Should I block it?

No, this file is 100% safe to run.

VersionsAdditional versions

19bd0 20.00%
b7a16 20.00%
98bcc 20.00%
65e19 20.00%
b995f 20.00%
(Note, ZTE CORPORATION publishes each variation of this file with the same version, but the hashes are unique.)

Relationships

Parent process
Related files

PE structurePE file structure

Show functions
Import table
advapi32.dll
DeregisterEventSource, RegQueryValueExW, RegOpenKeyExW, RegCloseKey, CreateProcessAsUserW, StartServiceW, ReportEventW, RegisterEventSourceW, DeleteService, ControlService, CreateServiceW, CloseServiceHandle, OpenServiceW, OpenSCManagerW, RegisterServiceCtrlHandlerW, SetServiceStatus, StartServiceCtrlDispatcherW, RegSetValueExW, RegDeleteValueW, RegSetValueW, RegCreateKeyExW, RegDeleteKeyW
gdi32.dll
SetBkColor, SaveDC, RestoreDC, CreateBitmap, DeleteObject, GetStockObject, SetViewportOrgEx, SetTextColor, DeleteDC, SetMapMode, PtVisible, GetClipBox, ScaleWindowExtEx, SetWindowExtEx, ScaleViewportExtEx, SetViewportExtEx, GetDeviceCaps, SelectObject, Escape, ExtTextOutW, TextOutW, RectVisible, OffsetViewportOrgEx
kernel32.dll
InitializeCriticalSection, TlsAlloc, TlsSetValue, LocalReAlloc, DeleteCriticalSection, TlsFree, lstrcmpA, lstrlenA, lstrcmpW, GlobalFlags, GlobalAddAtomW, GlobalHandle, ReadFile, WriteFile, SetFilePointer, FlushFileBuffers, SetEndOfFile, CreateFileW, GlobalDeleteAtom, GetVersionExA, LoadLibraryA, GlobalFindAtomW, GetModuleHandleA, GetSystemTimeAsFileTime, TerminateProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, GetCommandLineA, GetStartupInfoA, RtlUnwind, RaiseException, HeapReAlloc, HeapSize, ExitProcess, GetConsoleCP, GetConsoleMode, GetCPInfo, GetACP, GetOEMCP, IsValidCodePage, GetStdHandle, GetModuleFileNameA, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, GetEnvironmentStringsW, SetHandleCount, GetFileType, HeapCreate, VirtualFree, QueryPerformanceCounter, GetTickCount, VirtualAlloc, InitializeCriticalSectionAndSpinCount, WriteConsoleA, GetConsoleOutputCP, WriteConsoleW, SetStdHandle, GetLocaleInfoA, GetStringTypeA, GetStringTypeW, LCMapStringA, LCMapStringW, CreateFileA, GlobalReAlloc, EnterCriticalSection, TlsGetValue, LeaveCriticalSection, LocalAlloc, GetCurrentProcessId, InterlockedDecrement, InterlockedIncrement, GetModuleHandleW, WideCharToMultiByte, SetLastError, GlobalFree, GlobalAlloc, GlobalLock, GlobalUnlock, FormatMessageW, LocalFree, lstrlenW, GetLocalTime, GetDiskFreeSpaceExW, GetDriveTypeW, GetLogicalDrives, CopyFileW, FindClose, FindNextFileW, FindFirstFileW, LockResource, MultiByteToWideChar, SizeofResource, LoadResource, FindResourceW, CreateThread, HeapFree, GetProcessHeap, HeapAlloc, CloseHandle, GetCurrentProcess, FreeLibrary, GetProcAddress, LoadLibraryW, WaitForSingleObject, DeleteFileW, CreateMutexW, GetVersionExW, WritePrivateProfileStringW, GetPrivateProfileStringW, GetPrivateProfileIntW, Sleep, GetLastError, GetModuleFileNameW, TerminateThread, GetExitCodeThread, GetCurrentThreadId, CreateDirectoryW, OutputDebugStringW
ole32.dll
CoUninitialize, CoInitialize, CoCreateInstance
oleacc.dll
LresultFromObject, CreateStdAccessibleObject
shell32.dll
ShellExecuteW, ShellExecuteExW
shlwapi.dll
PathRemoveFileSpecW, PathFileExistsW
user32.dll
TabbedTextOutW, DrawTextW, DrawTextExW, GrayStringW, DestroyMenu, GetTopWindow, DestroyWindow, GetMessageTime, GetMessagePos, MapWindowPoints, SetMenu, GetClientRect, CreateWindowExW, GetClassInfoExW, GetClassInfoW, RegisterClassW, AdjustWindowRectEx, CopyRect, DefWindowProcW, CallWindowProcW, GetMenu, SystemParametersInfoA, GetWindowPlacement, SetMenuItemBitmaps, GetMenuCheckMarkDimensions, LoadBitmapW, ModifyMenuW, RegisterWindowMessageW, CheckMenuItem, PostQuitMessage, SetForegroundWindow, IsIconic, SetWindowPos, SetWindowLongW, IsWindow, GetDlgItem, SetWindowsHookExW, CallNextHookEx, GetKeyState, ValidateRect, GetFocus, ClientToScreen, GetWindow, GetDlgCtrlID, GetWindowRect, GetClassNameW, PtInRect, SetWindowTextW, GetWindowTextW, GetWindowThreadProcessId, SendMessageW, GetParent, GetWindowLongW, GetLastActivePopup, IsWindowEnabled, EnableWindow, PostThreadMessageW, PeekMessageW, DispatchMessageW, MessageBoxW, UnhookWindowsHookEx, LoadCursorW, GetSystemMetrics, GetDC, ReleaseDC, GetSysColor, GetSysColorBrush, GetMenuState, LoadIconW, WinHelpW, OpenWindowStationW, GetProcessWindowStation, SetProcessWindowStation, OpenDesktopW, CloseDesktop, wsprintfW, FindWindowW, PostMessageW, GetCapture, GetClassLongW, SetPropW, GetPropW, RemovePropW, GetForegroundWindow, GetMenuItemID, GetMenuItemCount, GetSubMenu, EnableMenuItem
winspool.drv
DocumentPropertiesW, OpenPrinterW, ClosePrinter

