You have a Microsoft 365 subscription. You have the following KQL query.
DeviceEvents
| where ActionType == "AntivirusDetection*
You need to ensure that you can create a Microsoft Defender XDR custom detection rule by using the query.
What should you add to the query?
Graciela
5 months agoDean
5 months agoEden
5 months agoAltha
5 months agoShalon
6 months agoLanie
6 months agoTawny
6 months agoMartina
6 months agoRashida
6 months agoMing
6 months agoCammy
6 months agoReena
6 months agoJenelle
6 months agoJolanda
7 months agoTwana
7 months agoKaitlyn
7 months agoLorean
11 months agoCory
11 months agoChantell
11 months agoLinwood
9 months agoSharee
9 months agoLaine
9 months agoRonny
10 months agoNickie
10 months agoDelsie
10 months agoKallie
11 months agoTonja
11 months agoClorinda
10 months agoLucia
10 months agoGeraldine
10 months agoThomasena
12 months agoDetra
10 months agoThersa
10 months agoMarta
11 months agoVon
11 months agoValene
1 year agoVeta
1 year agoTrinidad
1 year ago