Interesting could explain why i had so many memory leaks before updating windows 10 to newest build also this part very interesting Microsoft should add this as default:
For example, SwiftOnSecurity created a Sysmon configuration file and shared it on GitHub that will monitor for and log intrusion events and malicious activity to the Windows event log. A security researched name IonStorm forked this configuration file to create a Threat Intelligence SIEM fork that is constantly updated on user's computers through a scheduled task.