MZ Header

DOS stub

00000000: ba 10 00 0e 1f b4 09 cd  21 b8 01 4c cd 21 90 90  |........!..L.!..|
00000010: 54 68 69 73 20 70 72 6f  67 72 61 6d 20 6d 75 73  |This program mus|
00000020: 74 20 62 65 20 72 75 6e  20 75 6e 64 65 72 20 57  |t be run under W|
00000030: 69 6e 33 32 0d 0a 24 37  00 00 00 00 00 00 00 00  |in32..$7........|
00000040: 00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00  |................|
*
000000c0:

PE Header

Packer / Compiler

Sections

Data Directory

TLS

StringTable 040904E4

VS_FIXEDFILEINFO

Signers (1)

issuer: /C=US/O=VeriSign, Inc./OU=VeriSign Trust Network/OU=Terms of use at https://www.verisign.com/rpa (c)10/CN=VeriSign Class 3 Code Signing 2010 CA
serial: 200A7D1C4C0EF383111D1C1CE02C9608

Certificates (4)

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            79:a2:a5:85:f9:d1:15:42:13:d9:b8:3e:f6:b6:8d:ed
    Signature Algorithm: sha1WithRSAEncryption
        Issuer: C=US, O=VeriSign, Inc., CN=VeriSign Time Stamping Services CA
        Validity
            Not Before: May  1 00:00:00 2012 GMT
            Not After : Dec 31 23:59:59 2012 GMT
        Subject: C=US, O=Symantec Corporation, CN=Symantec Time Stamping Services Signer - G3
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                Public-Key: (1024 bit)
                Modulus:
                    00:a9:59:66:74:da:3d:8a:7d:7a:d8:fc:f5:80:44:
                    7b:fe:47:6a:14:55:4e:50:47:0b:ec:d3:ed:ce:f6:
                    38:f7:4f:69:b9:b1:f0:b6:78:82:0a:8c:76:16:67:
                    e2:02:ad:b7:0d:a5:8a:f6:03:fc:66:d3:fc:08:2d:
                    cc:b5:73:59:7b:89:dc:33:6e:66:5a:5e:52:37:b4:
                    62:d1:92:59:35:14:8b:45:ac:59:b2:4d:24:a2:98:
                    94:68:42:72:9f:3a:68:e2:6b:8b:9e:22:2d:f4:98:
                    4e:9a:c6:af:b3:e4:a0:ab:3c:28:bf:23:e1:d7:72:
                    a4:f2:10:53:67:ae:77:af:51
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Basic Constraints: critical
                CA:FALSE
            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.verisign.com/tss-ca.crl

            X509v3 Extended Key Usage: critical
                Time Stamping
            Authority Information Access: 
                OCSP - URI:http://ocsp.verisign.com

            X509v3 Key Usage: critical
                Digital Signature
            X509v3 Subject Alternative Name: 
                DirName:/CN=TSA1-3
            X509v3 Subject Key Identifier: 
                B4:B7:F1:89:49:26:60:E7:65:EA:73:AE:DC:D3:38:CD:BF:57:92:6F
    Signature Algorithm: sha1WithRSAEncryption
         1e:98:aa:27:b7:78:b5:08:b5:c9:72:6d:b7:df:c0:0e:98:a6:
         35:c4:88:c9:d2:f6:6d:f1:4b:1a:fb:d5:f9:2d:99:00:9e:d1:
         e7:9b:8b:e1:3f:bd:39:80:0c:66:cd:07:bc:5c:98:54:a6:94:
         ba:10:d1:4e:8b:ab:f5:6f:65:cc:67:09:a2:80:7c:52:e8:0e:
         03:d6:6b:7a:c6:05:18:ec:c8:ac:42:7c:07:2c:a7:3d:08:66:
         dc:00:ed:fd:94:1d:73:f2:72:98:93:b1:11:d6:8f:ef:8e:ea:
         ac:f4:96:51:0c:d0:8d:df:31:52:4f:5e:af:7d:a7:4a:75:e6:
         4e:ce:2b:9f:29:2b:e7:cf:5d:9f:03:7e:6e:27:7b:23:ad:62:
         29:66:af:92:e8:2c:ce:bd:9c:7f:dc:cd:17:3c:43:c2:09:3f:
         75:45:c7:9e:e4:d7:60:7f:97:c6:e4:aa:c7:69:f5:fc:cd:74:
         ac:2c:b0:48:c1:50:4e:70:56:1e:b5:35:d3:8e:be:b1:ed:ac:
         bd:fe:0c:ec:85:7d:d5:bb:85:66:44:19:5d:9f:93:eb:82:ba:
         63:9e:d3:7c:61:ff:c8:1b:d9:23:58:7f:30:a3:66:a1:39:26:
         5e:92:c3:3c:cb:37:32:fa:f5:a3:8d:dc:d5:b0:a3:e9:25:36:
         55:d7:81:fa

