Skip to main content
Published Oct 16, 2018 | Updated Aug 01, 2023

Behavior:Win32/DumpLsass.A!attk

Detected by Microsoft Defender Antivirus

Aliases: No associated aliases

Summary

Behavior:Win32/DumpLsass.A!attk is behavior-based detection on dumping of Local Security Authority Subsystem Service (LSASS) process.

Read the following blog for details:

Microsoft Defender Antivirus automatically removes threats as they are detected. However, further investigation is required to determine if there were any other malicious files dropped on the compromised host and if they successfully executed. 

Locate and stop the relevant process which triggered the detection. Remove the device from the network and update password for any stolen credentials.

You can also visit our advanced troubleshooting page or search the Microsoft virus and malware community for more help.

Follow us