sandboxie-plus / Sandboxie

Sandboxie Plus & Classic
https://Sandboxie-Plus.com
GNU General Public License v3.0
13.69k stars 1.52k forks source link

Sandboxie not connected #2580

Closed Parsibagan closed 1 year ago

Parsibagan commented 1 year ago

Describe what you noticed and did

Operating system Windows 7 Ultimate, Service Pack 1

Sandboxie plus 64 bit version 1.6.3

Installed as adminstrator

Post installation and on autostart I get the following error, "Windows requires a digitally signed driver (SbieDrv.sys)"

Clicked "OK" and tried running Sandboxie as admin, but get the error "failed to connect to the driver"

====sbie message====

|Time| |Message|

14:00:13.752 Maintenance operation completed
14:01:03.134 PID 0: SBIE9234: level 9153 status=C0000428 error=-1073740760; 14:01:03.165 PID 0: SBIE9234: level 9153 status=C0000428 error=-1073740760; 14:01:03.190 PID 0: SBIE9234: level 9153 status=C0000428 error=-1073740760; 14:01:03.206 PID 0: SBIE9234: level 9153 status=C0000428 error=-1073740760;

====end of message====

No "trace log" or "recovery log" generated

1) I have a disabled Windows firewall and use the firewall included with "ESET Internet Security" and have enabled outbound and inbound permissions for "Sandman.exe"

2) Overwrote the program by installing it again with no success

3) Uninstalled the program, removed all traces of it from the HDD (including users>username>roaming) as well as from the registry, reinstalled it, but faced the same

error message.

4) Ran "bcdedit /set testsigning on" through the cmd windows (run as admin) and rebooted the computer, then tried running sandboxie as admin.

====sbie message====

|Time| |Message|

14:45:47.793 Maintenance operation completed
14:45:52.862 PID 0: SBIE9234: level 9153 status=C0000428 error=-1073740760; 14:45:52.909 PID 0: SBIE9234: level 9153 status=C0000428 error=-1073740760;

====end of message====

How often did you encounter it so far?

Each time I try to launch Sandboxie plus

Affected program

"Not relevant"

Download link

"Not relevant"

Where is the program located?

Not relevant to my request.

Expected behavior

Sandboxie should launch

What is your Windows edition and version?

Windows 7 Ultimate Service Pack 1

In which Windows account you have this problem?

I use the built-in Administrator account.

Please mention any installed security software

ESET Internet Security

What version of Sandboxie are you running?

Sandboxie plus version 1.6.3

Is it a new installation of Sandboxie?

I recently did a new clean installation.

Is it a regression?

No response

In which sandbox type you have this problem?

In a security hardened sandbox (orange sandbox icon).

Can you reproduce this problem on a new empty sandbox?

I can confirm it also on a new empty sandbox.

Did you previously enable some security policy settings outside Sandboxie?

No response

Crash dump

No response

Trace log

No response

Sandboxie.ini configuration

No response

offhub commented 1 year ago

Do you have KB4474419 update installed?

Summary

This update introduces SHA-2 code sign support for Windows 7 SP1, ...
Parsibagan commented 1 year ago

Dear Sirs,

As suggested, I downloaded the KB4474419 update and installed it successfully. However, I'm still getting a "failed to connect to the driver" error on launching Sandboxie Plus. Here is the error message:

|Time| |Message|

19:41:11.940 Maintenance operation completed

19:41:52.583 PID 0: SBIE9234: level 9153 status=C0000428 error=-1073740760; 19:41:52.619 PID 0: SBIE9234: level 9153 status=C0000428 error=-1073740760;

Let me take this opportunity to wish you and your team A Happy New Year full of sunshine and happiness.

Warm Regards,

Sanjay

On Sat, Dec 31, 2022 at 10:43 PM offhub @.***> wrote:

Do you have KB4474419 https://support.microsoft.com/help/4474419 update installed?

