Description The Carbon Black Threat Analysis Unit (TAU) discovered 34 unique vulnerable drivers (237 file hashes) accepting firmware access. Six allow kernel memory access. All give full control of the devices to non-admin users. By exploiting the vulnerable drivers, an attacker without the system privilege may erase/alter firmware, and/or elevate privileges. As of the time of writing in October 2023, the filenames of the vulnerable drivers have not been made public until now.
UUID : 9543c507-9b10-4de8-89b9-42a4f24c99ecCreated : 2023-11-02Author : Takahiro HaruyamaDownload
This download link contains the vulnerable driver!
Block FPCIE2COM.sys across your endpoints Add this driver to your block policy in minutes with MagicSword, threat-driven application control. Free for up to 100 endpoints.
Start Blocking for Free Commands sc.exe create FPCIE2COMsys binPath= C:\windows\temp\FPCIE2COMsys.sys type=kernel && sc.exe start FPCIE2COMsys
Use Case Privileges Operating System Elevate privileges kernel Windows 10
Detections Sigma 🛡️ Expand Names
detects loading using name only
Hashes
detects loading using hashes only
Resources https://blogs.vmware.com/security/2023/10/hunting-vulnerable-kernel-drivers.html Known Vulnerable Samples Download
Certificates Expand Certificate 7e93ebfb7cc64e59ea4b9a77d406fc3b Field Value ToBeSigned (TBS) MD5 d0785ad36e427c92b19f6826ab1e8020 ToBeSigned (TBS) SHA1 365b7a9c21bd9373e49052c3e7b3e4646ddd4d43 ToBeSigned (TBS) SHA256 c2abb7484da91a658548de089d52436175fdb760a1387d225611dc0613a1e2ff Subject C=US, O=Symantec Corporation, CN=Symantec Time Stamping Services CA , G2 ValidFrom 2012-12-21 00:00:00 ValidTo 2020-12-30 23:59:59 Signature 03099b8f79ef7f5930aaef68b5fae3091dbb4f82065d375fa6529f168dea1c9209446ef56deb587c30e8f9698d23730b126f47a9ae3911f82ab19bb01ac38eeb599600adce0c4db2d031a6085c2a7afce27a1d574ca86518e979406225966ec7c7376a8321088e41eaddd9573f1d7749872a16065ea6386a2212a35119837eb6 SignatureAlgorithmOID 1.2.840.113549.1.1.5 IsCertificateAuthority True SerialNumber 7e93ebfb7cc64e59ea4b9a77d406fc3b Version 3
Certificate 0ecff438c8febf356e04d86a981b1a50 Field Value ToBeSigned (TBS) MD5 e9d38360b914c8863f6cba3ee58764d3 ToBeSigned (TBS) SHA1 4cba8eae47b6bf76f20b3504b98b8f062694a89b ToBeSigned (TBS) SHA256 88901d86a4cc1f1bb193d08e1fb63d27452e63f83e228c657ab1a92e4ade3976 Subject C=US, O=Symantec Corporation, CN=Symantec Time Stamping Services Signer , G4 ValidFrom 2012-10-18 00:00:00 ValidTo 2020-12-29 23:59:59 Signature 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 SignatureAlgorithmOID 1.2.840.113549.1.1.5 IsCertificateAuthority False SerialNumber 0ecff438c8febf356e04d86a981b1a50 Version 3
