Once upon a time there was a good method that i used , You can run the exe file in the background using any website script. Victim should use your script with XAMPP on his own computer for this method. You will use your codes to make the pc download your exe file in the background and then open it while the victim thinks that he is just using a webscript.