Biohazard
Room Link: https://tryhackme.com/room/biohazard
Initial Scan
Kali
nmap -A $VICTIM
Scan all ports
Kali

Loot
lock_pick{037b35e2ff90916a9abf99129c8e1837}
Used in /barRoom/
music_sheet{362d72deaf65f5bdc63daece6a1f676e}
Rooms found

Used this script to loop through the rooms to quickly look for clues
search.sh
TCP/80 - HTTP
Kali

Mansion Main

diningRoom





diningRoom2F


diningRoom

tigerStatusRoom
I put the blue gem flag in here


Crest 1 : S0pXRkVVS0pKQkxIVVdTWUpFM0VTUlk9
galleryRoom

Crest 2 : GVFWK5KHK5WTGTCILE4DKY3DNN4GQQRTM5AVCTKE
barRoom








Using the other emblem we get this

diningRoom
Used the gold emblem here




attic



Crest 4 : gSUERauVpvKzRpyPpuYz66JDmRTbJubaoArM6CAQsnVwte6zF9J4GGYyun3k5qM9ma4s
armorRoom



Crest 3: MDAxMTAxMTAgMDAxMTAwMTEgMDAxMDAwMDAgMDAxMTAwMTEgMDAxMTAwMTEgMDAxMDAwMDAgMDAxMTAxMDAgMDExMDAxMDAgMDAxMDAwMDAgMDAxMTAwMTEgMDAxMTAxMTAgMDAxMDAwMDAgMDAxMTAxMDAgMDAxMTEwMDEgMDAxMDAwMDAgMDAxMTAxMDAgMDAxMTEwMDAgMDAxMDAwMDAgMDAxMTAxMTAgMDExMDAwMTEgMDAxMDAwMDAgMDAxMTAxMTEgMDAxMTAxMTAgMDAxMDAwMDAgMDAxMTAxMTAgMDAxMTAxMDAgMDAxMDAwMDAgMDAxMTAxMDEgMDAxMTAxMTAgMDAxMDAwMDAgMDAxMTAwMTEgMDAxMTEwMDEgMDAxMDAwMDAgMDAxMTAxMTAgMDExMDAwMDEgMDAxMDAwMDAgMDAxMTAxMDEgMDAxMTEwMDEgMDAxMDAwMDAgMDAxMTAxMDEgMDAxMTAxMTEgMDAxMDAwMDAgMDAxMTAwMTEgMDAxMTAxMDEgMDAxMDAwMDAgMDAxMTAwMTEgMDAxMTAwMDAgMDAxMDAwMDAgMDAxMTAxMDEgMDAxMTEwMDAgMDAxMDAwMDAgMDAxMTAwMTEgMDAxMTAwMTAgMDAxMDAwMDAgMDAxMTAxMTAgMDAxMTEwMDA=
Crest
Crest part was not hard, just dumped them all into cyberchef which was able to decode it automatically, then put them all together to reveal the FTP account

TCP/21 - FTP
Kali

Kali

Kali

Kali

Combining the three get us this

Kali

hidden_closet



Used Vignere cipher again, except we didn't have the key so I bruteforced it, it was albert.


studyRoom



Kali

TCP/22 - SSH
Kali



Kali

Victim


Last updated