you do not wish to complete it now. Select how you would like to use Sandboxie-Plus &Personally, for private non-commercial use &Commercially, for business or enterprise use Note: this option is persistent CIsolationPage Sandbox Isolation options On this page sandbox isolation options can be configured. Network Access Allow network/internet access Block network/internet by denying access to Network devices Block network/internet using Windows Filtering Platform Allow access to network files and folders This option is not recommended for Hardened boxes Prompt user whether to allow an exemption from the blockade Admin Options Drop rights from Administrators and Power Users groups Make applications think they are running elevated Allow MSIServer to run with a sandboxed system token Box Options Use a Sandboxie login instead of an anonymous token Using a custom Sandboxie Token allows to isolate individual sandboxes from each other better, and it shows in the user column of task managers the name of the box a process belongs to. Some 3rd party security solutions may however have problems with custom tokens. CListPage Select issue from full list Search filter None of the above CMonitorModel Type Status Value Count CNewBoxWizard New Box Wizard This sandbox content will be placed in an encrypted container file, please note that any corruption of the container's header will render all its content permanently inaccessible. Corruption can occur as a result of a BSOD, a storage hardware failure, or a malicious application overwriting random files. This feature is provided under a strict <b>No Backup No Mercy</b> policy, YOU the user are responsible for the data you put into an encrypted box. <br /><br />IF YOU AGREE TO TAKE FULL RESPONSIBILITY FOR YOUR DATA PRESS [YES], OTHERWISE PRESS [NO]. This sandbox content will be placed in an encrypted container file, please note that any corruption of the container's header will render all its content permanently innaccessible. Corruption can occur as a result of a BSOD, a storage hadrware failure, or a maliciouse application overwriting random files. This feature is provided under a strickt <b>No Backup No Mercy</b> policy, YOU the user are responsible for the data you put into an encrypted box. <br /><br />IF YOU AGREE TO TAKE FULL RESPONSIBILITY FOR YOUR DATA PRESS [YES], OTHERWISE PRESS [NO]. Add your settings after this line. Shared Template The new sandbox has been created using the new <a href="https://sandboxie-plus.com/go.php?to=sbie-delete-v2">Virtualization Scheme Version 2</a>, if you experience any unexpected issues with this box, please switch to the Virtualization Scheme to Version 1 and report the issue, the option to change this preset can be found in the Box Options in the Box Structure group. The new sandbox has been created using the new <a href="https://sandboxie-plus.com/go.php?to=sbie-delete-v2">Virtualization Scheme Version 2</a>, if you expirience any unecpected issues with this box, please switch to the Virtualization Scheme to Version 1 and report the issue, the option to change this preset can be found in the Box Options in the Box Structure groupe. Don't show this message again. COnDeleteJob OnDelete: %1 COnlineUpdater Do you want to check if there is a new version of Sandboxie-Plus? Don't show this message again. Checking for updates... server not reachable Failed to check for updates, error: %1 <p>Do you want to download the installer?</p> <p>Do you want to download the updates?</p> <p>Do you want to go to the <a href="%1">download page</a>?</p> Don't show this update anymore. Downloading updates... invalid parameter failed to download updated information failed to download update informations failed to load updated json file failed to load update json file failed to download a particular file failed to scan existing installation updated signature is invalid !!! update signature is invalid !!! downloaded file is corrupted internal error unknown error Failed to download updates from server, error %1 <p>Updates for Sandboxie-Plus have been downloaded.</p><p>Do you want to apply these updates? If any programs are running sandboxed, they will be terminated.</p> Downloading installer... <p>A new Sandboxie-Plus installer has been downloaded to the following location:</p><p><a href="%2">%1</a></p><p>Do you want to begin the installation? If any programs are running sandboxed, they will be terminated.</p> <p>Do you want to go to the <a href="%1">info page</a>?</p> Don't show this announcement in the future. <p>There is a new version of Sandboxie-Plus available.<br /><font color='red'><b>New version:</b></font> <b>%1</b></p> Your Sandboxie-Plus supporter certificate is expired, however for the current build you are using it remains active, when you update to a newer build exclusive supporter features will be disabled. Do you still want to update? No new updates found, your Sandboxie-Plus is up-to-date. Note: The update check is often behind the latest GitHub release to ensure that only tested updates are offered. COptionsWindow Browse for File Browse for Folder Closed Closed RT Read Only Normal Open Open for All No Rename Box Only (Write Only) Ignore UIPI Unknown Regular Sandboxie behavior - allow read and also copy on write. Allow write-access outside the sandbox. Allow write-access outside the sandbox, also for applications installed inside the sandbox. Don't rename window classes. Deny access to host location and prevent creation of sandboxed copies. Block access to WinRT class. Allow read-only access only. Hide host files, folders or registry keys from sandboxed processes. Ignore UIPI restrictions for processes. File/Folder Registry IPC Path Wnd Class COM Object Select File All Files (*.*) Select Directory All Programs Group: %1 COM objects must be specified by their GUID, like: {00000000-0000-0000-0000-000000000000} RT interfaces must be specified by their name. Opening all IPC access also opens COM access, do you still want to restrict COM to the sandbox? Don't ask in future 'OpenWinClass=program.exe,#' is not supported, use 'NoRenameWinClass=program.exe,*' instead Template values can not be edited. Template values can not be removed. Enable the use of win32 hooks for selected processes. Note: You need to enable win32k syscall hook support globally first. Enable crash dump creation in the sandbox folder Always use ElevateCreateProcess fix, as sometimes applied by the Program Compatibility Assistant. Enable special inconsistent PreferExternalManifest behaviour, as needed for some Edge fixes Enable special inconsistent PreferExternalManifest behavioure, as neede for some edge fixes Set RpcMgmtSetComTimeout usage for specific processes Makes a write open call to a file that won't be copied fail instead of turning it read-only. Make specified processes think they have admin permissions. Make specified processes think thay have admin permissions. Force specified processes to wait for a debugger to attach. Sandbox file system root Sandbox registry root Sandbox ipc root bytes (unlimited) bytes (%1) unlimited Add special option: On Start Run Command Start Service On Init On File Recovery On Delete Content On Terminate Please enter the command line to be executed Please enter a program file name to allow access to this sandbox Please enter a program file name to deny access to this sandbox Deny %1 (%2) Failed to retrieve firmware table information. Firmware table saved successfully to host registry: HKEY_CURRENT_USER\System\SbieCustom<br />you can copy it to the sandboxed registry to have a different value for each box. Process Folder Children Document Select Executable File Executable Files (*.exe) Select Document Directory Please enter Document File Extension. For security reasons it is not permitted to create entirely wildcard BreakoutDocument presets. For security reasons it it not permitted to create entirely wildcard BreakoutDocument presets. For security reasons the specified extension %1 should not be broken out. Forcing the specified entry will most likely break Windows, are you sure you want to proceed? Forcing the specified folder will most likely break Windows, are you sure you want to proceed? This option requires an active supporter certificate This option requires a valid supporter certificate Don't alter the window title Display [#] indicator only Display box name in title Border disabled Show only when title is in focus Always show Hardened Sandbox with Data Protection Security Hardened Sandbox Sandbox with Data Protection Standard Isolation Sandbox (Default) Application Compartment with Data Protection This option requires an active <b>advanced</b> supporter certificate Application Compartment Custom icon Version 1 Version 2 Browse for Program Open Box Options Browse Content Start File Recovery Show Run Dialog Indeterminate Backup Image Header Restore Image Header Change Password Always copy Don't copy Copy empty kilobytes (%1) Select color Select Program The image file does not exist The password is wrong Unexpected error: %1 Image Password Changed Backup Image Header for %1 Image Header Backuped Restore Image Header for %1 Image Header Restored Please enter a service identifier Executables (*.exe *.cmd) Please enter a menu title Please enter a command Please enter a name for the new group Please select group first. Any TCP UDP ICMP Allow access Block using Windows Filtering Platform Block by denying access to Network devices Please enter a domain to be filtered Yes No Please enter IP and Port. entry: IP or Port cannot be empty Allow Block (WFP) Block (NDev) A non empty program name is required. Block Please enter a file extension to be excluded All Categories Custom Templates Email Reader PDF/Print Security/Privacy Desktop Utilities Download Managers Miscellaneous Web Browser Media Player Torrent Client This template is enabled globally. To configure it, use the global options. Please enter the template identifier Error: %1 Do you really want to delete the selected local template(s)? Only local templates can be removed! An alternate location for '%1' should contain the following file: %2 The selected location does not contain this file. Please select a folder which contains this file. Sandboxie Plus - '%1' Options File Options Grouping Add %1 Template Search for options Box: %1 Template: %1 Global: %1 Default: %1 This sandbox has been deleted hence configuration can not be saved. Some changes haven't been saved yet, do you really want to close this options window? Enter program: CPopUpMessage ? Visit %1 for a detailed explanation. Troubleshooting Start troubleshooting wizard Dismiss Remove this message from the list Hide all such messages (%1) CPopUpProgress Dismiss Remove this progress indicator from the list CPopUpPrompt Remember for this process Yes No Terminate Yes and add to allowed programs Requesting process terminated Request will time out in %1 sec Request timed out CPopUpRecovery Recover to: Browse Clear folder list Recover Recover the file to original location Recover && Explore Recover && Open/Run Open file recovery for this box Dismiss Don't recover this file right now Dismiss all from this box Disable quick recovery until the box restarts Select Directory CPopUpWindow Sandboxie-Plus Notifications Do you want to allow the print spooler to write outside the sandbox for %1 (%2)? Do you want to allow %4 (%5) to copy a %1 large file into sandbox: %2? File name: %3 Do you want to allow %1 (%2) access to the internet? Full path: %3 %1 is eligible for quick recovery from %2. The file was written by: %3 an UNKNOWN process. %1 (%2) UNKNOWN Migrating a large file %1 into the sandbox %2, %3 left. Full path: %4 CRecoveryLogWnd Sandboxie-Plus - Recovery Log Time|Box Name|File Path Cleanup Recovery Log The following files were recently recovered and moved out of a sandbox. the following files were recently recovered and moved out of a sandbox. CRecoveryWindow %1 - File Recovery File Name File Size Full Path Remember target selection Delete everything, including all snapshots Original location Browse for location Clear folder list Select Directory No Files selected! Do you really want to delete %1 selected files? Close until all programs stop in this box Close and Disable Immediate Recovery for this box There are %1 new files available to recover. Recovering File(s)... There are %1 files and %2 folders in the sandbox, occupying %3 of disk space. CRunPage Troubleshooting ... This troubleshooting procedure could not be initialized. You can click on next to submit an issue report. Something failed internally this troubleshooting procedure can not continue. You can click on next to submit an issue report. Somethign failed internally this troubleshooting procedure can not continue. You can click on next to submit an issue report. Error: CSBUpdate Configure <b>Sandboxie-Plus</b> updater Like with any other security product, it's important to keep your Sandboxie-Plus up to date. Like with any other security product it's important to keep your Sandboxie-Plus up to date. Regularly check for all updates to Sandboxie-Plus and optional components Regularly Check for all updates to Sandboxie-Plus and optional components Let Sandboxie regularly check for latest updates. Let sandboxie regularly check for latest updates. Check for new Sandboxie-Plus versions: Check for new Sandboxie-Plus builds. Select in which update channel to look for new Sandboxie-Plus builds: Sellect in which update channel to look for new Sandboxie-Plus builds: In the Stable Channel The stable channel contains the latest stable GitHub releases. In the Preview Channel - with newest experimental changes The preview channel contains the latest GitHub pre-releases. In the Insider Channel - exclusive features The Insider channel offers early access to new features and bugfixes that will eventually be released to the public, as well as all relevant improvements from the stable channel. Unlike the preview channel, it does not include untested, potentially breaking, or experimental changes that may not be ready for wider use. More about the <a href="https://sandboxie-plus.com/go.php?to=sbie-insider">Insider Channel</a> Keep Compatibility Templates up to date and apply hotfixes Keep Compatybility Templates up to date and apply hotfixes Check for latest compatibility templates and hotfixes. Check for latest compatybility tempaltes and hotfixes. Get the latest Scripts for the Troubleshooting Wizard Check for latest troubleshooting scripts for the troubleshooting wizard. Check for latest troubleshooting scripts for the troubleshooting wizars. Keep the list of optional Add-on components up to date Check for latest available add-ons. Check for latest avaialble addons. Sandboxie-Plus applies strict application restrictions, which can lead to compatibility issues. Stay updated with Sandboxie-Plus, including compatibility templates and troubleshooting, to ensure smooth operation amid Windows updates and application changes. Access to the latest compatibility templates and the online troubleshooting database requires a valid <a href="https://sandboxie-plus.com/go.php?to=sbie-cert">supporter certificate</a>. CSandBox Waiting for folder: %1 Deleting folder: %1 Merging folders: %1 &gt;&gt; %2 Finishing Snapshot Merge... CSandBoxPlus Disabled OPEN Root Access Application Compartment NOT SECURE Reduced Isolation Enhanced Isolation Privacy Enhanced No INet (with Exceptions) No INet Net Share No Admin Auto Delete Normal CSandMan Sandboxie-Plus v%1 Reset Columns Copy Cell Copy Row Copy Panel Time|Message Sbie Messages Trace Log Show/Hide Pause Forcing Programs &Sandbox Create New Box Create Box Group Terminate All Processes Disable File Recovery &Maintenance Connect Disconnect Stop All &Advanced Install Driver Start Driver Stop Driver Uninstall Driver Install Service Start Service Stop Service Uninstall Service Setup Wizard Uninstall All Exit &View Simple View Advanced View Always on Top Show Hidden Boxes Show All Sessions Refresh View Clean Up Cleanup Processes Cleanup Message Log Cleanup Trace Log Cleanup Recovery Log Keep terminated &Options Global Settings Reset all hidden messages Reset all GUI options Trace Logging &Help Visit Support Forum Online Documentation Check for Updates About the Qt Framework About Sandboxie-Plus Create New Sandbox Create New Group Cleanup <a href="sbie://update/installer" style="color: red;">There is a new Sandboxie-Plus release %1 ready</a> <a href="sbie://update/apply" style="color: red;">There is a new Sandboxie-Plus update %1 ready</a> <a href="sbie://update/check" style="color: red;">There is a new Sandboxie-Plus update v%1 available</a> <a href="https://sandboxie-plus.com/go.php?to=patreon">Support Sandboxie-Plus on Patreon</a> Click to open web browser Time|Box Name|File Path Recovery Log Click to run installer Click to apply update Do you want to close Sandboxie Manager? Sandboxie-Plus was running in portable mode, now it has to clean up the created services. This will prompt for administrative privileges. Do you want to do the clean up? Don't show this message again. This box provides <a href="sbie://docs/security-mode">enhanced security isolation</a>, it is suitable to test untrusted software. This box provides enhanced security isolation, it is suitable to test untrusted software. This box provides standard isolation, it is suitable to run your software to enhance security. This box does not enforce isolation, it is intended to be used as an <a href="sbie://docs/compartment-mode">application compartment</a> for software virtualization only. This box does not enforce isolation, it is intended to be used as an application compartment for software virtualization only. <br /><br />This box <a href="sbie://docs/privacy-mode">prevents access to all user data</a> locations, except explicitly granted in the Resource Access options. This box <a href="sbie://docs/privacy-mode">prevents access to all user data</a> locations, except explicitly granted in the Resource Access options. Unknown operation '%1' requested via command line Dismiss Update Notification - Driver/Service NOT Running! - Deleting Sandbox Content Executing OnBoxDelete: %1 Auto Deleting %1 Content Auto deleting content of %1 %1 Directory: %2 Application Installation Current Config: %1 Do you want the setup wizard to be omitted? Sandboxie-Plus - Error Failed to stop all Sandboxie components Failed to start required Sandboxie components WARNING: Sandboxie-Plus.ini in %1 cannot be written to, settings will not be saved. Some compatibility templates (%1) are missing, probably deleted, do you want to remove them from all boxes? Cleaned up removed templates... Sandboxie-Plus was started in portable mode, do you want to put the Sandbox folder into its parent directory? Yes will choose: %1 No will choose: %2 Default sandbox not found; creating: %1 - NOT connected The selected feature set is only available to project supporters. Processes started in a box with this feature set enabled without a supporter certificate will be terminated after 5 minutes.<br /><a href="https://sandboxie-plus.com/go.php?to=sbie-get-cert">Become a project supporter</a>, and receive a <a href="https://sandboxie-plus.com/go.php?to=sbie-cert">supporter certificate</a> Recovering file %1 to %2 The file %1 already exists, do you want to overwrite it? Do this for all files! Checking file %1 The file %1 failed a security check! %2 All files passed the checks The file %1 failed a security check, do you want to recover it anyway? %2 The file %1 failed a security check, do you want to recover it anyways? %2 Failed to recover some files: Only Administrators can change the config. Please enter the configuration password. Login Failed: %1 Do you want to terminate all processes in all sandboxes? Sandboxie-Plus was started in portable mode and it needs to create necessary services. This will prompt for administrative privileges. CAUTION: Another agent (probably SbieCtrl.exe) is already managing this Sandboxie session, please close it first and reconnect to take over. Executing maintenance operation, please wait... Do you also want to reset hidden message boxes (yes), or only all log messages (no)? The changes will be applied automatically whenever the file gets saved. The changes will be applied automatically as soon as the editor is closed. Error Status: 0x%1 (%2) Unknown A sandbox must be emptied before it can be deleted. Failed to copy box data files Failed to remove old box data files Unknown Error Status: 0x%1 Do you want to open %1 in a sandboxed or unsandboxed Web browser? Sandboxed Unsandboxed Case Sensitive RegExp Highlight Close &Find ... All columns Administrator rights are required for this operation. Vintage View (like SbieCtrl) Contribute to Sandboxie-Plus Import Box Run Sandboxed Disable Message Popup Is Window Sandboxed? Is Window Sandboxed Sandboxie-Plus Insider [%1] Troubleshooting Wizard Show File Panel Edit Sandboxie.ini Edit Templates.ini Edit Sandboxie-Plus.ini Reload configuration &File Resource Access Monitor Programs Files and Folders Import Sandbox Set Container Folder Set Layout and Groups Reveal Hidden Boxes &Configure Program Alerts Windows Shell Integration Software Compatibility Lock Configuration Sandbox %1 New-Box Menu Edit-ini Menu Toolbar Items Reset Toolbar Click to download update No Force Process Removed Shortcut: %1 Updated Shortcut to: %1 Added Shortcut to: %1 Auto removing sandbox %1 Sandboxie-Plus Version: %1 (%2) Data Directory: %1 for Personal use - for Non-Commercial use ONLY Your Windows build %1 exceeds the current support capabilities of your Sandboxie version, resulting in the disabling of token-based security isolation. Consequently, all applications will operate in