Luka said:
Hehe, still possible if you are carefull enough, just that's it's safer no
to visit sites like these and all those "underground" and/or forbidden ones
and such..

)))
i've been using computers since 1986 and only encountered a couple of
pieces of true malware accidently. one was a macro virus emailed from
some idiot on AOL (failed). another was a malicious javascript in a
banner ad that tried to put the Rameh downloader on my machine (failed
also).
i have run into plenty of spyware, but much of that was not coming in
via IE but was probably bound to shady freeware. often spyware isn't
very malicious anyway and comes from real companies with real programmers.
so long as you patch your OS and apps, you are often safe. for the
paranoid, add a hardware and software FW, harden IE or use Mozilla,
disable unneeded services, use HIPS (host intrusion prevention system),
harden the OS, add hosts file, etc. there are lot of basic books on
security that cover this e.g. Hack Proofing Your Network, Hacking
Exposed, or maybe even Wang's or Meinel's books.
i've always thought it's easy to block a generalized attack such as
malicious banner ads or trojans. however, a specific attack such as
angry IRC user may be harder to fend off, particularly if you run
servers. a dedicated attacker may wait weeks or months for the proper
exploit to surface.
michael