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            47:bf:19:95:df:8d:52:46:43:f7:db:6d:48:0d:31:a4
    Signature Algorithm: sha1WithRSAEncryption
        Issuer: C=ZA, ST=Western Cape, L=Durbanville, O=Thawte, OU=Thawte Certification, CN=Thawte Timestamping CA
        Validity
            Not Before: Dec  4 00:00:00 2003 GMT
            Not After : Dec  3 23:59:59 2013 GMT
        Subject: C=US, O=VeriSign, Inc., CN=VeriSign Time Stamping Services CA
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                Public-Key: (2048 bit)
                Modulus:
                    00:a9:ca:b2:a4:cc:cd:20:af:0a:7d:89:ac:87:75:
                    f0:b4:4e:f1:df:c1:0f:bf:67:61:bd:a3:64:1c:da:
                    bb:f9:ca:33:ab:84:30:89:58:7e:8c:db:6b:dd:36:
                    9e:0f:bf:d1:ec:78:f2:77:a6:7e:6f:3c:bf:93:af:
                    0d:ba:68:f4:6c:94:ca:bd:52:2d:ab:48:3d:f5:b6:
                    d5:5d:5f:1b:02:9f:fa:2f:6b:1e:a4:f7:a3:9a:a6:
                    1a:c8:02:e1:7f:4c:52:e3:0e:60:ec:40:1c:7e:b9:
                    0d:de:3f:c7:b4:df:87:bd:5f:7a:6a:31:2e:03:99:
                    81:13:a8:47:20:ce:31:73:0d:57:2d:cd:78:34:33:
                    95:12:99:12:b9:de:68:2f:aa:e6:e3:c2:8a:8c:2a:
                    c3:8b:21:87:66:bd:83:58:57:6f:75:bf:3c:aa:26:
                    87:5d:ca:10:15:3c:9f:84:ea:54:c1:0a:6e:c4:fe:
                    c5:4a:dd:b9:07:11:97:22:7c:db:3e:27:d1:1e:78:
                    ec:9f:31:c9:f1:e6:22:19:db:c4:b3:47:43:9a:1a:
                    5f:a0:1e:90:e4:5e:f5:ee:7c:f1:7d:ab:62:01:8f:
                    f5:4d:0b:de:d0:22:56:a8:95:cd:ae:88:76:ae:ee:
                    ba:0d:f3:e4:4d:d9:a0:fb:68:a0:ae:14:3b:b3:87:
                    c1:bb
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            Authority Information Access: 
                OCSP - URI:http://ocsp.verisign.com

            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.verisign.com/ThawteTimestampingCA.crl

            X509v3 Extended Key Usage: 
                Time Stamping
            X509v3 Key Usage: critical
                Certificate Sign, CRL Sign
            X509v3 Subject Alternative Name: 
                DirName:/CN=TSA2048-1-53
    Signature Algorithm: sha1WithRSAEncryption
         4a:6b:f9:ea:58:c2:44:1c:31:89:79:99:2b:96:bf:82:ac:01:
         d6:1c:4c:cd:b0:8a:58:6e:df:08:29:a3:5e:c8:ca:93:13:e7:
         04:52:0d:ef:47:27:2f:00:38:b0:e4:c9:93:4e:9a:d4:22:62:
         15:f7:3f:37:21:4f:70:31:80:f1:8b:38:87:b3:e8:e8:97:00:
         fe:cf:55:96:4e:24:d2:a9:27:4e:7a:ae:b7:61:41:f3:2a:ce:
         e7:c9:d9:5e:dd:bb:2b:85:3e:b5:9d:b5:d9:e1:57:ff:be:b4:
         c5:7e:f5:cf:0c:9e:f0:97:fe:2b:d3:3b:52:1b:1b:38:27:f7:
         3f:4a

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            20:0a:7d:1c:4c:0e:f3:83:11:1d:1c:1c:e0:2c:96:08
    Signature Algorithm: sha1WithRSAEncryption
        Issuer: C=US, O=VeriSign, Inc., OU=VeriSign Trust Network, OU=Terms of use at https://www.verisign.com/rpa (c)10, CN=VeriSign Class 3 Code Signing 2010 CA
        Validity
            Not Before: Jul 18 00:00:00 2011 GMT
            Not After : Aug 17 23:59:59 2013 GMT
        Subject: C=LU, ST=Luxembourg, L=Luxembourg, O=Skype Technologies SA, OU=Information Security, OU=Digital ID Class 3 - Microsoft Software Validation v2, CN=Skype Technologies SA
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                Public-Key: (1024 bit)
                Modulus:
                    00:95:17:8d:40:b1:a7:b3:6f:27:37:c6:24:58:7c:
                    f0:ea:d0:76:d1:9d:c5:6e:e5:93:47:2b:50:65:6d:
                    dd:77:74:a7:87:3c:cf:25:c3:22:d9:8d:41:6a:62:
                    78:46:30:34:0d:32:a2:87:f7:70:d4:e8:87:73:52:
                    39:f7:ed:52:81:c7:c0:74:23:da:4e:35:7c:64:03:
                    26:d7:aa:18:3f:1e:c2:29:a3:b4:8c:28:1e:e7:c3:
                    43:e4:7a:f1:4b:3a:db:e8:a5:c0:d2:dd:52:6b:1c:
                    ac:14:47:21:53:e8:cc:d5:fc:e3:cf:19:83:f2:59:
                    dc:d8:3b:55:20:72:bf:5f:85
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Basic Constraints: 
                CA:FALSE
            X509v3 Key Usage: critical
                Digital Signature
            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://csc3-2010-crl.verisign.com/CSC3-2010.crl

            X509v3 Certificate Policies: 
                Policy: 2.16.840.1.113733.1.7.23.3
                  CPS: https://www.verisign.com/rpa

            X509v3 Extended Key Usage: 
                Code Signing
            Authority Information Access: 
                OCSP - URI:http://ocsp.verisign.com
                CA Issuers - URI:http://csc3-2010-aia.verisign.com/CSC3-2010.cer

            X509v3 Authority Key Identifier: 
                keyid:CF:99:A9:EA:7B:26:F4:4B:C9:8E:8F:D7:F0:05:26:EF:E3:D2:A7:9D

            Netscape Cert Type: 
                Object Signing
            1.3.6.1.4.1.311.2.1.27: 
                0.......
    Signature Algorithm: sha1WithRSAEncryption
         64:06:8d:d3:bb:7f:92:97:55:e0:50:ff:61:71:cb:4e:24:fc:
         ae:a1:80:f6:fe:8c:cc:63:b3:71:02:06:2c:6e:67:dd:da:8b:
         77:f5:3b:5b:ba:93:b6:2c:55:1f:d6:01:75:26:c9:f6:94:fb:
         54:bd:b9:c2:d3:24:8b:8e:8c:a3:97:ca:7f:06:37:14:4b:3d:
         72:c2:a4:b8:15:91:2b:db:e7:58:a6:ab:a6:c1:0c:18:8b:17:
         15:bd:e7:fb:71:ba:77:d2:97:cb:4e:12:ad:62:c0:76:8a:de:
         70:04:71:45:d3:25:50:b8:89:b9:38:2c:bf:ff:c4:c0:99:fd:
         87:74:63:d0:6c:fe:be:0a:b3:ec:06:a8:28:86:33:ac:a3:d0:
         38:60:40:d1:d1:66:19:51:97:14:ff:0c:b7:6b:86:95:13:81:
         ee:d6:0f:11:e3:67:cc:96:55:19:0d:34:18:26:71:af:68:da:
         a9:15:7d:ca:b5:e6:9a:47:ad:53:41:f9:e8:d9:6c:6b:4c:c2:
         6c:66:0d:ce:d3:bb:82:ab:32:18:b2:d6:27:2a:8e:a5:8f:50:
         b0:1d:1d:05:33:0b:95:c4:a0:51:14:12:db:80:2d:cc:57:c0:
         e8:a6:c5:74:38:c5:98:e8:e7:d8:6e:c3:1d:e8:d4:98:53:a3:
         c1:bb:7c:74

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            52:00:e5:aa:25:56:fc:1a:86:ed:96:c9:d4:4b:33:c7
    Signature Algorithm: sha1WithRSAEncryption
        Issuer: C=US, O=VeriSign, Inc., OU=VeriSign Trust Network, OU=(c) 2006 VeriSign, Inc. - For authorized use only, CN=VeriSign Class 3 Public Primary Certification Authority - G5
        Validity
            Not Before: Feb  8 00:00:00 2010 GMT
            Not After : Feb  7 23:59:59 2020 GMT
        Subject: C=US, O=VeriSign, Inc., OU=VeriSign Trust Network, OU=Terms of use at https://www.verisign.com/rpa (c)10, CN=VeriSign Class 3 Code Signing 2010 CA
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                Public-Key: (2048 bit)
                Modulus:
                    00:f5:23:4b:5e:a5:d7:8a:bb:32:e9:d4:57:f7:ef:
                    e4:c7:26:7e:ad:19:98:fe:a8:9d:7d:94:f6:36:6b:
                    10:d7:75:81:30:7f:04:68:7f:cb:2b:75:1e:cd:1d:
                    08:8c:df:69:94:a7:37:a3:9c:7b:80:e0:99:e1:ee:
                    37:4d:5f:ce:3b:14:ee:86:d4:d0:f5:27:35:bc:25:
                    0b:38:a7:8c:63:9d:17:a3:08:a5:ab:b0:fb:cd:6a:
                    62:82:4c:d5:21:da:1b:d9:f1:e3:84:3b:8a:2a:4f:
                    85:5b:90:01:4f:c9:a7:76:10:7f:27:03:7c:be:ae:
                    7e:7d:c1:dd:f9:05:bc:1b:48:9c:69:e7:c0:a4:3c:
                    3c:41:00:3e:df:96:e5:c5:e4:94:71:d6:55:01:c7:
                    00:26:4a:40:3c:b5:a1:26:a9:0c:a7:6d:80:8e:90:
                    25:7b:cf:bf:3f:1c:eb:2f:96:fa:e5:87:77:c6:b5:
                    56:b2:7a:3b:54:30:53:1b:df:62:34:ff:1e:d1:f4:
                    5a:93:28:85:e5:4c:17:4e:7e:5b:fd:a4:93:99:7f:
                    df:cd:ef:a4:75:ef:ef:15:f6:47:e7:f8:19:72:d8:
                    2e:34:1a:a6:b4:a7:4c:7e:bd:bb:4f:0c:3d:57:f1:
                    30:d6:a6:36:8e:d6:80:76:d7:19:2e:a5:cd:7e:34:
                    2d:89
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            X509v3 Certificate Policies: 
                Policy: 2.16.840.1.113733.1.7.23.3
                  CPS: https://www.verisign.com/cps
                  User Notice:
                    Explicit Text: https://www.verisign.com/rpa

            X509v3 Key Usage: critical
                Certificate Sign, CRL Sign
            1.3.6.1.5.5.7.1.12: 
                0_.].[0Y0W0U..image/gif0!0.0...+..............k...j.H.,{..0%.#http://logo.verisign.com/vslogo.gif
            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.verisign.com/pca3-g5.crl

            Authority Information Access: 
                OCSP - URI:http://ocsp.verisign.com

            X509v3 Extended Key Usage: 
                TLS Web Client Authentication, Code Signing
            X509v3 Subject Alternative Name: 
                DirName:/CN=VeriSignMPKI-2-8
            X509v3 Subject Key Identifier: 
                CF:99:A9:EA:7B:26:F4:4B:C9:8E:8F:D7:F0:05:26:EF:E3:D2:A7:9D
            X509v3 Authority Key Identifier: 
                keyid:7F:D3:65:A7:C2:DD:EC:BB:F0:30:09:F3:43:39:FA:02:AF:33:31:33

