Post
by Guest10 » Sat Jul 14, 2018 10:43 am
The Chrome Phishing template in templates.ini, as it is now:
[Template_Chrome_Phishing_DirectAccess]
Tmpl.Title=#4337,Google Chrome
Tmpl.Class=WebBrowser
ProcessGroup=<ChromePrograms>,chrome.exe,dragon.exe,iron.exe,opera.exe,maxthon.exe,vivaldi.exe,neon.exe
OpenFilePath=<ChromePrograms>,%Local AppData%\Google\Chrome\User Data\Safe Browsing*
OpenFilePath=<ChromePrograms>,%Local AppData%\Google\Chrome\User Data\Certificate Revocation Lists
I seldom use Chrome, but I noticed that Chrome's "Safe Browsing" files were not being updated outside of the sandbox.
Also, I do not have a "Certificate Revocation Lists" folder, as listed in the last exception above.
I have added these settings to the configuration of my Chrome sandbox, to allow these items to be updated outside of the sandbox:
OpenFilePath=chrome.exe,%Local AppData%\Google\Chrome\User Data\Safe Browsing\
OpenFilePath=chrome.exe,%Local AppData%\Google\Chrome\User Data\CertificateRevocation\
NOTE: I have specified "chrome.exe" instead of "<ChromePrograms>" in my settings.
I cannot verify whether or not these settings would be correct, for users of the other browsers (dragon, iron, opera, etc) that are listed in the ProcessGroup line.
Paul
Win 10 Home 64-bit (w/admin rights) - Zone Alarm Pro Firewall, MalwareBytes Premium A/V, Firefox, Thunderbird
Sandboxie user since March 2007