https://github.com/osquery/osquery logo
Title
m

Mystery Incorporated

07/30/2021, 8:06 AM
Why would a "snapshot" query tell me that the antivirus and firewall are both on and off at the same time? That doesn't make any sense!!!!
r

Rachel Perkins

07/30/2021, 1:35 PM
Maybe there's 2 firewalls and 2 antivirus? Idk, that is a confusing output. We'll look into it
I think Seph answered this in the #general channel. Will follow there
m

Mystery Incorporated

08/01/2021, 1:03 PM
@Rachel Perkins you were spot on, turns out as the user had installed Bitdefender, it was reporting as Bitdefender on, Microsoft Defender off.
r

Rachel Perkins

08/05/2021, 5:39 PM
Oh wow, good to know! Thanks @Mystery Incorporated for figuring out yet another mystery!