winring0x64.sys

WinRing0

Noriyuki MIYAZAKI

It runs as a Windows 64-bit file system device driver named “WinRing0_1_2_0”.
Publisher:
OpenLibSys.org  (signed by Noriyuki MIYAZAKI)

Product:
WinRing0

Version:
1.2.0.5

MD5:
0c0195c48b6b8582fa6f6373032118da

SHA-1:
d25340ae8e92a6d29f599fef426a2bc1b5217299

SHA-256:
11bd2c9f9e2397c9a16e0990e4ed2cf0679498fe0fd418a3dfdac60b5c160ee5

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
4/26/2024 8:51:33 PM UTC  (today)

File size:
14.2 KB (14,544 bytes)

Product version:
1.2.0.5

Copyright:
Copyright (C) 2007-2008 OpenLibSys.org. All rights reserved.

Original file name:
WinRing0.sys

File type:
Driver (Win64 SYS)

Language:
Japanese (Japan)

Common path:
C:\Program Files\iobit\game booster\driver\winring0x64.sys

Digital Signature
Authority:
GlobalSign nv-sa

Valid from:
9/24/2007 12:50:55 PM

Valid to:
9/24/2008 12:50:55 PM

Subject:
E=hiyohiyo@crystalmark.info, CN=Noriyuki MIYAZAKI, C=JP

Issuer:
CN=GlobalSign ObjectSign CA, OU=ObjectSign CA, O=GlobalSign nv-sa, C=BE

Serial number:
01000000000115372421A8

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
192:nqjKhp+GQvzj3i+5T9oGYJh1wAoxhSF6OOoe068jSJUbueq1H2PIP0:qjKL+v/y+5TWGYOf2OJ06dUb+pQ

Entry point:
48, 8B, 05, F1, E0, FF, FF, 49, B9, 32, A2, DF, 2D, 99, 2B, 00, 00, 48, 85, C0, 74, 05, 49, 3B, C1, 75, 2F, 4C, 8D, 05, D6, E0, FF, FF, 48, B8, 20, 03, 00, 00, 80, F7, FF, FF, 48, 8B, 00, 49, 33, C0, 49, B8, FF, FF, FF, FF, FF, FF, 00, 00, 49, 23, C0, 49, 0F, 44, C1, 48, 89, 05, AE, E0, FF, FF, 48, F7, D0, 48, 89, 05, AC, E0, FF, FF, E9, A7, BF, FF, FF, CC, CC, CC, B8, 50, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, C4, 51, 00, 00, 18, 20, 00, 00, A0, 50, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 02, 52, 00, 00...
 
[+]

Entropy:
6.2660

4 Drivers
Display name:
WinRing0_1_2_0

Type:
File system 'filter' driver (FileSystemDriver)

Group:
System Reserved

Display name:
sensorsview

Type:
Kernel device driver (KernelDriver)

Display name:
WinRing0 driver

Service name:
WinRing0_1_2_0

Description:
Access to CPU ports. Allows PTBSync to play sound via PC speaker.

Type:
Kernel device driver (KernelDriver)

Display name:
Hmonitor45

Type:
Kernel device driver (KernelDriver)


The file winring0x64.sys has been discovered within the following programs.

BatteryCare  by Filipe Lourenço
Publisher's description - “BatteryCare is a software created to optimize the usage and performance of the modern laptop's battery. It monitors the battery's discharge cycles and helps increasing it's autonomy and improving its lifetime.”
batterycare.net
About 7% of users remove it
CorsairLink  by Corsair
www.corsair.com
About 3% of users remove it
Driver Fusion  by Treexy
Publisher's description - “Driver Fusion is the complete device and driver solution for your PC. It helps you to manage your hardware devices and assist with a complete uninstall of old system drivers in the easiest possible way.”
treexy.com/products/driver-fusion
About 1% of users remove it
Game Fire  by Smart PC Utilities
www.smartpcutilities.com
38% remove it
GPU Temp version 1.0  by gputemp.com
Publisher's description - “GPU Temp is a free GPU temperature monitor that can display GPU core temperature and load, the temperature data will display in the system tray, and will be real-time updated.”
www.gputemp.com
About 2% of users remove it
This diagnostic tool checks for brand identification, verifies the processor operating frequency, tests specific processor features, and does a stress test on the processor.
www.intel.com
7% remove it
www.playclaw.com
About 24% of users remove it
PlayClaw 5 Demo  by Edward Kozadaev
About 24% of users remove it
PlayClaw 5 fast codec  by Eduard Kozadaev
Publisher's description - “For showing off slick new tricks or proving you really can take down The Boss with one shot, nothing shows it better than video. PlayClaw is greatly optimized to use multi-core CPUs effectively. Ultra HD videos at a high frame rate is not a problem.”
6% remove it
www.trigonesoft.com
About 5% of users remove it
 
Latest 20 of 16 programs
Powered by Should I Remove It?

Scan winring0x64.sys - Powered by Reason Core Security