Today i checked up on my cpanel file manager, and found some files which MIGHT be of a serious nature. I have had added:
.smileys
.htaccess
.wysiwygPro_preview_eacf331f0ffc35d4b482f1d15a887d3b.php
to my web root, the last obscurely named one is a php file containing:
<?php
if ($_GET['randomId']...