— Reply to this email directly, view it on GitHub https://github.com/sandboxie-plus/Sandboxie/issues/2580#issuecomment-1368254239, or unsubscribe https://github.com/notifications/unsubscribe-auth/A5ATXJM63MKEAIO3K5KXDK3WQBSUNANCNFSM6AAAAAATNPNQ2U . You are receiving this because you authored the thread.Message ID: @.***>

--

Google Authorized Business http://goo.gl/8H0VQb

offhub commented 1 year ago

Are you using the original installer file or did you compile it yourself? After installing the KB4474419 update on my test system, I can use Sandboxie without any problems. (Windows 7 SP1 + KB2999226 + KB4474419)

Thank you, I wish you a happy new year as well.

Parsibagan commented 1 year ago

I have no inkling about compiling code. I downloaded the file from Microsoft's website.

Regards,

Sanjay

On Sun, 1 Jan, 2023, 10:45 pm offhub, @.***> wrote:

Are you using the original installer file or did you compile it yourself? After installing the KB4474419 update on my test system, I can use Sandboxie without any problems. (Windows 7 SP1 + KB2999226 + KB4474419)

Thank you, I wish you a happy new year as well.

— Reply to this email directly, view it on GitHub https://github.com/sandboxie-plus/Sandboxie/issues/2580#issuecomment-1368491435, or unsubscribe https://github.com/notifications/unsubscribe-auth/A5ATXJL3GPFL36U2TURGB5LWQG3RLANCNFSM6AAAAAATNPNQ2U . You are receiving this because you authored the thread.Message ID: @.***>

offhub commented 1 year ago

You may need to install KB4490628 that can be downloaded from the link below. https://www.catalog.update.microsoft.com/Search.aspx?q=KB4490628%20%22windows%207%22%20x64

Parsibagan commented 1 year ago

Dear Sirs,

I downloaded KB4490628 from the link you provided and installed it, but I still received the "not connected error." I updated "sandboxie plus" to the latest version (1.6.4) and installed it by overwriting the previous installation. I'm getting the following error message on running the new version.

========= |Time| |Message|

12:19:34.858 Maintenance operation completed

12:19:38.719 PID 0: SBIE9234: level 9153 status=C0000428 error=-1073740760; 12:19:38.735 PID 0: SBIE9234: level 9153 status=C0000428 error=-1073740760; 12:19:38.776 PID 0: SBIE9234: level 9153 status=C0000428 error=-1073740760; 12:19:38.791 PID 0: SBIE9234: level 9153 status=C0000428 error=-1073740760;

I'll search through my archives to see if I can find a very old version of sandboxie that ran successfully on Windows XP and Windows 7 (64-bit) and run it on my PC. In the meantime, please provide any other solution. Should I add inbound-outbound permissions to my "ESET Internet Security" for other .exe files in the Sandboxie folder? Thanks once again for your prompt response.

Warm Regards,

Sanjay

On Sun, Jan 1, 2023 at 11:59 PM offhub @.***> wrote:

You may need to install KB4490628 that can be downloaded from the link below.

https://www.catalog.update.microsoft.com/Search.aspx?q=KB4490628%20%22windows%207%22%20x64

— Reply to this email directly, view it on GitHub https://github.com/sandboxie-plus/Sandboxie/issues/2580#issuecomment-1368504627, or unsubscribe https://github.com/notifications/unsubscribe-auth/A5ATXJI4MIJZ3JXCMTWPBFTWQHEJ7ANCNFSM6AAAAAATNPNQ2U . You are receiving this because you authored the thread.Message ID: @.***>

--

Google Authorized Business http://goo.gl/8H0VQb

offhub commented 1 year ago

You can try to check the driver signature

  1. Open Windows Explorer
  2. Navigate to %ProgramFiles%\Sandboxie-Plus
  3. Find the SbieDrv.sys, select and right click on it
  4. Properties > Digital Signatures > Select Microsoft Windows... entry > Details
  5. It should say The digital signatures is OK. If it doesn't, then something else is missing.

cert1

cet2

You can also check if the updates are installed correctly:

  1. Windows > Run > cmd.exe > Enter
  2. wmic QFE get hotfixid | findstr /c:"4474419" /c:"4490628"
  3. As a result, both KB updates should be listed.

I'll search through my archives to see if I can find a very old version of sandboxie that ran successfully on Windows XP and Windows 7 (64-bit) and run it on my PC.

