There is an issue here: http://dnscheck.pingdom.com/?domain=triadig.oagroups.org%2F×tamp=1396631371&view=1
Potential suspicious file flagged by Quttera’s: /wp-content/plugins/fckeditor-for-wordpress-plugin/ckeditor/ckeditor.js?ver=3.5.1
Severity: Potentially Suspicious
Reason: Detected procedure that is commonly used in suspicious activity.
Details: Too low entropy detected in string [[‘<a id=“cke_elementspath_undefined_18446744073709551615” href="javascript:void('_cke_real_element_ty’]] of length 177590 which may point to obfuscation or shellcode. *
Threat dump: View code - http://fetch.scritch.org/%2Bfetch/?url=http%3A%2F%2Felpaso.oagroups.org%2F&useragent=Fetch+useragent&accept_encoding=
Threat dump MD5: CA7EA1A52E036B0B7E65C3D630548131
File size[byte]: 268039
File type: ASCII
MD5: 0EB8C0D4FF340B1BDD7FA209D6121A05
Scan duration[sec]: 73.920000
Malicious script detected: htxp://abtt.tv/modules/mod_servises/ua.js script Malicious - cannot connect Can’t fetch file pointed by your url.
→ http://sucuri.net/malware/malware-entry-mwblacklisted35
avast flags JS:Includer-ANC[Trj] on site * → http://sitecheck.sucuri.net/scanner/?scan=http%3A%2F%2Felpaso.oagroups.org%2F
Reason for infection outdated CMS, that is outdate - WordPress version: WordPress 3.5.1
Wordpress version from source: 3.5.1
Wordpress Version 3.5 based on: htxp://elpaso.oagroups.org//wp-admin/js/common.js
WordPress theme: htxp://elpaso.oagroups.org/wp-content/themes/twentyten/
WordPress version outdated: Upgrade required.
polonus