You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: defender-endpoint/review-detected-threats.md
+5-5Lines changed: 5 additions & 5 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -12,7 +12,7 @@ ms.collection:
12
12
- tier2
13
13
- mde-edr
14
14
ms.topic: conceptual
15
-
ms.date: 05/29/2024
15
+
ms.date: 06/21/2024
16
16
ms.subservice: edr
17
17
search.appverid: met150
18
18
---
@@ -39,15 +39,15 @@ In the Microsoft Defender portal, you can view and manage threat detections usin
39
39
40
40
1. Visit [Microsoft XDR portal](https://security.microsoft.com/) and sign-in.
41
41
42
-
On the landing page, you'll see the **Devices with active malware** card with the following information:
42
+
On the landing page, you see the **Devices with active malware** card with the following information:
43
43
44
44
- Display text: Applies to Intune-managed devices. Devices with multiple malware detections may be counted more than once.
45
45
- Last updated date and time.
46
46
- A bar with the Active and Malware remediated portions as per your scan.
47
47
48
48
You can select **View Details** for more information.
49
49
50
-
2. Once remediated, you'll see the following text being displayed:
50
+
2. Once remediated, you see the following text being displayed:
51
51
52
52
*Malware found on your devices have been remediated successfully*.
53
53
@@ -83,7 +83,7 @@ To see when the malware was detected, you can do the following:
83
83
84
84
#### In the devices with malware detections report, why can't I see any information about which malware was detected on the device.
85
85
86
-
To see the malware name, visit the [Intune portal](https://intune.microsoft.com) as this is an integration with Intune, select **Antivirus**, and select **Active malware** tab and you'll see a column named **Malware name**.
86
+
To see the malware name, visit the [Intune portal](https://intune.microsoft.com) as this is an integration with Intune, select **Antivirus**, and select **Active malware** tab and you see a column named **Malware name**.
87
87
88
88
#### I see a different number for active malware in Devices with active malware report, when compared to numbers I see using Reports > Detected malware, and Intune > Antivirus > Active malware.
89
89
@@ -116,7 +116,7 @@ It might be that the URL's [Cloud Protection](configure-network-connections-micr
116
116
117
117
You need to ensure that when you run `%ProgramFiles%\Windows Defender\MpCmdRun.exe -ValidateMapsConnection` on your device, the reporting is Ok.
118
118
119
-
#### I see a device that has been inactive for 180+ days but still showing up on the report for 'Devices with active malware'. The device does not show in the "Device inventory", cannot be turned on and cannot be offboarded from Microsoft Defender for Endpoint.
119
+
#### I see a device that has been inactive for 180+ days but still showing up on the report for 'Devices with active malware'. The device doesn't show in the "Device inventory", can't be turned on and can't be offboarded from Microsoft Defender for Endpoint.
120
120
121
121
122
122
The device has not been [retired](/mem/intune/remote-actions/devices-wipe) from Intune.
0 commit comments