What is this all about? Viewing my Sign On Activity from the Microsoft Account Security tab, I see an endless list of Unsuccessful sign-in attempts mostly from China)!
Intel(R) Core(TM) i7-4770K CPU @ 3.50GHz (4th Gen?)
Motherboard
ASUS ROG Maximus VI Formula
Memory
32.0 GB of I forget and the box is in storage.
Graphics Card(s)
Gigabyte nVidia GeForce GTX 1660 Super OC 6GB
Sound Card
Onboard
Monitor(s) Displays
5 x LG 25MS500-B - 1 x 24MK430H-B - 1 x Wacom Pro 22" Tablet
Screen Resolution
All over the place
Hard Drives
Too many to list.
OS on Samsung 1TB 870 QVO SATA
PSU
Silverstone 1500
Case
NZXT Phantom 820 Full-Tower Case
Cooling
Noctua NH-D15 Elite Class Dual Tower CPU Cooler / 6 x EziDIY 120mm / 2 x Corsair 140mm somethings / 1 x 140mm Thermaltake something / 2 x 200mm Corsair.
Intel(R) Core(TM) i7-4770K CPU @ 3.50GHz (4th Gen?)
Motherboard
ASUS ROG Maximus VI Formula
Memory
32.0 GB of I forget and the box is in storage.
Graphics Card(s)
Gigabyte nVidia GeForce GTX 1660 Super OC 6GB
Sound Card
Onboard
Monitor(s) Displays
5 x LG 25MS500-B - 1 x 24MK430H-B - 1 x Wacom Pro 22" Tablet
Screen Resolution
All over the place
Hard Drives
Too many to list.
OS on Samsung 1TB 870 QVO SATA
PSU
Silverstone 1500
Case
NZXT Phantom 820 Full-Tower Case
Cooling
Noctua NH-D15 Elite Class Dual Tower CPU Cooler / 6 x EziDIY 120mm / 2 x Corsair 140mm somethings / 1 x 140mm Thermaltake something / 2 x 200mm Corsair.
Intel(R) Core(TM) i7-4770K CPU @ 3.50GHz (4th Gen?)
Motherboard
ASUS ROG Maximus VI Formula
Memory
32.0 GB of I forget and the box is in storage.
Graphics Card(s)
Gigabyte nVidia GeForce GTX 1660 Super OC 6GB
Sound Card
Onboard
Monitor(s) Displays
5 x LG 25MS500-B - 1 x 24MK430H-B - 1 x Wacom Pro 22" Tablet
Screen Resolution
All over the place
Hard Drives
Too many to list.
OS on Samsung 1TB 870 QVO SATA
PSU
Silverstone 1500
Case
NZXT Phantom 820 Full-Tower Case
Cooling
Noctua NH-D15 Elite Class Dual Tower CPU Cooler / 6 x EziDIY 120mm / 2 x Corsair 140mm somethings / 1 x 140mm Thermaltake something / 2 x 200mm Corsair.
Many services such as Onedrive have a well defined endpoints for authentication. From a user perspective that is the web portal https://onedrive.live.com as well as programmatic endpoints for APIs and integration. There are countless data breaches happening almost everyday with some bigger named ones that show up in the news and plenty more that do not.
Often these breaches result in large datasets of user data and these are sold on darkweb forums with some cybercrime groups specializing in what's known as IAB (Initial access brokers) where they will collect these datasets and then test them against all sorts of SaaS applications and other services. When they find valid credentials to services they will sell these on mentioned dark web marketplaces.
There are also malicious scanning endpoints that will just scan and test credentials which may include these stolen data sets and this happens 24x7x365.
TLDR
Your email was likely either scraped or was compromised in one of these breaches and these scanners or IABs are crawling services testing out creds and/or your email with weak password combos.