application compartment mode without secure isolation. Please check if there is an update for sandboxie. Your Windows build %1 exceeds the current support capabilities of your Sandboxie version, resulting in the disabling of token-based security isolation. Consequently, all applications will operate in application compartment mode without secure isolation. Please check if there is an update for sandboxie. Don't show this message again for the current build. Your Windows build %1 exceeds the current known support capabilities of your Sandboxie version, Sandboxie will attempt to use the last-known offsets which may cause system instability. (%1) The program %1 started in box %2 will be terminated in 5 minutes because the box was configured to use features exclusively available to project supporters. The box %1 is configured to use features exclusively available to project supporters, these presets will be ignored. <br /><a href="https://sandboxie-plus.com/go.php?to=sbie-get-cert">Become a project supporter</a>, and receive a <a href="https://sandboxie-plus.com/go.php?to=sbie-cert">supporter certificate</a> Virtual Disks Suspend All Processes Lock All Encrypted Boxes Restart As Admin This box will be <a href="sbie://docs/boxencryption">encrypted</a> and <a href="sbie://docs/black-box">access to sandboxed processes will be guarded</a>. Which box you want to add in? Type the box name which you are going to set: Sandboxie-Plus Warning The value is not an existing directory or executable. You typed a wrong box name! Nothing was changed. User canceled this operation. USB sandbox not found; creating: %1 Executing OnBoxTerminate: %1 Failed to configure hotkey %1, error: %2 The box %1 is configured to use features exclusively available to project supporters. The box %1 is configured to use features which require an <b>advanced</b> supporter certificate. <br /><a href="https://sandboxie-plus.com/go.php?to=sbie-upgrade-cert">Upgrade your Certificate</a> to unlock advanced features. The selected feature requires an <b>advanced</b> supporter certificate. <br />you need to be on the Great Patreon level or higher to unlock this feature. The selected feature set is only available to project supporters.<br /><a href="https://sandboxie-plus.com/go.php?to=sbie-get-cert">Become a project supporter</a>, and receive a <a href="https://sandboxie-plus.com/go.php?to=sbie-cert">supporter certificate</a> The certificate you are attempting to use has been blocked, meaning it has been invalidated for cause. Any attempt to use it constitutes a breach of its terms of use! The Certificate Signature is invalid! The Certificate is not suitable for this product. The Certificate is node locked. The support certificate is not valid. Error: %1 The evaluation period has expired!!! The evaluation periode has expired!!! Don't ask in future Do you want to terminate all processes in encrypted sandboxes, and unmount them? Please enter the duration, in seconds, for disabling Forced Programs rules. No Recovery No Messages <b>ERROR:</b> The Sandboxie-Plus Manager (SandMan.exe) does not have a valid signature (SandMan.exe.sig). Please download a trusted release from the <a href="https://sandboxie-plus.com/go.php?to=sbie-get">official Download page</a>. Maintenance operation failed (%1) Maintenance operation completed In the Plus UI, this functionality has been integrated into the main sandbox list view. Using the box/group context menu, you can move boxes and groups to other groups. You can also use drag and drop to move the items around. Alternatively, you can also use the arrow keys while holding ALT down to move items up and down within their group.<br />You can create new boxes and groups from the Sandbox menu. You are about to edit the Templates.ini, this is generally not recommended. This file is part of Sandboxie and all change done to it will be reverted next time Sandboxie is updated. You are about to edit the Templates.ini, thsi is generally not recommeded. This file is part of Sandboxie and all changed done to it will be reverted next time Sandboxie is updated. Sandboxie config has been reloaded Failed to execute: %1 Failed to connect to the driver Failed to communicate with Sandboxie Service: %1 An incompatible Sandboxie %1 was found. Compatible versions: %2 Can't find Sandboxie installation path. Failed to copy configuration from sandbox %1: %2 A sandbox of the name %1 already exists Failed to delete sandbox %1: %2 The sandbox name can not be longer than 32 characters. The sandbox name can not be a device name. The sandbox name can contain only letters, digits and underscores which are displayed as spaces. Failed to terminate all processes Delete protection is enabled for the sandbox All sandbox processes must be stopped before the box content can be deleted Error deleting sandbox folder: %1 All processes in a sandbox must be stopped before it can be renamed. A all processes in a sandbox must be stopped before it can be renamed. Failed to move directory '%1' to '%2' Failed to move box image '%1' to '%2' This Snapshot operation can not be performed while processes are still running in the box. Failed to create directory for new snapshot Snapshot not found Error merging snapshot directories '%1' with '%2', the snapshot has not been fully merged. Failed to remove old snapshot directory '%1' Can't remove a snapshot that is shared by multiple later snapshots You are not authorized to update configuration in section '%1' Failed to set configuration setting %1 in section %2: %3 Can not create snapshot of an empty sandbox A sandbox with that name already exists The config password must not be longer than 64 characters The operation was canceled by the user The content of an unmounted sandbox can not be deleted The content of an un mounted sandbox can not be deleted %1 Import/Export not available, 7z.dll could not be loaded Failed to create the box archive Failed to open the 7z archive Failed to unpack the box archive The selected 7z file is NOT a box archive Operation failed for %1 item(s). Remember choice for later. <h3>About Sandboxie-Plus</h3><p>Version %1</p><p> This copy of Sandboxie-Plus is certified for: %1 Sandboxie-Plus is free for personal and non-commercial use. Sandboxie-Plus is an open source continuation of Sandboxie.<br />Visit <a href="https://sandboxie-plus.com">sandboxie-plus.com</a> for more information.<br /><br />%2<br /><br />Features: %3<br /><br />Installation: %1<br />SbieDrv.sys: %4<br /> SbieSvc.exe: %5<br /> SbieDll.dll: %6<br /><br />Icons from <a href="https://icons8.com">icons8.com</a> The supporter certificate is not valid for this build, please get an updated certificate The supporter certificate has expired%1, please get an updated certificate The supporter certificate is expired %1 days ago, please get an updated certificate , but it remains valid for the current build The supporter certificate will expire in %1 days, please get an updated certificate The selected window is running as part of program %1 in sandbox %2 The selected window is not running as part of any sandboxed program. Drag the Finder Tool over a window to select it, then release the mouse to check if the window is sandboxed. Sandboxie-Plus - Window Finder Sandboxie Manager can not be run sandboxed! CSbieModel Box Group Empty Name Process ID Status Title Info Path / Command Line CSbieObject Run &Un-Sandboxed CSbieProcess Sbie RpcSs Sbie DcomLaunch Sbie Crypto Sbie WuauServ Sbie BITS Sbie Svc MSI Installer Trusted Installer Windows Update Windows Explorer Internet Explorer Firefox Windows Media Player Winamp KMPlayer Windows Live Mail Service Model Reg RunDll32 DllHost Windows Ink Services Chromium Based Google Updater Acrobat Reader MS Outlook MS Excel Flash Player Firefox Plugin Container Generic Web Browser Generic Mail Client Thunderbird Terminated Suspended Forced Running Elevated as System in session %1 (%1) CSbieTemplatesEx Failed to initialize COM Failed to create update session Failed to create update searcher Failed to set search options Failed to enumerate installed Windows updates Failed to search for updates Failed to retrieve update list from search result Failed to get update count CSbieView Create New Box Remove Group Run Run Program Run from Start Menu Default Web Browser Default eMail Client Windows Explorer Registry Editor Programs and Features Terminate All Programs Create Shortcut Explore Content Snapshots Manager Recover Files Delete Content Sandbox Presets Ask for UAC Elevation Drop Admin Rights Emulate Admin Rights Block Internet Access Allow Network Shares Sandbox Options Standard Applications Browse Files Sandbox Tools Duplicate Box Config Rename Sandbox Move Sandbox Remove Sandbox Terminate Preset Pin to Run Menu Block and Terminate Allow internet access Force into this sandbox Set Linger Process Set Leader Process File root: %1 Registry root: %1 IPC root: %1 Options: [None] Please enter a new group name Do you really want to remove the selected group(s)? Create Box Group Rename Group Stop Operations Command Prompt Command Prompt (as Admin) Command Prompt (32-bit) Execute Autorun Entries Browse Content Box Content Open Registry Refresh Info Import Box (Host) Start Menu Mount Box Image Unmount Box Image Immediate Recovery Disable Force Rules Export Box Move Up Move Down Suspend Resume Run Web Browser Run eMail Reader Run Any Program Run From Start Menu Run Windows Explorer Terminate Programs Quick Recover Sandbox Settings Duplicate Sandbox Config Export Sandbox Move Group Disk root: %1 Please enter a new name for the Group. Move entries by (negative values move up, positive values move down): A group can not be its own parent. Failed to open archive, wrong password? Failed to open archive (%1)! Importing: %1 The Sandbox name and Box Group name cannot use the ',()' symbol. This name is already used for a Box Group. This name is already used for a Sandbox. Don't show this message again. This Sandbox is empty. WARNING: The opened registry editor is not sandboxed, please be careful and only do changes to the pre-selected sandbox locations. Don't show this warning in future Please enter a new name for the duplicated Sandbox. %1 Copy Select file name 7-Zip Archive (*.7z);;Zip Archive (*.zip) Exporting: %1 Please enter a new name for the Sandbox. Please enter a new alias for the Sandbox. The entered name is not valid, do you want to set it as an alias instead? Do you really want to remove the selected sandbox(es)?<br /><br />Warning: The box content will also be deleted! Do you really want to remove the selected sandbox(es)? This Sandbox is already empty. Do you want to delete the content of the selected sandbox? Also delete all Snapshots Do you really want to delete the content of all selected sandboxes? Do you want to terminate all processes in the selected sandbox(es)? Terminate without asking The Sandboxie Start Menu will now be displayed. Select an application from the menu, and Sandboxie will create a new shortcut icon on your real desktop, which you can use to invoke the selected application under the supervision of Sandboxie. The Sandboxie Start Menu will now be displayed. Select an application from the menu, and Sandboxie will create a newshortcut icon on your real desktop, which you can use to invoke the selected application under the supervision of Sandboxie. Create Shortcut to sandbox %1 Do you want to terminate %1? Do you want to %1 %2? the selected processes This box does not have Internet restrictions in place, do you want to enable them? This sandbox is currently disabled or restricted to specific groups or users. Would you like to allow access for everyone? This sandbox is disabled or restricted to a group/user, do you want to allow box for everybody ? CScriptManager Fatal error, failed to load troubleshooting instructions! Error, troubleshooting instructions duplicated %1 (%2 <-> %3)! Downloaded troubleshooting instructions are corrupted! CSelectBoxWindow Sandboxie-Plus - Run Sandboxed Are you sure you want to run the program outside the sandbox? Please select a sandbox. CSettingsWindow Sandboxie Plus - Global Settings Sandboxie Plus - Settings Auto Detection No Translation Don't integrate links As sub group Fully integrate Don't show any icon Don't integrate links Show Plus icon Show Classic icon All Boxes Active + Pinned Pinned Only Close to Tray Prompt before Close Close Hide (Run invisible in Background) None Native Qt Every Day Every Week Every 2 Weeks Every 30 days Ignore %1 %1 % HwId: %1 Search for settings Run &Sandboxed kilobytes (%1) Volume not attached <b>You have used %1/%2 evaluation certificates. No more free certificates can be generated.</b> <b><a href="_">Get a free evaluation certificate</a> and enjoy all premium features for %1 days.</b> This supporter certificate has expired, please <a href="https://sandboxie-plus.com/go.php?to=sbie-renew-cert">get an updated certificate</a>. <br /><font color='red'>For the current build Plus features remain enabled</font>, but you no longer have access to Sandboxie-Live services, including compatibility updates and the troubleshooting database. This supporter certificate will <font color='red'>expire in %1 days</font>, please <a href="https://sandboxie-plus.com/go.php?to=sbie-renew-cert">get an updated certificate</a>. Expires in: %1 days Expires: %1 Days ago Options: %1 Security/Privacy Enhanced & App Boxes (SBox): %1 Enabled Disabled Encrypted Sandboxes (EBox): %1 Network Interception (NetI): %1 Sandboxie Desktop (Desk): %1 This does not look like a Sandboxie-Plus Serial Number.<br />If you have attempted to enter the UpdateKey or the Signature from a certificate, that is not correct, please enter the entire certificate into the text area above instead. You are attempting to use a feature Upgrade-Key without having entered a pre-existing supporter certificate. Please note that this type of key (<b>as it is clearly stated in bold on the website</b) requires you to have a pre-existing valid supporter certificate; it is useless without one.<br />If you want to use the advanced features, you need to obtain both a standard certificate and the feature upgrade key to unlock advanced functionality. You are attempting to use a feature Upgrade-Key without having entered a preexisting supporter certificate. Please note that these type of key (<b>as it is clearly stated in bold on the website</b>) require you to have a preexisting valid supporter certificate, it is useless without one.<br />If you want to use the advanced features you need to obtain booth a standard certificate and the feature upgrade key to unlock advanced functionality. You are attempting to use a Renew-Key without having entered a pre-existing supporter certificate. Please note that this type of key (<b>as it is clearly stated in bold on the website</b) requires you to have a pre-existing valid supporter certificate; it is useless without one. You are attempting to use a Renew-Key without having a preexisting supporter certificate. Please note that these type of key (<b>as it is clearly stated in bold on the website</b>) require you to have a preexisting supporter certificate, it is useless without one. <br /><br /><u>If you have not read the product description and obtained this key by mistake, please contact us via email (provided on our website) to resolve this issue.</u> <br /><br /><u>If you have not read the product description and got this key by mistake, please contact us by email (provided on our website) to resolve this issue.</u> Sandboxie-Plus - Get EVALUATION Certificate Please enter your email address to receive a free %1-day evaluation certificate, which will be issued to %2 and locked to the current hardware. You can request up to %3 evaluation certificates for each unique hardware ID. Error retrieving certificate: %1 Error retriving certificate: %1 Unknown Error (probably a network issue) Contributor Eternal Business Personal Great Patreon Patreon Family Evaluation Type %1 Advanced Advanced (L) Max Level Level %1 Supporter certificate required for access Supporter certificate required for automation This certificate is unfortunately not valid for the current build, you need to get a new certificate or downgrade to an earlier build. Although this certificate has expired, for the currently installed version plus features remain enabled. However, you will no longer have access to Sandboxie-Live services, including compatibility updates and the online troubleshooting database. This certificate has unfortunately expired, you need to get a new certificate. Sandboxed Web Browser Notify Download & Notify Download & Install Browse for Program Add %1 Template Select font Reset font %0, %1 pt Please enter message Select Program Executables (*.exe *.cmd) Please enter a menu title Please enter a command You can request a free %1-day evaluation certificate up to %2 times per hardware ID. <br /><font color='red'>Plus features will be disabled in %1 days.</font> <br />Plus features are no longer enabled. Expired: %1 days ago Retrieving certificate... Home Run &Un-Sandboxed Set Force in Sandbox Set Open Path in Sandbox This does not look like a certificate. Please enter the entire certificate, not just a portion of it. The evaluation certificate has been successfully applied. Enjoy your free trial! Thank you for supporting the development of Sandboxie-Plus. Update Available Installed by %1 (info website) This Add-on is mandatory and can not be removed. Select Directory <a href="check">Check Now</a> Please enter the new configuration password. Please re-enter the new configuration password. Passwords did not match, please retry. Process Folder Please enter a program file name Please enter the template identifier Error: %1 Do you really want to delete the selected local template(s)? %1 (Current) CSetupWizard Setup Wizard The decision you make here will affect which page you get to see next. This help is likely not to be of any help. Sorry, I already gave all the help I could. Setup Wizard Help CShellPage Configure <b>Sandboxie-Plus</b> shell integration Configure how Sandboxie-Plus should integrate with your system. Start UI with Windows Add 'Run Sandboxed' to the explorer context menu Add desktop shortcut for starting Web browser under Sandboxie Only applications with admin rights can change configuration Only applications with administrator token can change ini setting. Warning Enabling this option prevents changes to the Sandboxie.ini configuration from the user interface without admin rights. Be careful, as using Sandboxie Manager with normal user rights may result in a lockout. To make changes to the configuration, you must restart Sandboxie Manager as an admin by clicking 'Restart as Admin' in the 'Sandbox' menu in the main window. CSnapshotsWindow %1 - Snapshots Snapshot Revert to empty box (default) Please enter a name for the new Snapshot. New Snapshot Do you really want to switch the active snapshot? Doing so will delete the current state! Do you really want to delete the selected snapshot? Performing Snapshot operation... CStackView #|Symbol CSubmitPage Submit Issue Report Detailed issue description Attach Sandboxie.ini Sandboxing compatibility is reliant on the configuration, hence attaching the Sandboxie.ini file helps a lot with finding the issue. Attach Logs Selecting partially checked state sends only the message log, but not the trace log. Before sending, you can review the logs in the main window. Select partially checked state to sends only message log but no trace log. Before sending you can review the logs in the main window. Attach Crash Dumps An application crashed during the troubleshooting procedure, attaching a crash dump can help with the debugging. An applicatin crashed during the troubleshooting procedure, attaching a crash dump can help with the debugging. Email address You have the option to provide an email address to receive a notification once a solution for your issue has been identified. We apologize for the inconvenience you are currently facing with Sandboxie-Plus. Unfortunately, the automated troubleshooting procedure failed. Regrettably, there is no automated troubleshooting procedure available for the specific issue you have described. If you wish to submit an issue report, please review the report below and click 'Finish'. Compressing Logs Compressing Dumps Submitting issue report... Failed to submit issue report, error %1 Try submitting without the log attached. Your issue report has been successfully submitted, thank you. Your issue report have been successfully submitted, thank you. CSummaryPage Create the new Sandbox Almost complete, click Finish to create a new sandbox and conclude the wizard. Save options as new defaults Skip this summary page when advanced options are not set Don't show the summary page in future (unless advanced options were set) This Sandbox will be saved to: %1 This box's content will be DISCARDED when it's closed, and the box will be removed. This box's content will be DISCARDED when its closed, and the box will be removed. This box will DISCARD its content when its closed, its suitable only for temporary data. Processes in this box will not be able to access the internet or the local network, this ensures all accessed data to stay confidential. This box will run the MSIServer (*.msi installer service) with a system token, this improves the compatibility but reduces the security isolation. This box will run the MSIServer (*.msi installer service) with a system token, this improves the compatybility but reduces the security isolation. Processes in this box will think they are run with administrative privileges, without actually having them, hence installers can be used even in a security hardened box. Processes in this box will be running with a custom process token indicating the sandbox they belong to. Processes in this box will be running with a custom process token indicating the sandbox thay belong to. Failed to create new box: %1 CSupportDialog This Insider build requires a special certificate of type GREAT_PATREON, PERSONAL-HUGE, or CONTRIBUTOR. If you are a Great Supporter on Patreon already, Sandboxie can check online for an update of your certificate. This Insider build requires a special certificate of type GREAT_PATREON, PERSONAL-HUGE, or CONTRIBUTOR. An attempt was made to use a blocked certificate on this system. This action violates the terms of use for the support certificate. You must now purchase a valid certificate, as the usage of the free version has been restricted. This is a <a href="https://sandboxie-plus.com/go.php?to=sbie-insider">exclusive Insider build</a> of Sandboxie-Plus it is only available to <a href="https://sandboxie-plus.com/go.php?to=patreon">Patreon Supporters</a> on higher tiers as well as to project contributors and owners of a HUGE supporter certificate. The installed supporter certificate allows for <b>%1 seats</b> to be active.