53

Name IP Gateway Last Time Action Link Notes
ACCOUNT11-PC192.168.1.2420.0.0.030/12/2021 01:44:58 م OFF0.
ACCOUNT1-PC192.168.1.242192.168.1.25018/01/2022 04:03:25 PM OFF0D:\ACCOUNT1-PC.bat@echo off%systemroot%\System32\shutdown.exe -s -t 00
ACCOUNT2-PC192.168.1.2430.0.0.019/01/2022 08:45:35 AM ON0D:\ACCOUNT2-PC.batreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
ACCOUNT3-PC192.168.1.218192.168.1.25016/01/2022 08:41:40 AM ON0D:\ACCOUNT3-PC.bat@echo offnetsh advfirewall set allprofiles state off
ACCOUNT4-PC192.168.1.2460.0.0.018/01/2022 06:16:00 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
ACCOUNT5-PC192.168.1.2300.0.0.018/01/2022 06:07:39 PM OFF0D:\ACCOUNT5-PC.batreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
ACCOUNT6-PC192.168.1.2270.0.0.015/01/2022 09:37:29 AM ON0D:\ACCOUNT6-PC.bat@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 0 /f
ACSERVER192.168.1.1990.0.0.018/01/2022 01:53:39 PM ON0D:\ACSERVER.bat%systemroot%\System32\shutdown.exe -l
AUTOREF-PC192.168.1.2090.0.0.019/01/2022 09:15:49 AM ON0\\Server\D\4all\Fathy\DN472.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
CALLCENTER2-PC192.168.1.2150.0.0.019/01/2022 08:45:52 AM ON0D:\CALLCENTER2-PC.bat انت مصاب بفيروس خبيس برجاء رفع اقدامك حتى نتمكن من نزعه
CALLCENTER-PC192.168.1.214192.168.1.25019/01/2022 08:48:52 AM ON0D:\CALLCENTER-PC.bat%systemroot%\System32\shutdown.exe -s -t 00
call-PC192.168.1.2340.0.0.008/01/2022 07:51:31 PM ON0C:\Employees management\Employees Management.exe@echo offnetsh advfirewall set allprofiles state off
CASHIR1-PC192.168.1.2440.0.0.018/01/2022 06:18:38 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
CASHIR2-PC192.168.1.2170.0.0.019/01/2022 08:40:09 ص ON0D:\office 2007-en\setup.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 0 /f
CASHIR3-PC192.168.1.2220.0.0.019/01/2022 09:20:44 AM ON0E:\Pro\windows6.1-kb4474419-v3-x64_b5614c6cea5cb4e198717789633dca16308ef79c.msu@echo offreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
CLINIC2-PC192.168.1.2070.0.0.01/18/2022 9:20:23 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
CLINIC3-PC192.168.1.2080.0.0.019/01/2022 09:17:26 AM ON0\\Server\D\4all\Fathy\DN472.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
CLINIC5-PC192.168.1.2200.0.0.019/01/2022 08:33:42 AM ON0D:\CLINIC5-PC.bat@echo offreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
CLINIC6-PC192.168.1.2360.0.0.019/01/2022 08:35:40 AM ON0\\Server\D\4all\Fathy\DN472.exe@echo offreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
CLINIC-PC192.168.1.2060.0.0.019/01/2022 09:16:07 AM ON0\\Server\D\4all\Fathy\DN472.exe@echo offreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 0 /f
DESKTOP-8BJ30L5192.168.1.103192.168.1.118/01/2022 10:01:37 PM OFF0\\DESKTOP-8BJ30L5\for_system_online_N$\Close_App9.txthttp://41.41.114.242/for_system_online_N$/Close_App9.txt
DR_YEHIA192.168.1.2192.168.1.11/18/2022 1:27:52 PM ON0E:\pro\Backup\Backup Dr Yehia2.exehttp://41.41.114.242/Backup Dr Yehia.exe
DVR-PC192.168.1.2110.0.0.019/01/2022 09:12:53 AM ON0\\Server\D\4all\Fathy\DN472.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
EYE-CARE-PC192.168.1.2350.0.0.018/01/2022 9:53:29 PM OFF0EYE-CARE-PC.bat%systemroot%\System32\shutdown.exe -s -t 00
FATHY-PC169.254.157.150.0.0.009/01/2022 03:00:23 PM ON0D:\Go.batreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 0 /f
