<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Removing Malware from a WordPress blog &#8211; Case Study</title>
	<atom:link href="http://blog.sucuri.net/2010/02/removing-malware-from-a-wordpress-blog-case-study.html/feed" rel="self" type="application/rss+xml" />
	<link>http://blog.sucuri.net/2010/02/removing-malware-from-a-wordpress-blog-case-study.html</link>
	<description>Protect Your Interwebs</description>
	<lastBuildDate>Tue, 07 Feb 2012 14:40:59 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
	<item>
		<title>By: How to protect your blog from viruses, backdoor Trojans and other nasty stuff — NevilleHobson.com</title>
		<link>http://blog.sucuri.net/2010/02/removing-malware-from-a-wordpress-blog-case-study.html/comment-page-1#comment-2353</link>
		<dc:creator>How to protect your blog from viruses, backdoor Trojans and other nasty stuff — NevilleHobson.com</dc:creator>
		<pubDate>Mon, 31 Jan 2011 09:01:28 +0000</pubDate>
		<guid isPermaLink="false">http://blog.sucuri.net/?p=66#comment-2353</guid>
		<description>[...] Removing Malware from a WordPress blog – Case Study [...]</description>
		<content:encoded><![CDATA[<p>[...] Removing Malware from a WordPress blog – Case Study [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Mandatory Security Update: WordPress 3.0.4 &#124; Blogging News, WordPress News, Social Media News from WordCast</title>
		<link>http://blog.sucuri.net/2010/02/removing-malware-from-a-wordpress-blog-case-study.html/comment-page-1#comment-2327</link>
		<dc:creator>Mandatory Security Update: WordPress 3.0.4 &#124; Blogging News, WordPress News, Social Media News from WordCast</dc:creator>
		<pubDate>Thu, 30 Dec 2010 01:52:39 +0000</pubDate>
		<guid isPermaLink="false">http://blog.sucuri.net/?p=66#comment-2327</guid>
		<description>[...] Removing Malware from a WordPress blog – Case Study &#124; Sucuri [...]</description>
		<content:encoded><![CDATA[<p>[...] Removing Malware from a WordPress blog – Case Study | Sucuri [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Wordpress &#8211; Questo sito potrebbe arrecare danni al tuo computer.</title>
		<link>http://blog.sucuri.net/2010/02/removing-malware-from-a-wordpress-blog-case-study.html/comment-page-1#comment-2314</link>
		<dc:creator>Wordpress &#8211; Questo sito potrebbe arrecare danni al tuo computer.</dc:creator>
		<pubDate>Thu, 16 Dec 2010 15:53:42 +0000</pubDate>
		<guid isPermaLink="false">http://blog.sucuri.net/?p=66#comment-2314</guid>
		<description>[...] ad un articolo (in lingua inglese) dove viene spiegato nel dettaglio COME risolvere il problema: Scuri.net   Questa voce è stata pubblicata in Articoli. Contrassegna il permalink.    &#8592; Cos&#8217;è il [...]</description>
		<content:encoded><![CDATA[<p>[...] ad un articolo (in lingua inglese) dove viene spiegato nel dettaglio COME risolvere il problema: Scuri.net   Questa voce è stata pubblicata in Articoli. Contrassegna il permalink.    &larr; Cos&#8217;è il [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: hot celebrities</title>
		<link>http://blog.sucuri.net/2010/02/removing-malware-from-a-wordpress-blog-case-study.html/comment-page-1#comment-2066</link>
		<dc:creator>hot celebrities</dc:creator>
		<pubDate>Wed, 15 Sep 2010 13:03:16 +0000</pubDate>
		<guid isPermaLink="false">http://blog.sucuri.net/?p=66#comment-2066</guid>
		<description>Very Help ful article, please keep up your work because its keep me updated. </description>
		<content:encoded><![CDATA[<p>Very Help ful article, please keep up your work because its keep me updated.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Keep your blog from being hacked. &#124; DonnellDesign Blog</title>
		<link>http://blog.sucuri.net/2010/02/removing-malware-from-a-wordpress-blog-case-study.html/comment-page-1#comment-2025</link>
		<dc:creator>Keep your blog from being hacked. &#124; DonnellDesign Blog</dc:creator>
		<pubDate>Fri, 03 Sep 2010 22:35:49 +0000</pubDate>
		<guid isPermaLink="false">http://blog.sucuri.net/?p=66#comment-2025</guid>
		<description>[...] Removing Malware &#8211; Case Study [...]</description>
		<content:encoded><![CDATA[<p>[...] Removing Malware &#8211; Case Study [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Anil Kumar Panigrahi</title>
		<link>http://blog.sucuri.net/2010/02/removing-malware-from-a-wordpress-blog-case-study.html/comment-page-1#comment-1574</link>
		<dc:creator>Anil Kumar Panigrahi</dc:creator>
		<pubDate>Mon, 19 Jul 2010 04:17:29 +0000</pubDate>
		<guid isPermaLink="false">http://blog.sucuri.net/?p=66#comment-1574</guid>
		<description>Hi, 
 
Very Nice article which is help me a lot. 
 
Thank you. 
 
 
My recent post &lt;a href=&quot;http://www.anil2u.info/2010/07/13/work-with-svn/&quot; target=&quot;_blank&quot;&gt;Work with SVN&lt;/a&gt; </description>
		<content:encoded><![CDATA[<p>Hi, </p>
<p>Very Nice article which is help me a lot. </p>
<p>Thank you. </p>
<p>My recent post <a href="http://www.anil2u.info/2010/07/13/work-with-svn/" target="_blank">Work with SVN</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: dremeda</title>
		<link>http://blog.sucuri.net/2010/02/removing-malware-from-a-wordpress-blog-case-study.html/comment-page-1#comment-1200</link>
		<dc:creator>dremeda</dc:creator>
		<pubDate>Tue, 29 Jun 2010 14:09:56 +0000</pubDate>
		<guid isPermaLink="false">http://blog.sucuri.net/?p=66#comment-1200</guid>
		<description>Chris, no problem and we can appreciate the concern, thank you for bringing up the subject. You can report this to your antivirus provider as a false positive if it alerts you again.   
    
