7
Hi, I had a similar problem with these PHP files a while ago, i did some research on them and if I can remember correctly they are some kind of hijacking script to redirect to some russian search engine. The hackers probably used a php shell to upload the files into world writable directories, I had found the files in my xcgal albums directories which where writable.
Not sure what you can do about the 777 directories, i think XOOPS needs to have some directories writable for the modules and other features to work.
Michael Jackson = King Of Pop
Xoops = King Of CMS