    Signature Algorithm: sha1WithRSAEncryption
         56:22:e6:34:a4:c4:61:cb:48:b9:01:ad:56:a8:64:0f:d9:8c:
         91:c4:bb:cc:0c:e5:ad:7a:a0:22:7f:df:47:38:4a:2d:6c:d1:
         7f:71:1a:7c:ec:70:a9:b1:f0:4f:e4:0f:0c:53:fa:15:5e:fe:
         74:98:49:24:85:81:26:1c:91:14:47:b0:4c:63:8c:bb:a1:34:
         d4:c6:45:e8:0d:85:26:73:03:d0:a9:8c:64:6d:dc:71:92:e6:
         45:05:60:15:59:51:39:fc:58:14:6b:fe:d4:a4:ed:79:6b:08:
         0c:41:72:e7:37:22:06:09:be:23:e9:3f:44:9a:1e:e9:61:9d:
         cc:b1:90:5c:fc:3d:d2:8d:ac:42:3d:65:36:d4:b4:3d:40:28:
         8f:9b:10:cf:23:26:cc:4b:20:cb:90:1f:5d:8c:4c:34:ca:3c:
         d8:e5:37:d6:6f:a5:20:bd:34:eb:26:d9:ae:0d:e7:c5:9a:f7:
         a1:b4:21:91:33:6f:86:e8:58:bb:25:7c:74:0e:58:fe:75:1b:
         63:3f:ce:31:7c:9b:8f:1b:96:9e:c5:53:76:84:5b:9c:ad:91:
         fa:ac:ed:93:ba:5d:c8:21:53:c2:82:53:63:af:12:0d:50:87:
         11:1b:3d:54:52:96:8a:2c:9c:3d:92:1a:08:9a:05:2e:c7:93:
         a5:48:91:d3
pkcs7-signedData
  • 1
    • SHA1: nil
    • 1.3.6.1.4.1.311.2.1.4
      • #0
        • 1.3.6.1.4.1.311.2.1.15
          • :
            00 3c 00 3c 00 3c 00 4f  00 62 00 73 00 6f 00 6c  |.<.<.<.O.b.s.o.l|
            00 65 00 74 00 65 00 3e  00 3e 00 3e              |.e.t.e.>.>.>    |
        • SHA1
          • 49 56 05 2d 79 6c ac 07  d7 cc ad a6 f9 91 b2 1b  |IV.-yl..........|
            d1 e6 e6 a6                                       |....            |
    • Certificates
      • Certificate #0
        • 2
          • 79:A2:A5:85:F9:D1:15:42:13:D9:B8:3E:F6:B6:8D:ED
          • RSA-SHA1: nil
          • Issuer
            • C: US
            • O: VeriSign, Inc.
            • CN: VeriSign Time Stamping Services CA
          • 2012-05-01 00:00:00 UTC: 2012-12-31 23:59:59 UTC
          • Subject
            • C: US
            • O: Symantec Corporation
            • CN: Symantec Time Stamping Services Signer - G3
          • #5
            • rsaEncryption: nil
            • A9:59:66:74:DA:3D:8A:7D:7A:D8:FC:F5:80:44:7B:FE:
              47:6A:14:55:4E:50:47:0B:EC:D3:ED:CE:F6:38:F7:4F:
              69:B9:B1:F0:B6:78:82:0A:8C:76:16:67:E2:02:AD:B7:
              0D:A5:8A:F6:03:FC:66:D3:FC:08:2D:CC:B5:73:59:7B:
              89:DC:33:6E:66:5A:5E:52:37:B4:62:D1:92:59:35:14:
              8B:45:AC:59:B2:4D:24:A2:98:94:68:42:72:9F:3A:68:
              E2:6B:8B:9E:22:2D:F4:98:4E:9A:C6:AF:B3:E4:A0:AB:
              3C:28:BF:23:E1:D7:72:A4:F2:10:53:67:AE:77:AF:51
              : 0x010001
          • X509v3 extensions
            • basicConstraints
              • true
              • nil
            • crlDistributionPoints: http://crl.verisign.com/tss-ca.crl
            • extendedKeyUsage: true, timeStamping
            • authorityInfoAccess
              • OCSP: http://ocsp.verisign.com
            • keyUsage: true, 0x80
            • subjectAltName
              • CN: TSA1-3
            • subjectKeyIdentifier:
              b4 b7 f1 89 49 26 60 e7  65 ea 73 ae dc d3 38 cd  |....I&`.e.s...8.|
              bf 57 92 6f                                       |.W.o            |
        • RSA-SHA1:
          1e 98 aa 27 b7 78 b5 08  b5 c9 72 6d b7 df c0 0e  |...'.x....rm....|
          98 a6 35 c4 88 c9 d2 f6  6d f1 4b 1a fb d5 f9 2d  |..5.....m.K....-|
          99 00 9e d1 e7 9b 8b e1  3f bd 39 80 0c 66 cd 07  |........?.9..f..|
          bc 5c 98 54 a6 94 ba 10  d1 4e 8b ab f5 6f 65 cc  |.\.T.....N...oe.|
          67 09 a2 80 7c 52 e8 0e  03 d6 6b 7a c6 05 18 ec  |g...|R....kz....|
          c8 ac 42 7c 07 2c a7 3d  08 66 dc 00 ed fd 94 1d  |..B|.,.=.f......|
          73 f2 72 98 93 b1 11 d6  8f ef 8e ea ac f4 96 51  |s.r............Q|
          0c d0 8d df 31 52 4f 5e  af 7d a7 4a 75 e6 4e ce  |....1RO^.}.Ju.N.|
          2b 9f 29 2b e7 cf 5d 9f  03 7e 6e 27 7b 23 ad 62  |+.)+..]..~n'{#.b|
          29 66 af 92 e8 2c ce bd  9c 7f dc cd 17 3c 43 c2  |)f...,.......
      • Certificate #1
        • 2
          • 47:BF:19:95:DF:8D:52:46:43:F7:DB:6D:48:0D:31:A4
          • RSA-SHA1: nil
          • Issuer
            • C: ZA
            • ST: Western Cape
            • L: Durbanville
            • O: Thawte
            • OU: Thawte Certification
            • CN: Thawte Timestamping CA
          • 2003-12-04 00:00:00 UTC: 2013-12-03 23:59:59 UTC
