Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

6.14.11.1173 0.20%
6.14.11.1169 2.36%
6.14.11.1165 0.20%
6.14.11.1164 1.38%
6.14.11.1164 0.98%
6.14.11.1161 0.20%
6.14.11.1159 1.38%
6.14.11.1159 1.38%
6.14.11.1159 0.39%
6.14.11.1159 0.20%
6.14.11.1154 0.20%
6.14.11.1143 0.59%
6.14.11.1143 0.20%
6.14.11.1143 2.56%
6.14.11.1143 0.20%
6.14.11.1143 0.39%
6.14.11.1143 0.20%
6.14.11.1143 0.39%
6.14.11.1143 0.20%
6.14.11.1143 0.20%
6.14.11.1143 0.20%
6.14.11.1137 3.94%
6.14.11.1137 0.59%
6.14.11.1137 0.59%
6.14.11.1137 0.39%
View more

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
RegQueryValueExA, RegisterEventSourceA, ReportEventA, RegOpenCurrentUser, RegDeleteKeyA, RegOpenKeyExA, RegGetValueA, RegDeleteValueA, RegCreateKeyExA, RegSetValueExA, RegCloseKey, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, GetCurrentHwProfileA, RegGetValueW, RegSetValueExW, RevertToSelf, ImpersonateLoggedOnUser, RegDeleteTreeA
dwmapi.dll
DwmIsCompositionEnabled
gdi32.dll
D3DKMTCloseAdapter, D3DKMTQueryAdapterInfo, D3DKMTInvalidateActiveVidPn, D3DKMTOpenAdapterFromHdc, D3DKMTEscape, SetDeviceGammaRamp, CreateDCA, DeleteDC, D3DKMTPollDisplayChildren
kernel32.dll
VirtualProtect, IsValidLocale, SetConsoleCtrlHandler, GetLocaleInfoA, InterlockedExchange, LoadLibraryExA, InitializeCriticalSection, CreateFileA, RaiseException, SetStdHandle, WriteConsoleA, GetConsoleOutputCP, WriteConsoleW, EnumSystemLocalesA, GetSystemInfo, VirtualQuery, GetTimeZoneInformation, SetEndOfFile, GetProcessHeap, ReadFile, GetLocaleInfoW, CompareStringA, CompareStringW, SetEnvironmentVariableA, IsValidCodePage, GetUserDefaultLCID, GetDateFormatA, GetTimeFormatA, GetStringTypeW, GetStringTypeA, LCMapStringW, MultiByteToWideChar, LCMapStringA, HeapReAlloc, VirtualAlloc, SetFilePointer, FatalAppExitA, FlushFileBuffers, GetConsoleMode, GetConsoleCP, RtlUnwind, LeaveCriticalSection, EnterCriticalSection, GetSystemTimeAsFileTime, GetCurrentProcessId, QueryPerformanceCounter, VirtualFree, HeapCreate, HeapDestroy, DeleteCriticalSection, GetFileType, SetHandleCount, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetEnvironmentStrings, FreeEnvironmentStringsA, GetModuleFileNameA, GetStdHandle, WriteFile, ExitProcess, GetModuleHandleA, GetCurrentThread, SetLastError, TlsFree, TlsSetValue, MapViewOfFile, OpenFileMappingA, Sleep, OutputDebugStringA, WTSGetActiveConsoleSessionId, GetProcAddress, LoadLibraryA, FreeLibrary, CreateProcessA, LocalFree, GetLocalTime, GetTickCount, CloseHandle, GetExitCodeThread, CreateEventA, OpenEventA, WaitForSingleObject, WaitForMultipleObjects, SetEvent, ResetEvent, GetLastError, GetVersionExA, GetSystemDirectoryA, CreateThread, SetThreadPriority, CreateMutexA, OpenMutexA, ReleaseMutex, GetCurrentThreadId, WideCharToMultiByte, GetCommandLineA, GetStartupInfoA, TerminateProcess, GetCurrentProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, HeapFree, HeapAlloc, GetCPInfo, InterlockedIncrement, InterlockedDecrement, GetACP, GetOEMCP, GetModuleHandleW, TlsGetValue, TlsAlloc, InitializeCriticalSectionAndSpinCount, ReadConsoleW, HeapSize, LoadLibraryExW, IsProcessorFeaturePresent, OpenProcess, lstrlenW, QueryFullProcessImageNameW, GetSystemPowerStatus, WinExec
ole32.dll
PropVariantClear, CoCreateInstance, CoUninitialize, CoInitialize
powrprof.dll
PowerGetActiveScheme, PowerWriteACDefaultIndex, PowerWritePossibleValue, PowerWritePossibleFriendlyName, PowerCreatePossibleSetting, PowerWriteFriendlyName, PowerCreateSetting, PowerRemovePowerSetting, PowerReadDCValueIndex, PowerReadACValueIndex, PowerSettingAccessCheck, PowerEnumerate, PowerWriteDCValueIndex, PowerWriteACValueIndex, PowerSetActiveScheme, PowerWriteDCDefaultIndex, GetPwrCapabilities, PowerReadSettingAttributes, PowerWriteSettingAttributes, PowerDeterminePlatformRole
setupapi.dll
CM_Reenumerate_DevNode, CM_Locate_DevNodeA, SetupDiDestroyDeviceInfoList, SetupDiEnumDeviceInfo, SetupDiGetClassDevsA, CM_Get_Device_IDA, CM_Get_Parent, CM_Get_DevNode_Status, SetupDiGetDeviceRegistryPropertyA, SetupDiCallClassInstaller, SetupDiSetClassInstallParamsA, SetupDiOpenDeviceInfoA, SetupDiGetDeviceInstanceIdA, CM_Get_Device_ID_ExA, CM_Request_Eject_PC, CM_Get_Child_Ex, SetupDiGetHwProfileList
shlwapi.dll
wnsprintfW
user32.dll
DestroyWindow, PostQuitMessage, DefWindowProcA, UpdateWindow, ShowWindow, CreateWindowExA, RegisterClassA, DispatchMessageA, GetThreadDesktop, OpenInputDesktop, SetThreadDesktop, CloseDesktop, GetForegroundWindow, UnregisterDeviceNotification, RegisterDeviceNotificationA, PostThreadMessageA, KillTimer, SetTimer, EnumDisplaySettingsExA, EnumWindows, GetPropA, RedrawWindow, EnumDisplayDevicesA, SendInput, EnumDisplaySettingsA, ChangeDisplaySettingsExA, PostMessageA, GetMessageA, RegisterWindowMessageA, BroadcastSystemMessageA, SystemParametersInfoA, UnregisterPowerSettingNotification, RegisterPowerSettingNotification, FindWindowA, SendMessageA, ChangeWindowMessageFilter, SetSysColors, GetSysColor
userenv.dll
UnloadUserProfile, LoadUserProfileA
wtsapi32.dll
WTSFreeMemory, WTSQueryUserToken, WTSQuerySessionInformationA, WTSRegisterSessionNotification

ATIECLXX.exe

AMD External Events by AMD

Remove ATIECLXX.exe
Version:   6.14.11.1137
MD5:   0620fe89f70fc0895dc312eebaa62b06
SHA1:   07c1ddc5b42c4504affe4d7a749075d22d6db1fc
SHA256:   674e91cabb529c0d8d2aede0f726fb46cf7712b5d6940fad383e8cff29361d8c

What is ATIECLXX.exe?

The files atiesrxx.exe and atieclxx.exe are both associated with the AMD External Events Service Module, which is part of the ATI display driver package.

Overview

atieclxx.exe executes as a process under the SYSTEM account with extensive privileges (the system and the administrator accounts have the same file privileges) typically within the context of its parent atiesrxx.exe (AMD External Events by AMD). It has been configured with a firewall exception which allows both inbound and outbound network communication without being blocked.

DetailsDetails

File name:atieclxx.exe
Publisher:AMD
Product name:AMD External Events
Description:AMD External Events Client Module
Typical file path:C:\Windows\System32\atieclxx.exe
File version:6.14.11.1137
Size:538 KB (550,912 bytes)
Digital DNA
Entropy:6.438970
File packed:No
.NET CLR:No
More details

BehaviorsBehaviors

Windows firewall allowed program
Exceptions allow programs to access to the Internet through an outbound connections
  • Firewall exception for 'C:\Windows\system32\atieclxx.exe'

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00035347%
0.028634%
Kernel CPU:0.00027077%
0.013761%
User CPU:0.00008270%
0.014873%
Kernel CPU time:873,851 ms/min
100,923,805ms/min
CPU cycles:18,615/sec
17,470,203/sec
Memory
Private memory:2.66 MB
21.59 MB
Private (maximum):8.63 MB
Private (minimum):5.3 MB
Non-paged memory:2.66 MB
21.59 MB
Virtual memory:84.38 MB
140.96 MB
Virtual memory (peak):88.24 MB
169.69 MB
Working set:6.51 MB
18.61 MB
Working set (peak):9.71 MB
37.95 MB
Page faults:3,321/min
2,039/min
I/O
I/O read transfer:655 Bytes/sec
1.02 MB/min
I/O read operations:1/sec
343/min
I/O other transfer:14 Bytes/sec
448.09 KB/min
I/O other operations:2/sec
1,671/min
Resource allocations
Threads:10
12
Handles:141
600
GUI GDI count:9
103
GUI GDI peak:11
142
GUI USER count:6
49
GUI USER peak:7
71

BehaviorsProcess properties

Integrety level:System
Platform:64-bit
Command line:atieclxx
Owner:SYSTEM
Parent process:atiesrxx.exe (AMD External Events by AMD)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 42.50%
Windows 7 Ultimate 18.00%
Windows 8 10.50%
Windows 8.1 9.00%
Windows 7 Professional 6.00%
Windows 8.1 Pro 3.50%
Windows 7 Home Basic 3.50%
Windows 8 Single Language 1.50%
Windows 8 Pro 1.50%
Windows 8.1 Enterprise 1.00%
Windows Vista Home Premium 1.00%
Windows Seven Black Edition 0.50%
Windows 7 Starter 0.50%
Windows 8.1 Pro with Media Center 0.50%
Windows Vista Ultimate 0.50%

Distribution by countryDistribution by country

United States installs about 45.00% of AMD External Events.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Hewlett-Packard 27.92%
Toshiba 16.67%
Acer 15.42%
ASUS 10.83%
Dell 10.83%
Lenovo 5.83%
Samsung 3.33%
Sony 3.33%
GIGABYTE 2.08%
Medion 0.83%
Gateway 0.83%
MSI 0.83%
Apple 0.83%
Alienware 0.42%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE