Phones with preconfigured extensions starting with CC
Posted: Thu Mar 06, 2014 4:44 pm
Hello all,
I'm new to Vicidial and Asterisk and I've been tasked by my client to figure out what is going on. Long story short, we have Flowroute and he thinks someone is siphoning off minutes/credit from our Flowroute account as we are pretty modest with call time but we'll see sudden $6-7 dips in usage.
From what I gather in Flowroute is that on a certain date we used 600+ minutes, but in Vicidial's admin GUI I go to reports it shows our agents have used 0 minutes.
In Flowroute if I download the call log, every call on every day looks like it originates from the IP address our Vicidial server. On days that I know we make calls, I see our outbound caller ID as our office number and a random distribution of phone numbers our sales agent is calling. What is strange is that on "spike days" our calls have a caller ID of 0000000000 and it seems to be robo-dialing a set of numbers in one US area code. In other words, calls are originating from our Vicidial install but aren't tied to any of our active admins or agents and their extensions.
What throws me off a bit is that under Admin > phone listings we have a number of what appear to be preconfigured SIP and IAX2 extensions with extensions like cc105 and cc300. Are these worth disabling? I feel like they're preconfigured for a reason which I'm not wholly aware of because I'm not an Asterisk admin. My client also says he erased a few extension/accounts from previous sales agents - do you all think that might be a source into the system?
I'm competent to give you any information you need but telephony is not my expertise.
I'm really here for damage control... he hired a lot of people from odesk and other services to set up his small business infrastructure and we're working through their incompetence and finding hidden backdoor access these people have programmed in to other parts of our setup. It has been a nightmare.
I'm new to Vicidial and Asterisk and I've been tasked by my client to figure out what is going on. Long story short, we have Flowroute and he thinks someone is siphoning off minutes/credit from our Flowroute account as we are pretty modest with call time but we'll see sudden $6-7 dips in usage.
From what I gather in Flowroute is that on a certain date we used 600+ minutes, but in Vicidial's admin GUI I go to reports it shows our agents have used 0 minutes.
In Flowroute if I download the call log, every call on every day looks like it originates from the IP address our Vicidial server. On days that I know we make calls, I see our outbound caller ID as our office number and a random distribution of phone numbers our sales agent is calling. What is strange is that on "spike days" our calls have a caller ID of 0000000000 and it seems to be robo-dialing a set of numbers in one US area code. In other words, calls are originating from our Vicidial install but aren't tied to any of our active admins or agents and their extensions.
What throws me off a bit is that under Admin > phone listings we have a number of what appear to be preconfigured SIP and IAX2 extensions with extensions like cc105 and cc300. Are these worth disabling? I feel like they're preconfigured for a reason which I'm not wholly aware of because I'm not an Asterisk admin. My client also says he erased a few extension/accounts from previous sales agents - do you all think that might be a source into the system?
I'm competent to give you any information you need but telephony is not my expertise.
I'm really here for damage control... he hired a lot of people from odesk and other services to set up his small business infrastructure and we're working through their incompetence and finding hidden backdoor access these people have programmed in to other parts of our setup. It has been a nightmare.