          • Subject
            • C: US
            • O: VeriSign, Inc.
            • CN: VeriSign Time Stamping Services CA
          • #5
            • rsaEncryption: nil
            • A9:CA:B2:A4:CC:CD:20:AF:0A:7D:89:AC:87:75:F0:B4:
              4E:F1:DF:C1:0F:BF:67:61:BD:A3:64:1C:DA:BB:F9:CA:
              33:AB:84:30:89:58:7E:8C:DB:6B:DD:36:9E:0F:BF:D1:
              EC:78:F2:77:A6:7E:6F:3C:BF:93:AF:0D:BA:68:F4:6C:
              94:CA:BD:52:2D:AB:48:3D:F5:B6:D5:5D:5F:1B:02:9F:
              FA:2F:6B:1E:A4:F7:A3:9A:A6:1A:C8:02:E1:7F:4C:52:
              E3:0E:60:EC:40:1C:7E:B9:0D:DE:3F:C7:B4:DF:87:BD:
              5F:7A:6A:31:2E:03:99:81:13:A8:47:20:CE:31:73:0D:
              57:2D:CD:78:34:33:95:12:99:12:B9:DE:68:2F:AA:E6:
              E3:C2:8A:8C:2A:C3:8B:21:87:66:BD:83:58:57:6F:75:
              BF:3C:AA:26:87:5D:CA:10:15:3C:9F:84:EA:54:C1:0A:
              6E:C4:FE:C5:4A:DD:B9:07:11:97:22:7C:DB:3E:27:D1:
              1E:78:EC:9F:31:C9:F1:E6:22:19:DB:C4:B3:47:43:9A:
              1A:5F:A0:1E:90:E4:5E:F5:EE:7C:F1:7D:AB:62:01:8F:
              F5:4D:0B:DE:D0:22:56:A8:95:CD:AE:88:76:AE:EE:BA:
              0D:F3:E4:4D:D9:A0:FB:68:A0:AE:14:3B:B3:87:C1:BB
              : 0x010001
          • X509v3 extensions
            • authorityInfoAccess
              • OCSP: http://ocsp.verisign.com
            • basicConstraints
              • true
              • true: 0
            • crlDistributionPoints: http://crl.verisign.com/ThawteTimestampingCA.crl
            • extendedKeyUsage: timeStamping
            • keyUsage: true, 6
            • subjectAltName
              • CN: TSA2048-1-53
        • RSA-SHA1:
          4a 6b f9 ea 58 c2 44 1c  31 89 79 99 2b 96 bf 82  |Jk..X.D.1.y.+...|
          ac 01 d6 1c 4c cd b0 8a  58 6e df 08 29 a3 5e c8  |....L...Xn..).^.|
          ca 93 13 e7 04 52 0d ef  47 27 2f 00 38 b0 e4 c9  |.....R..G'/.8...|
          93 4e 9a d4 22 62 15 f7  3f 37 21 4f 70 31 80 f1  |.N.."b..?7!Op1..|
          8b 38 87 b3 e8 e8 97 00  fe cf 55 96 4e 24 d2 a9  |.8........U.N$..|
          27 4e 7a ae b7 61 41 f3  2a ce e7 c9 d9 5e dd bb  |'Nz..aA.*....^..|
          2b 85 3e b5 9d b5 d9 e1  57 ff be b4 c5 7e f5 cf  |+.>.....W....~..|
          0c 9e f0 97 fe 2b d3 3b  52 1b 1b 38 27 f7 3f 4a  |.....+.;R..8'.?J|
      • Certificate #2
        • 2
          • 20:0A:7D:1C:4C:0E:F3:83:11:1D:1C:1C:E0:2C:96:08
          • RSA-SHA1: nil
          • Issuer
            • C: US
            • O: VeriSign, Inc.
            • OU: VeriSign Trust Network
            • OU: Terms of use at https://www.verisign.com/rpa (c)10
            • CN: VeriSign Class 3 Code Signing 2010 CA
          • 2011-07-18 00:00:00 UTC: 2013-08-17 23:59:59 UTC
          • Subject
            • C: LU
            • ST: Luxembourg
            • L: Luxembourg
            • O: Skype Technologies SA
            • OU: Information Security
            • OU: Digital ID Class 3 - Microsoft Software Validation v2
            • CN: Skype Technologies SA
          • #5
            • rsaEncryption: nil
            • 95:17:8D:40:B1:A7:B3:6F:27:37:C6:24:58:7C:F0:EA:
              D0:76:D1:9D:C5:6E:E5:93:47:2B:50:65:6D:DD:77:74:
              A7:87:3C:CF:25:C3:22:D9:8D:41:6A:62:78:46:30:34:
              0D:32:A2:87:F7:70:D4:E8:87:73:52:39:F7:ED:52:81:
              C7:C0:74:23:DA:4E:35:7C:64:03:26:D7:AA:18:3F:1E:
              C2:29:A3:B4:8C:28:1E:E7:C3:43:E4:7A:F1:4B:3A:DB:
              E8:A5:C0:D2:DD:52:6B:1C:AC:14:47:21:53:E8:CC:D5:
              FC:E3:CF:19:83:F2:59:DC:D8:3B:55:20:72:BF:5F:85
              : 0x010001
          • X509v3 extensions
            • basicConstraints
              • nil
            • keyUsage: true, 0x80
            • crlDistributionPoints: http://csc3-2010-crl.verisign.com/CSC3-2010.crl
            • certificatePolicies
              • 2.16.840.1.113733.1.7.23.3
                • id-qt-cps: https://www.verisign.com/rpa
            • extendedKeyUsage: codeSigning
            • authorityInfoAccess
              • #0
                • OCSP: http://ocsp.verisign.com
                • caIssuers: http://csc3-2010-aia.verisign.com/CSC3-2010.cer
            • authorityKeyIdentifier:
              cf 99 a9 ea 7b 26 f4 4b  c9 8e 8f d7 f0 05 26 ef  |....{&.K......&.|
