Those login attempts which trigger 2fa app does not generate a log entry if unsuccessful. Only attempts with username/password does. For some strange reason.
So there is no way to flag them as malicious and if you accidentally accept, then it’s already too late.
Interestingly enough, also some MS/Azure services are down. For example https://www.office.com/ just returns:
>We are sorry, something went wrong.
>Please try refreshing the page in a few minutes. If the problem persists, please visit status.cloud.microsoft for updates regarding known issues.
tl;dr: I managed to find the servers behind it, most likely anybody who are still affected can do the same thing I did pretty easily. We also followed the money, which is a tad more work.
Much of Europe is on the same shared grid, so energy prices goes up everywhere when Germany cuts nuclear power. Unless there is sufficent energy available to replace it. (Spoiler: There aren't)
How long are you covered there? It's 5 years here in Norway for anything "you should expect to last five years", which means basically all computer parts and mobile devices.
So there is no way to flag them as malicious and if you accidentally accept, then it’s already too late.
Pretty annoying setup.