Stop and quarantine file via Microsoft Defender

The automation stops and quarantines a file on the Microsoft Defender machine.

Supported Product

Microsoft Defender for Endpoint

Parameters

Notification subject

Enter a subject for a notification you receive through a configured communication tool.

Notification message

Enter the text for a notification you receive through a configured communication tool.

Trigger

The input includes machine ID of the Microsoft Defender machine, a comment, and sha1 of the file on the machine.

To view the example of this log, click Run.

Flow