// Investigation
Hunt console
Structured search across the normalised event store. Terms combine with AND; prefix a value with ! to negate it.
hunt.queryREADY
to run
Result profile
1
event matches
Severity
- Critical0
- High0
- Medium0
- Low1
- Info0
Applied filters
- dstip = 51.89.205.231
Matches
Newest first.
| Timestamp (UTC) | Severity | Event type | User | Source IP | Message |
|---|---|---|---|---|---|
| Low | Network Deny | — | 10.4.12.32 | deny tcp 10.4.12.32:32839 -> 51.89.205.231:443 policy="egress-standard" |