SECURITY: Complete AMD1 Security Config 2020

Last updated
Sep 11, 2020
About
My primary device
Operating system
Login security
Primary sign-in
Microsoft account
Primary account rights
Administrator permissions
Security updates
Automatic - allow all types of updates
Windows UAC
Maximum - always notify
Real-time protection
Kaspersky Security Cloud Personal
Software firewall
Provided by a third-party security vendor. Refer to 'Real-time protection' for details.
Custom RTP, Firewall and OS settings
Network connections changed to Local network
Application Resource protection folders added "Protected Folders" to cover C Drive and external drives.
Other tweaks following other members set-ups
Malware research
No - malware samples are not downloaded
Periodic scanners
Eset Online Scanner
Browsers, Search and Addons
Microsoft Edge (New version)
Kaspersky Protection
PC maintenance
Wise Care 365
Personal Files & Photos backup
Macrium Reflect (paid version) scheduled backups
Kaspersky BackUp for password protected back-up of Data Encryption contents (backed up on demand)
OneDrive
Personal backup routine
Device recovery & backup
Macrium Reflect
OneDrive
Device backup routine
Manual (maintained by self)
PC activity
  1. Financial
  2. Browsing the Web
  3. Visiting unknown sites
  4. Working from home
Computer specs
Lenovo
Intel(R) HD Graphics
8gb Ram

AMD1

Level 4
Verified
Aug 21, 2012
180
Thanks for the comments. By way of an update, I have retained just the Kaspersky Browser extension.

Two queries :

1. For additional user defined "protected Folder" settings for resources under Application Control, which are the resources not covered by default settings and therefore to be covered by user defined settings ? Unsure whether protecting entire C drive is unnecessary and just perhaps the User folder is more appropriate.
2. If "perform recommended actions automatically" is ticked under general settings, does this negate the user settings created above or do they still apply whether in interactive or automatic mode ?
 

AMD1

Level 4
Verified
Aug 21, 2012
180
1.- Yes, I also protected folders with my docs and files, no the full drive...

Just to clarify are you saying the C drive and other docs as well?

2.- That settings apply actions automatically, so no Interactive Warnings... in Auto Mode, actions with Prompts rights in Application Control are allowed in Trusted and Low Restricted...

In either mode are the user settings initiated ?
 

harlan4096

Moderator
Verified
Staff member
Malware Hunter
Apr 28, 2015
7,041
I also protected folders with my docs and files, no the full drive.
I mean only protect folders with my important files/docs... in my case I have them all in drive D:

1600416673324.png1600416583259.png

With this approach almost has no sense to change Low Restricted rights, since no application will be placed there, only in Trusted, High Restricted or UnTrusted :p
 
Top