SwiftOnSecurity / sysmon-config

Sysmon configuration file template with default high-quality event tracing

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

Sysmon installation issue

MarkAndreson opened this issue · comments

Hi,

Need help with installing Sysmon on Windows 10 and Windows Server 2012 R2.
I am getting the following error after running the command: sysmon64.exe -i

ERROR
wevtutil.exe returned failure
Event manifest installation failed with last error
Access denied

Kindly help

Heyho! :)
"Access denied" --> Did you run it as administrator? You'll need to install it as administrator both on DC and Workstation. For workstation i'd suggest to implement a GPO that installs it for you :)