| filename | DG8Setup_1240E1.exe | |
|---|---|---|
| size | 130388512 (0x7c59220) | |
| md5 | c641cd28d67a24f70d1a24f616d9b96f | |
| type | PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed | |
| mimetype | application/x-dosexec | |
| clamav | OK | |
| virustotal | → scan with virustotal.com | |
| histogram | ||
MZ Header
| signature | MZ |
| bytes_in_last_block | 0x90 |
| blocks_in_file | 3 |
| num_relocs | 0 |
| header_paragraphs | 4 |
| min_extra_paragraphs | 0 |
| max_extra_paragraphs | 0xffff |
| ss | 0 |
| sp | 0xb8 |
| checksum | 0 |
| ip | 0 |
| cs | 0 |
| reloc_table_offset | 0x40 |
| overlay_number | 0 |
| reserved0 | 0 |
| oem_id | 0 |
| oem_info | 0 |
| reserved2 | 0 |
| reserved3 | 0 |
| reserved4 | 0 |
| reserved5 | 0 |
| reserved6 | 0 |
| lfanew | 0xf0 |
Rich Header
| lib id | version | times used |
|---|---|---|
| 126 | 50327 | 2 |
| 125 | 50727 | 36 |
| 110 | 50727 | 86 |
| 109 | 50727 | 192 |
| 123 | 50727 | 27 |
| 1 | 0 | 444 |
| 114 | 50727 | 121 |
| 124 | 50727 | 1 |
| 0 | 0 | 1 |
| 120 | 50727 | 1 |
DOS stub
00000000: 0e 1f ba 0e 00 b4 09 cd 21 b8 01 4c cd 21 54 68 |........!..L.!Th| 00000010: 69 73 20 70 72 6f 67 72 61 6d 20 63 61 6e 6e 6f |is program canno| 00000020: 74 20 62 65 20 72 75 6e 20 69 6e 20 44 4f 53 20 |t be run in DOS | 00000030: 6d 6f 64 65 2e 0d 0d 0a 24 00 00 00 00 00 00 00 |mode....$.......|
PE Header
Packer / Compiler
UPX Modified >> *$igBy Ahmed18 This file is packed with UPX. Analysis will be incomplete without unpacking. |
Sections
| name | va | vsize | raw size | flags | |
|---|---|---|---|---|---|
| UPX0 | 0x1000 | 0x75000 | 0 | RWX UDATA | |
| UPX1 | 0x76000 | 0x48000 | 0x47400 | RWX IDATA | |
| .rsrc | 0xbe000 | 0x15000 | 0x14400 | RW- IDATA |
Data Directory
| module_name | hint | ord | function_name |
|---|---|---|---|
| KERNEL32.DLL | LoadLibraryA | ||
| KERNEL32.DLL | GetProcAddress | ||
| KERNEL32.DLL | VirtualProtect | ||
| KERNEL32.DLL | VirtualAlloc | ||
| KERNEL32.DLL | VirtualFree | ||
| KERNEL32.DLL | ExitProcess | ||
| ADVAPI32.dll | RegOpenKeyW | ||
| COMCTL32.dll | _TrackMouseEvent | ||
| GDI32.dll | LineTo | ||
| IPHLPAPI.DLL | GetAdaptersInfo | ||
| MSIMG32.dll | AlphaBlend | ||
| ole32.dll | CoCreateGuid | ||
| OLEAUT32.dll | 2 | ||
| RPCRT4.dll | UuidToStringW | ||
| SHELL32.dll | 680 | ||
| SHLWAPI.dll | StrTrimW | ||
| USER32.dll | GetDC |
StringTable 000004B0
| CompanyName | 驱动之家 |
| FileDescription | 驱动精灵 |
| FileVersion | 2014,1,12,25 |
| InternalName | kpacket |
| LegalCopyright | 版权所有 (C) 驱动之家 |
| OriginalFilename | kpacket.exe |
| ProductName | 驱动精灵 |
| ProductVersion | 2014 |
StringTable 000004B0
| CompanyName | 驱动之家 |
| FileDescription | 驱动精灵 |
| FileVersion | 2014,1,12,25 |
| InternalName | kpacket |
| LegalCopyright | 版权所有 (C) 驱动之家 |
| OriginalFilename | kpacket.exe |
| ProductName | 驱动精灵 |
| ProductVersion | 2014 |
VS_FIXEDFILEINFO
| FileVersion | 8.0.807.1240 |
| ProductVersion | 7.0.112.2000 |
| StrucVersion | 0x10000 |
| FileFlagsMask | 0x3f |
| FileFlags | 0 |
| FileOS | 0x40004 |
| FileType | 2 |
| FileSubtype | 0 |
VS_FIXEDFILEINFO
| FileVersion | 2014.1.12.25 |
| ProductVersion | 7.0.112.2000 |
| StrucVersion | 0x10000 |
| FileFlagsMask | 0x3f |
| FileFlags | 0 |
| FileOS | 0x40004 |
| FileType | 2 |
| FileSubtype | 0 |
Signers (1)
issuer: /C=US/O=VeriSign, Inc./OU=VeriSign Trust Network/OU=Terms of use at https:\/\/www.verisign.com\/rpa (c)10/CN=VeriSign Class 3 Code Signing 2010 CA
serial: 1726FCA13E1CDB476C9C1BDD08BD0258
Certificates (4)
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
7e:93:eb:fb:7c:c6:4e:59:ea:4b:9a:77:d4:06:fc:3b
Signature Algorithm: sha1WithRSAEncryption
Issuer: C=ZA, ST=Western Cape, L=Durbanville, O=Thawte, OU=Thawte Certification, CN=Thawte Timestamping CA
Validity
Not Before: Dec 21 00:00:00 2012 GMT
Not After : Dec 30 23:59:59 2020 GMT
Subject: C=US, O=Symantec Corporation, CN=Symantec Time Stamping Services CA - G2
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:b1:ac:b3:49:54:4b:97:1c:12:0a:d8:25:79:91:
