Hello,
Yesterday I was playing around with some settings in the radeon software and avast detected atieclxx.exe as a virus, can’t remember the exact code, I think Ipd.alexa.51 but not entirely sure
I had to make an exception for the window to go away. But deleted the exception after and did another scan to see if it would detect it again. But nothing so far.
Log:
“[2019-07-22 18:46:26.288] [info ] [manager ] [ 1184: 7080] Get detection for hash ‘C:\Windows\System32\DriverStore\FileRepository\c0344727.inf_amd64_bcc34be71d351e6c\B344591\atieclxx.exe’
[2019-07-22 18:46:26.288] [info ] [manager ] [ 1184: 7080] - not found - create with action required ‘1’
[2019-07-22 18:46:26.288] [info ] [detection ] [ 1184: 7080] Window is closed - open
[2019-07-22 18:46:26.289] [info ] [win_creator] [ 1184: 9596] opening window (C:\Windows\System32\DriverStore\FileRepository\c0344727.inf_amd64_bcc34be71d351e6c\B344591\atieclxx.exe)
[2019-07-22 18:46:26.289] [info ] [manager ] [ 1184: 9596] Get detection for hash ‘C:\Windows\System32\DriverStore\FileRepository\c0344727.inf_amd64_bcc34be71d351e6c\B344591\atieclxx.exe’
[2019-07-22 18:46:54.443] [info ] [detection ] [ 1184: 7080] User choice - ‘allow’
[2019-07-22 18:46:54.510] [info ] [manager ] [ 1184: 7080] Get detection for hash ‘C:\Windows\System32\DriverStore\FileRepository\c0344727.inf_amd64_bcc34be71d351e6c\B344591\atieclxx.exe’
[2019-07-22 18:46:54.510] [info ] [detection ] [ 1184: 7080] Detection resolved
[2019-07-22 18:46:54.510] [info ] [manager ] [ 1184: 7080] Remove detection for hash ‘C:\Windows\System32\DriverStore\FileRepository\c0344727.inf_amd64_bcc34be71d351e6c\B344591\atieclxx.exe’
[2019-07-22 18:47:00.358] [info ] [win_creator] [ 1184: 9596] window closed (C:\Windows\System32\DriverStore\FileRepository\c0344727.inf_amd64_bcc34be71d351e6c\B344591\atieclxx.exe)”
I also checked the file’s signature which is name of signer “Advanced Micro Devices Inc.” and “Digest algorithm: Sha1”
Is this a false positive or is it an actual virus?