WordPress plugin can be exploited to run PHP commands on the server by posting a comment that contains a malicious payload.
Tucked inside Windows is a handy malware-removal tool that keeps working in the background and proves surprisingly useful ...