<br /><br /> <b>There seems to be however %1 Sandboxie-Plus instances on your network, <font color='red'>you need to obtain additional <a href="https://sandboxie-plus.com/go.php?to=sbie-obtain-cert&tip=more">support certificates</a></font>.</b><br /><br /> <b>There seams to be howeever %1 Sandboxie-Plus instances on your network, <font color='red'>you need to obtain additional <a href="https://sandboxie-plus.com/go.php?to=sbie-obtain-cert&tip=more">support certificates</a></font>.</b><br /><br /> The installed supporter certificate <b>has expired %1 days ago</b> and <a href="https://sandboxie-plus.com/go.php?to=sbie-renew-cert">must be renewed</a>.<br /><br /> The installed supporter certificate <b>has expired %1 days ago</b> and <a href="https://sandboxie-plus.com/go.php?to=sbie-get-cert">must be renewed</a>.<br /><br /> <b>You have installed Sandboxie-Plus more than %1 days ago.</b><br /><br /> <u>Commercial use of Sandboxie past the evaluation period</u>, requires a valid <a href="https://sandboxie-plus.com/go.php?to=sbie-obtain-cert">support certificate</a>. <u>Commercial use of Sandboxie past the evaluation period</u>, requires a valid <a href="https://sandboxie-plus.com/go.php?to=sbie-get-cert">support certificate</a>. The installed supporter certificate is <b>outdated</b> and it is <u>not valid for<b> this version</b></u> of Sandboxie-Plus.<br /><br /> The installed supporter certificate is <b>expired</b> and <u>should be renewed</u>.<br /><br /> The installed supporter certificate is <b>expired</b> and <u>should to be renewed</u>.<br /><br /> <b>You have been using Sandboxie-Plus for more than %1 days now.</b><br /><br /> Sandboxie on ARM64 requires a valid supporter certificate for continued use.<br /><br /> Personal use of Sandboxie is free of charge on x86/x64, although some functionality is only available to project supporters.<br /><br /> Please continue <a href="https://sandboxie-plus.com/go.php?to=sbie-renew-cert">supporting the project</a> by renewing your <a href="https://sandboxie-plus.com/go.php?to=sbie-cert">supporter certificate</a> and continue using the <b>enhanced functionality</b> in new builds. Please continue <a href="https://sandboxie-plus.com/go.php?to=sbie-get-cert">supporting the project</a> by renewing your <a href="https://sandboxie-plus.com/go.php?to=sbie-cert">supporter certificate</a> and continue using the <b>enhanced functionality</b> in new builds. Sandboxie <u>without</u> a valid supporter certificate will sometimes <b><font color='red'>pause for a few seconds</font></b>. This pause allows you to consider <a href="https://sandboxie-plus.com/go.php?to=sbie-obtain-cert">purchasing a supporter certificate</a> or <a href="https://sandboxie-plus.com/go.php?to=sbie-contribute">earning one by contributing</a> to the project. <br /><br />A <a href="https://sandboxie-plus.com/go.php?to=sbie-cert">supporter certificate</a> not just removes this reminder, but also enables <b>exclusive enhanced functionality</b> providing better security and compatibility. Sandboxie <u>without</u> a valid supporter certificate will sometimes <b><font color='red'>pause for a few seconds</font></b>, to give you time to contemplate the option of <a href="https://sandboxie-plus.com/go.php?to=sbie-get-cert">supporting the project</a>.<br /><br />A <a href="https://sandboxie-plus.com/go.php?to=sbie-cert">supporter certificate</a> not just removes this reminder, but also enables <b>exclusive enhanced functionality</b> providing better security and compatibility. Sandboxie-Plus - Support Reminder %1 Quit Continue Get Certificate Enter Certificate CTemplateTypePage Create new Template Select template type: %1 template CTemplateWizard Compatibility Template Wizard Compatybility Template Wizard Custom Web Browser Force %1 to run in this sandbox Allow direct access to the entire %1 profile folder Allow direct access to %1 phishing database Allow direct access to %1 session management Allow direct access to %1 passwords Allow direct access to %1 cookies Allow direct access to %1 bookmark and history database Allow direct access to %1 sync data Allow direct access to %1 preferences Allow direct access to %1 bookmarks CTestProxyDialog Sandboxie-Plus - Test Proxy N/A Testing... This test cannot be disabled. [%1] Starting Test 1: Connection to the Proxy Server [%1] IP Address: %2 [%1] Connection established. [%1] Test passed. [%1] Connection to proxy server failed: %2. [%1] Test failed. [%1] Starting Test 2: Connection through the Proxy Server [%1] Authentication was successful. [%1] Connection to %2 established through the proxy server. [%1] Loading a web page to test the proxy server. [%1] %2. [%1] Connection through proxy server failed: %2. [%1] Web page loaded successfully. Timeout [%1] Failed to load web page: %2. [%1] Starting Test 3: Proxy Server latency [%1] Latency through proxy server: %2ms. [%1] Failed to get proxy server latency: Request timeout. [%1] Failed to get proxy server latency. [%1] Test Finished. Stopped Stop [%1] Testing started... Proxy Server Address: %2 Protocol: %3 Authentication: %4%5 Retry Test Passed Test Failed Invalid Timeout value. Please enter a value between 1 and 60. Invalid Port value. Please enter a value between 1 and 65535. Invalid Host value. Please enter a valid host name excluding 'http[s]://'. Invalid Ping Count value. Please enter a value between 1 and 10. CTraceModel Unknown %1 (%2) Process %1 Thread %1 Process Type Status Value CTraceView Show as task tree Show NT Object Tree PID: [All] TID: Type: Status: Open Closed Trace Other Show All Boxes Show Stack Trace Save to file Auto Scroll Cleanup Trace Log To use the stack traces feature the DbgHelp.dll and SymSrv.dll are required, do you want to download and install them? Save trace log to file Failed to open log file for writing Saving TraceLog... %1 (%2) Monitor mode %1 CTraceWindow Sandboxie-Plus - Trace Monitor CUIPage Configure <b>Sandboxie-Plus</b> UI Select the user interface style you prefer. &Advanced UI for experts &Simple UI for beginners &Vintage SbieCtrl.exe UI Use Bright Mode Use Dark Mode CompressDialog Compress Files Compression When selected you will be prompted for a password after clicking OK Encrypt archive content Solid archiving improves compression ratios by treating multiple files as a single continuous data block. Ideal for a large number of small files, it makes the archive more compact but may increase the time required for extracting individual files. Create Solide Archive Export Sandbox to an archive, choose your compression rate and customize additional compression settings. Export Sandbox to a archive, Choose Your Compression Rate and Customize Additional Compression Settings. ExtractDialog Extract Files Import Sandbox from an archive Export Sandbox from an archive Import Sandbox Name Box Root Folder ... Import without encryption OptionsWindow SandboxiePlus Options General Options Box Options Sandbox Indicator in title: Sandboxed window border: Double click action: Separate user folders Box Structure Security Options Security Hardening Protect the system from sandboxed processes Elevation restrictions Drop rights from Administrators and Power Users groups px Width Make applications think they are running elevated (allows to run installers safely) CAUTION: When running under the built in administrator, processes can not drop administrative privileges. Appearance (Recommended) Show this box in the 'run in box' selection prompt File Options Auto delete content changes when last sandboxed process terminates Auto delete content when last sandboxed process terminates Copy file size limit: Box Delete options Protect this sandbox from deletion or emptying File Migration Allow elevated sandboxed applications to read the harddrive Warn when an application opens a harddrive handle kilobytes Issue message 2102 when a file is too large Prompt user for large file migration Allow the print spooler to print to files outside the sandbox Remove spooler restriction, printers can be installed outside the sandbox Block read access to the clipboard Open System Protected Storage Block access to the printer spooler Other restrictions Printing restrictions Network restrictions Block network files and folders, unless specifically opened. Run Menu You can configure custom entries for the sandbox run menu. Name Command Line Add program Remove Type Program Groups Add Group Add Program Force Folder Path Force Program Show Templates Security note: Elevated applications running under the supervision of Sandboxie, with an admin or system token, have more opportunities to bypass isolation and modify the system outside the sandbox. Allow MSIServer to run with a sandboxed system token and apply other exceptions if required Note: Msi Installer Exemptions should not be required, but if you encounter issues installing a msi package which you trust, this option may help the installation complete successfully. You can also try disabling drop admin rights. General Configuration Box Type Preset: Box info <b>More Box Types</b> are exclusively available to <u>project supporters</u>, the Privacy Enhanced boxes <b><font color='red'>protect user data from illicit access</font></b> by the sandboxed programs.<br />If you are not yet a supporter, then please consider <a href="https://sandboxie-plus.com/go.php?to=sbie-get-cert">supporting the project</a>, to receive a <a href="https://sandboxie-plus.com/go.php?to=sbie-cert">supporter certificate</a>.