Home How it works Support Boost Connect Download

Boost Connect

Uncovering the DNA of programs.
Good programs    
1
6
7
,
7
9
6
 
Fair programs  
0
1
1
,
1
2
0
 
Bad programs 
0
0
4
,
2
7
7

What is lsass.exe?

Part of Local Security Authority Process by Microsoft

What is it?

Local Security Authority Subsystem Service (LSASS), is a process in Microsoft Windows operating systems that is responsible for enforcing the security policy on the system. It verifies users logging on to a Windows computer or server, handles password changes, and creates access tokens.

What if I disable Local Security Authority Process?

Termination of lsass.exe will result in the Welcome screen losing its accounts, prompting a restart of the PC.
(lsass.exe is a system file that is installed with Windows)
Download Boost (100% FREE) Speed up Local Security Authority Process and optimize your PC.

How does lsass.exe run?

Service - lsass.exe runs as a background Windows service called 'SamSs' (Menedżer kont zabezpieczeń). This is a system service that is installed with the Windows operating system and protected with Window's File Protection. This service runs as the SYSTEM account with extensive privileges on the local computer, and acts as the computer on the network. Menedżer kont zabezpieczeń runs as a service that can share a process with other Win32 services.

Community

What is the community is seeing?What is the community is doing?
About 0.3% of all Boost users have the lsass.exe process running.Of the 0.3% of lsass.exe users, less than 1% have disabled it.
How resource intensive is lsass.exe?
Comparison based on the average resource utilization across all programs.
0.00115% CPU11457.6%
Average CPU utilization across all programs is 0.00001%.
          5.2 MB RAM24.1%
Average private memory utilization across all programs is 21.53 MB.
 4 /min0.2%
Average I/O read and write operations for all programs is 2,253 per minute.
71 context switches/sec71.0%
Average context switches for all programs is 100 per second.
Typical file (disk image) location:
C:\Windows\System32\lsass.exe

Are there other versions of Local Security Authority Proce...?

What else is related?

What Windows OS versions does this run on?

Windows 8 (6.2.9200.0)
Windows 8 Enterprise (6.2.9200.0)
Windows 8 Pro (6.2.9200.0)
Windows 8 Single Language (6.2.9200.0)

About Microsoft Corporation

Microsoft, founded in 1975 by Bill Gates and Paul Allen, is a veteran software company, best known for its Microsoft Windows operating system and the Microsoft More...
Download Boost

File details

File name: lsass.exe
Publisher: Microsoft Corporation (verified)
Name: Local Security Authority Process
Description: Microsoft® Windows® Operating System
Version: 6.2.9200.16864 (win8_gdr.140309-1509)
Product version: 6.2.9200.16864
Size: 35 KB
Original file name: lsass.exe.mui
Windows file protection: Yes

Resource utilization

CPU utilization averages
Total CPU: 0.0019486639%
Privileged CPU: 0.0008029016%
User CPU: 0.00114576223742%
Privileged CPU time: 72337477.52 ms
Privileged CPU time /min: 11 ms
CPU cycle count: 814,616,152
CPU cycle count /min: 68,887,397
Context switches /sec: 71
Memory utilization averages
Committed memory: 41.66 MB
Peak committed memory: 43.4 MB
Paged memory: 5.2 MB
Peak paged memory: 5.42 MB
Paged system memory: 98.33 KB
Non-paged system memory: 22.79 KB
Working set memory: 13.03 MB
Peak working set memory: 14.53 MB
Min working set memory: 12.5 MB
Private memory: 5.2 MB
Page faults: 20,654
Page faults /min: 13
Process I/O averages
Total read operations: 9,256
Read operations /min: 3
Total read transfer: 313.06 KB
Read transfer /min: 160 Bytes
Total write operations: 1,089
Write operations /min: 1
Total write transfer: 1.5 MB
Write transfer /min: 633 Bytes
Total other operations: 261,606
Other operations /min: 59
Total other transfer: 5.55 MB
Other Transfer /min: 2.29 KB
Resources
Handle count average: 910
Thread count average: 7
Thread resource averages
ntdll.dll

Process details

Runs as (owner): System
Integrety level: System
Windows platform: 64-bit
Runs as a service: Yes
Parent Process
Process Commands
C:\Windows\system32\lsass.exe
C:\WINDOWS\system32\lsass.exe
C:\Windows\System32\lsass.exe

Service details

Name: Menedżer kont zabezpieczeń
Service name: SamSs
Service type: Win32ShareProcess
Description: “Uruchomienie tej usługi informuje inne usługi, że Menedżer kont zabezpieczeń jest gotowy do akceptowania żądań. Wyłączenie tej usługi spowoduje, że inne usługi w systemie nie będą powiadamiane o gotowości Menedżera kont zabezpieczeń, przez co te usługi mogą być uruchamiane nieprawidłowo. Tej usługi nie należy wyłączać.”

Network connectivity

TCP: localhost on port 49155
TCP: localhost on port 49154
TCP: localhost on port 49157
TCP: localhost on port 49159
TCP: localhost on port 49170

Image hashes

MD5: f1da34d64f2ba200d28a7451804e2fee
SHA-1: 5ad736ea0bc12bf147c398aa734314c59f2edc3d

PE image details

Subsystem: Windows GUI
Langauge*: Microsoft Visual C++
File entropy: 5.02920
File packed: No
Import Table
advapi32.dll
api-ms-win-core-crt-l1-1-0.dll
api-ms-win-core-crt-l2-1-0.dll
api-ms-win-core-errorhandling-l1-1-0.dll
api-ms-win-core-errorhandling-l1-1-1.dll
api-ms-win-core-handle-l1-1-0.dll
api-ms-win-core-heap-obsolete-l1-1-0.dll
api-ms-win-core-interlocked-l1-1-0.dll
api-ms-win-core-libraryloader-l1-1-0.dll
api-ms-win-core-libraryloader-l1-1-1.dll
api-ms-win-core-localregistry-l1-1-0.dll
api-ms-win-core-misc-l1-1-0.dll
api-ms-win-core-processenvironment-l1-1-0.dll
api-ms-win-core-processenvironment-l1-1-1.dll
api-ms-win-core-processenvironment-l1-2-0.dll
api-ms-win-core-processthreads-l1-1-0.dll
api-ms-win-core-processthreads-l1-1-1.dll
api-ms-win-core-profile-l1-1-0.dll
api-ms-win-core-registry-l1-1-0.dll
api-ms-win-core-synch-l1-1-0.dll
api-ms-win-core-synch-l1-1-1.dll
api-ms-win-core-synch-l1-2-0.dll
api-ms-win-core-sysinfo-l1-1-0.dll
api-ms-win-core-sysinfo-l1-1-1.dll
api-ms-win-core-sysinfo-l1-2-0.dll
api-ms-win-obsolete-kernelbase-l1-1-0.dll
api-ms-win-security-base-l1-1-0.dll
api-ms-win-security-base-l1-2-0.dll
kernel32.dll
lsasrv.dll
msvcrt.dll
ntdll.dll
rpcrt4.dll
samsrv.dll
sspisrv.dll
Export Table
lsagetinterface
lsaregisterextension
lsaregisterinterface
Stay up to date with news about Boost
Subscribe to our newsletter to receive the latest Boost news and discounts.
 
© 2016 Reason Software Company Inc.
228 Park Ave S #74122 New York, NY 10003
(646) 664-1038 | info@boostbyreason.com
How it works Privacy Terms Support Contact Download Donate Reason Software, the makers of Boost logo

Download Boost and enjoy your PC.

Increase your PC's performance.
Remove unwanted crapware.
Reduce your boot time.
Identify and resolves crashes.
Download the FREE unlimited trial of Boost!
No spyware, no adware, no bundles, no tricks.
Download

Save 40% on Boost

For a limited time, from now until Friday, December 9, 2016 you can purchase Boost for 40% off of the normal price, only $39.95 $24.95.
The instant online savings will be automatically applied during checkout.
 

100% Satisfaction Guarantee

Purchase with confidence. We stand behind Boost.
If for any reason you are not satisfied with your software purchase, simply contact our Customer Support within 30 days, and we'll refund the purchase price. We won't make you jump through hoops to get all your money back!