22:57:2a:6f:dc:b8:26:c4:43:73:6b:c2:bf:2e:50:
5a:fb:14:c2:76:8e:43:01:25:43:b4:a1:e2:45:f4:
e8:b7:7b:c3:74:cc:22:d7:b4:94:00:02:f7:4d:ed:
bf:b4:b7:44:24:6b:cd:5f:45:3b:d1:44:ce:43:12:
73:17:82:8b:69:b4:2b:cb:99:1e:ac:72:1b:26:4d:
71:1f:b1:31:dd:fb:51:61:02:53:a6:aa:f5:49:2c:
05:78:45:a5:2f:89:ce:e7:99:e7:fe:8c:e2:57:3f:
3d:c6:92:dc:4a:f8:7b:33:e4:79:0a:fb:f0:75:88:
41:9c:ff:c5:03:51:99:aa:d7:6c:9f:93:69:87:65:
29:83:85:c2:60:14:c4:c8:c9:3b:14:da:c0:81:f0:
1f:0d:74:de:92:22:ab:ca:f7:fb:74:7c:27:e6:f7:
4a:1b:7f:a7:c3:9e:2d:ae:8a:ea:a6:e6:aa:27:16:
7d:61:f7:98:71:11:bc:e2:50:a1:4b:e5:5d:fa:e5:
0e:a7:2c:9f:aa:65:20:d3:d8:96:e8:c8:7c:a5:4e:
48:44:ff:19:e2:44:07:92:0b:d7:68:84:80:5d:6a:
78:64:45:cd:60:46:7e:54:c1:13:7c:c5:79:f1:c9:
c1:71
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Key Identifier:
5F:9A:F5:6E:5C:CC:CC:74:9A:D4:DD:7D:EF:3F:DB:EC:4C:80:2E:DD
Authority Information Access:
OCSP - URI:http://ocsp.thawte.com
X509v3 Basic Constraints: critical
CA:TRUE, pathlen:0
X509v3 CRL Distribution Points:
Full Name:
URI:http://crl.thawte.com/ThawteTimestampingCA.crl
X509v3 Extended Key Usage:
Time Stamping
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Subject Alternative Name:
DirName:/CN=TimeStamp-2048-1
Signature Algorithm: sha1WithRSAEncryption
Signature Value:
03:09:9b:8f:79:ef:7f:59:30:aa:ef:68:b5:fa:e3:09:1d:bb:
4f:82:06:5d:37:5f:a6:52:9f:16:8d:ea:1c:92:09:44:6e:f5:
6d:eb:58:7c:30:e8:f9:69:8d:23:73:0b:12:6f:47:a9:ae:39:
11:f8:2a:b1:9b:b0:1a:c3:8e:eb:59:96:00:ad:ce:0c:4d:b2:
d0:31:a6:08:5c:2a:7a:fc:e2:7a:1d:57:4c:a8:65:18:e9:79:
40:62:25:96:6e:c7:c7:37:6a:83:21:08:8e:41:ea:dd:d9:57:
3f:1d:77:49:87:2a:16:06:5e:a6:38:6a:22:12:a3:51:19:83:
7e:b6
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
0e:cf:f4:38:c8:fe:bf:35:6e:04:d8:6a:98:1b:1a:50
Signature Algorithm: sha1WithRSAEncryption
Issuer: C=US, O=Symantec Corporation, CN=Symantec Time Stamping Services CA - G2
Validity
Not Before: Oct 18 00:00:00 2012 GMT
Not After : Dec 29 23:59:59 2020 GMT
Subject: C=US, O=Symantec Corporation, CN=Symantec Time Stamping Services Signer - G4
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:a2:63:0b:39:44:b8:bb:23:a7:44:49:bb:0e:ff:
a1:f0:61:0a:53:93:b0:98:db:ad:2c:0f:4a:c5:6e:
ff:86:3c:53:55:0f:15:ce:04:3f:2b:fd:a9:96:96:
d9:be:61:79:0b:5b:c9:4c:86:76:e5:e0:43:4b:22:
95:ee:c2:2b:43:c1:9f:d8:68:b4:8e:40:4f:ee:85:
38:b9:11:c5:23:f2:64:58:f0:15:32:6f:4e:57:a1:
ae:88:a4:02:d7:2a:1e:cd:4b:e1:dd:63:d5:17:89:
32:5b:b0:5e:99:5a:a8:9d:28:50:0e:17:ee:96:db:
61:3b:45:51:1d:cf:12:56:0b:92:47:fc:ab:ae:f6:
66:3d:47:ac:70:72:e7:92:e7:5f:cd:10:b9:c4:83:
64:94:19:bd:25:80:e1:e8:d2:22:a5:d0:ba:02:7a:
a1:77:93:5b:65:c3:ee:17:74:bc:41:86:2a:dc:08:
4c:8c:92:8c:91:2d:9e:77:44:1f:68:d6:a8:74:77:
db:0e:5b:32:8b:56:8b:33:bd:d9:63:c8:49:9d:3a:
c5:c5:ea:33:0b:d2:f1:a3:1b:f4:8b:be:d9:b3:57:
8b:3b:de:04:a7:7a:22:b2:24:ae:2e:c7:70:c5:be:
4e:83:26:08:fb:0b:bd:a9:4f:99:08:e1:10:28:72:
aa:cd
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Basic Constraints: critical
CA:FALSE
X509v3 Extended Key Usage: critical
Time Stamping
X509v3 Key Usage: critical
Digital Signature
Authority Information Access:
OCSP - URI:http://ts-ocsp.ws.symantec.com
CA Issuers - URI:http://ts-aia.ws.symantec.com/tss-ca-g2.cer
X509v3 CRL Distribution Points:
Full Name:
URI:http://ts-crl.ws.symantec.com/tss-ca-g2.crl
X509v3 Subject Alternative Name:
DirName:/CN=TimeStamp-2048-2
X509v3 Subject Key Identifier:
46:C6:69:A3:0E:4A:14:1E:D5:4C:DA:52:63:17:3F:5E:36:BC:0D:E6
X509v3 Authority Key Identifier:
5F:9A:F5:6E:5C:CC:CC:74:9A:D4:DD:7D:EF:3F:DB:EC:4C:80:2E:DD
Signature Algorithm: sha1WithRSAEncryption
Signature Value:
78:3b:b4:91:2a:00:4c:f0:8f:62:30:37:78:a3:84:27:07:6f:
18:b2:de:25:dc:a0:d4:94:03:aa:86:4e:25:9f:9a:40:03:1c:
dd:ce:e3:79:cb:21:68:06:da:b6:32:b4:6d:bf:f4:2c:26:63:
33:e4:49:64:6d:0d:e6:c3:67:0e:f7:05:a4:35:6c:7c:89:16:
c6:e9:b2:df:b2:e9:dd:20:c6:71:0f:cd:95:74:dc:b6:5c:de:
bd:37:1f:43:78:e6:78:b5:cd:28:04:20:a3:aa:f1:4b:c4:88:
