Question 233
SC-200 voucher + Udemy course (lifetime access) = ₹3,500 for Indian ID card holders.
Details →You have a Microsoft 365 E5 subscription that contains a device named Device1. From the Microsoft Defender portal, you discover that an alert was triggered for Device1. From the Device inventory page, you isolate Device1. You need to collect a list of installed programs on Device1. What should you do?
- ACollect an investigation package and download the results from the Action center.
- BInitiate a live response session and run the analyze command.
- CRun an advanced hunting query against the DeviceProcessEvents table.
- DRun an advanced hunting query against the DeviceTvmInfoGathering table.