microsoft / Microsoft-365-Defender-Hunting-Queries

Sample queries for Advanced hunting in Microsoft 365 Defender
MIT License
1.94k stars 539 forks source link

Devices without successful AV scan in the last n days #438

Closed f-bader closed 2 years ago

f-bader commented 2 years ago

Outout a list of devices without successful AV scan in the last n days

tali-ash commented 2 years ago

We moved to Microsoft threat protection community, the unified Microsoft Sentinel and Microsoft 365 Defender repository. Please Contribute your queries to the Microsoft 365 Defender folder in the Hunting Queries section. Specifics on what is required for Hunting queries is in the Query Style Guide.