Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

486c4 5.26%
c4b05 5.26%
eeabe 5.26%
0460f 5.26%
e46b8 5.26%
45afe 5.26%
c639d 15.79%
16ae2 15.79%
13a6d 5.26%
caf96 5.26%
639d0 5.26%
d6a72 5.26%
e864e 5.26%
244d6 5.26%
ef3d0 5.26%
(Note, ZTE CORPORATION publishes each variation of this file with the same version, but the hashes are unique.)

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
OpenServiceW, CreateProcessAsUserW, RegCloseKey, RegQueryValueExW, RegOpenKeyExW, StartServiceW, DeregisterEventSource, ReportEventW, RegisterEventSourceW, DeleteService, ControlService, CreateServiceW, CloseServiceHandle, OpenSCManagerW, RegisterServiceCtrlHandlerW, SetServiceStatus, StartServiceCtrlDispatcherW, RegSetValueExW, RegDeleteValueW, RegSetValueW, RegCreateKeyExW, RegDeleteKeyW
gdi32.dll
DeleteObject, CreateBitmap, GetClipBox, SetTextColor, SetBkColor, SaveDC, RestoreDC, GetStockObject, SetViewportOrgEx, DeleteDC, SetMapMode, PtVisible, RectVisible, ScaleWindowExtEx, SetWindowExtEx, ScaleViewportExtEx, SetViewportExtEx, TextOutW, ExtTextOutW, Escape, SelectObject, GetDeviceCaps, OffsetViewportOrgEx
kernel32.dll
LocalFree, FormatMessageW, GlobalUnlock, GlobalLock, GlobalAlloc, GlobalFree, SetLastError, GetModuleHandleW, InterlockedIncrement, InterlockedDecrement, LocalAlloc, LeaveCriticalSection, TlsGetValue, EnterCriticalSection, GlobalReAlloc, GlobalHandle, InitializeCriticalSection, TlsAlloc, TlsSetValue, lstrlenW, DeleteCriticalSection, TlsFree, lstrcmpA, lstrlenA, lstrcmpW, GlobalFlags, GlobalAddAtomW, ReadFile, WriteFile, SetFilePointer, FlushFileBuffers, SetEndOfFile, GlobalDeleteAtom, GetVersionExA, LoadLibraryA, GlobalFindAtomW, GetModuleHandleA, TerminateProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, GetSystemTimeAsFileTime, GetCommandLineA, GetStartupInfoA, RtlUnwind, RaiseException, HeapReAlloc, HeapSize, ExitProcess, GetConsoleCP, GetConsoleMode, GetCPInfo, GetACP, GetOEMCP, IsValidCodePage, GetStdHandle, GetModuleFileNameA, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, GetEnvironmentStringsW, SetHandleCount, GetFileType, HeapCreate, VirtualFree, QueryPerformanceCounter, GetTickCount, VirtualAlloc, InitializeCriticalSectionAndSpinCount, WriteConsoleA, GetConsoleOutputCP, WriteConsoleW, SetStdHandle, GetLocaleInfoA, GetStringTypeA, GetStringTypeW, LCMapStringA, LCMapStringW, CreateFileA, OutputDebugStringW, GetLocalTime, GetDiskFreeSpaceExW, GetDriveTypeW, GetLogicalDrives, CopyFileW, CreateThread, HeapFree, GetProcessHeap, HeapAlloc, LoadLibraryW, FreeLibrary, GetProcAddress, GetCurrentProcess, GetCurrentProcessId, CreateFileW, CloseHandle, MultiByteToWideChar, WideCharToMultiByte, FindClose, FindNextFileW, FindFirstFileW, LockResource, DeleteFileW, CreateMutexW, GetVersionExW, WritePrivateProfileStringW, GetPrivateProfileStringW, GetPrivateProfileIntW, Sleep, SizeofResource, LoadResource, FindResourceW, WaitForSingleObject, TerminateThread, GetExitCodeThread, GetCurrentThreadId, GetLastError, LocalReAlloc, GetModuleFileNameW
ole32.dll
CoCreateInstance, CoUninitialize, CoInitialize
oleacc.dll
LresultFromObject, CreateStdAccessibleObject
shell32.dll
ShellExecuteW, ShellExecuteExW
shlwapi.dll
PathFileExistsW, PathRemoveFileSpecW
user32.dll
GetCapture, WinHelpW, LoadIconW, RegisterWindowMessageW, TabbedTextOutW, DrawTextW, DrawTextExW, GrayStringW, DestroyMenu, GetClientRect, CreateWindowExW, GetClassInfoExW, GetClassInfoW, RegisterClassW, AdjustWindowRectEx, CopyRect, DefWindowProcW, CallWindowProcW, GetMenu, SystemParametersInfoA, GetWindowPlacement, SetMenuItemBitmaps, GetMenuCheckMarkDimensions, LoadBitmapW, ModifyMenuW, EnableMenuItem, CheckMenuItem, PostQuitMessage, GetClassLongW, IsIconic, SetWindowPos, SetWindowLongW, IsWindow, GetDlgItem, SetWindowsHookExW, CallNextHookEx, GetKeyState, ValidateRect, ClientToScreen, GetWindow, GetDlgCtrlID, GetWindowRect, GetClassNameW, PtInRect, SetWindowTextW, GetWindowTextW, GetWindowThreadProcessId, SendMessageW, GetParent, GetWindowLongW, GetLastActivePopup, IsWindowEnabled, EnableWindow, MessageBoxW, UnhookWindowsHookEx, LoadCursorW, GetSystemMetrics, GetDC, ReleaseDC, GetSysColor, GetSysColorBrush, GetMenuState, PostThreadMessageW, DispatchMessageW, PeekMessageW, GetMenuItemID, GetMenuItemCount, GetSubMenu, OpenWindowStationW, GetProcessWindowStation, SetProcessWindowStation, OpenDesktopW, CloseDesktop, SetPropW, GetPropW, RemovePropW, GetForegroundWindow, wsprintfW, FindWindowW, PostMessageW, GetTopWindow, DestroyWindow, GetMessageTime, GetMessagePos, MapWindowPoints, SetMenu, SetForegroundWindow, GetFocus
winspool.drv
ClosePrinter, OpenPrinterW, DocumentPropertiesW

assistantservices.exe

By ZTE CORPORATION  (Signed)

Remove assistantservices.exe
MD5:   45afea2c0ef6ebf8a2c3089d7db62935
SHA1:   062857887bf9df75a727d829c819ab1f47431962

Overview

assistantservices.exe runs as a service under the name UI Assistant Service with extensive SYSTEM privileges (full administrator access). This is typically installed with the program Join Air published by ZTE Corporation. The file is digitally signed by ZTE CORPORATION which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:assistantservices.exe
Typical file path:C:\Program Files\reliance 3g\assistantservices.exe
Size:255.33 KB (261,456 bytes)
Certificate
Issued to:ZTE CORPORATION
Authority (CA):VeriSign
Digital DNA
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following program will install this file
ZTE Corporation
7% remove

BehaviorsBehaviors

Service
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • 'UI Assistant Service'

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00143257%
0.028634%
Kernel CPU:0.00089168%
0.013761%
User CPU:0.00054089%
0.014873%
Kernel CPU time:4,097,678,267 ms/min
100,923,805ms/min
Memory
Private memory:5.1 MB
21.59 MB
Private (maximum):7.53 MB
Private (minimum):3.58 MB
Non-paged memory:5.1 MB
21.59 MB
Virtual memory:67.86 MB
140.96 MB
Virtual memory (peak):68.87 MB
169.69 MB
Working set:7.53 MB
18.61 MB
Working set (peak):7.54 MB
37.95 MB
Resource allocations
Threads:5
12
Handles:57
600

BehaviorsProcess properties

Integrety level:System
Platform:64-bit
Command line:"C:\Program Files\join air\assistantservices.exe"
Owner:SYSTEM
Windows Service
Service name:UI Assistant Service
Type:Win32OwnProcess, InteractiveProcess
Parent process:services.exe (Services and Controller app by Microsoft)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Home Premium 21.05%
Windows 7 Ultimate 21.05%
Windows 7 Home Basic 15.79%
Microsoft Windows XP 15.79%
Windows Vista Home Premium 10.53%
Windows 7 Professional 10.53%
Windows 8 Pro 5.26%

Distribution by countryDistribution by country

Malaysia installs about 26.32% of assistantservices.exe.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
Hewlett-Packard 25.00%
Toshiba 25.00%
Acer 12.50%
Sony 12.50%
Sahara 12.50%
MSI 12.50%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE