Trust No Program

Cannot print from IE or Firefox while sandboxed

Please post your problem description here

Cannot print from IE or Firefox while sandboxed

Postby RonC » Sun Feb 12, 2012 12:42 am

* The version number of Sandboxie: 3.64
* The version number of Windows: Windows 7 Professional (Build 7601)
* Specify clear names for any third-party software that are involved.
Firefox 8.0 and MS Internet Explorer v8

In the interest of brevity ... I have the same problem, exactly, as in this locked thread. The only thing I haven't done, was to apply the most recent Windows patches, as I didn't want to do this while I didn't know the cause of the browser-printer problem. I just localized it to Sandboxie within the last hour.

Further details of my trouble-shooting may be read on the HP Forum.

The problem is observed both with the Windows native HP F2180 driver, and with the HP All-In-One driver for the F2180 printer series.

Working perfectly, in Windows 2000 Professional, however. :wink:
Thanks Tzuk, for the help with StarOffice. Thanks to Windows 7's new feature, the fault-tolerant-heap, that you knew all about, it's working better than it did in Windows 2000. What you said about the suite's memory management ability explains a lot.

Is it possible to duplicate this? Any more details needed about my new problem, please ask, but I think the older thread may be self-explanatory?
Last edited by RonC on Sun Feb 12, 2012 4:02 pm, edited 3 times in total.
RonC
Windows 7 Pro SP1 (32-bit)
RonC
 
Posts: 243
Joined: Thu Jul 27, 2006 7:07 pm
Location: Funchal, Madeira

Postby RonC » Sun Feb 12, 2012 11:57 am

Accumulated Windows patches, twelve of them, have been installed.

MS IE v8's print jobs are now being processed normally, whether or not the browser is run sandboxed.* The Print Preview appears as expected. MSIE seems to cause hpswp_clipbook.exe to be loaded into the sandbox, and it does not disappear when MSIE terminates. But when it's manually terminated, the Firefox problem remains.

I suspect this .exe is HP's web-printing utility, that optionally installs with the All-In-One package and works only with MSIE, to facilitate selecting areas for printing, from web pages. It doesn't appear to be causing any problem with MSIE's print jobs, however.

With Firefox, the problem remains the same: normal printing when'Disable Forced Programs' is on, causing the browser to run un-sandboxed. When Firefox is forced, then the print jobs again 'hang' in the queue, but as before, can be dislodged if some non-browser (and possibly, unsandboxed?) program runs and sends output to the printer.

When Firefox runs sandboxed, another .exe appears in the Sandboxie window: plugin-container.exe. Whether this is harmless or part of the problem, I have no idea, but mention it for those who have a better understanding of these things.

*[edit] Now it's not working. I checked IE first after the Windows Update, and am sure I saw the Print Preview screen displayed. Then, I went to Firefox and saw I couldn't get that same screen. After unsuccessufully working on Firefox for a while, I went back to verify IE was still working, but it wasn't. No Print Preview, and the jobs are again 'hanging' in the print queue. [/edit]
Last edited by RonC on Sun Feb 12, 2012 4:07 pm, edited 4 times in total.
RonC
Windows 7 Pro SP1 (32-bit)
RonC
 
Posts: 243
Joined: Thu Jul 27, 2006 7:07 pm
Location: Funchal, Madeira

Postby RonC » Sun Feb 12, 2012 3:26 pm

RonC wrote:With Firefox, the problem remains the same:
I thought this might be because I was running version 8.0, now slightly outdated. So, I updated to v10.0.1, but the reported behavior persists.

I thought this might be asked -- so I went ahead and configured a new sandbox, FirefoxTestBox, and didn't copy the setting from anywhere else. 'Force Firefox' was removed from the general sandbox, and added, here.

Firefox was then run in its own test-box, but when I tried to print a browser page, the same: it sticks in the queue.

:?: Anyone have some ideas?
RonC
Windows 7 Pro SP1 (32-bit)
RonC
 
Posts: 243
Joined: Thu Jul 27, 2006 7:07 pm
Location: Funchal, Madeira

Postby tzuk » Sun Feb 12, 2012 8:30 pm

Post a Resource Access Monitor log, perhaps the HP software expects to be able to access resources outside the sandbox. If that's the case, the log should show those resources.
http://www.sandboxie.com/index.php?Reso ... essMonitor
tzuk
tzuk
Site Admin
 
Posts: 16076
Joined: Tue Jun 22, 2004 5:57 pm

Resource Monitor Logs

Postby RonC » Sun Feb 12, 2012 9:19 pm

Thanks, tzuk!
tzuk wrote:Post a Resource Access Monitor log...

Log for Firefox:
Code: Select all
(Drive)     \Device\CdRom0
(Drive)     \Device\CdRom1
(Drive)     \Device\Floppy0
(Drive)     \Device\HarddiskVolume1
(Drive)     \Device\HarddiskVolume10
(Drive)     \Device\HarddiskVolume11
(Drive)     \Device\HarddiskVolume12
(Drive)     \Device\HarddiskVolume13
(Drive)     \Device\HarddiskVolume14
(Drive)     \Device\HarddiskVolume2
(Drive)     \Device\HarddiskVolume3
(Drive)     \Device\HarddiskVolume4
(Drive)     \Device\HarddiskVolume5
(Drive)     \Device\HarddiskVolume6
(Drive)     \Device\HarddiskVolume7
(Drive)     \Device\HarddiskVolume8
(Drive)     \Device\HarddiskVolume9
(Unk)        00000002 \Device\0000007c
(Unk)        00000002 \Device\CdRom0
(Unk)        00000002 \Device\CdRom1
(Unk)        00000002 \Device\Ide\IdeDeviceP3T0L0-4
(Unk)        00000022 \Device\SandboxieDriverApi
(Unk)        00000039 \Device\KsecDD
Clsid       -------------------------------
Clsid       {00021401-0000-0000-C000-000000000046} Shortcut
Clsid       {BCDE0395-E52F-467C-8E3D-C4579291692E} MMDeviceEnumerator class
Clsid       {D6E88812-F325-4DC1-BBC7-23076618E58D} TsfManager Class
File/Key    -------------------------------
Image       -------------------------------
Image       *:\firefox\firefox.exe
Image       *:\program files\sandboxie\sandboxiedcomlaunch.exe
Image       *:\program files\sandboxie\sandboxierpcss.exe
Image       *:\program files\sandboxie\start.exe
Image       c:\program files\common files\microsoft shared\ink\tiptsf.dll
Image       c:\program files\pushpin\ppsys.dll
Image       c:\program files\sandboxie\sbiedll.dll
Image       c:\program files\sandboxie\sbiemsg.dll
Image       c:\program files\windows journal\nbmaptip.dll
Image       c:\users\ron\appdata\roaming\mozilla\firefox\profiles\wmbe4fb1.default\extensions\support@lastpass.com\platform\winnt_x86-msvc\components\lpxpcom.dll
Image       c:\windows\apppatch\aclayers.dll
Image       c:\windows\system32\advapi32.dll
Image       c:\windows\system32\apphelp.dll
Image       c:\windows\system32\aticfx32.dll
Image       c:\windows\system32\atidxx32.dll
Image       c:\windows\system32\atiuxpag.dll
Image       c:\windows\system32\audioses.dll
Image       c:\windows\system32\cfgmgr32.dll
Image       c:\windows\system32\clbcatq.dll
Image       c:\windows\system32\comdlg32.dll
Image       c:\windows\system32\credssp.dll
Image       c:\windows\system32\crypt32.dll
Image       c:\windows\system32\cryptbase.dll
Image       c:\windows\system32\cryptsp.dll
Image       c:\windows\system32\cscapi.dll
Image       c:\windows\system32\cscdll.dll
Image       c:\windows\system32\cscui.dll
Image       c:\windows\system32\d2d1.dll
Image       c:\windows\system32\d3d10.dll
Image       c:\windows\system32\d3d10_1.dll
Image       c:\windows\system32\d3d10_1core.dll
Image       c:\windows\system32\d3d10core.dll
Image       c:\windows\system32\dbghelp.dll
Image       c:\windows\system32\devobj.dll
Image       c:\windows\system32\dnsapi.dll
Image       c:\windows\system32\dui70.dll
Image       c:\windows\system32\duser.dll
Image       c:\windows\system32\dwmapi.dll
Image       c:\windows\system32\dwrite.dll
Image       c:\windows\system32\dxgi.dll
Image       c:\windows\system32\ehstorshell.dll
Image       c:\windows\system32\explorerframe.dll
Image       c:\windows\system32\feclient.dll
Image       c:\windows\system32\fwpuclnt.dll
Image       c:\windows\system32\gdi32.dll
Image       c:\windows\system32\iertutil.dll
Image       c:\windows\system32\imm32.dll
Image       c:\windows\system32\iphlpapi.dll
Image       c:\windows\system32\kernel32.dll
Image       c:\windows\system32\kernelbase.dll
Image       c:\windows\system32\linkinfo.dll
Image       c:\windows\system32\lpk.dll
Image       c:\windows\system32\lz32.dll
Image       c:\windows\system32\mfc42u.dll
Image       c:\windows\system32\mmdevapi.dll
Image       c:\windows\system32\mpr.dll
Image       c:\windows\system32\msasn1.dll
Image       c:\windows\system32\mscms.dll
Image       c:\windows\system32\msctf.dll
Image       c:\windows\system32\msimg32.dll
Image       c:\windows\system32\msvcirt.dll
Image       c:\windows\system32\msvcrt.dll
Image       c:\windows\system32\mswsock.dll
Image       c:\windows\system32\msxml3.dll
Image       c:\windows\system32\napinsp.dll
Image       c:\windows\system32\nlaapi.dll
Image       c:\windows\system32\nsi.dll
Image       c:\windows\system32\ntdll.dll
Image       c:\windows\system32\ntmarta.dll
Image       c:\windows\system32\ntshrui.dll
Image       c:\windows\system32\odbc32.dll
Image       c:\windows\system32\odbcint.dll
Image       c:\windows\system32\ole32.dll
Image       c:\windows\system32\oleaut32.dll
Image       c:\windows\system32\pnrpnsp.dll
Image       c:\windows\system32\profapi.dll
Image       c:\windows\system32\propsys.dll
Image       c:\windows\system32\psapi.dll
Image       c:\windows\system32\rasadhlp.dll
Image       c:\windows\system32\rpcepmap.dll
Image       c:\windows\system32\rpcrt4.dll
Image       c:\windows\system32\rpcrtremote.dll
Image       c:\windows\system32\rpcss.dll
Image       c:\windows\system32\rsaenh.dll
Image       c:\windows\system32\sechost.dll
Image       c:\windows\system32\secur32.dll
Image       c:\windows\system32\setupapi.dll
Image       c:\windows\system32\shdocvw.dll
Image       c:\windows\system32\shell32.dll
Image       c:\windows\system32\shlwapi.dll
Image       c:\windows\system32\slc.dll
Image       c:\windows\system32\spool\drivers\w32x86\3\hpfiew71.dll
Image       c:\windows\system32\spool\drivers\w32x86\3\hpz3rw71.dll
Image       c:\windows\system32\spool\drivers\w32x86\3\hpzlew71.dll
Image       c:\windows\system32\spool\drivers\w32x86\3\hpzuiw71.dll
Image       c:\windows\system32\spool\drivers\w32x86\3\unidrv.dll
Image       c:\windows\system32\spool\drivers\w32x86\3\unidrvui.dll
Image       c:\windows\system32\srvcli.dll
Image       c:\windows\system32\sspicli.dll
Image       c:\windows\system32\sxs.dll
Image       c:\windows\system32\urlmon.dll
Image       c:\windows\system32\user32.dll
Image       c:\windows\system32\userenv.dll
Image       c:\windows\system32\usp10.dll
Image       c:\windows\system32\uxtheme.dll
Image       c:\windows\system32\version.dll
Image       c:\windows\system32\windowscodecs.dll
Image       c:\windows\system32\wininet.dll
Image       c:\windows\system32\winmm.dll
Image       c:\windows\system32\winnsi.dll
Image       c:\windows\system32\winrnr.dll
Image       c:\windows\system32\winspool.drv
Image       c:\windows\system32\wintrust.dll
Image       c:\windows\system32\wlanapi.dll
Image       c:\windows\system32\wlanutil.dll
Image       c:\windows\system32\wldap32.dll
Image       c:\windows\system32\ws2_32.dll
Image       c:\windows\system32\wship6.dll
Image       c:\windows\system32\wshtcpip.dll
Image       c:\windows\system32\wsock32.dll
Image       c:\windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.5592_none_d09196c24426e2d4\msvcp80.dll
Image       c:\windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.5592_none_d09196c24426e2d4\msvcr80.dll
Image       c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
Image       d:\firefox\components\browsercomps.dll
Image       d:\firefox\freebl3.dll
Image       d:\firefox\mozalloc.dll
Image       d:\firefox\mozjs.dll
Image       d:\firefox\mozsqlite3.dll
Image       d:\firefox\mozutils.dll
Image       d:\firefox\nspr4.dll
Image       d:\firefox\nss3.dll
Image       d:\firefox\nssckbi.dll
Image       d:\firefox\nssdbm3.dll
Image       d:\firefox\nssutil3.dll
Image       d:\firefox\plc4.dll
Image       d:\firefox\plds4.dll
Image       d:\firefox\smime3.dll
Image       d:\firefox\softokn3.dll
Image       d:\firefox\ssl3.dll
Image       d:\firefox\xpcom.dll
Image       d:\firefox\xul.dll
Image       d:\nero\tools\incd\nbhshx.dll
Ipc         -------------------------------
Ipc         \RPC Control\actkernel
Ipc         \RPC Control\epmapper
Ipc         \RPC Control\OLE6551F34742814491BB379A582FB6
Ipc         \Sessions\1\BaseNamedObjects\__ComCatalogCache__
Ipc         \Sessions\1\BaseNamedObjects\_SHuassist.mtx
Ipc         \Sessions\1\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*cversions.2.ro
Ipc         \Sessions\1\BaseNamedObjects\Global\__ComCatalogCache__
Ipc         \Sessions\1\BaseNamedObjects\Global\{A3BD3259-3E4F-428a-84C8-F0463A9D3EB5}
Ipc         \Sessions\1\BaseNamedObjects\Global\{A64C7F33-DA35-459b-96CA-63B51FB0CDB9}
Ipc         \Sessions\1\BaseNamedObjects\Global\C:*ProgramData*Microsoft*Windows*Caches*{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000008.db
Ipc         \Sessions\1\BaseNamedObjects\Global\C:*ProgramData*Microsoft*Windows*Caches*{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000002.db
Ipc         \Sessions\1\BaseNamedObjects\Global\C:*ProgramData*Microsoft*Windows*Caches*cversions.2.ro
Ipc         \Sessions\1\BaseNamedObjects\Global\ComPlusCOMRegTable
Ipc         \Sessions\1\BaseNamedObjects\Global\RotHintTable
Ipc         \Sessions\1\BaseNamedObjects\LASTPASS_ASO_MUTEX
Ipc         \Sessions\1\BaseNamedObjects\Local\_!MSFTHISTORY!_
Ipc         \Sessions\1\BaseNamedObjects\Local\c:!users!ron!appdata!local!microsoft!windows!history!history.ie5!
Ipc         \Sessions\1\BaseNamedObjects\Local\c:!users!ron!appdata!local!microsoft!windows!temporary internet files!content.ie5!
Ipc         \Sessions\1\BaseNamedObjects\Local\c:!users!ron!appdata!roaming!microsoft!windows!cookies!
Ipc         \Sessions\1\BaseNamedObjects\Local\C:*Users*Ron*AppData*Local*Microsoft*Windows*Caches*{AFBF9F1A-8EE8-4C77-AF34-C647E37CA0D9}.1.ver0x00000000000000ca.db
Ipc         \Sessions\1\BaseNamedObjects\Local\C:*Users*Ron*AppData*Local*Microsoft*Windows*Caches*cversions.1.ro
Ipc         \Sessions\1\BaseNamedObjects\Local\C:_Users_Ron_AppData_Local_Microsoft_Windows_History_History.IE5_index.dat_360448
Ipc         \Sessions\1\BaseNamedObjects\Local\C:_Users_Ron_AppData_Local_Microsoft_Windows_Temporary Internet Files_Content.IE5_index.dat_1949696
Ipc         \Sessions\1\BaseNamedObjects\Local\C:_Users_Ron_AppData_Roaming_Microsoft_Windows_Cookies_index.dat_212992
Ipc         \Sessions\1\BaseNamedObjects\Local\FirefoxStartupMutex
Ipc         \Sessions\1\BaseNamedObjects\Local\LASTPASS_ASO_SHARED_DATA
Ipc         \Sessions\1\BaseNamedObjects\SBIE_DummyEvent_1936
Ipc         \Sessions\1\BaseNamedObjects\SBIE_DummyEvent_4128
Ipc         \Sessions\1\BaseNamedObjects\SBIE_DummyEvent_4396
Ipc         \Sessions\1\BaseNamedObjects\SBIE_DummyEvent_4808
Ipc         \Sessions\1\BaseNamedObjects\SBIE_RPCSS_SXS_READY
Ipc         \Sessions\1\BaseNamedObjects\SBIE_ServiceInitComplete_DcomLaunch
Ipc         \Sessions\1\BaseNamedObjects\SBIE_ServiceInitComplete_Mutex1
Ipc         \Sessions\1\BaseNamedObjects\SBIE_ServiceInitComplete_RpcEptMapper
Ipc         \Sessions\1\BaseNamedObjects\SBIE_ServiceInitComplete_RpcSs
Ipc         \Sessions\1\BaseNamedObjects\ScmCreatedEvent
Ipc         \Sessions\1\BaseNamedObjects\windows_shell_global_counters
Ipc      O  \BaseNamedObjects\msctf.serverDefault1
Ipc      O  \KernelObjects\MaximumCommitCondition
Ipc      O  \KnownDlls\advapi32.dll
Ipc      O  \KnownDlls\CFGMGR32.dll
Ipc      O  \KnownDlls\clbcatq.dll
Ipc      O  \KnownDlls\COMDLG32.dll
Ipc      O  \KnownDlls\CRYPT32.dll
Ipc      O  \KnownDlls\DEVOBJ.dll
Ipc      O  \KnownDlls\gdi32.dll
Ipc      O  \KnownDlls\IERTUTIL.dll
Ipc      O  \KnownDlls\kernel32.dll
Ipc      O  \KnownDlls\kernelbase.dll
Ipc      O  \KnownDlls\LPK.dll
Ipc      O  \KnownDlls\MSASN1.dll
Ipc      O  \KnownDlls\MSCTF.dll
Ipc      O  \KnownDlls\MSVCRT.dll
Ipc      O  \KnownDlls\NSI.dll
Ipc      O  \KnownDlls\ole32.dll
Ipc      O  \KnownDlls\OLEAUT32.dll
Ipc      O  \KnownDlls\PSAPI.DLL
Ipc      O  \KnownDlls\rpcrt4.dll
Ipc      O  \KnownDlls\Setupapi.dll
Ipc      O  \KnownDlls\SHELL32.dll
Ipc      O  \KnownDlls\SHLWAPI.dll
Ipc      O  \KnownDlls\URLMON.dll
Ipc      O  \KnownDlls\user32.dll
Ipc      O  \KnownDlls\USP10.dll
Ipc      O  \KnownDlls\WININET.dll
Ipc      O  \KnownDlls\WINTRUST.dll
Ipc      O  \KnownDlls\WLDAP32.dll
Ipc      O  \KnownDlls\WS2_32.dll
Ipc      O  \RPC Control\AudioClientRpc
Ipc      O  \RPC Control\Audiosrv
Ipc      O  \RPC Control\DNSResolver
Ipc      O  \RPC Control\lsapolicylookup
Ipc      O  \RPC Control\LSARPC_ENDPOINT
Ipc      O  \RPC Control\lsasspirpc
Ipc      O  \RPC Control\protected_storage
Ipc      O  \RPC Control\SbieSvcPort
Ipc      O  \RPC Control\spoolss
Ipc      O  \Security\LSA_AUTHENTICATION_INITIALIZED
Ipc      O  \Sessions\1\BaseNamedObjects\CTF.AsmListCache.FMPDefault1
Ipc      O  \Sessions\1\BaseNamedObjects\DBWinMutex
Ipc      O  \Sessions\1\BaseNamedObjects\Dwm-6B2E-ApiPort-74D4
Ipc      O  \Sessions\1\BaseNamedObjects\MSCTF.Asm.MutexDefault1
Ipc      O  \Sessions\1\BaseNamedObjects\MSCTF.AsmCacheReady.Default1
Ipc      O  \Sessions\1\BaseNamedObjects\MSCTF.CtfActivated.Default1
Ipc      O  \Sessions\1\BaseNamedObjects\WininetConnectionMutex
Ipc      O  \Sessions\1\BaseNamedObjects\WininetProxyRegistryMutex
Ipc      O  \Sessions\1\BaseNamedObjects\WininetStartupMutex
Ipc      O  \Sessions\1\Windows\ApiPort
Ipc      O  \Sessions\1\Windows\SharedSection
Ipc      O  \UxSmsApiPort
Ipc      X  $:explorer.exe
Ipc      X  (Security Token)
Ipc      X  \BaseNamedObjects\FontCachePort
Ipc      X  \Sessions\1\BaseNamedObjects\_!MSFTHISTORY!_
Ipc      X  \Sessions\1\BaseNamedObjects\c:!users!ron!appdata!local!microsoft!windows!history!history.ie5!
Ipc      X  \Sessions\1\BaseNamedObjects\c:!users!ron!appdata!local!microsoft!windows!temporary internet files!content.ie5!
Ipc      X  \Sessions\1\BaseNamedObjects\c:!users!ron!appdata!roaming!microsoft!windows!cookies!
Ipc      X  \Sessions\1\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000008.db
Ipc      X  \Sessions\1\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000002.db
Ipc      X  \Sessions\1\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*cversions.2.ro
Ipc      X  \Sessions\1\BaseNamedObjects\C:_Users_Ron_AppData_Local_Microsoft_Windows_History_History.IE5_index.dat_360448
Ipc      X  \Sessions\1\BaseNamedObjects\C:_Users_Ron_AppData_Local_Microsoft_Windows_Temporary Internet Files_Content.IE5_index.dat_1949696
Ipc      X  \Sessions\1\BaseNamedObjects\C:_Users_Ron_AppData_Roaming_Microsoft_Windows_Cookies_index.dat_212992
Ipc      X  \Sessions\1\BaseNamedObjects\ShellReadyEvent
Ipc      X  \Sessions\1\BaseNamedObjects\windows_shell_global_counters
Pipe        -------------------------------
Pipe        \Device\NamedPipe\lastpassffplugin_LPUNIQUE_4808_2480
Pipe     O  \Device\Afd
Pipe     O  \Device\Afd\AsyncConnectHlp
Pipe     O  \Device\Afd\Endpoint
Pipe     X  \Device\NamedPipe\lastpassffplugin_LPUNIQUE_4808_2480
Pipe     X  \Device\NamedPipe\srvsvc
WinCls      -------------------------------
WinCls   O  MSTaskSwWClass
WinCls   O  Shell_TrayWnd
WinCls   X  DDEMLMom
WinCls   X  FirefoxMessageWindow
WinCls   X  MSTaskSwWClass
WinCls   X  Progman