Certificate 191a32cb759c97b8cfac118dd5127f49 Field Value ToBeSigned (TBS) MD5 788b61bd26da89253179e3de2cdb527f ToBeSigned (TBS) SHA1 7d06f16e7bf21bce4f71c2cb7a3e74351451bf69 ToBeSigned (TBS) SHA256 b3c925b4048c3f7c444d248a2b101186b57cba39596eb5dce0e17a4ee4b32f19 Subject C=US, O=Symantec Corporation, OU=Symantec Trust Network, CN=Symantec Class 3 Extended Validation Code Signing CA , G2 ValidFrom 2014-03-04 00:00:00 ValidTo 2024-03-03 23:59:59 Signature 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 SignatureAlgorithmOID 1.2.840.113549.1.1.11 IsCertificateAuthority True SerialNumber 191a32cb759c97b8cfac118dd5127f49 Version 3
Certificate 1b0403aaa7d4b40ea3c691a11217f378 Field Value ToBeSigned (TBS) MD5 b0d42f7686780a7cbd4e531dd96d18fb ToBeSigned (TBS) SHA1 e0d0c6dd0804554232caee87297decab44169257 ToBeSigned (TBS) SHA256 804da934d7c2508775d1c74452b0305f76af5bc4139ca251af3ce55b4be41651 Subject ??=TW, ??=Private Organization, serialNumber=80333472, C=TW, ST=Hsinchu, L=Chupei City, O=Feature Integration Technology Inc, CN=Feature Integration Technology Inc ValidFrom 2015-05-14 00:00:00 ValidTo 2017-05-13 23:59:59 Signature 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 SignatureAlgorithmOID 1.2.840.113549.1.1.11 IsCertificateAuthority False SerialNumber 1b0403aaa7d4b40ea3c691a11217f378 Version 3
Certificate 611993e400000000001c Field Value ToBeSigned (TBS) MD5 78a717e082dcc1cda3458d917e677d14 ToBeSigned (TBS) SHA1 4a872e0e51f9b304469cd1dedb496ee9b8b983a4 ToBeSigned (TBS) SHA256 317fa1d234ebc49040ebc5e8746f8997471496051b185a91bdd9dfbb23fab5f8 Subject C=US, O=VeriSign, Inc., OU=VeriSign Trust Network, OU=(c) 2006 VeriSign, Inc. , For authorized use only, CN=VeriSign Class 3 Public Primary Certification Authority , G5 ValidFrom 2011-02-22 19:25:17 ValidTo 2021-02-22 19:35:17 Signature 812a82168c34672be503eb347b8ca2a3508af45586f11e8c8eae7dee0319ce72951848ad6211fd20fd3f4706015ae2e06f8c152c4e3c6a506c0b36a3cf7a0d9c42bc5cf819d560e369e6e22341678c6883762b8f93a32ab57fbe59fba9c9b2268fcaa2f3821b983e919527978661ee5b5d076bcd86a8e26580a8e215e2b2be23056aba0cf347934daca48c077939c061123a050d89a3ec9f578984fbecca7c47661491d8b60f195de6b84aacbc47c8714396e63220a5dc7786fd3ce38b71db7b9b03fcb71d3264eb1652a043a3fa2ead59924e7cc7f233424838513a7c38c71b242228401e1a461f17db18f7f027356cb863d9cdb9645d2ba55eefc629b4f2c7f821cc04ba57fd01b6abc667f9e7d3997ff4f522fa72f5fdff3a1c423aa1f98018a5ee8d1cd4669e4501feaaeefffb178f30f7f1cd29c59decb5d549003d85b8cbbb933a276a49c030ae66c9f723283276f9a48356c848ce5a96aaa0cc0cc47fb48e97af6de35427c39f86c0d6e473089705dbd054625e0348c2d59f7fa7668cd09db04fd4d3985f4b7ac97fb22952d01280c70f54b61e67cdc6a06c110384d34875e72afeb03b6e0a3aa66b769905a3f177686133144706fc537f52bd92145c4a246a678caf8d90aad0f679211b93267cc3ce1ebd883892ae45c6196a4950b305f8ae59378a6a250394b1598150e8ba8380b72335f476b9671d5918ad208d94 SignatureAlgorithmOID 1.2.840.113549.1.1.5 IsCertificateAuthority True SerialNumber 611993e400000000001c Version 3
Imports Expand NTOSKRNL.EXE HAL.DLL WMILIB.SYS Imported Functions Expand ExAllocatePoolWithTag IoInitializeRemoveLockEx IoCreateDevice RtlInitUnicodeString _snwprintf InterlockedIncrement MmUnmapIoSpace WRITE_REGISTER_BUFFER_UCHAR MmMapIoSpace READ_REGISTER_BUFFER_ULONG RtlCopyUnicodeString IoAttachDeviceToDeviceStack KeSetEvent PoSetPowerState IoCreateSymbolicLink IoDeleteSymbolicLink ZwQueryValueKey ExAllocatePool memcpy ZwSetValueKey RtlAppendUnicodeToString ExFreePoolWithTag ZwClose ZwOpenKey IoIsWdmVersionAvailable swprintf atoi IoOpenDeviceRegistryKey IoDetachDevice IoDeleteDevice KeWaitForSingleObject IofCallDriver KeInitializeEvent ObfReferenceObject IoReleaseRemoveLockAndWaitEx IoReleaseRemoveLockEx IoAcquireRemoveLockEx RtlFreeUnicodeString ExFreePool memset IoFreeIrp ObfDereferenceObject IoAllocateIrp IoGetAttachedDeviceReference InterlockedDecrement IoBuildSynchronousFsdRequest PoCallDriver PoStartNextPowerIrp PoRequestPowerIrp ExQueueWorkItem IoWMIRegistrationControl KeTickCount KeBugCheckEx IofCompleteRequest KfAcquireSpinLock KfReleaseSpinLock KeGetCurrentIrql WRITE_PORT_ULONG READ_PORT_ULONG READ_PORT_UCHAR WRITE_PORT_UCHAR WmiCompleteRequest WmiSystemControl Exported Functions Expand Sections Expand .text .rdata .data PAGE INIT .rsrc .reloc Signature Expand {
"Certificates": [
{
"CertificateType": "CA",
"IsCA": true,
"IsCertificateAuthority": true,
"IsCodeSigning": false,
"SerialNumber": "7e93ebfb7cc64e59ea4b9a77d406fc3b",
"Signature": "03099b8f79ef7f5930aaef68b5fae3091dbb4f82065d375fa6529f168dea1c9209446ef56deb587c30e8f9698d23730b126f47a9ae3911f82ab19bb01ac38eeb599600adce0c4db2d031a6085c2a7afce27a1d574ca86518e979406225966ec7c7376a8321088e41eaddd9573f1d7749872a16065ea6386a2212a35119837eb6",
"SignatureAlgorithmOID": "1.2.840.113549.1.1.5",
"Subject": "C=US, O=Symantec Corporation, CN=Symantec Time Stamping Services CA , G2",
"TBS": {
"MD5": "d0785ad36e427c92b19f6826ab1e8020",
"SHA1": "365b7a9c21bd9373e49052c3e7b3e4646ddd4d43",
"SHA256": "c2abb7484da91a658548de089d52436175fdb760a1387d225611dc0613a1e2ff",
"SHA384": "eab4fe5ef90e0de4a6aa3a27769a5e879f588df5e4785aa4104debd1f81e19ea56d33e3a16e5facf99f68b5d8e3d287b"
},
"ValidFrom": "2012-12-21 00:00:00",
"ValidTo": "2020-12-30 23:59:59",
"Version": 3
},
{
"CertificateType": "Intermediate",
"IsCA": false,
"IsCertificateAuthority": false,
"IsCodeSigning": false,
"SerialNumber": "0ecff438c8febf356e04d86a981b1a50",
"Signature": "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",
"SignatureAlgorithmOID": "1.2.840.113549.1.1.5",
"Subject": "C=US, O=Symantec Corporation, CN=Symantec Time Stamping Services Signer , G4",
"TBS": {
"MD5": "e9d38360b914c8863f6cba3ee58764d3",
"SHA1": "4cba8eae47b6bf76f20b3504b98b8f062694a89b",
"SHA256": "88901d86a4cc1f1bb193d08e1fb63d27452e63f83e228c657ab1a92e4ade3976",
"SHA384": "e9f2a75334a9e336c5a4712eadee88d0374b0fdc273262f4e65c9040ad2793067cc076696db5279a478773485e285652"
},
"ValidFrom": "2012-10-18 00:00:00",
"ValidTo": "2020-12-29 23:59:59",
"Version": 3
},
{
"CertificateType": "CA",
"IsCA": true,
"IsCertificateAuthority": true,
"IsCodeSigning": true,
"SerialNumber": "191a32cb759c97b8cfac118dd5127f49",
"Signature": "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",
"SignatureAlgorithmOID": "1.2.840.113549.1.1.11",
"Subject": "C=US, O=Symantec Corporation, OU=Symantec Trust Network, CN=Symantec Class 3 Extended Validation Code Signing CA , G2",
"TBS": {
"MD5": "788b61bd26da89253179e3de2cdb527f",
"SHA1": "7d06f16e7bf21bce4f71c2cb7a3e74351451bf69",
"SHA256": "b3c925b4048c3f7c444d248a2b101186b57cba39596eb5dce0e17a4ee4b32f19",
"SHA384": "2955e28cb7ec0ea9730b499a0f189f9621eceb02591a9486b583f12bb845885a30d6a871826318a167cc5f06b274e58c"
},
"ValidFrom": "2014-03-04 00:00:00",
"ValidTo": "2024-03-03 23:59:59",
"Version": 3
},
{
"CertificateType": "Leaf (Code Signing)",
"IsCA": false,
"IsCertificateAuthority": false,
"IsCodeSigning": true,
"SerialNumber": "1b0403aaa7d4b40ea3c691a11217f378",
"Signature": "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",
"SignatureAlgorithmOID": "1.2.840.113549.1.1.11",
"Subject": "??=TW, ??=Private Organization, serialNumber=80333472, C=TW, ST=Hsinchu, L=Chupei City, O=Feature Integration Technology Inc, CN=Feature Integration Technology Inc",
"TBS": {
"MD5": "b0d42f7686780a7cbd4e531dd96d18fb",
"SHA1": "e0d0c6dd0804554232caee87297decab44169257",
"SHA256": "804da934d7c2508775d1c74452b0305f76af5bc4139ca251af3ce55b4be41651",
"SHA384": "e761d349002b37019e26ae9dbae64e1c055fe833e57984491987ec0b1e64dc79abaf150cbf1db76a41c192b1c98f46e4"
},
"ValidFrom": "2015-05-14 00:00:00",
"ValidTo": "2017-05-13 23:59:59",
"Version": 3
},
{
"CertificateType": "CA",
"IsCA": true,
"IsCertificateAuthority": true,
"IsCodeSigning": false,
"SerialNumber": "611993e400000000001c",
"Signature": "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",
"SignatureAlgorithmOID": "1.2.840.113549.1.1.5",
"Subject": "C=US, O=VeriSign, Inc., OU=VeriSign Trust Network, OU=(c) 2006 VeriSign, Inc. , For authorized use only, CN=VeriSign Class 3 Public Primary Certification Authority , G5",
"TBS": {
"MD5": "78a717e082dcc1cda3458d917e677d14",
"SHA1": "4a872e0e51f9b304469cd1dedb496ee9b8b983a4",
"SHA256": "317fa1d234ebc49040ebc5e8746f8997471496051b185a91bdd9dfbb23fab5f8",
"SHA384": "b71052da4eb9157c8c1a5d7f55df19d69b9128598b72fcca608e5b7cc7d64c43c5504b9c86355a6dc22ee40c88cc385c"
},
"ValidFrom": "2011-02-22 19:25:17",
"ValidTo": "2021-02-22 19:35:17",
"Version": 3
}
],
"CertificatesInfo": "",
"Signer": [
{
"Issuer": "C=US, O=Symantec Corporation, OU=Symantec Trust Network, CN=Symantec Class 3 Extended Validation Code Signing CA , G2",
"SerialNumber": "1b0403aaa7d4b40ea3c691a11217f378",
"Version": 1
}
],
"SignerInfo": ""
}
Download
Certificates Expand Certificate 7e93ebfb7cc64e59ea4b9a77d406fc3b Field Value ToBeSigned (TBS) MD5 d0785ad36e427c92b19f6826ab1e8020 ToBeSigned (TBS) SHA1 365b7a9c21bd9373e49052c3e7b3e4646ddd4d43 ToBeSigned (TBS) SHA256 c2abb7484da91a658548de089d52436175fdb760a1387d225611dc0613a1e2ff Subject C=US, O=Symantec Corporation, CN=Symantec Time Stamping Services CA , G2 ValidFrom 2012-12-21 00:00:00 ValidTo 2020-12-30 23:59:59 Signature 03099b8f79ef7f5930aaef68b5fae3091dbb4f82065d375fa6529f168dea1c9209446ef56deb587c30e8f9698d23730b126f47a9ae3911f82ab19bb01ac38eeb599600adce0c4db2d031a6085c2a7afce27a1d574ca86518e979406225966ec7c7376a8321088e41eaddd9573f1d7749872a16065ea6386a2212a35119837eb6 SignatureAlgorithmOID 1.2.840.113549.1.1.5 IsCertificateAuthority True SerialNumber 7e93ebfb7cc64e59ea4b9a77d406fc3b Version 3
Certificate 0ecff438c8febf356e04d86a981b1a50 Field Value ToBeSigned (TBS) MD5 e9d38360b914c8863f6cba3ee58764d3 ToBeSigned (TBS) SHA1 4cba8eae47b6bf76f20b3504b98b8f062694a89b ToBeSigned (TBS) SHA256 88901d86a4cc1f1bb193d08e1fb63d27452e63f83e228c657ab1a92e4ade3976 Subject C=US, O=Symantec Corporation, CN=Symantec Time Stamping Services Signer , G4 ValidFrom 2012-10-18 00:00:00 ValidTo 2020-12-29 23:59:59 Signature 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 SignatureAlgorithmOID 1.2.840.113549.1.1.5 IsCertificateAuthority False SerialNumber 0ecff438c8febf356e04d86a981b1a50 Version 3
Certificate 191a32cb759c97b8cfac118dd5127f49 Field Value ToBeSigned (TBS) MD5 788b61bd26da89253179e3de2cdb527f ToBeSigned (TBS) SHA1 7d06f16e7bf21bce4f71c2cb7a3e74351451bf69 ToBeSigned (TBS) SHA256 b3c925b4048c3f7c444d248a2b101186b57cba39596eb5dce0e17a4ee4b32f19 Subject C=US, O=Symantec Corporation, OU=Symantec Trust Network, CN=Symantec Class 3 Extended Validation Code Signing CA , G2 ValidFrom 2014-03-04 00:00:00 ValidTo 2024-03-03 23:59:59 Signature 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 SignatureAlgorithmOID 1.2.840.113549.1.1.11 IsCertificateAuthority True SerialNumber 191a32cb759c97b8cfac118dd5127f49 Version 3
Certificate 1b0403aaa7d4b40ea3c691a11217f378 Field Value ToBeSigned (TBS) MD5 b0d42f7686780a7cbd4e531dd96d18fb ToBeSigned (TBS) SHA1 e0d0c6dd0804554232caee87297decab44169257 ToBeSigned (TBS) SHA256 804da934d7c2508775d1c74452b0305f76af5bc4139ca251af3ce55b4be41651 Subject ??=TW, ??=Private Organization, serialNumber=80333472, C=TW, ST=Hsinchu, L=Chupei City, O=Feature Integration Technology Inc, CN=Feature Integration Technology Inc ValidFrom 2015-05-14 00:00:00 ValidTo 2017-05-13 23:59:59 Signature 297893e8612cdccf2bc5ff2cb810dc2a868aa1675d1598bb6a27f22010570e39e89167285c8dbba0abfeaa41a4329e1f21e62ef9a15bc94954e259e0292d9315670097fe51d0778cb97dbb990e7bcb9cfd894bf7e4289e8ec8f3fe1882d2cd1a8261a494537202c3c53e82cc96c3eddc00e2e611c21a9ad7564c13c72eef27d3b479b031a64d8afc84a3bdb76d85fa40f6bdf3f307733bcfee0e9d23e423a97162317cdff0f47e1a083c3d145ad574c54ef4e701d7e868da22b2e16149dc53a9451ce9cd46dc5e0a7b036d04fd73f601406b722fde98fe4f2acfadc670feb885f7e57d0d9e376cd967deb3998b966a57f79f5c49a68920c52ed74368379c1ad2 SignatureAlgorithmOID 1.2.840.113549.1.1.11 IsCertificateAuthority False SerialNumber 1b0403aaa7d4b40ea3c691a11217f378 Version 3
