Willi04/26/2021, 4:08 PM
Willi04/27/2021, 7:25 AM
if i wait 15 min or press stop after the osquery process ("launcher" and "osquery demon and shell") reaches top loads (about 1 GB RAM) in the taskmanager the cpu usage gets slowly down to about 0% but the RAM is still in use and does not get any lower. Also retrying the default query results now in timeout after 15 min.
SELECT * FROM windows_eventlog where channel='Security'