Can you talk a bit to what problems you&#039;re encountering on your site? Feel free to contact us off the blog if you&#039;d prefer: support@sucuri.net    
    
Dre  </description>
		<content:encoded><![CDATA[<p>Chris, no problem and we can appreciate the concern, thank you for bringing up the subject. You can report this to your antivirus provider as a false positive if it alerts you again.   </p>
<p>Can you talk a bit to what problems you&#039;re encountering on your site? Feel free to contact us off the blog if you&#039;d prefer: <a href="mailto:support@sucuri.net">support@sucuri.net</a>    </p>
<p>Dre</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Chris</title>
		<link>http://blog.sucuri.net/2010/02/removing-malware-from-a-wordpress-blog-case-study.html/comment-page-1#comment-1199</link>
		<dc:creator>Chris</dc:creator>
		<pubDate>Tue, 29 Jun 2010 14:05:36 +0000</pubDate>
		<guid isPermaLink="false">http://blog.sucuri.net/?p=66#comment-1199</guid>
		<description>Thanks for the reply. Please excuse my ignorance--I suck at anything related to computers. At least the AV thing is working good. :) Please feel free to remove these messages if you find that to be appropriate.  
 
Now, about my site... </description>
		<content:encoded><![CDATA[<p>Thanks for the reply. Please excuse my ignorance&#8211;I suck at anything related to computers. At least the AV thing is working good. <img src='http://blog.sucuri.net/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  Please feel free to remove these messages if you find that to be appropriate.  </p>
<p>Now, about my site&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: dremeda</title>
		<link>http://blog.sucuri.net/2010/02/removing-malware-from-a-wordpress-blog-case-study.html/comment-page-1#comment-1194</link>
		<dc:creator>dremeda</dc:creator>
		<pubDate>Tue, 29 Jun 2010 13:38:57 +0000</pubDate>
		<guid isPermaLink="false">http://blog.sucuri.net/?p=66#comment-1194</guid>
		<description>Thanks for the comment Chris. The warning you&#039;re receiving is a false positive. 
 
When we write a post we typically include a sample of what the malicious code may look like (merely showing people what attacked them) just like in the analysis above.  
 
Dre 
 </description>
		<content:encoded><![CDATA[<p>Thanks for the comment Chris. The warning you&#039;re receiving is a false positive. </p>
<p>When we write a post we typically include a sample of what the malicious code may look like (merely showing people what attacked them) just like in the analysis above.  </p>
<p>Dre</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Chris</title>
		<link>http://blog.sucuri.net/2010/02/removing-malware-from-a-wordpress-blog-case-study.html/comment-page-1#comment-1192</link>
		<dc:creator>Chris</dc:creator>
		<pubDate>Tue, 29 Jun 2010 13:27:40 +0000</pubDate>
		<guid isPermaLink="false">http://blog.sucuri.net/?p=66#comment-1192</guid>
		<description>I stumbled onto this site in my search to find help fixing my wordpress based site. I&#039;m not trying to bash you here in your comments section, but I have to be honest and say that it makes me very nervous for my computer&#039;s safety, and perhaps even more so to do business with you because when I arrived at this particular page, my Avast AV security pops up for the first time ever since I&#039;ve had it (got it in the last 2 weeks or so), and says out loud, &quot;Threat has been detected&quot;. 
 
It opens a small notification window that reads: 
&quot;TROJAN HORSE BLOCKED&quot; 
avast! Web Shield has blocked a threat. 
No further action is required.  
Object: &lt;a href=&quot;http://blog.sucuri.net/2010/02/georgia-government-sites-hacked-and-spreading-malware.html&quot; rel=&quot;nofollow&quot;&gt;http://blog.sucuri.net/2010/02/georgia-government...&lt;/a&gt; 
Infection:PHP:Small-F{Trj} 
Action: Connection Aborted 
The threat was detected and blocked while downloading an item from the web.  
 
Yikes! What is up with this? 
 
What to do about my site? Ugh... </description>
		<content:encoded><![CDATA[<p>I stumbled onto this site in my search to find help fixing my wordpress based site. I&#039;m not trying to bash you here in your comments section, but I have to be honest and say that it makes me very nervous for my computer&#039;s safety, and perhaps even more so to do business with you because when I arrived at this particular page, my Avast AV security pops up for the first time ever since I&#039;ve had it (got it in the last 2 weeks or so), and says out loud, &quot;Threat has been detected&quot;. </p>
<p>It opens a small notification window that reads:<br />
&quot;TROJAN HORSE BLOCKED&quot;<br />
avast! Web Shield has blocked a threat.<br />
No further action is required.<br />
Object: <a href="http://blog.sucuri.net/2010/02/georgia-government-sites-hacked-and-spreading-malware.html" rel="nofollow">http://blog.sucuri.net/2010/02/georgia-government&#8230;</a><br />
Infection:PHP:Small-F{Trj}<br />
Action: Connection Aborted<br />
The threat was detected and blocked while downloading an item from the web.  </p>
<p>Yikes! What is up with this? </p>
<p>What to do about my site? Ugh&#8230;</p>
]]></content:encoded>
	</item>
</channel>
</rss>

