| filename | ntoskrnl.exe | |
|---|---|---|
| size | 9931576 (0x978b38) | |
| md5 | c7d0d17d02ee85320c112987351bd25e | |
| type | PE32+ executable (native) x86-64, for MS Windows | |
| mimetype | application/x-dosexec | |
| clamav | OK | |
| virustotal | → scan with virustotal.com | |
| histogram | ||
MZ Header
| signature | MZ |
| bytes_in_last_block | 0x90 |
| blocks_in_file | 3 |
| num_relocs | 0 |
| header_paragraphs | 4 |
| min_extra_paragraphs | 0 |
| max_extra_paragraphs | 0xffff |
| ss | 0 |
| sp | 0xb8 |
| checksum | 0 |
| ip | 0 |
| cs | 0 |
| reloc_table_offset | 0x40 |
| overlay_number | 0 |
| reserved0 | 0 |
| oem_id | 0 |
| oem_info | 0 |
| reserved2 | 0 |
| reserved3 | 0 |
| reserved4 | 0 |
| reserved5 | 0 |
| reserved6 | 0 |
| lfanew | 0x108 |
Rich Header
| lib id | version | times used |
|---|---|---|
| 262 | 26715 | 9 |
| 257 | 26715 | 14 |
| 1 | 0 | 97 |
| 0 | 0 | 130 |
| 147 | 30729 | 27 |
| 269 | 26715 | 1286 |
| 261 | 26715 | 27 |
| 260 | 26715 | 125 |
| 259 | 26715 | 69 |
| 256 | 26715 | 1 |
| 255 | 26715 | 1 |
| 258 | 26715 | 1 |
DOS stub
00000000: 0e 1f ba 0e 00 b4 09 cd 21 b8 01 4c cd 21 54 68 |........!..L.!Th| 00000010: 69 73 20 70 72 6f 67 72 61 6d 20 63 61 6e 6e 6f |is program canno| 00000020: 74 20 62 65 20 72 75 6e 20 69 6e 20 44 4f 53 20 |t be run in DOS | 00000030: 6d 6f 64 65 2e 0d 0d 0a 24 00 00 00 00 00 00 00 |mode....$.......|
PE Header
Sections
Data Directory
| type | name | size | cp | |
|---|---|---|---|---|
| BITMAP | #1 | 153706 | 1252 | |
| BITMAP | #2 | 554 | 1252 | |
| BITMAP | #3 | 1294 | 1252 | |
| BITMAP | #4 | 214 | 1252 | |
| BITMAP | #5 | 15982 | 1252 | |
| BITMAP | #6 | 17704 | 1252 | |
| BITMAP | #7 | 1066 | 1252 | |
| RCDATA | FUNCTIONEXTENTLIST | 31000 | 1252 | |
| #1 | 17024 | 1252 | ||
| VERSION | #1 | 924 | 1252 |
| module_name | hint | ord | function_name |
|---|---|---|---|
| ext-ms-win-ntos-werkernel-l1-1-0.dll | 3 | WerLiveKernelInitSystem | |
| ext-ms-win-ntos-processparameters-l1-1-0.dll | PsDestroyProcessParameterOverrides | ||
| ext-ms-win-ntos-processparameters-l1-1-0.dll | 1 | PsGetProcessParameterOverrides | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 22 | NtQueryInformationTransaction | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 21 | NtQueryInformationResourceManager | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 20 | NtQueryInformationEnlistment | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 19 | NtPropagationFailed | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 18 | NtPropagationComplete | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 17 | NtPrepareEnlistment | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 16 | NtPrepareComplete | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 15 | NtPrePrepareEnlistment | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 14 | NtPrePrepareComplete | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 13 | NtOpenTransactionManager | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 12 | NtOpenTransaction | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 11 | NtOpenResourceManager | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 59 | TmPrepareEnlistment | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 9 | NtGetNotificationResourceManager | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 8 | NtFreezeTransactions | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 7 | NtEnumerateTransactionObject | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 6 | NtCreateTransactionManager | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 5 | NtCreateTransaction | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 4 | NtCreateResourceManager | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 23 | NtQueryInformationTransactionManager | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 2 | NtCommitTransaction | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 1 | NtCommitEnlistment | |
| ext-ms-win-ntos-tm-l1-1-0.dll | NtCommitComplete | ||
| ext-ms-win-ntos-tm-l1-1-0.dll | 51 | TmInitSystem | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 52 | TmInitSystemPhase2 | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 24 | NtReadOnlyEnlistment | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 25 | NtRecoverEnlistment | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 26 | NtRecoverResourceManager | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 60 | TmPropagationComplete | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 27 | NtRecoverTransactionManager | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 30 | NtRollbackComplete | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 31 | NtRollbackEnlistment | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 61 | TmPropagationFailed | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 62 | TmReadOnlyEnlistment | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 32 | NtRollbackTransaction | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 34 | NtSetInformationEnlistment | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 35 | NtSetInformationResourceManager | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 36 | NtSetInformationTransaction | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 39 | NtThawTransactions | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 40 | TmCancelPropagationRequest | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 41 | TmCommitComplete | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 42 | TmCommitEnlistment | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 43 | TmCommitTransaction | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 44 | TmCreateEnlistment | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 45 | TmCurrentTransaction | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 46 | TmDereferenceEnlistmentKey | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 47 | TmEnableCallbacks | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 48 | TmEndPropagationRequest | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 49 | TmFreezeTransactions | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 63 | TmRecoverEnlistment | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 64 | TmRecoverResourceManager | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 50 | TmGetTransactionId | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 53 | TmInitializeTransactionManager | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 65 | TmRecoverTransactionManager | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 66 | TmReferenceEnlistmentKey | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 67 | TmRenameTransactionManager | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 68 | TmRequestOutcomeEnlistment | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 69 | TmRollbackComplete | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 70 | TmRollbackEnlistment | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 54 | TmIsKTMCommitCoordinator | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 55 | TmIsTransactionActive | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 71 | TmRollbackTransaction | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 72 | TmSetCurrentTransaction | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 74 | TmSinglePhaseReject | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 75 | TmThawTransactions | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 56 | TmPrePrepareComplete | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 57 | TmPrePrepareEnlistment | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 3 | NtCreateEnlistment | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 58 | TmPrepareComplete | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 28 | NtRegisterProtocolAddressInformation | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 29 | NtRenameTransactionManager | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 37 | NtSetInformationTransactionManager | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 38 | NtSinglePhaseReject | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 33 | NtRollforwardTransactionManager | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 73 | TmShutdownSystem | |
| ext-ms-win-ntos-tm-l1-1-0.dll | 10 | NtOpenEnlistment | |
| HAL.dll | 55 | HalRequestIpiSpecifyVector | |
| HAL.dll | 51 | HalReportResourceUsage | |
| HAL.dll | 3 | HalAllProcessorsStarted | |
| HAL.dll | 47 | HalQueryRealTimeClock | |
| HAL.dll | 83 | KeQueryPerformanceCounter | |
| HAL.dll | 37 | HalInitializeBios | |
| HAL.dll | 36 | HalInitSystem | |
| HAL.dll | HalAcpiGetTableEx | ||
| HAL.dll | 50 | HalRegisterErrataCallbacks | |
| HAL.dll | 81 | KdHvComPortInUse | |
| HAL.dll | 46 | HalQueryMaximumProcessorCount | |
| HAL.dll | 19 | HalEnumerateProcessors | |
| HAL.dll | 84 | KeStallExecutionProcessor | |
| HAL.dll | 42 | HalPerformEndOfInterrupt | |
| HAL.dll | 64 | HalSetEnvironmentVariableEx | |
| HAL.dll | 27 | HalGetEnvironmentVariableEx | |
| HAL.dll | 45 | HalQueryEnvironmentVariableInfoEx | |
| HAL.dll | 72 | HalTranslateBusAddress | |
| HAL.dll | 33 | HalGetVectorInput | |
| HAL.dll | 31 | HalGetMessageRoutingInfo | |
| HAL.dll | 32 | HalGetProcessorIdByNtNumber | |
| HAL.dll | 57 | HalReturnToFirmware | |
| HAL.dll | 53 | HalRequestDeferredRecoveryServiceInterrupt | |
| HAL.dll | 63 | HalSetEnvironmentVariable | |
| HAL.dll | 26 | HalGetEnvironmentVariable | |
| HAL.dll | 38 | HalInitializeOnResume | |
| HAL.dll | 6 | HalAllocateCrashDumpRegisters | |
| HAL.dll | 30 | HalGetMemoryCachingRequirements | |
| HAL.dll | 43 | HalProcessorIdle | |
| HAL.dll | 28 | HalGetInterruptTargetInformation | |
| HAL.dll | 82 | KeFlushWriteBuffer | |
| HAL.dll | 25 | HalGetBusDataByOffset | |
| HAL.dll | 58 | HalSendNMI | |
| HAL.dll | 59 | HalSendSoftwareInterrupt | |
| HAL.dll | 39 | HalInitializeProcessor | |
| HAL.dll | 70 | HalStopProfileInterrupt | |
| HAL.dll | 69 | HalStartProfileInterrupt | |
| HAL.dll | 54 | HalRequestIpi | |
| HAL.dll | 17 | HalEnableInterrupt | |
| HAL.dll | 56 | HalRequestSoftwareInterrupt | |
| HAL.dll | 13 | HalDisableInterrupt | |
| HAL.dll | 10 | HalCalibratePerformanceCounter | |
| HAL.dll | 34 | HalHandleMcheck | |
| HAL.dll | 35 | HalHandleNMI | |
| HAL.dll | 40 | HalIsHyperThreadingEnabled | |
| HAL.dll | 67 | HalStartDynamicProcessor | |
| HAL.dll | 49 | HalRegisterDynamicProcessor | |
| HAL.dll | 68 | HalStartNextProcessor | |
| HAL.dll | 52 | HalRequestClockInterrupt | |
| HAL.dll | 61 | HalSetBusDataByOffset | |
| HAL.dll | 66 | HalSetRealTimeClock | |
| PSHED.dll | 8 | PshedFreeMemory | |
| PSHED.dll | 17 | PshedReadErrorRecord | |
| PSHED.dll | 4 | PshedClearErrorRecord | |
| PSHED.dll | PshedAllocateMemory | ||
| PSHED.dll | 10 | PshedGetBootErrorPacket | |
| PSHED.dll | 15 | PshedIsSystemWheaEnabled | |
| PSHED.dll | 13 | PshedInitialize | |
| PSHED.dll | 9 | PshedGetAllErrorSources | |
| PSHED.dll | 2 | PshedAttemptErrorRecovery | |
| PSHED.dll | 23 | PshedWriteErrorRecord | |
| PSHED.dll | 3 | PshedBugCheckSystem | |
| PSHED.dll | 7 | PshedFinalizeErrorRecord | |
| PSHED.dll | 1 | PshedArePluginsPresent | |
| PSHED.dll | 6 | PshedEnableErrorSource | |
| PSHED.dll | 5 | PshedDisableErrorSource | |
| PSHED.dll | 12 | PshedGetInjectionCapabilities | |
| PSHED.dll | 14 | PshedInjectError | |
| PSHED.dll | 20 | PshedSetErrorSourceInfo | |
| BOOTVID.dll | 6 | VidInitialize | |
| BOOTVID.dll | 2 | VidBufferToScreenBlt | |
| BOOTVID.dll | 8 | VidScreenToBufferBlt | |
| BOOTVID.dll | VidBitBlt | ||
| BOOTVID.dll | 7 | VidResetDisplay | |
| BOOTVID.dll | 3 | VidCleanUp | |
| BOOTVID.dll | 10 | VidSetTextColor | |
| BOOTVID.dll | 9 | VidSetScrollRegion | |
| BOOTVID.dll | 11 | VidSolidColorFill | |
| BOOTVID.dll | 4 | VidDisplayString | |
| BOOTVID.dll | 1 | VidBitBltEx | |
| ext-ms-win-ntos-clipsp-l1-1-0.dll | ClipSpInitialize | ||
| kdcom.dll | 4 | KdSetHiberRange | |
| kdcom.dll | 1 | KdPower | |
| kdcom.dll | 2 | KdReceivePacket | |
| kdcom.dll | 3 | KdSendPacket | |
| kdcom.dll | KdInitialize | ||
| ext-ms-win-ntos-kcminitcfg-l1-1-0.dll | 1 | CmSetInitMachineConfig | |
| ext-ms-win-ntos-kcminitcfg-l1-1-0.dll | CmCompleteInitMachineConfig | ||
| ext-ms-win-ntos-ksr-l1-1-2.dll | 19 | KsrQueryMetadata | |
| ext-ms-win-ntos-ksr-l1-1-2.dll | 3 | KsrEnumeratePersistedMemory | |
| ext-ms-win-ntos-ksr-l1-1-2.dll | 5 | KsrFreePersistedMemoryBlock | |
| ext-ms-win-ntos-ksr-l1-1-2.dll | 1 | KsrCleanupPageDatabase | |
| ext-ms-win-ntos-ksr-l1-1-2.dll | 8 | KsrInitPageDatabase | |
| ext-ms-win-ntos-ksr-l1-1-2.dll | 17 | KsrPersistMemoryWithMetadata | |
| ext-ms-win-ntos-ksr-l1-1-2.dll | 10 | KsrMdlToMemoryRuns | |
| ext-ms-win-ntos-ksr-l1-1-2.dll | 6 | KsrGetFirmwareInformation | |
| ext-ms-win-ntos-ksr-l1-1-2.dll | 9 | KsrInitSystem | |
| ext-ms-win-ntos-ksr-l1-1-2.dll | 4 | KsrFreePersistedMemory | |
| ext-ms-win-ntos-ksr-l1-1-2.dll | KsrClaimPersistedMemory | ||
| ext-ms-win-ntos-trace-l1-1-0.dll | 3 | TraceInitSystem | |
| ext-ms-win-ntos-ksecurity-l1-1-1.dll | QueryUpdateFileEaAllowedExt | ||
| ext-ms-win-ntos-werkernel-l1-1-1.dll | 4 | WerLiveKernelOpenDumpFile | |
| ext-ms-win-ntos-werkernel-l1-1-1.dll | WerLiveKernelCancelReport | ||
| ext-ms-win-ntos-werkernel-l1-1-1.dll | 2 | WerLiveKernelCreateReport | |
| ext-ms-win-ntos-werkernel-l1-1-1.dll | 5 | WerLiveKernelSubmitReport | |
| ext-ms-win-ntos-werkernel-l1-1-1.dll | 1 | WerLiveKernelCloseHandle | |
| ext-ms-win-ntos-ksigningpolicy-l1-1-0.dll | 2 | SeQuerySigningPolicyExt | |
| ext-ms-win-ntos-ucode-l1-1-0.dll | ExpMicrocodeInformationLoad | ||
| ext-ms-win-ntos-ucode-l1-1-0.dll | 1 | ExpMicrocodeInformationUnload | |
| ext-ms-win-ntos-ucode-l1-1-0.dll | 2 | ExpMicrocodeInitialization | |
| ext-ms-win-ntos-stateseparation-l1-1-0.dll | ExpInitializeStateSeparationPhase0 | ||
| ext-ms-win-ntos-stateseparation-l1-1-0.dll | 2 | ExpInitializeStateSeparationPhase2 | |
| ext-ms-win-ntos-stateseparation-l1-1-0.dll | 1 | ExpInitializeStateSeparationPhase1 | |
| ext-ms-win-fs-clfs-l1-1-0.dll | 51 | ClfsReserveAndAppendLog | |
| ext-ms-win-fs-clfs-l1-1-0.dll | 20 | ClfsGetLogFileInformation | |
| ext-ms-win-fs-clfs-l1-1-0.dll | 33 | ClfsMgmtDeregisterManagedClient | |
| ext-ms-win-fs-clfs-l1-1-0.dll | 6 | ClfsCloseLogFileObject | |
| ext-ms-win-fs-clfs-l1-1-0.dll | 35 | ClfsMgmtInstallPolicy | |
| ext-ms-win-fs-clfs-l1-1-0.dll | 37 | ClfsMgmtRegisterManagedClient | |
| ext-ms-win-fs-clfs-l1-1-0.dll | 7 | ClfsCreateLogFile | |
| ext-ms-win-fs-clfs-l1-1-0.dll | 27 | ClfsLsnEqual | |
| ext-ms-win-fs-clfs-l1-1-0.dll | 45 | ClfsReadLogRecord | |
| ext-ms-win-fs-clfs-l1-1-0.dll | 46 | ClfsReadNextLogRecord | |
| ext-ms-win-fs-clfs-l1-1-0.dll | 57 | ClfsTerminateReadLog | |
| ext-ms-win-fs-clfs-l1-1-0.dll | 29 | ClfsLsnInvalid | |
| ext-ms-win-fs-clfs-l1-1-0.dll | 16 | ClfsFlushToLsn | |
| ext-ms-win-fs-clfs-l1-1-0.dll | 24 | ClfsLsnContainer | |
| ext-ms-win-fs-clfs-l1-1-0.dll | 30 | ClfsLsnLess | |
| ext-ms-win-fs-clfs-l1-1-0.dll | 8 | ClfsCreateMarshallingArea | |
| ext-ms-win-fs-clfs-l1-1-0.dll | ClfsAddLogContainer | ||
| ext-ms-win-fs-clfs-l1-1-0.dll | 58 | ClfsWriteRestartArea | |
| ext-ms-win-fs-clfs-l1-1-0.dll | 10 | ClfsDeleteLogByPointer | |
| ext-ms-win-fs-clfs-l1-1-0.dll | 26 | ClfsLsnDifference | |
| ext-ms-win-fs-clfs-l1-1-0.dll | 12 | ClfsDeleteMarshallingArea | |
| ext-ms-win-fs-clfs-l1-1-0.dll | 48 | ClfsReadRestartArea | |
| CI.dll | CiInitialize | ||
| msrpc.sys | 16 | MesHandleFree | |
| msrpc.sys | 15 | MesEncodeIncrementalHandleCreate | |
| msrpc.sys | 17 | MesIncrementalHandleReset | |
| msrpc.sys | 45 | NdrMesTypeDecode3 | |
| msrpc.sys | 48 | NdrMesTypeEncode3 | |
| msrpc.sys | 11 | MesDecodeBufferHandleCreate | |
| msrpc.sys | 64 | RpcExceptionFilter | |
| cng.sys | 16 | BCryptExportKey |
StringTable 040904B0
| CompanyName | Microsoft Corporation |
| FileDescription | NT Kernel & System |
| FileVersion | 10.0.18362.900 (WinBuild.160101.0800) |
| InternalName | ntkrnlmp.exe |
| LegalCopyright | © Microsoft Corporation. All rights reserved. |
| OriginalFilename | ntkrnlmp.exe |
| ProductName | Microsoft® Windows® Operating System |
| ProductVersion | 10.0.18362.900 |
VS_FIXEDFILEINFO
| FileVersion | 10.0.18362.900 |
| ProductVersion | 10.0.18362.900 |
| StrucVersion | 0x10000 |
| FileFlagsMask | 0x3f |
| FileFlags | 0 |
| FileOS | 0x40004 |
| FileType | 1 |
| FileSubtype | 0 |
Signers (1)
issuer: /C=US/ST=Washington/L=Redmond/O=Microsoft Corporation/CN=Microsoft Windows Production PCA 2011
serial: 3300000266BD1580EFA75CD6D3000000000266
Certificates (2)
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
33:00:00:02:66:bd:15:80:ef:a7:5c:d6:d3:00:00:00:00:02:66
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=US, ST=Washington, L=Redmond, O=Microsoft Corporation, CN=Microsoft Windows Production PCA 2011
Validity
Not Before: Mar 4 18:30:39 2020 GMT
Not After : Mar 3 18:30:39 2021 GMT
Subject: C=US, ST=Washington, L=Redmond, O=Microsoft Corporation, CN=Microsoft Windows
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:e1:07:90:f2:aa:c2:ec:6a:ca:b7:50:7d:f3:fd:
0a:88:97:6c:4c:37:4b:69:22:30:9c:09:19:c0:94:
b2:db:b4:9d:8a:0e:0b:ce:6f:0b:80:a0:9b:af:28:
41:85:01:cb:4b:dc:aa:ce:3c:4f:8b:5c:8f:9c:ae:
35:61:82:cd:08:d7:1a:30:28:55:cb:5a:2b:e8:1f:
4a:b4:2f:21:ab:bd:31:4e:b1:8c:3d:87:4a:a9:56:
c3:ae:5b:ac:d3:da:7d:bd:cd:46:8a:2c:48:ae:7f:
31:c9:91:58:7f:57:a3:9e:da:d2:e0:d5:a6:e0:4f:
5c:ac:0f:04:27:45:ee:3d:8e:66:91:df:6f:db:d7:
1c:08:cc:cd:4b:94:50:e0:6f:2b:9f:b8:9a:b3:c2:
f4:cf:0f:33:a9:c0:a4:a2:9d:63:e4:45:f5:9c:f5:
c7:72:98:89:61:c6:0b:b3:e5:2a:53:28:fc:f4:1f:
16:04:e8:b2:4a:40:56:07:f9:9a:81:9a:42:e8:9a:
17:ab:db:d1:10:77:ab:85:f4:0e:b2:b9:36:77:ed:
48:62:67:26:7e:0a:d6:3c:03:c3:35:36:aa:fe:08:
af:0b:9d:15:4c:8a:96:c0:05:7b:02:18:ae:ca:6d:
59:13:c0:61:28:2d:3f:05:5f:79:8a:1b:51:53:b3:
1b:bd
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Extended Key Usage:
1.3.6.1.4.1.311.10.3.6, Code Signing
X509v3 Subject Key Identifier:
3A:56:AE:5F:28:E2:A8:57:5D:47:F3:9E:81:B1:96:9D:FF:49:A7:92
X509v3 Subject Alternative Name:
DirName:/OU=Microsoft Ireland Operations Limited/serialNumber=229879\+458362
X509v3 Authority Key Identifier:
A9:29:02:39:8E:16:C4:97:78:CD:90:F9:9E:4F:9A:E1:7C:55:AF:53
X509v3 CRL Distribution Points:
Full Name:
URI:http://www.microsoft.com/pkiops/crl/MicWinProPCA2011_2011-10-19.crl
Authority Information Access:
CA Issuers - URI:http://www.microsoft.com/pkiops/certs/MicWinProPCA2011_2011-10-19.crt
X509v3 Basic Constraints: critical
CA:FALSE
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
40:21:08:56:c3:c6:4d:d3:e4:d2:86:85:30:b6:55:46:d1:a1:
e8:95:5d:27:b7:d8:46:ae:6c:e7:88:1b:f9:25:69:90:f4:31:
6e:9a:61:2d:26:68:a2:48:5a:6f:36:6d:7c:ae:18:0d:41:f5:
e8:58:03:6d:58:5f:72:cd:76:40:ca:4a:d5:11:07:35:a8:12:
3e:f5:2c:2b:9f:c7:1c:af:3a:06:12:66:24:df:da:b8:2f:78:
29:a7:19:1a:fa:82:c0:cc:89:65:78:34:84:56:c6:79:1f:c1:
87:ee:46:66:28:a1:b0:8a:e6:bb:b7:5b:1d:38:c7:41:74:df:
81:6a:a3:8c:d8:40:d1:39:1d:8a:78:f4:70:b1:35:14:fb:1c:
32:26:18:97:d6:41:55:25:8c:0a:ef:56:db:3f:51:86:7f:c3:
21:b4:6a:7c:6c:8e:54:d2:c6:89:a6:d6:4d:3f:86:f8:94:6a:
64:01:13:20:42:46:96:68:5e:17:d3:e5:1d:4f:fa:df:af:b0:
3d:0e:30:f8:c8:62:2d:8a:ef:aa:75:17:6c:eb:99:e1:1e:08:
96:f1:ad:4e:66:51:a4:df:37:b7:e1:75:37:ea:71:ac:46:1e:
31:8e:07:4a:8d:f1:73:fa:e6:66:db:8f:1c:35:98:8f:45:dc:
f3:83:8e:41
Certificate:
Data:
Version: 3 (0x2)
Serial Number:
61:07:76:56:00:00:00:00:00:08
Signature Algorithm: sha256WithRSAEncryption
Issuer: C=US, ST=Washington, L=Redmond, O=Microsoft Corporation, CN=Microsoft Root Certificate Authority 2010
Validity
Not Before: Oct 19 18:41:42 2011 GMT
Not After : Oct 19 18:51:42 2026 GMT
Subject: C=US, ST=Washington, L=Redmond, O=Microsoft Corporation, CN=Microsoft Windows Production PCA 2011
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:dd:0c:bb:a2:e4:2e:09:e3:e7:c5:f7:96:69:bc:
00:21:bd:69:33:33:ef:ad:04:cb:54:80:ee:06:83:
bb:c5:20:84:d9:f7:d2:8b:f3:38:b0:ab:a4:ad:2d:
7c:62:79:05:ff:e3:4a:3f:04:35:20:70:e3:c4:e7:
6b:e0:9c:c0:36:75:e9:8a:31:dd:8d:70:e5:dc:37:
b5:74:46:96:28:5b:87:60:23:2c:bf:dc:47:a5:67:
f7:51:27:9e:72:eb:07:a6:c9:b9:1e:3b:53:35:7c:
e5:d3:ec:27:b9:87:1c:fe:b9:c9:23:09:6f:a8:46:
91:c1:6e:96:3c:41:d3:cb:a3:3f:5d:02:6a:4d:ec:
69:1f:25:28:5c:36:ff:fd:43:15:0a:94:e0:19:b4:
cf:df:c2:12:e2:c2:5b:27:ee:27:78:30:8b:5b:2a:
09:6b:22:89:53:60:16:2c:c0:68:1d:53:ba:ec:49:
f3:9d:61:8c:85:68:09:73:44:5d:7d:a2:54:2b:dd:
79:f7:15:cf:35:5d:6c:1c:2b:5c:ce:bc:9c:23:8b:
6f:6e:b5:26:d9:36:13:c3:4f:d6:27:ae:b9:32:3b:
41:92:2c:e1:c7:cd:77:e8:aa:54:4e:f7:5c:0b:04:
87:65:b4:43:18:a8:b2:e0:6d:19:77:ec:5a:24:fa:
48:03
Exponent: 65537 (0x10001)
X509v3 extensions:
1.3.6.1.4.1.311.21.1:
...
X509v3 Subject Key Identifier:
A9:29:02:39:8E:16:C4:97:78:CD:90:F9:9E:4F:9A:E1:7C:55:AF:53
1.3.6.1.4.1.311.20.2:
.
