The term ¡°JavaScript Maleware¡± was coined by J. Grossmann in 2006. It describes script-code that is embedded in webpages to stealthy use the web browser as vehicle for attacks on the victims intranet. In this paper we exemplify capabilities of such scripts and propose first defensive approaches.