lantern.exe

Brave New Software Project, Inc.

It is set to automatically start when a user logs into Windows via the current user run registry key under the display name ‘Lantern’.
Publisher:
Brave New Software Project, Inc.  (signed and verified)

MD5:
4d570775a188177416ff9dea5c0928f0

SHA-1:
dde08f94d0d442fef94a018fdc715e01a2e6fd92

SHA-256:
f5c51ee2efa86dcef3c00e379ed5e206c89562ddf7c996eb498288348c0f9501

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
11/24/2024 12:32:22 AM UTC  (today)

File size:
234.5 KB (240,152 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\roaming\lantern\lantern.exe

Digital Signature
Authority:
GoDaddy.com, Inc.

Valid from:
6/12/2013 12:24:51 AM

Valid to:
6/12/2016 12:24:51 AM

Subject:
CN="Brave New Software Project, Inc.", O="Brave New Software Project, Inc.", L=Los Angeles, S=CA, C=US

Issuer:
SERIALNUMBER=07969287, CN=Go Daddy Secure Certification Authority, OU=http://certificates.godaddy.com/repository, O="GoDaddy.com, Inc.", L=Scottsdale, S=Arizona, C=US

Serial number:
279056031F49CB

File PE Metadata
Compilation timestamp:
8/28/2014 6:22:47 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
6144:1ohi62u5gydWW3cBHzh+P1JtKhH5KnrWQ2i:1ohGucUcBTh+PDtKdTQ2i

Entry address:
0x11AEE

Entry point:
E8, 21, AC, 00, 00, E9, 78, FE, FF, FF, 8B, FF, 55, 8B, EC, 8B, 45, 08, 33, C9, 3B, 04, CD, 38, CC, 42, 00, 74, 13, 41, 83, F9, 2D, 72, F1, 8D, 48, ED, 83, F9, 11, 77, 0E, 6A, 0D, 58, 5D, C3, 8B, 04, CD, 3C, CC, 42, 00, 5D, C3, 05, 44, FF, FF, FF, 6A, 0E, 59, 3B, C8, 1B, C0, 23, C1, 83, C0, 08, 5D, C3, E8, EC, 07, 00, 00, 85, C0, 75, 06, B8, A0, CD, 42, 00, C3, 83, C0, 08, C3, E8, D9, 07, 00, 00, 85, C0, 75, 06, B8, A4, CD, 42, 00, C3, 83, C0, 0C, C3, 8B, FF, 55, 8B, EC, 56, E8, E2, FF, FF, FF, 8B, 4D, 08...
 
[+]

Code size:
142.5 KB (145,920 bytes)

Startup File (User Run)
Registry location:
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

Name:
Lantern

Command:
"C:\users\{user}\appdata\roaming\lantern\lantern.exe" --launchd


Scan lantern.exe - Powered by Reason Core Security