Windows 10: Standard user e-mail safety

Page 1 of 2 12 LastLast
  1.    02 Jun 2017 #1

    Standard user e-mail safety


    I volunteer at our senior citizen organization and we have a Win10 computer available for members and visitors. The other day I had to remove umpteen emails in the Mail app on the start screen by one person.
    In order to use the computer, they log in using a standard account. No one is allowed to create an administrator account.
    Although it isn't a fix, I uninstalled the Mail app from Start since most of the users aren't likely to find out how to get it back in Start or use it themselves.
    All users use their own email accounts: that one person had been using both the Mail app in Start along with her Google & Yahoo email accounts.
    Fortunately her attempts to download some software have failed since she is working from the standard account.
    The manager asked me whether or not the computer could get infected if someone opened a dangerous link in their email account or the Mail app: I responded it shouldn't happen since nothing should be able to download from a standard account: but I'll research it so we'll be comfortable on a realistic expectation. One of my concerns is that it could be possible but highly unlikely. So I'd appreciate your advice.
      My ComputersSystem Spec

  2.    02 Jun 2017 #2

    Hi, start by reckoning anything bad can happen. From disk failure to ransomware.

    1. Use disk imaging routinely (Macrium Reflect (free) + its boot disk + external storage for disk image sets).
    This means you can recover Windows, data partitions, disks...
    - if your PC is unbootable
    - if Windows is corrupt and cannot be 'fixed'
    - if someone downloads a virus/trojan/rootkit

    quite quickly and without technical help - without clean installing Windows.

    2. Use a decent antivirus program. (You can compare options using the AV comparatives site,
    AV-Comparatives Independent Tests of Anti-Virus Software - AV-Comparatives
    or simply run with Windows Defender).

    3. You can apply restrictions.
    - block access to programs. There are 3rd party programs that help here.
    How to Block (or Allow) Certain Applications for Users in Windows
    -stop people installing programs
    How to Block Users from Installing Software on Your Windows Computer
      My ComputerSystem Spec

  3.    02 Jun 2017 #3

    MeAndMyComputer said: View Post
    I volunteer at our senior citizen organization and we have a Win10 computer available for members and visitors. The other day I had to remove umpteen emails in the Mail app on the start screen by one person.
    In order to use the computer, they log in using a standard account. No one is allowed to create an administrator account.
    Although it isn't a fix, I uninstalled the Mail app from Start since most of the users aren't likely to find out how to get it back in Start or use it themselves.
    All users use their own email accounts: that one person had been using both the Mail app in Start along with her Google & Yahoo email accounts.
    Fortunately her attempts to download some software have failed since she is working from the standard account.
    The manager asked me whether or not the computer could get infected if someone opened a dangerous link in their email account or the Mail app: I responded it shouldn't happen since nothing should be able to download from a standard account: but I'll research it so we'll be comfortable on a realistic expectation. One of my concerns is that it could be possible but highly unlikely. So I'd appreciate your advice.
    Using a standard account as opposed to an admin account is the smart thing to do. However, that does not make you impervious to infections. So, the answer is, yes, if someone clicks on a malicious link in an email, damage could be done to the system (although it should be less damage than if you were in an admin account). Dalchina's recommendation of imaging is a must.
      My ComputerSystem Spec

  4.    02 Jun 2017 #4

    Thanks dalchina & simrick too.
    I'm a system image backup person who uses MRF on my computer and I will certainly submit that to the manager.
    --- Actually I've been wanting to do that all along: now that concerns are being brought up, maybe, just maybe it will finally ne approved.
    I wasn't aware of being able to apply restrictions and those are excellent recommendations: I can't wait to apply what I find out.
    EDIT: I do have a monthly security & maintenance plan I maintain to ensure the computer is safe & secure and well maintained. Actually that's how I found out what I mentioned in my opening post. But that's also the reason I want to have the computer in what I would describe as "stealth" mode.
      My ComputersSystem Spec

  5.    03 Jun 2017 #5

    It used to be possible to have a computer restart each day in the same state- that is all changes were discarded. (Comodo Time Machine and MS's Steady State if I recall). I'm not aware of a current product that does that, but that might be a good approach in principle. However, even if such were available, there may not be funds, and it might not be the best use.

    I experienced this in a Chinese English dept, where I needed a driver on the classroom PC, and found next class it wasn't there.. but that was some years ago.
      My ComputerSystem Spec

  6.    03 Jun 2017 #6

    dalchina said: View Post
    It used to be possible to have a computer restart each day in the same state- that is all changes were discarded..
    I think like that as well as your opening sentence in post #2
    Fortunately it's easy enough to keep the computer safe, secure & well maintained, not because I'm an expert, but because I stay on top of what's happening. Unfortunately having attempted to implement a system image & data backup system hadn't been approved but with this latest discovery it gives me clout to bring it back up. Thanks again for a good pointer.
      My ComputersSystem Spec

  7. Borg 386's Avatar
    Posts : 21,182
    Win 7 32, Win 7 64 Pro, Win 8.1 64 Pro, Win 10 64 Education Edition
       03 Jun 2017 #7

    Make them aware that a lot of scams nowadays involve getting E mails supposedly from Amazon (shipment cancelled, click on this link for details) or FedEx (Your package has been shipped, click here for details).

    I've gotten a few of these in the past month & a google search of the link addy shows the site to be hijacked/infected/dangerous.
      My ComputerSystem Spec

  8.    03 Jun 2017 #8

    - and what to look for that indicates it's NOT from them (similar but garbled email addresses, not using their name, spelling mistakes, asking for personal details....)

    Older people are more credulous - not used to scammers, liars and cheaters approaching them directly.

    (Yes, it used to be a different world... I know!)
      My ComputerSystem Spec

  9.    03 Jun 2017 #9

    Could a VPN be helpful in security purposes?
    If so I'll post in an appropriate forum for help and recommendations.
      My ComputersSystem Spec

  10. Kari's Avatar
    Posts : 14,750
    Windows 10 Pro
       03 Jun 2017 #10

    You could solve most of your issues simply by removing the standard account your users are using at the moment and creating a limited Guest account for them instead.



    Video from Ten Forums video thread.
      My ComputerSystem Spec


 
Page 1 of 2 12 LastLast

Related Threads
Is a standard user account really necessary for tight security for the home user or will a well secured administrator account be sufficient?
Solved shortcut w/admin privileges for standard user in User Accounts and Family Safety
Hello, I've just cleaned up a massive malware infection on my grandson's computer (HP Pavilion notebook) and upgraded it to Win 10 from its native Win 8. His account is a standard user vs admin. Everything's working fine. EXCEPT, he plays an...
should I use a standard user account? in User Accounts and Family Safety
Is it still recommended to do your daily tasks in a non-administrator user account, or is that obsolete advice in windows 8-10?
I like to run Windows 10 as a Standard User. I use Syncthing to sync my files from my PC to my laptop and another machine. I want to schedule syncthing so that it starts when I log on. However when creating a task, I get a message saying the user...
How to restrict standard user access to folders in User Accounts and Family Safety
On my secondary hard drive, I have some folders that I don't want standard users to see or access. How can I go about doing this? Thanks!
Our Sites
Site Links
About Us
Windows 10 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 10" and related materials are trademarks of Microsoft Corp.

© Designer Media Ltd
All times are GMT -5. The time now is 14:47.
Find Us