MZ Header

DOS stub

00000000: ba 10 00 0e 1f b4 09 cd  21 b8 01 4c cd 21 90 90  |........!..L.!..|
00000010: 54 68 69 73 20 70 72 6f  67 72 61 6d 20 6d 75 73  |This program mus|
00000020: 74 20 62 65 20 72 75 6e  20 75 6e 64 65 72 20 57  |t be run under W|
00000030: 69 6e 33 32 0d 0a 24 37  00 00 00 00 00 00 00 00  |in32..$7........|
00000040: 00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00  |................|
*
000000c0:

PE Header

Packer / Compiler

Sections

Data Directory

TLS

StringTable 000004b0

VS_FIXEDFILEINFO

Signers (1)

issuer: /C=US/O=thawte, Inc./CN=thawte SHA256 Code Signing CA - G2
serial: 2E0874878F03F5583531824C21224352

Certificates (4)

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            7e:93:eb:fb:7c:c6:4e:59:ea:4b:9a:77:d4:06:fc:3b
    Signature Algorithm: sha1WithRSAEncryption
        Issuer: C=ZA, ST=Western Cape, L=Durbanville, O=Thawte, OU=Thawte Certification, CN=Thawte Timestamping CA
        Validity
            Not Before: Dec 21 00:00:00 2012 GMT
            Not After : Dec 30 23:59:59 2020 GMT
        Subject: C=US, O=Symantec Corporation, CN=Symantec Time Stamping Services CA - G2
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                Public-Key: (2048 bit)
                Modulus:
                    00:b1:ac:b3:49:54:4b:97:1c:12:0a:d8:25:79:91:
                    22:57:2a:6f:dc:b8:26:c4:43:73:6b:c2:bf:2e:50:
                    5a:fb:14:c2:76:8e:43:01:25:43:b4:a1:e2:45:f4:
                    e8:b7:7b:c3:74:cc:22:d7:b4:94:00:02:f7:4d:ed:
                    bf:b4:b7:44:24:6b:cd:5f:45:3b:d1:44:ce:43:12:
                    73:17:82:8b:69:b4:2b:cb:99:1e:ac:72:1b:26:4d:
                    71:1f:b1:31:dd:fb:51:61:02:53:a6:aa:f5:49:2c:
                    05:78:45:a5:2f:89:ce:e7:99:e7:fe:8c:e2:57:3f:
                    3d:c6:92:dc:4a:f8:7b:33:e4:79:0a:fb:f0:75:88:
                    41:9c:ff:c5:03:51:99:aa:d7:6c:9f:93:69:87:65:
                    29:83:85:c2:60:14:c4:c8:c9:3b:14:da:c0:81:f0:
                    1f:0d:74:de:92:22:ab:ca:f7:fb:74:7c:27:e6:f7:
                    4a:1b:7f:a7:c3:9e:2d:ae:8a:ea:a6:e6:aa:27:16:
                    7d:61:f7:98:71:11:bc:e2:50:a1:4b:e5:5d:fa:e5:
                    0e:a7:2c:9f:aa:65:20:d3:d8:96:e8:c8:7c:a5:4e:
                    48:44:ff:19:e2:44:07:92:0b:d7:68:84:80:5d:6a:
                    78:64:45:cd:60:46:7e:54:c1:13:7c:c5:79:f1:c9:
                    c1:71
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Subject Key Identifier: 
                5F:9A:F5:6E:5C:CC:CC:74:9A:D4:DD:7D:EF:3F:DB:EC:4C:80:2E:DD
            Authority Information Access: 
                OCSP - URI:http://ocsp.thawte.com

            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.thawte.com/ThawteTimestampingCA.crl

            X509v3 Extended Key Usage: 
                Time Stamping
            X509v3 Key Usage: critical
                Certificate Sign, CRL Sign
            X509v3 Subject Alternative Name: 
                DirName:/CN=TimeStamp-2048-1
    Signature Algorithm: sha1WithRSAEncryption
         03:09:9b:8f:79:ef:7f:59:30:aa:ef:68:b5:fa:e3:09:1d:bb:
         4f:82:06:5d:37:5f:a6:52:9f:16:8d:ea:1c:92:09:44:6e:f5:
         6d:eb:58:7c:30:e8:f9:69:8d:23:73:0b:12:6f:47:a9:ae:39:
         11:f8:2a:b1:9b:b0:1a:c3:8e:eb:59:96:00:ad:ce:0c:4d:b2:
         d0:31:a6:08:5c:2a:7a:fc:e2:7a:1d:57:4c:a8:65:18:e9:79:
         40:62:25:96:6e:c7:c7:37:6a:83:21:08:8e:41:ea:dd:d9:57:
         3f:1d:77:49:87:2a:16:06:5e:a6:38:6a:22:12:a3:51:19:83:
         7e:b6

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            0e:cf:f4:38:c8:fe:bf:35:6e:04:d8:6a:98:1b:1a:50
    Signature Algorithm: sha1WithRSAEncryption
        Issuer: C=US, O=Symantec Corporation, CN=Symantec Time Stamping Services CA - G2
        Validity
            Not Before: Oct 18 00:00:00 2012 GMT
            Not After : Dec 29 23:59:59 2020 GMT
        Subject: C=US, O=Symantec Corporation, CN=Symantec Time Stamping Services Signer - G4
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                Public-Key: (2048 bit)
                Modulus:
                    00:a2:63:0b:39:44:b8:bb:23:a7:44:49:bb:0e:ff:
                    a1:f0:61:0a:53:93:b0:98:db:ad:2c:0f:4a:c5:6e:
                    ff:86:3c:53:55:0f:15:ce:04:3f:2b:fd:a9:96:96:
                    d9:be:61:79:0b:5b:c9:4c:86:76:e5:e0:43:4b:22:
                    95:ee:c2:2b:43:c1:9f:d8:68:b4:8e:40:4f:ee:85:
                    38:b9:11:c5:23:f2:64:58:f0:15:32:6f:4e:57:a1:
                    ae:88:a4:02:d7:2a:1e:cd:4b:e1:dd:63:d5:17:89:
                    32:5b:b0:5e:99:5a:a8:9d:28:50:0e:17:ee:96:db:
                    61:3b:45:51:1d:cf:12:56:0b:92:47:fc:ab:ae:f6:
                    66:3d:47:ac:70:72:e7:92:e7:5f:cd:10:b9:c4:83:
                    64:94:19:bd:25:80:e1:e8:d2:22:a5:d0:ba:02:7a:
                    a1:77:93:5b:65:c3:ee:17:74:bc:41:86:2a:dc:08:
                    4c:8c:92:8c:91:2d:9e:77:44:1f:68:d6:a8:74:77:
                    db:0e:5b:32:8b:56:8b:33:bd:d9:63:c8:49:9d:3a:
                    c5:c5:ea:33:0b:d2:f1:a3:1b:f4:8b:be:d9:b3:57:
                    8b:3b:de:04:a7:7a:22:b2:24:ae:2e:c7:70:c5:be:
                    4e:83:26:08:fb:0b:bd:a9:4f:99:08:e1:10:28:72:
                    aa:cd
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Basic Constraints: critical
                CA:FALSE
            X509v3 Extended Key Usage: critical
                Time Stamping
            X509v3 Key Usage: critical
                Digital Signature
            Authority Information Access: 
                OCSP - URI:http://ts-ocsp.ws.symantec.com
                CA Issuers - URI:http://ts-aia.ws.symantec.com/tss-ca-g2.cer

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://ts-crl.ws.symantec.com/tss-ca-g2.crl

            X509v3 Subject Alternative Name: 
                DirName:/CN=TimeStamp-2048-2
            X509v3 Subject Key Identifier: 
                46:C6:69:A3:0E:4A:14:1E:D5:4C:DA:52:63:17:3F:5E:36:BC:0D:E6
            X509v3 Authority Key Identifier: 
                keyid:5F:9A:F5:6E:5C:CC:CC:74:9A:D4:DD:7D:EF:3F:DB:EC:4C:80:2E:DD

