Ask your host to check the access/ftp logs for around the time of the hack to see what exactly went down. You are running a very old version which has several known security issue. I think it would help to upgrade your forum to the latest version of the 3.8x series.
We've checked the logs and didn't see anything related to the files. We have plans to upgrade to the latest version this weekend... hopefully that will help
--------------- Added [DATE]1314984001[/DATE] at [TIME]1314984001[/TIME] ---------------
Quote:
Originally Posted by Eric
Ineed, if you are able to, upgrade to vB 3.8.7 - other than that, check the permissions on your clientscript folder - do you allow files to be written in /clientscript/vbulletin_css/ ?
It is indeed open with 777 access. what should the vbulletin_css folder permissions be?
--------------- Added [DATE]1314984225[/DATE] at [TIME]1314984225[/TIME] ---------------
Quote:
Originally Posted by TheLastSuperman
I know on one occasion, a client of mine was hacked... come to find out a plugin was created w/o them knowing so check your files for any changes via timestamps and also check your plugins, ensure that there are no spare "iffy" plugins active .
The other admin handles the plugins and we may have a few that may be suspect... I'll have to check them out. Thanks