| @@ -140,6 +140,7 @@ disabled = 0 | ||||
| start_from = oldest | ||||
| current_only = 0 | ||||
| checkpointInterval = 5 | ||||
| blacklist1 = EventCode="4798" Message=".+Process Name:.+\\osqueryd\\osqueryd.exe" | ||||
|  | ||||
| [WinEventLog://WEC3-Windows-Diagnostics] | ||||
| sourcetype = WinEventLog:System | ||||
|   | ||||
		Reference in New Issue
	
	Block a user
	 Chris Long
					Chris Long