First change every password to your vBulletin and hosting account including the DB password.
While you have replaced files, there are potentially rouge files. I would start at running the Suspect File Versions under Diagnostics to identify any files that are not apart of your site OR rename your forum folder and recopy the files to a new forum folder from local or backup copies that were made prior to the infection.
The last and probably the most difficult is if the database has an injection. You would have to run queries in order to track down where the redirects are located.
|