You can also use EASY-MEDIUM normal mode as illustrated by these screen shots. You DON'T need to run/use uBlock in advanced mode.
As said 95% of the malware comes from insecure unencrypted websites. For getting a HTTPS certificate on your website, your hosting partner should perform a basic background check (in Netherlands a valid bank account and payment received is sufficient). Malware writers rather choose the easy way and launch their malware from HTTP websites.
1. BLOCK THIRD-PARTY WEB REQUESTS with uBlock MY FILTERS (or AdBlock/Adguard custom rules)
2. BLOCK FIRST & THIRD PARTY FROM INSECURE WEBSITES with Chrome's JavaScript Site Permissions (only ALLOW HTTPS://*)
Chrome will warn you when it blocks javascript in the browser. You can decide to allow when you want to visit that website, (allow first party). When you allow, the My Filter rules still protects you for webrequests to third party insecure websites.
3. PREVENT DOWNLOAD OF PROGRAMS WITH CHROME FLAG FROM INSECURE WEBSITES (to prevent drive by infections)
4 USE YOUR BROWSERS BAD-URL PROTECTION (Edge SmartScreen or Chrome's Safe Browsing)
When you use your browsers URL protection and block risky stuff from HTTP websites, you really don't need an extension of another AV or the bloated uBlock malware (domain) filters.
5. INSTALL NETCRAFT EXTENSION AGAINST PHISING AND SOME EXTRA CROSS SITE SCRIPTING PROTECTION.
Netcraft claims to protect against over 60 million active phising sites and performs well in the tests of
@Evjl's Rain.I think it complements M$ Smartscreen and Google's Safe Browsing blocklists/reputation rating well (with the additional benefit of extra XSS protection)