You would be amazed what restricting use of the temp directory will do for ya. It was a measure that i used to prevent crypto locker and it has proved effective for alot more
Dilly_Dawes: exactly, that's how it all works now. But i recommend malware bytes mostly because I've found it does the best job - better than any AV. It's the only "AV" the state police