He's using WordPress 3.2.1 which is the current stable release but regardless the theme he is using has the following malicious iframe being called in the top of the template:
Potentially the theme he downloaded always had that iframe or alternatively an attacker has gained access to his WordPress theme directory (or otherwise found a way to inject it). Luckily maintaining the security of a DreamHost shared Apache server (apache2-ogle.baghdad.dreamhost.com) is probably not necessary for an IT position. Additionally, it is possibly DreamHost's fault, as it has been in the past [1, 2].