Tips & Advice

Step-by-step guide to Password Protect a File or Folder in Windows

Avast Blog, 2 November 2018

Learn how easy it is to secure your files and folders with password protection and encryption.

In a perfect world, once you set up a Windows password, all is secure and safe, right? Unfortunately, that’s not the case. A Windows login password offers a very basic level of protection that mainly keeps your files safe from others who may share your computer.  But risks abound. Individuals with deeper knowledge into hacking a system can easily circumvent these simple security measures. Most versions of Windows don't include a way to password protect files and folders, so they must be encrypted, or a third-party password protection program used to keep folders in Windows 7, 8 and 10 safe from cybercrime.  If your laptop is stolen, for example, the thief can boot up your computer from a removable device to access your files. Or, they can simply remove the hard disk, install it in another computer, and immediately gain access to all of your files and personal data.

In this article, we’ll show you how to defend your data against prying eyes by employing some relatively simple features built for the Windows platform, as well as some more advanced measures to ensure next-level protection.

Why password protect files?

If you share your computer with others, there is always a chance of human error — the accidental deletion of an important document, the mistaken modification of a critical file, the accidental sharing of a private folder, etc. One way to deal with this is to add a password to each sensitive file you have, one-by-one. Sharing a computer becomes a worry-free situation after that. Yes, the requirement to enter a password every time you access that file may slow you down a bit, but the peace of mind is undoubtedly worth it. Just remember to always use strong passwords. In fact, click on over to the free Avast Random Password Generator whenever you need one, and instantly get a unique, near-uncrackable password you can use immediately.

Another way to deal with this is to use your Windows software to encrypt an entire folder.  This is an easy process to implement and to use. There are also third-party tools you can use for full encryption. In this article, we’re going to lay all the tools in front of you to secure your system with the strongest defenses.

Built-in folder encryption

Let’s start with the most straightforward way to encrypt your folders (and all the files within them) — Windows folder encryption. To encrypt a file or folder in Windows 7, 8, or 10, follow these steps:

  1. Navigate to the folder/file you want to encrypt.

  2. Right click on the item. Click Properties, then click the Advanced button.
    folder-encryption-1
  3. Check Encrypt contents to secure data.
    folder-encryption-2
  4. Click OK, then Apply.

  5. Windows then asks whether you wish to encrypt the file only, or its parent folder and all the files within it as well. We recommend you opt for full folder encryption, just to be on the safe side.

  6. Now, once you navigate to the encrypted folder, you will see a small yellow lock on the file icon. Also, when you add new content to that folder, it will automatically be encrypted too.
    folder-encryption-3

To be clear, Windows file encryption protects your files against anyone who gets their hands on your computer. The encryption is tied to your Windows account, so when you are logged in, the files decrypt on the fly by the operating system. However, if someone were to log in through another account, they would not be able to access files that were encrypted under your username.

Your files are accessible through your account, and if someone gets unauthorized access to your computer while it’s logged in, encryption is practically useless. This is why it is critical to create a strong login password in the first place.

Power users can also use this method by LaptopMag.com to password lock folders in Windows using a small piece of code.

Regular Windows encryption will only take you so far, however, as it’s fairly easy to circumvent. Someone need only log in with your account to access your content. Read on to find out how to keep your files safe should your account be hacked.

Simple password protection software

Unlike Windows’ own file encryption technology, third-party password protection bars access to content regardless of who is logged in. These tools offer more security than built-in Windows security features and are highly recommended for sensitive data.

Password protect folders in Windows 10

A content protection feature for Windows worth looking at is called Folder Lock. It’s fast, easy to use, and can password protect and encrypt files and folders at blazing speeds. The software uses Advanced Encryption Standard (AES) 256-bit keys to keep your data safe.

folder-lock-1

By default, Folder Lock uses a master password to control locked content. However, you can also create a “Locker” — a secured folder on the drive to segregate content topic. Each Locker can be assigned its own password and you can limit the amount of disk space it can take up.

Folder Lock comes with a powerful file shredder and a cloud-based backup solution, too. You can try a demo for free. The full-version is $39.95.

Password protect folders in Windows 7 & 8

Another lightweight utility is LocK-A-FoLder. Unlike Folder Lock, LocK-A-FoLder only works for Windows XP, Vista, and 7. The interface is extremely simple to use. After installation, the tool will ask you to create a master password to manage all your locked content. All locked folders will no longer be visible on the drive until you unlock them. LocK-A-FoLder is free and is the least resource-hungry folder locker out there, making it an ideal solution for older computers.

lock-a-folder-password-protection-1

Finally, passwords are almost always the weakest link in a security chain. A password strength checker can be of great use here. Online tools like The Password Meter and my1login are great tools to use here.

While strong password protection will be enough for most users, if you have sensitive data, then more advanced methods such as third-party encryption tools can be used to safeguard data.

Full encryption software to secure files and folders

Beyond regular password protection, you can also use disk-encryption software that offers more robust security measures. These tools can block even the most advanced cold-boot and brute-force attacks, which try to crack passwords and encryption keys using different combinations.

