OK today he finally got a hold of my user account since he can only log as a user but cant can to control panel since we have a second password to it .
also he did same thing in our second site .
he post in our staff area that he using a sql injection i am in the process of remove same hacks install in both sites to see if that help.
server login was change ,ftp login was change basically all password was change and i ban ip 127.0.0.1 now will re upload all vb files again .
anything i forgetting ?
|