              e3 d2 a7 9d                                       |....            |
            • nsCertType: 0x10
            • 1.3.6.1.4.1.311.2.1.27
              • false: true
        • RSA-SHA1:
          64 06 8d d3 bb 7f 92 97  55 e0 50 ff 61 71 cb 4e  |d.......U.P.aq.N|
          24 fc ae a1 80 f6 fe 8c  cc 63 b3 71 02 06 2c 6e  |$........c.q..,n|
          67 dd da 8b 77 f5 3b 5b  ba 93 b6 2c 55 1f d6 01  |g...w.;[...,U...|
          75 26 c9 f6 94 fb 54 bd  b9 c2 d3 24 8b 8e 8c a3  |u&....T....$....|
          97 ca 7f 06 37 14 4b 3d  72 c2 a4 b8 15 91 2b db  |....7.K=r.....+.|
          e7 58 a6 ab a6 c1 0c 18  8b 17 15 bd e7 fb 71 ba  |.X............q.|
          77 d2 97 cb 4e 12 ad 62  c0 76 8a de 70 04 71 45  |w...N..b.v..p.qE|
          d3 25 50 b8 89 b9 38 2c  bf ff c4 c0 99 fd 87 74  |.%P...8,.......t|
          63 d0 6c fe be 0a b3 ec  06 a8 28 86 33 ac a3 d0  |c.l.......(.3...|
          38 60 40 d1 d1 66 19 51  97 14 ff 0c b7 6b 86 95  |8`@..f.Q.....k..|
          13 81 ee d6 0f 11 e3 67  cc 96 55 19 0d 34 18 26  |.......g..U..4.&|
          71 af 68 da a9 15 7d ca  b5 e6 9a 47 ad 53 41 f9  |q.h...}....G.SA.|
          e8 d9 6c 6b 4c c2 6c 66  0d ce d3 bb 82 ab 32 18  |..lkL.lf......2.|
          b2 d6 27 2a 8e a5 8f 50  b0 1d 1d 05 33 0b 95 c4  |..'*...P....3...|
          a0 51 14 12 db 80 2d cc  57 c0 e8 a6 c5 74 38 c5  |.Q....-.W....t8.|
          98 e8 e7 d8 6e c3 1d e8  d4 98 53 a3 c1 bb 7c 74  |....n.....S...|t|
      • Certificate #3
        • 2
          • 52:00:E5:AA:25:56:FC:1A:86:ED:96:C9:D4:4B:33:C7
          • RSA-SHA1: nil
          • Issuer
            • C: US
            • O: VeriSign, Inc.
            • OU: VeriSign Trust Network
            • OU: (c) 2006 VeriSign, Inc. - For authorized use only
            • CN: VeriSign Class 3 Public Primary Certification Authority - G5
          • 2010-02-08 00:00:00 UTC: 2020-02-07 23:59:59 UTC
          • Subject
            • C: US
            • O: VeriSign, Inc.
            • OU: VeriSign Trust Network
            • OU: Terms of use at https://www.verisign.com/rpa (c)10
            • CN: VeriSign Class 3 Code Signing 2010 CA
          • #5
            • rsaEncryption: nil
            • F5:23:4B:5E:A5:D7:8A:BB:32:E9:D4:57:F7:EF:E4:C7:
              26:7E:AD:19:98:FE:A8:9D:7D:94:F6:36:6B:10:D7:75:
              81:30:7F:04:68:7F:CB:2B:75:1E:CD:1D:08:8C:DF:69:
              94:A7:37:A3:9C:7B:80:E0:99:E1:EE:37:4D:5F:CE:3B:
              14:EE:86:D4:D0:F5:27:35:BC:25:0B:38:A7:8C:63:9D:
              17:A3:08:A5:AB:B0:FB:CD:6A:62:82:4C:D5:21:DA:1B:
              D9:F1:E3:84:3B:8A:2A:4F:85:5B:90:01:4F:C9:A7:76:
              10:7F:27:03:7C:BE:AE:7E:7D:C1:DD:F9:05:BC:1B:48:
              9C:69:E7:C0:A4:3C:3C:41:00:3E:DF:96:E5:C5:E4:94:
              71:D6:55:01:C7:00:26:4A:40:3C:B5:A1:26:A9:0C:A7:
              6D:80:8E:90:25:7B:CF:BF:3F:1C:EB:2F:96:FA:E5:87:
              77:C6:B5:56:B2:7A:3B:54:30:53:1B:DF:62:34:FF:1E:
              D1:F4:5A:93:28:85:E5:4C:17:4E:7E:5B:FD:A4:93:99:
              7F:DF:CD:EF:A4:75:EF:EF:15:F6:47:E7:F8:19:72:D8:
              2E:34:1A:A6:B4:A7:4C:7E:BD:BB:4F:0C:3D:57:F1:30:
              D6:A6:36:8E:D6:80:76:D7:19:2E:A5:CD:7E:34:2D:89
              : 0x010001
          • X509v3 extensions
            • basicConstraints
              • true
              • true: 0
            • certificatePolicies
              • 2.16.840.1.113733.1.7.23.3
                • #0
                  • id-qt-cps: https://www.verisign.com/cps
                  • id-qt-unotice: https://www.verisign.com/rpa
            • keyUsage: true, 6
            • 1.3.6.1.5.5.7.1.12
              • image/gif
                • SHA1:
                  8f e5 d3 1a 86 ac 8d 8e  6b c3 cf 80 6a d4 48 18  |........k...j.H.|
                  2c 7b 19 2e                                       |,{..            |
                • http://logo.verisign.com/vslogo.gif
            • crlDistributionPoints: http://crl.verisign.com/pca3-g5.crl
            • authorityInfoAccess
              • OCSP: http://ocsp.verisign.com
            • extendedKeyUsage
              • clientAuth: codeSigning
            • subjectAltName
              • CN: VeriSignMPKI-2-8
            • subjectKeyIdentifier:
