MZ Header

Rich Header

DOS stub

00000000: 0e 1f ba 0e 00 b4 09 cd  21 b8 01 4c cd 21 54 68  |........!..L.!Th|
00000010: 69 73 20 70 72 6f 67 72  61 6d 20 63 61 6e 6e 6f  |is program canno|
00000020: 74 20 62 65 20 72 75 6e  20 69 6e 20 44 4f 53 20  |t be run in DOS |
00000030: 6d 6f 64 65 2e 0d 0d 0a  24 00 00 00 00 00 00 00  |mode....$.......|

PE Header

Packer / Compiler

Sections

Data Directory

Signers (1)

issuer: /O=VeriSign, Inc./OU=VeriSign Trust Network/OU=Terms of use at https:\/\/www.verisign.com\/rpa (c)01/CN=VeriSign Class 3 Code Signing 2001 CA
serial: 76C7797E0990E00600CB2F07A56F0315

Certificates (2)

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            6d:a2:7a:e9:29:2e:b6:dd:c0:a8:00:1d:47:6e:3b:69
        Signature Algorithm: sha1WithRSAEncryption
        Issuer: C=US, O=VeriSign, Inc., OU=Class 3 Public Primary Certification Authority
        Validity
            Not Before: Dec  3 00:00:00 2001 GMT
            Not After : Dec  2 23:59:59 2011 GMT
        Subject: O=VeriSign, Inc., OU=VeriSign Trust Network, OU=Terms of use at https:\/\/www.verisign.com\/rpa (c)01, CN=VeriSign Class 3 Code Signing 2001 CA
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                Public-Key: (1024 bit)
                Modulus:
                    00:c4:11:eb:75:ed:e7:98:84:9b:70:97:76:62:b1:
                    62:c1:de:73:3f:51:a6:bf:a0:d1:29:8e:8f:ec:1c:
                    17:da:e3:83:89:03:62:29:d2:10:58:ed:dd:65:09:
                    3c:e2:c4:c7:67:17:8b:ad:dc:5d:4d:c5:5e:67:18:
                    96:41:36:44:ba:f8:44:11:2f:b3:9f:7e:78:7f:b2:
                    2a:16:1e:6c:c8:05:00:d9:09:23:6c:28:cd:05:cc:
                    1e:db:6e:65:6a:d1:8f:02:e9:0c:1d:6e:87:6f:65:
                    ac:87:dd:06:46:8b:a0:5d:b5:62:4b:14:fb:2e:ed:
                    2c:8c:bc:40:c0:de:4e:6c:35
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Basic Constraints: critical
                CA:TRUE, pathlen:0
            X509v3 Certificate Policies: 
                Policy: 2.16.840.1.113733.1.7.23.3
                  CPS: https://www.verisign.com/rpa
            X509v3 Extended Key Usage: 
                TLS Web Client Authentication, Code Signing
            X509v3 Key Usage: critical
                Certificate Sign, CRL Sign
            Netscape Cert Type: 
                Object Signing CA
            X509v3 Subject Alternative Name: 
                DirName:/CN=Class3CA1-12
            X509v3 Subject Key Identifier: 
                35:2B:F4:64:73:90:9C:03:6D:03:0D:67:60:6B:DD:0B:10:3C:BB:61
            X509v3 CRL Distribution Points: 
                Full Name:
                  URI:http://crl.verisign.com/pca3.crl
    Signature Algorithm: sha1WithRSAEncryption
    Signature Value:
        22:58:6d:3a:64:7a:9d:0c:f6:60:52:82:ed:b0:b3:c4:96:2a:
        c5:33:a9:01:74:6f:b3:76:d7:84:0a:2c:64:27:97:30:ba:2a:
        b2:ba:81:99:bb:23:87:c5:33:91:80:2d:37:a7:dc:b4:8b:ce:
        ba:39:94:74:3b:90:7e:b6:26:12:63:70:21:16:fc:39:f6:99:
        6f:d8:9f:18:25:13:89:24:44:69:e0:94:6f:13:2c:8f:e7:b0:
        57:94:91:9a:fe:a3:f5:dd:15:03:f7:81:19:13:0d:f7:17:50:
        25:24:5f:ae:e0:93:84:d6:03:2d:90:71:37:15:da:31:d2:5a:
        c5:f8

Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            76:c7:79:7e:09:90:e0:06:00:cb:2f:07:a5:6f:03:15
        Signature Algorithm: sha1WithRSAEncryption
        Issuer: O=VeriSign, Inc., OU=VeriSign Trust Network, OU=Terms of use at https:\/\/www.verisign.com\/rpa (c)01, CN=VeriSign Class 3 Code Signing 2001 CA
        Validity
            Not Before: Sep 25 00:00:00 2003 GMT
            Not After : Feb 12 23:59:59 2004 GMT
        Subject: C=US, ST=NC, L=Raleigh, O=Epic Games Inc., OU=Digital ID Class 3 - Microsoft Software Validation v2, OU=Digital ID Class 3 - Microsoft Software Validation v2, CN=Epic Games Inc.
        Subject Public Key Info:
            Public Key Algorithm: rsaEncryption
                Public-Key: (1024 bit)
                Modulus:
                    00:aa:bd:75:ca:ce:45:ef:aa:da:7b:0a:d9:4c:67:
                    3d:64:27:1f:e8:52:e9:4f:1a:ec:6e:98:21:21:9e:
                    97:76:57:71:ce:c2:d4:eb:94:97:68:c7:07:a5:83:
                    2b:e8:87:a2:06:cc:8c:98:fc:3c:f3:35:5e:c2:cb:
                    3d:44:b4:be:b5:4e:08:26:f1:f2:61:5e:26:a9:a7:
                    21:1c:7e:79:51:fd:88:e3:49:25:26:d3:fa:5e:ba:
                    6b:3a:90:f2:51:94:d9:1a:4b:41:df:b0:39:43:7b:
                    7a:d0:ef:48:df:3a:8b:41:1f:23:58:a9:70:2c:a6:
                    3b:7d:e0:69:5e:a5:5e:94:9f
                Exponent: 65537 (0x10001)
        X509v3 extensions:
            X509v3 Basic Constraints: 
                CA:FALSE
            X509v3 Key Usage: critical
                Digital Signature
            X509v3 CRL Distribution Points: 
                Full Name:
                  URI:http://crl.verisign.com/Class3CodeSigning2001.crl
            X509v3 Certificate Policies: 
                Policy: 2.16.840.1.113733.1.7.23.3
                  CPS: https://www.verisign.com/rpa
            X509v3 Extended Key Usage: 
                Code Signing
            Authority Information Access: 
                OCSP - URI:http://ocsp.verisign.com
            X509v3 Authority Key Identifier: 
                35:2B:F4:64:73:90:9C:03:6D:03:0D:67:60:6B:DD:0B:10:3C:BB:61
            Netscape Cert Type: 
                Object Signing
            2.16.840.1.113733.1.6.7: 
                . 57ea6c40bafd099de4d850cfca7857d5
            1.3.6.1.4.1.311.2.1.27: 
                0.......
    Signature Algorithm: sha1WithRSAEncryption
    Signature Value:
        84:70:23:7c:d1:63:ce:d1:33:fc:6b:34:d7:37:88:33:44:16:
        fc:e9:52:33:1e:ec:9b:1a:24:f5:8c:aa:07:63:ad:1b:d6:76:
        0a:a8:44:0d:4f:e4:d8:8d:21:5d:a9:4b:f6:3e:86:cf:29:4f:
        e7:94:06:a9:b9:11:10:e3:f3:28:aa:94:a7:c8:5c:be:e9:55:
        bc:fe:a3:8c:b4:46:34:a7:52:89:8b:32:5c:d5:de:1f:49:81:
        f5:19:1e:45:8f:a7:a8:a8:b5:41:a5:08:ff:76:52:f9:29:0e:
        5e:0f:4a:c2:77:07:f8:59:8a:76:fc:4d:9a:31:78:1c:41:80:
        19:68
pkcs7-signedData
  • 1
    • MD5: nil
    • 1.3.6.1.4.1.311.2.1.4
      • #0
        • 1.3.6.1.4.1.311.2.1.15
          • :
            00 3c 00 3c 00 3c 00 4f  00 62 00 73 00 6f 00 6c  |.<.<.<.O.b.s.o.l|
            00 65 00 74 00 65 00 3e  00 3e 00 3e              |.e.t.e.>.>.>    |
        • MD5
          • ae 9e d0 9a 01 98 d8 ff  0d f0 7c 5f 29 60 63 75  |..........|_)`cu|
    • unnamed
      • Certificate #0
        • 2
          • 6D:A2:7A:E9:29:2E:B6:DD:C0:A8:00:1D:47:6E:3B:69
          • RSA-SHA1: nil
          • Issuer
            • C: US
            • O: VeriSign, Inc.
            • OU: Class 3 Public Primary Certification Authority
          • 2001-12-03 00:00:00 UTC: 2011-12-02 23:59:59 UTC
          • #4
            • O: VeriSign, Inc.
            • OU: VeriSign Trust Network
            • OU: Terms of use at https://www.verisign.com/rpa (c)01
            • CN: VeriSign Class 3 Code Signing 2001 CA
          • #5
            • rsaEncryption: nil
            • C4:11:EB:75:ED:E7:98:84:9B:70:97:76:62:B1:62:C1:
              DE:73:3F:51:A6:BF:A0:D1:29:8E:8F:EC:1C:17:DA:E3:
              83:89:03:62:29:D2:10:58:ED:DD:65:09:3C:E2:C4:C7:
              67:17:8B:AD:DC:5D:4D:C5:5E:67:18:96:41:36:44:BA:
              F8:44:11:2F:B3:9F:7E:78:7F:B2:2A:16:1E:6C:C8:05:
              00:D9:09:23:6C:28:CD:05:CC:1E:DB:6E:65:6A:D1:8F:
              02:E9:0C:1D:6E:87:6F:65:AC:87:DD:06:46:8B:A0:5D:
              B5:62:4B:14:FB:2E:ED:2C:8C:BC:40:C0:DE:4E:6C:35
              : 0x010001
          • X509v3 extensions
            • basicConstraints
              • true
              • true: 0
            • certificatePolicies
              • 2.16.840.1.113733.1.7.23.3
                • id-qt-cps: https://www.verisign.com/rpa
            • extendedKeyUsage
              • clientAuth: codeSigning
            • keyUsage: true, 6
            • nsCertType: 1
            • subjectAltName
              • CN: Class3CA1-12
            • subjectKeyIdentifier:
              35 2b f4 64 73 90 9c 03  6d 03 0d 67 60 6b dd 0b  |5+.ds...m..g`k..|
              10 3c bb 61                                       |.<.a            |
            • crlDistributionPoints: http://crl.verisign.com/pca3.crl
        • RSA-SHA1:
          22 58 6d 3a 64 7a 9d 0c  f6 60 52 82 ed b0 b3 c4  |"Xm:dz...`R.....|
          96 2a c5 33 a9 01 74 6f  b3 76 d7 84 0a 2c 64 27  |.*.3..to.v...,d'|
          97 30 ba 2a b2 ba 81 99  bb 23 87 c5 33 91 80 2d  |.0.*.....#..3..-|
          37 a7 dc b4 8b ce ba 39  94 74 3b 90 7e b6 26 12  |7......9.t;.~.&.|
          63 70 21 16 fc 39 f6 99  6f d8 9f 18 25 13 89 24  |cp!..9..o...%..$|
          44 69 e0 94 6f 13 2c 8f  e7 b0 57 94 91 9a fe a3  |Di..o.,...W.....|
          f5 dd 15 03 f7 81 19 13  0d f7 17 50 25 24 5f ae  |...........P%$_.|
          e0 93 84 d6 03 2d 90 71  37 15 da 31 d2 5a c5 f8  |.....-.q7..1.Z..|
      • #1
        • 2
          • 76:C7:79:7E:09:90:E0:06:00:CB:2F:07:A5:6F:03:15
          • RSA-SHA1: nil
          • #2
            • O: VeriSign, Inc.
            • OU: VeriSign Trust Network
            • OU: Terms of use at https://www.verisign.com/rpa (c)01
            • CN: VeriSign Class 3 Code Signing 2001 CA
          • 2003-09-25 00:00:00 UTC: 2004-02-12 23:59:59 UTC
          • Subject
            • C: US
            • ST: NC
            • L: Raleigh
            • O: Epic Games Inc.
            • OU: Digital ID Class 3 - Microsoft Software Validation v2
            • OU: Digital ID Class 3 - Microsoft Software Validation v2
            • CN: Epic Games Inc.
          • #5
            • rsaEncryption: nil
            • AA:BD:75:CA:CE:45:EF:AA:DA:7B:0A:D9:4C:67:3D:64:
              27:1F:E8:52:E9:4F:1A:EC:6E:98:21:21:9E:97:76:57:
              71:CE:C2:D4:EB:94:97:68:C7:07:A5:83:2B:E8:87:A2:
              06:CC:8C:98:FC:3C:F3:35:5E:C2:CB:3D:44:B4:BE:B5:
              4E:08:26:F1:F2:61:5E:26:A9:A7:21:1C:7E:79:51:FD:
              88:E3:49:25:26:D3:FA:5E:BA:6B:3A:90:F2:51:94:D9:
              1A:4B:41:DF:B0:39:43:7B:7A:D0:EF:48:DF:3A:8B:41:
              1F:23:58:A9:70:2C:A6:3B:7D:E0:69:5E:A5:5E:94:9F
              : 0x010001
          • X509v3 extensions
            • basicConstraints
              • nil
            • keyUsage: true, 0x80
            • crlDistributionPoints: http://crl.verisign.com/Class3CodeSigning2001.crl
            • certificatePolicies
              • 2.16.840.1.113733.1.7.23.3
                • id-qt-cps: https://www.verisign.com/rpa
            • extendedKeyUsage: codeSigning
            • authorityInfoAccess
              • OCSP: http://ocsp.verisign.com
            • authorityKeyIdentifier:
              35 2b f4 64 73 90 9c 03  6d 03 0d 67 60 6b dd 0b  |5+.ds...m..g`k..|
              10 3c bb 61                                       |.<.a            |
            • nsCertType: 0x10
            • 2.16.840.1.113733.1.6.7: 57ea6c40bafd099de4d850cfca7857d5
            • 1.3.6.1.4.1.311.2.1.27
              • false: true
        • RSA-SHA1:
          84 70 23 7c d1 63 ce d1  33 fc 6b 34 d7 37 88 33  |.p#|.c..3.k4.7.3|
          44 16 fc e9 52 33 1e ec  9b 1a 24 f5 8c aa 07 63  |D...R3....$....c|
          ad 1b d6 76 0a a8 44 0d  4f e4 d8 8d 21 5d a9 4b  |...v..D.O...!].K|
          f6 3e 86 cf 29 4f e7 94  06 a9 b9 11 10 e3 f3 28  |.>..)O.........(|
          aa 94 a7 c8 5c be e9 55  bc fe a3 8c b4 46 34 a7  |....\..U.....F4.|
          52 89 8b 32 5c d5 de 1f  49 81 f5 19 1e 45 8f a7  |R..2\...I....E..|
          a8 a8 b5 41 a5 08 ff 76  52 f9 29 0e 5e 0f 4a c2  |...A...vR.).^.J.|
          77 07 f8 59 8a 76 fc 4d  9a 31 78 1c 41 80 19 68  |w..Y.v.M.1x.A..h|
    • 1
      • unnamed
        • #0
          • O: VeriSign, Inc.
          • OU: VeriSign Trust Network
          • OU: Terms of use at https://www.verisign.com/rpa (c)01
          • CN: VeriSign Class 3 Code Signing 2001 CA
        • 76:C7:79:7E:09:90:E0:06:00:CB:2F:07:A5:6F:03:15
      • MD5: nil
      • #2
        • 1.3.6.1.4.1.311.2.1.12
          • nil
        • contentType: 1.3.6.1.4.1.311.2.1.4
        • 1.3.6.1.4.1.311.2.1.11: msCodeInd
        • messageDigest:
          ef 43 00 48 62 06 55 c4  35 78 52 08 86 55 a8 50  |.C.Hb.U.5xR..U.P|
      • rsaEncryption:
        69 40 dd 0e 53 9e 5d 26  d7 e5 11 6a 9f 56 bd c6  |i@..S.]&...j.V..|
        8a fd 79 bc 27 7d 09 aa  82 8f 6c 29 1f 30 8b c8  |..y.'}....l).0..|
        d3 5c e0 42 0f 67 24 81  b2 e2 5b 94 2c e6 52 e0  |.\.B.g$...[.,.R.|
        47 77 dd d5 4d 03 60 5b  13 d9 7c 4e 15 dd f7 3b  |Gw..M.`[..|N...;|
        f1 7e ab a6 b3 c1 fc d9  e4 48 0a ff fe ac 61 02  |.~.......H....a.|
        19 b9 58 b8 13 d0 5d f1  15 95 33 78 51 c9 3d b5  |..X...]...3xQ.=.|
        16 08 67 bb d4 39 37 e8  3f 5e 2f d0 55 84 fc d9  |..g..97.?^/.U...|
        6f db 6b f4 e2 d4 e3 cc  cf c8 a3 08 32 00 48 3c  |o.k.........2.H<|
offsetsizetypecomment
01142784DLL09/17/2003 21:31:13#
15c115HTM#
1170002728PKCS7Authenticode Signature#
offset:( 0x )size:( 0x )hotkeys:-=[]<>, offset/size fields are also editable

everything is OK