BagMRU Folder History

This script is Copyright (C) 2016 Tenable Network Security, Inc.


Synopsis :

Nessus was able to enumerate folders that were opened in Windows
Explorer.

Description :

Nessus was able to enumerate folders that were opened in Windows
Explorer. Microsoft Windows maintains folder settings using a registry
key known as shellbags or BagMRU. The generated folder list report
contains folders local to the system, folders from past mounted
network drives, and folders from mounted devices.

See also :

http://www.williballenthin.com/forensics/shellbags/
http://www.nessus.org/u?db25594f

Solution :

n/a

Risk factor :

None

Family: Incident Response

Nessus Plugin ID: 92416 ()

Bugtraq ID:

CVE ID:

Ready to Amp Up Your Nessus Experience?

Get Nessus Professional to scan unlimited IPs, run compliance checks & more

Buy Nessus Professional Now