Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

DeepWhite-collector #19

Open
GlennGuillot opened this issue Dec 16, 2020 · 0 comments
Open

DeepWhite-collector #19

GlennGuillot opened this issue Dec 16, 2020 · 0 comments

Comments

@GlennGuillot
Copy link

Is there an issues getting this to work on Windows 10 (2004) with the latest version of Sysmon 12.0.3?

I get the error when running the powerShell script DeepWhite-collector:
Out-Host : A positional parameter cannot be found that accepts argument 'No SHA256 hash found. Ensure Sysmon is creatin
g SHA256 hashes'.
At DeepWhite-collector.ps1:36 char:9

  •     Out-Host "No SHA256 hash found. Ensure Sysmon is creating SHA ...
    
  •     ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    
    • CategoryInfo : InvalidArgument: (:) [Out-Host], ParameterBindingException
    • FullyQualifiedErrorId : PositionalParameterNotFound,Microsoft.PowerShell.Commands.OutHostCommand

If I look in the Eventviewer, I can see the sha256 hashes for events 1 and 7 are present

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant