Biohazard

Room Link: https://tryhackme.com/room/biohazardarrow-up-right

Initial Scan

Kali

nmap -A $VICTIM

Scan all ports

Kali

Loot

Flag
Found in
Used in

emblem{fec832623ea498e20bf4fe1821d58727}

lock_pick{037b35e2ff90916a9abf99129c8e1837}

Used in /barRoom/

blue_jewel{e1d457e96cac640f863ec7bc475d48aa}

Rooms found

Used this script to loop through the rooms to quickly look for clues

search.sh

TCP/80 - HTTP

Kali

Mansion Main

diningRoom

diningRoom2F

diningRoom

tigerStatusRoom

I put the blue gem flag in here

Crest 1 : S0pXRkVVS0pKQkxIVVdTWUpFM0VTUlk9

galleryRoom

Crest 2 : GVFWK5KHK5WTGTCILE4DKY3DNN4GQQRTM5AVCTKE

barRoom

Using the other emblem we get this

diningRoom

Used the gold emblem here

attic

Crest 4 : gSUERauVpvKzRpyPpuYz66JDmRTbJubaoArM6CAQsnVwte6zF9J4GGYyun3k5qM9ma4s

armorRoom

Crest 3: MDAxMTAxMTAgMDAxMTAwMTEgMDAxMDAwMDAgMDAxMTAwMTEgMDAxMTAwMTEgMDAxMDAwMDAgMDAxMTAxMDAgMDExMDAxMDAgMDAxMDAwMDAgMDAxMTAwMTEgMDAxMTAxMTAgMDAxMDAwMDAgMDAxMTAxMDAgMDAxMTEwMDEgMDAxMDAwMDAgMDAxMTAxMDAgMDAxMTEwMDAgMDAxMDAwMDAgMDAxMTAxMTAgMDExMDAwMTEgMDAxMDAwMDAgMDAxMTAxMTEgMDAxMTAxMTAgMDAxMDAwMDAgMDAxMTAxMTAgMDAxMTAxMDAgMDAxMDAwMDAgMDAxMTAxMDEgMDAxMTAxMTAgMDAxMDAwMDAgMDAxMTAwMTEgMDAxMTEwMDEgMDAxMDAwMDAgMDAxMTAxMTAgMDExMDAwMDEgMDAxMDAwMDAgMDAxMTAxMDEgMDAxMTEwMDEgMDAxMDAwMDAgMDAxMTAxMDEgMDAxMTAxMTEgMDAxMDAwMDAgMDAxMTAwMTEgMDAxMTAxMDEgMDAxMDAwMDAgMDAxMTAwMTEgMDAxMTAwMDAgMDAxMDAwMDAgMDAxMTAxMDEgMDAxMTEwMDAgMDAxMDAwMDAgMDAxMTAwMTEgMDAxMTAwMTAgMDAxMDAwMDAgMDAxMTAxMTAgMDAxMTEwMDA=

Crest

Crest part was not hard, just dumped them all into cyberchef which was able to decode it automatically, then put them all together to reveal the FTP account

TCP/21 - FTP

Kali

Kali

Kali

Kali

Combining the three get us this

Kali

hidden_closet

Used Vignere cipher again, except we didn't have the key so I bruteforced it, it was albert.

studyRoom

Kali

TCP/22 - SSH

Kali

Kali

Victim

Last updated