Remember, that before RD Gateway with Remote Desktop Connection using port 443, RDP used port 3389. While a registry change could change the port, most computer users continued to use 3389. Hackers tried to access this port more than any other as they knew it was open and listening at all times. Event logs could show up to 10,000 attempts monthly.
The only defense, which is a good idea anyway, is a strong username (not admin or administrator) or a very strong password.
This
website shows the latest from the dark side.
This is NOT an issue in the latest v6.1 RD Gateway RDC/RDP above.