On 06/03/13 10:05, Andy Smith wrote:
I suspect that it is unrelated to the actual
compromise, being more
of a "this is something you can put in someone's web site to turn it
into a stealthy porn redirector" tool, so yes maybe the actual
compromise is not in Wordpress.
This does beg the question, how can you be happy that your machine isn't
still compromised.
Haven't looked into what people use these days for IDS but I probably
should.
n