Sandbox security threat with VMWare Workstation 6


Recommended Posts

Hi. This is my situation. On the same pc, I would like to do some Internet banking but son want to use it to play games and go to questionable website. Security wise, these 2 things do not mix and that got me thinking about VMWare virtual pc. And very much appreciate experience VMWare users? advise on this.

Can I set up a virtual pc and let my son uses that? And any securities threats will be sand boxed in VM virtual pc and not infest the host pc?

Alternatively, can I set up a virtual pc and I use that to do my banking stuff and any virus in the host pc will not get into?

I have some doubt about this because I tried setting up a virtual pc for the very 1st time and found I could drag & drop files from the host to the virtual pc and vice versa at ease. If files could move so easily between host and guest, couldn?t virus do the same?

Thanks.

The only reason you could move files between the host and guest so easy, is you setup that feature in vmware workstation.

So playing games -- that he bought from a store? You feel is a security issue?

As to questionable websites? Have him sandbox any connections he makes to "questionable" websites http://www.sandboxie.com/

Playing "games" in a vmware normally is a huge performance hit on the game, the newer games require as much of the computers cpu and memory and video card to play the game as it was meant to be played... Trying to run it in a vm is going to be a hit on that performance.

Thank you BudMan,

This Sandboxie looks perfect for the job.

Assuming my host pc is infested with virus or malware or keylogger. If I go open up a sandbox and do my internet banking stuff inside it, would security be compromised? i.e., nothing comes out or go into the sandbox from the host pc.

Thank you.

I would assume if the host pc has a key logger installed it?s still going to log whatever you type in as your keystrokes are been logged before they even get to the sandbox application.

You could always boot a Linux live cd such as Ubuntu and do your banking like that, this way you know you will be virus free and any sensitive information you enter will be erased once you power the pc down as it will all be saved in the ram.

Hi. I was wondering, how to do the proper setup
What do you mean "proper" You either allow for sharing files between host and guest or you do not.. Either way would be proper.

The use of the sandbox would be so your box does not get compromised, not for use on a compromised system, etc.

If you are so worried that your box is infected with keyloggers and such -- heres an idea, clean it!

Is this paranoia medically induced, or is your tinfoil hat just a bit loose? If you feel your box has been compromised -- then freaking nuke it from orbit and start over..

If your so worried your son will get your machine infected -- then don't let him use it!

Booting a liveCD every time you want to look at the balance of your checkbook or pay a bill seems a bit over the top if you ask me. Its not like this is a public computer or anything -- just take steps to make sure its clean and practice safe computing, and tighten up your tinfoil hat and you will be fine ;)

because it is questionable with sandboxie and vmware for elminating viruses, spyware, trojans, keyloggers....it's skeptible if both use the same OS...the banking host must be locked down but at what cost?

this is where an old laptop comes in useful....for banking/accounting and nothing else...

I have created a vm virtual pc. I have disabled "Shared Folder", disabled Guest Isolation (so there will be no dragging of file from host to guest and vice versa). But I have trouble setting Ethernet to Bridged mode. So I am using NAT instead. Would there be any security compromises in this area?

My son likes to go watch TV programs and movies at sites like www.pipifilm.com or www.xunlei.com or www.ppstream.com

Friends who have been to those sites told me they get fed up with viruses and nasty stuffs coming in after watching those programs. Hence my concerns. So either surf those sites in virtual pc or do online banking in virtual pc.

Any advise appreciated.

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • Uhm, that's every business ever, though. It doesn't matter if a bajillion users are using it. As long as it's not making bank, it's probably headed for the graveyard.
    • Yeah Patchou was an active member here, good ol' times indeed.
    • Samsung is the new Google... they don't care if millions of people are using it.
    • Still no word on Tides of Annihilation...... so weird that it wasn't shown at the big Game Fest. Guess I'll put it in the bin like Judas and Squadron 42.
    • Samsung is shutting down yet another app used by millions by David Uzondu Samsung has announced that it is shutting down Samsung Max, its VPN service used by more than 50 million people, effective today. Samsung Max VPN, if you don't know, was an Android app born on February 23, 2018, out of the ashes of Opera Max, a very popular data-saving VPN that Opera had discontinued the previous year. Samsung bought the discontinued service, rebranded it, and added a native Samsung UI to fit the Galaxy ecosystem. The app could do things like compress images, help you manage background data on a per-app basis, reduce video data consumption, shrink music files, optimize webpages, block advertisement trackers in incognito mode, and encrypt your internet traffic on public Wi-Fi networks. Image via SammyGuru If you open the app now, you'd be greeted by a shutdown banner warning that all VPN, data saving, and privacy services stopped functioning on June 15, 2026. The creators failed to provide a reason for the shutdown, instead publishing a farewell note that read: "Thank you for being with us over the years. Your support and activity truly meant a lot to us and helped shape this app into what it became." This same message appears on the Google Play Store listing for the app as well. Max VPN is the latest service from Samsung to join the list of discontinued applications from the company. Just two months ago, the Korean tech giant announced that it is completely shutting down Samsung Messages, forcing millions of users to migrate to Google Messages by next month. The only devices that the shutdown won't affect are older smartphones running Android 11 or lower. Some of the features of Google Messages that Samsung hopes will entice users include AI-powered scam detection to block suspicious links, integrated Gemini AI tools to generate quick replies, custom chat bubbles, and universal RCS compatibility for sharing high-quality media with iOS users. The platform also offers seamless syncing across tablets and smartwatches. In addition to that, users gain access to message scheduling, smart classification, and automated category sorting. Via: SammyGuru
  • Recent Achievements

    • One Year In
      ThatGuyOnline earned a badge
      One Year In
    • Week One Done
      Jeroen Wilms earned a badge
      Week One Done
    • Week One Done
      rolfus earned a badge
      Week One Done
    • One Month Later
      Leroy Jethro Gibbs earned a badge
      One Month Later
    • Conversation Starter
      flexorcist earned a badge
      Conversation Starter
  • Popular Contributors

    1. 1
      +primortal
      500
    2. 2
      +Edouard
      195
    3. 3
      PsYcHoKiLLa
      125
    4. 4
      Steven P.
      85
    5. 5
      neufuse
      73
  • Tell a friend

    Love Neowin? Tell a friend!