Channels
android_tests
apple-silicon
arm-architecture
auditing-warroom
aws
carving
code-review
community-feeds
core
darkbytes
doorman
ebpf
eclecticiq-polylogyx-extension
extensions
file-carving
fim
fleet
fleet-dev
fleetosquery
foundation
fuzzing
general
golang
goquery
infrastructure
jobs
kolide
linen-dev
linux
macos
officehours
osctrl
plugins
process-auditing
querycon
queryhub
random
selfgroup
sql
tls
uptycs
vendor-feeds
website
windows
zeek
zentral
zercurity
Powered by
Title
m
Mystery Incorporated
07/30/2021, 8:06 AM
Why would a "snapshot" query tell me that the antivirus and firewall are both on and off at the same time? That doesn't make any sense!!!!
r
Rachel Perkins
07/30/2021, 1:35 PM
Maybe there's 2 firewalls and 2 antivirus? Idk, that is a confusing output. We'll look into it
I think Seph answered this in the
#general
channel. Will follow there
m
Mystery Incorporated
08/01/2021, 1:03 PM
@Rachel Perkins
you were spot on, turns out as the user had installed Bitdefender, it was reporting as Bitdefender on, Microsoft Defender off.
r
Rachel Perkins
08/05/2021, 5:39 PM
Oh wow, good to know! Thanks
@Mystery Incorporated
for figuring out yet another mystery!
3 Views
#fleet
Join Slack