MZ Header

DOS stub

00000000: ba 10 00 0e 1f b4 09 cd  21 b8 01 4c cd 21 90 90  |........!..L.!..|
00000010: 54 68 69 73 20 70 72 6f  67 72 61 6d 20 6d 75 73  |This program mus|
00000020: 74 20 62 65 20 72 75 6e  20 75 6e 64 65 72 20 57  |t be run under W|
00000030: 69 6e 33 32 0d 0a 24 37  00 00 00 00 00 00 00 00  |in32..$7........|
00000040: 00 00 00 00 00 00 00 00  00 00 00 00 00 00 00 00  |................|
*
000000c0:

PE Header

Packer / Compiler

Sections

Data Directory

TLS

StringTable 080403A8

VS_FIXEDFILEINFO

Signers (1)

issuer: /C=US/O=VeriSign, Inc./OU=VeriSign Trust Network/OU=Terms of use at https://www.verisign.com/rpa (c)04/CN=VeriSign Class 3 Code Signing 2004 CA
serial: 77A64759F12766E363D779998C71BDC9

Certificates (4)

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            38:25:d7:fa:f8:61:af:9e:f4:90:e7:26:b5:d6:5a:d5
    Signature Algorithm: sha1WithRSAEncryption
        Issuer: C=US, O=VeriSign, Inc., CN=VeriSign Time Stamping Services CA
        Validity
            Not Before: Jun 15 00:00:00 2007 GMT
            Not After : Jun 14 23:59:59 2012 GMT
        Subject: C=US, O=VeriSign, Inc., CN=VeriSign Time Stamping Services Signer - G2
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                Public-Key: (1024 bit)
                Modulus:
                    00:c4:b5:f2:52:15:bc:88:86:60:29:16:4a:5b:2f:
                    4b:91:6b:87:91:f3:35:54:58:35:ea:d1:36:5e:62:
                    4d:52:51:34:71:c2:7b:66:1d:89:c8:dd:2a:c4:6a:
                    0a:f6:37:d9:98:74:91:f6:92:ae:b0:b5:76:96:f1:
                    a9:4a:63:45:47:2e:6b:0b:92:4e:4b:2b:8c:ee:58:
                    4a:8b:d4:07:e4:1a:2c:f8:82:aa:58:d9:cd:42:f3:
                    2d:c0:75:de:8d:ab:c7:8e:1d:9a:6c:4c:08:95:1e:
                    de:db:ef:67:e1:72:c2:49:c2:9e:60:3c:e1:e2:be:
                    16:a3:63:78:69:14:7b:ad:2d
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            Authority Information Access: 
                OCSP - URI:http://ocsp.verisign.com

            X509v3 Basic Constraints: critical
                CA:FALSE
            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.verisign.com/tss-ca.crl

            X509v3 Extended Key Usage: critical
                Time Stamping
            X509v3 Key Usage: critical
                Digital Signature, Non Repudiation
            X509v3 Subject Alternative Name: 
                DirName:/CN=TSA1-2
    Signature Algorithm: sha1WithRSAEncryption
         50:c5:4b:c8:24:80:df:e4:0d:24:c2:de:1a:b1:a1:02:a1:a6:
         82:2d:0c:83:15:81:37:0a:82:0e:2c:b0:5a:17:61:b5:d8:05:
         fe:88:db:f1:91:91:b3:56:1a:40:a6:eb:92:be:38:39:b0:75:
         36:74:3a:98:4f:e4:37:ba:99:89:ca:95:42:1d:b0:b9:c7:a0:
         8d:57:e0:fa:d5:64:04:42:35:4e:01:d1:33:a2:17:c8:4d:aa:
         27:c7:f2:e1:86:4c:02:38:4d:83:78:c6:fc:53:e0:eb:e0:06:
         87:dd:a4:96:9e:5e:0c:98:e2:a5:be:bf:82:85:c3:60:e1:df:
         ad:28:d8:c7:a5:4b:64:da:c7:1b:5b:bd:ac:39:08:d5:38:22:
         a1:33:8b:2f:8a:9a:eb:bc:07:21:3f:44:41:09:07:b5:65:1c:
         24:bc:48:d3:44:80:eb:a1:cf:c9:02:b4:14:cf:54:c7:16:a3:
         80:5c:f9:79:3e:5d:72:7d:88:17:9e:2c:43:a2:ca:53:ce:7d:
         3d:f6:2a:3a:b8:4f:94:00:a5:6d:0a:83:5d:f9:5e:53:f4:18:
         b3:57:0f:70:c3:fb:f5:ad:95:a0:0e:17:de:c4:16:80:60:c9:
         0f:2b:6e:86:04:f1:eb:f4:78:27:d1:05:c5:ee:34:5b:5e:b9:
         49:32:f2:33

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            47:bf:19:95:df:8d:52:46:43:f7:db:6d:48:0d:31:a4
    Signature Algorithm: sha1WithRSAEncryption
        Issuer: C=ZA, ST=Western Cape, L=Durbanville, O=Thawte, OU=Thawte Certification, CN=Thawte Timestamping CA
        Validity
            Not Before: Dec  4 00:00:00 2003 GMT
            Not After : Dec  3 23:59:59 2013 GMT
        Subject: C=US, O=VeriSign, Inc., CN=VeriSign Time Stamping Services CA
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                Public-Key: (2048 bit)
                Modulus:
                    00:a9:ca:b2:a4:cc:cd:20:af:0a:7d:89:ac:87:75:
                    f0:b4:4e:f1:df:c1:0f:bf:67:61:bd:a3:64:1c:da:
                    bb:f9:ca:33:ab:84:30:89:58:7e:8c:db:6b:dd:36:
                    9e:0f:bf:d1:ec:78:f2:77:a6:7e:6f:3c:bf:93:af:
                    0d:ba:68:f4:6c:94:ca:bd:52:2d:ab:48:3d:f5:b6:
                    d5:5d:5f:1b:02:9f:fa:2f:6b:1e:a4:f7:a3:9a:a6:
                    1a:c8:02:e1:7f:4c:52:e3:0e:60:ec:40:1c:7e:b9:
                    0d:de:3f:c7:b4:df:87:bd:5f:7a:6a:31:2e:03:99:
                    81:13:a8:47:20:ce:31:73:0d:57:2d:cd:78:34:33:
                    95:12:99:12:b9:de:68:2f:aa:e6:e3:c2:8a:8c:2a:
                    c3:8b:21:87:66:bd:83:58:57:6f:75:bf:3c:aa:26:
                    87:5d:ca:10:15:3c:9f:84:ea:54:c1:0a:6e:c4:fe:
                    c5:4a:dd:b9:07:11:97:22:7c:db:3e:27:d1:1e:78:
                    ec:9f:31:c9:f1:e6:22:19:db:c4:b3:47:43:9a:1a:
                    5f:a0:1e:90:e4:5e:f5:ee:7c:f1:7d:ab:62:01:8f:
                    f5:4d:0b:de:d0:22:56:a8:95:cd:ae:88:76:ae:ee:
                    ba:0d:f3:e4:4d:d9:a0:fb:68:a0:ae:14:3b:b3:87:
                    c1:bb
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            Authority Information Access: 
                OCSP - URI:http://ocsp.verisign.com

            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.verisign.com/ThawteTimestampingCA.crl

            X509v3 Extended Key Usage: 
                Time Stamping
            X509v3 Key Usage: critical
                Certificate Sign, CRL Sign
            X509v3 Subject Alternative Name: 
                DirName:/CN=TSA2048-1-53
    Signature Algorithm: sha1WithRSAEncryption
         4a:6b:f9:ea:58:c2:44:1c:31:89:79:99:2b:96:bf:82:ac:01:
         d6:1c:4c:cd:b0:8a:58:6e:df:08:29:a3:5e:c8:ca:93:13:e7:
         04:52:0d:ef:47:27:2f:00:38:b0:e4:c9:93:4e:9a:d4:22:62:
         15:f7:3f:37:21:4f:70:31:80:f1:8b:38:87:b3:e8:e8:97:00:
         fe:cf:55:96:4e:24:d2:a9:27:4e:7a:ae:b7:61:41:f3:2a:ce:
         e7:c9:d9:5e:dd:bb:2b:85:3e:b5:9d:b5:d9:e1:57:ff:be:b4:
         c5:7e:f5:cf:0c:9e:f0:97:fe:2b:d3:3b:52:1b:1b:38:27:f7:
         3f:4a

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            41:91:a1:5a:39:78:df:cf:49:65:66:38:1d:4c:75:c2
    Signature Algorithm: sha1WithRSAEncryption
        Issuer: C=US, O=VeriSign, Inc., OU=Class 3 Public Primary Certification Authority
        Validity
            Not Before: Jul 16 00:00:00 2004 GMT
            Not After : Jul 15 23:59:59 2014 GMT
        Subject: C=US, O=VeriSign, Inc., OU=VeriSign Trust Network, OU=Terms of use at https://www.verisign.com/rpa (c)04, CN=VeriSign Class 3 Code Signing 2004 CA
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                Public-Key: (2048 bit)
                Modulus:
                    00:be:bc:ee:bc:7e:ef:83:eb:e0:37:4f:fb:03:10:
                    38:be:08:d2:8c:7d:9d:fa:92:7f:19:0c:c2:6b:ee:
                    42:52:8c:de:d3:1c:48:13:25:ea:c1:63:7a:f9:51:
                    65:ee:d3:aa:3b:f5:f0:94:9c:2b:fb:f2:66:d4:24:
                    da:f7:f5:9f:6e:19:39:36:bc:d0:a3:76:08:1e:22:
                    27:24:6c:38:91:27:e2:84:49:ae:1b:8a:a1:fd:25:
                    82:2c:10:30:e8:71:ab:28:e8:77:4a:51:f1:ec:cd:
                    f8:f0:54:d4:6f:c0:e3:6d:0a:8f:d9:d8:64:8d:63:
                    b2:2d:4e:27:f6:85:0e:fe:6d:e3:29:99:e2:85:47:
                    7c:2d:86:7f:e8:57:8f:ad:67:c2:33:32:91:13:20:
                    fc:a9:23:14:9a:6d:c2:84:4b:76:68:04:d5:71:2c:
                    5d:21:fa:88:0d:26:fd:1f:2d:91:2b:e7:01:55:4d:
                    f2:6d:35:28:82:df:d9:6b:5c:b6:d6:d9:aa:81:fd:
                    5f:cd:83:ba:63:9d:d0:22:fc:a9:3b:42:69:b2:8e:
                    3a:b5:bc:b4:9e:0f:5e:c4:ea:2c:82:8b:28:fd:53:
                    08:96:dd:b5:01:20:d1:f9:a5:18:e7:c0:ee:51:70:
                    37:e1:b6:05:48:52:48:6f:38:ea:c3:e8:6c:7b:44:
                    84:bb
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            X509v3 Certificate Policies: 
                Policy: 2.16.840.1.113733.1.7.23.3
                  CPS: https://www.verisign.com/rpa

            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://crl.verisign.com/pca3.crl

            X509v3 Extended Key Usage: 
                TLS Web Client Authentication, Code Signing
            X509v3 Key Usage: critical
                Certificate Sign, CRL Sign
            Netscape Cert Type: 
                Object Signing CA
            X509v3 Subject Alternative Name: 
                DirName:/CN=Class3CA2048-1-43
            X509v3 Subject Key Identifier: 
                08:F5:51:E8:FB:FE:3D:3D:64:36:7C:68:CF:5B:78:A8:DF:B9:C5:37
            X509v3 Authority Key Identifier: 
                DirName:/C=US/O=VeriSign, Inc./OU=Class 3 Public Primary Certification Authority
                serial:70:BA:E4:1D:10:D9:29:34:B6:38:CA:7B:03:CC:BA:BF

    Signature Algorithm: sha1WithRSAEncryption
         ae:3a:17:b8:4a:7b:55:fa:64:55:ec:40:a4:ed:49:41:90:99:
         9c:89:bc:af:2e:1d:ca:78:23:f9:1c:19:0f:7f:eb:68:bc:32:
         d9:88:38:de:dc:3f:d3:89:b4:3f:b1:82:96:f1:a4:5a:ba:ed:
         2e:26:d3:de:7c:01:6e:00:0a:00:a4:06:92:11:48:09:40:f9:
         1c:18:79:67:23:24:e0:bb:d5:e1:50:ae:1b:f5:0e:dd:e0:2e:
         81:cd:80:a3:6c:52:4f:91:75:55:8a:ba:22:f2:d2:ea:41:75:
         88:2f:63:55:7d:1e:54:5a:95:59:ca:d9:34:81:c0:5f:5e:f6:
         7a:b5

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            77:a6:47:59:f1:27:66:e3:63:d7:79:99:8c:71:bd:c9
    Signature Algorithm: sha1WithRSAEncryption
        Issuer: C=US, O=VeriSign, Inc., OU=VeriSign Trust Network, OU=Terms of use at https://www.verisign.com/rpa (c)04, CN=VeriSign Class 3 Code Signing 2004 CA
        Validity
            Not Before: Dec 24 00:00:00 2008 GMT
            Not After : Dec 24 23:59:59 2011 GMT
        Subject: C=CN, ST=Beijing, L=Beijing, O=Beijing Gigabit Times Technology Co., Ltd, OU=Digital ID Class 3 - Microsoft Software Validation v2, CN=Beijing Gigabit Times Technology Co., Ltd
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                Public-Key: (1024 bit)
                Modulus:
                    00:ef:a9:9d:50:df:2c:05:12:4c:39:78:a2:0f:e9:
                    e1:c6:04:d5:58:15:67:24:b4:fd:0d:0f:d2:4a:eb:
                    5b:49:87:a7:da:18:d4:a3:ac:27:29:50:30:ae:d3:
                    68:c2:64:f3:e2:2e:e4:95:81:92:6c:c2:42:4f:4a:
                    df:f3:25:6f:5f:a0:97:a1:71:f0:b0:ee:ff:4c:3c:
                    f2:56:a0:77:5f:00:4b:38:3e:06:35:e3:17:77:e9:
                    1a:3f:17:41:57:ca:7c:6a:47:cd:a0:5b:f2:b2:ad:
                    b3:8a:56:5a:72:d0:25:ab:ae:a2:32:db:b8:05:bf:
                    9a:6c:5c:0d:7a:cd:ae:9c:bf
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Basic Constraints: 
                CA:FALSE
            X509v3 Key Usage: critical
                Digital Signature
            X509v3 CRL Distribution Points: 

                Full Name:
                  URI:http://CSC3-2004-crl.verisign.com/CSC3-2004.crl

            X509v3 Certificate Policies: 
                Policy: 2.16.840.1.113733.1.7.23.3
                  CPS: https://www.verisign.com/rpa

            X509v3 Extended Key Usage: 
                Code Signing
            Authority Information Access: 
                OCSP - URI:http://ocsp.verisign.com
                CA Issuers - URI:http://CSC3-2004-aia.verisign.com/CSC3-2004-aia.cer

            X509v3 Authority Key Identifier: 
                keyid:08:F5:51:E8:FB:FE:3D:3D:64:36:7C:68:CF:5B:78:A8:DF:B9:C5:37

            Netscape Cert Type: 
                Object Signing
            1.3.6.1.4.1.311.2.1.27: 
                0.......
    Signature Algorithm: sha1WithRSAEncryption
         38:12:85:ec:32:12:a1:ac:b6:21:0d:ac:e6:2f:9b:e9:2a:59:
         0d:2d:95:de:c1:27:8d:b1:ab:a9:09:99:d3:70:77:64:12:9f:
         f4:3d:9a:53:8d:de:e2:14:57:22:1f:3f:39:d8:3f:4d:91:88:
         cd:6c:ad:b4:54:96:0d:9f:cd:67:7c:63:fd:50:af:20:b7:0e:
         5d:70:a8:2f:4b:ee:00:28:e1:da:de:24:53:53:2c:35:50:9a:
         a6:b7:97:35:c1:43:e7:b9:fe:98:ad:f9:73:10:cb:d8:69:f0:
         eb:34:8f:f0:76:43:6e:a0:18:9c:dd:b1:74:22:49:fe:b3:d2:
         b9:24:6f:f5:8c:dd:d4:d3:55:ae:87:46:a0:4c:ac:c5:19:48:
         32:b2:2e:95:c9:a4:53:56:cf:48:eb:2b:8e:2c:a9:68:79:b3:
         83:78:45:af:2b:5d:0b:c4:09:1f:ed:1c:58:b6:ae:73:68:23:
         80:21:f5:2e:c2:30:cf:6b:a3:68:bb:6c:a4:68:7a:ef:ca:fc:
         29:83:1b:6c:1d:f2:04:33:9f:ae:34:7f:2f:88:b3:96:c3:31:
         b1:d5:45:f1:2a:e7:7c:20:c5:b5:4e:28:65:0d:67:1e:ad:46:
         2a:8d:52:ed:73:0e:30:47:40:67:e7:f0:dd:aa:b6:df:eb:0f:
         cc:8d:40:e5
pkcs7-signedData
  • 1
    • SHA1: nil
    • 1.3.6.1.4.1.311.2.1.4
      • #0
        • 1.3.6.1.4.1.311.2.1.15
          • :
            00 3c 00 3c 00 3c 00 4f  00 62 00 73 00 6f 00 6c  |.<.<.<.O.b.s.o.l|
            00 65 00 74 00 65 00 3e  00 3e 00 3e              |.e.t.e.>.>.>    |
        • SHA1
          • 3c c0 29 f1 bc 8d 4c 11  ec 73 b6 14 54 dd eb be  |<.)...L..s..T...|
            34 ac 22 4a                                       |4."J            |
    • Certificates
      • Certificate #0
        • 2
          • 38:25:D7:FA:F8:61:AF:9E:F4:90:E7:26:B5:D6:5A:D5
          • RSA-SHA1: nil
          • Issuer
            • C: US
            • O: VeriSign, Inc.
            • CN: VeriSign Time Stamping Services CA
          • 2007-06-15 00:00:00 UTC: 2012-06-14 23:59:59 UTC
          • Subject
            • C: US
            • O: VeriSign, Inc.
            • CN: VeriSign Time Stamping Services Signer - G2
          • #5
            • rsaEncryption: nil
            • C4:B5:F2:52:15:BC:88:86:60:29:16:4A:5B:2F:4B:91:
              6B:87:91:F3:35:54:58:35:EA:D1:36:5E:62:4D:52:51:
              34:71:C2:7B:66:1D:89:C8:DD:2A:C4:6A:0A:F6:37:D9:
              98:74:91:F6:92:AE:B0:B5:76:96:F1:A9:4A:63:45:47:
              2E:6B:0B:92:4E:4B:2B:8C:EE:58:4A:8B:D4:07:E4:1A:
              2C:F8:82:AA:58:D9:CD:42:F3:2D:C0:75:DE:8D:AB:C7:
              8E:1D:9A:6C:4C:08:95:1E:DE:DB:EF:67:E1:72:C2:49:
              C2:9E:60:3C:E1:E2:BE:16:A3:63:78:69:14:7B:AD:2D
              : 0x010001
          • X509v3 extensions
            • authorityInfoAccess
              • OCSP: http://ocsp.verisign.com
            • basicConstraints
              • true
              • nil
            • crlDistributionPoints: http://crl.verisign.com/tss-ca.crl
            • extendedKeyUsage: true, timeStamping
            • keyUsage: true, 0xc0
            • subjectAltName
              • CN: TSA1-2
        • RSA-SHA1:
          50 c5 4b c8 24 80 df e4  0d 24 c2 de 1a b1 a1 02  |P.K.$....$......|
          a1 a6 82 2d 0c 83 15 81  37 0a 82 0e 2c b0 5a 17  |...-....7...,.Z.|
          61 b5 d8 05 fe 88 db f1  91 91 b3 56 1a 40 a6 eb  |a..........V.@..|
          92 be 38 39 b0 75 36 74  3a 98 4f e4 37 ba 99 89  |..89.u6t:.O.7...|
          ca 95 42 1d b0 b9 c7 a0  8d 57 e0 fa d5 64 04 42  |..B......W...d.B|
          35 4e 01 d1 33 a2 17 c8  4d aa 27 c7 f2 e1 86 4c  |5N..3...M.'....L|
          02 38 4d 83 78 c6 fc 53  e0 eb e0 06 87 dd a4 96  |.8M.x..S........|
          9e 5e 0c 98 e2 a5 be bf  82 85 c3 60 e1 df ad 28  |.^.........`...(|
          d8 c7 a5 4b 64 da c7 1b  5b bd ac 39 08 d5 38 22  |...Kd...[..9..8"|
          a1 33 8b 2f 8a 9a eb bc  07 21 3f 44 41 09 07 b5  |.3./.....!?DA...|
          65 1c 24 bc 48 d3 44 80  eb a1 cf c9 02 b4 14 cf  |e.$.H.D.........|
          54 c7 16 a3 80 5c f9 79  3e 5d 72 7d 88 17 9e 2c  |T....\.y>]r}...,|
          43 a2 ca 53 ce 7d 3d f6  2a 3a b8 4f 94 00 a5 6d  |C..S.}=.*:.O...m|
          0a 83 5d f9 5e 53 f4 18  b3 57 0f 70 c3 fb f5 ad  |..].^S...W.p....|
          95 a0 0e 17 de c4 16 80  60 c9 0f 2b 6e 86 04 f1  |........`..+n...|
          eb f4 78 27 d1 05 c5 ee  34 5b 5e b9 49 32 f2 33  |..x'....4[^.I2.3|
      • Certificate #1
        • 2
          • 47:BF:19:95:DF:8D:52:46:43:F7:DB:6D:48:0D:31:A4
          • RSA-SHA1: nil
          • Issuer
            • C: ZA
            • ST: Western Cape
            • L: Durbanville
            • O: Thawte
            • OU: Thawte Certification
            • CN: Thawte Timestamping CA
          • 2003-12-04 00:00:00 UTC: 2013-12-03 23:59:59 UTC
          • Subject
            • C: US
            • O: VeriSign, Inc.
            • CN: VeriSign Time Stamping Services CA
          • #5
            • rsaEncryption: nil
            • A9:CA:B2:A4:CC:CD:20:AF:0A:7D:89:AC:87:75:F0:B4:
              4E:F1:DF:C1:0F:BF:67:61:BD:A3:64:1C:DA:BB:F9:CA:
              33:AB:84:30:89:58:7E:8C:DB:6B:DD:36:9E:0F:BF:D1:
              EC:78:F2:77:A6:7E:6F:3C:BF:93:AF:0D:BA:68:F4:6C:
              94:CA:BD:52:2D:AB:48:3D:F5:B6:D5:5D:5F:1B:02:9F:
              FA:2F:6B:1E:A4:F7:A3:9A:A6:1A:C8:02:E1:7F:4C:52:
              E3:0E:60:EC:40:1C:7E:B9:0D:DE:3F:C7:B4:DF:87:BD:
              5F:7A:6A:31:2E:03:99:81:13:A8:47:20:CE:31:73:0D:
              57:2D:CD:78:34:33:95:12:99:12:B9:DE:68:2F:AA:E6:
              E3:C2:8A:8C:2A:C3:8B:21:87:66:BD:83:58:57:6F:75:
              BF:3C:AA:26:87:5D:CA:10:15:3C:9F:84:EA:54:C1:0A:
              6E:C4:FE:C5:4A:DD:B9:07:11:97:22:7C:DB:3E:27:D1:
              1E:78:EC:9F:31:C9:F1:E6:22:19:DB:C4:B3:47:43:9A:
              1A:5F:A0:1E:90:E4:5E:F5:EE:7C:F1:7D:AB:62:01:8F:
              F5:4D:0B:DE:D0:22:56:A8:95:CD:AE:88:76:AE:EE:BA:
              0D:F3:E4:4D:D9:A0:FB:68:A0:AE:14:3B:B3:87:C1:BB
              : 0x010001
          • X509v3 extensions
            • authorityInfoAccess
              • OCSP: http://ocsp.verisign.com
            • basicConstraints
              • true
              • true: 0
            • crlDistributionPoints: http://crl.verisign.com/ThawteTimestampingCA.crl
            • extendedKeyUsage: timeStamping
            • keyUsage: true, 6
            • subjectAltName
              • CN: TSA2048-1-53
        • RSA-SHA1:
          4a 6b f9 ea 58 c2 44 1c  31 89 79 99 2b 96 bf 82  |Jk..X.D.1.y.+...|
          ac 01 d6 1c 4c cd b0 8a  58 6e df 08 29 a3 5e c8  |....L...Xn..).^.|
          ca 93 13 e7 04 52 0d ef  47 27 2f 00 38 b0 e4 c9  |.....R..G'/.8...|
          93 4e 9a d4 22 62 15 f7  3f 37 21 4f 70 31 80 f1  |.N.."b..?7!Op1..|
          8b 38 87 b3 e8 e8 97 00  fe cf 55 96 4e 24 d2 a9  |.8........U.N$..|
          27 4e 7a ae b7 61 41 f3  2a ce e7 c9 d9 5e dd bb  |'Nz..aA.*....^..|
          2b 85 3e b5 9d b5 d9 e1  57 ff be b4 c5 7e f5 cf  |+.>.....W....~..|
          0c 9e f0 97 fe 2b d3 3b  52 1b 1b 38 27 f7 3f 4a  |.....+.;R..8'.?J|
      • Certificate #2
        • 2
          • 41:91:A1:5A:39:78:DF:CF:49:65:66:38:1D:4C:75:C2
          • RSA-SHA1: nil
          • Issuer
            • C: US
            • O: VeriSign, Inc.
            • OU: Class 3 Public Primary Certification Authority
          • 2004-07-16 00:00:00 UTC: 2014-07-15 23:59:59 UTC
          • Subject
            • C: US
            • O: VeriSign, Inc.
            • OU: VeriSign Trust Network
            • OU: Terms of use at https://www.verisign.com/rpa (c)04
            • CN: VeriSign Class 3 Code Signing 2004 CA
          • #5
            • rsaEncryption: nil
            • BE:BC:EE:BC:7E:EF:83:EB:E0:37:4F:FB:03:10:38:BE:
              08:D2:8C:7D:9D:FA:92:7F:19:0C:C2:6B:EE:42:52:8C:
              DE:D3:1C:48:13:25:EA:C1:63:7A:F9:51:65:EE:D3:AA:
              3B:F5:F0:94:9C:2B:FB:F2:66:D4:24:DA:F7:F5:9F:6E:
              19:39:36:BC:D0:A3:76:08:1E:22:27:24:6C:38:91:27:
              E2:84:49:AE:1B:8A:A1:FD:25:82:2C:10:30:E8:71:AB:
              28:E8:77:4A:51:F1:EC:CD:F8:F0:54:D4:6F:C0:E3:6D:
              0A:8F:D9:D8:64:8D:63:B2:2D:4E:27:F6:85:0E:FE:6D:
              E3:29:99:E2:85:47:7C:2D:86:7F:E8:57:8F:AD:67:C2:
              33:32:91:13:20:FC:A9:23:14:9A:6D:C2:84:4B:76:68:
              04:D5:71:2C:5D:21:FA:88:0D:26:FD:1F:2D:91:2B:E7:
              01:55:4D:F2:6D:35:28:82:DF:D9:6B:5C:B6:D6:D9:AA:
              81:FD:5F:CD:83:BA:63:9D:D0:22:FC:A9:3B:42:69:B2:
              8E:3A:B5:BC:B4:9E:0F:5E:C4:EA:2C:82:8B:28:FD:53:
              08:96:DD:B5:01:20:D1:F9:A5:18:E7:C0:EE:51:70:37:
              E1:B6:05:48:52:48:6F:38:EA:C3:E8:6C:7B:44:84:BB
              : 0x010001
          • X509v3 extensions
            • basicConstraints
              • true
              • true: 0
            • certificatePolicies
              • 2.16.840.1.113733.1.7.23.3
                • id-qt-cps: https://www.verisign.com/rpa
            • crlDistributionPoints: http://crl.verisign.com/pca3.crl
            • extendedKeyUsage
              • clientAuth: codeSigning
            • keyUsage: true, 6
            • nsCertType: 1
            • subjectAltName
              • CN: Class3CA2048-1-43
            • subjectKeyIdentifier:
              08 f5 51 e8 fb fe 3d 3d  64 36 7c 68 cf 5b 78 a8  |..Q...==d6|h.[x.|
              df b9 c5 37                                       |...7            |
            • authorityKeyIdentifier
              • unnamed
                • #0
                  • C: US
                  • O: VeriSign, Inc.
                  • OU: Class 3 Public Primary Certification Authority
                • 70 ba e4 1d 10 d9 29 34  b6 38 ca 7b 03 cc ba bf  |p.....)4.8.{....|
        • RSA-SHA1:
          ae 3a 17 b8 4a 7b 55 fa  64 55 ec 40 a4 ed 49 41  |.:..J{U.dU.@..IA|
          90 99 9c 89 bc af 2e 1d  ca 78 23 f9 1c 19 0f 7f  |.........x#.....|
          eb 68 bc 32 d9 88 38 de  dc 3f d3 89 b4 3f b1 82  |.h.2..8..?...?..|
          96 f1 a4 5a ba ed 2e 26  d3 de 7c 01 6e 00 0a 00  |...Z...&..|.n...|
          a4 06 92 11 48 09 40 f9  1c 18 79 67 23 24 e0 bb  |....H.@...yg#$..|
          d5 e1 50 ae 1b f5 0e dd  e0 2e 81 cd 80 a3 6c 52  |..P...........lR|
          4f 91 75 55 8a ba 22 f2  d2 ea 41 75 88 2f 63 55  |O.uU.."...Au./cU|
          7d 1e 54 5a 95 59 ca d9  34 81 c0 5f 5e f6 7a b5  |}.TZ.Y..4.._^.z.|
      • Certificate #3
        • 2
          • 77:A6:47:59:F1:27:66:E3:63:D7:79:99:8C:71:BD:C9
          • RSA-SHA1: nil
          • Issuer
            • C: US
            • O: VeriSign, Inc.
            • OU: VeriSign Trust Network
            • OU: Terms of use at https://www.verisign.com/rpa (c)04
            • CN: VeriSign Class 3 Code Signing 2004 CA
          • 2008-12-24 00:00:00 UTC: 2011-12-24 23:59:59 UTC
          • Subject
            • C: CN
            • ST: Beijing
            • L: Beijing
            • O: Beijing Gigabit Times Technology Co., Ltd
            • OU: Digital ID Class 3 - Microsoft Software Validation v2
            • CN: Beijing Gigabit Times Technology Co., Ltd
          • #5
            • rsaEncryption: nil
            • EF:A9:9D:50:DF:2C:05:12:4C:39:78:A2:0F:E9:E1:C6:
              04:D5:58:15:67:24:B4:FD:0D:0F:D2:4A:EB:5B:49:87:
              A7:DA:18:D4:A3:AC:27:29:50:30:AE:D3:68:C2:64:F3:
              E2:2E:E4:95:81:92:6C:C2:42:4F:4A:DF:F3:25:6F:5F:
              A0:97:A1:71:F0:B0:EE:FF:4C:3C:F2:56:A0:77:5F:00:
              4B:38:3E:06:35:E3:17:77:E9:1A:3F:17:41:57:CA:7C:
              6A:47:CD:A0:5B:F2:B2:AD:B3:8A:56:5A:72:D0:25:AB:
              AE:A2:32:DB:B8:05:BF:9A:6C:5C:0D:7A:CD:AE:9C:BF
              : 0x010001
          • X509v3 extensions
            • basicConstraints
              • nil
            • keyUsage: true, 0x80
            • crlDistributionPoints: http://CSC3-2004-crl.verisign.com/CSC3-2004.crl
            • certificatePolicies
              • 2.16.840.1.113733.1.7.23.3
                • id-qt-cps: https://www.verisign.com/rpa
            • extendedKeyUsage: codeSigning
            • authorityInfoAccess
              • #0
                • OCSP: http://ocsp.verisign.com
                • caIssuers: http://CSC3-2004-aia.verisign.com/CSC3-2004-aia.cer
            • authorityKeyIdentifier:
              08 f5 51 e8 fb fe 3d 3d  64 36 7c 68 cf 5b 78 a8  |..Q...==d6|h.[x.|
              df b9 c5 37                                       |...7            |
            • nsCertType: 0x10
            • 1.3.6.1.4.1.311.2.1.27
              • false: true
        • RSA-SHA1:
          38 12 85 ec 32 12 a1 ac  b6 21 0d ac e6 2f 9b e9  |8...2....!.../..|
          2a 59 0d 2d 95 de c1 27  8d b1 ab a9 09 99 d3 70  |*Y.-...'.......p|
          77 64 12 9f f4 3d 9a 53  8d de e2 14 57 22 1f 3f  |wd...=.S....W".?|
          39 d8 3f 4d 91 88 cd 6c  ad b4 54 96 0d 9f cd 67  |9.?M...l..T....g|
          7c 63 fd 50 af 20 b7 0e  5d 70 a8 2f 4b ee 00 28  ||c.P. ..]p./K..(|
          e1 da de 24 53 53 2c 35  50 9a a6 b7 97 35 c1 43  |...$SS,5P....5.C|
          e7 b9 fe 98 ad f9 73 10  cb d8 69 f0 eb 34 8f f0  |......s...i..4..|
          76 43 6e a0 18 9c dd b1  74 22 49 fe b3 d2 b9 24  |vCn.....t"I....$|
          6f f5 8c dd d4 d3 55 ae  87 46 a0 4c ac c5 19 48  |o.....U..F.L...H|
          32 b2 2e 95 c9 a4 53 56  cf 48 eb 2b 8e 2c a9 68  |2.....SV.H.+.,.h|
          79 b3 83 78 45 af 2b 5d  0b c4 09 1f ed 1c 58 b6  |y..xE.+]......X.|
          ae 73 68 23 80 21 f5 2e  c2 30 cf 6b a3 68 bb 6c  |.sh#.!...0.k.h.l|
          a4 68 7a ef ca fc 29 83  1b 6c 1d f2 04 33 9f ae  |.hz...)..l...3..|
          34 7f 2f 88 b3 96 c3 31  b1 d5 45 f1 2a e7 7c 20  |4./....1..E.*.| |
          c5 b5 4e 28 65 0d 67 1e  ad 46 2a 8d 52 ed 73 0e  |..N(e.g..F*.R.s.|
          30 47 40 67 e7 f0 dd aa  b6 df eb 0f cc 8d 40 e5  |0G@g..........@.|
    • Signer
      • 1
      • unnamed
        • #0
          • C: US
          • O: VeriSign, Inc.
          • OU: VeriSign Trust Network
          • OU: Terms of use at https://www.verisign.com/rpa (c)04
          • CN: VeriSign Class 3 Code Signing 2004 CA
        • 77:A6:47:59:F1:27:66:E3:63:D7:79:99:8C:71:BD:C9
      • SHA1: nil
      • #3
        • contentType: 1.3.6.1.4.1.311.2.1.4
        • 1.3.6.1.4.1.311.2.1.11: msCodeInd
        • messageDigest:
          61 36 9a 3e 03 aa a0 4e  fa ab 68 04 9b a1 46 8c  |a6.>...N..h...F.|
          c2 77 69 61                                       |.wia            |
        • 1.3.6.1.4.1.311.2.1.12
          • 00 53 00 52 00 53 00 49  00 32 00 2e 00 30 00 20  |.S.R.S.I.2...0. |
            00 28 00 50 00 43 00 50  00 43 00 38 00 2e 00 63  |.(.P.C.P.C.8...c|
            00 6f 00 6d 00 29                                 |.o.m.)          |
            : http://www.pcpc8.com/
      • rsaEncryption:
        99 48 b9 a8 98 72 17 ba  92 12 7d 92 56 4f bd 16  |.H...r....}.VO..|
        c5 3a 9e b3 f5 22 55 43  0e ce c2 6f 10 69 d0 8e  |.:..."UC...o.i..|
        ce 82 04 6b 6e d9 76 45  f3 e0 60 39 1a e9 be 0c  |...kn.vE..`9....|
        83 94 6f 67 09 3a 4f 71  66 9c 85 2d 33 92 40 d2  |..og.:Oqf..-3.@.|
        83 04 52 e5 8f 5b 5c ad  2f 20 f5 38 47 f4 7b 64  |..R..[\./ .8G.{d|
        67 46 ff 1d 4d 73 0f e2  1f bc 88 d5 d6 81 d3 9d  |gF..Ms..........|
        2c 5b 33 19 5f 40 22 9a  ba 17 57 03 72 67 a5 80  |,[3._@"...W.rg..|
        b1 40 dc f8 4c da 1f 0a  3d 51 95 e1 68 4f 09 b6  |.@..L...=Q..hO..|
      • countersignature
        • 1
          • unnamed
            • #0
              • C: US
              • O: VeriSign, Inc.
              • CN: VeriSign Time Stamping Services CA
            • 38:25:D7:FA:F8:61:AF:9E:F4:90:E7:26:B5:D6:5A:D5
          • SHA1: nil
          • #2
            • contentType: pkcs7-data
            • signingTime: 2009-05-08 01:43:31 UTC
            • messageDigest:
              f0 40 40 18 e5 43 ae 8d  f8 53 7f 53 62 b2 7f 77  |.@@..C...S.Sb..w|
              1c 89 7d 01                                       |..}.            |
          • rsaEncryption:
            c1 b0 06 89 33 61 d8 7d  7a a9 58 fe 3a 3f 06 46  |....3a.}z.X.:?.F|
            b0 e5 95 ad b4 6c bb 61  e2 18 5e 4e 88 98 51 dd  |.....l.a..^N..Q.|
            d3 5c 93 7b b7 cc 66 f5  92 66 3a db 6b 1e c5 d0  |.\.{..f..f:.k...|
            e8 1c c3 81 b7 7b 98 ae  d3 7f d2 97 cb cf 24 96  |.....{........$.|
            3a 71 33 fe fc 4f e9 c5  02 24 a4 5a 9b 60 3f d1  |:q3..O...$.Z.`?.|
            1b 15 a7 a5 5f ec 87 96  52 5c 8c 13 40 80 ff 2c  |...._...R\..@..,|
            e1 ce 53 41 9d 1d 6b 07  9b 0c 7d cd 17 cc 3a fa  |..SA..k...}...:.|
            ac 98 0b fc 54 4a 03 ac  35 ec 27 3e 98 38 dc 61  |....TJ..5.'>.8.a|
offsetsizetypecomment
01250816EXE05/08/2009 01:37:39#
1316005488PKCS7Authenticode Signature#
offset:( 0x )size:( 0x )hotkeys:-=[]<>, offset/size fields are also editable

[?] can't find file_offset of VA 0x1c2474

[?] can't find file_offset of VA 0x1c73cc

[?] can't find file_offset of VA 0x1cc304

[?] can't find file_offset of VA 0x1d123c

[?] can't find file_offset of VA 0x1d1950

[?] can't find file_offset of VA 0x1e4a00

[?] can't find file_offset of VA 0x1f7f84

[?] can't find file_offset of VA 0x1f8694

[?] can't find file_offset of VA 0x1fde3c

[?] can't find file_offset of VA 0x1fdea4

[?] can't find file_offset of VA 0x1fdf0c

[?] can't find file_offset of VA 0x201794

[?] can't find file_offset of VA 0x204fcc

[?] can't find file_offset of VA 0x205108

[?] can't find file_offset of VA 0x205244

[?] can't find file_offset of VA 0x20bf10

[?] can't find file_offset of VA 0x20de4c

[?] can't find file_offset of VA 0x212e10

[?] can't find file_offset of VA 0x2144e8

[?] can't find file_offset of VA 0x218d14

[?] ignoring invalid PEdump::BITMAPINFOHEADER

[!] string size(42502) > stringtable size(1616). truncated to 1614

[!] cannot convert "\x8A\x18:\x19[\x1E$t_\xD8\x8A\n@B\x88E"... to UTF-16

[!] string size(28008) > stringtable size(2428). truncated to 2426

[!] cannot convert "\xD4\x86.\x9A\r\tvm\xB8\x8Er\xEE\xAA\v\x9F7"... to UTF-16

[!] string size(127484) > stringtable size(1124). truncated to 1122

[!] cannot convert "Hm\xBB\xB16\x02\xDD&(!\x18A,\xDE\x84\xFE"... to UTF-16

[!] string size(106552) > stringtable size(940). truncated to 938

[!] cannot convert "\x8A\n\xCEM\x14\x10\x00\xD7:n\x02W\x01\xDF\x16B"... to UTF-16

