MZ Header

Rich Header

DOS stub

00000000: 0e 1f ba 0e 00 b4 09 cd  21 b8 01 4c cd 21 54 68  |........!..L.!Th|
00000010: 69 73 20 70 72 6f 67 72  61 6d 20 63 61 6e 6e 6f  |is program canno|
00000020: 74 20 62 65 20 72 75 6e  20 69 6e 20 44 4f 53 20  |t be run in DOS |
00000030: 6d 6f 64 65 2e 0d 0d 0a  24 00 00 00 00 00 00 00  |mode....$.......|

PE Header

Packer / Compiler

Sections

Data Directory

TLS

StringTable 040904B0

VS_FIXEDFILEINFO

Signers (1)

issuer: /C=US/O=DigiCert Inc/OU=www.digicert.com/CN=DigiCert SHA2 High Assurance Code Signing CA
serial: 061BC9B83A57C7D966C2FF0B32A07BFA

Certificates (2)

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            06:1b:c9:b8:3a:57:c7:d9:66:c2:ff:0b:32:a0:7b:fa
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert SHA2 High Assurance Code Signing CA
        Validity
            Not Before: May  7 00:00:00 2019 GMT
            Not After : May 11 12:00:00 2020 GMT
        Subject: C=US, ST=California, L=Palo Alto, O=HP Inc., OU=HP Cybersecurity, CN=HP Inc.
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                Public-Key: (2048 bit)
                Modulus:
                    00:e1:6d:54:38:48:a0:40:af:f7:8e:2e:20:6a:09:
                    cc:47:6c:1f:1b:0c:88:42:e7:73:85:7b:f3:66:69:
                    ec:f7:b4:26:11:ca:34:9a:78:f4:74:a4:ad:d9:12:
                    66:c3:8c:22:25:ed:0b:a0:52:16:18:dc:2e:88:35:
                    af:5b:77:7a:c4:f8:6a:99:27:84:4e:a7:b1:54:82:
                    29:ad:a8:6c:03:07:7a:73:13:3d:e6:c2:35:7d:8f:
                    f6:45:fd:b0:f1:d8:cc:41:5c:53:d3:e7:76:ed:a0:
                    6b:d1:b0:46:0f:74:50:da:2c:b2:5f:54:08:38:09:
                    62:03:38:7a:e9:e9:b2:f7:d2:73:ee:7b:6c:fa:85:
                    26:93:49:5a:5d:f8:78:60:2a:0a:5a:0f:29:a2:7b:
                    d1:98:8e:4f:cc:da:e8:53:5e:9f:e9:c2:b5:fc:f7:
                    ea:8e:3f:df:52:c6:4a:1a:10:8e:5b:e5:16:1d:05:
                    0c:cc:74:d9:c5:cd:68:fc:21:8c:79:ee:dc:40:f0:
                    64:5d:c6:9a:df:ec:72:4a:b7:d6:11:c3:ff:2a:58:
                    b4:08:52:b2:85:ab:53:80:f2:52:4d:e9:1c:9b:64:
                    78:1d:05:e5:a6:d6:e2:ed:30:9e:c2:89:62:a6:ae:
                    99:93:97:c1:d7:ad:b4:8a:c5:79:ff:6b:17:8e:15:
                    d3:99
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Authority Key Identifier: 
                keyid:67:9D:0F:20:09:0C:CC:8A:3A:E5:82:46:72:62:FC:F1:CC:90:E5:40

            X509v3 Subject Key Identifier: 
                77:2F:18:CD:8B:81:0B:42:69:AB:BE:E1:72:D9:F0:88:69:F6:EF:21
            X509v3 Key Usage: critical
                Digital Signature
            X509v3 Extended Key Usage: 
                Code Signing
            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl3.digicert.com/sha2-ha-cs-g1.crl

                Full Name:
                  URI:http://crl4.digicert.com/sha2-ha-cs-g1.crl

            X509v3 Certificate Policies: 
                Policy: 2.16.840.1.114412.3.11
                  CPS: https://www.digicert.com/CPS
                Policy: 2.23.140.1.4.1

            Authority Information Access: 
                OCSP - URI:http://ocsp.digicert.com
                CA Issuers - URI:http://cacerts.digicert.com/DigiCertSHA2HighAssuranceCodeSigningCA.crt

            X509v3 Basic Constraints: critical
                CA:FALSE
    Signature Algorithm: sha256WithRSAEncryption
         a4:8d:ba:77:24:27:9d:9f:43:12:f1:8d:b1:e8:41:b0:c7:cc:
         75:4b:4f:0f:bc:1a:d9:47:81:76:2e:19:b4:4a:df:60:29:4c:
         ed:d3:89:b2:b9:be:53:d2:8b:9c:12:86:21:75:dd:90:8d:c9:
         d9:0a:6b:5f:5d:a1:e1:02:7a:dc:9b:d8:38:68:a8:73:a0:2d:
         72:83:d0:1d:26:66:b8:e7:13:0c:0e:77:30:3d:20:2d:23:ec:
         ac:cb:8a:99:61:31:79:ff:1d:f0:90:a3:f1:76:27:68:7a:07:
         3b:8f:12:91:c6:cd:23:2f:86:79:ce:86:52:d1:0a:99:d1:a0:
         00:12:e1:cd:9c:df:46:5b:73:f9:5d:86:9b:fe:c8:c1:c8:b3:
         92:9a:71:a7:c2:c8:af:7f:50:44:60:bb:25:b0:15:da:a1:e6:
         f4:32:42:64:7a:a4:22:ea:f2:53:79:b3:6c:5c:24:37:3d:e0:
         29:50:d9:33:32:04:c2:6c:71:f3:50:06:47:74:ac:b9:ad:9f:
         dc:d6:0c:17:84:b6:60:a8:de:f0:bd:1d:84:26:03:bb:28:ec:
         d3:12:50:47:a0:42:ac:05:4b:85:5a:c1:12:47:da:2e:22:5d:
         6b:1b:02:30:af:12:a8:af:66:f3:11:37:bc:79:f7:a7:96:cd:
         5c:48:75:a9

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            0b:7e:10:90:3c:38:49:0f:fa:2f:67:9a:87:a1:a7:b9
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert High Assurance EV Root CA
        Validity
            Not Before: Oct 22 12:00:00 2013 GMT
            Not After : Oct 22 12:00:00 2028 GMT
        Subject: C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert SHA2 High Assurance Code Signing CA
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                Public-Key: (2048 bit)
                Modulus:
                    00:b4:4a:5e:7d:07:0f:41:de:c4:f5:76:16:36:bd:
                    71:ff:cf:3f:4f:73:4b:9c:d1:0d:fe:4a:cb:57:58:
                    5e:85:16:dd:02:15:54:99:f0:8f:3c:2f:4d:02:78:
                    10:68:c8:d8:35:4b:3f:c1:f7:67:ce:98:1c:ae:33:
                    b9:2d:1d:a4:0a:54:93:c4:85:a2:df:35:b1:f5:f1:
                    3c:a7:b3:34:fb:5d:48:c9:46:c9:62:44:bc:48:99:
                    eb:28:49:53:c3:3d:8f:c0:0e:de:35:98:e9:62:51:
                    df:3d:6b:40:61:ee:04:41:da:cf:a7:5c:56:96:d1:
                    f9:4c:b7:44:84:87:98:69:e5:82:b9:13:e6:55:bf:
                    c8:92:70:92:0a:31:6f:7f:8b:32:ab:cf:6b:5a:9f:
                    62:c4:3e:ee:be:ed:59:a4:53:7f:0b:f1:52:88:8a:
                    7b:0a:67:24:cb:90:cd:ec:d2:4d:34:4c:b0:e1:b5:
                    9f:9c:c6:f6:6f:2c:cd:e6:ca:53:74:01:9f:67:35:
                    de:38:49:2d:ce:ed:39:44:82:19:79:4e:1a:b2:b5:
                    fb:bb:78:f0:49:66:a7:cf:fa:5c:96:75:92:8b:1a:
                    72:d9:ff:50:92:53:cc:3e:c2:43:32:09:1a:86:13:
                    69:3c:fb:81:32:33:32:64:75:73:28:26:1d:08:30:
                    3b:07
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            X509v3 Key Usage: critical
                Digital Signature, Certificate Sign, CRL Sign
            X509v3 Extended Key Usage: 
                Code Signing
            Authority Information Access: 
                OCSP - URI:http://ocsp.digicert.com
                CA Issuers - URI:http://cacerts.digicert.com/DigiCertHighAssuranceEVRootCA.crt

