is my test cloud pbx server hacked? *NEW FusionPBX user*

I'm trying to auto-provisioning a grandstream phone, extension 3001 is mine

extension 4559 and 100 and 4560 they are not mine. Does this mean my system is compromised? any immediate security tips

Screenshot 2019-04-01 17.01.03.png

By changing your SIP port on Internal Profile you'll block 100% of these automated attempt at your server. It won't block a targeted attack tho.
I've tried but somehow it doesn't work, even if I change the port on voip innovation and fusionpbx, all communications still use 5060.
but my next step after figure out how the auto-provisioning works will be to external profile or change the port on the internal profile.

Thanks for the advice