assistantservices.exe

By ZTE CORPORATION (Signed)

Remove assistantservices.exe
MD5:   b7a165ddc6b2c8accfd5986933940285
SHA1:   85269a5321d522d6eec2da204797da2bc7876623
SHA256:   192355a0d00d2ae581cd0693a7ab9bd0a6532b79d8c1154859388736137076bf

Overview

assistantservices.exe runs as a service under the name UI Assistant Service with extensive SYSTEM privileges (full administrator access). This is typically installed with the program Join Air published by ZTE Corporation. The file is digitally signed by ZTE CORPORATION which was issued by the VeriSign certificate authority (CA).

DetailsDetails

File name:assistantservices.exe
Typical file path:C:\Program Files\t-mobile\mobile broadband manager\assistantservices.exe
Size:236 KB (241,664 bytes)
Certificate
Issued to:ZTE CORPORATION
Authority (CA):VeriSign
Digital DNA
PE subsystem:Windows GUI
File packed:No
.NET CLR:No
More details

ResourcesPrograms

The following program will install this file
ZTE Corporation
4% remove
Join Air is the control manager software for ZTE modems and is typically unbranded and can be used with any mobile network carrier.

BehaviorsBehaviors

Service
Runs under 'SYSTEM\CurrentControlSet\Services' by the Service Controller (services.exe)
  • 'UI Assistant Service'

ResourcesResource utilization

(Note: statistics below are averages based on a minimum sample size of 200 unique participants)
Averages
 
CPU
Total CPU:0.00369450%
0.028634%
Kernel CPU:0.00305394%
0.013761%
User CPU:0.00064057%
0.014873%
Kernel CPU time:48,984,314 ms/min
100,923,805ms/min
Memory
Private memory:2.9 MB
21.59 MB
Private (maximum):7.25 MB
Private (minimum):6.08 MB
Non-paged memory:2.9 MB
21.59 MB
Virtual memory:71.94 MB
140.96 MB
Virtual memory (peak):78.44 MB
169.69 MB
Working set:7.25 MB
18.61 MB
Working set (peak):7.25 MB
37.95 MB
Resource allocations
Threads:5
12
Handles:110
600

BehaviorsProcess properties

Integrety level:System
Platform:64-bit
Command line:"C:\Program Files\zte join air\assistantservices.exe"
Owner:SYSTEM
Windows Service
Service name:UI Assistant Service
Type:Win32OwnProcess, InteractiveProcess
Parent process:services.exe (Services and Controller app by Microsoft)

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 7 Ultimate 40.00%
Windows Se7en Titan 20.00%
Windows Vista Home Premium 20.00%
Windows 7 Home Premium 20.00%

Distribution by countryDistribution by country

DZ installs about 20.00% of assistantservices.exe.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
ASUS 50.00%
Acer 25.00%
Hewlett-Packard 25.00%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE