MZ Header

Rich Header

DOS stub

00000000: 0e 1f ba 0e 00 b4 09 cd  21 b8 01 4c cd 21 54 68  |........!..L.!Th|
00000010: 69 73 20 70 72 6f 67 72  61 6d 20 63 61 6e 6e 6f  |is program canno|
00000020: 74 20 62 65 20 72 75 6e  20 69 6e 20 44 4f 53 20  |t be run in DOS |
00000030: 6d 6f 64 65 2e 0d 0d 0a  24 00 00 00 00 00 00 00  |mode....$.......|

PE Header

Packer / Compiler

Sections

Data Directory

Signers (1)

issuer: /C=ZA/O=Thawte Consulting (Pty) Ltd./CN=Thawte Code Signing CA
serial: 1F9AE0

Certificates (5)

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number: 1 (0x1)
        Signature Algorithm: md5WithRSAEncryption
        Issuer: C=ZA, ST=Western Cape, L=Cape Town, O=Thawte Consulting cc, OU=Certification Services Division, CN=Thawte Premium Server CA/emailAddress=premium-server@thawte.com
        Validity
            Not Before: Aug  1 00:00:00 1996 GMT
            Not After : Dec 31 23:59:59 2020 GMT
        Subject: C=ZA, ST=Western Cape, L=Cape Town, O=Thawte Consulting cc, OU=Certification Services Division, CN=Thawte Premium Server CA/emailAddress=premium-server@thawte.com
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (1024 bit)
                Modulus:
                    00:d2:36:36:6a:8b:d7:c2:5b:9e:da:81:41:62:8f:
                    38:ee:49:04:55:d6:d0:ef:1c:1b:95:16:47:ef:18:
                    48:35:3a:52:f4:2b:6a:06:8f:3b:2f:ea:56:e3:af:
                    86:8d:9e:17:f7:9e:b4:65:75:02:4d:ef:cb:09:a2:
                    21:51:d8:9b:d0:67:d0:ba:0d:92:06:14:73:d4:93:
                    cb:97:2a:00:9c:5c:4e:0c:bc:fa:15:52:fc:f2:44:
                    6e:da:11:4a:6e:08:9f:2f:2d:e3:f9:aa:3a:86:73:
                    b6:46:53:58:c8:89:05:bd:83:11:b8:73:3f:aa:07:
                    8d:f4:42:4d:e7:40:9d:1c:37
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Basic Constraints: critical
                CA:TRUE
    Signature Algorithm: md5WithRSAEncryption
         26:48:2c:16:c2:58:fa:e8:16:74:0c:aa:aa:5f:54:3f:f2:d7:
         c9:78:60:5e:5e:6e:37:63:22:77:36:7e:b2:17:c4:34:b9:f5:
         08:85:fc:c9:01:38:ff:4d:be:f2:16:42:43:e7:bb:5a:46:fb:
         c1:c6:11:1f:f1:4a:b0:28:46:c9:c3:c4:42:7d:bc:fa:ab:59:
         6e:d5:b7:51:88:11:e3:a4:85:19:6b:82:4c:a4:0c:12:ad:e9:
         a4:ae:3f:f1:c3:49:65:9a:8c:c5:c8:3e:25:b7:94:99:bb:92:
         32:71:07:f0:86:5e:ed:50:27:a6:0d:a6:23:f9:bb:cb:a6:07:
         14:42

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number: 2071264 (0x1f9ae0)
        Signature Algorithm: md5WithRSAEncryption
        Issuer: C=ZA, O=Thawte Consulting (Pty) Ltd., CN=Thawte Code Signing CA
        Validity
            Not Before: Feb 16 18:24:50 2004 GMT
            Not After : Feb 11 00:05:03 2005 GMT
        Subject: C=US, ST=Illinois, L=Schaumburg, O=InstallShield Software Corporation, OU=Research and Development, CN=InstallShield Software Corporation
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (1024 bit)
                Modulus:
                    00:ac:28:44:b3:a0:38:96:aa:17:84:70:24:fe:43:
                    32:6b:20:35:f4:ad:15:50:56:f6:0d:52:bd:c9:d6:
                    04:bf:9e:64:c5:3e:f4:8b:ce:c4:ee:89:f3:d8:21:
                    1f:61:81:90:d4:a0:c4:34:e3:64:5e:12:36:56:06:
                    e9:0e:8f:56:b9:99:76:9b:10:12:3b:be:6a:91:58:
                    20:90:ce:03:c0:bf:3d:a0:93:06:22:26:a8:21:f7:
                    81:d6:4e:5d:94:71:10:46:97:8d:f3:65:42:97:dd:
                    49:b2:c1:aa:9a:05:48:b8:ec:85:de:ce:1c:c8:c2:
                    50:4e:4a:7b:10:23:48:a4:35
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Extended Key Usage: 
                Code Signing, Microsoft Commercial Code Signing
            Netscape Cert Type: 
                Object Signing
            2.5.29.4: 
                0.0.0..
+.....7.......
            X509v3 Subject Alternative Name: 
                DNS:www.installshield.com
            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.thawte.com/ThawteCodeSigningCA.crl

            X509v3 Basic Constraints: critical
                CA:FALSE
    Signature Algorithm: md5WithRSAEncryption
         c4:6e:bb:62:c1:fe:d3:c4:e5:b2:94:67:44:a8:cd:87:7d:4d:
         6f:eb:37:d1:89:8b:73:ae:06:41:0f:eb:38:25:66:04:db:5f:
         54:69:7d:d1:1a:a8:a5:e3:4d:b7:92:9e:24:7c:74:ba:de:6f:
         d4:5c:15:a9:3a:92:5f:ed:22:20:70:85:45:a9:85:41:c7:db:
         2f:e7:03:91:9c:4f:2d:02:f6:9a:a6:c2:3d:70:3e:c0:e5:b5:
         e3:c0:b8:74:5a:74:2e:bb:49:f0:4b:c8:88:5f:45:b7:1d:59:
         d7:c1:aa:6e:4a:38:2d:4d:cb:2b:5e:44:97:af:99:ab:b4:2f:
         aa:90

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number: 10 (0xa)
        Signature Algorithm: sha1WithRSAEncryption
        Issuer: C=ZA, ST=Western Cape, L=Cape Town, O=Thawte Consulting cc, OU=Certification Services Division, CN=Thawte Premium Server CA/emailAddress=premium-server@thawte.com
        Validity
            Not Before: Aug  6 00:00:00 2003 GMT
            Not After : Aug  5 23:59:59 2013 GMT
        Subject: C=ZA, O=Thawte Consulting (Pty) Ltd., CN=Thawte Code Signing CA
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (1024 bit)
                Modulus:
                    00:c6:b8:b9:27:60:af:0b:e3:91:69:65:db:7e:8d:
                    ed:91:e6:aa:f1:be:d5:ed:fe:6d:d4:2c:7f:d1:70:
                    77:fb:26:99:57:b4:dd:3f:30:b8:dc:21:ea:68:8d:
                    81:92:fc:2e:4b:91:35:84:20:f2:da:4a:ba:b4:fc:
                    e6:da:88:f2:20:c5:21:92:09:47:95:a0:09:1c:a6:
                    79:be:b1:4c:1d:fc:f1:8a:6e:54:d2:69:a1:f1:4c:
                    93:3a:41:fe:7d:d4:64:7b:63:45:f7:60:60:1d:31:
                    1d:a4:e9:d3:0f:8b:fb:6e:26:24:b3:a8:ff:e5:e5:
                    90:d4:b4:c2:dc:50:60:ae:59
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.thawte.com/ThawtePremiumServerCA.crl

            X509v3 Extended Key Usage: 
                TLS Web Client Authentication, Code Signing
            X509v3 Key Usage: critical
                Certificate Sign, CRL Sign
            X509v3 Subject Alternative Name: 
                DirName:/CN=PrivateLabel2-144
    Signature Algorithm: sha1WithRSAEncryption
         76:b2:9c:ee:13:9f:1b:f6:2d:34:92:94:45:73:34:dc:8e:6b:
         2e:5c:fc:4c:7d:89:eb:c3:68:f1:d7:99:0f:2e:1d:17:c8:b5:
         16:8b:be:cd:8a:05:06:f2:19:49:3a:03:5b:05:c9:20:8e:6d:
         52:e1:76:81:a0:c3:65:8a:22:67:e4:1c:53:53:37:46:bf:bc:
         d7:2f:eb:7b:9e:d0:14:45:6c:40:21:08:e2:5d:75:76:66:30:
         1e:f4:df:82:8a:2f:bd:f3:a2:0c:bf:1d:db:9f:14:a2:9a:72:
         37:4d:b0:77:48:e8:4a:3f:09:ce:55:19:2c:ef:e6:07:24:e1:
         af:ec

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            47:bf:19:95:df:8d:52:46:43:f7:db:6d:48:0d:31:a4
        Signature Algorithm: sha1WithRSAEncryption
        Issuer: C=ZA, ST=Western Cape, L=Durbanville, O=Thawte, OU=Thawte Certification, CN=Thawte Timestamping CA
        Validity
            Not Before: Dec  4 00:00:00 2003 GMT
            Not After : Dec  3 23:59:59 2013 GMT
        Subject: C=US, O=VeriSign, Inc., CN=VeriSign Time Stamping Services CA
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (2048 bit)
                Modulus:
                    00:a9:ca:b2:a4:cc:cd:20:af:0a:7d:89:ac:87:75:
                    f0:b4:4e:f1:df:c1:0f:bf:67:61:bd:a3:64:1c:da:
                    bb:f9:ca:33:ab:84:30:89:58:7e:8c:db:6b:dd:36:
                    9e:0f:bf:d1:ec:78:f2:77:a6:7e:6f:3c:bf:93:af:
                    0d:ba:68:f4:6c:94:ca:bd:52:2d:ab:48:3d:f5:b6:
                    d5:5d:5f:1b:02:9f:fa:2f:6b:1e:a4:f7:a3:9a:a6:
                    1a:c8:02:e1:7f:4c:52:e3:0e:60:ec:40:1c:7e:b9:
                    0d:de:3f:c7:b4:df:87:bd:5f:7a:6a:31:2e:03:99:
                    81:13:a8:47:20:ce:31:73:0d:57:2d:cd:78:34:33:
                    95:12:99:12:b9:de:68:2f:aa:e6:e3:c2:8a:8c:2a:
                    c3:8b:21:87:66:bd:83:58:57:6f:75:bf:3c:aa:26:
                    87:5d:ca:10:15:3c:9f:84:ea:54:c1:0a:6e:c4:fe:
                    c5:4a:dd:b9:07:11:97:22:7c:db:3e:27:d1:1e:78:
                    ec:9f:31:c9:f1:e6:22:19:db:c4:b3:47:43:9a:1a:
                    5f:a0:1e:90:e4:5e:f5:ee:7c:f1:7d:ab:62:01:8f:
                    f5:4d:0b:de:d0:22:56:a8:95:cd:ae:88:76:ae:ee:
                    ba:0d:f3:e4:4d:d9:a0:fb:68:a0:ae:14:3b:b3:87:
                    c1:bb
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            Authority Information Access: 
                OCSP - URI:http://ocsp.verisign.com

            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.verisign.com/ThawteTimestampingCA.crl

            X509v3 Extended Key Usage: 
                Time Stamping
            X509v3 Key Usage: critical
                Certificate Sign, CRL Sign
            X509v3 Subject Alternative Name: 
                DirName:/CN=TSA2048-1-53
    Signature Algorithm: sha1WithRSAEncryption
         4a:6b:f9:ea:58:c2:44:1c:31:89:79:99:2b:96:bf:82:ac:01:
         d6:1c:4c:cd:b0:8a:58:6e:df:08:29:a3:5e:c8:ca:93:13:e7:
         04:52:0d:ef:47:27:2f:00:38:b0:e4:c9:93:4e:9a:d4:22:62:
         15:f7:3f:37:21:4f:70:31:80:f1:8b:38:87:b3:e8:e8:97:00:
         fe:cf:55:96:4e:24:d2:a9:27:4e:7a:ae:b7:61:41:f3:2a:ce:
         e7:c9:d9:5e:dd:bb:2b:85:3e:b5:9d:b5:d9:e1:57:ff:be:b4:
         c5:7e:f5:cf:0c:9e:f0:97:fe:2b:d3:3b:52:1b:1b:38:27:f7:
         3f:4a

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            0d:e9:2b:f0:d4:d8:29:88:18:32:05:09:5e:9a:76:88
        Signature Algorithm: sha1WithRSAEncryption
        Issuer: C=US, O=VeriSign, Inc., CN=VeriSign Time Stamping Services CA
        Validity
            Not Before: Dec  4 00:00:00 2003 GMT
            Not After : Dec  3 23:59:59 2008 GMT
        Subject: C=US, O=VeriSign, Inc., CN=VeriSign Time Stamping Services Signer
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                RSA Public-Key: (2048 bit)
                Modulus:
                    00:b2:50:28:48:dd:d3:68:7a:84:18:44:66:75:5d:
                    7e:c4:b8:9f:63:26:ff:3d:43:9c:7c:11:38:10:25:
                    55:73:d9:75:27:69:fd:4e:b9:20:5c:d3:0a:f9:a0:
                    1b:2a:ed:55:56:21:61:d8:1e:db:e4:bc:33:6b:c7:
                    ef:dd:a3:37:65:8e:1b:93:0c:b6:53:1e:5c:7c:66:
                    35:5f:05:8a:45:fe:76:4e:df:53:80:a2:81:20:9d:
                    ae:88:5c:a2:08:f7:e5:30:f9:ee:22:37:4c:42:0a:
                    ce:df:c6:1f:c4:d6:55:e9:81:3f:b5:52:a3:2c:aa:
                    01:7a:f2:a2:aa:8d:35:fe:9f:e6:5d:6a:05:9f:3d:
                    6b:e3:bf:96:c0:fe:cc:60:f9:40:e7:07:a0:44:eb:
                    81:51:6e:a5:2a:f2:b6:8a:10:28:ed:8f:dc:06:a0:
                    86:50:9a:7b:4a:08:0d:30:1d:ca:10:9e:6b:f7:e9:
                    58:ae:04:a9:40:99:b2:28:e8:8f:16:ac:3c:e3:53:
                    6f:4b:d3:35:9d:b5:6f:64:1d:b3:96:2c:bb:3d:e7:
                    79:eb:6d:7a:f9:16:e6:26:ad:af:ef:99:53:b7:40:
                    2c:95:b8:79:aa:fe:d4:52:ab:29:74:7e:42:ec:39:
                    1e:a2:6a:16:e6:59:bb:24:68:d8:00:80:43:10:87:
                    80:6b
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            Authority Information Access: 
                OCSP - URI:http://ocsp.verisign.com

            X509v3 Basic Constraints: critical
                CA:FALSE
            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.verisign.com/tss-ca.crl

            X509v3 Extended Key Usage: critical
                Time Stamping
            X509v3 Key Usage: critical
                Digital Signature, Non Repudiation
            X509v3 Subject Alternative Name: 
                DirName:/CN=TSA2048-1-54
    Signature Algorithm: sha1WithRSAEncryption
         87:78:70:da:4e:52:01:20:5b:e0:79:c9:82:30:c4:fd:b9:19:
         96:bd:91:00:c3:bd:cd:cd:c6:f4:0e:d8:ff:f9:4d:c0:33:62:
         30:11:c5:f5:74:1b:d4:92:de:5f:9c:20:13:b1:7c:45:be:50:
         cd:83:e7:80:17:83:a7:27:93:67:13:46:fb:ca:b8:98:41:03:
         cc:9b:51:5b:05:8b:7f:a8:6f:f3:1b:50:1b:24:2e:f2:69:8d:
         6c:22:f7:bb:ca:16:95:ed:0c:74:c0:68:77:d9:eb:99:62:87:
         c1:73:90:f8:89:74:7a:23:ab:a3:98:7b:97:b1:f7:8f:29:71:
         4d:2e:75:1b:48:41:da:f0:b5:0d:20:54:d6:77:a0:97:82:63:
         69:fd:09:cf:8a:f0:75:bb:09:9b:d9:f9:11:55:26:9a:61:32:
         be:7a:02:b0:7b:86:be:a2:c3:8b:22:2c:78:d1:35:76:bc:92:
         73:5c:f9:b9:e6:4c:15:0a:23:cc:e4:d2:d4:34:2e:49:40:15:
         3c:0f:60:7a:24:c6:a5:66:ef:96:cf:70:eb:3e:e7:f4:0d:7e:
         dc:d1:7c:a3:76:71:69:c1:9c:4f:47:30:35:21:b1:a2:af:1a:
         62:3c:2b:d9:8e:aa:2a:07:7b:d8:18:b3:5c:7b:e2:9d:a5:6f:
         fe:3c:89:ad
pkcs7-signedData
  • 1
    • MD5: nil
    • 1.3.6.1.4.1.311.2.1.4
      • #0
        • 1.3.6.1.4.1.311.2.1.15
          • :
            00 3c 00 3c 00 3c 00 4f  00 62 00 73 00 6f 00 6c  |.<.<.<.O.b.s.o.l|
            00 65 00 74 00 65 00 3e  00 3e 00 3e              |.e.t.e.>.>.>    |
        • MD5
          • f6 a3 e3 23 99 47 d8 81  1b ea db 26 df a5 26 10  |...#.G.....&..&.|
    • Certificates
      • Certificate #0
        • 2
          • 1
          • RSA-MD5: nil
          • Issuer
            • C: ZA
            • ST: Western Cape
            • L: Cape Town
            • O: Thawte Consulting cc
            • OU: Certification Services Division
            • CN: Thawte Premium Server CA
            • emailAddress: premium-server@thawte.com
          • 1996-08-01 00:00:00 UTC: 2020-12-31 23:59:59 UTC
          • Subject
            • C: ZA
            • ST: Western Cape
            • L: Cape Town
            • O: Thawte Consulting cc
            • OU: Certification Services Division
            • CN: Thawte Premium Server CA
            • emailAddress: premium-server@thawte.com
          • #5
            • rsaEncryption: nil
            • D2:36:36:6A:8B:D7:C2:5B:9E:DA:81:41:62:8F:38:EE:
              49:04:55:D6:D0:EF:1C:1B:95:16:47:EF:18:48:35:3A:
              52:F4:2B:6A:06:8F:3B:2F:EA:56:E3:AF:86:8D:9E:17:
              F7:9E:B4:65:75:02:4D:EF:CB:09:A2:21:51:D8:9B:D0:
              67:D0:BA:0D:92:06:14:73:D4:93:CB:97:2A:00:9C:5C:
              4E:0C:BC:FA:15:52:FC:F2:44:6E:DA:11:4A:6E:08:9F:
              2F:2D:E3:F9:AA:3A:86:73:B6:46:53:58:C8:89:05:BD:
              83:11:B8:73:3F:AA:07:8D:F4:42:4D:E7:40:9D:1C:37
              : 0x010001
          • basicConstraints: true, true
        • RSA-MD5:
          26 48 2c 16 c2 58 fa e8  16 74 0c aa aa 5f 54 3f  |&H,..X...t..._T?|
          f2 d7 c9 78 60 5e 5e 6e  37 63 22 77 36 7e b2 17  |...x`^^n7c"w6~..|
          c4 34 b9 f5 08 85 fc c9  01 38 ff 4d be f2 16 42  |.4.......8.M...B|
          43 e7 bb 5a 46 fb c1 c6  11 1f f1 4a b0 28 46 c9  |C..ZF......J.(F.|
          c3 c4 42 7d bc fa ab 59  6e d5 b7 51 88 11 e3 a4  |..B}...Yn..Q....|
          85 19 6b 82 4c a4 0c 12  ad e9 a4 ae 3f f1 c3 49  |..k.L.......?..I|
          65 9a 8c c5 c8 3e 25 b7  94 99 bb 92 32 71 07 f0  |e....>%.....2q..|
          86 5e ed 50 27 a6 0d a6  23 f9 bb cb a6 07 14 42  |.^.P'...#......B|
      • Certificate #1
        • 2
          • 0x1F9AE0
          • RSA-MD5: nil
          • Issuer
            • C: ZA
            • O: Thawte Consulting (Pty) Ltd.
            • CN: Thawte Code Signing CA
          • 2004-02-16 18:24:50 UTC: 2005-02-11 00:05:03 UTC
          • Subject
            • C: US
            • ST: Illinois
            • L: Schaumburg
            • O: InstallShield Software Corporation
            • OU: Research and Development
            • CN: InstallShield Software Corporation
          • #5
            • rsaEncryption: nil
            • AC:28:44:B3:A0:38:96:AA:17:84:70:24:FE:43:32:6B:
              20:35:F4:AD:15:50:56:F6:0D:52:BD:C9:D6:04:BF:9E:
              64:C5:3E:F4:8B:CE:C4:EE:89:F3:D8:21:1F:61:81:90:
              D4:A0:C4:34:E3:64:5E:12:36:56:06:E9:0E:8F:56:B9:
              99:76:9B:10:12:3B:BE:6A:91:58:20:90:CE:03:C0:BF:
              3D:A0:93:06:22:26:A8:21:F7:81:D6:4E:5D:94:71:10:
              46:97:8D:F3:65:42:97:DD:49:B2:C1:AA:9A:05:48:B8:
              EC:85:DE:CE:1C:C8:C2:50:4E:4A:7B:10:23:48:A4:35
              : 0x010001
          • #6
            • extendedKeyUsage
              • codeSigning: msCodeCom
            • nsCertType: 0x10
            • 2.5.29.4
              • msCodeCom: 0x80
            • subjectAltName: www.installshield.com
            • crlDistributionPoints: http://crl.thawte.com/ThawteCodeSigningCA.crl
            • basicConstraints
              • true
              • nil
        • RSA-MD5:
          c4 6e bb 62 c1 fe d3 c4  e5 b2 94 67 44 a8 cd 87  |.n.b.......gD...|
          7d 4d 6f eb 37 d1 89 8b  73 ae 06 41 0f eb 38 25  |}Mo.7...s..A..8%|
          66 04 db 5f 54 69 7d d1  1a a8 a5 e3 4d b7 92 9e  |f.._Ti}.....M...|
          24 7c 74 ba de 6f d4 5c  15 a9 3a 92 5f ed 22 20  |$|t..o.\..:._." |
          70 85 45 a9 85 41 c7 db  2f e7 03 91 9c 4f 2d 02  |p.E..A../....O-.|
          f6 9a a6 c2 3d 70 3e c0  e5 b5 e3 c0 b8 74 5a 74  |....=p>......tZt|
          2e bb 49 f0 4b c8 88 5f  45 b7 1d 59 d7 c1 aa 6e  |..I.K.._E..Y...n|
          4a 38 2d 4d cb 2b 5e 44  97 af 99 ab b4 2f aa 90  |J8-M.+^D...../..|
      • Certificate #2
        • 2
          • 0x0A
          • RSA-SHA1: nil
          • Issuer
            • C: ZA
            • ST: Western Cape
            • L: Cape Town
            • O: Thawte Consulting cc
            • OU: Certification Services Division
            • CN: Thawte Premium Server CA
            • emailAddress: premium-server@thawte.com
          • 2003-08-06 00:00:00 UTC: 2013-08-05 23:59:59 UTC
          • Subject
            • C: ZA
            • O: Thawte Consulting (Pty) Ltd.
            • CN: Thawte Code Signing CA
          • #5
            • rsaEncryption: nil
            • C6:B8:B9:27:60:AF:0B:E3:91:69:65:DB:7E:8D:ED:91:
              E6:AA:F1:BE:D5:ED:FE:6D:D4:2C:7F:D1:70:77:FB:26:
              99:57:B4:DD:3F:30:B8:DC:21:EA:68:8D:81:92:FC:2E:
              4B:91:35:84:20:F2:DA:4A:BA:B4:FC:E6:DA:88:F2:20:
              C5:21:92:09:47:95:A0:09:1C:A6:79:BE:B1:4C:1D:FC:
              F1:8A:6E:54:D2:69:A1:F1:4C:93:3A:41:FE:7D:D4:64:
              7B:63:45:F7:60:60:1D:31:1D:A4:E9:D3:0F:8B:FB:6E:
              26:24:B3:A8:FF:E5:E5:90:D4:B4:C2:DC:50:60:AE:59
              : 0x010001
          • X509v3 extensions
            • basicConstraints
              • true
              • true: 0
            • crlDistributionPoints: http://crl.thawte.com/ThawtePremiumServerCA.crl
            • extendedKeyUsage
              • clientAuth: codeSigning
            • keyUsage: true, 6
            • subjectAltName
              • CN: PrivateLabel2-144
        • RSA-SHA1:
          76 b2 9c ee 13 9f 1b f6  2d 34 92 94 45 73 34 dc  |v.......-4..Es4.|
          8e 6b 2e 5c fc 4c 7d 89  eb c3 68 f1 d7 99 0f 2e  |.k.\.L}...h.....|
          1d 17 c8 b5 16 8b be cd  8a 05 06 f2 19 49 3a 03  |.............I:.|
          5b 05 c9 20 8e 6d 52 e1  76 81 a0 c3 65 8a 22 67  |[.. .mR.v...e."g|
          e4 1c 53 53 37 46 bf bc  d7 2f eb 7b 9e d0 14 45  |..SS7F.../.{...E|
          6c 40 21 08 e2 5d 75 76  66 30 1e f4 df 82 8a 2f  |l@!..]uvf0...../|
          bd f3 a2 0c bf 1d db 9f  14 a2 9a 72 37 4d b0 77  |...........r7M.w|
          48 e8 4a 3f 09 ce 55 19  2c ef e6 07 24 e1 af ec  |H.J?..U.,...$...|
      • Certificate #3
        • 2
          • 47:BF:19:95:DF:8D:52:46:43:F7:DB:6D:48:0D:31:A4
          • RSA-SHA1: nil
          • Issuer
            • C: ZA
            • ST: Western Cape
            • L: Durbanville
            • O: Thawte
            • OU: Thawte Certification
            • CN: Thawte Timestamping CA
          • 2003-12-04 00:00:00 UTC: 2013-12-03 23:59:59 UTC
          • Subject
            • C: US
            • O: VeriSign, Inc.
            • CN: VeriSign Time Stamping Services CA
          • #5
            • rsaEncryption: nil
            • A9:CA:B2:A4:CC:CD:20:AF:0A:7D:89:AC:87:75:F0:B4:
              4E:F1:DF:C1:0F:BF:67:61:BD:A3:64:1C:DA:BB:F9:CA:
              33:AB:84:30:89:58:7E:8C:DB:6B:DD:36:9E:0F:BF:D1:
              EC:78:F2:77:A6:7E:6F:3C:BF:93:AF:0D:BA:68:F4:6C:
              94:CA:BD:52:2D:AB:48:3D:F5:B6:D5:5D:5F:1B:02:9F:
              FA:2F:6B:1E:A4:F7:A3:9A:A6:1A:C8:02:E1:7F:4C:52:
              E3:0E:60:EC:40:1C:7E:B9:0D:DE:3F:C7:B4:DF:87:BD:
              5F:7A:6A:31:2E:03:99:81:13:A8:47:20:CE:31:73:0D:
              57:2D:CD:78:34:33:95:12:99:12:B9:DE:68:2F:AA:E6:
              E3:C2:8A:8C:2A:C3:8B:21:87:66:BD:83:58:57:6F:75:
              BF:3C:AA:26:87:5D:CA:10:15:3C:9F:84:EA:54:C1:0A:
              6E:C4:FE:C5:4A:DD:B9:07:11:97:22:7C:DB:3E:27:D1:
              1E:78:EC:9F:31:C9:F1:E6:22:19:DB:C4:B3:47:43:9A:
              1A:5F:A0:1E:90:E4:5E:F5:EE:7C:F1:7D:AB:62:01:8F:
              F5:4D:0B:DE:D0:22:56:A8:95:CD:AE:88:76:AE:EE:BA:
              0D:F3:E4:4D:D9:A0:FB:68:A0:AE:14:3B:B3:87:C1:BB
              : 0x010001
          • X509v3 extensions
            • authorityInfoAccess
              • OCSP: http://ocsp.verisign.com
            • basicConstraints
              • true
              • true: 0
            • crlDistributionPoints: http://crl.verisign.com/ThawteTimestampingCA.crl
            • extendedKeyUsage: timeStamping
            • keyUsage: true, 6
            • subjectAltName
              • CN: TSA2048-1-53
        • RSA-SHA1:
          4a 6b f9 ea 58 c2 44 1c  31 89 79 99 2b 96 bf 82  |Jk..X.D.1.y.+...|
          ac 01 d6 1c 4c cd b0 8a  58 6e df 08 29 a3 5e c8  |....L...Xn..).^.|
          ca 93 13 e7 04 52 0d ef  47 27 2f 00 38 b0 e4 c9  |.....R..G'/.8...|
          93 4e 9a d4 22 62 15 f7  3f 37 21 4f 70 31 80 f1  |.N.."b..?7!Op1..|
          8b 38 87 b3 e8 e8 97 00  fe cf 55 96 4e 24 d2 a9  |.8........U.N$..|
          27 4e 7a ae b7 61 41 f3  2a ce e7 c9 d9 5e dd bb  |'Nz..aA.*....^..|
          2b 85 3e b5 9d b5 d9 e1  57 ff be b4 c5 7e f5 cf  |+.>.....W....~..|
          0c 9e f0 97 fe 2b d3 3b  52 1b 1b 38 27 f7 3f 4a  |.....+.;R..8'.?J|
      • Certificate #4
        • 2
          • 0D:E9:2B:F0:D4:D8:29:88:18:32:05:09:5E:9A:76:88
          • RSA-SHA1: nil
          • Issuer
            • C: US
            • O: VeriSign, Inc.
            • CN: VeriSign Time Stamping Services CA
          • 2003-12-04 00:00:00 UTC: 2008-12-03 23:59:59 UTC
          • Subject
            • C: US
            • O: VeriSign, Inc.
            • CN: VeriSign Time Stamping Services Signer
          • #5
            • rsaEncryption: nil
            • B2:50:28:48:DD:D3:68:7A:84:18:44:66:75:5D:7E:C4:
              B8:9F:63:26:FF:3D:43:9C:7C:11:38:10:25:55:73:D9:
              75:27:69:FD:4E:B9:20:5C:D3:0A:F9:A0:1B:2A:ED:55:
              56:21:61:D8:1E:DB:E4:BC:33:6B:C7:EF:DD:A3:37:65:
              8E:1B:93:0C:B6:53:1E:5C:7C:66:35:5F:05:8A:45:FE:
              76:4E:DF:53:80:A2:81:20:9D:AE:88:5C:A2:08:F7:E5:
              30:F9:EE:22:37:4C:42:0A:CE:DF:C6:1F:C4:D6:55:E9:
              81:3F:B5:52:A3:2C:AA:01:7A:F2:A2:AA:8D:35:FE:9F:
              E6:5D:6A:05:9F:3D:6B:E3:BF:96:C0:FE:CC:60:F9:40:
              E7:07:A0:44:EB:81:51:6E:A5:2A:F2:B6:8A:10:28:ED:
              8F:DC:06:A0:86:50:9A:7B:4A:08:0D:30:1D:CA:10:9E:
              6B:F7:E9:58:AE:04:A9:40:99:B2:28:E8:8F:16:AC:3C:
              E3:53:6F:4B:D3:35:9D:B5:6F:64:1D:B3:96:2C:BB:3D:
              E7:79:EB:6D:7A:F9:16:E6:26:AD:AF:EF:99:53:B7:40:
              2C:95:B8:79:AA:FE:D4:52:AB:29:74:7E:42:EC:39:1E:
              A2:6A:16:E6:59:BB:24:68:D8:00:80:43:10:87:80:6B
              : 0x010001
          • X509v3 extensions
            • authorityInfoAccess
              • OCSP: http://ocsp.verisign.com
            • basicConstraints
              • true
              • nil
            • crlDistributionPoints: http://crl.verisign.com/tss-ca.crl
            • extendedKeyUsage: true, timeStamping
            • keyUsage: true, 0xc0
            • subjectAltName
              • CN: TSA2048-1-54
        • RSA-SHA1:
          87 78 70 da 4e 52 01 20  5b e0 79 c9 82 30 c4 fd  |.xp.NR. [.y..0..|
          b9 19 96 bd 91 00 c3 bd  cd cd c6 f4 0e d8 ff f9  |................|
          4d c0 33 62 30 11 c5 f5  74 1b d4 92 de 5f 9c 20  |M.3b0...t...._. |
          13 b1 7c 45 be 50 cd 83  e7 80 17 83 a7 27 93 67  |..|E.P.......'.g|
          13 46 fb ca b8 98 41 03  cc 9b 51 5b 05 8b 7f a8  |.F....A...Q[....|
          6f f3 1b 50 1b 24 2e f2  69 8d 6c 22 f7 bb ca 16  |o..P.$..i.l"....|
          95 ed 0c 74 c0 68 77 d9  eb 99 62 87 c1 73 90 f8  |...t.hw...b..s..|
          89 74 7a 23 ab a3 98 7b  97 b1 f7 8f 29 71 4d 2e  |.tz#...{....)qM.|
          75 1b 48 41 da f0 b5 0d  20 54 d6 77 a0 97 82 63  |u.HA.... T.w...c|
          69 fd 09 cf 8a f0 75 bb  09 9b d9 f9 11 55 26 9a  |i.....u......U&.|
          61 32 be 7a 02 b0 7b 86  be a2 c3 8b 22 2c 78 d1  |a2.z..{.....",x.|
          35 76 bc 92 73 5c f9 b9  e6 4c 15 0a 23 cc e4 d2  |5v..s\...L..#...|
          d4 34 2e 49 40 15 3c 0f  60 7a 24 c6 a5 66 ef 96  |.4.I@.<.`z$..f..|
          cf 70 eb 3e e7 f4 0d 7e  dc d1 7c a3 76 71 69 c1  |.p.>...~..|.vqi.|
          9c 4f 47 30 35 21 b1 a2  af 1a 62 3c 2b d9 8e aa  |.OG05!....b<+...|
          2a 07 7b d8 18 b3 5c 7b  e2 9d a5 6f fe 3c 89 ad  |*.{...\{...o.<..|
    • 1
      • unnamed
        • #0
          • C: ZA
          • O: Thawte Consulting (Pty) Ltd.
          • CN: Thawte Code Signing CA
        • 0x1F9AE0
      • MD5: nil
      • #2
        • contentType: 1.3.6.1.4.1.311.2.1.4
        • 1.3.6.1.4.1.311.2.1.11: msCodeCom
        • messageDigest:
          70 a2 e2 d8 34 74 72 65  0d 74 51 1f 95 a6 96 df  |p...4tre.tQ.....|
        • 1.3.6.1.4.1.311.2.1.12: http://www.installshield.com
      • rsaEncryption:
        3d 96 d5 a3 d3 80 a7 b8  1d 18 51 26 36 3b a5 ef  |=.........Q&6;..|
        88 cb 62 0b 73 73 32 99  23 d4 19 00 c2 c3 4d cd  |..b.ss2.#.....M.|
        5d 6a b2 6d b0 d7 82 a6  42 3a f3 b8 35 8b 2a db  |]j.m....B:..5.*.|
        3d 89 44 bf ef ea f3 02  bf 06 98 15 c4 9e b8 88  |=.D.............|
        d6 ca 5a 88 03 9e 75 72  ac ca 75 b5 36 ce 58 06  |..Z...ur..u.6.X.|
        e7 37 5c 60 af 72 43 1d  f3 0b 35 a8 8b c5 da 98  |.7\`.rC...5.....|
        13 d1 2b 1e 85 3c b9 54  c4 13 df 66 39 d1 54 90  |..+..<.T...f9.T.|
        eb 64 46 e9 2c 08 15 f0  31 f7 b0 c2 33 a5 8c 61  |.dF.,...1...3..a|
      • countersignature
        • 1
          • unnamed
            • #0
              • C: US
              • O: VeriSign, Inc.
              • CN: VeriSign Time Stamping Services CA
            • 0D:E9:2B:F0:D4:D8:29:88:18:32:05:09:5E:9A:76:88
          • MD5: nil
          • #2
            • contentType: pkcs7-data
            • signingTime: 2004-12-16 22:35:06 UTC
            • messageDigest:
              6c 6c 96 ea 30 1d 77 db  f3 fc 1e 57 b0 95 5f c4  |ll..0.w....W.._.|
          • rsaEncryption:
            66 5c 18 8d 4e e3 f6 6d  d0 6a c0 65 de a9 0c 25  |f\..N..m.j.e...%|
            45 84 bd 22 93 de 43 61  03 7f 46 6d 82 3f d9 9e  |E.."..Ca..Fm.?..|
            d3 3a 6f 3b 81 76 43 c7  d5 0d 34 2b 80 fa a9 47  |.:o;.vC...4+...G|
            d3 6d 88 62 3d d6 70 d7  0e 68 1f df b8 d8 cc a0  |.m.b=.p..h......|
            15 8e 22 36 7e a5 d4 3d  8b 59 8a 3f 07 1e 1f 2c  |.."6~..=.Y.?...,|
            f1 f4 8b 8c a8 b2 c0 77  d8 5c 23 0c 1a a0 65 29  |.......w.\#...e)|
            28 c4 84 4d 14 e4 f1 66  da f5 73 7c 28 9d 89 e2  |(..M...f..s|(...|
            a8 69 50 f9 1e ff f5 48  d8 4a 00 91 ec 1d 30 d5  |.iP....H.J....0.|
            9a 28 e5 e8 f4 91 ea 29  f9 fe 3c 91 48 cb ab 16  |.(.....)..<.H...|
            52 a1 c5 4f 25 87 db e5  38 f4 15 bc e5 ec 55 5c  |R..O%...8.....U\|
            5e a3 80 8e 17 7f 2c 51  19 a2 dd a0 e6 1b 04 c0  |^.....,Q........|
            84 ac 44 1c 9e 19 56 c5  1e 48 15 c3 5b 02 f3 5f  |..D...V..H..[.._|
            75 45 8b c6 17 f5 2f 7c  7e c8 d5 1a 35 73 4b 20  |uE..../|~...5sK |
            2d dc f1 d5 f0 e2 25 38  9a d7 7d 9c 54 4e 1e 8b  |-.....%8..}.TN..|
            02 d2 b3 37 c3 50 e3 02  74 b1 3c 9b c3 ba 66 86  |...7.P..t.<...f.|
            4c 36 de 8b 6f 1e dc 2f  3b 66 e2 e0 45 84 9e 6f  |L6..o../;f..E..o|
offsetsizetypecomment
0393216EXE12/16/2004 22:37:19#
15c115HTM#
3dce83584OLE#
3e8e83584OLE#
3f4e83584OLE#
400e83584OLE#
600005584PKCS7Authenticode Signature#
Scanning the drive for archives:
1 file, 398800 bytes (390 KiB)


