UAC has helped a lot - especially the shim functionality of having .ini and .dll be installed in a user's "program files" directory.   What has turned out the be a real pain is that firefox (update.exe) and other application I trust need elevated privaleges on a frequent basis.  I have to run to everyone box to allow the update to happen.  Is there a way to automatically grant certain apps to install (auto-elevate) as admin?

I know, I know, I hear the criticism - but If I blindly let the update happen anyway for some apps, I rather the user standard user just handle it.  Then when they get their apps UAC compliant, then we'll all be happy.  Till then.....