Looking back step by step in how we got hacked, we are almost sure it was through an html comment. I have since this morning blocked html on my comments.
Thanks to everyone for the advice, and thanks to WPyogi for the link, i have read most of them and bookmarked the rest. Good stuff.
And about the theme, i always use the same theme and download it from wordpres.org to avoid any trouble.