is the keyboard/mouse operator.
In other words, learn what not to click on, and keep all your applications/OS updated.
For demand scanning, or resident if you choose, there are any number of excellent applications around, including conventional scanners, HIPS, behaviour blockers...
As important as doing the odd scan from time to time is having a firewall with outbound control, and a backup/recovery plan.