Two chapters of advice for ordinary computer users go well beyond the usual `watch out for phishing emails', covering aspects such as antivirus and patching.The following audiences are identified:- Incident response teams at financial institutions- Information security professionals and management- Executive management of any company whose brand might be spoofed- Everyone who uses the InternetPhis