Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

6.14.11.1173 0.20%
6.14.11.1169 2.36%
6.14.11.1165 0.20%
6.14.11.1164 1.38%
6.14.11.1164 0.98%
6.14.11.1161 0.20%
6.14.11.1159 1.38%
6.14.11.1159 1.38%
6.14.11.1159 0.39%
6.14.11.1159 0.20%
6.14.11.1154 0.20%
6.14.11.1143 0.59%
6.14.11.1143 0.20%
6.14.11.1143 2.56%
6.14.11.1143 0.20%
6.14.11.1143 0.39%
6.14.11.1143 0.20%
6.14.11.1143 0.39%
6.14.11.1143 0.20%
6.14.11.1143 0.20%
6.14.11.1143 0.20%
6.14.11.1137 3.94%
6.14.11.1137 0.59%
6.14.11.1137 0.59%
6.14.11.1137 0.39%
View more

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegQueryValueExA, RegisterEventSourceA, ReportEventA, RegOpenCurrentUser, RegDeleteKeyA, RegOpenKeyExA, RegGetValueA, RegDeleteValueA, RegCreateKeyExA, RegSetValueExA, RegCloseKey, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, GetCurrentHwProfileA, RegGetValueW, RegSetValueExW, RevertToSelf, ImpersonateLoggedOnUser, RegDeleteTreeA
dwmapi.dll
DwmIsCompositionEnabled
gdi32.dll
D3DKMTCloseAdapter, D3DKMTQueryAdapterInfo, D3DKMTInvalidateActiveVidPn, D3DKMTOpenAdapterFromHdc, D3DKMTEscape, SetDeviceGammaRamp, CreateDCA, DeleteDC, D3DKMTPollDisplayChildren
kernel32.dll
VirtualProtect, IsValidLocale, SetConsoleCtrlHandler, GetLocaleInfoA, InterlockedExchange, LoadLibraryExA, InitializeCriticalSection, CreateFileA, RaiseException, SetStdHandle, WriteConsoleA, GetConsoleOutputCP, WriteConsoleW, EnumSystemLocalesA, GetSystemInfo, VirtualQuery, GetTimeZoneInformation, SetEndOfFile, GetProcessHeap, ReadFile, GetLocaleInfoW, CompareStringA, CompareStringW, SetEnvironmentVariableA, IsValidCodePage, GetUserDefaultLCID, GetDateFormatA, GetTimeFormatA, GetStringTypeW, GetStringTypeA, LCMapStringW, MultiByteToWideChar, LCMapStringA, HeapReAlloc, VirtualAlloc, SetFilePointer, FatalAppExitA, FlushFileBuffers, GetConsoleMode, GetConsoleCP, RtlUnwind, LeaveCriticalSection, EnterCriticalSection, GetSystemTimeAsFileTime, GetCurrentProcessId, QueryPerformanceCounter, VirtualFree, HeapCreate, HeapDestroy, DeleteCriticalSection, GetFileType, SetHandleCount, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetEnvironmentStrings, FreeEnvironmentStringsA, GetModuleFileNameA, GetStdHandle, WriteFile, ExitProcess, GetModuleHandleA, GetCurrentThread, SetLastError, TlsFree, TlsSetValue, MapViewOfFile, OpenFileMappingA, Sleep, OutputDebugStringA, WTSGetActiveConsoleSessionId, GetProcAddress, LoadLibraryA, FreeLibrary, CreateProcessA, LocalFree, GetLocalTime, GetTickCount, CloseHandle, GetExitCodeThread, CreateEventA, OpenEventA, WaitForSingleObject, WaitForMultipleObjects, SetEvent, ResetEvent, GetLastError, GetVersionExA, GetSystemDirectoryA, CreateThread, SetThreadPriority, CreateMutexA, OpenMutexA, ReleaseMutex, GetCurrentThreadId, WideCharToMultiByte, GetCommandLineA, GetStartupInfoA, TerminateProcess, GetCurrentProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, HeapFree, HeapAlloc, GetCPInfo, InterlockedIncrement, InterlockedDecrement, GetACP, GetOEMCP, GetModuleHandleW, TlsGetValue, TlsAlloc, InitializeCriticalSectionAndSpinCount, ReadConsoleW, HeapSize, LoadLibraryExW, IsProcessorFeaturePresent, OpenProcess, lstrlenW, QueryFullProcessImageNameW, GetSystemPowerStatus, WinExec
ole32.dll
PropVariantClear, CoCreateInstance, CoUninitialize, CoInitialize
powrprof.dll
PowerGetActiveScheme, PowerWriteACDefaultIndex, PowerWritePossibleValue, PowerWritePossibleFriendlyName, PowerCreatePossibleSetting, PowerWriteFriendlyName, PowerCreateSetting, PowerRemovePowerSetting, PowerReadDCValueIndex, PowerReadACValueIndex, PowerSettingAccessCheck, PowerEnumerate, PowerWriteDCValueIndex, PowerWriteACValueIndex, PowerSetActiveScheme, PowerWriteDCDefaultIndex, GetPwrCapabilities, PowerReadSettingAttributes, PowerWriteSettingAttributes, PowerDeterminePlatformRole
setupapi.dll
CM_Reenumerate_DevNode, CM_Locate_DevNodeA, SetupDiDestroyDeviceInfoList, SetupDiEnumDeviceInfo, SetupDiGetClassDevsA, CM_Get_Device_IDA, CM_Get_Parent, CM_Get_DevNode_Status, SetupDiGetDeviceRegistryPropertyA, SetupDiCallClassInstaller, SetupDiSetClassInstallParamsA, SetupDiOpenDeviceInfoA, SetupDiGetDeviceInstanceIdA, CM_Get_Device_ID_ExA, CM_Request_Eject_PC, CM_Get_Child_Ex, SetupDiGetHwProfileList
shlwapi.dll
wnsprintfW
user32.dll
DestroyWindow, PostQuitMessage, DefWindowProcA, UpdateWindow, ShowWindow, CreateWindowExA, RegisterClassA, DispatchMessageA, GetThreadDesktop, OpenInputDesktop, SetThreadDesktop, CloseDesktop, GetForegroundWindow, UnregisterDeviceNotification, RegisterDeviceNotificationA, PostThreadMessageA, KillTimer, SetTimer, EnumDisplaySettingsExA, EnumWindows, GetPropA, RedrawWindow, EnumDisplayDevicesA, SendInput, EnumDisplaySettingsA, ChangeDisplaySettingsExA, PostMessageA, GetMessageA, RegisterWindowMessageA, BroadcastSystemMessageA, SystemParametersInfoA, UnregisterPowerSettingNotification, RegisterPowerSettingNotification, FindWindowA, SendMessageA, ChangeWindowMessageFilter, SetSysColors, GetSysColor
userenv.dll
UnloadUserProfile, LoadUserProfileA
wtsapi32.dll
WTSFreeMemory, WTSQueryUserToken, WTSQuerySessionInformationA, WTSRegisterSessionNotification