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl4.digicert.com/DigiCertHighAssuranceEVRootCA.crl

                Full Name:
                  URI:http://crl3.digicert.com/DigiCertHighAssuranceEVRootCA.crl

            X509v3 Certificate Policies: 
                Policy: 2.16.840.1.114412.0.2.4
                  CPS: https://www.digicert.com/CPS
                Policy: 2.16.840.1.114412.3

            X509v3 Subject Key Identifier: 
                67:9D:0F:20:09:0C:CC:8A:3A:E5:82:46:72:62:FC:F1:CC:90:E5:40
            X509v3 Authority Key Identifier: 
                keyid:B1:3E:C3:69:03:F8:BF:47:01:D4:98:26:1A:08:02:EF:63:64:2B:C3

    Signature Algorithm: sha256WithRSAEncryption
         6a:0e:ff:7e:13:7c:06:a5:4b:c0:2e:8c:f9:53:64:09:e2:ba:
         58:91:30:50:ec:cc:9f:e1:d3:a8:2f:48:46:36:18:29:d0:78:
         28:5f:98:56:40:0f:1e:ba:bd:b1:3b:87:5c:dc:5b:d8:20:0d:
         ed:1a:16:4d:d5:11:24:21:4b:f1:27:69:90:13:eb:11:a1:01:
         da:fd:b5:4e:79:59:75:bd:38:2a:6a:c3:f6:8e:41:2b:8a:a2:
         8b:d7:2c:51:51:d9:9c:a0:c8:e3:4e:ba:6c:a8:47:d2:4e:d1:
         68:1f:8c:02:57:3b:b3:29:6a:8e:6a:20:2a:b9:f2:00:62:64:
         ba:c8:e9:00:f9:cc:a4:d4:ba:9a:35:d8:af:2c:65:6c:16:7c:
         58:21:de:4a:30:d0:fa:eb:24:5d:06:c9:9d:16:b7:ad:4a:45:
         d3:25:e2:0c:f0:40:aa:5c:4d:ac:7e:cd:06:82:b9:76:46:69:
         08:d8:32:b6:82:fe:e3:a9:58:34:43:1b:8e:67:67:97:3f:68:
         31:16:36:38:95:3e:87:f7:c7:c3:af:9d:7a:77:19:d9:de:93:
         b5:fd:6e:2b:fc:94:f9:3d:b7:4c:12:35:2c:30:be:e8:8d:9e:
         05:70:9a:48:13:f4:8c:d6:e7:1e:ac:38:e7:a8:f3:ad:0c:b7:
         7a:ec:67:ed

Cannot convert into OpenSSL::BN

offsetsizetypecomment
0295424EXE11/14/2019 11:04:52#
37ee4363PNG(60 x 58)#
380502224PNG(164 x 314)#
389002452PNG(190 x 386)#
392942911PNG(239 x 458)#
39df43293PNG(275 x 555)#
3aad4695PNG(16 x 16)#
3ad8c1698PNG(32 x 32)#
3b4302869PNG(48 x 48)#
3bf684630PNG(64 x 64)#
3d18010113PNG(128 x 128)#
3f90419260PNG(256 x 256)#
4820027920152BINoverlay data past EOF#
Path = [0]
Size = 27905408
Packed Size = 27905408
Offset = 295424
--
Path = [0]
Type = Cab
Method = MSZip
Blocks = 1
Volumes = 1

   Date      Time    Attr         Size   Compressed  Name
------------------- ----- ------------ ------------  ------------------------
2019-03-14 14:24:14 ....A     15922592               /085DDF07x64.exe
2019-03-14 14:24:14 ....A     15922592               /HPWINGUI.exe
------------------- ----- ------------ ------------  ------------------------
                              31845184     28215576  2 files, 0 folders
offset:( 0x )size:( 0x )hotkeys:-=[]<>, offset/size fields are also editable

[?] ignoring invalid PEdump::BITMAPINFOHEADER

[?] can't find file_offset of VA 0x39888

[?] ignoring invalid PEdump::BITMAPINFOHEADER