Maintaining access
Persistence scripts
- Run
persistence -h
exploit/windows/local/persistence
in MSexploit/windows/local/registry_persistance
in MS
Scheduled tasks
- Run
schduleme
- Run
schtaskabuse
Add a user (most rational in a PT)
net user <user> <password> /add