Thank you for the explanation. Do I understand correctly that to achieve all the benefits of DefenderUI Pro, I can install the free Hybrid Hardening or Hard_Configurator along with ConfigureDefender and FirewallHardening and get the same protection? However, it's not entirely clear: do I need to install all of these free implementations from Andy or is one of them enough to have an analogue of DefenderUI Pro? And it would be nice if someone could explain how to configure all of Andy's plugins to achieve the level of protection of the paid DefenderUI Pro.
I just don't quite understand the point of DefenderUI Pro, which you have to pay for, because you can install a paid combo from a well-known vendor. Is the only advantage that you will have an optimised antivirus from Microsoft with improved protection, unlike third-party products?
Half way down this page, you'll see the screenshots of the Pro version which includes system Lockdown.
Andy's WHHL or H_C lock down your system using built-in windows hardens your system without the need for 3rd party software.
Hard_Configurator (
description) is more for advanced users and stricter default policies whereas WHHL (
description) is simpler and includes options for WDAC (Application Control). There's some videos about WHHL on Andy's
Youtube page.
ConfigureDefender does the same thing as DefenderUI but without the need to have an additional program running (DefenderUI uses abou 30MB ram).
I mentioned WindowsFirewallHardening because CyberLock recently implemented a SmartFirewall feature which does the same thing, adding Windows Firewall Block rules for commonly exploited LOLBins (e.g. Notepad, Calculator, Eventviewer etc. Things that aren't meant to access the internet).
In Hard_Configurator, you can access CD and FWH within its UI but you can download them separately all from his
Github.
I used H_C full time for a year or so without any issue, there's nothing extra running in the background, you just open the UI when you need to check logs or make changes and close it again. I decided to go with CyberLock at the start of last year and ended up getting a lifetime license late last year bur I'd be running H_C if I didn't

I hope that explains it but
@Andy Ful is the expert
