system
4
Starting to wonder as well. When I think about it, if an adware unpacks in the %TEMP%, it does so outside the sandbox right now (with my exclusions).
The issue though is that if I don’t exclude the %TEMP%, foxit reader cannot read any pdf from Firefox. Everytime it does try, it gives me a message saying… “cannot find m:\userTemp\xyz.pdf for reading.” The only way I found to fix it was to exclude my new %TEMP%.
If you have a more secure option, I’d love to hear any suggestions on it 
Thanks for letting me know… I’ll probably revert back to defaults (except perhaps the “Downloads” since it won’t work at all without it).
Regards,
R