Is the file WINRING0X64.SYS located on your computer? Then your computer is infected.
We do suggest you should remove WINRING0X64.SYS from your computer as soon as possible.
WINRING0X64.SYS is Trojan/Backdoor.
Kill the process WINRING0X64.SYS and remove WINRING0X64.SYS from the Windows startup.
Malware Analysis of WINRING0X64.SYS
Full path on a computer: %PROGRAMFILES%\BATTERYCARE\WINRING0X64.SYS
Detected by UnHackMe:
WINRING0X64.SYS
Default location: %PROGRAMFILES%\BATTERYCARE\WINRING0X64.SYS
Removal Results: Success
Number of reboot: 1
WINRING0X64.SYS is known as:
Trojan Generic
WINRING0X64.SYS hash:
-
MD5: 0C0195C48B6B8582FA6F6373032118DA
How to quickly detect WINRING0X64.SYS presence?
Files:
- %COMMONPROGRAMS%\BATTERYCARE\BATTERYCARE.LNK
- %COMMONPROGRAMS%\BATTERYCARE\UNINSTALL BATTERYCARE.LNK
- %APPDATA%\BATTERYCARE\DB.DAT
- %APPDATA%\BATTERYCARE\DBB.DAT
- %PROGRAMFILES%\BATTERYCARE\WINRING0X64.SYS