Some sort of Malware. Yes.
You will need to run a malware scan, and remove files, and update infected files.
You can download individual files from the trunk here:
https://github.com/WordPress/WordPress
or download a zip and upload as required :
https://en-ca.wordpress.org/download/
or re-install WordPress :
How to install WordPress
Malcare is a good scanner:
https://www.malcare.com/
Not sure about WordFence.
Thread Starter
arsm
(@arsenalemusica)
I never did a wordpress reintall. Shall I do it from the update backend page?
Lol, forgot about that way.
Yes! It re-installs the core files :
https://kinsta.com/blog/reinstall-wordpress/#dashboard
However, I doubt it removes files on your server that should not be there.
Scan for malware first.
Remove the obvious files.
reInstall WordPress.
Scan again.
Thread Starter
arsm
(@arsenalemusica)
Yep, I tested and it didn’t delete the files. I deleted them using Wordfence. I really hope they were not generated by something else (I mean something created by the many servers’ “routines”)
Thanks for the tips
> I really hope they were not generated by something else
In my experience, these files are almost always generated from an action function that has been inserted in your files.
Have a visual run through your sitemap.xml file to see if there is anything wonky going on in your content.
Thread Starter
arsm
(@arsenalemusica)
š thanks for this new tip. Since my sitemap was empty, I’m now creating a new one