So im looking at my Windows event logs and i can see under security that they are trying random usernames and passwords every 2 seconds.
Its coming from 2 different IP's, what have done is blocked the IP's in windows firewall and that seems to have sorted the issue.

Here are the IP's in question, can you guys see if the IP's are attacking you too?

Is this via RDP? Because im using a random uncommon port.
Its coming from 2 different IP's, what have done is blocked the IP's in windows firewall and that seems to have sorted the issue.

Here are the IP's in question, can you guys see if the IP's are attacking you too?

Is this via RDP? Because im using a random uncommon port.