In this video you see what I saw. A log file filling up with entries of a brute force attack trying to login to our Windows Remote Desktop from multiple countries. This is despite the fact we are using a non-standard port number.
Here is a link to a video created last year on how to change your default 3389 port in Windows • Remote Desktop Protocol - CHANGE 3389...