Log for Internet Explorer
Code: Select all
(Drive)     \Device\CdRom0
(Drive)     \Device\CdRom1
(Drive)     \Device\Floppy0
(Drive)     \Device\HarddiskVolume1
(Drive)     \Device\HarddiskVolume10
(Drive)     \Device\HarddiskVolume11
(Drive)     \Device\HarddiskVolume12
(Drive)     \Device\HarddiskVolume13
(Drive)     \Device\HarddiskVolume14
(Drive)     \Device\HarddiskVolume2
(Drive)     \Device\HarddiskVolume3
(Drive)     \Device\HarddiskVolume4
(Drive)     \Device\HarddiskVolume5
(Drive)     \Device\HarddiskVolume6
(Drive)     \Device\HarddiskVolume7
(Drive)     \Device\HarddiskVolume8
(Drive)     \Device\HarddiskVolume9
(Unk)        00000002 \Device\0000007c
(Unk)        00000002 \Device\CdRom0
(Unk)        00000002 \Device\CdRom1
(Unk)        00000002 \Device\Ide\IdeDeviceP3T0L0-4
(Unk)        00000022 \Device\SandboxieDriverApi
(Unk)        00000039 \Device\KsecDD
Clsid       -------------------------------
Clsid       {169A9F97-2C2E-4AF6-983F-D90BB835706C} hpNeoLoggingPump Class
Clsid       {25336920-03F9-11CF-8FD0-00AA00686F13} HTML Document
Clsid       {2933BF91-7B36-11D2-B20E-00C04F983E60} Free Threaded XML DOM Document
Clsid       {641B9FB0-C2B1-41BD-8563-5F484E3BE84A} ClipBookDbImpl Class
Clsid       {678990E8-922C-4110-8C53-3C441A95CA69} BrowserCallBack Class
Clsid       {745AE3D3-F8CA-4389-BCB6-6301472EFC43} ClipBookDB Class
Clsid       {920F6595-4BB0-4E94-92F8-CB03759E0CB0} SwpOperation Class
Clsid       {9BA05972-F6A8-11CF-A442-00A0C90A8F39} ShellWindows
Clsid       {CC180D9A-18F2-413F-AE78-9B5B7E39C621} hpXRE Class
Clsid       {D6E88812-F325-4DC1-BBC7-23076618E58D} TsfManager Class
Clsid       {DCB00C01-570F-4A9B-8D69-199FDBA5723B} NetworkListManager
Clsid       {F6D90F16-9C73-11D3-B32E-00C04F990BB4} XML HTTP
Clsid    O  {A47979D2-C419-11D9-A5B4-001185AD2B89} Network List Manager
File/Key    -------------------------------
Image       -------------------------------
Image       *:\hp\digital imaging\smart web printing\hpswp_clipbook.exe
Image       *:\program files\internet explorer\iexplore.exe
Image       *:\program files\sandboxie\sandboxiecrypto.exe
Image       *:\program files\sandboxie\sandboxiedcomlaunch.exe
Image       *:\program files\sandboxie\sandboxierpcss.exe
Image       *:\program files\sandboxie\start.exe
Image       c:\program files\common files\microsoft shared\ink\tiptsf.dll
Image       c:\program files\internet explorer\ieproxy.dll
Image       c:\program files\internet explorer\sqmapi.dll
Image       c:\program files\pushpin\ppsys.dll
Image       c:\program files\sandboxie\sbiedll.dll
Image       c:\program files\sandboxie\sbiemsg.dll
Image       c:\program files\windows journal\nbmaptip.dll
Image       c:\windows\apppatch\aclayers.dll
Image       c:\windows\system32\actxprxy.dll
Image       c:\windows\system32\advapi32.dll
Image       c:\windows\system32\apphelp.dll
Image       c:\windows\system32\aticfx32.dll
Image       c:\windows\system32\atiu9pag.dll
Image       c:\windows\system32\atiumdag.dll
Image       c:\windows\system32\atiumdva.dll
Image       c:\windows\system32\atl.dll
Image       c:\windows\system32\bcrypt.dll
Image       c:\windows\system32\bcryptprimitives.dll
Image       c:\windows\system32\cabinet.dll
Image       c:\windows\system32\cfgmgr32.dll
Image       c:\windows\system32\clbcatq.dll
Image       c:\windows\system32\comdlg32.dll
Image       c:\windows\system32\credssp.dll
Image       c:\windows\system32\crypt32.dll
Image       c:\windows\system32\cryptbase.dll
Image       c:\windows\system32\cryptnet.dll
Image       c:\windows\system32\cryptsp.dll
Image       c:\windows\system32\cryptsvc.dll
Image       c:\windows\system32\cscapi.dll
Image       c:\windows\system32\cscdll.dll
Image       c:\windows\system32\cscui.dll
Image       c:\windows\system32\d3dim700.dll
Image       c:\windows\system32\dbghelp.dll
Image       c:\windows\system32\dciman32.dll
Image       c:\windows\system32\ddraw.dll
Image       c:\windows\system32\ddrawex.dll
Image       c:\windows\system32\devobj.dll
Image       c:\windows\system32\devrtl.dll
Image       c:\windows\system32\dhcpcsvc.dll
Image       c:\windows\system32\dhcpcsvc6.dll
Image       c:\windows\system32\dispex.dll
Image       c:\windows\system32\dnsapi.dll
Image       c:\windows\system32\dui70.dll
Image       c:\windows\system32\duser.dll
Image       c:\windows\system32\dwmapi.dll
Image       c:\windows\system32\dxtmsft.dll
Image       c:\windows\system32\dxtrans.dll
Image       c:\windows\system32\ehstorshell.dll
Image       c:\windows\system32\esent.dll
Image       c:\windows\system32\explorerframe.dll
Image       c:\windows\system32\fwpuclnt.dll
Image       c:\windows\system32\gdi32.dll
Image       c:\windows\system32\ieframe.dll
Image       c:\windows\system32\iepeers.dll
Image       c:\windows\system32\iertutil.dll
Image       c:\windows\system32\ieui.dll
Image       c:\windows\system32\imgutil.dll
Image       c:\windows\system32\imm32.dll
Image       c:\windows\system32\iphlpapi.dll
Image       c:\windows\system32\jscript.dll
Image       c:\windows\system32\kernel32.dll
Image       c:\windows\system32\kernelbase.dll
Image       c:\windows\system32\lpk.dll
Image       c:\windows\system32\lz32.dll
Image       c:\windows\system32\mfc42u.dll
Image       c:\windows\system32\mlang.dll
Image       c:\windows\system32\mpr.dll
Image       c:\windows\system32\msasn1.dll
Image       c:\windows\system32\mscms.dll
Image       c:\windows\system32\msctf.dll
Image       c:\windows\system32\msfeeds.dll
Image       c:\windows\system32\mshtml.dll
Image       c:\windows\system32\msi.dll
Image       c:\windows\system32\msiltcfg.dll
Image       c:\windows\system32\msimg32.dll
Image       c:\windows\system32\msimtf.dll
Image       c:\windows\system32\msls31.dll
Image       c:\windows\system32\msrating.dll
Image       c:\windows\system32\msvcirt.dll
Image       c:\windows\system32\msvcrt.dll
Image       c:\windows\system32\mswsock.dll
Image       c:\windows\system32\msxml3.dll
Image       c:\windows\system32\napinsp.dll
Image       c:\windows\system32\ncrypt.dll
Image       c:\windows\system32\netprofm.dll
Image       c:\windows\system32\netutils.dll
Image       c:\windows\system32\nlaapi.dll
Image       c:\windows\system32\normaliz.dll
Image       c:\windows\system32\npmproxy.dll
Image       c:\windows\system32\nsi.dll
Image       c:\windows\system32\ntdll.dll
Image       c:\windows\system32\ntmarta.dll
Image       c:\windows\system32\ntshrui.dll
Image       c:\windows\system32\odbc32.dll
Image       c:\windows\system32\odbcint.dll
Image       c:\windows\system32\ole32.dll
Image       c:\windows\system32\oleacc.dll
Image       c:\windows\system32\oleaut32.dll
Image       c:\windows\system32\oledlg.dll
Image       c:\windows\system32\pngfilt.dll
Image       c:\windows\system32\pnrpnsp.dll
Image       c:\windows\system32\prncache.dll
Image       c:\windows\system32\prnfldr.dll
Image       c:\windows\system32\profapi.dll
Image       c:\windows\system32\propsys.dll
Image       c:\windows\system32\psapi.dll
Image       c:\windows\system32\pstorec.dll
Image       c:\windows\system32\rasadhlp.dll
Image       c:\windows\system32\rasapi32.dll
Image       c:\windows\system32\rasman.dll
Image       c:\windows\system32\rpcepmap.dll
Image       c:\windows\system32\rpcrt4.dll
Image       c:\windows\system32\rpcrtremote.dll
Image       c:\windows\system32\rpcss.dll
Image       c:\windows\system32\rsaenh.dll
Image       c:\windows\system32\rtutils.dll
Image       c:\windows\system32\samcli.dll
Image       c:\windows\system32\samlib.dll
Image       c:\windows\system32\schannel.dll
Image       c:\windows\system32\sechost.dll
Image       c:\windows\system32\secur32.dll
Image       c:\windows\system32\sensapi.dll
Image       c:\windows\system32\setupapi.dll
Image       c:\windows\system32\shdocvw.dll
Image       c:\windows\system32\shell32.dll
Image       c:\windows\system32\shlwapi.dll
Image       c:\windows\system32\slc.dll
Image       c:\windows\system32\spool\drivers\w32x86\3\hpfiew71.dll
Image       c:\windows\system32\spool\drivers\w32x86\3\hpz3rw71.dll
Image       c:\windows\system32\spool\drivers\w32x86\3\hpzlew71.dll
Image       c:\windows\system32\spool\drivers\w32x86\3\hpzuiw71.dll
Image       c:\windows\system32\spool\drivers\w32x86\3\unidrv.dll
Image       c:\windows\system32\spool\drivers\w32x86\3\unidrvui.dll
Image       c:\windows\system32\srvcli.dll
Image       c:\windows\system32\sspicli.dll
Image       c:\windows\system32\sxs.dll
Image       c:\windows\system32\thumbcache.dll
Image       c:\windows\system32\urlmon.dll
Image       c:\windows\system32\user32.dll
Image       c:\windows\system32\userenv.dll
Image       c:\windows\system32\usp10.dll
Image       c:\windows\system32\uxtheme.dll
Image       c:\windows\system32\version.dll
Image       c:\windows\system32\vssapi.dll
Image       c:\windows\system32\vsstrace.dll
Image       c:\windows\system32\webio.dll
Image       c:\windows\system32\windowscodecs.dll
Image       c:\windows\system32\winhttp.dll
Image       c:\windows\system32\wininet.dll
Image       c:\windows\system32\winmm.dll
Image       c:\windows\system32\winnsi.dll
Image       c:\windows\system32\winrnr.dll
Image       c:\windows\system32\winspool.drv
Image       c:\windows\system32\wintrust.dll
Image       c:\windows\system32\wldap32.dll
Image       c:\windows\system32\ws2_32.dll
Image       c:\windows\system32\wship6.dll
Image       c:\windows\system32\wshtcpip.dll
Image       c:\windows\system32\wsock32.dll
Image       c:\windows\system32\xmllite.dll
Image       c:\windows\winsxs\x86_microsoft.vc80.atl_1fc8b3b9a1e18e3b_8.0.50727.5592_none_d1cb520e4353d918\atl80.dll
Image       c:\windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.5592_none_d09196c24426e2d4\msvcp80.dll
Image       c:\windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.5592_none_d09196c24426e2d4\msvcr80.dll
Image       c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.17514_none_ec83dffa859149af\comctl32.dll
Image       c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
Image       c:\windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17514_none_72d18a4386696c80\gdiplus.dll
Image       d:\hp\digital imaging\smart web printing\clipbook.dll
Image       d:\hp\digital imaging\smart web printing\clipbookdbcomponent.dll
Image       d:\hp\digital imaging\smart web printing\hpswp_bho.dll
Image       d:\hp\digital imaging\smart web printing\hpswp_operation.dll
Image       d:\hp\digital imaging\smart web printing\hpswp_printenhancer.dll
Image       d:\hp\digital imaging\smart web printing\mozillaaddon3\components\hpclipbook.dll
Image       d:\hp\digital imaging\smart web printing\mozillaaddon3\components\hpclipbookdb.dll
Image       d:\hp\digital imaging\smart web printing\mozillaaddon3\components\hpneologger.dll
Image       d:\hp\digital imaging\smart web printing\mozillaaddon3\components\hpswpoperation.dll
Image       d:\hp\digital imaging\smart web printing\mozillaaddon3\components\hpxplogging.dll
Image       d:\hp\digital imaging\smart web printing\mozillaaddon3\components\hpxpmtc.dll
Image       d:\hp\digital imaging\smart web printing\mozillaaddon3\components\hpxpmtl.dll
Image       d:\hp\digital imaging\smart web printing\mozillaaddon3\plugins\nphpclipbook.dll
Image       d:\hp\digital imaging\smart web printing\mozillaaddon3\xre\components\hpneologging.dll
Image       d:\hp\digital imaging\smart web printing\mozillaaddon3\xre\components\hpxre.dll
Image       d:\hp\digital imaging\smart web printing\mozillaaddon3\xre\components\js3250.dll
Image       d:\hp\digital imaging\smart web printing\mozillaaddon3\xre\components\mozcrt19.dll
Image       d:\hp\digital imaging\smart web printing\mozillaaddon3\xre\components\nspr4.dll
Image       d:\hp\digital imaging\smart web printing\mozillaaddon3\xre\components\nss3.dll
Image       d:\hp\digital imaging\smart web printing\mozillaaddon3\xre\components\nssutil3.dll
Image       d:\hp\digital imaging\smart web printing\mozillaaddon3\xre\components\plc4.dll
Image       d:\hp\digital imaging\smart web printing\mozillaaddon3\xre\components\plds4.dll
Image       d:\hp\digital imaging\smart web printing\mozillaaddon3\xre\components\smime3.dll
Image       d:\hp\digital imaging\smart web printing\mozillaaddon3\xre\components\sqlite3.dll
Image       d:\hp\digital imaging\smart web printing\mozillaaddon3\xre\components\ssl3.dll
Image       d:\hp\digital imaging\smart web printing\mozillaaddon3\xre\components\xpcom.dll
Image       d:\hp\digital imaging\smart web printing\mozillaaddon3\xre\components\xul.dll
Image       d:\hp\digital imaging\smart web printing\rsrcloaderlib.dll
Image       d:\hp\digital imaging\smart web printing\satelliteenu.dll
Image       d:\hp\digital imaging\smart web printing\utilitylib.dll
Image       d:\lastpass\lpbar.dll
Image       d:\nero\tools\incd\nbhshx.dll
Ipc         -------------------------------
Ipc         \RPC Control\actkernel
Ipc         \RPC Control\epmapper
Ipc         \RPC Control\keysvc
Ipc         \RPC Control\keysvc2
Ipc         \RPC Control\LRPC-3aadd3bbd809f0ab66
Ipc         \RPC Control\LRPC-8486f5777f37b40b7c
Ipc         \RPC Control\OLE02ED462432E94EB8BA3D4A0FBE3D
Ipc         \RPC Control\OLE81DACC1E45A1485D9F911324218E
Ipc         \RPC Control\OLE84A973A4D43249CAA2DF8B27B3EA
Ipc         \RPC Control\OLEA9401D7290A54055A2647F5E8AE7
Ipc         \RPC Control\OLEFFB7E9A88B9E49E5B580489926EA
Ipc         \Sessions\1\BaseNamedObjects\!BrowserEmulation!SharedMemory!Mutex
Ipc         \Sessions\1\BaseNamedObjects\!IECompat!Mutex
Ipc         \Sessions\1\BaseNamedObjects\!IETld!Mutex
Ipc         \Sessions\1\BaseNamedObjects\!PrivacIE!SharedMem!Settings
Ipc         \Sessions\1\BaseNamedObjects\_!MSFTHISTORY!_
Ipc         \Sessions\1\BaseNamedObjects\_!SHMSFTHISTORY!_
Ipc         \Sessions\1\BaseNamedObjects\__ComCatalogCache__
Ipc         \Sessions\1\BaseNamedObjects\c:!users!ron!appdata!local!microsoft!feeds cache!
Ipc         \Sessions\1\BaseNamedObjects\c:!users!ron!appdata!local!microsoft!windows!history!history.ie5!
Ipc         \Sessions\1\BaseNamedObjects\c:!users!ron!appdata!local!microsoft!windows!temporary internet files!content.ie5!
Ipc         \Sessions\1\BaseNamedObjects\c:!users!ron!appdata!roaming!microsoft!windows!cookies!
Ipc         \Sessions\1\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000008.db
Ipc         \Sessions\1\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000002.db
Ipc         \Sessions\1\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*cversions.2.ro
Ipc         \Sessions\1\BaseNamedObjects\C:*Users*Ron*AppData*Local*Microsoft*Windows*Caches*cversions.1.ro
Ipc         \Sessions\1\BaseNamedObjects\C:_Users_Ron_AppData_Local_Microsoft_Feeds Cache_index.dat_32768
Ipc         \Sessions\1\BaseNamedObjects\C:_Users_Ron_AppData_Local_Microsoft_Windows_History_History.IE5_index.dat_360448
Ipc         \Sessions\1\BaseNamedObjects\C:_Users_Ron_AppData_Local_Microsoft_Windows_Temporary Internet Files_Content.IE5_index.dat_1949696
Ipc         \Sessions\1\BaseNamedObjects\C:_Users_Ron_AppData_Roaming_Microsoft_Windows_Cookies_index.dat_212992
Ipc         \Sessions\1\BaseNamedObjects\CLPTOOLBAR_CRITSEC_1464
Ipc         \Sessions\1\BaseNamedObjects\CLPTOOLBAR2_CRITSEC_1464
Ipc         \Sessions\1\BaseNamedObjects\ConnHashTable<4596>_HashTable_Mutex
Ipc         \Sessions\1\BaseNamedObjects\GdiplusFontCacheFileV1
Ipc         \Sessions\1\BaseNamedObjects\Global\__ComCatalogCache__
Ipc         \Sessions\1\BaseNamedObjects\Global\{A3BD3259-3E4F-428a-84C8-F0463A9D3EB5}
Ipc         \Sessions\1\BaseNamedObjects\Global\{A64C7F33-DA35-459b-96CA-63B51FB0CDB9}
Ipc         \Sessions\1\BaseNamedObjects\Global\C:*ProgramData*Microsoft*Windows*Caches*{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000008.db
Ipc         \Sessions\1\BaseNamedObjects\Global\C:*ProgramData*Microsoft*Windows*Caches*{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000002.db
Ipc         \Sessions\1\BaseNamedObjects\Global\C:*ProgramData*Microsoft*Windows*Caches*cversions.2.ro
Ipc         \Sessions\1\BaseNamedObjects\Global\C::Users:Ron:AppData:Local:Microsoft:Windows:Explorer:thumbcache_1024.db!dfMaintainer
Ipc         \Sessions\1\BaseNamedObjects\Global\C::Users:Ron:AppData:Local:Microsoft:Windows:Explorer:thumbcache_256.db!dfMaintainer
Ipc         \Sessions\1\BaseNamedObjects\Global\C::Users:Ron:AppData:Local:Microsoft:Windows:Explorer:thumbcache_32.db!dfMaintainer
Ipc         \Sessions\1\BaseNamedObjects\Global\C::Users:Ron:AppData:Local:Microsoft:Windows:Explorer:thumbcache_96.db!dfMaintainer
Ipc         \Sessions\1\BaseNamedObjects\Global\C::Users:Ron:AppData:Local:Microsoft:Windows:Explorer:thumbcache_idx.db!rwReaderRefs
Ipc         \Sessions\1\BaseNamedObjects\Global\C::Users:Ron:AppData:Local:Microsoft:Windows:Explorer:thumbcache_idx.db!rwWriterEvent
Ipc         \Sessions\1\BaseNamedObjects\Global\C::Users:Ron:AppData:Local:Microsoft:Windows:Explorer:thumbcache_idx.db!rwWriterMutex
Ipc         \Sessions\1\BaseNamedObjects\Global\C::Users:Ron:AppData:Local:Microsoft:Windows:Explorer:thumbcache_idx.db!ThumbnailCacheInit
Ipc         \Sessions\1\BaseNamedObjects\Global\C::Users:Ron:AppData:Local:Microsoft:Windows:Explorer:thumbcache_sr.db!dfMaintainer
Ipc         \Sessions\1\BaseNamedObjects\Global\ComPlusCOMRegTable
Ipc         \Sessions\1\BaseNamedObjects\Global\RestartMSIDLLv327680.498156650
Ipc         \Sessions\1\BaseNamedObjects\Global\RotHintTable
Ipc         \Sessions\1\BaseNamedObjects\Global\ShutdownMSIDLLv327680.498156650
Ipc         \Sessions\1\BaseNamedObjects\IE_EarlyTabStart_0x10e4
Ipc         \Sessions\1\BaseNamedObjects\ie_lcie_ConnHashTable<4596>
Ipc         \Sessions\1\BaseNamedObjects\ie_lcie_LogonMedium
Ipc         \Sessions\1\BaseNamedObjects\ie_lcie_main_11f4
Ipc         \Sessions\1\BaseNamedObjects\IEFrame!GetAsyncKeyStateQuery!4596
Ipc         \Sessions\1\BaseNamedObjects\IEFrame!GetAsyncKeyStateReply!4596
Ipc         \Sessions\1\BaseNamedObjects\IEFrame!GetAsyncKeyStateSharedMem!4596
Ipc         \Sessions\1\BaseNamedObjects\IEFrame.EventCheckDefaultBrowser
Ipc         \Sessions\1\BaseNamedObjects\IESQMMUTEX_0_208
Ipc         \Sessions\1\BaseNamedObjects\Internet Explorer Immutable Application State (000011F4-0000-0000-0000-000000000000)
Ipc         \Sessions\1\BaseNamedObjects\Isolation Process Registry (98414F7D-55B4-11E1-A445-001966056195)
Ipc         \Sessions\1\BaseNamedObjects\Isolation Signal Registry (98414F7D-55B4-11E1-A445-001966056195, 0)
Ipc         \Sessions\1\BaseNamedObjects\Isolation Signal Registry Event (98414F7D-55B4-11E1-A445-001966056195, 0)
Ipc         \Sessions\1\BaseNamedObjects\Isolation Signal Registry Event (98414F7E-55B4-11E1-A445-001966056195, 0)
Ipc         \Sessions\1\BaseNamedObjects\LASTPASS_ASO_MUTEX
Ipc         \Sessions\1\BaseNamedObjects\Local\!BrowserEmulation!SharedMemory!Mutex
Ipc         \Sessions\1\BaseNamedObjects\Local\!IECompat!Mutex
Ipc         \Sessions\1\BaseNamedObjects\Local\!IETld!Mutex
Ipc         \Sessions\1\BaseNamedObjects\Local\!PrivacIE!SharedMem!Counter
Ipc         \Sessions\1\BaseNamedObjects\Local\!PrivacIE!SharedMem!Settings
Ipc         \Sessions\1\BaseNamedObjects\Local\!PrivacIE!SharedMemory!Mutex
Ipc         \Sessions\1\BaseNamedObjects\Local\_!MSFTHISTORY!_
Ipc         \Sessions\1\BaseNamedObjects\Local\5f7f71af2943f342a59791142e3502b209517d_lastpass.txt
Ipc         \Sessions\1\BaseNamedObjects\Local\c:!users!ron!appdata!local!microsoft!feeds cache!
Ipc         \Sessions\1\BaseNamedObjects\Local\c:!users!ron!appdata!local!microsoft!internet explorer!domstore!
Ipc         \Sessions\1\BaseNamedObjects\Local\c:!users!ron!appdata!local!microsoft!windows!history!history.ie5!
Ipc         \Sessions\1\BaseNamedObjects\Local\c:!users!ron!appdata!local!microsoft!windows!history!history.ie5!mshist012012021220120213!
Ipc         \Sessions\1\BaseNamedObjects\Local\c:!users!ron!appdata!local!microsoft!windows!temporary internet files!content.ie5!
Ipc         \Sessions\1\BaseNamedObjects\Local\c:!users!ron!appdata!roaming!microsoft!windows!cookies!
Ipc         \Sessions\1\BaseNamedObjects\Local\c:!users!ron!appdata!roaming!microsoft!windows!iecompatcache!
Ipc         \Sessions\1\BaseNamedObjects\Local\c:!users!ron!appdata!roaming!microsoft!windows!ietldcache!
Ipc         \Sessions\1\BaseNamedObjects\Local\c:!users!ron!appdata!roaming!microsoft!windows!privacie!
Ipc         \Sessions\1\BaseNamedObjects\Local\C:*Users*Ron*AppData*Local*Microsoft*Windows*Caches*{AFBF9F1A-8EE8-4C77-AF34-C647E37CA0D9}.1.ver0x00000000000000ca.db
Ipc         \Sessions\1\BaseNamedObjects\Local\C:*Users*Ron*AppData*Local*Microsoft*Windows*Caches*cversions.1.ro
Ipc         \Sessions\1\BaseNamedObjects\Local\C:_Users_Ron_AppData_Local_Microsoft_Feeds Cache_index.dat_32768
Ipc         \Sessions\1\BaseNamedObjects\Local\C:_Users_Ron_AppData_Local_Microsoft_Internet Explorer_DOMStore_index.dat_32768
Ipc         \Sessions\1\BaseNamedObjects\Local\C:_Users_Ron_AppData_Local_Microsoft_Windows_History_History.IE5_index.dat_360448
Ipc         \Sessions\1\BaseNamedObjects\Local\C:_Users_Ron_AppData_Local_Microsoft_Windows_History_History.IE5_MSHist012012021220120213_index.dat_32768
Ipc         \Sessions\1\BaseNamedObjects\Local\C:_Users_Ron_AppData_Local_Microsoft_Windows_Temporary Internet Files_Content.IE5_index.dat_1949696
Ipc         \Sessions\1\BaseNamedObjects\Local\C:_Users_Ron_AppData_Roaming_Microsoft_Windows_Cookies_index.dat_212992
Ipc         \Sessions\1\BaseNamedObjects\Local\C:_Users_Ron_AppData_Roaming_Microsoft_Windows_IECompatCache_index.dat_65536
Ipc         \Sessions\1\BaseNamedObjects\Local\C:_Users_Ron_AppData_Roaming_Microsoft_Windows_IETldCache_index.dat_262144
Ipc         \Sessions\1\BaseNamedObjects\Local\C:_Users_Ron_AppData_Roaming_Microsoft_Windows_PrivacIE_index.dat_81920
Ipc         \Sessions\1\BaseNamedObjects\Local\Feed Eventing Shared Memory Mutex S-1-5-21-3231957836-1568948063-4179975120-1000
Ipc         \Sessions\1\BaseNamedObjects\Local\Feed Eventing Shared Memory S-1-5-21-3231957836-1568948063-4179975120-1000
Ipc         \Sessions\1\BaseNamedObjects\Local\http://www.google.com/
Ipc         \Sessions\1\BaseNamedObjects\Local\IEFrame!GetAsyncKeyStateQuery!4596
Ipc         \Sessions\1\BaseNamedObjects\Local\IEFrame!GetAsyncKeyStateReply!4596
Ipc         \Sessions\1\BaseNamedObjects\Local\IEFrame!GetAsyncKeyStateSharedMem!4596
Ipc         \Sessions\1\BaseNamedObjects\Local\InternetExplorerDOMStoreQuota
Ipc         \Sessions\1\BaseNamedObjects\Local\LASTPASS_ASO_SHARED_DATA
Ipc         \Sessions\1\BaseNamedObjects\Local\RSS Eventing Connection Database Mutex 000011f4
Ipc         \Sessions\1\BaseNamedObjects\Local\RSS Eventing Event Event 000011f4
Ipc         \Sessions\1\BaseNamedObjects\Local\UrlZonesSM_Ron
Ipc         \Sessions\1\BaseNamedObjects\Local\ZoneAttributeCacheCounterMutex
Ipc         \Sessions\1\BaseNamedObjects\Local\ZonesCacheCounterMutex
Ipc         \Sessions\1\BaseNamedObjects\Local\ZonesCounterMutex
Ipc         \Sessions\1\BaseNamedObjects\Local\ZonesLockedCacheCounterMutex
Ipc         \Sessions\1\BaseNamedObjects\LPBROWSERSINK_CRITSEC_1464
Ipc         \Sessions\1\BaseNamedObjects\MSIMGSIZECacheMap
Ipc         \Sessions\1\BaseNamedObjects\MSIMGSIZECacheMutex
Ipc         \Sessions\1\BaseNamedObjects\NOTIFICATIONMANAGER_CRITSEC_1464
Ipc         \Sessions\1\BaseNamedObjects\OleDfRoot4DEEDDC20C6FC679
Ipc         \Sessions\1\BaseNamedObjects\OleDfRoot8C19CFBD9BAB9013
Ipc         \Sessions\1\BaseNamedObjects\OleDfRootCA2E160A6EBA674F
Ipc         \Sessions\1\BaseNamedObjects\OleDfRootE8ECAB6427F5FA0C
Ipc         \Sessions\1\BaseNamedObjects\PARSEURL_CRITSEC_1464
Ipc         \Sessions\1\BaseNamedObjects\RotHintTable
Ipc         \Sessions\1\BaseNamedObjects\RSS Eventing Connection Database Mutex 000011f4
Ipc         \Sessions\1\BaseNamedObjects\RSS Eventing Event Event 000011f4
Ipc         \Sessions\1\BaseNamedObjects\SBIE_DummyEvent_1464
Ipc         \Sessions\1\BaseNamedObjects\SBIE_DummyEvent_3704
Ipc         \Sessions\1\BaseNamedObjects\SBIE_DummyEvent_448
Ipc         \Sessions\1\BaseNamedObjects\SBIE_DummyEvent_4596
Ipc         \Sessions\1\BaseNamedObjects\SBIE_DummyEvent_4756
Ipc         \Sessions\1\BaseNamedObjects\SBIE_DummyEvent_4876
Ipc         \Sessions\1\BaseNamedObjects\SBIE_DummyEvent_920
Ipc         \Sessions\1\BaseNamedObjects\SBIE_RPCSS_SXS_READY
Ipc         \Sessions\1\BaseNamedObjects\SBIE_ServiceInitComplete_cryptsvc
Ipc         \Sessions\1\BaseNamedObjects\SBIE_ServiceInitComplete_DcomLaunch
Ipc         \Sessions\1\BaseNamedObjects\SBIE_ServiceInitComplete_Mutex1
Ipc         \Sessions\1\BaseNamedObjects\SBIE_ServiceInitComplete_RpcEptMapper
Ipc         \Sessions\1\BaseNamedObjects\SBIE_ServiceInitComplete_RpcSs
Ipc         \Sessions\1\BaseNamedObjects\SBIE_WindowsInstallerInUse
Ipc         \Sessions\1\BaseNamedObjects\ScmCreatedEvent
Ipc         \Sessions\1\BaseNamedObjects\SMARTWEBPRINT_EDITCLIP
Ipc         \Sessions\1\BaseNamedObjects\UrlZonesSM_Ron
Ipc         \Sessions\1\BaseNamedObjects\windows_ie_global_counters
Ipc         \Sessions\1\BaseNamedObjects\windows_shell_global_counters
Ipc         \Sessions\1\BaseNamedObjects\ZoneAttributeCacheCounterMutex
Ipc         \Sessions\1\BaseNamedObjects\ZonesCacheCounterMutex
Ipc         \Sessions\1\BaseNamedObjects\ZonesCounterMutex
Ipc         \Sessions\1\BaseNamedObjects\ZonesLockedCacheCounterMutex
Ipc      O  \BaseNamedObjects\msctf.serverDefault1
Ipc      O  \BaseNamedObjects\PS_SERVICE_STARTED
Ipc      O  \KernelObjects\MaximumCommitCondition
Ipc      O  \KnownDlls\advapi32.dll
Ipc      O  \KnownDlls\CFGMGR32.dll
Ipc      O  \KnownDlls\clbcatq.dll
Ipc      O  \KnownDlls\COMDLG32.dll
Ipc      O  \KnownDlls\CRYPT32.dll
Ipc      O  \KnownDlls\DEVOBJ.dll
Ipc      O  \KnownDlls\gdi32.dll
Ipc      O  \KnownDlls\IERTUTIL.dll
Ipc      O  \KnownDlls\kernel32.dll
Ipc      O  \KnownDlls\kernelbase.dll
Ipc      O  \KnownDlls\LPK.dll
Ipc      O  \KnownDlls\MSASN1.dll
Ipc      O  \KnownDlls\MSCTF.dll
Ipc      O  \KnownDlls\MSVCRT.dll
Ipc      O  \KnownDlls\NORMALIZ.dll
Ipc      O  \KnownDlls\NSI.dll
Ipc      O  \KnownDlls\ole32.dll
Ipc      O  \KnownDlls\OLEAUT32.dll
Ipc      O  \KnownDlls\PSAPI.DLL
Ipc      O  \KnownDlls\rpcrt4.dll
Ipc      O  \KnownDlls\Setupapi.dll
Ipc      O  \KnownDlls\SHELL32.dll
Ipc      O  \KnownDlls\SHLWAPI.dll
Ipc      O  \KnownDlls\URLMON.dll
Ipc      O  \KnownDlls\user32.dll
Ipc      O  \KnownDlls\USP10.dll
Ipc      O  \KnownDlls\WININET.dll
Ipc      O  \KnownDlls\WINTRUST.dll
Ipc      O  \KnownDlls\WLDAP32.dll
Ipc      O  \KnownDlls\WS2_32.dll
Ipc      O  \RPC Control\dhcpcsvc
Ipc      O  \RPC Control\dhcpcsvc6
Ipc      O  \RPC Control\DNSResolver
Ipc      O  \RPC Control\lsapolicylookup
Ipc      O  \RPC Control\LSARPC_ENDPOINT
Ipc      O  \RPC Control\lsasspirpc
Ipc      O  \RPC Control\nlaapi
Ipc      O  \RPC Control\protected_storage
Ipc      O  \RPC Control\SbieSvcPort
Ipc      O  \RPC Control\senssvc
Ipc      O  \RPC Control\spoolss
Ipc      O  \Security\LSA_AUTHENTICATION_INITIALIZED
Ipc      O  \Sessions\1\BaseNamedObjects\CTF.AsmListCache.FMPDefault1
Ipc      O  \Sessions\1\BaseNamedObjects\DBWinMutex
Ipc      O  \Sessions\1\BaseNamedObjects\Dwm-6B2E-ApiPort-74D4
Ipc      O  \Sessions\1\BaseNamedObjects\Local\__DDrawCheckExclMode__
Ipc      O  \Sessions\1\BaseNamedObjects\Local\__DDrawExclMode__
Ipc      O  \Sessions\1\BaseNamedObjects\Local\DDrawDriverObjectListMutex
Ipc      O  \Sessions\1\BaseNamedObjects\Local\DDrawWindowListMutex
Ipc      O  \Sessions\1\BaseNamedObjects\MSCTF.Asm.MutexDefault1
Ipc      O  \Sessions\1\BaseNamedObjects\MSCTF.AsmCacheReady.Default1
Ipc      O  \Sessions\1\BaseNamedObjects\MSCTF.CtfActivated.Default1
Ipc      O  \Sessions\1\BaseNamedObjects\RasPbFile
Ipc      O  \Sessions\1\BaseNamedObjects\WininetConnectionMutex
Ipc      O  \Sessions\1\BaseNamedObjects\WininetProxyRegistryMutex
Ipc      O  \Sessions\1\BaseNamedObjects\WininetStartupMutex
Ipc      O  \Sessions\1\Windows\ApiPort
Ipc      O  \Sessions\1\Windows\SharedSection
Ipc      O  \UxSmsApiPort
Ipc      X  $:explorer.exe
Ipc      X  (Security Token)
Ipc      X  \BaseNamedObjects\__ComCatalogCache__
Ipc      X  \BaseNamedObjects\RestartMSIDLLv327680.498156650
Ipc      X  \BaseNamedObjects\ShutdownMSIDLLv327680.498156650
Ipc      X  \Sessions\1\BaseNamedObjects\!IETld!Mutex
Ipc      X  \Sessions\1\BaseNamedObjects\_!MSFTHISTORY!_
Ipc      X  \Sessions\1\BaseNamedObjects\_!SHMSFTHISTORY!_
Ipc      X  \Sessions\1\BaseNamedObjects\c:!users!ron!appdata!local!microsoft!windows!history!history.ie5!
Ipc      X  \Sessions\1\BaseNamedObjects\c:!users!ron!appdata!local!microsoft!windows!history!history.ie5!mshist012012021220120213!
Ipc      X  \Sessions\1\BaseNamedObjects\c:!users!ron!appdata!local!microsoft!windows!temporary internet files!content.ie5!
Ipc      X  \Sessions\1\BaseNamedObjects\c:!users!ron!appdata!roaming!microsoft!windows!cookies!
Ipc      X  \Sessions\1\BaseNamedObjects\c:!users!ron!appdata!roaming!microsoft!windows!ietldcache!
Ipc      X  \Sessions\1\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000008.db
Ipc      X  \Sessions\1\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000002.db
Ipc      X  \Sessions\1\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*cversions.2.ro
Ipc      X  \Sessions\1\BaseNamedObjects\C:_Users_Ron_AppData_Local_Microsoft_Windows_History_History.IE5_index.dat_360448
Ipc      X  \Sessions\1\BaseNamedObjects\C:_Users_Ron_AppData_Local_Microsoft_Windows_History_History.IE5_MSHist012012021220120213_index.dat_32768
Ipc      X  \Sessions\1\BaseNamedObjects\C:_Users_Ron_AppData_Local_Microsoft_Windows_Temporary Internet Files_Content.IE5_index.dat_1949696
Ipc      X  \Sessions\1\BaseNamedObjects\C:_Users_Ron_AppData_Roaming_Microsoft_Windows_Cookies_index.dat_212992
Ipc      X  \Sessions\1\BaseNamedObjects\C:_Users_Ron_AppData_Roaming_Microsoft_Windows_IETldCache_index.dat_262144
Ipc      X  \Sessions\1\BaseNamedObjects\ShellReadyEvent
Ipc      X  \Sessions\1\BaseNamedObjects\ThemeLoadedEvent
Ipc      X  \Sessions\1\BaseNamedObjects\windows_ie_global_counters
Ipc      X  \Sessions\1\BaseNamedObjects\windows_shell_global_counters
Pipe        -------------------------------
Pipe        \Device\NamedPipe\keysvc
Pipe        \Device\NamedPipe\lastpassieplugin_LPUNIQUE_1464_3564
Pipe     O  \Device\Afd
Pipe     O  \Device\Afd\AsyncConnectHlp
Pipe     O  \Device\Afd\Endpoint
Pipe     X  \Device\NamedPipe\keysvc
Pipe     X  \Device\NamedPipe\lastpassieplugin_LPUNIQUE_1464_3564
Pipe     X  \Device\NamedPipe\samr
Pipe     X  \Device\NamedPipe\srvsvc
WinCls      -------------------------------
WinCls   O  #32770
WinCls   O  $:iexplore.exe
WinCls   O  MS_WebCheckMonitor
WinCls   O  MSTaskSwWClass
WinCls   O  Shell_TrayWnd
WinCls   X  DDEMLMom
WinCls   X  MS_AutodialMonitor
WinCls   X  MS_WebcheckMonitor
WinCls   X  Progman

In both cases, print job remained in the queue.

What do you think?

I should add, the log begins with first turning the Monitor on, then running the browser executable from the context menu in the Notification Area Sandboxie icon, then continues during File -> Print -> OK. I then wait a suitable time (15-20 seconds) to allow the Printing Preview screen to appear. When it seems apparent it will not, then I click the Resource Access Monitor to stop recording and copy the contents to the Clipboard.

Any problems with the above, please let me know what, and I'll do it again and resubmit the log.
RonC
Windows 7 Pro SP1 (32-bit)
RonC
 
Posts: 243
Joined: Thu Jul 27, 2006 7:07 pm
Location: Funchal, Madeira

Postby tzuk » Mon Feb 13, 2012 5:12 pm

I see that in the second log (the IE one) you have an HP program starting in the sandbox, hpswp_clipbook.exe.
But this does not seem to happen in the first log (the Firefox one).
And you say that in both cases, print jobs hang in the print queue.
So hpswp_clipbook.exe may not be a part of the problem.

This has a small chance of working, but try going into Sandbox Settings > Restrictions > Hardware Access
and check the second box to "permit programs to manage hardware device configuration"

If that doesn't work, try the checkbox in Sandbox Settings > Applications > Accessibility.
I would like to know if this works, but I suggest you enable this checkbox only long enough to test printing, then revert back the unchecked state.
tzuk
tzuk
Site Admin
 
Posts: 16076
Joined: Tue Jun 22, 2004 5:57 pm

Postby RonC » Tue Feb 14, 2012 1:03 pm

tzuk wrote:I see that in the second log (the IE one) you have an HP program starting in the sandbox, hpswp_clipbook.exe.
But this does not seem to happen in the first log (the Firefox one).

Yes, you are right. I was just mentioning everything I saw, in case you thought it to be significant. Firefox does not run this .exe because this HP utility only works with MS Internet Explorer.

... try going into Sandbox Settings > Restrictions > Hardware Access
and check the second box to "permit programs to manage hardware device configuration"

This didn't work. Print job remains in queue, until dislodged from another program, as previously described.
So, I put the check-box back to the unchecked default, and went on to the second step:

If that doesn't work, try the checkbox in Sandbox Settings > Applications > Accessibility.
I would like to know if this works, but I suggest you enable this checkbox only long enough to test printing, then revert back the unchecked state.


Sorry, that didn't work either. And yes, I did revert it back to 'unchecked'.

:?: Any other ideas, please?
RonC
Windows 7 Pro SP1 (32-bit)
RonC
 
Posts: 243
Joined: Thu Jul 27, 2006 7:07 pm
Location: Funchal, Madeira

Postby tzuk » Tue Feb 14, 2012 2:58 pm

1. Does it work if you try to print from a sandboxed Notepad?

2. Does it work if you try to print from Firefox into an XPS file?

3. If you start with an empty sandbox, and print something so it hangs in the print queue; if you then explore into the sandbox, do you see any files that look like they may be part of the print process? (Maybe PRT0001.PRN for example in some temporary files folder.) If so, where are these files and how are they named? If you add a Direct Access setting in Sandboxie to cause the files to go outside the sandbox, does it fix the printing problem?
tzuk
tzuk
Site Admin
 
Posts: 16076
Joined: Tue Jun 22, 2004 5:57 pm

Postby RonC » Tue Feb 14, 2012 5:44 pm

tzuk wrote:1. Does it work if you try to print from a sandboxed Notepad?

2. Does it work if you try to print from Firefox into an XPS file?

3. If you start with an empty sandbox, and print something so it hangs in the print queue; if you then explore into the sandbox, do you see any files that look like they may be part of the print process? (Maybe PRT0001.PRN for example in some temporary files folder.) If so, where are these files and how are they named? If you add a Direct Access setting in Sandboxie to cause the files to go outside the sandbox, does it fix the printing problem?


1. From sandboxed NotePad: fails.
Actually, from a sandboxed WordPad. I have substituted 'MetaPad' for NotePad and didn't want to introduce a non-standard editor and risk confusing anything.

2. "Printing" through the XPS driver: works.
Here, I set the driver to output to the XPS Viewer, and the web page was displayed there. A file was generated, that I just located (it was in the wrong directory, but in a 'real' one -- and not in the sandbox). The XPS viewer has the 'hash' marks-- so the sandboxing has continued all the way through.

3. Make something 'hang' in the print queue, and try to find print-process files in sandbox.
No, don't see anything there. This experiment I did with a sandboxed text editor, since it did fail, and I thought it would also be a valid test, and generate fewer extraneous or confusing entries in the sandbox, than might the browser.

Thanks for the step-by-step directions. Please tell me if I should expand on the replies or where I should look next.
________________________________
P.S.: I have just made a Resource Access Monitor log for a sandboxed text editor, including a print request. Let me know if posting this would be productive, as otherwise it would make the thread too long.
RonC
Windows 7 Pro SP1 (32-bit)
RonC
 
Posts: 243
Joined: Thu Jul 27, 2006 7:07 pm
Location: Funchal, Madeira

Possibly helpful -- I may delete, if irrelevant

Postby RonC » Tue Feb 14, 2012 6:42 pm

I started browsing through the various Sandboxie options and came across an Application setting for an 'HP Universal Print Driver'. Hoping I was 'on to something' I selected it, but a test with a sandboxed instance of WordPad still failed. I searched the Forum for 'HP' to see if there was any background on this Application entry, that might give me some leads, but the search failed, producing only 'No topics or posts met your search criteria'.
RonC
Windows 7 Pro SP1 (32-bit)
RonC
 
Posts: 243
Joined: Thu Jul 27, 2006 7:07 pm
Location: Funchal, Madeira

Postby RonC » Tue Feb 14, 2012 7:05 pm

All three Resource Access Monitor logs (text editor, both browsers) contain this line near the end, with an 'X':
Code: Select all
Pipe     X  \Device\NamedPipe\srvsvc

Searching through old posts, I discovered someone with an HP printing problem felt that this helped, so I added the line added to Sandbox Settings > Resource Access > File Access > Full Access, while leaving HP Universal Print Driver selected.

Unfortunately, the problem persisted, so it was removed, but I left HP UPD selected.

Any further ideas will be welcome.
RonC
Windows 7 Pro SP1 (32-bit)
RonC
 
Posts: 243
Joined: Thu Jul 27, 2006 7:07 pm
Location: Funchal, Madeira

One step forward, but two steps backward ...

Postby RonC » Tue Feb 14, 2012 10:16 pm

:? I am in the process of trying everything.

There is one bit of success, that I was able to print from a sandboxed Firefox by first going into HP Deskjet series Properties, Advanced Tab, and turning off spooling.

But, I have now lost the HP Printer Preview function, and I'd rather not do that, as it saves loads of ink and paper by intercepting problems, before sending the job to be printed.

But, this isn't a good work-around for a more important reason: while going from one Printer Properties Tab to another, looking at each for somewhere to restore the HP Printer Preview, (I think, there is no way) the Properties box froze. After I had to force it to terminate, I got a message from the operating system saying that Firefox had crashed, and asking, did I want Windows to look for a solution? I think something is unstable?

Hope this give some leads for more trouble-shooting? I would like to get my sandboxed programs running with the spooler again turned on, if this is at all possible.
RonC
Windows 7 Pro SP1 (32-bit)
RonC
 
Posts: 243
Joined: Thu Jul 27, 2006 7:07 pm
Location: Funchal, Madeira

Still in process of trying everything ...

Postby RonC » Tue Feb 14, 2012 10:56 pm

This also does not work, but thought it worth a try, since it appeared in all three Resource Access Monitor logs:

Commented line, copied from log:
Code: Select all
Clsid       {D6E88812-F325-4DC1-BBC7-23076618E58D} TsfManager Class
# Above line common to all three monitor files.  Added to: Sandbox Settings > Resource Access > COM Access; subsequently removed.
RonC
Windows 7 Pro SP1 (32-bit)
RonC
 
Posts: 243
Joined: Thu Jul 27, 2006 7:07 pm
Location: Funchal, Madeira

Postby tzuk » Tue Feb 14, 2012 11:36 pm

Although the \Device\NamedPipe\srvsvc resource is listed with an X, that doesn't necessarily mean that access was denied. This, along with a few other select resources, may be listed as an X, but the access is routed in some indirect way. But you're welcome to see if adding this resource in Resource Access > File Access > Full Access makes any difference.

Feel free to post your log from the text editor print attempt, on the off chance that it might help.

I see both your logs have an entry "Ipc X $:explorer.exe" so try to go into Resource Access > IPC Access > Direct Access, add:
$:explorer.exe

And on the off chance that your sandbox configuration is causing this, try to create a new sandbox with default settings and see if printing works better in the new sandbox.
tzuk
tzuk
Site Admin
 
Posts: 16076
Joined: Tue Jun 22, 2004 5:57 pm

Postby RonC » Wed Feb 15, 2012 1:39 am

tzuk wrote:... Feel free to post your log from the text editor print attempt, on the off chance that it might help.
...

Please take a look at my most recent attempt, with the text editor. Yes, this is much faster than using the browser and I'm hoping that when this is fixed, the other either will be OK, or at least, will follow without too much extra trouble.

