lsasss.exe is process associated with malicious software W32/Sasser-E. W32/Sasser-E is a network worm spread by exploiting a Microsoft LSASS vulnerability.

lsasss.exe

LSASS SVR

Warning! Potential Security Hazard!

System process lsasss.exe is reported as a virus and a trojan!

There are 7 processes with name “lsasss.exe”

lsasss.exe – Lexmark_X79-55

lsasss.exe – LSASS SVR

lsasss.exe – lsasss

lsasss.exe – lsasss.exe

lsasss.exe – Microsoft Winsock

lsasss.exe – Microsofts Updates

lsasss.exe – System32

process status • safe • malicious • unknown

Brief description of process lsasss.exe

Process lsasss.exe named “LSASS SVR” is dangerous application associated with application W32/Sasser-E. Process lsasss.exe is reported as a virus and trojan horse. This version of lsasss.exe is very dangerous and should be removed from computer immediately.

lsasss.exe

Additional information about lsasss.exe

lsasss.exe is process associated with malicious software W32/Sasser-E. W32/Sasser-E is a network worm spread by exploiting a Microsoft LSASS vulnerability.

Reported as a virus

Yes, it is a virus!

Reported as a trojan horse

Yes, it is a trojan!

Reported as a spyware

No

Safe to end the process

Information isn't available

Safe to disable the process

Information isn't available

Safe to remove the process

Information isn't available

Developer

Information isn't available

Part of

W32/Sasser-E

Share |
 

Previous process
lsasss.exe

Next process
lsatq.dll

 
 
 

Related news

Showing news related to process “lsasss.exe”

January 8, 2008 1:00:00 AM CET

Microsoft Windows LSASS LPC Request Local Privilege Escalation Vulnerability – Type: Vulnerability. Microsoft Windows LSASS is prone to a local privilege-escalation vulnerability through LSASS.

 

December 14, 2004 1:00:00 AM CET

Microsoft Windows LSASS Connection Validation Privilege Escalation Vulnerability – Type: Vulnerability. Microsoft Windows is prone to a local privilege escalation vulnerability through LSASS.

 

October 13, 2009 2:00:00 AM CEST

Microsoft Windows LSASS NTLM Implementation Remote Denial of Service Vulnerability – Type: Vulnerability. Microsoft Windows LSASS is prone to a remote denial-of-service vulnerability; fixes are available.

 

December 8, 2009 1:00:00 AM CET

Microsoft Windows LSASS ISAKMP Message Remote Denial of Service Vulnerability – Type: Vulnerability. Microsoft Windows LSASS is prone to a remote denial-of-service vulnerability; fixes are available.

 

April 13, 2004 2:00:00 AM CEST

Microsoft Windows LSASS Buffer Overrun Vulnerability – Type: Vulnerability. The Microsoft Windows LSASS service is prone to a remotely exploitable buffer overrun vulnerability; may allow arbitrary code execution.

 

February 15, 2010 2:32:46 AM CET

ZBOT Variant Spoofs the NIC to Spam Other Government Agencies – Spammers are becoming bolder, targeting even government agencies such as the National Intelligence Council (NIC) to further their malicious causes. Trend Micro fraud analysts were recently alerted to the discovery of spammed messages that purported to come from the NIC—the Intelligence Community (IC)’s center for midterm and long-term strategic thinking. The NIC provides intelligence reports to [...]Post from: TrendLabs | Malware Blog - by Trend MicroZBOT Variant Spoofs the NIC to Spam Other Government Agencies

 

April 15, 2009 10:17:00 AM CEST

Trojan-Dropper.Win32.Agent.albv – This Trojan has a malicious payload. It is a Windows PE EXE file. It is 23552 bytes in size. Installation The Trojan copies its executable file as follows: %WinDir%\system\svhost.exe In order to...

 

September 25, 2009 1:51:00 PM CEST

Backdoor.Win32.Clampi.a – This Trojan spy program is designed to steal confidential user data and remotely manage the victim machine. It is a Windows PE EXE file. It is 470 bytes in size. Installation When launched, the Trojan creates the following file: %AppData%\.exe

 

April 15, 2009 11:17:00 AM CEST

Trojan-Dropper.Win32.Agent.albv – This Trojan has a malicious payload. It is a Windows PE EXE file. It is 23552 bytes in size. Installation The Trojan copies its executable file as follows: %WinDir%\system\svhost.exe In order to ensure that the Trojan is launched automatically when the system is rebooted, the Trojan adds a link...

 

September 28, 2009 1:21:14 PM CEST

Trojan Downloader.Agent.UZM – A new Trojan Downloader was spammed today. Trojan is attached in zip archive to emails in HTML format with subject "Hot game" and body text that claims some Angelina Jolie or Lara Croft undressing game. xgame.zip attachment contains xgame.exe (20992B) which drops executes and deletes kernel driver C:\WINDOWS\System32\drivers\runtime.sys and downloads another downloader smartdrv.exe. runtime.sys runs injects and hides Iexplore.exe process and downloads another components. xgame.exe is detected as Trojan Downloader.Agent.UZM, smartdrv.exe is detected as Trojan Downloader.Agent.UZN, runtime.sys is detected as Trojan Downloader.Agent.THW and other downloaded components are detected as several variants of Trojan Backdoor.Ntrootkit.

 
 
 

Navigate through library of processes alphabeticaly by first letter: