Filesystem (and registry) redirection has been around in Windows for a while, and is used to e.g. make sure that pre-Vista apps still run if they do things like trying to write to "Program Files". But that all assumes that the app is not adversarial - proper sandboxing is a different story.