Older versions of Sandboxie-Plus Old sandboxie releases

Should I add inbound-outbound permissions to my "ESET Internet Security" for other .exe files in the Sandboxie folder?

I don't think firewall permissions will have any effect on the issue.

Parsibagan commented 1 year ago

Dear Sirs,

Thanks again for your prompt reply. I followed your instructions and here is the result:

Digital signature information: This digital signature is OK.

Signing time: 31 ‎December ‎2022 PM 11:46:00

However, there is no entry under "Countersignatures"

Re: the commands under the "cmd" screen only shows one entry. It only recognizes the string "4490628" and returns KB4490628

It gives no response for the string "4474419"

I found this result by entering both the strings (got a single response KB4490628). Then I tried both the strings individually and received a response on "wmic QFE get

hotfixid | findstr /c:"4490628""

Warm Regards,

Sanjay

On Tue, Jan 3, 2023 at 3:49 PM offhub @.***> wrote:

You can try to check the driver signature

  1. Open Windows Explorer
  2. Navigate to %ProgramFiles%\Sandboxie-Plus
  3. Find the SbieDrv.sys, select and right click on it
  4. Properties > Digital Signatures > Select Microsoft Windows... entry

    Details

  5. It should say The digital signatures is OK. If it doesn't, then something else is missing.

[image: cert1] https://user-images.githubusercontent.com/6871698/210180855-9867804f-2545-427c-b038-ce7202df2556.png

[image: cet2] https://user-images.githubusercontent.com/6871698/210180858-9e30f51b-0c08-4f01-b527-269087b15d9d.png You can also check if the updates are installed correctly:

  1. Windows > Run > cmd.exe > Enter
  2. wmic QFE get hotfixid | findstr /c:"4474419" /c:"4490628"
  3. As a result, both KB updates should be listed.

I'll search through my archives to see if I can find a very old version of sandboxie that ran successfully on Windows XP and Windows 7 (64-bit) and run it on my PC.

Older versions of Sandboxie-Plus https://github.com/sandboxie-plus/Sandboxie/releases Old sandboxie releases https://github.com/sandboxie-plus/sandboxie-old

Should I add inbound-outbound permissions to my "ESET Internet Security" for other .exe files in the Sandboxie folder?

I don't think firewall permissions will have any effect on the issue.

— Reply to this email directly, view it on GitHub https://github.com/sandboxie-plus/Sandboxie/issues/2580#issuecomment-1369597942, or unsubscribe https://github.com/notifications/unsubscribe-auth/A5ATXJLNUUTVLHO4GHTFZVDWQP4JTANCNFSM6AAAAAATNPNQ2U . You are receiving this because you authored the thread.Message ID: @.***>

--

Google Authorized Business http://goo.gl/8H0VQb

offhub commented 1 year ago

Go to Windows > Control Panel > System and Security > Windows Update > View update history

Check the list again to see if the update (KB4474419) has been installed succesfully or not. If it says "Failed" next to the update, it means that it has not been installed. Try installing the update again and if it fails again, then it's probably due to another problem.

Parsibagan commented 1 year ago

Dear Sirs,

I followed your instruction, but the update for KB4474419 stops at 35% and does not proceed further. I searched online and found many others facing the same problem on Microsoft's forum. I'll search online for a solution. In the meantime, I will try to install an older version that used to work perfectly on Windows XP. Thanks from the bottom of my heart for helping me so may times. May your tribe increase.

Warm Regards,

Sanjay

On Tue, Jan 3, 2023 at 5:48 PM offhub @.***> wrote:

Go to Windows > Control Panel > System and Security > Windows Update > View update history

Check the list again to see if the update (KB4474419) has been installed succesfully or not. If it says "Failed" next to the update, it means that it has not been installed. Try installing the update again and if it fails again, then it's probably due to another problem.

— Reply to this email directly, view it on GitHub https://github.com/sandboxie-plus/Sandboxie/issues/2580#issuecomment-1369704806, or unsubscribe https://github.com/notifications/unsubscribe-auth/A5ATXJKPPNXXTJ4TVTLGBJDWQQKJBANCNFSM6AAAAAATNPNQ2U . You are receiving this because you authored the thread.Message ID: @.***>

--

Google Authorized Business http://goo.gl/8H0VQb