7-Zip

This free, open source software can be used on any computer, and virtually any Windows system. It is essentially a file archiver that uses high compression and strong AES-256 encryption. Your files are protected by being compressed and encrypted, so when you go to access them yourself, you simply need to decompress the file first. Yes, again it’s an extra step, but a tiny price to pay for high security. To secure your data with 7-Zip, follow these steps:

  1. Download the latest version of 7-Zip. Run the installation program.

  2. In your Windows directory, select 7-Zip File Manager.

7-zip-file-encryption-1

3. From the 7-Zip control panel, select the file or folder you would like to protect, and click the Add button. 

7-zip-file-encryption-2
4. Choose your compression options (see image below).  A - Type in the name you would like the encrypted file to be named.  B - Under Encryption section, set a strong password to use for encrypting/unencrypting.  C- We recommend setting your compression level to HIGH and your compression method to AES-256. D - Click OK.

7-zip-aes-256-encryption-3

Your file/folder is now compressed, encrypted, and protected. Decompressing that file/folder is just as simple:

  1. From the 7-Zip control panel, select the file or folder you’d like to open.

  2. Click the Extract button.
how-to-extract-7-zip-encrypted-files-4
3. In the dialogue box, enter the password. Then click OK.

4. Your file/folder will decompress and open for you.


VeraCrypt

With support for AES, Serpent, and TwoFish keys, VeraCrypt is a free, cross-platform data security tool that can encrypt your files any way you require. VeraCrypt comes with full disk encryption but can encrypt at the volume level as well. Users can decide whether they want specific folders encrypted or entire systems. At first glance, VeraCrypt can seem intimidating, as the UI is not the most user-friendly, but it’s actually quite simple once you get the hang of it. The software works something like the Daemon tools that can create a virtual CD drive on your computer.

Download the setup file for Windows and install the software, then follow these instructions:


  1. To start, you will need to create a volume — essentially an encrypted folder where your data will go. Click on Create Volume.
how-to-encrypt-folder-veracrypt-1

  1. Select Create an encrypted file container and click Next.
how-to-encrypt-folder-veracrypt-2

VeraCrypt gives you the option to create a normal, visible container or an invisible one. For our example, we’re choosing Standard VeraCrypt volume, but feel free to select whichever one is best for you.
how-to-encrypt-folder-veracrypt-3

  1. Click Select File and navigate to where you want to store your encrypted container. Click Save.
how-to-encrypt-folder-veracrypt-4

  1. The next section essentially asks what encryption method you want to use. Again, we suggest AES-256, the strongest encryption used today. Then click Next.
how-to-encrypt-folder-veracrypt-5

  1. Assign how much space you wish the encrypted folder to have.
how-to-encrypt-folder-veracrypt-6

  1. Finally, enter the password you wish to use for your volume and click Next. Make sure it’s strong!
how-to-encrypt-folder-veracrypt-7

VeraCrypt is now ready to create your container. Remarkably, the tool can use random mouse movements to create your encryption key and to encrypt the folder. Feel free to move your mouse around a lot because that makes the encryption key stronger — do this until the bar at the bottom reaches the end. Then click Format.

how-to-encrypt-folder-veracrypt-8

Your first encrypted volume should now be sitting in its designated folder.

To add content to the container, follow these steps:

  1. To mount your volume, choose a drive number from any one of the drives available on the VeraCrypt home screen.

  1. Click on any one of the letters in your highlighted volume name, click Select File, and navigate to the folder where you saved your encrypted container.
how-to-encrypt-folder-veracrypt-9

  1. Click Open to select the volume.
how-to-encrypt-folder-veracrypt-10

  1. Next click Mount to mount the volume to the selected drive. Enter your password and click OK. Your container is ready.
how-to-encrypt-folder-veracrypt-11

Double-click on the mounted drive to open another window of the container. You should also see the container in This PC along with your other drives.

how-to-encrypt-folder-veracrypt-12

Now, copy the content to your new encrypted “drive,” click dismount to close the folder, and encrypt it again.

Managing files and passwords

You now know what it takes to password protect and encrypt your files and folders in Windows. However, as we have established, it all boils down to keeping your passwords safe and having good security habits in place.

Backup, backup, backup

Consider what might happen if you lost your master password, or if your encryption software got corrupted, or if the files themselves got lost. Backing up your data regularly and using a password manager can help you ensure you are never caught unawares.

Some of the utilities mentioned above such as Folder Lock come with their own cloud-based data backup solutions. However, you can always use Microsoft’s OneDrive or the free Google Drive as well.

Create strong passwords

Of course the biggest problem with passwords is remembering them. In fact, it’s often because of the sheer number of passwords we need to manage that we opt to go with simple words or use the same password over and over again. Check out how to create strong passwords for the lowdown on how to protect your device(s) against hackers.

Avast also offers a powerful password management solution (available for Windows, Android, macOS, and iOS) that makes it easy to control passwords across all your platforms from just one location. Avast automatically enters the login details to all the websites with which you have accounts. Try it out, it’s free!

Download Avast Free Antivirus with Avast Passwords