29:91:0e:80:d1:11:fc:dd:5c:76:6e:4f:5e:0e:45:46:41:6e:
0d:b0:ea:38:9a:b1:3a:da:09:71:10:fc:1c:79:b4:80:7b:ac:
69:f4:fd:9c:b6:0c:16:2b:f1:7f:5b:09:3d:9b:5b:e2:16:ca:
13:81:6d:00:2e:38:0d:a8:29:8f:2c:e1:b2:f4:5a:a9:01:af:
15:9c:2c:2f:49:1b:db:22:bb:c3:fe:78:94:51:c3:86:b1:82:
88:5d:f0:3d:b4:51:a1:79:33:2b:2e:7b:b9:dc:20:09:13:71:
eb:6a:19:5b:cf:e8:a5:30:57:2c:89:49:3f:b9:cf:7f:c9:bf:
3e:22:68:63:53:9a:bd:69:74:ac:c5:1d:3c:7f:92:e0:c3:bc:
1c:d8:04:75
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
17:26:fc:a1:3e:1c:db:47:6c:9c:1b:dd:08:bd:02:58
Signature Algorithm: sha1WithRSAEncryption
Issuer: C=US, O=VeriSign, Inc., OU=VeriSign Trust Network, OU=Terms of use at https:\/\/www.verisign.com\/rpa (c)10, CN=VeriSign Class 3 Code Signing 2010 CA
Validity
Not Before: May 4 00:00:00 2012 GMT
Not After : Jul 3 23:59:59 2015 GMT
Subject: C=CN, ST=Henan, L=Zhengzhou, O=Mydrivers Information Technology Co., Ltd (ZhengZhou), OU=Digital ID Class 3 - Microsoft Software Validation v2, CN=Mydrivers Information Technology Co., Ltd (ZhengZhou)
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:df:61:ce:b0:ed:a0:c3:7d:75:55:e1:16:45:13:
fe:1b:78:17:f6:5a:41:c1:e6:7f:f8:16:9c:7d:01:
90:b5:9e:f4:02:c2:d5:36:18:6c:99:5b:4a:ca:c7:
06:28:90:5d:88:a1:16:ec:d1:b6:fe:f1:35:cb:a8:
be:47:06:db:82:7a:fe:a3:aa:16:05:fb:0c:40:a4:
3b:b1:24:3e:a1:56:3f:0d:dc:ee:ea:33:90:98:76:
e5:7b:52:4b:cd:a7:00:3a:5d:69:b3:d0:2c:d0:58:
14:20:f8:4b:45:78:d8:d0:9e:34:0d:1c:e8:6a:77:
40:f9:80:24:b3:27:cf:95:c6:26:be:cd:f2:52:0f:
8b:6b:f4:eb:16:7f:ce:dc:9f:3d:6a:a0:d6:7a:1e:
d9:c3:67:c4:61:ad:ba:78:26:5b:f5:0a:98:80:4e:
3f:1c:d6:15:9c:78:7f:b3:3c:37:be:cb:f3:82:cb:
27:12:df:4a:5e:01:75:00:dc:f5:ba:8d:3b:99:57:
44:12:f5:52:51:1b:98:fc:86:ad:d3:a1:a7:0d:de:
4d:31:f3:34:94:b1:51:53:31:1f:42:63:e1:86:eb:
43:22:84:c1:d9:75:4c:8d:84:92:1c:08:aa:07:8f:
13:dd:d5:5a:88:31:22:11:c6:da:6a:80:b6:d6:4f:
66:f9
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Basic Constraints:
CA:FALSE
X509v3 Key Usage: critical
Digital Signature
X509v3 CRL Distribution Points:
Full Name:
URI:http://csc3-2010-crl.verisign.com/CSC3-2010.crl
X509v3 Certificate Policies:
Policy: 2.16.840.1.113733.1.7.23.3
CPS: https://www.verisign.com/rpa
X509v3 Extended Key Usage:
Code Signing
Authority Information Access:
OCSP - URI:http://ocsp.verisign.com
CA Issuers - URI:http://csc3-2010-aia.verisign.com/CSC3-2010.cer
X509v3 Authority Key Identifier:
CF:99:A9:EA:7B:26:F4:4B:C9:8E:8F:D7:F0:05:26:EF:E3:D2:A7:9D
Netscape Cert Type:
Object Signing
1.3.6.1.4.1.311.2.1.27:
0.......
Signature Algorithm: sha1WithRSAEncryption
Signature Value:
d3:82:e1:ec:20:66:55:73:08:f9:7a:7d:2d:e0:86:72:93:be:
48:33:63:50:a8:58:63:1e:76:4d:a2:94:af:b2:6f:2b:bc:68:
c2:9b:fe:48:e7:0c:f0:8c:b1:79:56:a7:1c:7d:5d:13:73:0f:
01:29:65:81:52:1c:ac:2c:b9:98:31:2d:af:bb:95:cf:cb:fc:
00:65:80:64:e8:3e:12:22:43:cc:50:42:35:e7:f5:ca:cc:14:
b6:ef:11:d9:c3:53:54:1b:e8:5c:c1:ca:93:f6:63:a5:90:9f:
71:b3:be:6f:8e:cf:e1:a2:15:94:15:a3:ff:83:25:4e:81:1b:
ba:22:61:79:97:ce:3c:28:d6:ad:ab:9a:b8:22:9d:81:42:f8:
ec:70:7f:39:c9:58:29:9e:0b:ff:bb:b2:bd:1a:f0:de:81:15:
f7:bb:5e:1a:2d:9b:2a:81:45:1b:96:6a:7c:49:4c:0a:4d:ef:
ad:ae:6c:f7:e6:6b:60:fa:d1:4c:f3:b1:7a:60:2b:60:9c:97:
f6:21:3a:f5:6f:5e:5f:27:91:d3:f2:9d:b1:9c:5f:d6:c6:66:
c1:4d:62:26:ed:23:06:4f:f4:89:db:48:70:0e:11:74:db:9f:
e7:73:db:63:c5:f6:07:e9:52:24:7d:40:ac:00:a4:0a:97:6c:
5e:93:cf:1b
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
52:00:e5:aa:25:56:fc:1a:86:ed:96:c9:d4:4b:33:c7
Signature Algorithm: sha1WithRSAEncryption
Issuer: C=US, O=VeriSign, Inc., OU=VeriSign Trust Network, OU=(c) 2006 VeriSign, Inc. - For authorized use only, CN=VeriSign Class 3 Public Primary Certification Authority - G5
Validity
Not Before: Feb 8 00:00:00 2010 GMT
Not After : Feb 7 23:59:59 2020 GMT
Subject: C=US, O=VeriSign, Inc., OU=VeriSign Trust Network, OU=Terms of use at https:\/\/www.verisign.com\/rpa (c)10, CN=VeriSign Class 3 Code Signing 2010 CA
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:f5:23:4b:5e:a5:d7:8a:bb:32:e9:d4:57:f7:ef:
e4:c7:26:7e:ad:19:98:fe:a8:9d:7d:94:f6:36:6b:
10:d7:75:81:30:7f:04:68:7f:cb:2b:75:1e:cd:1d:
08:8c:df:69:94:a7:37:a3:9c:7b:80:e0:99:e1:ee:
37:4d:5f:ce:3b:14:ee:86:d4:d0:f5:27:35:bc:25:
0b:38:a7:8c:63:9d:17:a3:08:a5:ab:b0:fb:cd:6a:
62:82:4c:d5:21:da:1b:d9:f1:e3:84:3b:8a:2a:4f:
85:5b:90:01:4f:c9:a7:76:10:7f:27:03:7c:be:ae:
7e:7d:c1:dd:f9:05:bc:1b:48:9c:69:e7:c0:a4:3c:
3c:41:00:3e:df:96:e5:c5:e4:94:71:d6:55:01:c7:
00:26:4a:40:3c:b5:a1:26:a9:0c:a7:6d:80:8e:90:
25:7b:cf:bf:3f:1c:eb:2f:96:fa:e5:87:77:c6:b5:
56:b2:7a:3b:54:30:53:1b:df:62:34:ff:1e:d1:f4:
5a:93:28:85:e5:4c:17:4e:7e:5b:fd:a4:93:99:7f:
df:cd:ef:a4:75:ef:ef:15:f6:47:e7:f8:19:72:d8:
2e:34:1a:a6:b4:a7:4c:7e:bd:bb:4f:0c:3d:57:f1:
30:d6:a6:36:8e:d6:80:76:d7:19:2e:a5:cd:7e:34:
2d:89
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Basic Constraints: critical
CA:TRUE, pathlen:0
X509v3 Certificate Policies:
Policy: 2.16.840.1.113733.1.7.23.3
CPS: https://www.verisign.com/cps
User Notice:
Explicit Text: https://www.verisign.com/rpa
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
1.3.6.1.5.5.7.1.12:
0_.].[0Y0W0U..image/gif0!0.0...+..............k...j.H.,{..0%.#http://logo.verisign.com/vslogo.gif
X509v3 CRL Distribution Points:
Full Name:
URI:http://crl.verisign.com/pca3-g5.crl
Authority Information Access:
OCSP - URI:http://ocsp.verisign.com
X509v3 Extended Key Usage:
TLS Web Client Authentication, Code Signing
X509v3 Subject Alternative Name:
DirName:/CN=VeriSignMPKI-2-8
X509v3 Subject Key Identifier:
CF:99:A9:EA:7B:26:F4:4B:C9:8E:8F:D7:F0:05:26:EF:E3:D2:A7:9D
X509v3 Authority Key Identifier:
7F:D3:65:A7:C2:DD:EC:BB:F0:30:09:F3:43:39:FA:02:AF:33:31:33
Signature Algorithm: sha1WithRSAEncryption
Signature Value:
56:22:e6:34:a4:c4:61:cb:48:b9:01:ad:56:a8:64:0f:d9:8c:
91:c4:bb:cc:0c:e5:ad:7a:a0:22:7f:df:47:38:4a:2d:6c:d1:
7f:71:1a:7c:ec:70:a9:b1:f0:4f:e4:0f:0c:53:fa:15:5e:fe:
74:98:49:24:85:81:26:1c:91:14:47:b0:4c:63:8c:bb:a1:34:
d4:c6:45:e8:0d:85:26:73:03:d0:a9:8c:64:6d:dc:71:92:e6:
45:05:60:15:59:51:39:fc:58:14:6b:fe:d4:a4:ed:79:6b:08:
0c:41:72:e7:37:22:06:09:be:23:e9:3f:44:9a:1e:e9:61:9d:
cc:b1:90:5c:fc:3d:d2:8d:ac:42:3d:65:36:d4:b4:3d:40:28:
8f:9b:10:cf:23:26:cc:4b:20:cb:90:1f:5d:8c:4c:34:ca:3c:
d8:e5:37:d6:6f:a5:20:bd:34:eb:26:d9:ae:0d:e7:c5:9a:f7:
a1:b4:21:91:33:6f:86:e8:58:bb:25:7c:74:0e:58:fe:75:1b:
63:3f:ce:31:7c:9b:8f:1b:96:9e:c5:53:76:84:5b:9c:ad:91:
fa:ac:ed:93:ba:5d:c8:21:53:c2:82:53:63:af:12:0d:50:87:
11:1b:3d:54:52:96:8a:2c:9c:3d:92:1a:08:9a:05:2e:c7:93:
a5:48:91:d3
pkcs7-signedData
- 1
- SHA1: nil
- 1.3.6.1.4.1.311.2.1.4
- #0
- 1.3.6.1.4.1.311.2.1.15
- :
00 3c 00 3c 00 3c 00 4f 00 62 00 73 00 6f 00 6c |.<.<.<.O.b.s.o.l| 00 65 00 74 00 65 00 3e 00 3e 00 3e |.e.t.e.>.>.> |
- :
- SHA1
9a 2b f9 61 cf b9 68 6f 04 2c 51 52 56 91 a1 e0 |.+.a..ho.,QRV...| 3a d6 99 64 |:..d |
- 1.3.6.1.4.1.311.2.1.15
- #0
- Certificates
- Certificate #0
- 2
- 7E:93:EB:FB:7C:C6:4E:59:EA:4B:9A:77:D4:06:FC:3B
- RSA-SHA1: nil
- Issuer
- C: ZA
- ST: Western Cape
- L: Durbanville
- O: Thawte
- OU: Thawte Certification
- CN: Thawte Timestamping CA
- 2012-12-21 00:00:00 UTC: 2020-12-30 23:59:59 UTC
- Subject
- C: US
- O: Symantec Corporation
- CN: Symantec Time Stamping Services CA - G2
- #5
- rsaEncryption: nil
- B1:AC:B3:49:54:4B:97:1C:12:0A:D8:25:79:91:22:57:
2A:6F:DC:B8:26:C4:43:73:6B:C2:BF:2E:50:5A:FB:14:
C2:76:8E:43:01:25:43:B4:A1:E2:45:F4:E8:B7:7B:C3:
74:CC:22:D7:B4:94:00:02:F7:4D:ED:BF:B4:B7:44:24:
6B:CD:5F:45:3B:D1:44:CE:43:12:73:17:82:8B:69:B4:
2B:CB:99:1E:AC:72:1B:26:4D:71:1F:B1:31:DD:FB:51:
61:02:53:A6:AA:F5:49:2C:05:78:45:A5:2F:89:CE:E7:
99:E7:FE:8C:E2:57:3F:3D:C6:92:DC:4A:F8:7B:33:E4:
79:0A:FB:F0:75:88:41:9C:FF:C5:03:51:99:AA:D7:6C:
9F:93:69:87:65:29:83:85:C2:60:14:C4:C8:C9:3B:14:
DA:C0:81:F0:1F:0D:74:DE:92:22:AB:CA:F7:FB:74:7C:
27:E6:F7:4A:1B:7F:A7:C3:9E:2D:AE:8A:EA:A6:E6:AA:
27:16:7D:61:F7:98:71:11:BC:E2:50:A1:4B:E5:5D:FA:
E5:0E:A7:2C:9F:AA:65:20:D3:D8:96:E8:C8:7C:A5:4E:
48:44:FF:19:E2:44:07:92:0B:D7:68:84:80:5D:6A:78:
64:45:CD:60:46:7E:54:C1:13:7C:C5:79:F1:C9:C1:71: 0x010001
- #6
- subjectKeyIdentifier:
5f 9a f5 6e 5c cc cc 74 9a d4 dd 7d ef 3f db ec |_..n\..t...}.?..| 4c 80 2e dd |L... |
- authorityInfoAccess
- OCSP: http://ocsp.thawte.com
- basicConstraints
- true
- true: 0
- crlDistributionPoints: http://crl.thawte.com/ThawteTimestampingCA.crl
- extendedKeyUsage: timeStamping
- keyUsage: true, 6
- subjectAltName
- CN: TimeStamp-2048-1
- subjectKeyIdentifier:
- RSA-SHA1:
03 09 9b 8f 79 ef 7f 59 30 aa ef 68 b5 fa e3 09 |....y..Y0..h....| 1d bb 4f 82 06 5d 37 5f a6 52 9f 16 8d ea 1c 92 |..O..]7_.R......| 09 44 6e f5 6d eb 58 7c 30 e8 f9 69 8d 23 73 0b |.Dn.m.X|0..i.#s.| 12 6f 47 a9 ae 39 11 f8 2a b1 9b b0 1a c3 8e eb |.oG..9..*.......| 59 96 00 ad ce 0c 4d b2 d0 31 a6 08 5c 2a 7a fc |Y.....M..1..\*z.| e2 7a 1d 57 4c a8 65 18 e9 79 40 62 25 96 6e c7 |.z.WL.e..y@b%.n.| c7 37 6a 83 21 08 8e 41 ea dd d9 57 3f 1d 77 49 |.7j.!..A...W?.wI| 87 2a 16 06 5e a6 38 6a 22 12 a3 51 19 83 7e b6 |.*..^.8j"..Q..~.|
- 2
- Certificate #1
- 2
- 0E:CF:F4:38:C8:FE:BF:35:6E:04:D8:6A:98:1B:1A:50
- RSA-SHA1: nil
- Issuer
- C: US
- O: Symantec Corporation
- CN: Symantec Time Stamping Services CA - G2
- 2012-10-18 00:00:00 UTC: 2020-12-29 23:59:59 UTC
- Subject
- C: US
- O: Symantec Corporation
- CN: Symantec Time Stamping Services Signer - G4
- #5
- rsaEncryption: nil
- A2:63:0B:39:44:B8:BB:23:A7:44:49:BB:0E:FF:A1:F0:
61:0A:53:93:B0:98:DB:AD:2C:0F:4A:C5:6E:FF:86:3C:
53:55:0F:15:CE:04:3F:2B:FD:A9:96:96:D9:BE:61:79:
0B:5B:C9:4C:86:76:E5:E0:43:4B:22:95:EE:C2:2B:43:
C1:9F:D8:68:B4:8E:40:4F:EE:85:38:B9:11:C5:23:F2:
64:58:F0:15:32:6F:4E:57:A1:AE:88:A4:02:D7:2A:1E:
CD:4B:E1:DD:63:D5:17:89:32:5B:B0:5E:99:5A:A8:9D:
28:50:0E:17:EE:96:DB:61:3B:45:51:1D:CF:12:56:0B:
92:47:FC:AB:AE:F6:66:3D:47:AC:70:72:E7:92:E7:5F:
CD:10:B9:C4:83:64:94:19:BD:25:80:E1:E8:D2:22:A5:
D0:BA:02:7A:A1:77:93:5B:65:C3:EE:17:74:BC:41:86:
2A:DC:08:4C:8C:92:8C:91:2D:9E:77:44:1F:68:D6:A8:
74:77:DB:0E:5B:32:8B:56:8B:33:BD:D9:63:C8:49:9D:
3A:C5:C5:EA:33:0B:D2:F1:A3:1B:F4:8B:BE:D9:B3:57:
8B:3B:DE:04:A7:7A:22:B2:24:AE:2E:C7:70:C5:BE:4E:
83:26:08:FB:0B:BD:A9:4F:99:08:E1:10:28:72:AA:CD: 0x010001
- X509v3 extensions
- basicConstraints
- true
- nil
- extendedKeyUsage: true, timeStamping
- keyUsage: true, 0x80
- authorityInfoAccess
- #0
- OCSP: http://ts-ocsp.ws.symantec.com
- caIssuers: http://ts-aia.ws.symantec.com/tss-ca-g2.cer
- #0
- crlDistributionPoints: http://ts-crl.ws.symantec.com/tss-ca-g2.crl
- subjectAltName
- CN: TimeStamp-2048-2
- subjectKeyIdentifier:
46 c6 69 a3 0e 4a 14 1e d5 4c da 52 63 17 3f 5e |F.i..J...L.Rc.?^| 36 bc 0d e6 |6... |
- authorityKeyIdentifier:
5f 9a f5 6e 5c cc cc 74 9a d4 dd 7d ef 3f db ec |_..n\..t...}.?..| 4c 80 2e dd |L... |
- basicConstraints
- RSA-SHA1:
78 3b b4 91 2a 00 4c f0 8f 62 30 37 78 a3 84 27 |x;..*.L..b07x..'| 07 6f 18 b2 de 25 dc a0 d4 94 03 aa 86 4e 25 9f |.o...%.......N%.| 9a 40 03 1c dd ce e3 79 cb 21 68 06 da b6 32 b4 |.@.....y.!h...2.| 6d bf f4 2c 26 63 33 e4 49 64 6d 0d e6 c3 67 0e |m..,&c3.Idm...g.| f7 05 a4 35 6c 7c 89 16 c6 e9 b2 df b2 e9 dd 20 |...5l|......... | c6 71 0f cd 95 74 dc b6 5c de bd 37 1f 43 78 e6 |.q...t..\..7.Cx.| 78 b5 cd 28 04 20 a3 aa f1 4b c4 88 29 91 0e 80 |x..(. ...K..)...| d1 11 fc dd 5c 76 6e 4f 5e 0e 45 46 41 6e 0d b0 |....\vnO^.EFAn..| ea 38 9a b1 3a da 09 71 10 fc 1c 79 b4 80 7b ac |.8..:..q...y..{.| 69 f4 fd 9c b6 0c 16 2b f1 7f 5b 09 3d 9b 5b e2 |i......+..[.=.[.| 16 ca 13 81 6d 00 2e 38 0d a8 29 8f 2c e1 b2 f4 |....m..8..).,...| 5a a9 01 af 15 9c 2c 2f 49 1b db 22 bb c3 fe 78 |Z.....,/I.."...x| 94 51 c3 86 b1 82 88 5d f0 3d b4 51 a1 79 33 2b |.Q.....].=.Q.y3+| 2e 7b b9 dc 20 09 13 71 eb 6a 19 5b cf e8 a5 30 |.{.. ..q.j.[...0| 57 2c 89 49 3f b9 cf 7f c9 bf 3e 22 68 63 53 9a |W,.I?.....>"hcS.| bd 69 74 ac c5 1d 3c 7f 92 e0 c3 bc 1c d8 04 75 |.it...<........u|
- 2
- Certificate #2
- 2
- 17:26:FC:A1:3E:1C:DB:47:6C:9C:1B:DD:08:BD:02:58
- RSA-SHA1: nil
- Issuer
- C: US
- O: VeriSign, Inc.
- OU: VeriSign Trust Network
- OU: Terms of use at https://www.verisign.com/rpa (c)10
- CN: VeriSign Class 3 Code Signing 2010 CA
- 2012-05-04 00:00:00 UTC: 2015-07-03 23:59:59 UTC
- Subject
- C: CN
- ST: Henan
- L: Zhengzhou
- O: Mydrivers Information Technology Co., Ltd (ZhengZhou)
- OU: Digital ID Class 3 - Microsoft Software Validation v2
- CN: Mydrivers Information Technology Co., Ltd (ZhengZhou)
- #5
- rsaEncryption: nil
- DF:61:CE:B0:ED:A0:C3:7D:75:55:E1:16:45:13:FE:1B:
78:17:F6:5A:41:C1:E6:7F:F8:16:9C:7D:01:90:B5:9E:
F4:02:C2:D5:36:18:6C:99:5B:4A:CA:C7:06:28:90:5D:
88:A1:16:EC:D1:B6:FE:F1:35:CB:A8:BE:47:06:DB:82:
7A:FE:A3:AA:16:05:FB:0C:40:A4:3B:B1:24:3E:A1:56:
3F:0D:DC:EE:EA:33:90:98:76:E5:7B:52:4B:CD:A7:00:
3A:5D:69:B3:D0:2C:D0:58:14:20:F8:4B:45:78:D8:D0:
9E:34:0D:1C:E8:6A:77:40:F9:80:24:B3:27:CF:95:C6:
26:BE:CD:F2:52:0F:8B:6B:F4:EB:16:7F:CE:DC:9F:3D:
6A:A0:D6:7A:1E:D9:C3:67:C4:61:AD:BA:78:26:5B:F5:
0A:98:80:4E:3F:1C:D6:15:9C:78:7F:B3:3C:37:BE:CB:
F3:82:CB:27:12:DF:4A:5E:01:75:00:DC:F5:BA:8D:3B:
99:57:44:12:F5:52:51:1B:98:FC:86:AD:D3:A1:A7:0D:
DE:4D:31:F3:34:94:B1:51:53:31:1F:42:63:E1:86:EB:
43:22:84:C1:D9:75:4C:8D:84:92:1C:08:AA:07:8F:13:
DD:D5:5A:88:31:22:11:C6:DA:6A:80:B6:D6:4F:66:F9: 0x010001
- X509v3 extensions
- basicConstraints
- nil
- keyUsage: true, 0x80
- crlDistributionPoints: http://csc3-2010-crl.verisign.com/CSC3-2010.crl
- certificatePolicies
- 2.16.840.1.113733.1.7.23.3
- id-qt-cps: https://www.verisign.com/rpa
- 2.16.840.1.113733.1.7.23.3
- extendedKeyUsage: codeSigning
- authorityInfoAccess
- #0
- OCSP: http://ocsp.verisign.com
- caIssuers: http://csc3-2010-aia.verisign.com/CSC3-2010.cer
- #0
- authorityKeyIdentifier:
cf 99 a9 ea 7b 26 f4 4b c9 8e 8f d7 f0 05 26 ef |....{&.K......&.| e3 d2 a7 9d |.... | - nsCertType: 0x10
- 1.3.6.1.4.1.311.2.1.27
- false: true
- basicConstraints
- RSA-SHA1:
d3 82 e1 ec 20 66 55 73 08 f9 7a 7d 2d e0 86 72 |.... fUs..z}-..r| 93 be 48 33 63 50 a8 58 63 1e 76 4d a2 94 af b2 |..H3cP.Xc.vM....| 6f 2b bc 68 c2 9b fe 48 e7 0c f0 8c b1 79 56 a7 |o+.h...H.....yV.| 1c 7d 5d 13 73 0f 01 29 65 81 52 1c ac 2c b9 98 |.}].s..)e.R..,..| 31 2d af bb 95 cf cb fc 00 65 80 64 e8 3e 12 22 |1-.......e.d.>."| 43 cc 50 42 35 e7 f5 ca cc 14 b6 ef 11 d9 c3 53 |C.PB5..........S| 54 1b e8 5c c1 ca 93 f6 63 a5 90 9f 71 b3 be 6f |T..\....c...q..o| 8e cf e1 a2 15 94 15 a3 ff 83 25 4e 81 1b ba 22 |..........%N..."| 61 79 97 ce 3c 28 d6 ad ab 9a b8 22 9d 81 42 f8 |ay..<(....."..B.| ec 70 7f 39 c9 58 29 9e 0b ff bb b2 bd 1a f0 de |.p.9.X).........| 81 15 f7 bb 5e 1a 2d 9b 2a 81 45 1b 96 6a 7c 49 |....^.-.*.E..j|I| 4c 0a 4d ef ad ae 6c f7 e6 6b 60 fa d1 4c f3 b1 |L.M...l..k`..L..| 7a 60 2b 60 9c 97 f6 21 3a f5 6f 5e 5f 27 91 d3 |z`+`...!:.o^_'..| f2 9d b1 9c 5f d6 c6 66 c1 4d 62 26 ed 23 06 4f |...._..f.Mb&.#.O| f4 89 db 48 70 0e 11 74 db 9f e7 73 db 63 c5 f6 |...Hp..t...s.c..| 07 e9 52 24 7d 40 ac 00 a4 0a 97 6c 5e 93 cf 1b |..R$}@.....l^...|
- 2
- Certificate #3
- 2
- 52:00:E5:AA:25:56:FC:1A:86:ED:96:C9:D4:4B:33:C7
- RSA-SHA1: nil
- Issuer
- C: US
- O: VeriSign, Inc.
- OU: VeriSign Trust Network
- OU: (c) 2006 VeriSign, Inc. - For authorized use only
- CN: VeriSign Class 3 Public Primary Certification Authority - G5
- 2010-02-08 00:00:00 UTC: 2020-02-07 23:59:59 UTC
- Subject
- C: US
- O: VeriSign, Inc.
- OU: VeriSign Trust Network
- OU: Terms of use at https://www.verisign.com/rpa (c)10
- CN: VeriSign Class 3 Code Signing 2010 CA
- #5
- rsaEncryption: nil
- F5:23:4B:5E:A5:D7:8A:BB:32:E9:D4:57:F7:EF:E4:C7:
26:7E:AD:19:98:FE:A8:9D:7D:94:F6:36:6B:10:D7:75:
81:30:7F:04:68:7F:CB:2B:75:1E:CD:1D:08:8C:DF:69:
94:A7:37:A3:9C:7B:80:E0:99:E1:EE:37:4D:5F:CE:3B:
14:EE:86:D4:D0:F5:27:35:BC:25:0B:38:A7:8C:63:9D:
17:A3:08:A5:AB:B0:FB:CD:6A:62:82:4C:D5:21:DA:1B:
D9:F1:E3:84:3B:8A:2A:4F:85:5B:90:01:4F:C9:A7:76:
10:7F:27:03:7C:BE:AE:7E:7D:C1:DD:F9:05:BC:1B:48:
9C:69:E7:C0:A4:3C:3C:41:00:3E:DF:96:E5:C5:E4:94:
71:D6:55:01:C7:00:26:4A:40:3C:B5:A1:26:A9:0C:A7:
6D:80:8E:90:25:7B:CF:BF:3F:1C:EB:2F:96:FA:E5:87:
77:C6:B5:56:B2:7A:3B:54:30:53:1B:DF:62:34:FF:1E:
D1:F4:5A:93:28:85:E5:4C:17:4E:7E:5B:FD:A4:93:99:
7F:DF:CD:EF:A4:75:EF:EF:15:F6:47:E7:F8:19:72:D8:
2E:34:1A:A6:B4:A7:4C:7E:BD:BB:4F:0C:3D:57:F1:30:
D6:A6:36:8E:D6:80:76:D7:19:2E:A5:CD:7E:34:2D:89: 0x010001
- X509v3 extensions
- basicConstraints
- true
- true: 0
- certificatePolicies
- 2.16.840.1.113733.1.7.23.3
- #0
- id-qt-cps: https://www.verisign.com/cps
- id-qt-unotice: https://www.verisign.com/rpa
- #0
- 2.16.840.1.113733.1.7.23.3
- keyUsage: true, 6
- 1.3.6.1.5.5.7.1.12
- image/gif
- SHA1:
8f e5 d3 1a 86 ac 8d 8e 6b c3 cf 80 6a d4 48 18 |........k...j.H.| 2c 7b 19 2e |,{.. | - http://logo.verisign.com/vslogo.gif
- SHA1:
- image/gif
- crlDistributionPoints: http://crl.verisign.com/pca3-g5.crl
- authorityInfoAccess
- OCSP: http://ocsp.verisign.com
- extendedKeyUsage
- clientAuth: codeSigning
- subjectAltName
- CN: VeriSignMPKI-2-8
- subjectKeyIdentifier:
cf 99 a9 ea 7b 26 f4 4b c9 8e 8f d7 f0 05 26 ef |....{&.K......&.| e3 d2 a7 9d |.... | - authorityKeyIdentifier:
7f d3 65 a7 c2 dd ec bb f0 30 09 f3 43 39 fa 02 |..e......0..C9..| af 33 31 33 |.313 |
- basicConstraints
- RSA-SHA1:
56 22 e6 34 a4 c4 61 cb 48 b9 01 ad 56 a8 64 0f |V".4..a.H...V.d.| d9 8c 91 c4 bb cc 0c e5 ad 7a a0 22 7f df 47 38 |.........z."..G8| 4a 2d 6c d1 7f 71 1a 7c ec 70 a9 b1 f0 4f e4 0f |J-l..q.|.p...O..| 0c 53 fa 15 5e fe 74 98 49 24 85 81 26 1c 91 14 |.S..^.t.I$..&...| 47 b0 4c 63 8c bb a1 34 d4 c6 45 e8 0d 85 26 73 |G.Lc...4..E...&s| 03 d0 a9 8c 64 6d dc 71 92 e6 45 05 60 15 59 51 |....dm.q..E.`.YQ| 39 fc 58 14 6b fe d4 a4 ed 79 6b 08 0c 41 72 e7 |9.X.k....yk..Ar.| 37 22 06 09 be 23 e9 3f 44 9a 1e e9 61 9d cc b1 |7"...#.?D...a...| 90 5c fc 3d d2 8d ac 42 3d 65 36 d4 b4 3d 40 28 |.\.=...B=e6..=@(| 8f 9b 10 cf 23 26 cc 4b 20 cb 90 1f 5d 8c 4c 34 |....#&.K ...].L4| ca 3c d8 e5 37 d6 6f a5 20 bd 34 eb 26 d9 ae 0d |.<..7.o. .4.&...| e7 c5 9a f7 a1 b4 21 91 33 6f 86 e8 58 bb 25 7c |......!.3o..X.%|| 74 0e 58 fe 75 1b 63 3f ce 31 7c 9b 8f 1b 96 9e |t.X.u.c?.1|.....| c5 53 76 84 5b 9c ad 91 fa ac ed 93 ba 5d c8 21 |.Sv.[........].!| 53 c2 82 53 63 af 12 0d 50 87 11 1b 3d 54 52 96 |S..Sc...P...=TR.| 8a 2c 9c 3d 92 1a 08 9a 05 2e c7 93 a5 48 91 d3 |.,.=.........H..|
- 2
- Certificate #0
- Signer
- 1
- unnamed
- #0
- C: US
- O: VeriSign, Inc.
- OU: VeriSign Trust Network
- OU: Terms of use at https://www.verisign.com/rpa (c)10
- CN: VeriSign Class 3 Code Signing 2010 CA
- 17:26:FC:A1:3E:1C:DB:47:6C:9C:1B:DD:08:BD:02:58
- #0
- SHA1: nil
- #3
- 1.3.6.1.4.1.311.2.1.12
- nil
- contentType: 1.3.6.1.4.1.311.2.1.4
- 1.3.6.1.4.1.311.2.1.11: msCodeInd
- messageDigest:
ae a5 4c 34 ae c8 db 99 e5 e6 1f bd b3 c2 61 f6 |..L4..........a.| 8e f3 ba c6 |.... |
- 1.3.6.1.4.1.311.2.1.12
- rsaEncryption:
53 48 7a c5 9a 7a 36 dd df 14 12 a0 7d 9b 10 42 |SHz..z6.....}..B| a3 f0 8f e6 09 ba 78 62 27 41 01 e9 1e 3d 61 d8 |......xb'A...=a.| ce 1d 19 09 50 cf 78 ce da 7f 50 fb c9 f5 ee 5d |....P.x...P....]| dc 15 82 58 d1 5f 26 c6 b7 d7 6d e5 21 d3 81 aa |...X._&...m.!...| 0e eb ad 87 96 5b 30 a0 97 be b6 67 ec b8 17 9a |.....[0....g....| 36 df 4b 47 6d 78 ad d5 1f 8a a7 3a 8a 81 d3 4b |6.KGmx.....:...K| 80 ea 95 fa 97 51 d6 39 6b d6 ea 5a ab 37 48 76 |.....Q.9k..Z.7Hv| 1e 8b d6 6f af fd 60 c1 3d dd 23 1e 25 bd 5a e4 |...o..`.=.#.%.Z.| de f4 97 92 77 8e e4 36 d1 37 7c f3 20 b1 0f ed |....w..6.7|. ...| 05 9f 5c 68 1c f8 a9 ef 65 d6 21 e2 9d 6b 9e 8e |..\h....e.!..k..| 2e 0a e4 4e 68 50 a8 de d0 49 5a 28 cf d4 75 42 |...NhP...IZ(..uB| 6d 27 c2 4f ff 44 45 0a 63 27 75 d2 0a 2b 79 9b |m'.O.DE.c'u..+y.| 80 f6 3b 03 ce f8 1d 3f f2 fc 2a 56 4b 5b 50 06 |..;....?..*VK[P.| e5 bb bd 5a b8 9c 8f 8a 09 67 dc 24 aa ae 27 9a |...Z.....g.$..'.| 65 03 3e 0d 48 d3 c0 ab ae 81 e1 e7 6d 82 01 54 |e.>.H.......m..T| 57 e5 cf bc d3 46 3d af 78 3e 3f 36 10 cf 98 14 |W....F=.x>?6....|
- countersignature
- 1
- unnamed
- #0
- C: US
- O: Symantec Corporation