              cf 99 a9 ea 7b 26 f4 4b  c9 8e 8f d7 f0 05 26 ef  |....{&.K......&.|
              e3 d2 a7 9d                                       |....            |
            • authorityKeyIdentifier:
              7f d3 65 a7 c2 dd ec bb  f0 30 09 f3 43 39 fa 02  |..e......0..C9..|
              af 33 31 33                                       |.313            |
        • RSA-SHA1:
          56 22 e6 34 a4 c4 61 cb  48 b9 01 ad 56 a8 64 0f  |V".4..a.H...V.d.|
          d9 8c 91 c4 bb cc 0c e5  ad 7a a0 22 7f df 47 38  |.........z."..G8|
          4a 2d 6c d1 7f 71 1a 7c  ec 70 a9 b1 f0 4f e4 0f  |J-l..q.|.p...O..|
          0c 53 fa 15 5e fe 74 98  49 24 85 81 26 1c 91 14  |.S..^.t.I$..&...|
          47 b0 4c 63 8c bb a1 34  d4 c6 45 e8 0d 85 26 73  |G.Lc...4..E...&s|
          03 d0 a9 8c 64 6d dc 71  92 e6 45 05 60 15 59 51  |....dm.q..E.`.YQ|
          39 fc 58 14 6b fe d4 a4  ed 79 6b 08 0c 41 72 e7  |9.X.k....yk..Ar.|
          37 22 06 09 be 23 e9 3f  44 9a 1e e9 61 9d cc b1  |7"...#.?D...a...|
          90 5c fc 3d d2 8d ac 42  3d 65 36 d4 b4 3d 40 28  |.\.=...B=e6..=@(|
          8f 9b 10 cf 23 26 cc 4b  20 cb 90 1f 5d 8c 4c 34  |....#&.K ...].L4|
          ca 3c d8 e5 37 d6 6f a5  20 bd 34 eb 26 d9 ae 0d  |.<..7.o. .4.&...|
          e7 c5 9a f7 a1 b4 21 91  33 6f 86 e8 58 bb 25 7c  |......!.3o..X.%||
          74 0e 58 fe 75 1b 63 3f  ce 31 7c 9b 8f 1b 96 9e  |t.X.u.c?.1|.....|
          c5 53 76 84 5b 9c ad 91  fa ac ed 93 ba 5d c8 21  |.Sv.[........].!|
          53 c2 82 53 63 af 12 0d  50 87 11 1b 3d 54 52 96  |S..Sc...P...=TR.|
          8a 2c 9c 3d 92 1a 08 9a  05 2e c7 93 a5 48 91 d3  |.,.=.........H..|
    • Signer
      • 1
      • unnamed
        • #0
          • C: US
          • O: VeriSign, Inc.
          • OU: VeriSign Trust Network
          • OU: Terms of use at https://www.verisign.com/rpa (c)10
          • CN: VeriSign Class 3 Code Signing 2010 CA
        • 20:0A:7D:1C:4C:0E:F3:83:11:1D:1C:1C:E0:2C:96:08
      • SHA1: nil
      • #3
        • contentType: 1.3.6.1.4.1.311.2.1.4
        • 1.3.6.1.4.1.311.2.1.11: msCodeInd
        • messageDigest:
          4a b1 16 f9 98 af 95 97  9a 4a 21 14 5f 60 2b cc  |J........J!._`+.|
          e7 6b 64 29                                       |.kd)            |
        • 1.3.6.1.4.1.311.2.1.12: http://www.skype.com/
      • rsaEncryption:
        7d b0 a2 61 0d 97 fe e0  1e 15 09 de 9a 58 ed 4f  |}..a.........X.O|
        c9 61 df f4 97 b7 ec 1c  e3 7c 39 91 fd dd aa 83  |.a.......|9.....|
        31 55 26 92 0f 29 d0 98  72 48 84 16 aa 67 89 bb  |1U&..)..rH...g..|
        cb 17 d0 2a e1 4c 80 c7  60 b6 6c 1e c6 1e 4c b6  |...*.L..`.l...L.|
        b8 be ec 5f a4 98 17 19  4d b9 2d 13 0f 64 11 d2  |..._....M.-..d..|
        c9 b1 76 71 a7 3e 73 b1  83 7d b5 fe 4a eb b3 8a  |..vq.>s..}..J...|
        cc 3a c0 c6 bc 18 31 7b  0a 70 41 f2 07 b3 51 78  |.:....1{.pA...Qx|
        82 6c 30 a7 c7 2d d1 0d  b5 d6 11 0e 3e 9f 0d b8  |.l0..-......>...|
      • countersignature
        • 1
          • unnamed
            • #0
              • C: US
              • O: VeriSign, Inc.
              • CN: VeriSign Time Stamping Services CA
            • 79:A2:A5:85:F9:D1:15:42:13:D9:B8:3E:F6:B6:8D:ED
          • SHA1: nil
          • #2
            • contentType: pkcs7-data
            • signingTime: 2012-11-09 11:33:29 UTC
            • messageDigest:
              53 dd ac 6c 18 45 36 60  d1 1d e4 e0 e5 db 3f 17  |S..l.E6`......?.|
              9e 8c ae be                                       |....            |
          • rsaEncryption:
            68 ce b7 6f 2d 6b dd 90  0d 25 4e 26 fb a7 e4 90  |h..o-k...%N&....|
            fd 2c 65 8e 96 42 c0 52  94 14 7e 49 3a 72 93 ba  |.,e..B.R..~I:r..|
            82 98 da 27 e7 95 af 8e  4d 9f 3c ff 1e 3a 67 fd  |...'....M.<..:g.|
            a9 53 f6 88 bb 1f 00 50  47 89 f3 d7 31 a7 fa d8  |.S.....PG...1...|
            bd ee 28 8d 99 d3 62 68  9f c9 83 f8 91 12 ad 62  |..(...bh.......b|
            1f 12 80 fa f1 90 43 9f  7a 19 4a 46 37 12 bd 3b  |......C.z.JF7..;|
            fa c0 64 43 60 1a c4 60  58 e6 9f 01 99 ec 1f 7e  |..dC`..`X......~|
            12 5b 18 14 43 84 1f d9  f0 8f 43 9d 5a 31 cf c9  |.[..C.....C.Z1..|
offset:( 0x )size:( 0x )hotkeys:-=[]<>, offset/size fields are also editable

