Hello all,
I'm quite sure you've read this question a lot (and I'll be searching your forums for the answers you have already given...), but I'm in need of some help.
My website has been hacked, and some files injected which redirect to a phishing website. This has caused me a ton of potential legal problems, which I would like to prevent for the future

The ISP hosting the domain told me they see no "weird" activity (they did not define weird) so it's probably a problem with my scripts.
My website hosts only a xoops installation (object oriented cms), and I'd like to test it to verify how safe it is.
Can you give me some pointers to the attack methods or anything that might help me?
I would appreciate it.
Thank you in advance!
Calimar