    Signature Algorithm: sha1WithRSAEncryption
         78:3b:b4:91:2a:00:4c:f0:8f:62:30:37:78:a3:84:27:07:6f:
         18:b2:de:25:dc:a0:d4:94:03:aa:86:4e:25:9f:9a:40:03:1c:
         dd:ce:e3:79:cb:21:68:06:da:b6:32:b4:6d:bf:f4:2c:26:63:
         33:e4:49:64:6d:0d:e6:c3:67:0e:f7:05:a4:35:6c:7c:89:16:
         c6:e9:b2:df:b2:e9:dd:20:c6:71:0f:cd:95:74:dc:b6:5c:de:
         bd:37:1f:43:78:e6:78:b5:cd:28:04:20:a3:aa:f1:4b:c4:88:
         29:91:0e:80:d1:11:fc:dd:5c:76:6e:4f:5e:0e:45:46:41:6e:
         0d:b0:ea:38:9a:b1:3a:da:09:71:10:fc:1c:79:b4:80:7b:ac:
         69:f4:fd:9c:b6:0c:16:2b:f1:7f:5b:09:3d:9b:5b:e2:16:ca:
         13:81:6d:00:2e:38:0d:a8:29:8f:2c:e1:b2:f4:5a:a9:01:af:
         15:9c:2c:2f:49:1b:db:22:bb:c3:fe:78:94:51:c3:86:b1:82:
         88:5d:f0:3d:b4:51:a1:79:33:2b:2e:7b:b9:dc:20:09:13:71:
         eb:6a:19:5b:cf:e8:a5:30:57:2c:89:49:3f:b9:cf:7f:c9:bf:
         3e:22:68:63:53:9a:bd:69:74:ac:c5:1d:3c:7f:92:e0:c3:bc:
         1c:d8:04:75

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            2e:08:74:87:8f:03:f5:58:35:31:82:4c:21:22:43:52
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: C=US, O=thawte, Inc., CN=thawte SHA256 Code Signing CA - G2
        Validity
            Not Before: Jul 25 00:00:00 2019 GMT
            Not After : Jul 24 23:59:59 2022 GMT
        Subject: C=US, ST=Minnesota, L=Edina, O=Sharpened Productions, Inc, CN=Sharpened Productions, Inc
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                Public-Key: (2048 bit)
                Modulus:
                    00:ce:ba:ab:13:43:6a:d6:03:25:01:ed:ad:c4:bc:
                    85:2b:01:43:86:97:3c:a6:da:65:dc:b5:22:4c:86:
                    cc:ee:89:9e:81:1f:11:50:f4:0a:13:3d:47:02:5a:
                    65:91:08:25:41:57:cb:80:80:64:bb:65:7b:cf:f2:
                    9c:54:09:82:6f:a5:cc:f0:d3:b8:92:de:47:49:0d:
                    d8:a4:0c:d8:ed:36:39:a6:cc:98:ff:b8:28:42:eb:
                    15:79:3d:35:ca:42:cf:15:f3:bc:6a:bb:10:59:1b:
                    30:b2:fb:1a:12:58:e9:28:c7:e8:6f:d8:0a:8c:de:
                    29:c3:a8:48:35:7b:47:69:aa:86:8a:b5:e9:91:da:
                    05:66:42:6a:f4:49:10:33:33:29:0e:4f:71:0c:98:
                    46:f0:83:54:08:02:dd:d5:20:fc:90:90:ec:dc:b6:
                    35:1e:15:9a:1a:9c:b0:86:92:35:e9:39:37:2c:50:
                    1b:35:39:b4:d6:de:b2:4c:24:ec:b3:09:ae:87:6a:
                    ec:77:3a:37:69:ab:93:77:b1:87:0a:bb:1e:67:85:
                    07:3a:a0:a5:6e:95:1e:e2:c2:04:8c:f7:6c:81:b8:
                    e8:bc:0b:e5:00:e0:89:b1:62:5f:97:01:e3:8b:11:
                    a0:7a:ce:07:19:40:47:ca:eb:0c:18:f4:c3:c0:da:
                    b1:0d
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Basic Constraints: 
                CA:FALSE
            X509v3 Authority Key Identifier: 
                keyid:70:F6:A8:73:3A:50:F2:5B:0A:70:CD:11:C1:68:0A:76:F0:3D:A5:56

            X509v3 Subject Key Identifier: 
                15:E3:DE:84:65:DC:21:3E:B3:FE:1B:57:B2:87:47:BE:6C:51:E0:1B
            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://to.symcb.com/to.crl

            X509v3 Key Usage: critical
                Digital Signature
            X509v3 Extended Key Usage: 
                Code Signing
            X509v3 Certificate Policies: 
                Policy: 2.23.140.1.4.1
                  CPS: https://www.thawte.com/cps
                  User Notice:
                    Explicit Text: https://www.thawte.com/repository

            Authority Information Access: 
                OCSP - URI:http://to.symcd.com
                CA Issuers - URI:http://to.symcb.com/to.crt

    Signature Algorithm: sha256WithRSAEncryption
         9b:fc:41:56:5e:5c:be:90:69:32:d7:a1:ac:8d:a6:50:03:0e:
         94:cf:3b:9d:99:36:4c:b7:60:47:4c:4a:55:5e:e8:9f:79:ac:
         e6:87:9b:d6:c6:15:b9:41:e1:1d:c6:7a:50:a0:dc:88:5c:98:
         56:2e:72:db:b5:f1:c0:a6:54:06:f2:d2:52:81:23:61:24:c2:
         46:75:19:9c:00:b8:7f:25:f4:c7:5f:91:ab:eb:84:1e:b2:10:
         56:12:4a:cf:15:5a:ba:72:be:b9:55:0c:7e:f3:3f:1f:cf:bc:
         a0:56:9c:b9:8c:83:f7:31:7e:15:4e:8b:6f:2d:44:ee:af:53:
         e5:3d:a8:91:fe:47:1c:20:42:fb:d2:cb:fc:33:be:c9:42:ee:
         f0:03:81:a3:dc:22:f9:aa:9a:e5:b8:8b:f1:6a:10:24:33:cb:
         79:3a:ee:e6:ce:1f:d4:83:50:77:53:f6:6d:66:79:81:e5:b4:
         7b:1c:b4:5b:ce:24:b3:d1:2f:ea:c2:26:6b:59:eb:05:dc:db:
         65:1c:8b:19:03:65:af:f0:d8:93:a3:60:15:b1:b0:d6:58:d0:
         c9:b3:a2:22:a1:04:ea:37:cf:33:56:1a:49:e2:e5:ff:fa:ef:
         74:2a:27:9a:96:45:c2:bc:80:b1:71:ee:9f:8d:38:9d:4a:74:
         be:1b:ff:38

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            0b:f3:cc:63:cf:04:30:4d:47:c3:b5:87:04:9f:a8:07
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: C=US, O=thawte, Inc., OU=Certification Services Division, OU=(c) 2008 thawte, Inc. - For authorized use only, CN=thawte Primary Root CA - G3
        Validity
            Not Before: Jul 22 00:00:00 2014 GMT
            Not After : Jul 21 23:59:59 2024 GMT
        Subject: C=US, O=thawte, Inc., CN=thawte SHA256 Code Signing CA - G2
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                Public-Key: (2048 bit)
                Modulus:
                    00:d9:56:af:ca:ad:69:35:de:3b:06:56:01:75:35:
                    97:d2:53:7c:49:b6:fe:0c:18:f0:b6:3c:43:6f:72:
                    1b:9c:48:34:f0:ac:c9:b2:d9:97:7d:0c:13:b9:ce:
                    85:0c:2e:b9:f6:96:cc:49:e6:23:a0:27:58:32:18:
                    41:59:6d:87:be:82:35:64:86:e8:b1:3a:e4:8f:74:
                    e4:ce:36:92:ae:bc:b5:76:25:ea:f9:24:66:b3:78:
                    ee:83:a1:a3:fe:d1:03:55:55:10:ae:21:e8:b1:95:
                    94:02:b5:2c:d9:c5:f4:08:23:00:fe:09:8d:2b:17:
                    08:29:8c:0b:16:0e:58:1a:d9:0c:3a:e4:de:99:6d:
                    22:ff:bd:1b:94:2a:34:cb:19:7a:a6:2f:e3:2b:d0:
                    e6:79:98:4a:d8:eb:4b:98:64:bb:b7:e1:10:c6:53:
                    d9:ab:84:75:63:0c:69:b7:f0:c9:1b:a5:f7:55:91:
                    21:62:5a:67:81:3f:0f:79:16:57:d0:ed:ef:6c:1a:
                    35:5b:6d:41:6e:6d:98:3a:fd:4c:99:43:cd:ea:b1:
                    29:69:99:35:06:e7:6c:f6:06:54:e3:56:79:d2:f5:
                    6a:cb:c9:66:4a:ee:6b:bf:5f:a7:e9:8f:fb:f7:ee:
                    72:db:d6:fb:21:f5:2d:63:e0:e8:3b:8d:47:17:11:
                    d8:55
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            Authority Information Access: 
                OCSP - URI:http://t.symcd.com

            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            X509v3 Certificate Policies: 
                Policy: 2.16.840.1.113733.1.7.48.2
                  CPS: https://www.thawte.com/cps
                  User Notice:
                    Explicit Text: https://www.thawte.com/repository

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://t.symcb.com/ThawtePCA-G3.crl

            X509v3 Extended Key Usage: 
                Code Signing
            X509v3 Key Usage: critical
                Certificate Sign, CRL Sign
            X509v3 Subject Alternative Name: 
                DirName:/CN=SymantecPKI-1-725
            X509v3 Subject Key Identifier: 
                70:F6:A8:73:3A:50:F2:5B:0A:70:CD:11:C1:68:0A:76:F0:3D:A5:56
            X509v3 Authority Key Identifier: 
                keyid:AD:6C:AA:94:60:9C:ED:E4:FF:FA:3E:0A:74:2B:63:03:F7:B6:59:BF

    Signature Algorithm: sha256WithRSAEncryption
         62:58:66:5d:36:2f:ec:7f:f5:c7:ab:08:35:83:0a:13:54:bb:
         70:8b:e1:7a:28:80:56:db:ac:20:c1:2a:1b:70:10:76:fd:08:
         5f:09:a5:8b:a6:60:1f:f4:ea:ed:11:36:a7:d5:a0:e1:55:d2:
         15:27:79:d1:ba:0e:69:6c:87:c5:e7:09:5a:08:86:bf:cc:6b:
         1c:8a:2c:57:6e:52:cd:d1:98:52:73:28:f5:35:e3:25:c0:ab:
         6b:5c:28:35:b9:75:43:0c:55:8d:de:47:cb:5f:94:3d:19:71:
         57:33:34:dd:73:c5:58:d2:eb:ae:cc:e5:c2:fa:90:99:fd:03:
         f1:8b:31:7b:50:81:e3:2b:77:68:01:7b:27:79:cf:05:32:21:
         ad:84:40:f2:f5:19:03:c6:04:0a:ae:51:d5:c8:35:22:39:c2:
         27:7c:c1:8a:55:4b:06:21:cf:60:61:2a:28:c8:f6:82:ec:4e:
         c7:01:bc:aa:de:0b:12:c6:ae:3a:f3:82:46:27:b3:18:b6:e9:
         9d:9e:4d:4a:02:77:ab:29:96:77:14:e5:d8:c2:1e:e6:4b:60:
         d8:b8:b2:83:24:c0:57:73:5b:12:c9:d2:c0:56:27:0b:93:71:
         53:e8:8e:55:52:37:b1:c7:5a:2b:4d:ad:68:54:0a:8e:ce:ac:
         51:33:1c:8c

Cannot convert into OpenSSL::BN

offsetsizetypecomment
0140800EXE07/09/2014 07:58:13#
16a948278PNG(256 x 256)#
22600552344BINoverlay data past EOF#
offset:( 0x )size:( 0x )hotkeys:-=[]<>, offset/size fields are also editable

[?] ignoring invalid PEdump::BITMAPINFOHEADER