<br />You can test the other box types by creating new sandboxes of those types, however processes in these will be auto terminated after 5 minutes. Always show this sandbox in the systray list (Pinned) Open Windows Credentials Store (user mode) Prevent change to network and firewall parameters (user mode) You can group programs together and give them a group name. Program groups can be used with some of the settings instead of program names. Groups defined for the box overwrite groups defined in templates. Programs entered here, or programs started from entered locations, will be put in this sandbox automatically, unless they are explicitly started in another sandbox. Stop Behaviour Start Restrictions Issue message 1308 when a program fails to start Allow only selected programs to start in this sandbox. * Prevent selected programs from starting in this sandbox. Allow all programs to start in this sandbox. * Note: Programs installed to this sandbox won't be able to start at all. Process Restrictions Issue message 1307 when a program is denied internet access Prompt user whether to allow an exemption from the blockade. Note: Programs installed to this sandbox won't be able to access the internet at all. Access Use volume serial numbers for drives, like: \drive\C~1234-ABCD The box structure can only be changed when the sandbox is empty Disk/File access Encrypt sandbox content When <a href="sbie://docs/boxencryption">Box Encryption</a> is enabled the box's root folder, including its registry hive, is stored in an encrypted disk image, using <a href="https://diskcryptor.org">Disk Cryptor's</a> AES-XTS implementation. When <a href="sbie://docs/boxencryption">Box Encryption</a> is enabled the box’s root folder, including its registry hive, is stored in an encrypted disk image, using <a href="https://diskcryptor.org">Disk Cryptor's</a> AES-XTS implementation. Partially checked means prevent box removal but not content deletion. <a href="addon://ImDisk">Install ImDisk</a> driver to enable Ram Disk and Disk Image support. Store the sandbox content in a Ram Disk Set Password Virtualization scheme Allow sandboxed processes to open files protected by EFS 2113: Content of migrated file was discarded 2114: File was not migrated, write access to file was denied 2115: File was not migrated, file will be opened read only Issue message 2113/2114/2115 when a file is not fully migrated Add Pattern Remove Pattern Pattern Sandboxie does not allow writing to host files, unless permitted by the user. When a sandboxed application attempts to modify a file, the entire file must be copied into the sandbox, for large files this can take a significate amount of time. Sandboxie offers options for handling these cases, which can be configured on this page. Using wildcard patterns file specific behavior can be configured in the list below: When a file cannot be migrated, open it in read-only mode instead Open access to Proxy Configurations Move Up Move Down File ACLs Security Isolation Various isolation features can break compatibility with some applications. If you are using this sandbox <b>NOT for Security</b> but for application portability, by changing these options you can restore compatibility by sacrificing some security. Disable Security Isolation Access Isolation Box Protection Protect processes within this box from host processes Allow Process Issue message 1318/1317 when a host process tries to access a sandboxed process/the box root Sandboxie-Plus is able to create confidential sandboxes that provide robust protection against unauthorized surveillance or tampering by host processes. By utilizing an encrypted sandbox image, this feature delivers the highest level of operational confidentiality, ensuring the safety and integrity of sandboxed processes. Deny Process Use a Sandboxie login instead of an anonymous token Configure which processes can access Desktop objects like Windows and alike. When the global hotkey is pressed 3 times in short succession this exception will be ignored. Exclude this sandbox from being terminated when "Terminate All Processes" is invoked. Image Protection Issue message 1305 when a program tries to load a sandboxed dll Prevent sandboxed programs installed on the host from loading DLLs from the sandbox Prevent sandboxes programs installed on host from loading dll's from the sandbox Dlls && Extensions Description Sandboxie's resource access rules often discriminate against program binaries located inside the sandbox. OpenFilePath and OpenKeyPath work only for application binaries located on the host natively. In order to define a rule without this restriction, OpenPipePath or OpenConfPath must be used. Likewise, all Closed(File|Key|Ipc)Path directives which are defined by negation e.g. 'ClosedFilePath=!iexplore.exe,C:Users*' will be always closed for binaries located inside a sandbox. Both restriction policies can be disabled on the "Access policies" page. This is done to prevent rogue processes inside the sandbox from creating a renamed copy of themselves and accessing protected resources. Another exploit vector is the injection of a library into an authorized process to get access to everything it is allowed to access. Using Host Image Protection, this can be prevented by blocking applications (installed on the host) running inside a sandbox from loading libraries from the sandbox itself. Sandboxie’s resource access rules often discriminate against program binaries located inside the sandbox. OpenFilePath and OpenKeyPath work only for application binaries located on the host natively. In order to define a rule without this restriction, OpenPipePath or OpenConfPath must be used. Likewise, all Closed(File|Key|Ipc)Path directives which are defined by negation e.g. ‘ClosedFilePath=! iexplore.exe,C:Users*’ will be always closed for binaries located inside a sandbox. Both restriction policies can be disabled on the “Access policies” page. This is done to prevent rogue processes inside the sandbox from creating a renamed copy of themselves and accessing protected resources. Another exploit vector is the injection of a library into an authorized process to get access to everything it is allowed to access. Using Host Image Protection, this can be prevented by blocking applications (installed on the host) running inside a sandbox from loading libraries from the sandbox itself. Sandboxie's functionality can be enhanced by using optional DLLs which can be loaded into each sandboxed process on start by the SbieDll.dll file, the add-on manager in the global settings offers a couple of useful extensions, once installed they can be enabled here for the current box. Sandboxies functionality can be enhanced using optional dll’s which can be loaded into each sandboxed process on start by the SbieDll.dll, the add-on manager in the global settings offers a couple useful extensions, once installed they can be enabled here for the current box. Advanced Security Adcanced Security Other isolation Privilege isolation Using a custom Sandboxie Token allows to isolate individual sandboxes from each other better, and it shows in the user column of task managers the name of the box a process belongs to. Some 3rd party security solutions may however have problems with custom tokens. Program Control Force Programs Disable forced Process and Folder for this sandbox Breakout Programs Breakout Program Breakout Folder Force protection on mount Prevent processes from capturing window images from sandboxed windows Prevents getting an image of the window in the sandbox. Allow useful Windows processes access to protected processes This feature does not block all means of obtaining a screen capture, only some common ones. This feature does not block all means of optaining a screen capture only some common once. Prevent move mouse, bring in front, and similar operations, this is likely to cause issues with games. Prevent move mouse, bring in front, and simmilar operations, this is likely to cause issues with games. Allow sandboxed windows to cover the taskbar Allow sandboxed windows to cover taskbar Isolation Only Administrator user accounts can make changes to this sandbox Job Object Programs entered here will be allowed to break out of this sandbox when they start. It is also possible to capture them into another sandbox, for example to have your web browser always open in a dedicated box. Programs entered here will be allowed to break out of this box when thay start, you can capture them into an other box. For example to have your web browser always open in a dedicated box. This feature requires a valid supporter certificate to be installed. unlimited Box Notes Use original Access Control Entries for boxed Files and Folders (for MSIServer enable exemptions) Use original Access Control Entries for boxed Files and Folders (for MSIServer enable excemptions) Run Processes on an own Sandboxed Desktop Desktop Isolation Open Window Station (improves compatibility by reducing desktop isolation) Open Window Station (improves compatybility by reducing desktop isolation) bytes Checked: A local group will also be added to the newly created sandboxed token, which allows addressing all sandboxes at once. Would be useful for auditing policies. Partially checked: No groups will be added to the newly created sandboxed token. Create a new sandboxed token instead of stripping down the original token Drop ConHost.exe Process Integrity Level Force Children Breakout Document <b><font color='red'>SECURITY ADVISORY</font>:</b> Using <a href="sbie://docs/breakoutfolder">BreakoutFolder</a> and/or <a href="sbie://docs/breakoutprocess">BreakoutProcess</a> in combination with Open[File/Pipe]Path directives can compromise security, as can the use of <a href="sbie://docs/breakoutdocument">BreakoutDocument</a> allowing any * or insecure (*.exe;*.dll;*.ocx;*.cmd;*.bat;*.lnk;*.pif;*.url;*.ps1;etc...) extensions. Please review the security section for each option in the documentation before use. <b><font color='red'>SECURITY ADVISORY</font>:</b> Using <a href="sbie://docs/breakoutfolder">BreakoutFolder</a> and/or <a href="sbie://docs/breakoutprocess">BreakoutProcess</a> in combination with Open[File/Pipe]Path directives can compromise security, as can the use of <a href="sbie://docs/breakoutdocument">BreakoutDocument</a> allowing any * or insecure (*.exe;*.dll;*.ocx;*.cmd;*.bat;*.lnk;*.pif;*.url;*.ps1;etc…) extensions. Please review the security section for each option in the documentation before use. Lingering Programs Lingering programs will be automatically terminated if they are still running after all other processes have been terminated. Leader Programs If leader processes are defined, all others are treated as lingering processes. Stop Options Use Linger Leniency Don't stop lingering processes with windows This setting can be used to prevent programs from running in the sandbox without the user's knowledge or consent. This can be used to prevent a host malicious program from breaking through by launching a pre-designed malicious program into an unlocked encrypted sandbox. Display a pop-up warning before starting a process in the sandbox from an external source A pop-up warning before launching a process into the sandbox from an external source. Files Configure which processes can access Files, Folders and Pipes. 