check out:
WordPress › WP Security Scan « WordPress Plugins
BTW, GSXR rocks

i'm buying my first bike next month, Kawasaki 250R 2008, i just bought a shoei XR-1000 helmet yesterday
There are 2 standard procedures of securing your blog. Not using admin as a user (make another username as an administrator) and changing the name of wp-admin folder so that only you know it. In some bad codded plugins though there are hardcoded references to wp-admin, but you can automatically edit them with psPAD (mass find and replace in files).
Hope that it helped