- CN: Symantec Time Stamping Services CA - G2
- 0E:CF:F4:38:C8:FE:BF:35:6E:04:D8:6A:98:1B:1A:50
- #0
- SHA1: nil
- #2
- contentType: pkcs7-data
- signingTime: 2014-09-18 12:47:04 UTC
- messageDigest:
e6 05 7e 05 dd d4 18 67 43 e2 9c 6a ff 85 a8 0c |..~....gC..j....| fa 07 f8 75 |...u |
- rsaEncryption:
92 a7 5f 50 c7 84 d6 c2 92 fd b6 a8 0b 28 75 00 |.._P.........(u.| 09 fa 82 6f e3 7f c4 aa c9 14 59 48 c6 2f 84 9f |...o......YH./..| 71 8b b9 ca f1 d6 f3 18 0c 6f de a4 20 60 71 f1 |q........o.. `q.| 59 25 1f c5 3d 42 8e 26 f1 5b cb e1 e2 19 f5 28 |Y%..=B.&.[.....(| bb 99 16 4f 81 21 88 06 89 f4 33 e0 d4 ce 93 f8 |...O.!....3.....| a3 cd 28 06 ce 10 47 65 0d ae ed 26 f7 87 c9 c3 |..(...Ge...&....| 8e 27 9a e8 5b a5 19 f2 e5 25 f4 6a 3c fc f7 36 |.'..[....%.j<..6| 2e e7 dd c5 33 9d b4 2a e2 93 b2 b7 22 52 9f 03 |....3..*...."R..| 84 22 60 4c d1 f7 4f 81 72 13 6f e7 eb ac 17 cb |."`L..O.r.o.....| 3e 25 19 f4 fb 1f 68 27 e7 72 1b 52 e2 6c 12 90 |>%....h'.r.R.l..| a5 d4 8e 80 c4 17 82 38 2b 6e d6 ea 3f 4e 25 a4 |.......8+n..?N%.| 6f 96 24 6c 80 f7 81 04 3b cb 64 d1 04 7e 2a 36 |o.$l....;.d..~*6| 35 2e 00 9d 74 f3 01 78 31 d1 75 7a 78 b4 c5 69 |5...t..x1.uzx..i| 52 1f b0 6a 6b 10 3d 1d 84 c2 f6 c0 3e d2 1b 8f |R..jk.=.....>...| 2a 6d 62 69 b0 b3 8b 6e 4d 4d b9 af f7 60 0a ad |*mbi...nMM...`..| db e2 30 6f e8 67 9d d4 68 d6 fa 77 e4 a6 19 9b |..0o.g..h..w....|
- unnamed
- 1
| offset | size | type | comment | |
|---|---|---|---|---|
| 0 | 375808 | EXE | 01/05/1970 08:23:28 | # |
| 15c1 | 15 | HTM | # | |
| 49a74 | 54901 | PNG | (256 x 256) | # |
| 5bc00 | 130012704 | BIN | overlay data past EOF | # |
Scanning the drive for archives:
1 file, 130388512 bytes (125 MiB)
--
Type = PE
Physical Size = 130388512
CPU = x86
Characteristics = Executable 32-bit NoRelocs
Created = 1970-01-05 08:23:28
Headers Size = 4096
Checksum = 130408380
Name = kpacket.exe
Image Size = 864256
Section Alignment = 4096
File Alignment = 512
Code Size = 294912
Initialized Data Size = 86016
Uninitialized Data Size = 479232
Linker Version = 8.0
OS Version = 4.0
Image Version = 0.0
Subsystem Version = 4.0
Subsystem = Windows GUI
Stack Reserve = 1048576
Stack Commit = 4096
Heap Reserve = 1048576
Heap Commit = 4096
Image Base = 4194304
Comment = FileVersion: 8.0.807.1240
FileVersion: 2014,1,12,25
FileVersion: 2014.1.12.25
ProductVersion: 7.0.112.2000
ProductVersion: 2014
CompanyName: 驱动之家
FileDescription: 驱动精灵
InternalName: kpacket
LegalCopyright: 版权所有 (C) 驱动之家
OriginalFilename: kpacket.exe
ProductName: 驱动精灵
----
Path = [0]
Size = 130006192
Packed Size = 130006192
Virtual Size = 130006192
Offset = 375808
--
Path = [0]
Type = 7z
WARNINGS:
There are data after the end of archive
Offset = 14
Physical Size = 1444591
Tail Size = 128561587
Headers Size = 633
Method = LZMA:21
Solid = +
Blocks = 1
Date Time Attr Size Compressed Name
------------------- ----- ------------ ------------ ------------------------
..... 12201 1443958 install_res/110.jpg
..... 1053 install_res/400.png
..... 112496 install_res/401.png
..... 131 install_res/402.png
..... 111549 install_res/403.png
..... 51544 install_res/404.png
..... 796 install_res/405.png
..... 928 install_res/407.png
..... 205 install_res/408.png
..... 3016 install_res/409.png
..... 678 install_res/410.png
..... 311 install_res/411.png
..... 107 install_res/412.png
..... 426 install_res/413.png
..... 102047 install_res/414.png
..... 94264 install_res/415.png
..... 56761 install_res/416.png
..... 53444 install_res/417.png
..... 84975 install_res/418.png
..... 37620 install_res/419.png
..... 3015 install_res/420.png
..... 38568 install_res/430-140-002.png
..... 192005 install_res/501.png
..... 195511 install_res/501_.png
..... 192005 install_res/501_tyb.png
..... 193189 install_res/501_tzb.png
..... 195511 install_res/501_tzb_00.png
..... 196742 install_res/501_tzb_01.png
..... 16334 install_res/502.png
..... 5871 install_res/503.png
..... 1132 install_res/504.png
..... 463 install_res/63.png
..... 1104 install_res/64.png
..... 466 install_res/65.png
..... 586 install_res/66.png
..... 1329 install_res/67.png
..... 120 install_res/68.png
..... 2217 install_res/71.png
..... 1088 install_res/72.png
..... 320 install_res/301.bmp
..... 416 install_res/302.bmp
..... 132 clear_i.xml
..... 319 product.xml
..... 582 setup.xml
..... 555 config.ini
..... 61565 kdg.rtf
------------------- ----- ------------ ------------ ------------------------
2025697 1443958 46 files
Warnings: 1![]() |
| Please donate some bucks to keep this site up and running: | |
| Ko-fi | |
|---|---|
| Yandex.Money | |
| Thank you! | |
[?] ignoring invalid PEdump::BITMAPINFOHEADER
offset:( 0x )