wireshark
Open analysis
Filtered http
packets
I found that this package looks like a login, and trace this package
Looks like username and password
PS C:\Users\Administrator> php -r "echo md5('adminaadminb');"
1d240aafe21a86afc11f38a45b541a49
flag{
1d240aafe21a86afc11f38a45b541a49}