#site-support

1 messages · Page 187 of 1

cloud shard
#

why does that happen?

toxic python
#

¯_(ツ)_/¯

#

No clue

eager fulcrum
#

@toxic python it's something burp does @cloud shard

hazy crescent
#

Local vm is better as it has persistence
@toxic python Thanks. That's a decent point. 👍

sly apex
#

Hello, I'm having problems connecting to my browser based attack-box. I cannot connect to it, due to the error "New connection has been rejected with reason: Authentication failure". I'm also not able to connect via ssh with the provided password. I already terminated and restarted the box.

toxic python
#

Terminate, switch servers and then try to connect

hoary bison
#

I have been getting very slow response times from virtual servers and http requests timouts (from dirbuster and browser http equests). This happens over different rooms/box/IPs. Has there been any problems lately? Any workarounds availlable?

eager fulcrum
#

!vpnscript

sharp bisonBOT
hollow lotus
#

Hi, i am having problems deploying "Active Directory Basics" . It says that it is only for subscription and I paid my subscription a week away

hoary bison
#

!vpnscript
@eager fulcrum I ran the script. I tells me that everything is fine. I still get long/slow time responses from most boxes. Access works for short bursts of time (~30 secs) and then cycles back into a long period of unavaillability.

eager fulcrum
#

You're not connected from any other device?

hoary bison
#

no.

steel mortar
#

Getting Config not found in current directory from the thm troubleshoot
my openvpn isnt working thats why i have it in the first place

eager fulcrum
#

Did you donwload your config file from THM?

steel mortar
#

im getting

[-] tun0 interface does not exist Would you like the script to attempt a connection automatically (Y/n)? y [+] Connecting.... [Warning!] Connection process is taking longer than expected to complete

now

eager fulcrum
#

Ok, stop running it through the script and run it manually, then take a screenshot please?

umbral flame
#

@feral dock how do u stop it tho

steel mortar
#

Well. This is when i manually run it. It doesnt do anythign after this just throwing a timeout after some time @eager fulcrum

eager fulcrum
#

How long have you been waiting

#

Ah

steel mortar
#

Ok i switched servers. Now it worked

#

Yup it says im connected

#

Thanks anyways

eager fulcrum
#

Interesting, which server?

steel mortar
#

EU-1

eager fulcrum
#

Also, ignore the access page

steel mortar
#

from EU-2

eager fulcrum
steel mortar
#

ye. having a 50 ping

umbral flame
#

how do u stop proxychains its looping lol

naive dust
#

anyone uses openvpn and/or proxychains on a mac?
first my proxychains4 command not ging thru after i edited the .conf file
and bash cant find the openvpn command even though its in a bin Path

eager fulcrum
urban horizon
#
Usage: VirtualBoxVM --startvm <name|UUID>
Starts the VirtualBox virtual machine with the given name or unique identifier (UUID).```
#

Evertime i run kali linux it shows up wit this message

eager fulcrum
#

@urban horizon Hi, that's a question for #general as it's not directly TryHackMe related. This channel isn't for generic tech support.

urban horizon
#

mhm mb

violet fractal
#

Well. This is when i manually run it. It doesnt do anythign after this just throwing a timeout after some time @eager fulcrum
@steel mortar
I have the same problem

#

I changed my server couple of times and i still got the same problem

#

Any help...

modest grove
#

I am on mac and my in browser machine won't work

#

it keeps giving me this error message

#

"New connection has been rejected with reason: Authentication failure"

toxic python
#

Try a different server

subtle python
#

whats the process for using large blocks of code when making rooms? i dont see a code block icon. should i just use a picture and link to the source code or?

bronze vale
#

Screenshot?

#

Oh

#

There should be a way to embed it but I’m not sure if it would be good to put a bunch of code onto a task.

subtle python
#

maybe ill just do pictures and link the source code at the end for now

cursive lagoon
#

why is nmaps scanning speed in browser based machine freaking slow????

cyan copper
#

My friend trying to create THM account but whatever username he use, it showing user Id is taken

bronze vale
#

@deep trellis

feral dock
#

Leaked email 👀

bronze vale
#

Clearly a fake email Malware kekw

deep trellis
#

My friend trying to create THM account but whatever username he use, it showing user Id is taken
@cyan copper Can you have him email us - support@tryhackme.com - I can see he is also using a password found in a public breach (shown from the alert message in the screenshot), that might be why (even if his username is free) its not letting him signup.

feral dock
#

My guess is the password is password123 👀

cyan copper
#

@cyan copper Can you have him email us - support@tryhackme.com - I can see he is also using a password found in a public breach (shown from the alert message in the screenshot), that might be why (even if his username is free) its not letting him signup.
@deep trellis yeah you are right.. but it shouldn’t say user name already used.. looking like bug.. I told him to not use exposed password

#

My guess is the password is password123 👀
@feral dock seriously no🙊

deep trellis
#

@cyan copper If he can email us we can help him, thanks:)

cyan copper
#

@cyan copper If he can email us we can help him, thanks:)
@deep trellis thanks for your help. He used compromised password. Now he able to make

meager kestrel
#

Hey,
I am relatively new to THM. I have a question: I know how to install foxyproxy and the certificate for BurpSuite and it works. However i obviously do not want to repeat the process everytime i use the Browser VM that THM provides. Is there another way to use burp without any problems on the THM Browser VM?

bronze vale
#

Possibly it can be configured before hand but I’m not sure how that works. @zealous yoke anything you can do here?

vernal ruin
#

Doesn't Burp provide an option to launch a preconfigured browser to work with burp under proxy

twilit quail
#

I'm confused on how i do the stuff via openvpn on windows
I'm extremely confused, i'm on the basic pentesting.

naive dust
#

is it possible to get a machine that has all the tools needed without being a subscriber?

wind wedge
#

Yes by creating a virtual machine and installing kali or other similar OS

naive dust
#

is there like a script i can run to get all the tools needed?

wind wedge
#

@twilit quail If you go to access machines on the side bar then openvpn then connect using openvpn select windows and it tells you how to do it there

#

The tools are preinstalled on the VM

twilit quail
#

I mean i've connected but i'm confused on how to do the stuff in the rooms.

naive dust
#

oh okay

wind wedge
#

You deploy the machine and hack your way into them there are writeups if you get stuck if not then go to #room-help if you get stuck on the room

twilit quail
#

Well alright then, i meant i was confused on how to start it but no worries.

#

Like once you've connect to the openvpn on windows i don't understand what to do next within the room.

naive dust
#

blackout what os do you suggest for a beginner ?

wind wedge
#

Kali is usually the best one for beginner

naive dust
#

okay ill give it a download

#

virtualbox the best one too?

wind wedge
#

I use virtualbox but VMWare is good too

naive dust
#

okay

#

do i need to install openvpn on the vm or is it fine on the host?

wind wedge
#

It has to be run through the VM

slow gazelle
#

what is shell escape sequence

low kraken
#

Hi everyone...Is it possible to change my Username into the THM platform?🤔

#

or for example open a ticket/case with THM support.

wind wedge
low kraken
#

Thanks!!!!!!

zealous yoke
#

Hey yeah, ty for the ping @bronze vale. What in browser VM are trying to deploy please? @meager kestrel (welcome to THM as well)

#

If it's the in-browser Attack Box absolutely can look into getting that sorted, if it's the Kali one then we're leaving that machine as default/standard as possible (:

naive dust
#

My verification email is not working, I have already tried changing emails and checking spam.

meager kestrel
#

@zealous yoke i used the kali VM. Next time i will try the Attack Box to see if that is easier 🙂

zealous yoke
#

Ah okies, I’m pretty sure the attack box is setup just like that. However, if you get the chance, let us know if not! Certainly something we can add to it

meager kestrel
#

Alright thanks!

sturdy wigeon
#

having some trouble with meterpreter
im trying to get a shell but this keeps happening where the shell doesn't respond

meterpreter > shell
Process 3414 created.
Channel 9 created.
ls
ls -l
^C
toxic python
#

drop back into meterpreter and do info

#

or maybe systeminfo

#

i dont remember, we'll find out

sturdy wigeon
#
meterpreter > info
Usage: info <module>

Prints information about a post-exploitation module

meterpreter > systeminfo
[-] Unknown command: systeminfo.
sly yoke
#

sysinfo

sturdy wigeon
#
meterpreter > sysinfo
Computer    : blunder
OS          : Linux blunder 5.3.0-53-generic #47-Ubuntu SMP Thu May 7 12:18:16 UTC 2020 x86_64
Meterpreter : php/linux
sly yoke
#

you have the help command to see eveything you can do

#

also, doesn't meterpreter can do the same as a shell ?

sturdy wigeon
#
Stdapi: System Commands
=======================

    Command       Description
    -------       -----------
    execute       Execute a command
    getenv        Get one or more environment variable values
    getpid        Get the current process identifier
    getuid        Get the user that the server is running as
    kill          Terminate a process
    localtime     Displays the target system local date and time
    pgrep         Filter processes by name
    pkill         Terminate processes by name
    ps            List running processes
    shell         Drop into a system command shell
    sysinfo       Gets information about the remote system, such as OS

shell is in there

#

im trying to use the su command

toxic python
#

is this blunder the HTB machine...?

sturdy wigeon
#

hmmm 😳

sly yoke
#

xD

toxic python
#

this is the THM discord

sturdy wigeon
#

lmao...

toxic python
#

but either way if you want a normal shell just do a bash reverse shell if meterpreter is acting up

#

and catch it with netcat

sturdy wigeon
#

how to do that

toxic python
#

and then head over to the HTB discord 😛

sturdy wigeon
#

its just that imo thm community > htb community

sly yoke
#

(that's true)

toxic python
#

agreed but at least ask in the right channel 😅

#

people will answer there

sturdy wigeon
#

how to do the bash reverse shell from in meterpreter

toxic python
heavy cloak
#

danm I spammed th eaccess log with dirbuster

#

andi wanted to clear it so i reset the VM

#

but now i cant connect to the box

#

the ip changed of course but i cant load it

bronze vale
#

Reset what VM

heavy cloak
#

dogcat

bronze vale
#

What is the IP?

heavy cloak
#

it is back now

#

🤩 sorry for my impatience

eager fulcrum
#

Probably just needed a minute or two to boot

naive dust
#

My verification email is not working, I have already tried changing emails and checking spam.

heavy saffron
#

Hey guys? Is there an option to change my username in tryhackme

eager fulcrum
heavy saffron
#

I emailed them but I didn’t get any reply so far

eager fulcrum
#

There's no other way

heavy saffron
#

Oh okay. I’ll try again. Thanks!

wind wedge
#

It's probably best to wait for a reply as only two people manage the emails

heavy saffron
#

Oh I’ll wait then

naive dust
#

My verification email is not working, I have already tried changing emails and checking spam.

eager fulcrum
#

Email support.

naive dust
#

ok thx for the info

late zodiac
#

couldnt download the conf file . it displays error occured. help pls

toxic python
#

switch server, wait 30 seconds, try again

toxic python
#

And this doesn’t sound ethical...

eager fulcrum
late zodiac
#

what to do bro?

naive dust
#

What are you even doing?

eager fulcrum
#

@late zodiac Try a different VPN server

late zodiac
#

ok bro

eager fulcrum
#

Please don't call me bro, you don't actually know me so it's a little uncomfortable.

late zodiac
#

ok

limber kayak
#

Every time I reboot my Kali VM I have to rerun the THM-troubleshoot script and it always tells me it's because tun0 doesn't exist, and I can't figure out how to create a tun0 for openvpn to use. Trying to import the ovpn file in the network manager tells me the file contains line "client" which is not a key-value, pair, group or comment.

eager fulcrum
#

@limber kayak The THM kali is already on the THM network

#

So it doesn't need the VPN.

#

Oh

#

It's your own kali. You need to connect to the VPN from the command line. Don't use network manager because it adds invalid routes and breaks your internet connection

#

!vpn

sharp bisonBOT
eager fulcrum
#

@limber kayak Follow this

limber kayak
#

I have, but every time I reboot tun0 dissapears.

#

Making me run the thm troubleshooter

eager fulcrum
#

No

#

You connect every time

#

Leave the terminal open

#

Control C to disconnect

limber kayak
#

sudo openvpn doesn't connect me.

eager fulcrum
#

It should.

#

That's what you need to troubleshoot

#

Show us a screenshot of what you're doing please

limber kayak
#

Alright one second please

#

Okay maybe I just was doing it wrong, trying to use ./file just gives me an error, but using the absolute path seemed to work?

eager fulcrum
#

Relative paths work, but only if they're correct.

limber kayak
#

I opened the terminal inside the same folder as the ovpn file

eager fulcrum
#

Case sensitive

#

Lower case K vs upper case K.

limber kayak
#

Aha

royal dagger
#

should my nmap scans be taking 20-ish min? im scanning from a kali-vm with 4 cores and 6g. I watched the nmap video and the guy said it should take around 2 min.

fallen juniper
#

Not normally no, would u mind pasting in the command please.

royal dagger
#

well right now im on the ice box, i ran "sudo nmap -sV -p- -oA scans/ice/ice <ip>"

fallen juniper
#

Was it against a Linux or Windows room?

royal dagger
#

windows

fallen juniper
#

Ahhh that may be it, Windows u need to use -Pn on the end

#

I wouldnt run -p- right off the bat either, as that checks all 65k ish ports.

#

My go tos
Windows:
nmap -sC -sV -oN scans/nmap 10.10.10.10 -Pn
Linux:
nmap -sC -sV -oN scans/nmap 10.10.10.10

When they're complete run a -p- in the background as they can take awhile, for 95% of THM rooms u wont need -p-

eager fulcrum
#

Ahhh that may be it, Windows u need to use -Pn on the end
@fallen juniper You often need to, but I believe Ice responds to pings

#

Should still be fast with -p- though

fallen juniper
#

Yeah u can always add -v to see a verbose output

royal dagger
#

ok, sorry im just starting out. so always use -Pn ( no ping if i remember right) on windows machines? or it that just thedeal with these rooms saying they dont respond to pings? ( ice does say this BTW)

#

also i see you didnt use -p at all, does that only scan common ports?

eager fulcrum
#

Windows tends to block pings out of the box

#

also i see you didnt use -p at all, does that only scan common ports?
@royal dagger 1000 most common

fallen juniper
#

It's all a learning experience, in time you'll know when stuff doesnt seem right.

royal dagger
#

cool, thanks a lot for the help you two

#

yeah, im not brand new to computers or anything, been using linux for 20-ish years, off and on. but never played around with this kinda stuff before. i figured i was doing something wrong haha. thanks again

#

another weird question, cause i thought it would help with my speed issues. i see links to download the rooms ( hopefully vms ) but they all timeout. is that temporary? are there mirrors anywhere?

eager fulcrum
#

That's specifically because dark likes to host his OVAs

#

But his site might be broken

royal dagger
#

rdp shows up as ms-wbt-server? on this room? does it always? the room says MSRDP

toxic python
#

it stands for Microsoft Windows-based terminal server

#

which is another name for Microsoft Remote Desktop Protocol

#

aka theyre the same thing, tomato tomato

royal dagger
#

nice, thanks

eager fulcrum
#

Toemayto toemahto

toxic python
#

tomato potato

craggy jay
#

Could someone help me up

eager fulcrum
#

Sure, what's up? I can try

#

(also in future please just ask your question directly, then people can tell if they can help without having to ask what the actual question is)

craggy jay
#

Ive followed up with almost 4 rooms but my virtual kali image never goes through with exploits.

#

Whenever i do run -j in metasploit, it shows Exploit completed, but no session was created.

#

Ive tried it with eternal blue, reverse shells and php injects

#

My machine is able to reach the deployed machine because im able to scan it but im not able to create shells of any sort

#

This is what im on recently, it never showed "win" on my vm

eager fulcrum
#

show options and posta screenshot please

#

Is the VPN running directly in Kali or on the Host OS?

craggy jay
#

on Kali

#

Im able to ping and do everything

#

Auxiliary even says its vulnerable

#

But almost with all the machines it never reaches dos

#

and ends on "Expoilt completed no session created"

eager fulcrum
#

That LHOST is incorrect

#

The target machine can't send a shell back to that address

craggy jay
#

Ah

#

Wait lemme try

eager fulcrum
#

You want your tun0 IP

craggy jay
#

So i changed it

eager fulcrum
#

Redeploy the target

craggy jay
#

and still goes to fail

#

okay

#

After setting the new RHOST

eager fulcrum
#

!vpnscript

sharp bisonBOT
craggy jay
#

Thanks

#

Ill look into it

jolly heart
#

New connection has been rejected with reason: Authentication failure tryhackme

frail horizon
thick oasis
#

I keep getting this message. syntax error near unexpected token `<' , How do I get around this or fix it. I've been looking on google for answers but everything I find doesn't seem to work.

placid mango
#

What are you doing?

thick oasis
#

@placid mango I'm tryna to learn some new stuff and I'm trying to crack my home Wi-Fi and get the pw just to test my self and learn. I am following a website and doing what it says to do and I did one of the commands and it kept hitting me what that when I would try to run it.

placid mango
thick oasis
#

Okay, Thanks

placid mango
wind lance
#

You use kali on thm to use the site

placid mango
#

I mean wrong channel. Post your question in #general .

wind lance
#

Ok

devout ruin
#

i have been trying to access my kali machine but i keep getting "New connection has been rejected with reason: Authentication failure
", yesterday it was working fine, we dont need to connect to the vpn right to access our browser machine...any help?

bronze vale
#

No you do not need a VPN

#

The fix I have offered is:

#

Terminate whatever box is giving you the error, if you are on the attack box, boot up a Kali VM, then terminate the VM and start the attack box again.

devout ruin
#

it worked..Thankusomuch 😄

rancid furnace
#

Hello. After installing Metasploit, I tried to run msfdb init and msfconsole. I got errors when running these commands.

msfdb init: "Starting database at C: /Users/User/.msf4/db ... failed" and "Your database may be corrupt. Try reinitializing." and "Attempting to start MSF web service ... failed"

msfconsole: "Could not find bcrypt-3.1.15 in any of the sources"

bronze vale
rancid furnace
#

Ok

shy holly
#

In the blaster room, There was no history in internet explorer to check on the rdp

potent torrent
#

Since I have paid THM (a couple of weeks ago) I cannot make machines correctly since their connection stops working and I have to restart the machine every 60 minutes. I have tried different VPNs, the VIP the non-VIP one and none of them works correctly, my connection is not because the rest of the platforms work perfectly. What's going on?

toxic python
#

!vpnscript

sharp bisonBOT
steel mortar
#

Is it really a bad thing and can be seen as a vuln if nmap vuln returns TLS (or TSL idk) as Vulnerable? Can that be exploited

toxic python
steel mortar
#

Well. I asked twice. Didn't get an answer

#

In general

raw depot
#

Hello Everyone Whenever I use metasploit and try reverse_tcp the session gets terminated and it shows nothing

#

Any idea how to solve this

toxic python
#

Show options and screenshot

raw depot
#

Nothing happens after this

idle mirage
#

guys i have a problem
i wanted to subscribe for a month with a credit card
it said the zip is invalid and it took the money xD
and i didnt get the subscription xD

raw depot
#

Any idea how to solve this

idle mirage
#

show options...

raw depot
#

Any help guys

limber kayak
#

Your LHOST is different in both pictures, did you change it?

raw depot
#

Yeah I did

toxic python
#

show your options of the eternalblue exploit module that you are running

#

why are you showing the options of a handler

raw depot
#

How to do that @toxic python

toxic python
#

options

#

but when in the eternalblue module that you were in before

raw depot
toxic python
#

get back to this screen

#

and then do show options

#

and screenshot

tardy vessel
#

So i was trying to get a one month sub and it went off with confirmation on my phone and shi,all bank stuff and in the end it said 'Card declined'

#

Why?

#

Is it banks thing?

toxic python
#

yes, thats an issue with your bank, not THM

raw depot
toxic python
#

you didnt set either your rhost, payload, or lhost

#

you need to do all 3

raw depot
#

OK

toxic python
#

just do run

#

not -j

raw depot
#

ok

toxic python
#

and reboot the box first

#

then do this all again

raw depot
#

Yeah its working now thank you @toxic python

toxic python
#

np

sly yoke
#

Will the system of point be revised ? Because I think it's not really accurate
For example, if we do a walkthrough with everything explain with a lot of questions we could earn like 300 points often more and very easily, whereas a really hard CTF with no explanation unless "good luck" will only give 60 to 120 points (depending on the number of flag) and this could lead to a "bad" leaderboard
I think the points of the leaderboard should be a way more based on the difficulty of the room instead of the number of questions
Maybe you could split questions (events ?) and points 🤷

raw depot
toxic python
#

!vpn

sharp bisonBOT
toxic python
#

vpn issue

eager fulcrum
#

!vpnscript

sharp bisonBOT
tardy vessel
#

And apparently i cant pay for a one month sub via paypal

raw depot
#

yes vpn is connected properly

eager fulcrum
#

yes vpn is connected properly
@raw depot ignore the access page

#

Run the script.

#

And apparently i cant pay for a one month sub via paypal
@tardy vessel That's not a bug. The fees are too high.

tardy vessel
#

Fees?

#

I didn't stated thats as a bug

raw depot
eager fulcrum
#

@raw depot That is not the troubleshooting script that we sent

tardy vessel
#

Am mad at my bank cuz i cant get a sub

#

Smh

eager fulcrum
#

Fees?
@tardy vessel paypal fees. There's nothing we can do to help you, phone your bank.

tardy vessel
#

Yeah

raw depot
eager fulcrum
#

Run the VPN troubleshooting script please

sacred kite
#

Why does my machine keeps disconnecting

#

I've tried changing the server , terminated the machine and deployed again but nothing works

#

The machine stays on for a few seconds and then dies

#

And this keeps happening

vernal ruin
#

!multivpn

sharp bisonBOT
#
TryHackMe
Learn how to look for duplicate instance of your OpenVPN connection.
• Step 1

Make sure you have setup your VPN connection correctly https://tryhackme.com/room/openvpn

• Step 2

Type ps aux | grep openvpn into your terminal and press enter

• Step 3

If there's more than one line (that don't start with "grep" or sudo), do the following steps

• Step 4

Type sudo killall openvpn into your terminal and press enter

• Step 5

Start the VPN with sudo openvpn <path-to-config>

vernal ruin
#

try this

eager fulcrum
#

!vpnscript is better tbh

sharp bisonBOT
sacred kite
#

Fine I"ll try this and let you know

#

Thanks btw

#

It worked 💯💯

#

Thanks again

naive dust
#

hello

#

i need tech suupport

civic lodge
#

say what's wrong and someone can help you

naive dust
#

ok

#

I'm a small YouTuber and I like to make videos that come in my thoughts. I use kali Linux on my VirtualBox and it worked perfectly fine. I then saw a "how to install kali Linux on windows 10 with wsl2" and I watched it and done it but the problem is wsl2 support networking so I wanted to switch back to VirtualBox. now, as soon as I boot up Kali Linux it is just a black screen. I went on GitHub and found a code "VBoxManage setextradata global "VBoxInternal/NEM/UseRing0Runloop" 0" it worked. now I had to make a video so I just on hyper v and windows subsystem for Linux, while I was making that I couldn't get back, please help.

eager fulcrum
naive dust
#

k

naive dust
#

[removed]

#

[removed]

#

[removed]

#

moved to room bugs

random robin
#

Hey

#

The rsa room shows its private

#

Is that an error or wat

eager fulcrum
#

Oof they privated it

#

I can fix that once I've eaten

random robin
#

Wuw lol

#

Take your time

#

We can wait for a day or two haha

placid cobalt
#

Hey, I was looking to subscribe but its already 8/9, do you know if the subscription will go off at 30/9 or only at 8/10?

wind wedge
#

The 8/10 if you resubscribe

toxic python
#

wait what, no itll go for 30 days, i thought

#

OH

#

IGNORE ME

#

IM AMERICAN

#

LOL

placid cobalt
#

i'm so confused xD

toxic python
#

30 days

vagrant sphinx
#

Where do I need to ask this question about resetting a room? Email address?

toxic python
#

itll go from 8/9-8/10 @placid cobalt

#

@barren birch @vagrant sphinx

placid cobalt
#

Ok, ok thanks! xD

vagrant sphinx
#

Am I allowed to ping the person directly?

#

The mod

toxic python
#

i just did it for you, just wait a second

#

i just did it for you, just wait a second

barren birch
#

...

toxic python
#

for muir to answer

#

heyooooooooooooo

#

I am Blob!

vagrant sphinx
#

oh I see what you did.

#

I was wondering how one can go about resetting rooms which has been completed and work on them again at a later point in time

eager fulcrum
#

An admin, muir, cry, spooks, or the room creator can reset your progress in a room

#

They need your username.

barren birch
#

Oh yeah, Cry and Spooks can do that too.

#

Someone ping Cry

toxic python
#

@sharp bear

fast timber
#

Who can I talk to if I have questions/interests about the classroom platform/subscription vouchers?

sharp bear
#

Who can I talk to if I have questions/interests about the classroom platform/subscription vouchers?
@fast timber > Who can I talk to if I have questions/interests about the classroom platform/subscription vouchers?
@fast timber > Who can I talk to if I have questions/interests about the classroom platform/subscription vouchers?
@fast timber skidy / ashu

#

Discord is on crack

eager fulcrum
fast timber
#

Thank you @eager fulcrum , wanted to see first if I could get a direct message on here first

eager fulcrum
#

Ashu's around I think

naive dust
#

I'm on a windows machine and I'm trying to get access to the OpenVPN system. I've tried googling it, but I don't think anyone else has really had my problem before. When I input the IP that it gives me in OpenVPN in my browser, it outputs that it refused to connect. Is there any solution?

eager fulcrum
#

That's probably the wrong IP @naive dust

#

You're in the welcome room, correct?

naive dust
#

Yes

eager fulcrum
#

Did you click the deploy button to spin up a VM to connect to?

naive dust
#

Ah, I didn't notice that button. Thanks

eager fulcrum
#

Happy hacking

naive dust
#

Im on Burpsuite and im not able to do anything without switching off the proxy, i downloaded the certificate as well so i'm not sure if im meant to have this or

eager fulcrum
#

Intercept

#

Disable it, otherwise you have to forward each request

naive dust
#

ah alright

#

thank you

naive dust
#

I'm onto the Learn Linux course, but when I try and access the machine from the IP the room gives me, it cannot connect. I have already tried doing so with the Welcome course as well, and that one worked perfectly.

toxic python
#

How are you trying to connect

naive dust
#

Through my web browser with the IP outputted by the room when I start the machine

eager fulcrum
#

Keep working through the room

#

The VM doesn't run a webserver

naive dust
#

ah, thanks

ripe ferry
#

Hello and good morning. I can't download the configuration file for openvpn, it continiusly prompts me to "404" page.

eager fulcrum
#

Try a different server

#

But first try regenerating and waiting 30 seconds

ripe ferry
#

It worked, thanks man

eager fulcrum
#

Happy Hacking

sturdy fern
#

Hi, I cannot connect to an attack machine today, I get an authentication failure

proud swan
#

Hi all!
I get disconnected all the time on my kali in the browser so I can´t get anything done.
Is there any know issue?

sturdy fern
#

Hi, I cannot connect to an attack machine today, I get an authentication failure
@sturdy fern Ok seems to be resolved now. I can get in

stray gyro
#

Hello hello, Im looking to create a ftp server running locally that would reject connection other than from localhost but would accept port forwarding. However whenever I log into the ftp server through port forward I get the following error:
500 Illegal PORT command
Did anyone already solve this ?

#

thanks 🙂

stray gyro
#

nevermind, found it

sharp plaza
#

Hello i think that there's a bug in the room Advent of Cyber day 17 can't find the password using hydra with the rockyou wordlist

bronze vale
#

If it says its within the first 30 passwords, it's not.

#

It's about 900k in.

#

Also if you think there's a bug post it in bugs...

sharp plaza
#

oww okey thank youu ❤️

bronze vale
#

but it's known so 🤷‍♂️

#

It is also not being fixed

sharp plaza
#

no problem as long as i know now haha

summer wigeon
#

it appears there different versions of kerbrute - one by impacket and the other by ropnop on github. trying to answer the first question for the attacktivedirectory and it wants the one by ropnop but it walked you through the impacket install first. so if i run this, i get no response after but the kerbrute is still referencing the impacket cmd: " go get github.com/ropnop/kerbrute"

bronze vale
#

I have no idea what you're stuck on but it seems like a question for #general

summer wigeon
#

@bronze vale thanks, all i know either is that im stuck right now

bronze vale
vital tinsel
#

Hi

#

How do you guys extract file from a png image .. since steghide doesn’t support png format

toxic python
#

There’s a tool for it

#

Don’t remember what it’s called

#

But I’m sure google does

bronze vale
#

Binwalk does it, I think

#

But you should try googling

vital tinsel
#

I used binwalk .... I got zlib file and stuck there ... I have kinda passpharse .. so I’m finding what can I do ..

toxic python
#

But you should try googling

vital tinsel
#

Yeah .. I googled

bronze vale
#

Are you sure

vital tinsel
#

Yeah .. it making me read write ups :’(

#

NVM .. I found some stuffs .. thank you all

toxic python
#

🥳

patent bison
thorn stag
#

This is bothering me because I want to mark this as complete, I know it's simple but here goes. I'm in the OpenVPN room. last task. I'm currently connected to the VPN. I follow the instructions: You can check if you're connected to our network by a green tick next to connected on the Network Information table on the access page. I Have the green tick!!!
Now verify that you're connected by deploying a machine and accessing its website. Go to http://machine_ip/ - can you see a website? I don't see a website. I can access the Kali machine in the browser but it doesn't accept that IP/URL as my final answer.

ocean heron
#

does this thing makes any sense ? "YWJjZHY0ZXI5bGwxIXNz" its authentication cookie value (very different from the writeups) room=advent of cyber
can anyone help me with this?

quaint prism
#

evening all, i'm doing day 19 of the christmas advent

#

trying to learn more and using dirbuster to try to bruteforce the endpoint given in the challenge

#

'api' is in the small directory wordlist.....but dirbuster never detects the /amd/cmd endpoint?

#

on the plus side, this room was my first reverse shell 👍

thorn stag
#

ok so, the answer is..., it took 30+ minutes for my flag to generate.

silver rapids
#

Who would I contact to get my university on the university list of THM?

toxic python
#

email support@tryhackme.com

silver rapids
#

awesome tyty

bronze vale
#

i complete a series, but didn't get this badge
@patent bison this is known I believe it’s being fixed

#

This is bothering me because I want to mark this as complete, I know it's simple but here goes. I'm in the OpenVPN room. last task. I'm currently connected to the VPN. I follow the instructions: You can check if you're connected to our network by a green tick next to connected on the Network Information table on the access page. I Have the green tick!!!
Now verify that you're connected by deploying a machine and accessing its website. Go to http://machine_ip/ - can you see a website? I don't see a website. I can access the Kali machine in the browser but it doesn't accept that IP/URL as my final answer.
@thorn stag what URL are you going to?

patent bison
#

@patent bison this is known I believe it’s being fixed
@bronze vale nope, i didn't get that still

bronze vale
#

being fixed

undone rain
#

@deep trellis Hey, i am trying to change my email on the webpage, but says its not valid, i try to change it to my school email, can you help me out?

zealous yoke
#

Hey! Sounds like something we might be able to help out with here 👍

#

Are you trying to apply / redeem your student discount for clarification?

undone rain
#

yes i do 🙂

zealous yoke
#

Hehe no worries, just wanted to make sure that was the jist of it

#

They'll be able to apply it manually for you

#

!docs verify

sharp bisonBOT
zealous yoke
#

but the above is the tl;dr of it all ^^

undone rain
#

okey ty alot mate, ill do it right away 🙂

zealous yoke
#

👍 sounds good!

covert ingot
#

Hi - having some trouble connecting to my THM machine - getting the following message the last few days: New connection has been rejected with reason: Authentication failure. Tried restarting but same problem - able to connect from local VM via OpenVPN but having trouble with netcat listener so use the THM machine for that. Any ideas? Thanks

bronze vale
#

Here’s the fix:

#

Terminate the attack box, load one of the Kali VMs, terminate the VM you just loaded and boot the attack box up again :)

covert ingot
#

Thanks @bronze vale - will give that a try

#

Awesome that worked - thanks

dusk snow
#

I get a 404 error when I try downloading my config, any idea?

eager fulcrum
#

Click regenerate, wait 30s, try again?

#

Failing that, try a different server

dusk snow
#

Alrighjt

#

THanks

#

Also, while connected to the vpn do you guys monitor traffic?

zealous yoke
#

The THM VPN only interfaces you to the network, your actual traffic otherwise still goes out via your ISP etc (:

dusk snow
#

Oh sick

zealous yoke
#

Traffic within the THM network is logged granted

#

The only instance you're thinking of is with the "My Machine", where both external (internet) and internal (thm network) traffic is monitored 👍

dusk snow
#

so the traffic that is logged is only the traffic related to the room you are in

zealous yoke
#

More or less yes

#

Anything from your THM IP address to anything else that's on the THM network

dusk snow
#

So I could be taking my class in the background without that traffic getting monitored?

zealous yoke
#

Yup (: no problems

dusk snow
#

Thanks!

zealous yoke
#

As exciting as your class is I imagine 😅

dusk snow
#

I wish

zealous yoke
#

xD

kindred slate
#

Hi, is it possible to change my username?

bronze vale
#

Email support@tryhackme.com

kindred slate
#

ah thanks

dusk snow
bronze vale
#

Terminate the attack box, load one of the Kali VMs, terminate the VM you just loaded and boot the attack box up again :)
@bronze vale

zealous yoke
#

@bronze vale seeing as a) you're the latest one to mention a work around and b) the only person I think who knows it. Is this required when deploying the attackbox?

bronze vale
#

Not everyone has this issue but when it does occur this is what I have found. I haven't tested much, I've been meaning to but you can just terminate and redeploy the attackbox (that doesn't always work). I'm sure it is something on Skidy's end.

#

It is appearing more now though. Luckily it isn't with non subs. If non-subs have it occur they either have to ssh in or Skidy needs to fix it :p

zealous yoke
#

Mhh yeah okies coolio

#

Thanks Jabba :3

bronze vale
#

No problem :3

dusk snow
#

So Im trying to use rockyou.txt in the kali linux vm but I always get this issue

bronze vale
#

You can't open it

#

If that's what you're trying to do.

dusk snow
#

But will hascat be able to read it?

bronze vale
#

Mhm

#

Just use the correct command :)

#

Also

dusk snow
#

k ty

bronze vale
#

Don't use hashcat on the THM VMs

#

It will be extremely slow and is advised against

dusk snow
#

So where should I use it?

#

Local desktop?

bronze vale
#

Yup!

dusk snow
#

ight

#

SHould I use cain then?

bronze vale
#

Just install hashcat to your local machine

dusk snow
#

I am running windows

bronze vale
#

It's on windows :p

dusk snow
#

O 😐

#

Jon:1000:aad3b435b51404eeaad3b435b51404ee:ffb43f0de35be4d9917ac0cc8ad57f8d:::

#

Wrong format?

#

And I change it

#

aad3b435b51404eeaad3b435b51404ee:ffb43f0de35be4d9917ac0cc8ad57f8d

#

Different issue

bronze vale
#

Have you tried using johntheripper? The token length exception usually means you're giving it the wrong hash

#

I think you're missing something

languid niche
bronze vale
#

Are you connected to the VPN?

languid niche
#

yess

bronze vale
#

Can you run this please

#

Oh wait

#

I see the error

languid niche
#

i think i see too

bronze vale
#

You put "https" instead of "http"

languid niche
#

oh yea

#

sorry about that

#

mb

bronze vale
#

No worries 😄

languid niche
#

a

#

i changed but the error continues

bronze vale
#

:0

languid niche
#

i'll restart all

bronze vale
#

Are you able to access the website?

languid niche
#

yess

#

wtf

bronze vale
#

Hmm

languid niche
#

i run the command again

#

and work

bronze vale
#

oh awesome

#

Happy hacking!

languid niche
#

ty bro

dusk snow
#

@bronze vale Have you ever done the BLue task?

bronze vale
#

Do you mean the Blue room?

dusk snow
#

yep

#

If so do you know the password

#

As I understadn the concept of hashiung it

bronze vale
#

Send me a DM with the command you used :3

dusk snow
#

yessir

#

or mam

bronze vale
#

Just call me Jabba :)

dusk snow
#

hashcat -a 0 -m 900 jon.hash rockyou.txt

bronze vale
#

Dm it to me

silver belfry
#

hello people

brave thicket
#

I have an issue opening machine_ip in the browser after connecting to the OpenVPN. When I entered the deployed machine IP it says refused to connect. Any help is much appreciated.

toxic python
#

!vpnscript

sharp bisonBOT
eager fulcrum
#

I have an issue opening machine_ip in the browser after connecting to the OpenVPN. When I entered the deployed machine IP it says refused to connect. Any help is much appreciated.
@brave thicket If you're still seeing MACHINE_IP you need to deploy the machine in that room

brave thicket
#

I did deployed so that I got the IP address

eager fulcrum
#

Then it would have replaced MACHINE_IP on the page

brave thicket
#

I restarted my system, got new MACHINE_IP after deploying, even though I am not able to connect.

eager fulcrum
#

What are you deploying?

#

What are you trying to do with it? @brave thicket

brave thicket
#

I am doing Task: Learn Linux and deployed the machine from this room so to access the MACHHINE_IP of this room, I connected through the OpenVPN and entered the MACHINE_IP in the browser.

eager fulcrum
#

Ok, keep working through the room

#

You cannot open it in your browser, and you were not told to open it in your browser

#

You're told how to access the machine

brave thicket
#

Okay, then what is the point of using OpenVPN here?

modest grove
#

I am doing the intro to linux

#

and the password to shiba isn't working

brave thicket
#

how did you connect to your machine?

eager fulcrum
#

Okay, then what is the point of using OpenVPN here?
@brave thicket You need to be on the TryHackMe network

#

The VPN connects you to the network

#

You then SSH into the VM, which needs to go over the VPN

#

and the password to shiba isn't working
@modest grove Username isn't shiba

modest grove
#

it's mine?

eager fulcrum
#

it's mine?
@modest grove No. Read the material again please

#

how did you connect to your machine?
@brave thicket You're told. Keep working through the tasks.

brave thicket
#

@brave thicket You're told. Keep working through the tasks.
@eager fulcrum Sure. I'm. Thanks

#

Perfect. Thank you so much. I'm in now.

spare kite
sharp bear
#

? What’s up

eager fulcrum
#

At a glance, they're complaining their username got cut off? Because oof

sharp bear
#

🤷‍♂️ character limit

#

I assume they’re not going to be changing it

turbid bison
#

i can not download open vpn config file
it showinig a 404 error

#

pls help

eager fulcrum
#

Click regenerate. Wait 30 seconds. Try again.

#

If that doesn't work, please try a different VPN server

turbid bison
#

ok

eager fulcrum
naive dust
#

wrong channel my bad

jovial lagoon
#

hello,

#

ty @eager fulcrum

eager fulcrum
#

Well I'm glad I could help. Not sure what I did. But I'm glad it helped.

modest grove
#

I read the instructions wrong and I am now using the correct syntax but when i put the host ip in it says ssh: connect to host 10.10.160.241 port 22: Connection timed out

south river
#

I'm in the Juice Shop room, and there doesn't seem to be a question before the answer fields?

#

No question, just asks for an answer?

#

Also, I can no longer access my THM hosted machine

sharp bear
#

are you using the kali machine or attack box

south river
#

Attack box

#

I was able to get into my Kali machine

sharp bear
#

there may be some problems with it again not sure it’s been acting weird

#

and the OWASP room seems to lack exactly what it wants for questions? So I’m assuming that the answers are just flags that you find

south river
#

Ah. Gotcha...... that makes sense. I guess I'm tired tonight I was looking for a question to answer..... a flag makes sense....

naive dust
#

OWASP Juice shop flags you get are the anwser

primal thistle
#

hey guys. so currently i have a box room saying it was made private and im unable to leave it to access other rooms. how do i fix this

placid mango
#

You can join other rooms without leaving that room I believe.

primal thistle
#

I have it deployed so it wont let me deploy another machine

placid mango
#

You have to stop that machine then.

primal thistle
#

I cant tho

placid mango
#

Terminate.

#

I cant tho
?

primal thistle
#

No terminate button. only a screen saying the room was made private. Whenever i try to deploy another machine it says to terminate the private one first, but it doesnt give me anyway to terminate it.

placid mango
#

Let me find szy's pinned messages to stop machines.

primal thistle
#

ty ❤️

placid mango
#

Try this.

primal thistle
#

it worked tysm

placid mango
#

Yw.

kindred slate
#

Can someone share with me THM's support contact

#

or email

eager fulcrum
#

We can try and help you here for many things

kindred slate
#

I had some issues with my account that I need to contact THM directly

eager fulcrum
#

Then there's the email

kindred slate
#

thanks. much appreciated

ivory brook
#

Hey, are there rooms that teach us to check executables for malicious codes?

naive dust
#

HMMMMMMM

ivory brook
#

i dont like these vibes tbh

#

hahaha

eager fulcrum
#

Hey, are there rooms that teach us to check executables for malicious codes?
@ivory brook Probably a question for #general

ivory brook
#

thanks ig =))

signal sigil
#

Hey

#

I'm connected to THM's openvpn server

#

but I still see in whatismyip my original external IP at home

#

shouldn't it route me through a "fake" external IP?

eager fulcrum
#

No @signal sigil

#

The THM VPN does not touch your internet traffic

signal sigil
#

@eager fulcrum Ah k. Thank you!

stable sapphire
#

not able to launch the tryhackme attackbox or kali linux....it says starting then its getting halted

foggy pivot
#

Hello everybody, I keep getting this error after i connect to the network any help would be much appreciated thank you in advance!! Authenticate/Decrypt packet error: cipher final failed

wind wedge
#

It’s a warning it doesn’t interfere with your connection

foggy pivot
#

@wind wedge well after i get it i cant communicate with the machines on the network so is there anyway to solve it

wind wedge
#

Regenerate your config file and it should work

#

Unless you’re trying to ping a windows machine then most don’t respond

bronze vale
#

hipptyhophop, it sounds like there's another issue.

#

Please run this script to diagnose any issues, if none appear either:
Troubleshoot manually or,
There are no issues

#

The script is on this GitHub page:

#

!vpnscript

sharp bisonBOT
bronze vale
#

Read the information on the GitHub page* to get accurate information on your VPN issue.

foggy pivot
#

thank u ill check it out and

#

Hey @bronze vale i get this when i run the script

#

[-] Something went wrong -- please ask for further assistance in the TryHackMe Discord server, subreddit, or forum

bronze vale
#

Strange

foggy pivot
#

maybe its beacuse im running my gobuster and nmap at the same time

#

lets me try running one scan at a time

#

and my ip show on the access page and says im connected

wind wedge
#

Running nmap and gobuster at the same time won’t cause it to interfere

#

Maybe you might have multiple vpns running

foggy pivot
#

nope

#

im sure of that

wind wedge
#

Type ip addr and see if it shows a tun1

foggy pivot
#

i did if config and only tun0

#

because !P was invalid

wind wedge
#

Hmm strange close the von and open it back up that might work if not you might have to regenerate your config file

foggy pivot
#

i tried regenning and it didnt but since i sent less traffic from my machine i haven't had any errors

#

fingers crossed

bronze vale
#

The HMAC is not an error. You claimed that when it popped up your connection was running slower which is most likely just a coincidence

foggy pivot
#

not slower but i couldnt connect but yes and i got another error so i restarted the openvpn now

bronze vale
#

What’s the error

foggy pivot
#

TLS Error: local/remote TLS keys are out of sync: [AF_INET]18.202.129.195:1194 [6]

soft lodge
#

hey guys

#

i have a problem

#

when i run Kali Linux GNOME on high resolution screen it lags alot

#

basically linux Systems in general

#

does anyone know how to fix it ?

foggy pivot
#

hey @bronze vale i also got this Packet error: packet HMAC authentication failed

bronze vale
#

Not related to tech support @soft lodge

soft lodge
#

oh

#

sorry

bronze vale
#

hey @bronze vale i also got this Packet error: packet HMAC authentication failed
@foggy pivot you’ve been told multiple times, it’s a warning not an error

soft lodge
#

what is the best place to ask ?

bronze vale
#

sorry
@soft lodge it’s fine :) try asking in #general :D

foggy pivot
#

Sry

soft lodge
#

thanks ❤️

dark hedge
#

Hello, attempting to work through the Metasploit room/video... the video shows "search eternal" then "use 3" to load exploit/windows/smb/ms17_010_eternalblue_win8. When I try to use that command or other variants, I receive the following error "-] Failed to load module: exploit/windows/smb/ms17_010_eternalblue_win8".... curious if this is an intentional hurdle or an issue with my VM?

toxic python
#

it doesnt say it do the win8 version of it does it? 🤔

frail idol
#

I had a subscription for the Throwback course. It was stil available for 17days but I can't get into it. It brings me to the standard paying page...

supple sonnet
#

@deep trellis or @vapid dawn are you two available to help?

frail idol
#

I've got a message error saying: "Owner has made this room private."

#

It seems that I can still access the pages so it's not fully death

deep trellis
#

I had a subscription for the Throwback course. It was stil available for 17days but I can't get into it. It brings me to the standard paying page...
@frail idol Have you joined the room?

#

@frail idol ^ Otherwise, that's your username? Let me take a look.

frail idol
#

@deep trellis It's fixed! Thanks!

deep trellis
#

Ah okay, cool cool.

shy heron
#

Hello, I have a problem while doing a room, i dont get any points.

#

its OWASP juice shop room

#

and i did 3 questions but didn't get any points for them

#

the questions were task 2. they are all challenge questions

eager fulcrum
#

Rooms can be set not to award points.

#

There's no such thing ws challenge questions. The room type determines whether it's a challenge or a walkthrough.

shy heron
#

oh ok

#

thank you

elder pivot
#

Hello, I have problem while doing rp:metasploit room

I can't get any meterpreter session for the machine
I followed all steps
But no session created

[] Exploit running as background job 0.
[
] Exploit completed, but no session was created.

[*] Started reverse TCP handler on 10.9.146.150:4444

And it stucked here
Help me

ionic shard
#

Hello all, can anyone advise whether the new Juice Shop is bugged?

eager fulcrum
#

It's not bugged

ionic shard
#

I have completed every task, but I have been unable to get the flag for 7.2 to pop for like 2 weeks.

#

Is there some browser setting I need to changed?

#

*change

elder pivot
#

@ionic shard bro help me

I stuscked in metasploit room

Icant get meterpreter sessions

ionic shard
#

Elaborate?

elder pivot
#

@ionic shard
msf5 exploit(windows/http/icecast_header) > run -j
[] Exploit running as background job 5.
[
] Exploit completed, but no session was created.

[*] Started reverse TCP handler on 10.9.146.150:4444
msf5 exploit(windows/http/icecast_header) >

I stucked here

ionic shard
#

looks like wrong payload

bronze vale
#

Don’t use -j

naive dust
#

I’m trying to install seclist [apt-get install seclists] but i get the outcome “Package seclists has no installation candidate”

eager fulcrum
#

@naive dust #general as that's not THM specific please

naive dust
#

ok

lofty hornet
#

@naive dust did u update your repos first?

naive dust
#

i got it figured out thanks

cunning valve
#

So, I used my vm to connect to OpenVpn
Got it up and running
Then disconnected it
But now my host machine isn't able to connect through openvpn

#

Tried switching up servers didn't work :(

worthy sorrel
#

Um, what did the host machine say when you tried to connect?

cunning valve
#

Exiting due to fatal error

placid mango
#

!vpnscript

sharp bisonBOT
placid mango
#

Try this.

ripe ferry
#

Room: Buffer Overflow. Overflow 4. I found all the badchars and connected to the machine using the exploit. Still the tryhackme website says my badchars are wrong

#

Its 2 hours worth of work. I really want my points hahaha

#

I can give proof, of course

#

I can even give the shellcode, just want the points hahaha

frail idol
zealous yoke
#

Interesting

frail idol
#

No! Didn't get a response

#

I'm using the VPN of the Throwback Network. What I can do is making connections with the website but no listeners, reverse shells, etc.

#

Until a couple of days ago it actually did work

#

When I'm using the VPN of the normal THM on the other hand I can access the 10.10.10.10

zealous yoke
#

Ah that makes sense

#

Yeah, at the moment the Throwback VPN is completely isolated from the rest of the THM network

ripe ferry
#

Yes, but why not helping me. Just want the points and i can i even give proof :/

zealous yoke
#

The troubleshooting script doesn't check for issues with Throwback VPN too well

#

I haven't done the room personally, so I'm not in a position to help I'm afraid @ripe ferry

ripe ferry
#

Its okay man. Nevermind. You are polite, that's enough for me. Keep rockin'

zealous yoke
#

Sorry buddy!

#

Someone in #room-help might be around atm who may of done it

#

least not, that's the best place for it anyway for when someone who has is around ^^

formal gulch
#

can anyone help me with the payment issue i am having while subs to THM ...It is giving the error that payment cannot be completed..and i am using a VISA card..from India

bronze vale
#

Email support@tryhackme.com

formal gulch
#

thanks

twilit patio
bronze vale
#

Have you waited for it to deploy?

twilit patio
#

The attack box is staying at idle and not working used many times before but not now

#

About 5 or so

deep trellis
#

Try now?

twilit patio
#

All good now I see its init

#

Refreshed the page before trying again and then it worked

deep trellis
#

I know the issue - fixing it now.

elder pivot
#

msf5 post(multi/manage/shell_to_meterpreter) > run

[!] SESSION may not be compatible with this module.
[] Upgrading session ID: 1 [] Starting exploit/multi/handler [] Started reverse TCP handler on 10.9.146.150:1234
[-] Post failed: Rex::Post::Meterpreter::RequestError stdapi_sys_process_execute: Operation failed: The system cannot find the file specified.[-] Call stack:
[-] /usr/share/metasploit-framework/lib/rex/post/meterpreter/extensions/stdapi/sys/process.rb:173:in execute' [-] /usr/share/metasploit-framework/lib/msf/core/post/common.rb:114:in cmd_exec'
[-] /usr/share/metasploit-framework/modules/post/multi/manage/shell_to_meterpreter.rb:164:in `run'
[
] Post module execution completed
msf5 post(multi/manage/shell_to_meterpreter) >

Blue - escalate
I stuck here
How to solve this error??

gritty gyro
#

been using Tryhackme for second day now. pretty bad experiences so far unfortunately. Free machine doesnt work at all for me so I use my own vm with openvpn. Connection sometimes random disconnects and i have to start all over again and when im SSH'ed it randomly freezes and i have to wait several minutes before it starts responding again.

#

Could this be because some rooms are overloaded? would it be better when i have VIP?

bronze vale
#

Could you explain why the free machines do not work?

gritty gyro
#

The machines do not deploy

#

no matter how long i wait or refresh

bronze vale
#

@deep trellis

gritty gyro
#

its holding me back from getting vip because i dont want to have the same problem

bronze vale
#

You will have to explain your issue to Skidy.

deep trellis
#

The free machine issue has been fixed, sorry about that @gritty gyro - I know the issue and am working with our cloud provider now to have it resolved.

#

What's your THM username, I'll let you have another free machine deploy for today so you can test it.

gritty gyro
#

its CryptoBro

bronze vale
#

Thanks Skidy ❤️

gritty gyro
#

Thanks skid when can i try deploying it again

deep trellis
#

Try now?

gritty gyro
#

should i disconnect openvpn or doesnt matter?

deep trellis
#

It doesn't matter:)

gritty gyro
#

yes it work! thanks

deep trellis
#

Awesome, happy hacking:)

#

Thanks Jabba for the @, wouldn't have seen it otherwise.

gritty gyro
#

😆

bronze vale
#

No problem :)

gritty gyro
#

is a vip vm faster than the free or are they the same?

#

ow nm isee

graceful garden
#

Yep 🙂

bronze vale
gritty gyro
#

i subscribed 😉

deep trellis
#

i subscribed 😉
@gritty gyro Awesome, out of interest - what was it for? What was the main purpose of subscribing?

gritty gyro
#

faster and unlimited VM acces mostly

#

nmap scans do seem to take a lot of time to run. is that normal?

bronze vale
#

What command are you using?

gritty gyro
#

nmap -A -sC -p- -v 10.10.8.239 (added the -v so i could see progress because first i saw nothing happening)

bronze vale
#

There's two things you can do

#

Because you're using -p- which is scanning like 65k ports

#

What I do is I run nmap <machine_IP then I run nmap -p[list_ports] -A <machine_IP>

#

Or you can install rustscan which scans all 65k ports extremely fast then pipes it into nmap for you :3

gritty gyro
#

oke thanks ill try

#

running seperatly seems like good idea

bronze vale
velvet maple
#

Hi ! Impossible to connect at OWASP TOP 10 box... Is there any maintenance on it ?

eager fulcrum
#

@velvet maple there can't be maintenance on a box on thm

#

You don't share instances

bronze vale
#

Are you connected to the VPN?

velvet maple
#

yup

eager fulcrum
#

Give it a few minutes to boot and start the webservers

velvet maple
#

ok i'm trying again in 5 minutes then 🙂

meager trail
#

Hi , i started "Linux Challenges"
How can i copy a text "the flag" from the virtual machine to the local pls ?

velvet maple
#

Do you use the browser-based machine ?

meager trail
#

yes

eager fulcrum
#

SSH into the box.

velvet maple
#

and then you can copy/past directly from your terminal with Ctrl+Shift+C / Ctrl+Shift+V

#

On windows it's a right click to paste and select + [ENTER] to copy less I'm wrong

#

There is definitely a problem with OWASP top 10 machine => Port is closed (nmap scan) and there are only port 80 & 22 open

eager fulcrum
#

Did you deploy the machine for the right day?

#

There's several machines for that room

velvet maple
#

yup

#

well I'm killing it and I'll see later ;p

rancid lodge
#

I can't verify myself

#

@zealous yoke Can you remove a token for me?

toxic python
#

@barren birch

barren birch
#

I am summoned

#

Why am I summoned

rancid lodge
#

Muriland Oracle can you remove a token for me

#

and can i DM you

barren birch
#

What account is the old token attached to?

rancid lodge
#

Or first help Radiant than summon me ok

barren birch
#

Bob was calling me to deal with your token 😆

rancid lodge
#

aha

#

ok

toxic python
#

~~and I just wanted to say hi ~~

#

Also I’m Blob. Not bob

barren birch
#

Hi Bob!

#

What account is the token attached to? 🙂

rancid lodge
#

D4krM4773r#8879

#

I switched account

barren birch
#

Dare I ask why?

rancid lodge
#

IDK

#

I just wanted another acc

#

but now the acc is removed

barren birch
#

Could you log in with the old one just to confirm it? Then yeah, we can get it switched over 🙂

rancid lodge
#

is that a problem

#

I will try my best

barren birch
#

Unless the old one is deleted, in which case DM me with a screenshot of the Discord email showing that. Either way, not a problem though

rancid lodge
#

ok

placid cobalt
#

Hi so I was learnning about tmux and apperently I got my key binds set at emacs instead of vim. Searched a lot about this problem, and the solutions I found so far haven't worked. Has anyone solved this problem before?

feral dock
#

Modify your tmux.conf and change the keybindings to vim like

eager fulcrum
#

Also, #general please as it's not directly THM related @placid cobalt

placid cobalt
#

I was doing the tmux room, thats when I found about this problem. But sorry to bother anyway.

zealous yoke
#

Ah sorry I was only just now able to see the ping for this @rancid lodge

rancid lodge
#

Muriland helped me

zealous yoke
#

👍

barren birch
#

!tokenremove @naive dust

sharp bisonBOT
#

Done, no more entry with UID "691618478662221874".

marsh hemlock
#

Hey, I just paid via CC and the payment was taken from my bank. Although got error message "Couldn't verify your postcode" and my account remains on the free version

#

Username: sam0jones0

barren birch
#

@deep trellis this one's for you 🙂

marsh hemlock
#

I have a screenshot from my bank app, although I guess that wouldn't be of much help. I'll just wait for Skidy to have a chance to look into it 🙂

short loom
#

My friend wants to start doing TryHackMe, he wants to work on his own machine, not the browser based. The only problem is he has no machine, I have tried connecting to the VPN with a VM and it never works, does anyone know if there is a way to allow a VM to connect the the VPN?

eager fulcrum
#

VMs are allowed

#

They're no different to any other machine

short loom
#

Does it matter if it is being hosted using vmware or VirtualBox, and doesn't connect directly to your network.

eager fulcrum
#

No

#

But run the VPN directly in the VM

#

The hypervisor doesn't matter.

short loom
#

ok I am going to get him to try it on his machine, and see if it works, thanks

livid zenith
#

Hey there, I can't connect to a deployed machine in the Advent of Cyber room. Ping gives me timed out.

#

Sometimes the VPN just reconnects for some reason pepeshrug

eager fulcrum
#

Not all machines respond to pings

#

Not all machines run webservers so you can't open the IP in your browser

#

What task?

