Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊
Defender XDR Only: This table is available in Microsoft Defender XDR advanced hunting but is not available in the Azure Monitor Log Analytics table reference.
URLs sent through Microsoft Teams messages in your organization
| Attribute | Value |
|---|---|
| Category | XDR |
| Ingestion API Supported | ✗ No |
| Defender XDR Advanced Hunting Schema | View Documentation |
Source: Azure Monitor documentation
| Column Name | Type | Description |
|---|---|---|
| ReportId | string | Unique identifier for the event |
| TeamsMessageId | string | Unique identifier for the message, as generated by Microsoft 365 |
| ThreatTypes | string | Verdict from the filtering stack on whether the message contains malware, phishing, or other threats |
| Timestamp | datetime | Date and time when the event was recorded |
| Url | string | URL from message |
| UrlDomain | string | Domain name or host name of the URL |
This table is used by the following solutions:
In solution Microsoft Defender XDR:
GitHub Only:
Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