Someone mentioned in an early response about using "consumer grade" equipment. Am I to assume replacing the TP Link router with an ASA or SSG would help? What about the cable modem? Is there a more "robust" replacement?
It will help in terms of getting rid of the gaping security hole that a lot of consumer garbage can be. Which it sounds like, from your port scan results, is the case.
However, you need to be of sufficient skill to set them up, which might be a challenge. I would say a CheckPoint, or probably a SonicWall would be the best choice for you given their web interface is more "friendly" for somebody who doesn't know Cisco or Juniper.
Your cable modem, assuming it is just acting like a bridge/media converter (it doesn't do NAT or anything) should be fine.
Currently, I am back to Windows Defender, MBAM 3.0, and Spyshelter anti-key logger.
Would adding Checkpoint or SonicWall to the above be overkill (with apologies to our knowledgeable friend from Ontario)?
No, they serve entirely different purposes. The hardware firewall is a network perimeter device, whilst what you have running on your PC only extends to your network card, not further. Also, I would ditch Defender and go to NOD32.