EC-Council: Computer Hacking Forensic Investigator(CHFI-V10) |
||||
Module 6 : Windows Forensics |
||||
Questions available : 94 |
You are not logged in. Please Login for track your learning progress |
|||
Go to Question No. |
Question No 0
If you want to share the link of this question, please click here to "Copy Question Link" and share that generated link. Link from URL may change in future.
Comunity Comments:

Opted Answer: A
LSASS.EXE (Local Security Authority Subsystem Service) is responsible for handling user authentication and enforcing security policies.
It is launched after the Windows kernel and Session Manager (SMSS.EXE) complete their initialization.
LSASS.EXE ensures that the logon process is properly executed, allowing users to enter their credentials.
NTOSKRNL.EXE: The Windows kernel, responsible for managing system processes.
NTLDR: The bootloader for Windows XP, loading the operating system.
NTDETECT.COM: Detects hardware components during startup.