'Open' access only applies to program binaries located outside the sandbox, you can use 'Open for All' instead to make it apply to all programs, or change this behavior in the Policies tab. Registry Configure which processes can access the Registry. 'Open' access only applies to program binaries located outside the sandbox, you can use 'Open for All' instead to make it apply to all programs, or change this behavior in the Policies tab. IPC Configure which processes can access NT IPC objects like ALPC ports and other processes memory and context. To specify a process use '$:program.exe' as path. Wnd Wnd Class COM Class Id Configure which processes can access COM objects. Don't use virtualized COM, Open access to hosts COM infrastructure (not recommended) Access Policies Network Options Set network/internet access for unlisted processes: Test Rules, Program: Port: IP: Protocol: X Add Rule Program Action Port IP Protocol CAUTION: Windows Filtering Platform is not enabled with the driver, therefore these rules will be applied only in user mode and can not be enforced!!! This means that malicious applications may bypass them. Resource Access Add File/Folder Add Wnd Class Add IPC Path Use the original token only for approved NT system calls Enable all security enhancements (make security hardened box) Restrict driver/device access to only approved ones Security enhancements Issue message 2111 when a process access is denied Prevent sandboxed processes from interfering with power operations (Experimental) Prevent interference with the user interface (Experimental) Prevent sandboxed processes from capturing window images (Experimental, may cause UI glitches) Sandboxie token Add Reg Key Add COM Object Apply Close...=!<program>,... rules also to all binaries located in the sandbox. DNS Filter Add Filter With the DNS filter individual domains can be blocked, on a per process basis. Leave the IP column empty to block or enter an ip to redirect. Domain Internet Proxy Add Proxy Test Proxy Auth Login Password Sandboxed programs can be forced to use a preset SOCKS5 proxy. Resolve hostnames via proxy Other Options Port Blocking Block common SAMBA ports Block DNS, UDP port 53 File Recovery Quick Recovery Add Folder Immediate Recovery Ignore Extension Ignore Folder Enable Immediate Recovery prompt to be able to recover files as soon as they are created. You can exclude folders and file types (or file extensions) from Immediate Recovery. When the Quick Recovery function is invoked, the following folders will be checked for sandboxed content. Advanced Options Miscellaneous Don't alter window class names created by sandboxed programs Do not start sandboxed services using a system token (recommended) Protect the sandbox integrity itself Drop critical privileges from processes running with a SYSTEM token (Security Critical) Protect sandboxed SYSTEM processes from unprivileged processes Force usage of custom dummy Manifest files (legacy behaviour) The rule specificity is a measure to how well a given rule matches a particular path, simply put the specificity is the length of characters from the begin of the path up to and including the last matching non-wildcard substring. A rule which matches only file types like "*.tmp" would have the highest specificity as it would always match the entire file path. The process match level has a higher priority than the specificity and describes how a rule applies to a given process. Rules applying by process name or group have the strongest match level, followed by the match by negation (i.e. rules applying to all processes but the given one), while the lowest match levels have global matches, i.e. rules that apply to any process. Prioritize rules based on their Specificity and Process Match Level Privacy Mode, block file and registry access to all locations except the generic system ones Access Mode When the Privacy Mode is enabled, sandboxed processes will be only able to read C:\Windows\*, C:\Program Files\*, and parts of the HKLM registry, all other locations will need explicit access to be readable and/or writable. In this mode, Rule Specificity is always enabled. Rule Policies Apply File and Key Open directives only to binaries located outside the sandbox. Start the sandboxed RpcSs as a SYSTEM process (not recommended) Allow only privileged processes to access the Service Control Manager Compatibility Add sandboxed processes to job objects (recommended) Emulate sandboxed window station for all processes Security Isolation through the usage of a heavily restricted process token is Sandboxie's primary means of enforcing sandbox restrictions, when this is disabled the box is operated in the application compartment mode, i.e. it's no longer providing reliable security, just simple application compartmentalization. Security Isolation through the usage of a heavily restricted process token is Sandboxie's primary means of enforcing sandbox restrictions, when this is disabled the box is operated in the application compartment mode, i.e. it’s no longer providing reliable security, just simple application compartmentalization. Allow sandboxed programs to manage Hardware/Devices Open access to Windows Security Account Manager Open access to Windows Local Security Authority Allow to read memory of unsandboxed processes (not recommended) Disable the use of RpcMgmtSetComTimeout by default (this may resolve compatibility issues) Security Isolation & Filtering Disable Security Filtering (not recommended) Security Filtering used by Sandboxie to enforce filesystem and registry access restrictions, as well as to restrict process access. The below options can be used safely when you don't grant admin rights. Triggers Event Run Command Start Service These events are executed each time a box is started On Box Start These commands are run UNBOXED just before the box content is deleted Allow use of nested job objects (works on Windows 8 and later) These commands are executed only when a box is initialized. To make them run again, the box content must be deleted. On Box Init Here you can specify actions to be executed automatically on various box events. Add Process Hide host processes from processes running in the sandbox. Restrictions Various Options Apply ElevateCreateProcess Workaround (legacy behaviour) Use desktop object workaround for all processes This command will be run before the box content will be deleted On File Recovery This command will be run before a file is being recovered and the file path will be passed as the first argument. If this command returns anything other than 0, the recovery will be blocked This command will be run before a file is being recoverd and the file path will be passed as the first argument, if this command return something other than 0 the recovery will be blocked Run File Checker On Delete Content Don't allow sandboxed processes to see processes running in other boxes Protect processes in this box from being accessed by specified unsandboxed host processes. Process Users Restrict Resource Access monitor to administrators only Add User Add user accounts and user groups to the list below to limit use of the sandbox to only those accounts. If the list is empty, the sandbox can be used by all user accounts. Note: Forced Programs and Force Folders settings for a sandbox do not apply to user accounts which cannot use the sandbox. Add Option Bypass IPs Here you can configure advanced per process options to improve compatibility and/or customize sandboxing behavior. Here you can configure advanced per process options to improve compatibility and/or customize sand boxing behavior. Option These commands are run UNBOXED after all processes in the sandbox have finished. Privacy Hide Firmware Information Hide Firmware Informations Some programs read system details through WMI (a Windows built-in database) instead of normal ways. For example, "tasklist.exe" could get full processes list through accessing WMI, even if "HideOtherBoxes" is used. Enable this option to stop this behaviour. Some programs read system deatils through WMI(A Windows built-in database) instead of normal ways. For example,"tasklist.exe" could get full processes list even if "HideOtherBoxes" is opened through accessing WMI. Enable this option to stop these behaviour. Prevent sandboxed processes from accessing system details through WMI (see tooltip for more info) Prevent sandboxed processes from accessing system deatils through WMI (see tooltip for more Info) Process Hiding Use a custom Locale/LangID Data Protection Dump the current Firmware Tables to HKCU\System\SbieCustom Dump the current Firmare Tables to HKCU\System\SbieCustom Dump FW Tables Tracing Pipe Trace API call Trace (traces all SBIE hooks) Log all SetError's to Trace log (creates a lot of output) Log Debug Output to the Trace Log Log all access events as seen by the driver to the resource access log. This options set the event mask to "*" - All access events You can customize the logging using the ini by specifying "A" - Allowed accesses "D" - Denied accesses "I" - Ignore access requests instead of "*". File Trace Disable Resource Access Monitor IPC Trace GUI Trace Resource Access Monitor Access Tracing COM Class Trace Key Trace To compensate for the lost protection, please consult the Drop Rights settings page in the Restrictions settings group. Network Firewall Debug WARNING, these options can disable core security guarantees and break sandbox security!!! These options are intended for debugging compatibility issues, please do not use them in production use. App Templates Filter Categories Text Filter Add Template This list contains a large amount of sandbox compatibility enhancing templates Category Template Folders Configure the folder locations used by your other applications. Please note that this values are currently user specific and saved globally for all boxes. Value Limit restrictions Leave it blank to disable the setting Total Processes Number Limit: Total Processes Memory Limit: Single Process Memory Limit: Restart force process before they begin to execute On Box Terminate Hide Disk Serial Number Obfuscate known unique identifiers in the registry Don't allow sandboxed processes to see processes running outside any boxes Processes This option hides the registry path *\Software*\Microsoft\Windows\CurrentVersion\Uninstall\*, allowing software installed on the host to be reinstalled in the sandbox. However, it does not hide software-specific files and folders. If the installer still encounters issues, you will need to define custom WriteFilePath