Tip:
Run your browser as a different restricted user than the one you work on. (i.e. if you work on user John, run your browser as user JohnBrowser) Make sure that JohnBrowser cannot execute any files and malware should be pretty well crippled. JohnBrowser should only be allowed to read/write from/to the necessary temporary internet files.

- Xierox