diff --git a/windows/security/threat-protection/windows-defender-atp/images/atp-azure-atp-machine.png b/windows/security/threat-protection/windows-defender-atp/images/atp-azure-atp-machine.png deleted file mode 100644 index c92c48edf0..0000000000 Binary files a/windows/security/threat-protection/windows-defender-atp/images/atp-azure-atp-machine.png and /dev/null differ diff --git a/windows/security/threat-protection/windows-defender-atp/images/discovered-vulnerabilities-machine.png b/windows/security/threat-protection/windows-defender-atp/images/discovered-vulnerabilities-machine.png new file mode 100644 index 0000000000..989f6884b1 Binary files /dev/null and b/windows/security/threat-protection/windows-defender-atp/images/discovered-vulnerabilities-machine.png differ diff --git a/windows/security/threat-protection/windows-defender-atp/images/software-inventory-machine.png b/windows/security/threat-protection/windows-defender-atp/images/software-inventory-machine.png new file mode 100644 index 0000000000..e845f93cf3 Binary files /dev/null and b/windows/security/threat-protection/windows-defender-atp/images/software-inventory-machine.png differ diff --git a/windows/security/threat-protection/windows-defender-atp/images/software-recommendations-machine.png b/windows/security/threat-protection/windows-defender-atp/images/software-recommendations-machine.png new file mode 100644 index 0000000000..d2cdbe97eb Binary files /dev/null and b/windows/security/threat-protection/windows-defender-atp/images/software-recommendations-machine.png differ diff --git a/windows/security/threat-protection/windows-defender-atp/images/specific-machine.png b/windows/security/threat-protection/windows-defender-atp/images/specific-machine.png new file mode 100644 index 0000000000..0ad322d1e2 Binary files /dev/null and b/windows/security/threat-protection/windows-defender-atp/images/specific-machine.png differ diff --git a/windows/security/threat-protection/windows-defender-atp/images/timeline-machine.png b/windows/security/threat-protection/windows-defender-atp/images/timeline-machine.png new file mode 100644 index 0000000000..6a13d4d007 Binary files /dev/null and b/windows/security/threat-protection/windows-defender-atp/images/timeline-machine.png differ diff --git a/windows/security/threat-protection/windows-defender-atp/investigate-machines-windows-defender-advanced-threat-protection.md b/windows/security/threat-protection/windows-defender-atp/investigate-machines-windows-defender-advanced-threat-protection.md index 2b9d2d90f5..040815c1b4 100644 --- a/windows/security/threat-protection/windows-defender-atp/investigate-machines-windows-defender-advanced-threat-protection.md +++ b/windows/security/threat-protection/windows-defender-atp/investigate-machines-windows-defender-advanced-threat-protection.md @@ -38,16 +38,16 @@ You can click on affected machines whenever you see them in the portal to open a - Any IP address or domain details view When you investigate a specific machine, you'll see: -- Machine details, Logged on users, Machine risk, and Machine Reporting -- Alerts related to this machine -- Machine timeline +- Machine details +- Response actions +- Cards (active alerts, logged on users, security assessment) +- Drill downs -![Image of machine view](images/atp-azure-atp-machine.png) +![Image of machine view](images/specific-machine.png) -The machine details, logged on users, machine risk, and machine reporting sections display various attributes about the machine. **Machine details**
-The machine details tile provides information such as the domain and OS of the machine. If there's an investigation package available on the machine, you'll see a link that allows you to download the package. +The machine details section provides information such as the domain and OS of the machine. If there's an investigation package available on the machine, you'll see a link that allows you to download the package. For more information on how to take action on a machine, see [Take response action on a machine](respond-machine-alerts-windows-defender-advanced-threat-protection.md).