"Your trusted applications should just connect to their home servers, so nothing unexpected should arrive from those domains."
^
This is an assumption, will happen most of the time, will hopefully happen all of the time.
Do not disable your antivirus or firewall when connected to the internet. Any data your receive (ie project files via USB sticks) need to be virus scanned as well. If you are updating software it's best to run windows update (so software dependencies are kept up to date) and keep your virus scanner up to date.
If you are going entirely offline then don't install any patches or software ever, otherwise there is no point to it. If you are connected to the internet even periodically and briefly obviously you need protection. Similar when installing software or receiving data such as files from people.
IMHO easier to just disable your network adapter when you record if you just have performance issues and optimize your system, and configure Windows update for business, there should be no issue and everything should work absolutely fine.
Oh and have a backup strategy.