Forum Discussion
Advanced CTF Challenge: Hardened Maze
- 2 months ago
Try fodhelper again manually.
Hi Nneka_AN - no progress :/
i try all metasploit reverse shell bypass UAC payloads - don't work
also try from windows machine run multiple tools fodhelper, eventvwr, sdclt to try bypass UAC but no luck. Read articles about this:
https://medium.com/@RosanaFS/bypassing-uac-tryhackme-walkthrough-c74818f11bbf
maybe I'm trying to approach this from the wrong side, i don't know :)
Try fodhelper again manually.
- autom8on2 months ago
Silver I
Clearly I'm missing something... obviously, metasploit's bypassuac_fodhelper claims it isn't vulnerable:
So, I try manually running the script from UAC-bypass/FodhelperBypass.ps1 at master · winscripting/UAC-bypass · GitHub - which gets me nowhere. No obvious error messages, but just end up dumped back at a low-priv powershell command, I can't get it to spawn anything elevated...
Similarly, running the individual commands listed in the "Example PowerShell Commands" section of this article gets me nowhere - (10) UAC Bypass Using Fodhelper.exe | LinkedIn. I've even tried coming up with a modified version of the "Improving the Fodhelper exploit" bit of that article (using CurVer) - but I'm still struggling to get it to actually execute anything...
Time to do more reading, I guess...
- Nneka_AN2 months ago
Silver I
How frustrating 🥺 This seems like a good question for the lab builders webinar.
I hope they are able to assist you.