Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

6.14.4105 2.44%
6.14.4065 2.44%
6.14.10.4132 2.44%
6.14.10.4132 12.20%
6.14.10.4131 2.44%
6.14.10.4129 12.20%
6.14.10.4129 2.44%
6.14.10.4124 7.32%
6.14.10.4123 2.44%
6.14.10.4119 4.88%
6.14.10.4119 9.76%
6.14.10.4118 12.20%
6.14.10.4118 2.44%
6.14.10.4116 2.44%
6.14.10.4115 2.44%
6.14.10.4114 9.76%
6.14.10.4110 2.44%
6.14.10.4107 2.44%
4.12.4011 4.88%

Relationships


PE structurePE file structure

Show functions
Import table
advapi32.dll
StartServiceCtrlDispatcherA, DeleteService, CreateServiceA, RegCreateKeyA, SetServiceStatus, RegisterEventSourceA, ReportEventA, DeregisterEventSource, OpenSCManagerA, OpenServiceA, CloseServiceHandle, QueryServiceStatus, RegDeleteValueA, RegOpenKeyExA, RegQueryValueExA, RegCreateKeyExA, RegSetValueExA, RegCloseKey, AllocateAndInitializeSid, FreeSid, InitializeSecurityDescriptor, SetSecurityDescriptorOwner, InitializeAcl, AddAccessAllowedAce, SetSecurityDescriptorDacl, RegEnumValueA, RegEnumKeyExA, RegQueryInfoKeyA, RegDeleteKeyA, RevertToSelf, GetUserNameA, ImpersonateLoggedOnUser, GetLengthSid, AdjustTokenPrivileges, LookupPrivilegeValueA, OpenProcessToken, CreateProcessAsUserA, RegisterServiceCtrlHandlerA
gdi32.dll
CreateDCA, DeleteDC, ExtEscape, GetClipBox, GetDeviceCaps
kernel32.dll
HeapFree, HeapAlloc, GetProcessHeap, GetCurrentProcess, TerminateThread, ExitThread, SetThreadPriority, CreateThread, OpenProcess, ReadFile, DisconnectNamedPipe, FlushFileBuffers, ConnectNamedPipe, CreateNamedPipeA, Beep, LocalFree, LocalAlloc, GetPrivateProfileStringA, QueryPerformanceCounter, GetSystemInfo, VirtualProtect, GetLocaleInfoA, SetStdHandle, SetConsoleCtrlHandler, GetCPInfo, GetOEMCP, GetACP, LCMapStringW, CreateMutexA, GetLocalTime, MultiByteToWideChar, GetStringTypeA, IsBadCodePtr, IsBadReadPtr, RaiseException, SetUnhandledExceptionFilter, IsBadWritePtr, HeapReAlloc, VirtualAlloc, VirtualFree, HeapCreate, HeapDestroy, GetFileType, SetHandleCount, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetEnvironmentStrings, FreeEnvironmentStringsA, UnhandledExceptionFilter, GetStdHandle, VirtualQuery, InterlockedExchange, HeapSize, GetModuleHandleA, GetStartupInfoA, GetCommandLineA, GetSystemTimeAsFileTime, WideCharToMultiByte, RtlUnwind, ReleaseSemaphore, CreateSemaphoreA, InterlockedDecrement, InterlockedIncrement, GetStringTypeW, PulseEvent, DeviceIoControl, TerminateProcess, FindFirstFileA, DeleteFileA, FindClose, MoveFileA, CopyFileA, GetSystemDirectoryA, CreateProcessA, GetTickCount, GetSystemPowerStatus, GetCurrentProcessId, GetVersionExA, GetModuleFileNameA, GetSystemTime, CreateFileA, SetFilePointer, WriteFile, ExitProcess, GetCurrentThreadId, OpenMutexA, ReleaseMutex, SetEvent, OutputDebugStringA, CallNamedPipeA, WaitForSingleObject, CreateEventA, Sleep, WaitForMultipleObjects, ResetEvent, OpenEventA, GetLastError, CloseHandle, GetProcAddress, FreeLibrary, LCMapStringA, LoadLibraryA, lstrcpyA, CompareStringW, CompareStringA, GetLocaleInfoW, GetTimeZoneInformation, InitializeCriticalSection, IsValidCodePage, EnumSystemLocalesA, GetUserDefaultLCID, GetDateFormatA, GetTimeFormatA, EnterCriticalSection, FatalAppExitA, LeaveCriticalSection, DeleteCriticalSection, IsValidLocale, TlsAlloc, SetLastError, GetCurrentThread, TlsFree, TlsSetValue, TlsGetValue, SetEnvironmentVariableA, GetEnvironmentVariableA, GetVersion
ole32.dll
CoInitializeSecurity, CoInitializeEx, CoSetProxyBlanket, CoCreateInstance, CoUninitialize
user32.dll
KillTimer, SetTimer, SetCursor, LoadCursorA, GetCursor, SetWindowPos, RegisterWindowMessageA, RegisterHotKey, UnregisterHotKey, GetWindowThreadProcessId, GetForegroundWindow, BroadcastSystemMessageA, ExitWindowsEx, SystemParametersInfoA, OpenDesktopA, CloseDesktop, ChangeDisplaySettingsExA, SendNotifyMessageA, MsgWaitForMultipleObjects, GetCursorPos, MonitorFromPoint, GetMonitorInfoA, GetDesktopWindow, SetForegroundWindow, WaitForInputIdle, GetMessageA, DispatchMessageA, TranslateMessage, IsWindow, DestroyWindow, FindWindowA, RegisterClassA, CreateWindowExA, ShowWindow, DefWindowProcA, PostMessageA, ChangeDisplaySettingsA, MessageBoxA, EnumDisplaySettingsExA, EnumDisplaySettingsA, GetSystemMetrics, EnumDisplayDevicesA, IntersectRect, WindowFromDC, GetWindowRect, MapWindowPoints, BroadcastSystemMessage

ATI2EVXX.exe

ATI External Event Utility for WindowsNT and Windows9X by ATI Technologies

Remove ATI2EVXX.exe
Version:   6.14.10.4118
MD5:   abc57a6f6070baf9786c318f59f29f0b
SHA1:   153dc6565974f9beeb8b1b8e97cf501f47322b1d
SHA256:   756a5689fabf133dbb0581f3bda5ded03ae3cb97b3b960fa299d584cf30a2e75

What is ATI2EVXX.exe?

The ATI External Event Utility for Windows reacts to external events (such as hotkeys or programs starting or stopping) and changes your video card's settings.

Overview

ati2evxx.exe runs as a service under the name Ati HotKey Poller within the local user context.

DetailsDetails

File name:ati2evxx.exe
Publisher:ATI Technologies Inc.
Product name:ATI External Event Utility for WindowsNT and Windows9X
Description:ATI External Event Utility EXE Module
Typical file path:C:\Windows\System32\ati2evxx.exe
File version:6.14.10.4118
Product version:6.14.10.4118.02
Size:372 KB (380,928 bytes)
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

BehaviorsBehaviors

Service
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • 'Ati HotKey Poller'

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00058766%
0.028634%
Kernel CPU:0.00035923%
0.013761%
User CPU:0.00022843%
0.014873%
Kernel CPU time:255,289 ms/min
100,923,805ms/min
Context switches:49/sec
284/sec
Memory
Private memory:771 KB
21.59 MB
Private (maximum):1.93 MB
Private (minimum):1.92 MB
Non-paged memory:771 KB
21.59 MB
Virtual memory:23.2 MB
140.96 MB
Virtual memory (peak):25.95 MB
169.69 MB
Working set:1.93 MB
18.61 MB
Working set (peak):3.42 MB
37.95 MB
Page faults:1,057/min
2,039/min
I/O
I/O read transfer:205.47 KB/sec
1.02 MB/min
I/O read operations:134/sec
343/min
I/O write transfer:5.24 KB/sec
274.99 KB/min
I/O write operations:134/sec
227/min
I/O other transfer:5.3 KB/sec
448.09 KB/min
I/O other operations:939/sec
1,671/min
Resource allocations
Threads:5
12
Handles:69
600
GUI GDI count:11
103
GUI USER count:5
49

BehaviorsProcess properties

Integrety level:Undefined
Platform:32-bit
Command lines:
  • ati2evxx.exe -client
  • C:\Windows\System32\ati2evxx.exe
Owner:User
Windows Service
Service name:Ati HotKey Poller
Type:Win32OwnProcess, InteractiveProcess
Parent processes:

ResourcesThreads

Averages
 
Ati2evxx.exe (main module)
Total CPU:0.00096292%
0.272967%
Kernel CPU:0.00070977%
0.107585%
User CPU:0.00025315%
0.165382%
Context switches:6/sec
79/sec
Memory:392 KB
1.16 MB
advapi32.dll (Advanced Windows 32 Base API by Microsoft)
Total CPU:0.00028285%
Kernel CPU:0.00020842%
User CPU:0.00007443%
Context switches:7/sec
Memory:620 KB

Common loaded modules

These are modules that are typiclaly loaded within the context of this process.

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Microsoft Windows XP 97.56%
Windows 7 Home Premium 2.44%

Distribution by countryDistribution by country

United States installs about 56.10% of ATI External Event Utility for WindowsNT and Windows9X.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Dell 43.24%
Hewlett-Packard 18.92%
Toshiba 16.22%
Intel 10.81%
ASUS 5.41%
Sahara 2.70%
Acer 2.70%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE