0% found this document useful (0 votes)
15 views10 pages

Pre-configured Profiles比較

Uploaded by

jkr12366
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as XLSX, PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
15 views10 pages

Pre-configured Profiles比較

Uploaded by

jkr12366
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as XLSX, PDF, TXT or read online on Scribd
You are on page 1/ 10

Security Level 1

Section Security Level 1


[Former 'Standard' profile]

All malicious files are blocked and All malicious files are blocked
quarantined and quarantined

All files in suspicious and All files in suspicious and


containment folders are blocked containment folders are blocked

Containment
Rule

Metro apps are not contained Metro apps are not contained

All unrecognized files are


All unrecognized files are contained
contained.

Enabled Enabled
'Safe Mode' action = 'Allow 'Safe Mode' action = 'Allow
Requests' Requests'
'Enhanced Protection Mode' - 'Enhanced Protection Mode' =
Disabled Disabled
HIPS
'Enable Embedded Code
Detection and Heuristic
Command-line Analysis for
Certain Applications' = Enabled

Enabled Enabled
Firewall 'Safe Mode' action = 'Allow 'Safe Mode' action = 'Allow
Requests' Requests'
Enabled Enabled
VirusScope 'Monitor Contained Applications 'Monitor Contained Applications
only' = Enabled only' = Enabled

Enabled Enabled

File Rating 'Detect potentially unwanted 'Detect potentially unwanted


applications' = Enabled applications' = Enabled

'Realtime Scan' - Enabled 'Realtime Scan' - Enabled


Antivirus
Full Scan - 'Use cloud while Full Scan - 'Use cloud while
scanning' - Disabled scanning' - Disabled
Unrecognized autorun entries Unrecognized autorun entries
Miscellaneous related to new/modified registry related to new/modified registry
items are ignored. items are ignored.
Security Level 2 Security Level 3

All malicious files are blocked All malicious files are blocked and
and quarantined quarantined

All files in suspicious and


All files in suspicious and
containment folders are
containment folders are blocked
blocked

All unrecognized files are


All unrecognized files are contained.
contained.

All contained files are logged All contained files are logged

Enabled Enabled
'Safe Mode' action = 'Block
Safe Mode action = 'Block Requests'
Requests'
'Enhanced Protection Mode' = 'Enhanced Protection Mode' =
Enabled Disabled

'Enable Embedded Code Detection


and Heuristic Command-Line Analysis
for Certain Applications' = Enabled
with all applications selected

Enabled Enabled
'Safe Mode' action = 'Block 'Safe Mode' action = 'Block
Requests' Requests'
Enabled Enabled

'Monitor Contained Applications 'Monitor Contained Applications only'


only' = Disabled = Disabled

Enabled Enabled

'Detect potentially unwanted 'Detect potentially unwanted


applications' = Enabled applications' = Enabled

'Realtime Scan' - Enabled 'Realtime Scan' - Enabled

Full Scan - 'Use cloud while Full Scan - 'Use cloud while scanning'
scanning' - Disabled - Enabled
Unrecognized autorun entries
Unrecognized autorun entries related
related to new/modified registry
to new/modified registry items
items are terminated and
are quarantined and disabled.
disabled.
Section Security Level 1

攔截並隔離所有惡意檔案

可疑和封鎖資料夾中的所有檔案都會被封鎖

Containment Rule

不包含 Metro 應用程式

遏制所有未識別的檔案

啟用

'Safe Mode' action = 'Allow Requests'

'Enhanced Protection Mode' - Disabled


HIPS

啟用
防火牆(WIN_SERVER上不起作用)
'Safe Mode' action = 'Allow Requests'

啟用
VirusScope 'Monitor Contained Applications only' =
Enabled

啟用

檔案評等 'Detect potentially unwanted


applications' = Enabled

即時掃描' - Enabled
防毒
Full Scan - 'Use cloud while scanning' -
Disabled
將所選動作套用到與新增/修改的登錄項目相關無法識別的 Autorun
雜項
項: ignored.
Security Level 1
Security Level 2
[Former 'Standard' profile]

攔截並隔離所有惡意檔案 攔截並隔離所有惡意檔案

可疑和封鎖資料夾中的所有檔案都會被封鎖 可疑和封鎖資料夾中的所有檔案都會被封鎖

不包含 Metro 應用程式 包含所有未識別的檔案

遏制所有未識別的檔案

記錄所有被遏制的檔案

啟用 啟用

'Safe Mode' action = 'Allow Requests' 'Safe Mode' action = 'Block Requests'

'Enhanced Protection Mode' = Disabled 'Enhanced Protection Mode' = Enabled

'Enable Embedded Code Detection and


Heuristic Command-line Analysis for Certain
Applications' = Enabled

啟用 啟用

'Safe Mode' action = 'Allow Requests' 'Safe Mode' action = 'Block Requests'

啟用 啟用

'Monitor Contained Applications only' = 'Monitor Contained Applications only' =


Enabled Disabled

啟用 啟用

'Detect potentially unwanted applications' = 'Detect potentially unwanted applications'


Enabled = Enabled

即時掃描' - Enabled 即時掃描' - Enabled

Full Scan - 'Use cloud while scanning' - Full Scan - 'Use cloud while scanning' -
Disabled Disabled
將所選動作套用到與新增/修改的登錄項目相關無法識別的 Autorun 將所選動作套用到與新增/修改的登錄項目相關無法識別的 Autorun
項: ignored. 項: terminated and disabled.
Security Level 3

攔截並隔離所有惡意檔案

可疑和封鎖資料夾中的所有檔案都會被封鎖

包含所有未識別的檔案

記錄所有被遏制的檔案

啟用

Safe Mode action = 'Block Requests'

'Enhanced Protection Mode' = Disabled

'Enable Embedded Code Detection and


Heuristic Command-Line Analysis for
Certain Applications' = Enabled with all
applications selected

啟用

'Safe Mode' action = 'Block Requests'

啟用

'Monitor Contained Applications only' =


Disabled

啟用

'Detect potentially unwanted applications'


= Enabled

即時掃描' - Enabled

Full Scan - 'Use cloud while scanning' -


Enabled
將所選動作套用到與新增/修改的登錄項目相關無法識別的 Autorun
項: quarantined and disabled.

You might also like