I just ran Sophos anti-rootkit and it shows 294 hidden files that are associated with Avast's virtualization ("## aswsnx"), but I'm seeing paths related to apps that I've NEVER run in the sandbox - apps such as Thunderbird and Open Office. The only app that I've run virtualized is Firefox.
1) What is causing this?
2) How are these files managed? Do they clean up on their own, do I need to intervene, or should they remain (and why?)
In the Avast console/controls, clicking the "Delete Contents" button under "Web Browsers: Store files in special storage in the sandbox" had no effect on these files, which is understandable since these apps are not web browsers.
There is precious little information on the internal workings of this feature, and should be better documented.
Thanks.