Skip to content

Commit ecd036b

Browse files
authored
Merge pull request #5786 from MicrosoftDocs/paulinbar-patch-1
Revise investigation results document for updates
2 parents bb0c57d + 939135f commit ecd036b

File tree

1 file changed

+4
-10
lines changed

1 file changed

+4
-10
lines changed

defender-endpoint/autoir-investigation-results.md

Lines changed: 4 additions & 10 deletions
Original file line numberDiff line numberDiff line change
@@ -20,22 +20,18 @@ ms.custom:
2020
- autoir
2121
- admindeeplinkDEFENDER
2222
ms.reviewer: evaldm, isco
23-
ms.date: 04/04/2025
23+
ms.date: 11/30/2025
2424
appliesto:
2525
- Microsoft Defender for Endpoint Plan 2
2626

2727
---
2828
# View the details and results of an automated investigation
2929

30-
3130
With Microsoft Defender for Endpoint, when an [automated investigation](automated-investigations.md) runs, details about that investigation are available both during and after the automated investigation process. If you have the necessary permissions, you can view those details in an investigation details view. The investigation details view provides you with up-to-date status and the ability to approve any pending actions.
3231

33-
## (NEW!) Unified investigation page
34-
35-
The investigation page is updated to include information across your devices, email, and collaboration content. The new, unified investigation page defines a common language and provides a unified experience for automatic investigations across [Microsoft Defender for Endpoint](microsoft-defender-endpoint.md) and [Microsoft Defender for Office 365](/defender-office-365/mdo-about).
32+
## Unified investigation page
3633

37-
> [!TIP]
38-
> To learn more about what's changing, see [(NEW!) Unified investigation page](/microsoft-365/security/mtp/mtp-autoir-results).
34+
The unified investigation page includes information across your devices, email, and collaboration content. It defines a common language and provides a unified experience for automatic investigations across [Microsoft Defender for Endpoint](microsoft-defender-endpoint.md) and [Microsoft Defender for Office 365](/defender-office-365/mdo-about). For more information, see [Details and results of an automated investigation](/defender-xdr/m365d-autoir-results).
3935

4036
## Open the investigation details view
4137

@@ -69,9 +65,7 @@ Use an incident details page to view detailed information about an incident, inc
6965

7066
## Investigation details
7167

72-
Use the investigation details view to see past, current, and pending activity pertaining to an investigation. The investigation details view resembles the following image:
73-
74-
In the Investigation details view, you can see information on the **Investigation graph**, **Alerts**, **Devices**, **Identities**, **Key findings**, **Entities**, **Log**, and **Pending actions** tabs, described in the following table.
68+
Use the investigation details view to see past, current, and pending activity pertaining to an investigation. In the investigation details view, you can see information on the **Investigation graph**, **Alerts**, **Devices**, **Identities**, **Key findings**, **Entities**, **Log**, and **Pending actions** tabs, described in the following table.
7569

7670
> [!NOTE]
7771
> - The specific tabs you see in an investigation details page depends on what your subscription includes. For example, if your subscription doesn't include Microsoft Defender for Office 365 Plan 2, you won't see a **Mailboxes** tab.

0 commit comments

Comments
 (0)