entries to hide the relevant files on disk. Hide the host software's uninstall key (see tooltip) Hide Network Adapter MAC Address DNS Request Logging Syscall Trace (creates a lot of output) Templates Open Template Accessibility Screen Readers: JAWS, NVDA, Window-Eyes, System Access The following settings enable the use of Sandboxie in combination with accessibility software. Please note that some measure of Sandboxie protection is necessarily lost when these settings are in effect. Edit ini Section Edit ini Cancel Save PopUpWindow SandboxiePlus Notifications ProgramsDelegate Group: %1 QObject Drive %1 QPlatformTheme OK Apply Cancel &Yes &No RecoveryWindow SandboxiePlus - Recovery Close Recover target: Add Folder Delete Content Recover Refresh Delete Show All Files TextLabel SelectBoxWindow SandboxiePlus select box Force direct child to be sandboxed, but does not include indirect child processes that are opened through the DCOM and IPC interface. Select the sandbox in which to start the program, installer or document. Run in a new Sandbox Force Children Sandbox Run As UAC Administrator Run Sandboxed Run Outside the Sandbox SettingsWindow SandboxiePlus Settings General Config Show file recovery window when emptying sandboxes Show first recovery window when emptying sandboxes Open urls from this ui sandboxed Systray options UI Language: Shell Integration Run Sandboxed - Actions Start Sandbox Manager Start UI when a sandboxed process is started Start UI with Windows Add 'Run Sandboxed' to the explorer context menu Run box operations asynchronously whenever possible (like content deletion) Hotkey for terminating all boxed processes: Show boxes in tray list: Always use DefaultBox Add 'Run Un-Sandboxed' to the context menu Show a tray notification when automatic box operations are started * a partially checked checkbox will leave the behavior to be determined by the view mode. Advanced Config Activate Kernel Mode Object Filtering Sandbox <a href="sbie://docs/filerootpath">file system root</a>: Clear password when main window becomes hidden Sandbox <a href="sbie://docs/ipcrootpath">ipc root</a>: Sandbox default Config protection ... SandMan Options Notifications Add Entry Show file migration progress when copying large files into a sandbox Message ID Message Text (optional) SBIE Messages Delete Entry Notification Options Windows Shell Move Up Move Down Show overlay icons for boxes and processes Hide Sandboxie's own processes from the task list Hide sandboxie's own processes from the task list Interface Options Display Options Ini Editor Font Graphic Options Select font Reset font Ini Options # External Ini Editor Add-Ons Manager Optional Add-Ons Sandboxie-Plus offers numerous options and supports a wide range of extensions. On this page, you can configure the integration of add-ons, plugins, and other third-party components. Optional components can be downloaded from the web, and certain installations may require administrative privileges. Status Version Description <a href="sbie://addons">update add-on list now</a> Install Add-On Configuration Enable Ram Disk creation kilobytes Disk Image Support RAM Limit <a href="addon://ImDisk">Install ImDisk</a> driver to enable Ram Disk and Disk Image support. Sandboxie Support This supporter certificate has expired, please <a href="https://sandboxie-plus.com/go.php?to=sbie-renew-cert">get an updated certificate</a>. Supporters of the Sandboxie-Plus project can receive a <a href="https://sandboxie-plus.com/go.php?to=sbie-cert">supporter certificate</a>. It's like a license key but for awesome people using open source software. :-) Get Retrieve/Upgrade/Renew certificate using Serial Number Keeping Sandboxie up to date with the rolling releases of Windows and compatible with all web browsers is a never-ending endeavor. You can support the development by <a href="https://sandboxie-plus.com/go.php?to=sbie-contribute">directly contributing to the project</a>, showing your support by <a href="https://sandboxie-plus.com/go.php?to=sbie-obtain-cert">purchasing a supporter certificate</a>, becoming a patron by <a href="https://sandboxie-plus.com/go.php?to=patreon">subscribing on Patreon</a>, or through a <a href="https://sandboxie-plus.com/go.php?to=donate">PayPal donation</a>.<br />Your support plays a vital role in the advancement and maintenance of Sandboxie. SBIE_-_____-_____-_____-_____ Update Settings Update Check Interval Sandbox <a href="sbie://docs/keyrootpath">registry root</a>: Sandboxing features Sandboxie.ini Presets Change Password Password must be entered in order to make changes Only Administrator user accounts can make changes Watch Sandboxie.ini for changes App Templates App Compatibility Only Administrator user accounts can use Pause Forcing Programs command Only Administrator user accounts can use Pause Forced Programs Rules command Portable root folder Show recoverable files as notifications General Options Show Icon in Systray: Use Windows Filtering Platform to restrict network access Hook selected Win32k system calls to enable GPU acceleration (experimental) Count and display the disk space occupied by each sandbox Count and display the disk space ocupied by each sandbox Use Compact Box List Interface Config Make Box Icons match the Border Color Use a Page Tree in the Box Options instead of Nested Tabs * Use large icons in box list * High DPI Scaling Don't show icons in menus * Use Dark Theme Font Scaling (Restart required) Show the Recovery Window as Always on Top Show "Pizza" Background in box list * Show "Pizza" Background in box list* % Alternate row background in lists Use Fusion Theme Name Path Remove Program Add Program When any of the following programs is launched outside any sandbox, Sandboxie will issue message SBIE1301. Add Folder Prevent the listed programs from starting on this system Issue message 1308 when a program fails to start Recovery Options Sandboxie may be issue <a href="sbie://docs/sbiemessages">SBIE Messages</a> to the Message Log and shown them as Popups. Some messages are informational and notify of a common, or in some cases special, event that has occurred, other messages indicate an error condition.<br />You can hide selected SBIE messages from being popped up, using the below list: Disable SBIE messages popups (they will still be logged to the Messages tab) Start Menu Integration Scan shell folders and offer links in run menu Integrate with Host Start Menu Use new config dialog layout * Program Control Program Alerts Issue message 1301 when forced processes has been disabled Sandboxie Config Config Protection This option also enables asynchronous operation when needed and suspends updates. Suppress pop-up notifications when in game / presentation mode User Interface Run Menu Add program You can configure custom entries for all sandboxes run menus. Remove Command Line Hotkey for bringing sandman to the top: Hotkey for suspending process/folder forcing: Hotkey for suspending all processes: Hotkey for suspending all process Check sandboxes' auto-delete status when Sandman starts Integrate with Host Desktop Add 'Set Force in Sandbox' to the context menu Add ‘Set Force in Sandbox' to the context menu Add 'Set Open Path in Sandbox' to context menu System Tray On main window close: Open/Close from/to tray with a single click Minimize to tray Hide SandMan windows from screen capture (UI restart required) Assign drive letter to Ram Disk When a Ram Disk is already mounted you need to unmount it for this option to take effect. * takes effect on disk creation Support && Updates <a href="https://sandboxie-plus.com/go.php?to=sbie-use-cert">Certificate usage guide</a> HwId: 00000000-0000-0000-0000-000000000000 Terminate all boxed processes when Sandman exits Sandboxed Desktop Switch to sandboxed desktop when starting a process Switch to sandboxed desktop with double click Cert Info Enter/view Supporter Certificate Sandboxie Updater Keep add-on list up to date The Insider channel offers early access to new features and bugfixes that will eventually be released to the public, as well as all relevant improvements from the stable channel. Unlike the preview channel, it does not include untested, potentially breaking, or experimental changes that may not be ready for wider use. Search in the Insider channel New full installers from the selected release channel. Full Upgrades Check periodically for new Sandboxie-Plus versions More about the <a href="https://sandboxie-plus.com/go.php?to=sbie-insider">Insider Channel</a> Keep Troubleshooting scripts up to date Default sandbox: Use a Sandboxie login instead of an anonymous token Add "Sandboxie\All Sandboxes" group to the sandboxed token (experimental) This feature protects the sandbox by restricting access, preventing other users from accessing the folder. Ensure the root folder path contains the %USER% macro so that each user gets a dedicated sandbox folder. Restrict box root folder access to the the user whom created that sandbox Always run SandMan UI as Admin USB Drive Sandboxing Volume Information Sandbox for USB drives: Automatically sandbox all attached USB drives In the future, don't check software compatibility Enable Disable Sandboxie has detected the following software applications in your system. Click OK to apply configuration settings, which will improve compatibility with these applications. These configuration settings will have effect in all existing sandboxes and in any new sandboxes. Local Templates Add Template Text Filter This list contains user created custom templates for sandbox options Open Template Edit ini Section Save Edit ini Cancel Incremental Updates Version Updates Hotpatches for the installed version, updates to the Templates.ini and translations. The preview channel contains the latest GitHub pre-releases. The stable channel contains the latest stable GitHub releases. Search in the Stable channel Search in the Preview channel In the future, don't notify about certificate expiration Enter the support certificate here SnapshotsWindow SandboxiePlus - Snapshots Selected Snapshot Details Name: Description: When deleting a snapshot content, it will be returned to this snapshot instead of none. Default snapshot Snapshot Actions Remove Snapshot Go to Snapshot Take Snapshot TestProxyDialog Test Proxy Test Settings... Testing... Proxy Server Address: 127.0.0.1:80 Protocol: SOCKS 5 Authentication: NO Login: username Timeout (secs): 5 Test 1: Connection to the Proxy Server Enable this test Test 2: Connection through the Proxy Server Target host: www.google.com Port: 80 Load a default web page from the host. (There must be a web server running on the host) Test 3: Proxy Server latency Ping count: Increase ping count to improve the accuracy of the average latency calculation. More pings help to ensure that the average is representative of typical network conditions.