VersionsVersions

6.3.9600.16384 (winblue_rtm.130821-1623) 3.48%
6.3.9600.16384 (winblue_rtm.130821-1623) 0.05%
6.3.9431.0 (winmain_bluemp.130615-1214) 0.16%
6.3.9431.0 (winmain_bluemp.130615-1214) 0.01%
6.2.9200.16864 (win8_gdr.140309-1509) 0.56%
6.2.9200.16420 (win8_gdr.120919-1813) 1.31%
6.2.9200.16420 (win8_gdr.120919-1813) 10.06%
6.2.9200.16384 (win8_rtm.120725-1247) 0.63%
6.2.9200.16384 (win8_rtm.120725-1247) 0.57%
6.2.8400.0 (winmain_win8rc.120518-1423) 0.05%
6.2.8400.0 (winmain_win8rc.120518-1423) 0.05%
6.2.8250.0 (winmain_win8beta.120217-1520) 0.01%
6.2.8102.0 (winmain_win8m3.110823-1455) 0.05%
6.1.7601.22465 (win7sp1_ldr.130924-1532) 0.01%
6.1.7601.22121 (win7sp1_ldr.120927-0414) 0.01%
6.1.7601.22119 (win7sp1_ldr.120926-0334) 0.01%
6.1.7601.22119 (win7sp1_ldr.120926-0334) 0.01%
6.1.7601.22099 (win7sp1_ldr.120824-0334) 0.01%
6.1.7601.22099 (win7sp1_ldr.120824-0334) 0.01%
6.1.7601.22010 (win7sp1_ldr.120601-1503) 0.10%
6.1.7601.22010 (win7sp1_ldr.120601-1503) 0.05%
6.1.7601.18443 (win7sp1_gdr.140411-1533) 0.01%
6.1.7601.18443 (win7sp1_gdr.140411-1533) 3.74%
6.1.7601.18270 (win7sp1_gdr.130924-1532) 1.61%
6.1.7601.18270 (win7sp1_gdr.130924-1532) 0.28%
6.1.7601.17725 (win7sp1_gdr.111116-1503) 29.92%
6.1.7601.17725 (win7sp1_gdr.111116-1503) 13.78%
6.1.7600.21225 (win7_ldr.120601-1507) 0.05%
6.1.7600.16915 (win7_gdr.111116-1506) 2.61%
6.1.7600.16915 (win7_gdr.111116-1506) 2.25%
6.1.7600.16385 (win7_rtm.090713-1255) 6.02%
6.1.7600.16385 (win7_rtm.090713-1255) 2.89%
6.1.7600.16384 (win7_rtm.090710-1945) 0.01%
6.0.6000.16386 (vista_rtm.061101-2205) 0.17%
6.0.6000.16386 (vista_rtm.061101-2205) 0.01%
6.0.6000.16386 (vista_rtm.061101-2205) 0.01%
6.0.6000.16386 (vista_rtm.061101-2205) 0.10%
6.0.6000.16386 (vista_rtm.061101-2205) 0.20%
6.0.6000.16386 (vista_rtm.061101-2205) 3.89%
6.0.6000.16386 (vista_rtm.061101-2205) 0.27%
6.0.6000.16386 (vista_rtm.061101-2205) 0.01%
6.0.6000.16386 (vista_rtm.061101-2205) 0.79%
5.2.3790.1830 (srv03_sp1_rtm.050324-1447) 0.05%
5.2.3790.0 (srv03_rtm.030324-2048) 0.01%
5.1.2600.5512 (xpsp.080413-2113) 9.37%
5.1.2600.5512 (xpsp.080413-2113) 0.67%
5.1.2600.5512 (xpsp.080413-2113) 0.48%
5.1.2600.5512 (xpsp.080413-2113) 0.05%
5.1.2600.5512 (xpsp.080413-2113) 0.44%
5.1.2600.5512 (xpsp.080413-2113) 0.01%
View more

Relationships

lsass.exe

Local Security Authority Process by Microsoft Corporation (Signed)

Remove lsass.exe
This is a Windows system installed file with Windows File Protection (WFP) enabled.

Overview

lsass.exe has 74 known versions, the most recent one is 6.3.9600.16384 (winblue_rtm.130821-1623). It is started as a Windows Service called 'Titkosított fájlrendszer (EFS)' with the name 'KeyIso' and described as “Durch den Start dieses Diensts wird anderen Diensten signalisiert, dass die Sicherheitskontenverwaltung (SAM) bereit ist, Anforderungen anzunehmen. Wenn Sie diesen Dienst deaktivieren, wird verhindert, dass andere Dienste im System benachrichtigt werden, wenn die Sicherheitskontenverwaltung bereit ist. Dies kann wiederum dazu führen, dass diese Dienste nicht korrekt gestartet werden. Dieser Dienst”. . In addition, it is run under the context of the SYSTEM account with extensive privileges (the administrator accounts have the same privileges). This is executed as a shared service (which simply means that this service can share a process with other Win32 services). The average file size is about 19.5 KB. It is an authenticode code-signed executable issued to Microsoft Corporation by the certification authority Microsoft Corporation. During the process's lifecycle, the typical CPU resource utilization is about 0.0039% including both foreground and background operations, the average private memory consumption is about 6.2 MB with the maximum memory reaching around 13.38 MB. Addionally, typically read and write I/O disk operations is about 1.99 KB per minute for reads and 1.82 KB per minute for writes.

What is lsass.exe?

Local Security Authority Subsystem Service (LSASS), is a process in Microsoft Windows operating systems that is responsible for enforcing the security policy on the system. It verifies users logging on to a Windows computer or server, handles password changes, and creates access tokens.

DetailsDetails

File name:lsass.exe
Publisher:Microsoft Corporation
Product name:Local Security Authority Process
Description:Microsoft® Windows® Operating System
Typical file path:C:\Windows\System32\lsass.exe
Certificate
Issued to:Microsoft Corporation
Authority (CA):Microsoft Corporation
Expiration date:Friday, June 13, 2014
Windows Service
Service name:KeyIso
Display name:Titkosított fájlrendszer (EFS)
Description:“Durch den Start dieses Diensts wird anderen Diensten signalisiert, dass die Sicherheitskontenverwaltung (SAM) bereit ist, Anforderungen anzunehmen. Wenn Sie diesen Dienst deaktivieren, wird verhindert, dass andere Dienste im System benachrichtigt werden, wenn die Sicherheitskontenverwaltung bereit ist. Dies kann wiederum dazu führen, dass diese Dienste nicht korrekt gestartet werden. Dieser Dienst”
Type:Win32ShareProcess

BehaviorsBehaviors

(Note, the behaviors below are for all versions of lsass.exe, select a unique version for details.)
Services
Runs under 'SYSTEM\CurrentControlSet\Services' as a shared service by the Service Host (svchost.exe)

VersionsAll file variations of lsass.exe

MD5SHA-1File size
f6f209ddb94959ba104fc8fc87c53759 bcbce61852df6cc59f897c78471c222e564b32b3 43.95 KB
f33bfcbbbaace7208db433b6cca98930 660c41bbcb56ccceda63811c9211c583ccbf4f8d 33.27 KB
355e261b1b3b74818e81db84d66f623e e639d59f73bc2fe73578ee1cd124261a6ca4a588 43.95 KB
f606b88b4ca88e95359149b53527b78c fdb1b75743c75ac4fe21e9443c2d950068d69eb8 33.27 KB
f1da34d64f2ba200d28a7451804e2fee 5ad736ea0bc12bf147c398aa734314c59f2edc3d 35 KB
0118d8c2b0b04f6b6fe620eadda53449 60c13a749d90f22145a3c6e47a4c4b9f46b4871b 22.5 KB
f702ab6181513303ab0fc8d59e52708b 26768f176ab66a33ed3ce0fd81823d60fc570d62 35 KB
747ed861374e5589ee56d28e01bdcfe1 8264a758f1373c2ae79877b504a5707d00f1a118 23 KB
6e0e63801fbef27995107b8269bcfaad e723a350c22cc656b65c40f418afffb95583c841 35 KB
6dbd56c7117f98d56c8880614fe765b7 386e1d846519c60da28fe7eac46e6a1f88487957 35.5 KB
7346b1ae6101d574e58154b2351ae82b 3c60c2abc5a79ebbc02df3f1f12726194783a617 23.5 KB
802b5f956ad0d573a0e81411082da757 00ea7ea875b17dd78f2e449e95222bb41dbf374a 23 KB
8f93384ff1e56ebeaaf59a63db01c0b9 cff4cd626c4d3b215400a158a6486038a6086061 23 KB
f021dafb1f87616fceba159c2ed7042f 54f09b07da1095dad987a1bae5d47c3387e9f566 30 KB
4319cbf7c54d53f5c592a794127a6276 c62c984e915b1e51042362ba01f1fb457691bf4f 30 KB
9e3e3e092b01d89a742ff65549929bf4 5bb23043bfd91a571707ef527c05f55aa9bb99af 30.5 KB
71034b08a78ea24ace92736ec56fe6de 1137d570eeb93228e6b1a868e5e8fba0df3f0a8b 21.5 KB
7abc23f3d86880ad62acedc7479608f8 41754007aa5171717921b2296e98392ce43b68f4 22 KB
77119f1f9b492b260030c34f9be327fa ffd8c1d12593c1bfd7f8c03da05967eca9d1e140 30.5 KB
fa7b950e4ca6aa260c4eaba19e03644d e52e39d7ca4dc31c517106bb143a8f5f2caddbc9 22 KB
79c908caa6f43021eb05f4c733a927d1 e2fe2320eb9d1fb342615f14cc3d7aa992445299 30.5 KB
dd17e1573651293d4ed31053795b3471 e05e9204b463bc9e7d8fa5e3d337f5cac94c36a8 22 KB
204f3f58212b3e422c90bd9691a2df28 427724931c69c0de921ef30f42c7d47f2e08feb6 30.5 KB
4d71227301dd8d09097b9e4cc6527e5a ddca001bd494dcac31df7217036dd1b28b0b274e 30 KB
803b370865d907ea21dc0c2b6a8936b5 bcf7d8c4217064b1b7e1b31e662c30c6f182e46f 21.5 KB
c118a82cd78818c29ab228366ebf81c3 a61609fe669d05d7fac08104d767c66e8cd6aa01 30.5 KB
81951f51e318aecc2d68559e47485cc4 d49245356dd4dc5e8f64037e4dc385355882a340 22 KB
bf63ce11a25f3509129888710d5111fc 352da592f5689a3f803a54b6b107c775fea4671c 30.5 KB
c2243ff9e9aad0c30e8b1a0914da15b6 a5f85e07afb043281573c8c2225a5e734a9a0c74 22 KB
156f6159457d0aa7e59b62681b56eb90 8d303b224a9f644f5bd5729014b45d1054e31ebc 30.5 KB
f42309c4191c506b71db5d1126d26318 2a17507a180f5809155c5f113cb255c9f418829e 22 KB
0793f40b9b8a1bdd266296409dbd91ea f34bbe523cf4b187b2c27da2bcd267412301745d 30.5 KB
81b78ce050d83e873bd60f5966c2c300 43fa7e43f917c9d3e41be2504d59c03c7b6942b1 22 KB
3978f3540329e16c0ac3bcf677e5669f d68e2597379ef32c8084259b1c57664c19856f8b 9.5 KB
80f4593e92ff960e4763380d3168e498 cbe09e8267953545961f30b48855222fd69c4e6a 11 KB
6a0e382e74280e4cc0df17fe2661d003 1ec718bdc35d708d028233114a3fd0d41c7b9064 7.5 KB
40348dcec0712ed42231c5f90a69a690 900a88941502925d8e04fa8e58235e90b5d62108 11 KB
c731b1fe449d4e9cea358c9d55b69be9 8504c7eb027de08985632489e3efdb6da28b57a0 7.5 KB
a3e186b4b935905b829219502557314e 6aeef0e77de477d89fb71e573c7d1b2d8c445cd6 9.5 KB
a911ecac81f94adeafbe8e3f7873edb0 c167673266c361e26f5d14c0203b998d7f3472f4 9.5 KB
d09a5da84b7c9ca9b02ebcd7fae41c8d 24305bcd2df47c03fe57be10752452d47571b204 7.5 KB
260bf9c43ee12c6898a9f5aab0fb0e5d fb81e1012790a128ddd8a408acda1327f3d14f49 11 KB
1a782d5ca033f553f0be54546ebf3b4f 6d3732f0a80744b7731e83b41848638097d683ba 14 KB
d4b61a935670c57a0dea81b4f4a12169 3f21cf979fd67f0ff436da37a0296adc95bee69d 13 KB
bf2466b3e18e970d8a976fb95fc1ca85 de5a73cbb5f51f64c53fb4277ef2c23e70db123f 13 KB
17c1ac326238efadf17a0612afd822ad deecca99fbbdcc9ea80cb148de77482e249f881c 13 KB
91e6024d6d4dcdecdb36c43ecf9bbecb f0d2a71e77908c5b9055fd848235a222532c5975 13 KB
ff1805d5daf41625af5282750d4a3700 8d5740626e8fe493fa9a2d5ddba4547a88c48da1 13 KB
671aca589da3733fac878a751c5bf0ed f3d6a852ba1101c4c43a745a4bed1f3ebbf27dd4 13 KB
ed0a176354487ceed65b80a7148ab739 1c84a422029f53ff9ddc2a5998f194ffa55bdfdd 13 KB
99ae1390a271b02d752178df9e8442a3 488ca6b7fd164a96bfb429dcf72acd23bf70f202 13 KB

Windows OS versionsDistribution by Windows OS

OS versiondistribution
Windows 8.1 46.50%
Windows 8.1 Pro 19.50%
Windows 8.1 Single Language 11.00%
Windows 7 Ultimate 7.00%
Windows 8.1 Pro with Media Center 6.00%
Windows 7 Home Premium 5.25%
Windows 7 Home Basic 1.75%
Windows 8.1 N 1.50%
Windows 8.1 Enterprise Evaluation 1.50%

Distribution by countryDistribution by country

United States installs about 40.75% of Local Security Authority Process.

OEM distributionDistribution by PC manufacturer

PC Manufacturerdistribution
ASUS 23.87%
Acer 17.81%
Dell 16.83%
Lenovo 14.09%
Hewlett-Packard 12.92%
Toshiba 9.39%
Sony 2.74%
Alienware 1.17%
Samsung 1.17%
Should I remove It? Clean your PC of unwanted adware, toolbars and bloatware.

Download it for FREE