Name IP
Gateway Note

54

ACCOUNT1-PC192.168.1.242192.168.1.25008/08/2022 04:51:53 PM OFF0D:\ACCOUNT1-PC.bat@echo off%systemroot%\System32\shutdown.exe -s -t 00
ACCOUNT2-PC192.168.1.243192.168.1.25007/08/2022 04:13:26 PM OFF0D:\Go.bat@echo offgpupdate /force
ACCOUNT3-PC192.168.1.2180.0.0.007/08/2022 05:27:39 PM OFF7D:\Go-PC.bat@echo offgpupdate /force
ACCOUNT4-PC192.168.1.246192.168.1.25008/08/2022 04:06:42 PM OFF0D:\pro\VC_redist.x86.exe@echo off gpupdate /force
ACCOUNT5-PC192.168.1.2160.0.0.008/08/2022 04:03:48 PM OFF0D:\Go-PC.bat@echo off gpupdate /force
ACCOUNT6-PC192.168.1.227192.168.1.25008/08/2022 03:41:27 PM OFF0D:\Go.bat@echo off gpupdate /force
ACCOUNT7-PC0.0.0.03/30/2022 2:52:49 PM OFF0D:\pro\BIXOLON.exe@echo off gpupdate /force
ACSERVER192.168.1.1990.0.0.007/08/2022 05:23:10 PM ON0D:\ACSERVER.bat%systemroot%\System32\shutdown.exe -l
AUTOREF-PC192.168.1.2090.0.0.008/08/2022 10:10:06 PM OFF0D:\Go.bat@echo off %systemroot%\System32\shutdown.exe -r -t 00
CALLCENTER1-PC192.168.1.4192.168.1.25022/03/2022 02:49:47 PM OFF3D:\CALLCENTER2-PC.bat انت مصاب بفيروس خبيس برجاء رفع اقدامك حتى نتمكن من نزعه
CALLCENTER-PC192.168.1.214192.168.1.25008/08/2022 09:59:53 PM OFF0chromeيعنى تتفشو الزباين وتقولو ماعندناش OCTوليكو نفس تلعبو على النت
call-PC192.168.1.2340.0.0.008/08/2022 06:15:14 PM ON0C:\Employees management\Employees Management.exe@echo offnetsh advfirewall set allprofiles state off
CASHIR1-PC192.168.1.244192.168.1.25008/08/2022 10:42:03 AM ON3D:\pro\VC_redist.x86.exe@echo off gpupdate /force
CASHIR2-PC192.168.1.2170.0.0.008/08/2022 10:31:00 م OFF0D:\Go.bat@echo offgpupdate /force
CASHIR3-PC192.168.1.2220.0.0.008/08/2022 09:54:39 PM OFF0the Multi For Hospitals Systems@echo offgpupdate /force
CLINIC2-PC192.168.1.2070.0.0.008/08/2022 11:19:00 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
CLINIC3-PC192.168.1.2080.0.0.008/08/2022 10:15:11 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
CLINIC4-PC192.168.1.2160.0.0.04/12/2022 1:12:01 PM OFF0.
CLINIC5-PC192.168.1.2200.0.0.008/08/2022 10:13:46 PM OFF0D:\Pro\rufus_v1.2.0.exe@echo offreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
CLINIC6-PC192.168.1.2360.0.0.008/08/2022 10:14:02 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo offreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
CLINIC-PC192.168.1.2060.0.0.008/08/2022 10:35:52 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo offreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 0 /f
DESKTOP-8BJ30L5192.168.1.102192.168.1.108/08/2022 10:01:01 PM OFF0\\DESKTOP-8BJ30L5\for_system_online_N$\Close_App9.txthttp://41.41.114.242/for_system_online_N$/Close_App9.txt
DR_YEHIA192.168.1.3192.168.1.18/3/2022 7:50:37 PM ON0E:\pro\Backup\Backup Dr Yehia2.exehttp://41.41.114.242/Backup Dr Yehia.exe
DVR-PC192.168.1.2110.0.0.008/08/2022 03:43:29 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
EYE-CARE-PC192.168.1.2350.0.0.008/08/2022 9:56:01 PM OFF0C:\EYE-CARE-PC.bat%systemroot%\System32\shutdown.exe -s -t 00
FATHY-PC169.254.157.150.0.0.007/08/2022 12:39:00 PM ON0D:\Emp.accdbكل سنة وانتى طيبة وبصحة وخير كل سنة واحنا صحاب واخوات وحبايب ربنا يسعد ايامك
GLASSES-PC192.168.1.2250.0.0.008/08/2022 10:30:48 PM OFF0D:\Go-PC.bat@echo offgpupdate /force
HE192.168.1.2100.0.0.002/03/2022 9:55:02 AM ON0\\Server\D\4all\Fathy\DN472.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
HR-PC192.168.1.2210.0.0.008/08/2022 02:50:49 PM OFF0D:\hi.docx@echo off%systemroot%\System32\tsdiscon.exe
insurance192.168.1.2390.0.0.026/07/2022 10:45:05 ص OFF0D:\insurance.bat@echo off%systemroot%\System32\shutdown.exe -l
IOL2-PC192.168.1.470.0.0.008/08/2022 10:05:21 PM OFF0D:\Go.batuser: nadaPass:123 ما تنسيش تغييرى الباسورد
IOL-PC192.168.1.229192.168.1.25006/08/2022 01:07:18 PM ON3D:\Go.bat@echo offgpupdate /force
LENSES-PC192.168.16.78192.168.1.25031/07/2022 06:25:53 PM ON0D:\Go.batreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 0 /f
MAINSTORE-PC192.168.1.241192.168.1.25008/08/2022 09:33:12 PM OFF0D:\MAINSTORE-PC.bat@echo offnetsh advfirewall set allprofiles state off
MANAGER-PC192.168.1.2120.0.0.008/08/2022 03:24:31 PM OFF9D:\Go.bat@echo off gpupdate /force
MARKETING-PC192.168.1.224192.168.1.25007/08/2022 02:40:43 PM OFF0D:\MARKETING-PC.bat@echo off netsh advfirewall set allprofiles state off
NOKHBA-PC192.168.1.247192.168.1.25008/02/2021 03:55:39 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
OCT-PC192.168.1.2040.0.0.008/08/2022 09:00:54 PM OFF0D:\Go.bat@echo off netsh advfirewall set allprofiles state off
OPD-PC192.168.1.2330.0.0.008/08/2022 10:09:03 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo off%systemroot%\System32\shutdown.exe -r -t 00
OPERATION1-PC0.0.0.008/08/2022 07:04:08 PM OFF0D:\OPERATION1-PC.bat@echo offreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
OPTICS192.168.1.110192.168.1.108/08/2022 10:00:30 PM OFF0chrome@echo off%systemroot%\System32\tsdiscon.exe
OPTICSAccount192.168.1.129192.168.1.108/08/2022 05:16:22 م OFF0D:\Employees_Management.rarhttp://eyecarebooking.com/Employees_Management.rar
PHARMACY192.168.1.219192.168.1.25007/12/2021 10:57:10 AM OFF0D:\the Multi For Hospitals Systems\New1.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
PHARMACY-PC192.168.1.219192.168.1.25008/08/2022 09:59:28 PM OFF0the Multi For Hospitals Systemsيعنى تتفشو الزباين وتقولو ماعندناش OCTوليكو نفس تلعبو على النت
RECEPTION1192.168.1.2010.0.0.008/08/2022 08:37:25 AM ON3Employees Management@echo off gpupdate /force
RECEPTION2192.168.1.202192.168.1.25008/08/2022 10:00:59 PM OFF0Employees Management@echo offgpupdate /force
RECEPTION3192.168.1.2030.0.0.008/08/2022 10:01:11 PM OFF0Employees Management@echo off gpupdate /force
RECEPTION4-PC192.168.1.2230.0.0.008/08/2022 09:33:20 AM ON3D:\Go.bat@echo off gpupdate /force
RESERV192.168.1.240192.168.1.2508/8/2022 11:44:03 PM ON0D:\Go.batreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 0 /f
SECLASIK-PC192.168.1.2320.0.0.008/08/2022 10:31:30 PM OFF0the Multi For Hospitals Systems@echo off%systemroot%\System32\tsdiscon.exe
SECOPERATION-PC192.168.1.2370.0.0.008/08/2022 09:31:05 AM ON3D:\SECLASIK-PC.bat@echo offreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 0 /f
SERVER192.168.1.200192.168.1.25026/07/2022 09:40:09 AM ON0D:\Go.bat@echo offgpupdate /force
USEE192.168.1.1960.0.0.013/01/2021 06:30:54 PM0D:\USEE.bit@echo off %systemroot%\System32\shutdown.exe -l
YASSENxx192.168.226.1192.168.2.105/02/2022 10:51:24 PM OFF4D:\test2.txt@echo off@echo بتعمل اى يا يحيى> D:\test2.txt