[!] string size(3722) > stringtable size(744). truncated to 742

[!] cannot convert "\e\xAB7\xD8U\xC6\x95R\x8F\x89f\x10\xF0\xF2\x82\xCE"... to UTF-16

[!] string size(8302) > stringtable size(1108). truncated to 1106

[!] cannot convert "b\xD4\x1C$\x7F<\x02\xF2E\xDA\xB7\xD9x\f\x91\x00"... to UTF-16

[!] string size(111552) > stringtable size(928). truncated to 926

[!] cannot convert "X\x10?`v\x13\xDFw\xB5``\xE1\xD9\a)P"... to UTF-16

[!] string size(127158) > stringtable size(984). truncated to 982

[!] cannot convert "\x96\xB8\xF8\x1Df\x19[\xD8q\xBC\x90\xEB\xEA=\"\xA1"... to UTF-16

[!] string size(69132) > stringtable size(752). truncated to 750

[!] cannot convert "H\xAB\xC9^(\xF6\x1E\x80+\x11\xE1\x90\xFE\x86\x118"... to UTF-16

[!] string size(51638) > stringtable size(600). truncated to 598

[!] cannot convert "\xE0\xED\xDD\x8B\xFB%\xC2\x8D[\xEF\x8D\xE1\x9A\b\xAC\v"... to UTF-16

[!] string size(3844) > stringtable size(856). truncated to 854

[!] cannot convert "\x8B#\xA1\e\x1Ee\xF91\xD5\r\a\x00:\xE0\xD3\x87"... to UTF-16

[!] string size(67974) > stringtable size(1084). truncated to 1082

[!] cannot convert "\xDA\x03\x18u\x98\n\xB4j\x9A\xA6\x1D\xB9\x04\xA0\x9C\xB0"... to UTF-16

[!] string size(45168) > stringtable size(892). truncated to 890

[!] cannot convert "\xD6\x00\x12\xDA\x84=G\xD3\x1C\xDA\xD2\xFB^\x04\x7F0"... to UTF-16

[!] string size(42976) > stringtable size(860). truncated to 858

[!] cannot convert "\xB9\x90g\xF0\xF0\xF2\xF2ee\x90J\xF6\xF6\xFA\xFAG"... to UTF-16

[!] string size(48304) > stringtable size(564). truncated to 562

[!] cannot convert "\xC4Ke\x03\xEBJ\x10\x17\b\x18\x02\x01\xB4\x00\xC9\x03"... to UTF-16

[!] string size(33848) > stringtable size(200). truncated to 198

[!] cannot convert "oC$\x97z\xC1)(\x16=Z\x06.1\eM"... to UTF-16

[!] string size(99546) > stringtable size(268). truncated to 266

[!] cannot convert "\xC8\xEF\xE8R\x8A\tp\b\xE8\xD9\xC9\xC4\x0F\x86\xE4y"... to UTF-16

[!] string size(59154) > stringtable size(624). truncated to 622

[!] cannot convert "\xED\xC1\xC8\x18\f#`\x0E^\x0F\xD8\x90+8\x84\t"... to UTF-16

[!] string size(22132) > stringtable size(1020). truncated to 1018

[!] cannot convert "\xCD\x99\x89\xBA\xAB\x80S(\xAB\x18\t8\x11\x01\x8D\xE0"... to UTF-16

[!] string size(128590) > stringtable size(880). truncated to 878

[!] cannot convert "O-\t\x96-Xj4\xE8Gy\x18\x1C\xD1\xC0H"... to UTF-16

[!] string size(54796) > stringtable size(868). truncated to 866

[!] cannot convert "\xBA{ z\xFF\x8D\xEB\xE2\b\x12@\xF9\xD3\aE\xAB"... to UTF-16

[!] string size(37070) > stringtable size(940). truncated to 938

[!] cannot convert "\xED\xD8\xB31|)u\v\xD8Y$\xBC*\xAE\x04\xB5"... to UTF-16

[!] string size(103126) > stringtable size(916). truncated to 914

[!] cannot convert "\xDB~V\x9CS\xFA}o\x19\v\xC2t\xC7S!\x03"... to UTF-16

[!] string size(51860) > stringtable size(920). truncated to 918

[!] cannot convert "bE\n\xBC\ah\xCD\xCF\xB5\xB78\xEB4\xA9\xE8\xE9"... to UTF-16

[!] string size(82428) > stringtable size(204). truncated to 202

[!] cannot convert "\xEE\xEEd\x03nql\x82-\x8B\x8AX\n,d\xE5"... to UTF-16

[!] string size(125758) > stringtable size(176). truncated to 174

[!] cannot convert "6!o\xAC\xE5\x90jTb\xA0v::V*p"... to UTF-16

[!] string size(71084) > stringtable size(664). truncated to 662

[!] cannot convert "\x97\xFE\xC4#,\xFB.\xE4\x04\xF2\xC1Z\x95\x9C\x91\x8A"... to UTF-16

[!] string size(39456) > stringtable size(976). truncated to 974

[!] cannot convert "*\xDDA\x01{\x91\xBCxx\xF0\xAE\x06\xFFH\x7F\xDE"... to UTF-16

[!] string size(99956) > stringtable size(824). truncated to 822

[!] cannot convert "\x14 3\xB8\xED\x01\vA\xD6T\xE4\xEDtv\x9Bu"... to UTF-16

[!] string size(128928) > stringtable size(716). truncated to 714

[!] cannot convert "\xCD\xCE\x1FA\xE1\a9\x16\xD1[\x01/M^wG"... to UTF-16

[!] refusing to read CURDIRENTRY beyond resource size

[?] can't find file_offset of VA 0x18d7e4