ATIECLXX.exe

AMD External Events by AMD

Remove ATIECLXX.exe
Version:   6.14.11.1159
MD5:   3d59457a85b965b8df887eec26e098a8
SHA1:   4d17c36835ca43ca90be0e2af3e8aebfef4d79f7

What is ATIECLXX.exe?

The files atiesrxx.exe and atieclxx.exe are both associated with the AMD External Events Service Module, which is part of the ATI display driver package.

Overview

atieclxx.exe executes as a process under the SYSTEM account with extensive privileges (the system and the administrator accounts have the same file privileges) typically within the context of its parent atiesrxx.exe (AMD External Events by AMD). It has been configured with a firewall exception which allows both inbound and outbound network communication without being blocked.

DetailsDetails

File name:atieclxx.exe
Publisher:AMD
Product name:AMD External Events
Description:AMD External Events Client Module
Typical file path:C:\Windows\System32\atieclxx.exe
File version:6.14.11.1159
Size:563 KB (576,512 bytes)
Build date:10/8/2013 9:53 AM
Digital DNA
Entropy:6.438970
File packed:No
.NET CLR:No
More details

BehaviorsBehaviors

Windows firewall allowed program
Exceptions allow programs to access to the Internet through an outbound connections
  • Firewall exception for 'C:\Windows\system32\atieclxx.exe'

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00014214%
0.028634%
Kernel CPU:0.00011896%
0.013761%
User CPU:0.00002318%
0.014873%
Kernel CPU time:936,107 ms/min
100,923,805ms/min
Memory
Private memory:2.98 MB
21.59 MB
Private (maximum):12.41 MB
Private (minimum):4.22 MB
Non-paged memory:2.98 MB
21.59 MB
Virtual memory:81.52 MB
140.96 MB
Virtual memory (peak):85.02 MB
169.69 MB
Working set:10.04 MB
18.61 MB
Working set (peak):12.42 MB
37.95 MB
Resource allocations
Threads:11
12
Handles:157
600
GUI GDI count:9
103
GUI GDI peak:12
142
GUI USER count:8
49
GUI USER peak:10
71

BehaviorsProcess properties

Integrety level:System
Platform:64-bit
Command line:atieclxx
Owner:SYSTEM
Parent process:atiesrxx.exe (AMD External Events by AMD)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 42.50%
Windows 7 Ultimate 18.00%
Windows 8 10.50%
Windows 8.1 9.00%
Windows 7 Professional 6.00%
Windows 8.1 Pro 3.50%
Windows 7 Home Basic 3.50%
Windows 8 Single Language 1.50%
Windows 8 Pro 1.50%
Windows 8.1 Enterprise 1.00%
Windows Vista Home Premium 1.00%
Windows Seven Black Edition 0.50%
Windows 7 Starter 0.50%
Windows 8.1 Pro with Media Center 0.50%
Windows Vista Ultimate 0.50%

Distribution by countryDistribution by country

United States installs about 45.00% of AMD External Events.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Hewlett-Packard 27.92%
Toshiba 16.67%
Acer 15.42%
ASUS 10.83%
Dell 10.83%
Lenovo 5.83%
Samsung 3.33%
Sony 3.33%
GIGABYTE 2.08%
Medion 0.83%
Gateway 0.83%
MSI 0.83%
Apple 0.83%
Alienware 0.42%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE