| filename | Line.exe | |
|---|---|---|
| size | 4001312 (0x3d0e20) | |
| md5 | 14b6cb76641513bd9ef9c15f9dcf8b26 | |
| type | PE32 executable (GUI) Intel 80386, for MS Windows | |
| mimetype | application/x-dosexec | |
| clamav | OK | |
| virustotal | → scan with virustotal.com | |
| histogram | ||
MZ Header
| signature | MZ |
| bytes_in_last_block | 0x90 |
| blocks_in_file | 3 |
| num_relocs | 0 |
| header_paragraphs | 4 |
| min_extra_paragraphs | 0 |
| max_extra_paragraphs | 0xffff |
| ss | 0 |
| sp | 0xb8 |
| checksum | 0 |
| ip | 0 |
| cs | 0 |
| reloc_table_offset | 0x40 |
| overlay_number | 0 |
| reserved0 | 0 |
| oem_id | 0 |
| oem_info | 0 |
| reserved2 | 0 |
| reserved3 | 0 |
| reserved4 | 0 |
| reserved5 | 0 |
| reserved6 | 0 |
| lfanew | 0x128 |
Rich Header
| lib id | version | times used |
|---|---|---|
| 25 | 9210 | 2 |
| 29 | 9178 | 1 |
| 147 | 21022 | 2 |
| 156 | 30319 | 2 |
| 156 | 40219 | 2 |
| 150 | 20413 | 4 |
| 149 | 30729 | 16 |
| 131 | 30729 | 432 |
| 132 | 30729 | 301 |
| 147 | 30729 | 10 |
| 109 | 50727 | 7 |
| 123 | 50727 | 35 |
| 1 | 0 | 1477 |
| 138 | 30729 | 217 |
| 148 | 21022 | 1 |
| 151 | 0 | 1 |
| 145 | 30729 | 1 |
DOS stub
00000000: 0e 1f ba 0e 00 b4 09 cd 21 b8 01 4c cd 21 54 68 |........!..L.!Th| 00000010: 69 73 20 70 72 6f 67 72 61 6d 20 63 61 6e 6e 6f |is program canno| 00000020: 74 20 62 65 20 72 75 6e 20 69 6e 20 44 4f 53 20 |t be run in DOS | 00000030: 6d 6f 64 65 2e 0d 0d 0a 24 00 00 00 00 00 00 00 |mode....$.......|
PE Header
Sections
Data Directory
TLS
| raw start | raw end | index | callbks | zero fill | flags | |
|---|---|---|---|---|---|---|
| 0xa7c000 | 0xa7c00c | 0xa77e08 | 0x8a18c8 | 0 | 0 |
| module_name | hint | ord | function_name |
|---|---|---|---|
| kernel32.dll | lstrcpy | ||
| comctl32.dll | InitCommonControls |
StringTable 041204b0
| CompanyName | LINE Corporation |
| FileDescription | LINE |
| FileVersion | 3.2.3.93 |
| InternalName | LINE |
| LegalCopyright | ⓒ LINE Corp. All Rights Reserved |
| OriginalFilename | Line.exe |
| ProductName | LINE |
| ProductVersion | 3.2.3.93 |
VS_FIXEDFILEINFO
| FileVersion | 3.2.3.93 |
| ProductVersion | 3.2.3.93 |
| StrucVersion | 0x10000 |
| FileFlagsMask | 0x17 |
| FileFlags | 0 |
| FileOS | 4 |
| FileType | 1 |
| FileSubtype | 0 |
Signers (1)
issuer: /C=US/O=VeriSign, Inc./OU=VeriSign Trust Network/OU=Terms of use at https:\/\/www.verisign.com\/rpa (c)10/CN=VeriSign Class 3 Code Signing 2010 CA
serial: 6ED5E8BAA907625786245226043A6035
Certificates (4)
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
7e:93:eb:fb:7c:c6:4e:59:ea:4b:9a:77:d4:06:fc:3b
Signature Algorithm: sha1WithRSAEncryption
Issuer: C=ZA, ST=Western Cape, L=Durbanville, O=Thawte, OU=Thawte Certification, CN=Thawte Timestamping CA
Validity
Not Before: Dec 21 00:00:00 2012 GMT
Not After : Dec 30 23:59:59 2020 GMT
Subject: C=US, O=Symantec Corporation, CN=Symantec Time Stamping Services CA - G2
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:b1:ac:b3:49:54:4b:97:1c:12:0a:d8:25:79:91:
22:57:2a:6f:dc:b8:26:c4:43:73:6b:c2:bf:2e:50:
5a:fb:14:c2:76:8e:43:01:25:43:b4:a1:e2:45:f4:
e8:b7:7b:c3:74:cc:22:d7:b4:94:00:02:f7:4d:ed:
bf:b4:b7:44:24:6b:cd:5f:45:3b:d1:44:ce:43:12:
73:17:82:8b:69:b4:2b:cb:99:1e:ac:72:1b:26:4d:
71:1f:b1:31:dd:fb:51:61:02:53:a6:aa:f5:49:2c:
05:78:45:a5:2f:89:ce:e7:99:e7:fe:8c:e2:57:3f:
3d:c6:92:dc:4a:f8:7b:33:e4:79:0a:fb:f0:75:88:
41:9c:ff:c5:03:51:99:aa:d7:6c:9f:93:69:87:65:
29:83:85:c2:60:14:c4:c8:c9:3b:14:da:c0:81:f0:
1f:0d:74:de:92:22:ab:ca:f7:fb:74:7c:27:e6:f7:
4a:1b:7f:a7:c3:9e:2d:ae:8a:ea:a6:e6:aa:27:16:
7d:61:f7:98:71:11:bc:e2:50:a1:4b:e5:5d:fa:e5:
0e:a7:2c:9f:aa:65:20:d3:d8:96:e8:c8:7c:a5:4e:
48:44:ff:19:e2:44:07:92:0b:d7:68:84:80:5d:6a:
78:64:45:cd:60:46:7e:54:c1:13:7c:c5:79:f1:c9:
c1:71
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
5F:9A:F5:6E:5C:CC:CC:74:9A:D4:DD:7D:EF:3F:DB:EC:4C:80:2E:DD
Authority Information Access:
OCSP - URI:http://ocsp.thawte.com
X509v3 Basic Constraints: critical
CA:TRUE, pathlen:0
X509v3 CRL Distribution Points:
Full Name:
URI:http://crl.thawte.com/ThawteTimestampingCA.crl
X509v3 Extended Key Usage:
Time Stamping
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Subject Alternative Name:
DirName:/CN=TimeStamp-2048-1
Signature Algorithm: sha1WithRSAEncryption
Signature Value:
03:09:9b:8f:79:ef:7f:59:30:aa:ef:68:b5:fa:e3:09:1d:bb:
4f:82:06:5d:37:5f:a6:52:9f:16:8d:ea:1c:92:09:44:6e:f5:
6d:eb:58:7c:30:e8:f9:69:8d:23:73:0b:12:6f:47:a9:ae:39:
11:f8:2a:b1:9b:b0:1a:c3:8e:eb:59:96:00:ad:ce:0c:4d:b2:
d0:31:a6:08:5c:2a:7a:fc:e2:7a:1d:57:4c:a8:65:18:e9:79:
40:62:25:96:6e:c7:c7:37:6a:83:21:08:8e:41:ea:dd:d9:57:
3f:1d:77:49:87:2a:16:06:5e:a6:38:6a:22:12:a3:51:19:83:
7e:b6
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
0e:cf:f4:38:c8:fe:bf:35:6e:04:d8:6a:98:1b:1a:50
Signature Algorithm: sha1WithRSAEncryption
Issuer: C=US, O=Symantec Corporation, CN=Symantec Time Stamping Services CA - G2
Validity
Not Before: Oct 18 00:00:00 2012 GMT
Not After : Dec 29 23:59:59 2020 GMT
Subject: C=US, O=Symantec Corporation, CN=Symantec Time Stamping Services Signer - G4
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:a2:63:0b:39:44:b8:bb:23:a7:44:49:bb:0e:ff:
a1:f0:61:0a:53:93:b0:98:db:ad:2c:0f:4a:c5:6e:
ff:86:3c:53:55:0f:15:ce:04:3f:2b:fd:a9:96:96:
d9:be:61:79:0b:5b:c9:4c:86:76:e5:e0:43:4b:22:
95:ee:c2:2b:43:c1:9f:d8:68:b4:8e:40:4f:ee:85:
38:b9:11:c5:23:f2:64:58:f0:15:32:6f:4e:57:a1:
ae:88:a4:02:d7:2a:1e:cd:4b:e1:dd:63:d5:17:89:
32:5b:b0:5e:99:5a:a8:9d:28:50:0e:17:ee:96:db:
61:3b:45:51:1d:cf:12:56:0b:92:47:fc:ab:ae:f6:
66:3d:47:ac:70:72:e7:92:e7:5f:cd:10:b9:c4:83:
64:94:19:bd:25:80:e1:e8:d2:22:a5:d0:ba:02:7a:
a1:77:93:5b:65:c3:ee:17:74:bc:41:86:2a:dc:08:
4c:8c:92:8c:91:2d:9e:77:44:1f:68:d6:a8:74:77:
db:0e:5b:32:8b:56:8b:33:bd:d9:63:c8:49:9d:3a:
c5:c5:ea:33:0b:d2:f1:a3:1b:f4:8b:be:d9:b3:57:
8b:3b:de:04:a7:7a:22:b2:24:ae:2e:c7:70:c5:be:
4e:83:26:08:fb:0b:bd:a9:4f:99:08:e1:10:28:72:
aa:cd
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Extended Key Usage: critical
Time Stamping
X509v3 Key Usage: critical
Digital Signature
Authority Information Access:
OCSP - URI:http://ts-ocsp.ws.symantec.com
CA Issuers - URI:http://ts-aia.ws.symantec.com/tss-ca-g2.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://ts-crl.ws.symantec.com/tss-ca-g2.crl
X509v3 Subject Alternative Name:
DirName:/CN=TimeStamp-2048-2
X509v3 Subject Key Identifier:
46:C6:69:A3:0E:4A:14:1E:D5:4C:DA:52:63:17:3F:5E:36:BC:0D:E6
X509v3 Authority Key Identifier:
5F:9A:F5:6E:5C:CC:CC:74:9A:D4:DD:7D:EF:3F:DB:EC:4C:80:2E:DD
Signature Algorithm: sha1WithRSAEncryption
Signature Value:
78:3b:b4:91:2a:00:4c:f0:8f:62:30:37:78:a3:84:27:07:6f:
18:b2:de:25:dc:a0:d4:94:03:aa:86:4e:25:9f:9a:40:03:1c:
dd:ce:e3:79:cb:21:68:06:da:b6:32:b4:6d:bf:f4:2c:26:63:
33:e4:49:64:6d:0d:e6:c3:67:0e:f7:05:a4:35:6c:7c:89:16:
c6:e9:b2:df:b2:e9:dd:20:c6:71:0f:cd:95:74:dc:b6:5c:de:
bd:37:1f:43:78:e6:78:b5:cd:28:04:20:a3:aa:f1:4b:c4:88:
29:91:0e:80:d1:11:fc:dd:5c:76:6e:4f:5e:0e:45:46:41:6e:
0d:b0:ea:38:9a:b1:3a:da:09:71:10:fc:1c:79:b4:80:7b:ac:
69:f4:fd:9c:b6:0c:16:2b:f1:7f:5b:09:3d:9b:5b:e2:16:ca:
13:81:6d:00:2e:38:0d:a8:29:8f:2c:e1:b2:f4:5a:a9:01:af:
15:9c:2c:2f:49:1b:db:22:bb:c3:fe:78:94:51:c3:86:b1:82:
88:5d:f0:3d:b4:51:a1:79:33:2b:2e:7b:b9:dc:20:09:13:71:
eb:6a:19:5b:cf:e8:a5:30:57:2c:89:49:3f:b9:cf:7f:c9:bf:
3e:22:68:63:53:9a:bd:69:74:ac:c5:1d:3c:7f:92:e0:c3:bc:
1c:d8:04:75
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
4d:62:90:e5:8c:54:f0:f1:eb:17:34:1a:13:10:e6:a4
Signature Algorithm: sha1WithRSAEncryption
Issuer: C=US, O=VeriSign, Inc., OU=Class 3 Public Primary Certification Authority
Validity
Not Before: Sep 30 00:00:00 2010 GMT
Not After : Jan 1 23:59:59 2014 GMT
Subject: C=US, O=VeriSign, Inc., OU=VeriSign Trust Network, OU=Terms of use at https:\/\/www.verisign.com\/rpa (c)10, CN=VeriSign Class 3 Code Signing 2010 CA
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:f5:23:4b:5e:a5:d7:8a:bb:32:e9:d4:57:f7:ef:
e4:c7:26:7e:ad:19:98:fe:a8:9d:7d:94:f6:36:6b:
10:d7:75:81:30:7f:04:68:7f:cb:2b:75:1e:cd:1d:
08:8c:df:69:94:a7:37:a3:9c:7b:80:e0:99:e1:ee:
37:4d:5f:ce:3b:14:ee:86:d4:d0:f5:27:35:bc:25:
0b:38:a7:8c:63:9d:17:a3:08:a5:ab:b0:fb:cd:6a:
62:82:4c:d5:21:da:1b:d9:f1:e3:84:3b:8a:2a:4f:
85:5b:90:01:4f:c9:a7:76:10:7f:27:03:7c:be:ae:
7e:7d:c1:dd:f9:05:bc:1b:48:9c:69:e7:c0:a4:3c:
3c:41:00:3e:df:96:e5:c5:e4:94:71:d6:55:01:c7:
00:26:4a:40:3c:b5:a1:26:a9:0c:a7:6d:80:8e:90:
25:7b:cf:bf:3f:1c:eb:2f:96:fa:e5:87:77:c6:b5:
56:b2:7a:3b:54:30:53:1b:df:62:34:ff:1e:d1:f4:
5a:93:28:85:e5:4c:17:4e:7e:5b:fd:a4:93:99:7f:
df:cd:ef:a4:75:ef:ef:15:f6:47:e7:f8:19:72:d8:
2e:34:1a:a6:b4:a7:4c:7e:bd:bb:4f:0c:3d:57:f1:
30:d6:a6:36:8e:d6:80:76:d7:19:2e:a5:cd:7e:34:
2d:89
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Basic Constraints: critical
CA:TRUE, pathlen:0
X509v3 Certificate Policies:
Policy: 2.16.840.1.113733.1.7.23.3
CPS: https://www.verisign.com/cps
User Notice:
Explicit Text: https://www.verisign.com/rpa
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
1.3.6.1.5.5.7.1.12:
0_.].[0Y0W0U..image/gif0!0.0...+..............k...j.H.,{..0%.#http://logo.verisign.com/vslogo.gif
X509v3 Extended Key Usage:
TLS Web Client Authentication, Code Signing
X509v3 Subject Alternative Name:
DirName:/CN=VeriSignMPKI-2-8
X509v3 Subject Key Identifier:
CF:99:A9:EA:7B:26:F4:4B:C9:8E:8F:D7:F0:05:26:EF:E3:D2:A7:9D
X509v3 CRL Distribution Points:
Full Name:
URI:http://crl.verisign.com/pca3.crl
Signature Algorithm: sha1WithRSAEncryption
Signature Value:
ae:dd:21:1d:5f:8f:80:7a:d2:52:09:ea:db:6e:d2:5d:8b:e8:
c2:1b:69:04:be:51:a5:01:0e:59:fa:37:d1:74:a3:ee:dc:ed:
89:74:2b:62:d5:a6:bf:4f:ad:36:17:54:f0:13:e0:a3:45:d2:
4c:26:cb:e2:6d:a2:1f:d0:1e:7a:07:0f:b6:b3:7b:6f:50:68:
a2:e9:31:b3:b7:99:7d:80:70:a0:a7:de:0b:1e:a4:ff:f3:4d:
81:1b:dd:20:c9:1c:c4:af:cf:f1:8f:fa:d9:da:95:f0:ec:dc:
5c:bf:e8:8c:5a:3e:7a:b0:a3:eb:59:43:74:11:e0:9b:1a:6a:
f3:6f
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
6e:d5:e8:ba:a9:07:62:57:86:24:52:26:04:3a:60:35
Signature Algorithm: sha1WithRSAEncryption
Issuer: C=US, O=VeriSign, Inc., OU=VeriSign Trust Network, OU=Terms of use at https:\/\/www.verisign.com\/rpa (c)10, CN=VeriSign Class 3 Code Signing 2010 CA
Validity
Not Before: Apr 23 00:00:00 2013 GMT
Not After : Apr 23 23:59:59 2014 GMT
Subject: C=JP, ST=Tokyo, L=Shibuya, O=LINE Corporation, OU=Digital ID Class 3 - Microsoft Software Validation v2, OU=IT Service Center, CN=LINE Corporation
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:de:fb:a1:4a:01:d8:c9:6f:fe:71:66:b0:12:f0:
09:12:9c:54:37:78:b4:f3:b7:85:71:e1:7c:59:92:
c7:31:29:19:a5:fe:21:b2:de:04:b5:e8:98:bf:32:
74:b1:21:47:81:70:d3:1e:e1:3a:3c:7b:6e:9c:60:
b7:4b:e6:83:87:f8:a6:e5:4e:03:c1:94:78:e2:67:
e4:1a:44:05:90:fc:98:f7:6f:44:b4:86:8f:df:62:
ba:9e:9b:96:33:ba:44:10:37:f0:70:5d:e7:f4:fd:
ae:06:08:93:5f:0e:9f:a4:fa:10:95:f1:f5:0d:cd:
97:98:e4:16:c9:04:5d:49:f6:d3:12:db:05:59:f8:
fe:8b:df:ea:44:99:94:bc:80:dd:c6:32:a2:d7:83:
6c:32:46:6a:ff:02:6f:4b:4d:d4:2e:bb:a0:eb:11:
0e:2e:ad:7e:4e:c4:a9:2d:cf:e9:b9:54:8c:1c:17:
e5:d6:f4:28:1a:cf:f8:12:21:f2:5d:dc:b7:d2:82:
e8:a6:54:56:ec:f3:95:6e:7f:65:a3:6c:04:25:8d:
e7:ef:9c:db:6e:72:d5:62:46:77:9c:10:e1:ea:29:
08:1c:16:ed:19:aa:83:00:09:85:6b:99:17:47:3b:
15:36:d7:aa:c5:3f:34:f2:82:8c:25:b0:9b:62:95:
85:75
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Basic Constraints:
CA:FALSE
X509v3 Key Usage: critical
Digital Signature
X509v3 CRL Distribution Points:
Full Name:
URI:http://csc3-2010-crl.verisign.com/CSC3-2010.crl
X509v3 Certificate Policies:
Policy: 2.16.840.1.113733.1.7.23.3
CPS: https://www.verisign.com/rpa
X509v3 Extended Key Usage:
Code Signing
Authority Information Access:
OCSP - URI:http://ocsp.verisign.com
CA Issuers - URI:http://csc3-2010-aia.verisign.com/CSC3-2010.cer
X509v3 Authority Key Identifier:
CF:99:A9:EA:7B:26:F4:4B:C9:8E:8F:D7:F0:05:26:EF:E3:D2:A7:9D
Netscape Cert Type:
Object Signing
1.3.6.1.4.1.311.2.1.27:
0.......
Signature Algorithm: sha1WithRSAEncryption
Signature Value:
60:6d:d3:73:ea:88:82:9c:f6:11:8b:e5:54:2e:8e:ad:e5:a2:
a2:38:b2:9a:ae:10:35:5d:04:a4:c4:3f:21:c2:d3:a1:bc:24:
07:39:98:e2:7b:15:21:bc:d1:fc:42:eb:b6:cc:f1:33:db:11:
f3:f2:0b:24:8d:7f:44:41:51:6b:2e:81:2e:0a:8c:84:6c:33:
22:12:48:de:df:1f:59:a8:a9:95:21:fb:82:46:db:ff:c7:2a:
3e:52:24:7c:fd:4a:b6:13:48:26:fb:8f:9e:54:6f:17:8f:5c:
1f:85:e6:08:93:0d:f2:b3:be:7e:8a:ad:d0:1a:05:1c:7c:21:
b3:43:4a:de:3a:df:43:e1:27:cc:42:05:30:3d:ae:8d:48:e4:
49:7f:d1:87:4a:60:9d:77:74:e1:79:29:f6:a4:17:2b:1a:81:
7f:8f:3d:bb:49:88:a1:a5:44:5c:58:ab:30:55:97:92:c8:ba:
56:47:82:53:f6:de:ea:a5:64:96:13:42:be:1c:13:61:b5:4b:
05:bf:6d:5b:b2:98:a6:8c:7d:c4:de:0d:55:f8:43:b7:37:00:
c0:38:f1:68:fa:28:a6:a5:59:c2:fe:c2:a6:0d:be:c7:96:2e:
f9:89:09:ea:d5:8f:5f:d3:52:99:16:ac:f2:97:e3:47:9d:dd:
dd:04:b6:2f
- 1
- SHA1: nil
- 1.3.6.1.4.1.311.2.1.4
- #0
- 1.3.6.1.4.1.311.2.1.15
- :
00 3c 00 3c 00 3c 00 4f 00 62 00 73 00 6f 00 6c |.<.<.<.O.b.s.o.l| 00 65 00 74 00 65 00 3e 00 3e 00 3e |.e.t.e.>.>.> |
- :
- SHA1
59 3c 85 0a aa 4a 77 ab 5f 4b 4c d9 4e 8e 9a 1b |Y<...Jw._KL.N...| 2f 35 98 1b |/5.. |
- 1.3.6.1.4.1.311.2.1.15
- #0
- Certificates
- Certificate #0
- 2
- 7E:93:EB:FB:7C:C6:4E:59:EA:4B:9A:77:D4:06:FC:3B
- RSA-SHA1: nil
- Issuer
- C: ZA
- ST: Western Cape
- L: Durbanville
- O: Thawte
- OU: Thawte Certification
- CN: Thawte Timestamping CA
- 2012-12-21 00:00:00 UTC: 2020-12-30 23:59:59 UTC
- Subject
- C: US
- O: Symantec Corporation
- CN: Symantec Time Stamping Services CA - G2
- #5
- rsaEncryption: nil
- B1:AC:B3:49:54:4B:97:1C:12:0A:D8:25:79:91:22:57:
2A:6F:DC:B8:26:C4:43:73:6B:C2:BF:2E:50:5A:FB:14:
C2:76:8E:43:01:25:43:B4:A1:E2:45:F4:E8:B7:7B:C3:
74:CC:22:D7:B4:94:00:02:F7:4D:ED:BF:B4:B7:44:24:
6B:CD:5F:45:3B:D1:44:CE:43:12:73:17:82:8B:69:B4:
2B:CB:99:1E:AC:72:1B:26:4D:71:1F:B1:31:DD:FB:51:
61:02:53:A6:AA:F5:49:2C:05:78:45:A5:2F:89:CE:E7:
99:E7:FE:8C:E2:57:3F:3D:C6:92:DC:4A:F8:7B:33:E4:
79:0A:FB:F0:75:88:41:9C:FF:C5:03:51:99:AA:D7:6C:
9F:93:69:87:65:29:83:85:C2:60:14:C4:C8:C9:3B:14:
DA:C0:81:F0:1F:0D:74:DE:92:22:AB:CA:F7:FB:74:7C:
27:E6:F7:4A:1B:7F:A7:C3:9E:2D:AE:8A:EA:A6:E6:AA:
27:16:7D:61:F7:98:71:11:BC:E2:50:A1:4B:E5:5D:FA:
E5:0E:A7:2C:9F:AA:65:20:D3:D8:96:E8:C8:7C:A5:4E:
48:44:FF:19:E2:44:07:92:0B:D7:68:84:80:5D:6A:78:
64:45:CD:60:46:7E:54:C1:13:7C:C5:79:F1:C9:C1:71: 0x010001
- #6
- subjectKeyIdentifier:
5f 9a f5 6e 5c cc cc 74 9a d4 dd 7d ef 3f db ec |_..n\..t...}.?..| 4c 80 2e dd |L... |
- authorityInfoAccess
- OCSP: http://ocsp.thawte.com
- basicConstraints
- true
- true: 0
- crlDistributionPoints: http://crl.thawte.com/ThawteTimestampingCA.crl
- extendedKeyUsage: timeStamping
- keyUsage: true, 6
- subjectAltName
- CN: TimeStamp-2048-1
- subjectKeyIdentifier:
- RSA-SHA1:
03 09 9b 8f 79 ef 7f 59 30 aa ef 68 b5 fa e3 09 |....y..Y0..h....| 1d bb 4f 82 06 5d 37 5f a6 52 9f 16 8d ea 1c 92 |..O..]7_.R......| 09 44 6e f5 6d eb 58 7c 30 e8 f9 69 8d 23 73 0b |.Dn.m.X|0..i.#s.| 12 6f 47 a9 ae 39 11 f8 2a b1 9b b0 1a c3 8e eb |.oG..9..*.......| 59 96 00 ad ce 0c 4d b2 d0 31 a6 08 5c 2a 7a fc |Y.....M..1..\*z.| e2 7a 1d 57 4c a8 65 18 e9 79 40 62 25 96 6e c7 |.z.WL.e..y@b%.n.| c7 37 6a 83 21 08 8e 41 ea dd d9 57 3f 1d 77 49 |.7j.!..A...W?.wI| 87 2a 16 06 5e a6 38 6a 22 12 a3 51 19 83 7e b6 |.*..^.8j"..Q..~.|
- 2
- Certificate #1
- 2
- 0E:CF:F4:38:C8:FE:BF:35:6E:04:D8:6A:98:1B:1A:50
- RSA-SHA1: nil
- Issuer
- C: US
- O: Symantec Corporation
- CN: Symantec Time Stamping Services CA - G2
- 2012-10-18 00:00:00 UTC: 2020-12-29 23:59:59 UTC
- Subject
- C: US
- O: Symantec Corporation
- CN: Symantec Time Stamping Services Signer - G4
- #5
- rsaEncryption: nil
- A2:63:0B:39:44:B8:BB:23:A7:44:49:BB:0E:FF:A1:F0:
61:0A:53:93:B0:98:DB:AD:2C:0F:4A:C5:6E:FF:86:3C:
53:55:0F:15:CE:04:3F:2B:FD:A9:96:96:D9:BE:61:79:
0B:5B:C9:4C:86:76:E5:E0:43:4B:22:95:EE:C2:2B:43:
C1:9F:D8:68:B4:8E:40:4F:EE:85:38:B9:11:C5:23:F2:
64:58:F0:15:32:6F:4E:57:A1:AE:88:A4:02:D7:2A:1E:
CD:4B:E1:DD:63:D5:17:89:32:5B:B0:5E:99:5A:A8:9D:
28:50:0E:17:EE:96:DB:61:3B:45:51:1D:CF:12:56:0B:
92:47:FC:AB:AE:F6:66:3D:47:AC:70:72:E7:92:E7:5F:
CD:10:B9:C4:83:64:94:19:BD:25:80:E1:E8:D2:22:A5:
D0:BA:02:7A:A1:77:93:5B:65:C3:EE:17:74:BC:41:86:
2A:DC:08:4C:8C:92:8C:91:2D:9E:77:44:1F:68:D6:A8:
74:77:DB:0E:5B:32:8B:56:8B:33:BD:D9:63:C8:49:9D:
3A:C5:C5:EA:33:0B:D2:F1:A3:1B:F4:8B:BE:D9:B3:57:
8B:3B:DE:04:A7:7A:22:B2:24:AE:2E:C7:70:C5:BE:4E:
83:26:08:FB:0B:BD:A9:4F:99:08:E1:10:28:72:AA:CD: 0x010001
- X509v3 extensions
- basicConstraints
- true
- nil
- extendedKeyUsage: true, timeStamping
- keyUsage: true, 0x80
- authorityInfoAccess
- #0
- OCSP: http://ts-ocsp.ws.symantec.com
- caIssuers: http://ts-aia.ws.symantec.com/tss-ca-g2.cer
- #0
- crlDistributionPoints: http://ts-crl.ws.symantec.com/tss-ca-g2.crl
- subjectAltName
- CN: TimeStamp-2048-2
- subjectKeyIdentifier:
46 c6 69 a3 0e 4a 14 1e d5 4c da 52 63 17 3f 5e |F.i..J...L.Rc.?^| 36 bc 0d e6 |6... |
- authorityKeyIdentifier:
5f 9a f5 6e 5c cc cc 74 9a d4 dd 7d ef 3f db ec |_..n\..t...}.?..| 4c 80 2e dd |L... |
- basicConstraints
- RSA-SHA1:
78 3b b4 91 2a 00 4c f0 8f 62 30 37 78 a3 84 27 |x;..*.L..b07x..'| 07 6f 18 b2 de 25 dc a0 d4 94 03 aa 86 4e 25 9f |.o...%.......N%.| 9a 40 03 1c dd ce e3 79 cb 21 68 06 da b6 32 b4 |.@.....y.!h...2.| 6d bf f4 2c 26 63 33 e4 49 64 6d 0d e6 c3 67 0e |m..,&c3.Idm...g.| f7 05 a4 35 6c 7c 89 16 c6 e9 b2 df b2 e9 dd 20 |...5l|......... | c6 71 0f cd 95 74 dc b6 5c de bd 37 1f 43 78 e6 |.q...t..\..7.Cx.| 78 b5 cd 28 04 20 a3 aa f1 4b c4 88 29 91 0e 80 |x..(. ...K..)...| d1 11 fc dd 5c 76 6e 4f 5e 0e 45 46 41 6e 0d b0 |....\vnO^.EFAn..| ea 38 9a b1 3a da 09 71 10 fc 1c 79 b4 80 7b ac |.8..:..q...y..{.| 69 f4 fd 9c b6 0c 16 2b f1 7f 5b 09 3d 9b 5b e2 |i......+..[.=.[.| 16 ca 13 81 6d 00 2e 38 0d a8 29 8f 2c e1 b2 f4 |....m..8..).,...| 5a a9 01 af 15 9c 2c 2f 49 1b db 22 bb c3 fe 78 |Z.....,/I.."...x| 94 51 c3 86 b1 82 88 5d f0 3d b4 51 a1 79 33 2b |.Q.....].=.Q.y3+| 2e 7b b9 dc 20 09 13 71 eb 6a 19 5b cf e8 a5 30 |.{.. ..q.j.[...0| 57 2c 89 49 3f b9 cf 7f c9 bf 3e 22 68 63 53 9a |W,.I?.....>"hcS.| bd 69 74 ac c5 1d 3c 7f 92 e0 c3 bc 1c d8 04 75 |.it...<........u|
- 2
- Certificate #2
- 2
- 4D:62:90:E5:8C:54:F0:F1:EB:17:34:1A:13:10:E6:A4
- RSA-SHA1: nil
- Issuer
- C: US
- O: VeriSign, Inc.
- OU: Class 3 Public Primary Certification Authority
- 2010-09-30 00:00:00 UTC: 2014-01-01 23:59:59 UTC
- Subject
- C: US
- O: VeriSign, Inc.
- OU: VeriSign Trust Network
- OU: Terms of use at https://www.verisign.com/rpa (c)10
- CN: VeriSign Class 3 Code Signing 2010 CA
- #5
- rsaEncryption: nil
- F5:23:4B:5E:A5:D7:8A:BB:32:E9:D4:57:F7:EF:E4:C7:
26:7E:AD:19:98:FE:A8:9D:7D:94:F6:36:6B:10:D7:75:
81:30:7F:04:68:7F:CB:2B:75:1E:CD:1D:08:8C:DF:69:
94:A7:37:A3:9C:7B:80:E0:99:E1:EE:37:4D:5F:CE:3B:
14:EE:86:D4:D0:F5:27:35:BC:25:0B:38:A7:8C:63:9D:
17:A3:08:A5:AB:B0:FB:CD:6A:62:82:4C:D5:21:DA:1B:
D9:F1:E3:84:3B:8A:2A:4F:85:5B:90:01:4F:C9:A7:76:
10:7F:27:03:7C:BE:AE:7E:7D:C1:DD:F9:05:BC:1B:48:
9C:69:E7:C0:A4:3C:3C:41:00:3E:DF:96:E5:C5:E4:94:
71:D6:55:01:C7:00:26:4A:40:3C:B5:A1:26:A9:0C:A7:
6D:80:8E:90:25:7B:CF:BF:3F:1C:EB:2F:96:FA:E5:87:
77:C6:B5:56:B2:7A:3B:54:30:53:1B:DF:62:34:FF:1E:
D1:F4:5A:93:28:85:E5:4C:17:4E:7E:5B:FD:A4:93:99:
7F:DF:CD:EF:A4:75:EF:EF:15:F6:47:E7:F8:19:72:D8:
2E:34:1A:A6:B4:A7:4C:7E:BD:BB:4F:0C:3D:57:F1:30:
D6:A6:36:8E:D6:80:76:D7:19:2E:A5:CD:7E:34:2D:89: 0x010001
- X509v3 extensions
- basicConstraints
- true
- true: 0
- certificatePolicies
- 2.16.840.1.113733.1.7.23.3
- #0
- id-qt-cps: https://www.verisign.com/cps
- id-qt-unotice: https://www.verisign.com/rpa
- #0
- 2.16.840.1.113733.1.7.23.3
- keyUsage: true, 6
- 1.3.6.1.5.5.7.1.12
- image/gif
- SHA1:
8f e5 d3 1a 86 ac 8d 8e 6b c3 cf 80 6a d4 48 18 |........k...j.H.| 2c 7b 19 2e |,{.. | - http://logo.verisign.com/vslogo.gif
- SHA1:
- image/gif
- extendedKeyUsage
- clientAuth: codeSigning
- subjectAltName
- CN: VeriSignMPKI-2-8
- subjectKeyIdentifier:
cf 99 a9 ea 7b 26 f4 4b c9 8e 8f d7 f0 05 26 ef |....{&.K......&.| e3 d2 a7 9d |.... | - crlDistributionPoints: http://crl.verisign.com/pca3.crl
- basicConstraints
- RSA-SHA1:
ae dd 21 1d 5f 8f 80 7a d2 52 09 ea db 6e d2 5d |..!._..z.R...n.]| 8b e8 c2 1b 69 04 be 51 a5 01 0e 59 fa 37 d1 74 |....i..Q...Y.7.t| a3 ee dc ed 89 74 2b 62 d5 a6 bf 4f ad 36 17 54 |.....t+b...O.6.T| f0 13 e0 a3 45 d2 4c 26 cb e2 6d a2 1f d0 1e 7a |....E.L&..m....z| 07 0f b6 b3 7b 6f 50 68 a2 e9 31 b3 b7 99 7d 80 |....{oPh..1...}.| 70 a0 a7 de 0b 1e a4 ff f3 4d 81 1b dd 20 c9 1c |p........M... ..| c4 af cf f1 8f fa d9 da 95 f0 ec dc 5c bf e8 8c |............\...| 5a 3e 7a b0 a3 eb 59 43 74 11 e0 9b 1a 6a f3 6f |Z>z...YCt....j.o|
- 2
- Certificate #3
- 2
- 6E:D5:E8:BA:A9:07:62:57:86:24:52:26:04:3A:60:35
- RSA-SHA1: nil
- Issuer
- C: US
- O: VeriSign, Inc.
- OU: VeriSign Trust Network
- OU: Terms of use at https://www.verisign.com/rpa (c)10
- CN: VeriSign Class 3 Code Signing 2010 CA
- 2013-04-23 00:00:00 UTC: 2014-04-23 23:59:59 UTC
- Subject
- C: JP
- ST: Tokyo
- L: Shibuya
- O: LINE Corporation
- OU: Digital ID Class 3 - Microsoft Software Validation v2
- OU: IT Service Center
- CN: LINE Corporation
- #5
- rsaEncryption: nil
- DE:FB:A1:4A:01:D8:C9:6F:FE:71:66:B0:12:F0:09:12:
9C:54:37:78:B4:F3:B7:85:71:E1:7C:59:92:C7:31:29:
19:A5:FE:21:B2:DE:04:B5:E8:98:BF:32:74:B1:21:47:
81:70:D3:1E:E1:3A:3C:7B:6E:9C:60:B7:4B:E6:83:87:
F8:A6:E5:4E:03:C1:94:78:E2:67:E4:1A:44:05:90:FC:
98:F7:6F:44:B4:86:8F:DF:62:BA:9E:9B:96:33:BA:44:
10:37:F0:70:5D:E7:F4:FD:AE:06:08:93:5F:0E:9F:A4:
FA:10:95:F1:F5:0D:CD:97:98:E4:16:C9:04:5D:49:F6:
D3:12:DB:05:59:F8:FE:8B:DF:EA:44:99:94:BC:80:DD:
C6:32:A2:D7:83:6C:32:46:6A:FF:02:6F:4B:4D:D4:2E:
BB:A0:EB:11:0E:2E:AD:7E:4E:C4:A9:2D:CF:E9:B9:54:
8C:1C:17:E5:D6:F4:28:1A:CF:F8:12:21:F2:5D:DC:B7:
D2:82:E8:A6:54:56:EC:F3:95:6E:7F:65:A3:6C:04:25:
8D:E7:EF:9C:DB:6E:72:D5:62:46:77:9C:10:E1:EA:29:
08:1C:16:ED:19:AA:83:00:09:85:6B:99:17:47:3B:15:
36:D7:AA:C5:3F:34:F2:82:8C:25:B0:9B:62:95:85:75: 0x010001
- X509v3 extensions
- basicConstraints
- nil
- keyUsage: true, 0x80
- crlDistributionPoints: http://csc3-2010-crl.verisign.com/CSC3-2010.crl
- certificatePolicies
- 2.16.840.1.113733.1.7.23.3
- id-qt-cps: https://www.verisign.com/rpa
- 2.16.840.1.113733.1.7.23.3
- extendedKeyUsage: codeSigning
- authorityInfoAccess
- #0
- OCSP: http://ocsp.verisign.com
- caIssuers: http://csc3-2010-aia.verisign.com/CSC3-2010.cer
- #0
- authorityKeyIdentifier:
cf 99 a9 ea 7b 26 f4 4b c9 8e 8f d7 f0 05 26 ef |....{&.K......&.| e3 d2 a7 9d |.... | - nsCertType: 0x10
- 1.3.6.1.4.1.311.2.1.27
- false: true
- basicConstraints
- RSA-SHA1:
60 6d d3 73 ea 88 82 9c f6 11 8b e5 54 2e 8e ad |`m.s........T...| e5 a2 a2 38 b2 9a ae 10 35 5d 04 a4 c4 3f 21 c2 |...8....5]...?!.| d3 a1 bc 24 07 39 98 e2 7b 15 21 bc d1 fc 42 eb |...$.9..{.!...B.| b6 cc f1 33 db 11 f3 f2 0b 24 8d 7f 44 41 51 6b |...3.....$..DAQk| 2e 81 2e 0a 8c 84 6c 33 22 12 48 de df 1f 59 a8 |......l3".H...Y.| a9 95 21 fb 82 46 db ff c7 2a 3e 52 24 7c fd 4a |..!..F...*>R$|.J| b6 13 48 26 fb 8f 9e 54 6f 17 8f 5c 1f 85 e6 08 |..H&...To..\....| 93 0d f2 b3 be 7e 8a ad d0 1a 05 1c 7c 21 b3 43 |.....~......|!.C| 4a de 3a df 43 e1 27 cc 42 05 30 3d ae 8d 48 e4 |J.:.C.'.B.0=..H.| 49 7f d1 87 4a 60 9d 77 74 e1 79 29 f6 a4 17 2b |I...J`.wt.y)...+| 1a 81 7f 8f 3d bb 49 88 a1 a5 44 5c 58 ab 30 55 |....=.I...D\X.0U| 97 92 c8 ba 56 47 82 53 f6 de ea a5 64 96 13 42 |....VG.S....d..B| be 1c 13 61 b5 4b 05 bf 6d 5b b2 98 a6 8c 7d c4 |...a.K..m[....}.| de 0d 55 f8 43 b7 37 00 c0 38 f1 68 fa 28 a6 a5 |..U.C.7..8.h.(..| 59 c2 fe c2 a6 0d be c7 96 2e f9 89 09 ea d5 8f |Y...............| 5f d3 52 99 16 ac f2 97 e3 47 9d dd dd 04 b6 2f |_.R......G...../|
- 2
- Certificate #0
- Signer
- 1
- unnamed
- #0
- C: US
- O: VeriSign, Inc.
- OU: VeriSign Trust Network
- OU: Terms of use at https://www.verisign.com/rpa (c)10
- CN: VeriSign Class 3 Code Signing 2010 CA
- 6E:D5:E8:BA:A9:07:62:57:86:24:52:26:04:3A:60:35
- #0
- SHA1: nil
- #3
- contentType: 1.3.6.1.4.1.311.2.1.4
- 1.3.6.1.4.1.311.2.1.11: msCodeInd
- messageDigest:
75 ef b5 50 2a 8f 6a d8 4a 85 56 8f e4 02 5e ae |u..P*.j.J.V...^.| 1e 15 0d c6 |.... |
- 1.3.6.1.4.1.311.2.1.12
00 4c 00 49 00 4e 00 45 |.L.I.N.E |
: http://line.naver.jp
- rsaEncryption:
60 a4 41 15 10 43 71 77 f9 c2 03 34 e7 64 39 75 |`.A..Cqw...4.d9u| 63 1f 4a 1a ad ec f9 30 6c e8 25 3e 7a 3b 12 e4 |c.J....0l.%>z;..| 4f 75 f4 7f fa 88 c2 e3 0e 98 06 df eb 33 23 62 |Ou...........3#b| 9b 28 d1 ec f4 a1 b0 4d cc 79 be be 10 43 9f 32 |.(.....M.y...C.2| 06 0a d3 44 8a 7b ac fd f4 6b 42 49 22 9b 48 e7 |...D.{...kBI".H.| 36 db 83 40 95 bf 8c cd 8b 7a 3c 87 3f ee b4 ea |6..@.....z<.?...| 14 87 2d 21 24 e9 ef 7e 95 90 be 48 0f 22 f3 36 |..-!$..~...H.".6| 17 c9 20 9c ed 01 ce b1 1f ce 0a 2e 3c 94 36 12 |.. .........<.6.| 9f 77 49 3e 3c 7d d9 ce 52 5f 8d fb f2 9a 3c a9 |.wI><}..R_....<.| 7b ea 3a 76 bc e0 7b f8 23 6f 59 b1 bc ff 26 fb |{.:v..{.#oY...&.| ac 0e 30 96 3d 94 fd 00 4d 41 a4 de 00 e3 b6 87 |..0.=...MA......| 0d 40 fd 6c 6e c4 76 84 cd 57 4a 67 6c 4f 6c 6d |.@.ln.v..WJglOlm| 88 7f fe 1f 70 df bc 64 fa d5 84 7c 9c d2 5d 91 |....p..d...|..].| 94 94 9d 95 fb d7 ff 0a 2d 3d ba e7 18 b0 ef 27 |........-=.....'| 0c be 50 da 99 1a 10 04 46 08 a8 1a 37 51 7e 38 |..P.....F...7Q~8| 08 bf 2f 90 82 84 7f 07 03 af c2 4f 23 27 9f 1c |../........O#'..| - countersignature
- 1
- unnamed
- #0
- C: US
- O: Symantec Corporation
- CN: Symantec Time Stamping Services CA - G2
- 0E:CF:F4:38:C8:FE:BF:35:6E:04:D8:6A:98:1B:1A:50
- #0
- SHA1: nil
- #2
- contentType: pkcs7-data
- signingTime: 2013-11-26 10:42:46 UTC
- messageDigest:
e6 a1 dd 1e c5 30 55 87 26 61 63 97 4e f8 c1 b8 |.....0U.&ac.N...| f2 73 d7 fe |.s.. |
- rsaEncryption:
8b 8b 86 b7 b1 77 4b d4 ae 75 01 a7 c4 9f cf da |.....wK..u......| 6e de 17 d6 b8 1b 49 9d 93 e6 61 54 48 45 1f ac |n.....I...aTHE..| c0 5a dd a6 17 aa d7 36 e8 3f 82 07 58 b1 56 85 |.Z.....6.?..X.V.| 37 71 f1 a6 41 bb b9 f8 f6 e6 8b 10 2e 4e da a4 |7q..A........N..| 42 46 ec 6a ce 69 0b 44 8b 45 67 1e 5e 2a ec 1f |BF.j.i.D.Eg.^*..| 99 0f a9 1d 60 a3 9e c7 6a a8 df 93 39 1c ae 9b |....`...j...9...| 99 7f fd 2e 7c 57 c5 b3 02 68 90 61 9f 1c a5 ed |....|W...h.a....| 20 2a f8 46 f8 91 59 90 c6 17 a7 ae a8 0e 26 ea | *.F..Y.......&.| 92 e6 df 8f 87 af 8d 2c 2b 04 75 b8 2c 75 8c ec |.......,+.u.,u..| ba 59 d1 28 03 c4 e5 14 e4 33 00 36 1d f8 ae d6 |.Y.(.....3.6....| 35 01 04 e1 ee 1c 7b d4 f8 d5 f4 ad 60 2b c6 6e |5.....{.....`+.n| 62 c1 2d da 8a 21 57 49 7c 74 a3 20 56 1a 90 6d |b.-..!WI|t. V..m| f9 7e 81 ec 7c 1c 80 10 95 22 b8 47 64 6e 20 13 |.~..|....".Gdn .| b2 f6 0d c9 55 9f 50 5c fa 0c 74 be d5 36 8f 79 |....U.P\..t..6.y| e1 9d 56 5f 49 4c 57 d8 e9 77 dc e0 bc c2 f5 c1 |..V_ILW..w......| 0d 2e d4 33 12 0c 6b d0 13 fa b1 34 25 dc 0c d2 |...3..k....4%...|
- unnamed
- 1
| offset | size | type | comment | |
|---|---|---|---|---|
| 0 | 3995136 | EXE | 11/26/2013 10:39:43 | # |
| 15c1 | 15 | HTM | # | |
| 362418 | 55015 | PNG | (256 x 256) | # |
| 37f767 | 55015 | PNG | (256 x 256) | # |
| 3cf600 | 6176 | PKCS7 | Authenticode Signature | # |
![]() |
| Please donate some bucks to keep this site up and running: | |
| Ko-fi | |
|---|---|
| Yandex.Money | |
| Thank you! | |
[?] can't find file_offset of VA 0x6e9838
[?] can't find file_offset of VA 0x6e9988
[?] can't find file_offset of VA 0x6e9ad8
[?] can't find file_offset of VA 0x6e9c28
[?] can't find file_offset of VA 0x6e9d78
[?] can't find file_offset of VA 0x6e9ec8
[?] can't find file_offset of VA 0x6ea018
[?] can't find file_offset of VA 0x6ea168
[?] can't find file_offset of VA 0x6ea2b8
[?] can't find file_offset of VA 0x6ea408
[?] can't find file_offset of VA 0x6ea558
[?] can't find file_offset of VA 0x6ee0a0
[?] can't find file_offset of VA 0x6ee160
[?] ignoring invalid PEdump::BITMAPINFOHEADER
[?] can't find file_offset of VA 0x6e9780
[?] can't find file_offset of VA 0x6ea3f0
[?] can't find file_offset of VA 0x6e9ac0
[?] can't find file_offset of VA 0x6ea690
[?] can't find file_offset of VA 0x6e9970
[?] can't find file_offset of VA 0x6e9d60
[?] can't find file_offset of VA 0x6ea000
[?] can't find file_offset of VA 0x6e9c10
[?] can't find file_offset of VA 0x6ea150
[?] can't find file_offset of VA 0x6ea2a0
[?] can't find file_offset of VA 0x6ea540
[?] can't find file_offset of VA 0x6e9eb0
[?] can't find file_offset of VA 0x677e08
offset:( 0x )