--
Type = PE
Physical Size = 398800
CPU = x86
Characteristics = Executable 32-bit NoRelocs NoLineNums NoLocalSyms
Created = 2004-12-16 22:37:19
Headers Size = 4096
Checksum = 462694
Image Size = 401408
Section Alignment = 4096
File Alignment = 4096
Code Size = 196608
Initialized Data Size = 200704
Uninitialized Data Size = 0
Linker Version = 6.0
OS Version = 4.0
Image Version = 0.0
Subsystem Version = 4.0
Subsystem = Windows GUI
Stack Reserve = 1048576
Stack Commit = 4096
Heap Reserve = 1048576
Heap Commit = 4096
Image Base = 4194304
----
Path = .rsrc/1033/CERT/DOTNETREDISTSP2.EXE
Size = 3072
Packed Size = 3072
--
Path = .rsrc/1033/CERT/DOTNETREDISTSP2.EXE
Open WARNING: Can not open the file as [PE] archive
Type = Compound
Physical Size = 3072
Extension = compound
Cluster Size = 512
Sector Size = 64

   Date      Time    Attr         Size   Compressed  Name
------------------- ----- ------------ ------------  ------------------------
                    .....          761          768  FirstStream
------------------- ----- ------------ ------------  ------------------------
                                   761          768  1 files

Warnings: 1
offset:( 0x )size:( 0x )hotkeys:-=[]<>, offset/size fields are also editable

everything is OK