[?] can't find file_offset of VA 0x125c24

[?] can't find file_offset of VA 0x15868c

[?] can't find file_offset of VA 0x15b384

[?] can't find file_offset of VA 0x15e800

[?] can't find file_offset of VA 0x160d48

[?] can't find file_offset of VA 0x163150

[?] can't find file_offset of VA 0x164f80

[?] can't find file_offset of VA 0x1671d4

[?] can't find file_offset of VA 0x169674

[?] can't find file_offset of VA 0x16d380

[?] can't find file_offset of VA 0x16f3c8

[?] can't find file_offset of VA 0x1718b0

[?] can't find file_offset of VA 0x1739fc

[?] can't find file_offset of VA 0x175bb4

[?] can't find file_offset of VA 0x1782c8

[?] can't find file_offset of VA 0x17ac68

[?] can't find file_offset of VA 0x17d020

[?] can't find file_offset of VA 0x17f50c

[?] can't find file_offset of VA 0x181728

[?] can't find file_offset of VA 0x183adc

[?] can't find file_offset of VA 0x18668c

[?] can't find file_offset of VA 0x188cb0

[?] can't find file_offset of VA 0x18b174

[?] can't find file_offset of VA 0x18d4c8

[?] can't find file_offset of VA 0x18f7c4

[?] can't find file_offset of VA 0x191928

[?] can't find file_offset of VA 0x193cdc

[?] can't find file_offset of VA 0x19609c

[?] can't find file_offset of VA 0x198498

[?] can't find file_offset of VA 0x19a8c8

[?] can't find file_offset of VA 0x19e1fc

[?] can't find file_offset of VA 0x1a0844

[?] can't find file_offset of VA 0x1a2b90

[?] can't find file_offset of VA 0x1a4f80

[?] can't find file_offset of VA 0x1a7140

[?] can't find file_offset of VA 0x1aba9c

[?] can't find file_offset of VA 0x1ade00

[?] can't find file_offset of VA 0x1b0f58

[?] can't find file_offset of VA 0x1b3b60

[?] can't find file_offset of VA 0x1b5ac0

[?] ignoring invalid PEdump::BITMAPINFOHEADER

[!] string size(16254) > stringtable size(428). truncated to 426

[!] cannot convert "\x9F\\jIc\xB5\xC0'\xA8\xE8\t3\x18K{\x9A"... to UTF-16

[!] string size(21768) > stringtable size(2616). truncated to 2614

[!] cannot convert "9H9\x06\xF0\xBC7G@\x99n\x18\xD6\xE2\xA7\xB2"... to UTF-16

[!] string size(35136) > stringtable size(2448). truncated to 2446

[!] cannot convert "L\xD4\xBE\xB7\xBC\xB5=\x86\x1C\xB1\xF8~\xC0\x99\xA4\xC4"... to UTF-16

[!] string size(44618) > stringtable size(1080). truncated to 1078

[!] cannot convert "\xF7\x15#\x99\x966\x90U[\xABR\xEE\xD6KDn"... to UTF-16

[!] string size(1416) > stringtable size(348). truncated to 346

[!] string size(118494) > stringtable size(212). truncated to 210

[!] string size(125804) > stringtable size(276). truncated to 274

[!] cannot convert "\x81\x8F\x18\xACkRp\xEFLY\xBCI_Nw%"... to UTF-16

[!] string size(52752) > stringtable size(744). truncated to 742

[!] cannot convert "\x89\xFFj\xFC\x1C\x01G\xDEz<\xC1\xEF\xFE.\x8F\xAD"... to UTF-16

[!] string size(44806) > stringtable size(1032). truncated to 1030

[!] cannot convert "{\x16\x91#\xB5\x90\xB2\x02l\r\xA8\xE5L8\xD8\r"... to UTF-16

[!] string size(27974) > stringtable size(916). truncated to 914

[!] cannot convert "\x8D\xF9\x1D\xC4\x9CO\x9D\xD7P+\xD3\x11\x9B\xFAh\n"... to UTF-16

[!] string size(83808) > stringtable size(1048). truncated to 1046

[!] cannot convert "\xA7\x05\xF7\xDD${uL\x93\xD2\xD3\xB2\x87t`w"... to UTF-16

[!] string size(100922) > stringtable size(900). truncated to 898

[!] cannot convert " \xD0\xBD?-\xD8r{t])^'\">>"... to UTF-16

[!] string size(89142) > stringtable size(968). truncated to 966

[!] cannot convert "yj\xA0F\xBF\x93\xBD\xE6\xA6\xA8f\xDA\x00\xF9\x9C\xF5"... to UTF-16

[!] string size(49040) > stringtable size(980). truncated to 978

[!] cannot convert "\rtY\x91d\xC0<\x02n\x15\x06F\x17\xF1\xF0\xF0"... to UTF-16

[!] string size(105472) > stringtable size(208). truncated to 206

[!] cannot convert "\"\x9A\xFE\x06K\xB0\x1F\xF9\x9F@S\xF74\x97\x9B\x80"... to UTF-16

[!] string size(73178) > stringtable size(184). truncated to 182

[!] cannot convert "C\x1D\xF0\x15(k\x91\x11\xFD\xAA0\x0F\xE3&4\xA9"... to UTF-16

[!] string size(47224) > stringtable size(628). truncated to 626

[!] cannot convert "F4\xCD<\xCF\x1C\xBD\x1E\xF6+r\xD3\xFF\xE5Uy"... to UTF-16

[!] string size(44332) > stringtable size(1112). truncated to 1110

[!] cannot convert "\x19ZB@\x13\xA9\x17(_\x8F\xCB\xA0E]\x15\xE3"... to UTF-16

[!] string size(82568) > stringtable size(872). truncated to 870

[!] cannot convert "<x\xF5\xD3\xE0u?\xF1$\xB9\xBD\xBCd\x8A\x18`"... to UTF-16

[!] string size(80924) > stringtable size(692). truncated to 690

[!] cannot convert ";?\xA3D\x81\xEC\xBBx\xAA\xE1Y\xDD\xF3\xFE\x17\xCA"... to UTF-16

[!] refusing to read CURDIRENTRY beyond resource size

[?] can't find file_offset of VA 0x1109f8

[?] can't find file_offset of VA 0x121000