I have a totally new CMS and loaded the db into it for both sites.
Had to copy a couple of snippets/plugins/modules which I checked for any infected .php files.
There where about 70 index.php!! files spread onto the cms, a blog.php and a list.php file which with hack code.
Needed a big cleanup and updated version (1.0.8)
[ed. note: fourroses666 last edited this post 13 years, 8 months ago.]
Evolution user, I like the back-end speed and simplicity

I have the same issue. The site has been hacked twice. The first time I cleared all files installed a fresh version 1.0.8 cleared the users from the DB and readded and two weeks later it was hacked again. Do you think if I reistall again from scratch and disable Forgot Manager Login. it would prevent it ?
The site only has one users so it's hardly likey they would forget their password.
I have set Forgotmanager plugin off just to be sure, never use admin again as login account, there where infected .php files lower as the public_html map.
I think you might have missed a file.
Evolution user, I like the back-end speed and simplicity
