53

Name IP Gateway Last Time Action Link Notes
ACCOUNT1-PC192.168.1.242192.168.1.25016/06/2021 04:16:41 PM OFF0D:\GO.bat@echo off%systemroot%\System32\shutdown.exe -s -t 00
ACCOUNT2-PC192.168.1.2430.0.0.016/06/2021 04:11:30 PM OFF0D:\ACCOUNT2-PC.bat@echo offreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
ACCOUNT3-PC192.168.2.2180.0.0.016/06/2021 10:03:45 PM OFF0C:\Employees management\Employees Management.exe@echo offnetsh advfirewall set allprofiles state off
ACCOUNT4-PC192.168.1.2460.0.0.016/06/2021 06:06:13 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
ACCOUNT5-PC192.168.1.2300.0.0.016/06/2021 08:57:26 PM OFF0D:\ACCOUNT5-PC.batreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
ACCOUNT6-PC192.168.1.227192.168.1.25015/06/2021 09:45:40 PM OFF0D:\ACCOUNT6-PC.bat@echo offreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
ACSERVER192.168.1.1990.0.0.016/06/2021 01:53:37 PM ON0\\Server\D\4all\Fathy\DN472.exe@echo off%systemroot%\System32\tsdiscon.exe
AUTOREF-PC192.168.1.2090.0.0.016/06/2021 09:44:36 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
CALLCENTER2-PC192.168.1.2150.0.0.016/06/2021 09:54:38 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo offreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
CALLCENTER-PC192.168.1.214192.168.1.25016/06/2021 09:46:58 PM OFF0D:\CALLCENTER-PC.bat%systemroot%\System32\shutdown.exe -s -t 00
call-PC192.168.1.2340.0.0.015/06/2021 08:24:43 AM ON0C:\Employees management\Employees Management.exe@echo offnetsh advfirewall set allprofiles state off
CASHIR1-PC192.168.1.2440.0.0.016/06/2021 08:59:04 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
CASHIR2-PC192.168.1.2170.0.0.016/06/2021 10:03:49 PM OFF0D:\office 2007-en\setup.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 0 /f
CASHIR3-PC192.168.1.2220.0.0.016/06/2021 07:04:33 PM OFF0the Multi For Hospitals Systems@echo offreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
CLINIC1-PC192.168.1.20611/05/2008 03:33:38 AM OFF0\\Server\D\4all\Fathy\DN472.exe@echo offreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
CLINIC2-PC192.168.1.2070.0.0.016/06/2021 11:00:38 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
CLINIC3-PC192.168.1.2080.0.0.016/06/2021 09:57:46 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
CLINIC5-PC192.168.1.2200.0.0.016/06/2021 09:57:40 PM OFF0D:\CLINIC5-PC.bat@echo offreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
CLINIC6-PC192.168.1.2360.0.0.016/06/2021 09:57:11 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo offreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
CLINIC-PC192.168.1.2060.0.0.016/06/2021 10:06:28 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo offreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 0 /f
DESKTOP-8BJ30L5192.168.1.104192.168.1.116/06/2021 10:04:35 PM OFF0E:\Employees Management\the Multi For Hospitals Systems1.exehttp://41.41.114.242/the Multi For Hospitals Systems.exe
DR_YEHIA192.168.1.5192.168.1.16/16/2021 9:47:37 PM ON21E:\pro\Backup\Backup Dr Yehia.exehttp://41.41.114.242/Backup Dr Yehia.exe
DREAM-PC192.168.1.228192.168.1.25008/01/2019 05:08:58 م OFF4\\Server\D\4all\Fathy\DN472.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
DVR-PC192.168.1.2110.0.0.016/06/2021 04:09:27 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
ECC-PC192.168.1.226192.168.1.25016/06/2021 09:42:21 PM OFF0D:\ECC-PC.bat%systemroot%\System32\shutdown.exe -s -t 00
EYE-CARE-PC192.168.1.2350.0.0.016/06/2021 9:51:54 PM OFF0\\Server\D\4all\Fathy\DN472.exe%systemroot%\System32\shutdown.exe -s -t 00
FATHY-PC192.168.0.101192.168.0.116/06/2021 02:04:31 PM ON0C:\Employees Management\Employees Management.exereg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 0 /f
GLASSES-PC192.168.1.2250.0.0.016/06/2021 10:07:00 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo offreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 0 /f
HE192.168.1.2100.0.0.008/04/2021 9:54:09 AM ON0\\Server\D\4all\Fathy\DN472.exe@echo offreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
HR-PC192.168.1.221192.168.1.25016/06/2021 02:46:53 PM OFF0Employees Management@echo off %systemroot%\System32\tsdiscon.exe
insurance192.168.1.2390.0.0.04/4/2021 10:31:48 AM ON0\\Server\D\4all\Fathy\DN472.exe@echo off%systemroot%\System32\shutdown.exe -l
IOL-PC192.168.1.2290.0.0.007/05/2021 01:10:30 AM OFF0C:\Employees management\Employees Management.exe
LENSES-PC192.168.16.7192.168.1.25015/06/2021 09:36:13 AM ON0D:\lenses-PC.bat%systemroot%\System32\tsdiscon.exe
MAINSTORE-PC192.168.1.241192.168.1.25016/06/2021 04:40:20 PM OFF0D:\MAINSTORE-PC.batreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
MANAGER-PC192.168.1.2120.0.0.016/06/2021 04:00:33 PM OFF9admin2http://41.41.114.242/For_Employees_system$.rar
MARKETING-PC192.168.1.2240.0.0.030/05/2021 05:44:45 PM OFF0D:\MARKETING-PC.bat@echo offnetsh advfirewall set allprofiles state off
NOKHBA-PC192.168.1.247192.168.1.25008/02/2021 03:55:39 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
OCT-PC192.168.1.2040.0.0.016/06/2021 10:56:11 PM OFF0C:\Employees management\Employees Management.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
OPD-PC192.168.1.2330.0.0.016/06/2021 10:02:29 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo off%systemroot%\System32\shutdown.exe -r -t 00
OPERATION1-PC192.168.1.2380.0.0.016/06/2021 07:49:08 PM OFF0D:\OPERATION1-PC.bat@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
OPTICS10.0.0.3710.0.0.25416/06/2021 09:54:59 PM OFF0C:\Employees management\Employees Management2.exereg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 0 /f
OPTICSAccount10.0.0.25010.0.0.25415/06/2021 02:53:17 PM OFF0C:\Employees management\Employees Management.exehttp://41.41.114.242/Employees Management.exe
PHARMACY192.168.1.2190.0.0.016/06/2021 09:47:04 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
RECEPTION1192.168.1.201192.168.1.25016/06/2021 10:03:07 PM OFF0the Multi For Hospitals Systems@echo off %systemroot%\System32\shutdown.exe -r -t 00
RECEPTION2192.168.1.202192.168.1.25016/06/2021 10:08:45 PM OFF0the Multi For Hospitals Systems%systemroot%\System32\shutdown.exe -s -t 00
RECEPTION3192.168.1.2030.0.0.016/06/2021 10:02:44 PM OFF0the Multi For Hospitals Systems@echo offreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
RECEPTION4-PC192.168.1.2230.0.0.016/06/2021 10:36:01 PM OFF0the Multi For Hospitals Systems@echo off %systemroot%\System32\tsdiscon.exe
RESERV192.168.1.240192.168.1.2506/16/2021 9:49:23 PM ON0D:\Open.batreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 0 /f
SECLASIK-PC192.168.1.2320.0.0.016/06/2021 09:56:03 PM OFF0the Multi For Hospitals Systems@echo offreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
SECOPERATION-PC192.168.2.2370.0.0.016/06/2021 12:44:42 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo offreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 0 /f
SERVER192.168.1.200192.168.1.25015/06/2021 08:18:11 AM ON0
USEE192.168.1.1960.0.0.013/01/2021 06:30:54 PM0D:\USEE.bit@echo off %systemroot%\System32\shutdown.exe -l
YASSEN192.168.226.1192.168.2.116/06/2021 10:22:54 PM OFF0D:\test2.txt@echo off@echo بتعمل اى يا يحيى> D:\test2.txt