mirror of
https://github.com/MicrosoftDocs/windows-itpro-docs.git
synced 2025-05-28 13:17:23 +00:00
Updated advanced-hunting-windows-defender-advanced-threat-protection.md
This commit is contained in:
parent
363d430686
commit
bf60d18ca4
@ -79,6 +79,7 @@ For more information on the query language and supported operators, see [Query L
|
||||
The following tables are exposed as part of advanced hunting:
|
||||
|
||||
- **AlertEvents** - Stores alerts related information
|
||||
- **MachineInfo** - Stores machines proprties
|
||||
- **ProcessCreationEvents** - Stores process creation events
|
||||
- **NetworkCommunicationEvents** - Stores network communication events o
|
||||
- **FileCreationEvents** - Stores file creation, modification, and rename events
|
||||
@ -103,7 +104,7 @@ You can create or modify a query and save it as your own query or share it with
|
||||
|
||||
3. Enter a name for the query.
|
||||
|
||||

|
||||

|
||||
|
||||
4. Select the folder where you'd like to save the query.
|
||||
- Shared queries - Allows other users in the tenant to access the query
|
||||
|
Loading…
x
Reference in New Issue
Block a user