I didn't catch your suggestions until a few moments ago, and now it's so late that I'm making typos ... so much appreciated if you could give your opinion on this (are the last two 'X's significant?) and I will continue tomorrow.
I haven't had time to try this yet, but will do so when I continue.
Code: Select all
(Drive)     \Device\CdRom0
(Drive)     \Device\CdRom1
(Drive)     \Device\Floppy0
(Drive)     \Device\HarddiskVolume1
(Drive)     \Device\HarddiskVolume10
(Drive)     \Device\HarddiskVolume11
(Drive)     \Device\HarddiskVolume12
(Drive)     \Device\HarddiskVolume13
(Drive)     \Device\HarddiskVolume14
(Drive)     \Device\HarddiskVolume2
(Drive)     \Device\HarddiskVolume3
(Drive)     \Device\HarddiskVolume4
(Drive)     \Device\HarddiskVolume5
(Drive)     \Device\HarddiskVolume6
(Drive)     \Device\HarddiskVolume7
(Drive)     \Device\HarddiskVolume8
(Drive)     \Device\HarddiskVolume9
(Unk)        00000002 \Device\0000007b
(Unk)        00000002 \Device\CdRom0
(Unk)        00000002 \Device\CdRom1
(Unk)        00000002 \Device\Ide\IdeDeviceP3T0L0-4
(Unk)        00000022 \Device\SandboxieDriverApi
(Unk)        00000039 \Device\KsecDD
Clsid       -------------------------------
Clsid       {00021401-0000-0000-C000-000000000046} Shortcut
Clsid       {88D96A0C-F192-11D4-A65F-0040963251E5} SAX XML Reader 6.0
Clsid       {B5F8350B-0548-48B1-A6EE-88BD00B4A5E7} MSAA AccPropServices
Clsid       {D6E88812-F325-4DC1-BBC7-23076618E58D} TsfManager Class
File/Key    -------------------------------
Image       -------------------------------
Image       *:\program files\windows nt\accessories\wordpad.exe
Image       c:\program files\common files\microsoft shared\ink\tiptsf.dll
Image       c:\program files\pushpin\ppsys.dll
Image       c:\program files\sandboxie\sbiedll.dll
Image       c:\program files\windows journal\nbmaptip.dll
Image       c:\windows\system32\advapi32.dll
Image       c:\windows\system32\apphelp.dll
Image       c:\windows\system32\cfgmgr32.dll
Image       c:\windows\system32\clbcatq.dll
Image       c:\windows\system32\comdlg32.dll
Image       c:\windows\system32\crypt32.dll
Image       c:\windows\system32\cryptbase.dll
Image       c:\windows\system32\cryptsp.dll
Image       c:\windows\system32\cscapi.dll
Image       c:\windows\system32\cscdll.dll
Image       c:\windows\system32\cscui.dll
Image       c:\windows\system32\devobj.dll
Image       c:\windows\system32\dnsapi.dll
Image       c:\windows\system32\dwmapi.dll
Image       c:\windows\system32\ehstorshell.dll
Image       c:\windows\system32\fms.dll
Image       c:\windows\system32\gdi32.dll
Image       c:\windows\system32\ieframe.dll
Image       c:\windows\system32\iertutil.dll
Image       c:\windows\system32\imm32.dll
Image       c:\windows\system32\iphlpapi.dll
Image       c:\windows\system32\kernel32.dll
Image       c:\windows\system32\kernelbase.dll
Image       c:\windows\system32\lpk.dll
Image       c:\windows\system32\lz32.dll
Image       c:\windows\system32\mfc42u.dll
Image       c:\windows\system32\msasn1.dll
Image       c:\windows\system32\mscms.dll
Image       c:\windows\system32\msctf.dll
Image       c:\windows\system32\msftedit.dll
Image       c:\windows\system32\msimg32.dll
Image       c:\windows\system32\msls31.dll
Image       c:\windows\system32\msvcirt.dll
Image       c:\windows\system32\msvcrt.dll
Image       c:\windows\system32\msxml3.dll
Image       c:\windows\system32\msxml6.dll
Image       c:\windows\system32\nsi.dll
Image       c:\windows\system32\ntdll.dll
Image       c:\windows\system32\ntmarta.dll
Image       c:\windows\system32\ntshrui.dll
Image       c:\windows\system32\odbc32.dll
Image       c:\windows\system32\odbcint.dll
Image       c:\windows\system32\ole32.dll
Image       c:\windows\system32\oleacc.dll
Image       c:\windows\system32\oleaut32.dll
Image       c:\windows\system32\profapi.dll
Image       c:\windows\system32\propsys.dll
Image       c:\windows\system32\psapi.dll
Image       c:\windows\system32\rpcrt4.dll
Image       c:\windows\system32\rpcrtremote.dll
Image       c:\windows\system32\rsaenh.dll
Image       c:\windows\system32\sechost.dll
Image       c:\windows\system32\setupapi.dll
Image       c:\windows\system32\shell32.dll
Image       c:\windows\system32\shlwapi.dll
Image       c:\windows\system32\slc.dll
Image       c:\windows\system32\spool\drivers\w32x86\3\hpfiew71.dll
Image       c:\windows\system32\spool\drivers\w32x86\3\hpz3rw71.dll
Image       c:\windows\system32\spool\drivers\w32x86\3\hpzlew71.dll
Image       c:\windows\system32\spool\drivers\w32x86\3\hpzuiw71.dll
Image       c:\windows\system32\spool\drivers\w32x86\3\unidrv.dll
Image       c:\windows\system32\spool\drivers\w32x86\3\unidrvui.dll
Image       c:\windows\system32\srvcli.dll
Image       c:\windows\system32\sspicli.dll
Image       c:\windows\system32\uiribbon.dll
Image       c:\windows\system32\uiribbonres.dll
Image       c:\windows\system32\urlmon.dll
Image       c:\windows\system32\user32.dll
Image       c:\windows\system32\userenv.dll
Image       c:\windows\system32\usp10.dll
Image       c:\windows\system32\uxtheme.dll
Image       c:\windows\system32\version.dll
Image       c:\windows\system32\windowscodecs.dll
Image       c:\windows\system32\wininet.dll
Image       c:\windows\system32\winmm.dll
Image       c:\windows\system32\winnsi.dll
Image       c:\windows\system32\winspool.drv
Image       c:\windows\system32\wldap32.dll
Image       c:\windows\system32\ws2_32.dll
Image       c:\windows\system32\xmllite.dll
Image       c:\windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.5592_none_d09196c24426e2d4\msvcp80.dll
Image       c:\windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.5592_none_d09196c24426e2d4\msvcr80.dll
Image       c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll
Image       c:\windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.17514_none_72d18a4386696c80\gdiplus.dll
Image       d:\nero\tools\incd\nbhshx.dll
Ipc         -------------------------------
Ipc         \RPC Control\epmapper
Ipc         \RPC Control\OLED8C215AD5A0846338862A02B327B
Ipc         \Sessions\1\BaseNamedObjects\__ComCatalogCache__
Ipc         \Sessions\1\BaseNamedObjects\Local\C:*Users*Ron*AppData*Local*Microsoft*Windows*Caches*{AFBF9F1A-8EE8-4C77-AF34-C647E37CA0D9}.1.ver0x00000000000000cd.db
Ipc         \Sessions\1\BaseNamedObjects\Local\C:*Users*Ron*AppData*Local*Microsoft*Windows*Caches*cversions.1.ro
Ipc         \Sessions\1\BaseNamedObjects\Local\FmsRegMutex
Ipc         \Sessions\1\BaseNamedObjects\SBIE_DummyEvent_3908
Ipc         \Sessions\1\BaseNamedObjects\SBIE_ServiceInitComplete_DcomLaunch
Ipc         \Sessions\1\BaseNamedObjects\SBIE_ServiceInitComplete_RpcSs
Ipc      O  \BaseNamedObjects\msctf.serverDefault1
Ipc      O  \BaseNamedObjects\windows_shell_global_counters
Ipc      O  \KernelObjects\MaximumCommitCondition
Ipc      O  \KnownDlls\advapi32.dll
Ipc      O  \KnownDlls\CFGMGR32.dll
Ipc      O  \KnownDlls\clbcatq.dll
Ipc      O  \KnownDlls\COMDLG32.dll
Ipc      O  \KnownDlls\CRYPT32.dll
Ipc      O  \KnownDlls\DEVOBJ.dll
Ipc      O  \KnownDlls\gdi32.dll
Ipc      O  \KnownDlls\IERTUTIL.dll
Ipc      O  \KnownDlls\kernel32.dll
Ipc      O  \KnownDlls\KERNELBASE.dll
Ipc      O  \KnownDlls\LPK.dll
Ipc      O  \KnownDlls\MSASN1.dll
Ipc      O  \KnownDlls\MSCTF.dll
Ipc      O  \KnownDlls\MSVCRT.dll
Ipc      O  \KnownDlls\NSI.dll
Ipc      O  \KnownDlls\ole32.dll
Ipc      O  \KnownDlls\OLEAUT32.dll
Ipc      O  \KnownDlls\PSAPI.DLL
Ipc      O  \KnownDlls\rpcrt4.dll
Ipc      O  \KnownDlls\Setupapi.dll
Ipc      O  \KnownDlls\SHELL32.dll
Ipc      O  \KnownDlls\SHLWAPI.dll
Ipc      O  \KnownDlls\URLMON.dll
Ipc      O  \KnownDlls\user32.dll
Ipc      O  \KnownDlls\USP10.dll
Ipc      O  \KnownDlls\WININET.dll
Ipc      O  \KnownDlls\WLDAP32.dll
Ipc      O  \KnownDlls\WS2_32.dll
Ipc      O  \RPC Control\lsapolicylookup
Ipc      O  \RPC Control\lsasspirpc
Ipc      O  \RPC Control\SbieSvcPort
Ipc      O  \RPC Control\spoolss
Ipc      O  \Security\LSA_AUTHENTICATION_INITIALIZED
Ipc      O  \Sessions\1\BaseNamedObjects\_!MSFTHISTORY!_
Ipc      O  \Sessions\1\BaseNamedObjects\c:!users!ron!appdata!local!microsoft!windows!history!history.ie5!
Ipc      O  \Sessions\1\BaseNamedObjects\c:!users!ron!appdata!local!microsoft!windows!temporary internet files!content.ie5!
Ipc      O  \Sessions\1\BaseNamedObjects\c:!users!ron!appdata!roaming!microsoft!windows!cookies!
Ipc      O  \Sessions\1\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000008.db
Ipc      O  \Sessions\1\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000002.db
Ipc      O  \Sessions\1\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches*cversions.2.ro
Ipc      O  \Sessions\1\BaseNamedObjects\C:_Users_Ron_AppData_Local_Microsoft_Windows_History_History.IE5_index.dat_409600
Ipc      O  \Sessions\1\BaseNamedObjects\C:_Users_Ron_AppData_Local_Microsoft_Windows_Temporary Internet Files_Content.IE5_index.dat_1949696
Ipc      O  \Sessions\1\BaseNamedObjects\C:_Users_Ron_AppData_Roaming_Microsoft_Windows_Cookies_index.dat_212992
Ipc      O  \Sessions\1\BaseNamedObjects\CTF.AsmListCache.FMPDefault1
Ipc      O  \Sessions\1\BaseNamedObjects\DBWinMutex
Ipc      O  \Sessions\1\BaseNamedObjects\MSCTF.Asm.MutexDefault1
Ipc      O  \Sessions\1\BaseNamedObjects\MSCTF.AsmCacheReady.Default1
Ipc      O  \Sessions\1\BaseNamedObjects\MSCTF.CtfActivated.Default1
Ipc      O  \Sessions\1\BaseNamedObjects\ShellReadyEvent
Ipc      O  \Sessions\1\BaseNamedObjects\ThemeLoadedEvent
Ipc      O  \Sessions\1\BaseNamedObjects\windows_shell_global_counters
Ipc      O  \Sessions\1\BaseNamedObjects\WininetConnectionMutex
Ipc      O  \Sessions\1\BaseNamedObjects\WininetProxyRegistryMutex
Ipc      O  \Sessions\1\BaseNamedObjects\WininetStartupMutex
Ipc      O  \Sessions\1\Windows\ApiPort
Ipc      O  \Sessions\1\Windows\SharedSection
Pipe        -------------------------------
Pipe     O  \Device\NamedPipe\srvsvc
WinCls      -------------------------------
WinCls   O  PrintTray_Notify_WndClass
WinCls   X  Progman
WinCls   X  WordPadClass



The above was accomplished with the following, and I anticipated your suggestion for a new box, that I prepared by clearing out just about everything (not too much, I hope?) before beginning to use it:
Code: Select all
[CleanTestBox]

Enabled=y
ConfigLevel=7
AutoRecover=y
BorderColor=#00FFFF,ttl
BoxNameTitle=y
OpenIpcPath=*\BaseNamedObjects\ShellReadyEvent
OpenIpcPath=*\BaseNamedObjects\ThemeLoadedEvent
OpenIpcPath=*\BaseNamedObjects\__ComCatalogCache__
OpenIpcPath=*\BaseNamedObjects\_!MSFTHISTORY!_
OpenIpcPath=*\BaseNamedObjects\c:!users!ron!appdata!*
OpenIpcPath=*\BaseNamedObjects\C:*ProgramData*Microsoft*Windows*Caches**
OpenIpcPath=*\BaseNamedObjects\C:_Users_Ron_AppData_Local_Microsoft_Windows_*
OpenIpcPath=*\BaseNamedObjects\C:_Users_Ron_AppData_Roaming_Microsoft_Windows_*
OpenIpcPath=*\BaseNamedObjects\windows_shell_global_counters
OpenPipePath=\Device\NamedPipe\srvsvc


Please both tell me if the commands seem appropriate and take a look at my syntax as I guessed on the two '*'s at the end of one line. What does one do, when the line already ends with an asterisk? There was more to the line, so I guessed I'd just add another. And all this was written before you comment was seen regarding the last line, so this could be changed.

There are three lines with "Ron" in them that, assuming it's needed, would only work on my system. Perhaps you know of a substitution there, that would make it universal?

In addition, 'HP Universal Driver' remains selected.

Thanks again for the help!
RonC
Windows 7 Pro SP1 (32-bit)
RonC
 
Posts: 243
Joined: Thu Jul 27, 2006 7:07 pm
Location: Funchal, Madeira

Next

Return to Problem Reports

Who is online

Users browsing this forum: Google [Bot] and 1 guest