mirror of
https://github.com/MicrosoftDocs/windows-itpro-docs.git
synced 2025-05-13 13:57:22 +00:00
update H1 titles
This commit is contained in:
parent
e6c1865602
commit
28f78804f5
@ -7,7 +7,7 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
author: mjcaparas
|
author: mjcaparas
|
||||||
---
|
---
|
||||||
# Investigate a domain
|
# Investigate a domain associated with a Windows Defender ATP alert
|
||||||
|
|
||||||
Investigate a domain to see if machines and servers in your enterprise network have been communicating with a known malicious domain.
|
Investigate a domain to see if machines and servers in your enterprise network have been communicating with a known malicious domain.
|
||||||
|
|
||||||
|
@ -1,14 +1,15 @@
|
|||||||
---
|
---
|
||||||
title: Investigate Windows Defender Advanced Threat Protection files
|
title: Investigate Windows Defender Advanced Threat Protection files
|
||||||
description: Use the investigation options to get details on files associated with alerts, behaviours, or events.
|
description: Use the investigation options to get details on files associated with alerts, behaviours, or events.
|
||||||
keywords: investigate, investigation, files, malicious activity, attack motivation
|
keywords: investigate, investigation, file, malicious activity, attack motivation
|
||||||
search.product: eADQiWindows 10XVcnh
|
search.product: eADQiWindows 10XVcnh
|
||||||
ms.prod: W10
|
ms.prod: W10
|
||||||
ms.mktglfcycl: deploy
|
ms.mktglfcycl: deploy
|
||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
author: mjcaparas
|
author: mjcaparas
|
||||||
---
|
---
|
||||||
# Investigate a file
|
# Investigate a file associated with a Windows Defender ATP alert
|
||||||
|
|
||||||
Investigate the details of a file associated with a specific alert, behavior, or event to help determine if the file exhibits malicious activities, identify the attack motivation, and understand the potential scope of the breach.
|
Investigate the details of a file associated with a specific alert, behavior, or event to help determine if the file exhibits malicious activities, identify the attack motivation, and understand the potential scope of the breach.
|
||||||
|
|
||||||
You can get information from the following sections in the file view:
|
You can get information from the following sections in the file view:
|
||||||
|
@ -8,7 +8,7 @@ ms.mktglfcycl: deploy
|
|||||||
ms.sitesec: library
|
ms.sitesec: library
|
||||||
author: mjcaparas
|
author: mjcaparas
|
||||||
---
|
---
|
||||||
# Investigate an IP address
|
# Investigate an IP address associated with a Windows Defender ATP alert
|
||||||
|
|
||||||
Examine possible communication between your machines and external internet protocol (IP) addresses.
|
Examine possible communication between your machines and external internet protocol (IP) addresses.
|
||||||
|
|
||||||
|
Loading…
x
Reference in New Issue
Block a user