GLASSES-PC192.168.1.2250.0.0.018/01/2022 02:31:22 PM ON0\\Server\D\4all\Fathy\DN472.exe@echo offreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 0 /f
HE192.168.1.2100.0.0.023/12/2021 11:11:54 AM ON0\\Server\D\4all\Fathy\DN472.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
HR-PC192.168.1.2210.0.0.019/01/2022 09:08:20 AM ON0D:\HR-PC.bat@echo off %systemroot%\System32\tsdiscon.exe
insurance192.168.1.2390.0.0.017/01/2022 02:37:27 م OFF0D:\insurance.bat@echo off%systemroot%\System32\shutdown.exe -l
IOL2-PC192.168.1.470.0.0.018/01/2022 10:04:00 PM OFF0D:\IOL2-PC.bat
IOL-PC192.168.1.2290.0.0.018/01/2022 08:53:39 PM OFF0D:\IOL-PC.bat
LENSES-PC192.168.16.213192.168.1.25010/01/2022 12:14:23 PM ON0D:\Go.bat@echo off time 03:45:00 PM date 11/26/2021
MAINSTORE-PC192.168.1.2410.0.0.018/01/2022 09:43:00 PM OFF0D:\MAINSTORE-PC.batreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
MANAGER-PC192.168.1.2120.0.0.019/01/2022 09:17:01 AM record9admin2http://41.41.114.242/For_Employees_system$.rar
MARKETING-PC192.168.1.224192.168.1.25019/01/2022 08:58:38 AM ON0D:\MARKETING-PC.bat@echo off netsh advfirewall set allprofiles state off
NOKHBA-PC192.168.1.247192.168.1.25008/02/2021 03:55:39 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
OCT-PC192.168.1.2040.0.0.018/01/2022 09:17:28 PM OFF0C:\Employees management\Employees Management.exe@echo offreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
OPD-PC192.168.1.2330.0.0.018/01/2022 10:03:47 PM OFF0\\Server\D\4all\Fathy\DN472.exe@echo off%systemroot%\System32\shutdown.exe -r -t 00
OPERATION1-PC192.168.1.2380.0.0.018/01/2022 09:18:04 AM ON0D:\OPERATION1-PC.bat@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
OPTICS192.168.1.118/01/2022 09:38:48 PM OFF0chrome@echo off %systemroot%\System32\tsdiscon.exe
OPTICSAccount192.168.1.100192.168.1.119/01/2022 08:54:59 AM ON0D:\1.exe@echo off %systemroot%\System32\tsdiscon.exe
PHARMACY192.168.1.219192.168.1.25007/12/2021 10:57:10 AM OFF0D:\the Multi For Hospitals Systems\New1.exe@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 1 /f
PHARMACY-PC192.168.1.219192.168.1.25012/13/2021 3:17:08 PM OFF0.
RECEPTION1192.168.1.2010.0.0.019/01/2022 08:32:52 AM ON0D:\RECEPTION1.bat@echo off %systemroot%\System32\shutdown.exe -r -t 00
RECEPTION2192.168.1.2020.0.0.019/01/2022 08:28:15 AM ON0D:\RECEPTION2.bat%systemroot%\System32\shutdown.exe -s -t 00
RECEPTION3192.168.1.2030.0.0.019/01/2022 08:30:56 AM ON0D:\RECEPTION3.bat@echo off reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 0 /f
RECEPTION4-PC192.168.1.2230.0.0.019/01/2022 09:14:58 AM ON0the Multi For Hospitals Systems%systemroot%\System32\tsdiscon.exe
RESERV192.168.1.240192.168.1.2501/18/2022 9:59:07 AM ON0Create Email reg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 0 /f
SECLASIK-PC192.168.1.2320.0.0.018/01/2022 09:48:36 PM OFF0D:\SECLASIK-PC.bat@echo off%systemroot%\System32\tsdiscon.exe
SECOPERATION-PC192.168.1.2370.0.0.019/01/2022 08:30:00 AM ON0D:\SECLASIK-PC.bat@echo offreg add "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Terminal Server" /v fDenyTSConnections /t REG_DWORD /d 0 /f
SERVER192.168.1.200192.168.1.25008/01/2022 07:58:10 PM ON0
USEE192.168.1.1960.0.0.013/01/2021 06:30:54 PM0D:\USEE.bit@echo off %systemroot%\System32\shutdown.exe -l
YASSEN192.168.226.1192.168.2.114/01/2022 11:35:34 AM OFF0D:\test2.txt@echo off@echo بتعمل اى يا يحيى> D:\test2.txt