Security Level 1
Section Security Level 1
[Former 'Standard' profile]
All malicious files are blocked and All malicious files are blocked
quarantined and quarantined
All files in suspicious and All files in suspicious and
containment folders are blocked containment folders are blocked
Containment
Rule
Metro apps are not contained Metro apps are not contained
All unrecognized files are
All unrecognized files are contained
contained.
Enabled Enabled
'Safe Mode' action = 'Allow 'Safe Mode' action = 'Allow
Requests' Requests'
'Enhanced Protection Mode' - 'Enhanced Protection Mode' =
Disabled Disabled
HIPS
'Enable Embedded Code
Detection and Heuristic
Command-line Analysis for
Certain Applications' = Enabled
Enabled Enabled
Firewall 'Safe Mode' action = 'Allow 'Safe Mode' action = 'Allow
Requests' Requests'
Enabled Enabled
VirusScope 'Monitor Contained Applications 'Monitor Contained Applications
only' = Enabled only' = Enabled
Enabled Enabled
File Rating 'Detect potentially unwanted 'Detect potentially unwanted
applications' = Enabled applications' = Enabled
'Realtime Scan' - Enabled 'Realtime Scan' - Enabled
Antivirus
Full Scan - 'Use cloud while Full Scan - 'Use cloud while
scanning' - Disabled scanning' - Disabled
Unrecognized autorun entries Unrecognized autorun entries
Miscellaneous related to new/modified registry related to new/modified registry
items are ignored. items are ignored.
Security Level 2 Security Level 3
All malicious files are blocked All malicious files are blocked and
and quarantined quarantined
All files in suspicious and
All files in suspicious and
containment folders are
containment folders are blocked
blocked
All unrecognized files are
All unrecognized files are contained.
contained.
All contained files are logged All contained files are logged
Enabled Enabled
'Safe Mode' action = 'Block
Safe Mode action = 'Block Requests'
Requests'
'Enhanced Protection Mode' = 'Enhanced Protection Mode' =
Enabled Disabled
'Enable Embedded Code Detection
and Heuristic Command-Line Analysis
for Certain Applications' = Enabled
with all applications selected
Enabled Enabled
'Safe Mode' action = 'Block 'Safe Mode' action = 'Block
Requests' Requests'
Enabled Enabled
'Monitor Contained Applications 'Monitor Contained Applications only'
only' = Disabled = Disabled
Enabled Enabled
'Detect potentially unwanted 'Detect potentially unwanted
applications' = Enabled applications' = Enabled
'Realtime Scan' - Enabled 'Realtime Scan' - Enabled
Full Scan - 'Use cloud while Full Scan - 'Use cloud while scanning'
scanning' - Disabled - Enabled
Unrecognized autorun entries
Unrecognized autorun entries related
related to new/modified registry
to new/modified registry items
items are terminated and
are quarantined and disabled.
disabled.
Section Security Level 1
攔截並隔離所有惡意檔案
可疑和封鎖資料夾中的所有檔案都會被封鎖
Containment Rule
不包含 Metro 應用程式
遏制所有未識別的檔案
啟用
'Safe Mode' action = 'Allow Requests'
'Enhanced Protection Mode' - Disabled
HIPS
啟用
防火牆(WIN_SERVER上不起作用)
'Safe Mode' action = 'Allow Requests'
啟用
VirusScope 'Monitor Contained Applications only' =
Enabled
啟用
檔案評等 'Detect potentially unwanted
applications' = Enabled
即時掃描' - Enabled
防毒
Full Scan - 'Use cloud while scanning' -
Disabled
將所選動作套用到與新增/修改的登錄項目相關無法識別的 Autorun
雜項
項: ignored.
Security Level 1
Security Level 2
[Former 'Standard' profile]
攔截並隔離所有惡意檔案 攔截並隔離所有惡意檔案
可疑和封鎖資料夾中的所有檔案都會被封鎖 可疑和封鎖資料夾中的所有檔案都會被封鎖
不包含 Metro 應用程式 包含所有未識別的檔案
遏制所有未識別的檔案
記錄所有被遏制的檔案
啟用 啟用
'Safe Mode' action = 'Allow Requests' 'Safe Mode' action = 'Block Requests'
'Enhanced Protection Mode' = Disabled 'Enhanced Protection Mode' = Enabled
'Enable Embedded Code Detection and
Heuristic Command-line Analysis for Certain
Applications' = Enabled
啟用 啟用
'Safe Mode' action = 'Allow Requests' 'Safe Mode' action = 'Block Requests'
啟用 啟用
'Monitor Contained Applications only' = 'Monitor Contained Applications only' =
Enabled Disabled
啟用 啟用
'Detect potentially unwanted applications' = 'Detect potentially unwanted applications'
Enabled = Enabled
即時掃描' - Enabled 即時掃描' - Enabled
Full Scan - 'Use cloud while scanning' - Full Scan - 'Use cloud while scanning' -
Disabled Disabled
將所選動作套用到與新增/修改的登錄項目相關無法識別的 Autorun 將所選動作套用到與新增/修改的登錄項目相關無法識別的 Autorun
項: ignored. 項: terminated and disabled.
Security Level 3
攔截並隔離所有惡意檔案
可疑和封鎖資料夾中的所有檔案都會被封鎖
包含所有未識別的檔案
記錄所有被遏制的檔案
啟用
Safe Mode action = 'Block Requests'
'Enhanced Protection Mode' = Disabled
'Enable Embedded Code Detection and
Heuristic Command-Line Analysis for
Certain Applications' = Enabled with all
applications selected
啟用
'Safe Mode' action = 'Block Requests'
啟用
'Monitor Contained Applications only' =
Disabled
啟用
'Detect potentially unwanted applications'
= Enabled
即時掃描' - Enabled
Full Scan - 'Use cloud while scanning' -
Enabled
將所選動作套用到與新增/修改的登錄項目相關無法識別的 Autorun
項: quarantined and disabled.