#

!vpnscript might help

sharp bisonBOT
livid zenith
#

Task 6

#

McElferson calls you to take a look at the website to see if there’s anything you can do to help. Deploy the machine and access the website at http://<your_machines_ip>:3000 - it can take up to 3 minutes for your machine to boot!

eager fulcrum
#

IP?

livid zenith
#

10.10.69.24

eager fulcrum
#

VM is working

livid zenith
#

Hmm, interesting. Wonder why the vpn keeps reconnecting.

eager fulcrum
#

Run the script!

livid zenith
#

I am on OS X

#

[-] System doesn't use apt -- please install OpenVPN manually
[-] Exiting

#

I am using OpenVPN Connect.

eager fulcrum
#

Oh. Don't use macos, ez fix

livid zenith
#

It worked fine for quite some time.

eager fulcrum
#

I can't really help you troubleshoot on mac because it's not Linux

livid zenith
#

well, technically it's still a unix core

eager fulcrum
#

I'd try a reboot?

#

Yeah but it's not Linux

#

Gnu's not Unix

livid zenith
#

I could post the ovpn logs

#
Fri Sep 11 21:52:21 2020 Connected via utun6
Fri Sep 11 21:52:21 2020 LZO-ASYM init swap=0 asym=0
Fri Sep 11 21:52:21 2020 CONNECTED : 34.253.19.14:1194 (34.253.19.14) via /UDPv4 on utun6/10.11.16.43/ gw=[10.11.0.1/]
Fri Sep 11 21:52:21 2020 COMPRESSION_ENABLED : Compression enabled.  This may be a potential security issue.
Fri Sep 11 21:56:20 2020 Session invalidated: KEEPALIVE_TIMEOUT
Fri Sep 11 21:56:20 2020 Client terminated, restarting in 2000 ms...
Fri Sep 11 21:56:22 2020 RECONNECTING
Fri Sep 11 21:56:22 2020 Contacting 34.253.19.14:1194 via UDP
Fri Sep 11 21:56:22 2020 WAIT
Fri Sep 11 21:56:22 2020 Connecting to [34.253.19.14]:1194 (34.253.19.14) via UDPv4
Fri Sep 11 21:56:22 2020 CONNECTING
Fri Sep 11 21:56:22 2020 Tunnel Options:V4,dev-type tun,link-mtu 1602,tun-mtu 1500,proto UDPv4,comp-lzo,keydir 1,cipher AES-256-CBC,auth SHA512,keysize 256,tls-auth,key-method 2,tls-client
Fri Sep 11 21:56:22 2020 Creds: UsernameEmpty/PasswordEmpty
Fri Sep 11 21:56:22 2020 Peer Info:
shadow ocean
#

Thanks 🙂

inner hound
#

Any way to reset an account username?

eager fulcrum
inner hound
#

Thanks

thin pasture
#

I always get the same error messages when trying to use rustscan... Can anyone point me into the right direction in what these mean and potential fixes?

.----. .-. .-. .----..---.  .----. .---.   .--.  .-. .-.
| {}  }| { } |{ {__ {_   _}{ {__  /  ___} / {} \ |  `| |
| .-. \| {_} |.-._} } | |  .-._} }\     }/  /\  \| |\  |
`-' `-'`-----'`----'  `-'  `----'  `---' `-'  `-'`-' `-'
Faster Nmap scanning with Rust.
________________________________________
: https://discord.gg/GFrQsGy           :
: https://github.com/RustScan/RustScan :
 --------------------------------------
Real hackers hack time ⌛

[~] The config file is expected to be at "/home/jeffrowell/.config/rustscan/config.toml"
[!] File limit is lower than default batch size.
         Consider upping with --ulimt. 
         May cause harm to sensitive servers
[!] Your file limit is very small, which negatively impacts RustScan's speed. Use the Docker image, or up the Ulimt with '--ulimt 5000'. 
eager fulcrum
#

@thin pasture I'd recommend asking in the rustscan discord. This channel is for directly THM related tech support. Also, please don't post discord invite links (I'm aware it's a part of the rustscan output)

pearl locust
#

Hi there, I am having troubles connecting to my OpenVPN. I came across the thm-troubleshoot script, ran that and got an error saying tum0 interface does not exist. The script tried connecting for me but still did not work. I tried regenerating my OpenVPN config and checking my system time. Ended up refusing to connect again.

Any ideas?

timid charm
#

Any idea on how to fix this

#

Cant type commands once I do openvpn

eager fulcrum
#

Open a new terminal.

lofty hornet
#

guys
hope u doin well

#

how much it takes that the level updated?
like from omni to wizard
in discord i mean

eager fulcrum
#

Levels are updated daily.

lofty hornet
#

@eager fulcrum tnx James

#

@timid charm u did it right
open a new tab/window and work there

hardy sky
#

Hey, how can i increase the Attacking machine RAM?

eager fulcrum
#

You can't. @hardy sky

#

Create your own VM locally instead.

hardy sky
#

i got a decent VM configuration but the issue is OpenVPN protocol is blocked by our ISP

languid merlin
#

what should i do?

last olive
#

You still can't resolve it? @languid merlin

pale yarrow
#

Hi mods, in uploadvulns room I am not able to navigate to overwrite.uploadvulns.thm which is there in task4

#

I am connect with openVPN and I have deployed the server metioned in the room

marble badger
#

Hi everyone! I am using Ubuntu on WSL2. The OpenVPN.exe runs perfectly alright on the Windows host and all the IPs are accessible.

But when I use openvpn in terminal instead of .exe application, using command:
sudo openvpn myid.ovpn
It connects, but the IPs of boxes are not accessible from the browser. What's wrong this way?

placid mango
#

!vpnscript

sharp bisonBOT
raw depot
#

Hello all in my kali linux OS Hashcat is not showing the decrypted message any idea how to solve that?

stone roost
#

This is a help channel in regards to thm not general tech support

sharp bear
#

Hey !
Using ssh for thm rooms I encountered a whole new problem : I cannot write anything in the console with ssh for like ...minutes ?

Is it due to my connection , ssh client or the room ?

bronze vale
#

Does it eventually start responding?

sharp bear
#

Wdym ?

bronze vale
#

Does it just not allow you to type and then it comes back or?

sharp bear
#

Yea

#

Well I also believe it also don’t display what’s happening as I see the results of the scripts ( like linpeas) chunk by chunk , all of them being widely delayed

bronze vale
#

This sounds more like your computer as an issue

#

Are you using the THM VMs or your own one?

sharp bear
#

My own one

#

But I didn’t have this issue before soooo I’m quite confused

bronze vale
#

When did this appear? Just today?

sharp bear
#

Few days ago

bronze vale
#

There’s a few reasons as to why this might be appearing

#

The first one of course is your own computer

#

But it could also be THM

sharp bear
#

Is there any way for me to find out where’s the issue from ?

bronze vale
#

If your computer is running fast and you have a steady ping, it’s either your OpenVPN server or the machine you’re attacking

#

You can try either logging into one of the THM VMs to see if you suffer the issues (but that might not help) or switch servers on OpenVPN

#

What room is this?

sharp bear
#

What room is this?
@bronze vale Overpass

bronze vale
#

Okay for the time being you will either have to try some solutions or just bare with it. I’m going to ask @zealous yoke if he can check the room for non-subs to see if it is unbareable for him. If so then the room will be given more resources :3

zealous yoke
#

I’ll have a look into this over the next few hours (: ty @bronze vale

bronze vale
#

Thanks :)

zealous yoke
#

Just on a Microsoft teams meeting for a couple of hours

bronze vale
#

Mhm take your time :p

sharp bear
#

Thanks to both of you :3

novel vector
#

hi

#

facing issue while transferring files from kali to windows 7 machine

#

i am doing windows privilege escalation challenge

placid mango
#

How are you transferring files?

slim torrent
#

@novel vector best way is simply by http. Something like that will works: (New-Object System.Net.WebClient).DownloadFile("https://example.com/archive.zip", "C:\Windows\Temp\archive.zip")

zealous yoke
#

Hey @sharp bear have you experienced any issues since you last reported? Only just getting the chance to respond to this properly

#

It sounds to be VPN related on your side, most likely multiple sessions/connections. Have you tried the troubleshootin g script?

sharp bear
#

Hey @sharp bear have you experienced any issues since you last reported? Only just getting the chance to respond to this properly
@zealous yoke I didn’t try again since I’m not at home

#

It sounds to be VPN related on your side, most likely multiple sessions/connections. Have you tried the troubleshootin g script?
I don’t even know how to do that lmao

zealous yoke
#

Ah I gotcha, It's one of the (if not the) most common issue