.S.u.b.C.A
X509v3 Key Usage:
Digital Signature, Certificate Sign, CRL Sign
X509v3 Basic Constraints: critical
CA:TRUE
X509v3 Authority Key Identifier:
D5:F6:56:CB:8F:E8:A2:5C:62:68:D1:3D:94:90:5B:D7:CE:9A:18:C4
X509v3 CRL Distribution Points:
Full Name:
URI:http://crl.microsoft.com/pki/crl/products/MicRooCerAut_2010-06-23.crl
Authority Information Access:
CA Issuers - URI:http://www.microsoft.com/pki/certs/MicRooCerAut_2010-06-23.crt
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
14:fc:7c:71:51:a5:79:c2:6e:b2:ef:39:3e:bc:3c:52:0f:6e:
2b:3f:10:13:73:fe:a8:68:d0:48:a6:34:4d:8a:96:05:26:ee:
31:46:90:61:79:d6:ff:38:2e:45:6b:f4:c0:e5:28:b8:da:1d:
8f:8a:db:09:d7:1a:c7:4c:0a:36:66:6a:8c:ec:1b:d7:04:90:
a8:18:17:a4:9b:b9:e2:40:32:36:76:c4:c1:5a:c6:bf:e4:04:
c0:ea:16:d3:ac:c3:68:ef:62:ac:dd:54:6c:50:30:58:a6:eb:
7c:fe:94:a7:4e:8e:f4:ec:7c:86:73:57:c2:52:21:73:34:5a:
f3:a3:8a:56:c8:04:da:07:09:ed:f8:8b:e3:ce:f4:7e:8e:ae:
f0:f6:0b:8a:08:fb:3f:c9:1d:72:7f:53:b8:eb:be:63:e0:e3:
3d:31:65:b0:81:e5:f2:ac:cd:16:a4:9f:3d:a8:b1:9b:c2:42:
d0:90:84:5f:54:1d:ff:89:ea:ba:1d:47:90:6f:b0:73:4e:41:
9f:40:9f:5f:e5:a1:2a:b2:11:91:73:8a:21:28:f0:ce:de:73:
39:5f:3e:ab:5c:60:ec:df:03:10:a8:d3:09:e9:f4:f6:96:85:
b6:7f:51:88:66:47:19:8d:a2:b0:12:3d:81:2a:68:05:77:bb:
91:4c:62:7b:b6:c1:07:c7:ba:7a:87:34:03:0e:4b:62:7a:99:
e9:ca:fc:ce:4a:37:c9:2d:a4:57:7c:1c:fe:3d:dc:b8:0f:5a:
fa:d6:c4:b3:02:85:02:3a:ea:b3:d9:6e:e4:69:21:37:de:81:
d1:f6:75:19:05:67:d3:93:57:5e:29:1b:39:c8:ee:2d:e1:cd:
e4:45:73:5b:d0:d2:ce:7a:ab:16:19:82:46:58:d0:5e:9d:81:
b3:67:af:6c:35:f2:bc:e5:3f:24:e2:35:a2:0a:75:06:f6:18:
56:99:d4:78:2c:d1:05:1b:eb:d0:88:01:9d:aa:10:f1:05:df:
ba:7e:2c:63:b7:06:9b:23:21:c4:f9:78:6c:e2:58:17:06:36:
2b:91:12:03:cc:a4:d9:f2:2d:ba:f9:94:9d:40:ed:18:45:f1:
ce:8a:5c:6b:3e:ab:03:d3:70:18:2a:0a:6a:e0:5f:47:d1:d5:
63:0a:32:f2:af:d7:36:1f:2a:70:5a:e5:42:59:08:71:4b:57:
ba:7e:83:81:f0:21:3c:f4:1c:c1:c5:b9:90:93:0e:88:45:93:
86:e9:b1:20:99:be:98:cb:c5:95:a4:5d:62:d6:a0:63:08:20:
bd:75:10:77:7d:3d:f3:45:b9:9f:97:9f:cb:57:80:6f:33:a9:
04:cf:77:a4:62:1c:59:7e
undefined method `first' for #
![]() |
| Please donate some bucks to keep this site up and running: | |
| Ko-fi | |
|---|---|
| Yandex.Money | |
| Thank you! | |
everything is OK
offset:( 0x )