In September 2009 many WordPress sites were attacked with some extremely malicious code.
This plugin checks for excessively long request strings, as well as the presence of either eval or base64 in the request URI. These requests were implicated in the September 2009 WordPress attacks.
To protect your site download this plugin and activate it. Once active, this plugin will silently and effectively close any connections based on these injection-type attacks.
AWD Malicious URL Request Blocker