I found a backlink a few minutes ago, from the blog zilnice.ro (do not access the address):
The blog is virus, or at least so I think – daily
http://zilnice.ro/zilnice/blogul-este-virusat-sau… | IP[…] What I gave this post at Stealthsetts, I started to think about how dangerous these viruses are, and how good […]
I hope it is not a new type of virus/exploit for wordpress, because from what I saw, the blog daily.ro, is so serious that not Avast 4.8 Professional And neither Kaspersky 7, they did not allow me to access it. The virus is of another type, compared to what the blogosphere has had so far.
Infected files pe zilnice.ro :
– favicon.ico (Trojan-Downloader.JS.Iframe.nv) (by Kaspersky)
– I think through header.php or index.php, it has something like that, which launches/wears a frame.
– /wp-content/themes/zilnice/wp-content/images/images/bodybg.png (VBS:Malware-gen) (by Avast)
??? Has nothing in common with what I had here .

Compared to WordPress exploit, Trojan.Downloader.JS.Iframe.nv, also affects the PCs that access the site. If you have a blog and catch a trojan like this, it is very likely that it will reach your server, either through FTP, SSH or Dreamweaver programs, etc. Web editors.