Range Extender passing malicious traffic?

Range Extender passing malicious traffic?

Range Extender passing malicious traffic?
Range Extender passing malicious traffic?
2 weeks ago
Model: TL-WA850RE  
Hardware Version:
Firmware Version:

I set up this extender yesterday and it appeared to be working fine with a laptop and a smart TV. However our PC (uses ESET Security) reported that a device on the network was passing malicious traffic. A warning message appeared at regular intervals of maybe 1 minute. Since this had never happened before I suspected the extender might be the cause, and switched it off, at which point the messages stopped.

Internet searches suggested this is a known phenomenon, and that I should change the default username and password. When I logged in this morning there was no sign of the usual default 'admin' + 'password' - only my email address and the secure password I'd entered.

This morning there have been no warning messages, but for the time being I'm keeping the extender switched off when not needed.

I'd be really grateful for any advice on further steps I can take.

Many thanks.

  0      
  0      
#1
Options
3 Reply
Re:Range Extender passing malicious traffic?
2 weeks ago

  I'm continuing to receive these warning messages when the extender is switched on. I'd really appreciate some help with this!

 

  0  
  0  
#2
Options
Re:Range Extender passing malicious traffic?
2 weeks ago

 Hi @DavidMW,

 

Could you provide a screenshot of the warning? If you connect the PC directly to the router's Wi-Fi, does the same happen?

Please let me know the operating system and model of the PC. Also, what is the model of the router?

  0  
  0  
#3
Options
Re:Range Extender passing malicious traffic?
2 weeks ago

Many thanks Joseph. Inevitably, the fault doesn't happen continually, and now I want it show up, so far it hasn't! I'm all set to get a screenshoot as soon as it does.

To answer your other queries in the meantime:

The PC (which is not an off-the-shelf model) is running Windows 10, and is already connected to the router via ethernet. The TP extender is of course picking up the WiFi transmission from the router.

The router is a Technicolor DGA0122NLK.
The main purpose of the extender is to enable us to use iPlayer etc on our TV at the far end of the house. It's very successful at this - more so than the Powerline Adaptor we were using previously, and which has just failed.

As mentioned I'm currently only switching on the extender when we need to use the TV on catch-up.

The security software is ESET Smart Security Premium and it's this which has been reporting the malicious traffic (which it has blocked).

These error messages only started appearing after the TP-Link extender had been installed so I naturally assumed this was the source of the problem. however it may turn out that it's not the cause.

I'll open discussion with ESET as well in case they can help.

If it does continue happening I'll send the screen shot as promised.

  0  
  0  
#4
Options