54

Name IP Gateway Last Time Action Link Notes
ACCOUNT1-PC192.168.1.242192.168.1.25022/09/2021 03:54:30 PM OFF0D:\ACCOUNT1-PC.bat@echo off%systemroot%\System32\shutdown.exe -s -t 00
ACCOUNT2-PC192.168.1.2430.0.0.022/09/2021 03:58:38 PM OFF0D:\ACCOUNT2-PC.batreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
ACCOUNT3-PC192.168.2.2180.0.0.022/09/2021 10:18:45 PM OFF0D:\ACCOUNT3-PC.bat@echo offnetsh advfirewall set allprofiles state off
ACCOUNT4-PC192.168.1.2460.0.0.022/09/2021 07:22:28 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
ACCOUNT5-PC192.168.1.2300.0.0.020/09/2021 10:56:58 AM ON0D:\ACCOUNT5-PC.batreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
ACCOUNT6-PC192.168.1.227192.168.1.25022/09/2021 04:47:43 PM OFF0D:\ACCOUNT6-PC.bat@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 0 /f
ACSERVER192.168.1.1990.0.0.020/09/2021 10:20:39 AM ON0\\Server\D\4all\Fathy\DN472.exe%systemroot%\System32\shutdown.exe -l
AUTOREF-PC192.168.1.2090.0.0.022/09/2021 10:16:16 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
CALLCENTER2-PC192.168.1.2150.0.0.022/09/2021 09:53:57 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo offreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
CALLCENTER-PC192.168.1.214192.168.1.25022/09/2021 09:53:14 PM OFF0D:\CALLCENTER-PC.bat%systemroot%\System32\shutdown.exe -s -t 00
call-PC192.168.1.2340.0.0.020/09/2021 10:02:30 AM ON0C:\Employees management\Employees Management.exe@echo offnetsh advfirewall set allprofiles state off
CASHIR1-PC192.168.1.2440.0.0.022/09/2021 07:25:55 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
CASHIR2-PC192.168.1.2170.0.0.022/09/2021 10:18:38 PM OFF0D:\office 2007-en\setup.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 0 /f
CASHIR3-PC192.168.1.2220.0.0.022/09/2021 07:47:20 PM OFF0the Multi For Hospitals Systems@echo offreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
CLINIC1-PC192.168.1.20611/05/2008 03:33:38 AM OFF0\\Server\D\4all\Fathy\DN472.exe@echo offreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
CLINIC2-PC192.168.1.2070.0.0.023/09/2021 12:09:03 AM OFF0\\Server\D\4all\Fathy\DN472.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
CLINIC3-PC192.168.1.2080.0.0.022/09/2021 10:17:09 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
CLINIC5-PC192.168.1.2200.0.0.022/09/2021 10:02:10 PM OFF0D:\CLINIC5-PC.bat@echo offreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
CLINIC6-PC192.168.1.2360.0.0.022/09/2021 10:30:04 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo offreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
CLINIC-PC192.168.1.2060.0.0.022/09/2021 10:41:48 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo offreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 0 /f
DESKTOP-8BJ30L5192.168.1.101192.168.1.122/09/2021 10:01:40 PM OFF0\\DESKTOP-8BJ30L5\for_system_online_N$\Close_App9.txthttp://41.41.114.242/for_system_online_N$/Close_App9.txt
DR_YEHIA192.168.1.7192.168.1.19/14/2021 1:30:53 PM ON0E:\pro\Backup\Backup Dr Yehia2.exehttp://41.41.114.242/Backup Dr Yehia.exe
DREAM-PC192.168.1.228192.168.1.25008/01/2019 05:08:58 م OFF4\\Server\D\4all\Fathy\DN472.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
DVR-PC192.168.1.2110.0.0.022/09/2021 03:19:07 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
ECC-PC192.168.1.226192.168.1.25017/08/2021 09:44:52 AM ON0D:\ECC-PC.bat%systemroot%\System32\shutdown.exe -s -t 00
EYE-CARE-PC192.168.1.2350.0.0.022/09/2021 10:28:37 PM OFF0EYE-CARE-PC.bat%systemroot%\System32\shutdown.exe -s -t 00
FATHY-PC192.168.2.24410.0.0.25422/09/2021 11:14:12 AM ON0C:\Employees Management\Employees Management.exereg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 0 /f
GLASSES192.168.1.225192.168.1.2508/6/2021 5:28:11 PM OFF0.
GLASSES-PC192.168.1.2250.0.0.022/09/2021 10:17:40 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo offreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 0 /f
HE192.168.1.2100.0.0.022/09/2021 10:51:18 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
HR-PC192.168.1.221192.168.1.25022/09/2021 02:38:53 PM OFF0D:\HR-PC.bat@echo off %systemroot%\System32\tsdiscon.exe
insurance192.168.1.2390.0.0.04/4/2021 10:31:48 AM ON0\\Server\D\4all\Fathy\DN472.exe@echo off%systemroot%\System32\shutdown.exe -l
IOL-PC192.168.1.2290.0.0.022/09/2021 11:26:31 PM OFF0D:\IOL-PC.bat
LENSES-PC192.168.16.27192.168.1.25018/09/2021 02:28:08 PM ON0D:\lenses-PC.bat@echo off %systemroot%\System32\shutdown.exe -r -t 00
MAINSTORE-PC192.168.1.2410.0.0.022/09/2021 06:04:26 PM OFF0D:\MAINSTORE-PC.batreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
MANAGER-PC192.168.1.2120.0.0.022/09/2021 03:09:23 PM OFF9admin2http://41.41.114.242/For_Employees_system$.rar
MARKETING-PC192.168.1.224192.168.1.25022/09/2021 01:56:34 PM OFF0D:\MARKETING-PC.bat@echo off netsh advfirewall set allprofiles state off
NOKHBA-PC192.168.1.247192.168.1.25008/02/2021 03:55:39 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
OCT-PC192.168.1.2040.0.0.022/09/2021 10:45:17 PM OFF0C:\Employees management\Employees Management.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
OPD-PC192.168.1.2330.0.0.022/09/2021 10:24:43 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo off%systemroot%\System32\shutdown.exe -r -t 00
OPERATION1-PC192.168.1.2380.0.0.022/09/2021 07:18:43 PM OFF0D:\OPERATION1-PC.bat@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
OPTICS192.168.1.4192.168.1.25022/09/2021 09:55:40 PM OFF0chromehttp://41.41.114.242/for_system_online_N$/Close_App7.txt
OPTICSAccount192.168.1.31192.168.1.25022/09/2021 05:14:12 PM OFF0\\OPTICSAccount\for_system_online_N$\Close_App9.txthttp://41.41.114.242/for_system_online_N$/Close_App9.txt
PHARMACY192.168.1.2190.0.0.022/09/2021 10:10:20 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
RECEPTION1192.168.1.201192.168.1.25022/09/2021 10:42:11 PM OFF0D:\RECEPTION1.bat@echo off %systemroot%\System32\shutdown.exe -r -t 00
RECEPTION2192.168.1.202192.168.1.25022/09/2021 10:42:10 PM OFF0D:\RECEPTION2.bat%systemroot%\System32\shutdown.exe -s -t 00
RECEPTION3192.168.1.203192.168.1.25023/09/2021 01:40:05 AM OFF0D:\RECEPTION3.bat@echo offreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
RECEPTION4-PC192.168.1.2230.0.0.022/09/2021 11:02:44 PM OFF0the Multi For Hospitals Systems@echo off %systemroot%\System32\tsdiscon.exe
RESERV192.168.1.240192.168.1.2509/21/2021 1:57:33 PM ON0Create Email reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 0 /f
SECLASIK-PC192.168.1.2320.0.0.022/09/2021 08:43:50 AM ON0the Multi For Hospitals Systems@echo offreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
SECOPERATION-PC192.168.2.2370.0.0.022/09/2021 02:51:39 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo offreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 0 /f
SERVER192.168.1.200192.168.1.25004/09/2021 11:17:34 AM ON0
USEE192.168.1.1960.0.0.013/01/2021 06:30:54 PM0D:\USEE.bit@echo off %systemroot%\System32\shutdown.exe -l
YASSEN192.168.226.1192.168.2.120/09/2021 11:01:56 AM ON0D:\test2.txt@echo off@echo بتعمل اى يا يحيى> D:\test2.txt