Defender ATP on Windows 7 expected behavior? RRS feed

  • Question

  • Greetings

    I've begun a POC of Defender ATP on Windows 7, I have our Windows 10 onboard already, but I'm confused. In the ATP portal I see processes being started and stopped on a Windows 7 as well as connections made to difference resources but I was expecting alert data from malicious files downloaded. Nothing is shown, not even if the PC is running Security Essentials which is blocking the file. The AFP detection test, the powershell command, is detected but that seems like half the story.

    Am I missing something or is this expected from a Windows 7?



    Thursday, July 5, 2018 7:48 AM