Updated advanced-hunting-windows-defender-advanced-threat-protection.md

This commit is contained in:
Liza Mash
2018-03-20 13:19:35 +00:00
parent f9166c2411
commit 83b5a5ca83

View File

@ -130,7 +130,7 @@ The results set has several capabilities to provide you with effective investiga
- Columns that return entity-related objects, such as Machine name, Machine ID, File name, SHA1, User, IP, and URL, are linked to their entity pages in the Windows Defender ATP portal. - Columns that return entity-related objects, such as Machine name, Machine ID, File name, SHA1, User, IP, and URL, are linked to their entity pages in the Windows Defender ATP portal.
- You can right-click on a cell in the results set and add a filter to your written query. The current filtering options are **include**, **exclude** or **advanced filter**, which provides additional filtering options on the cell value. These cell values are part of the row set. - You can right-click on a cell in the results set and add a filter to your written query. The current filtering options are **include**, **exclude** or **advanced filter**, which provides additional filtering options on the cell value. These cell values are part of the row set.
![Image of Windows Defender ATP advanced hunting results set](images/atp-advanced-hunting-results-set.png) ![Image of Windows Defender ATP advanced hunting results set](images/atp-advanced-hunting-results-filter.png)
## Filters on results in advanced hunting ## Filters on results in advanced hunting
In advanced hunting, you can use the advanced filter on the output results set of the query. In advanced hunting, you can use the advanced filter on the output results set of the query.