"Sandbox" in the Windows with their hands (the bike)?

0 like 0 dislike
5 views
Good evening.

Recently became interested in how various contests is controlled by the behavior of the program participants? No, of course it is clear that the participants themselves (in the case of breach is usually suspended), but from a programmatic point of view. For example: the prohibition on the network, file system, processes, etc. i.e. you can only read/output to stdin/stdout, to allocate some memory and call standard functions (libc).

In this issue may be resolved by adding if'and all system calls (the kernel patch). But it is under Linux.

Question — how do you spell this kind of "sandbox" under Windows? Starting from the guest solves a lot of problems, and to climb quite difficult. But I want a complete solution. In what side to dig, what to read, is there documented methods. Ready program is, but I want to collect at least some Bicycle with your hands.
by | 5 views

7 Answers

0 like 0 dislike
can use *nix? or need Windows?
by
0 like 0 dislike
To run from a certain user?
Plus all solutions are preserved is usually to then hand to tear if something will fit.
by
0 like 0 dislike
A little unclear why reinvent the wheel if there is a ready free solution. You shashechki or to go? ;)
by
0 like 0 dislike
Don't need drivers. Practical Windows Sandboxing in three parts. ACL-it lacks a head to limit virtually everything (including Windows networking — pipe and mailslots, berkeley sockets have to use the built-in firewall) — in fact for such access control they were invented.
\r
\rHronovska sandbox is quite independent from the rest of the chromium project. So that you can pull out and use for personal purposes.
by
0 like 0 dislike
The Olympics will not say, but in Win there is one simple method: intercept calls.
If possible, run AVZ on the system with installed antivirus (especially KAV), look at the list of intercepted calls and make conclusions.
by
0 like 0 dislike
Thinstall.
by
0 like 0 dislike
If completely full, the driver. For each subsystem your. But it will catch all that is possible.
by

Related questions

0 like 0 dislike
2 answers
0 like 0 dislike
7 answers
0 like 0 dislike
3 answers
0 like 0 dislike
7 answers
asked Mar 25, 2019 by darzet
110,608 questions
257,186 answers
0 comments
28,882 users