4
That's the module Xoopspoll and in comes with XOOPS 2.0.13.
You installed/activated the module probably yourself and gave permissions to users. If you're not the only one with admin rights someone else might have installed it too.
But...it doesn't look like your website has been hacked.