Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Microsoft Exam SC-200 Topic 2 Question 52 Discussion

Actual exam question for Microsoft's SC-200 exam
Question #: 52
Topic #: 2
[All SC-200 Questions]

You have a Microsoft 365 subscription that uses Microsoft Purview and Microsoft Teams.

You have a team named Team1 that has a project named Project 1.

You need to identify any Project1 files that were stored on the team site of Team1 between February 1, 2023, and February 10, 2023.

Which KQL query should you run?

A.

B.

C.

D.

Show Suggested Answer Hide Answer
Suggested Answer: C

This will add all the IP addresses in the range of 171.23.34.32/27 as threat indicators. This is the simplest and most efficient way to add all the IP addresses in the range.


Contribute your Thoughts:

Isadora
7 days ago
I'm still learning KQL, but Option C seems to be the most well-structured and targeted query. It's got my vote!
upvoted 0 times
...
Sol
9 days ago
Option C looks like the correct answer. It uses the right date range and the KQL query seems to target the right team and project.
upvoted 0 times
...
Colette
11 days ago
Well, I think Option C makes more sense because it specifies the date range we need to search for.
upvoted 0 times
...
Garry
16 days ago
I disagree, I believe Option B is the right query to identify the Project1 files.
upvoted 0 times
...
Colette
18 days ago
I think the correct KQL query to run is Option C.
upvoted 0 times
...

Save Cancel