Oh forgot to say you can find the code in any PHP files, plugins, cs’s, directories etc. or if you have .htaccess look at the string. If you access your WordPress admin you can install exploit scanner http://wordpress.org/plugins/exploit-scanner/. That plugin will scan the malware strings
Yes I checked your site with http://sucuri.net/ its clean but it doesn’t mean that your website is free to malware. Yes website has a black hole exploit kit. First step scan your computer if your desktop has a malware. 2nd secure your FTP and change your password. and 3rd look at your php files and search for “base64_decode” or “eval” the code longer pretty then removes that code.
I tried to scan your website again and its clean now.
Hello CraigStyle,
We like to help you but we need the url of your website
Thanks
Joel