If you use FileZilla, or any other FTP program that stores a 'cache' of your last logged in sites, it's likely they used that info to get into your server. Happened to me a few times.
I've also seen some injects from free wordpress plugins that have big security holes. Always weary of using plugins I'm not familiar with -- or that don't have an active developer.
|