Certificate 611993e400000000001c Field Value ToBeSigned (TBS) MD5 78a717e082dcc1cda3458d917e677d14 ToBeSigned (TBS) SHA1 4a872e0e51f9b304469cd1dedb496ee9b8b983a4 ToBeSigned (TBS) SHA256 317fa1d234ebc49040ebc5e8746f8997471496051b185a91bdd9dfbb23fab5f8 Subject C=US, O=VeriSign, Inc., OU=VeriSign Trust Network, OU=(c) 2006 VeriSign, Inc. , For authorized use only, CN=VeriSign Class 3 Public Primary Certification Authority , G5 ValidFrom 2011-02-22 19:25:17 ValidTo 2021-02-22 19:35:17 Signature 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 SignatureAlgorithmOID 1.2.840.113549.1.1.5 IsCertificateAuthority True SerialNumber 611993e400000000001c Version 3
Imports Expand Imported Functions Expand IoDeleteDevice KeSetEvent swprintf RtlAppendUnicodeToString KeInitializeEvent atoi ZwSetValueKey KeReleaseSpinLock IoDetachDevice MmUnmapIoSpace PoSetPowerState RtlFreeUnicodeString ZwQueryValueKey ExAllocatePool ExFreePool MmMapIoSpace ZwClose IofCompleteRequest KeWaitForSingleObject IoAttachDeviceToDeviceStack IoIsWdmVersionAvailable IoCreateSymbolicLink RtlInitUnicodeString IoInitializeRemoveLockEx IoOpenDeviceRegistryKey IoCreateDevice IofCallDriver ZwOpenKey KeAcquireSpinLockRaiseToDpc IoAcquireRemoveLockEx IoReleaseRemoveLockEx IoReleaseRemoveLockAndWaitEx ObfReferenceObject _snwprintf IoBuildSynchronousFsdRequest IoFreeIrp IoGetAttachedDeviceReference IoAllocateIrp ObfDereferenceObject ExQueueWorkItem PoRequestPowerIrp PoStartNextPowerIrp PoCallDriver IoWMIRegistrationControl KeBugCheckEx ExFreePoolWithTag IoDeleteSymbolicLink RtlCopyUnicodeString ExAllocatePoolWithTag WmiSystemControl WmiCompleteRequest Exported Functions Expand Sections Expand .text .rdata .data .pdata PAGE INIT .rsrc .reloc Signature Expand {
"Certificates": [
{
"CertificateType": "CA",
"IsCA": true,
"IsCertificateAuthority": true,
"IsCodeSigning": false,
"SerialNumber": "7e93ebfb7cc64e59ea4b9a77d406fc3b",
"Signature": "03099b8f79ef7f5930aaef68b5fae3091dbb4f82065d375fa6529f168dea1c9209446ef56deb587c30e8f9698d23730b126f47a9ae3911f82ab19bb01ac38eeb599600adce0c4db2d031a6085c2a7afce27a1d574ca86518e979406225966ec7c7376a8321088e41eaddd9573f1d7749872a16065ea6386a2212a35119837eb6",
"SignatureAlgorithmOID": "1.2.840.113549.1.1.5",
"Subject": "C=US, O=Symantec Corporation, CN=Symantec Time Stamping Services CA , G2",
"TBS": {
"MD5": "d0785ad36e427c92b19f6826ab1e8020",
"SHA1": "365b7a9c21bd9373e49052c3e7b3e4646ddd4d43",
"SHA256": "c2abb7484da91a658548de089d52436175fdb760a1387d225611dc0613a1e2ff",
"SHA384": "eab4fe5ef90e0de4a6aa3a27769a5e879f588df5e4785aa4104debd1f81e19ea56d33e3a16e5facf99f68b5d8e3d287b"
},
"ValidFrom": "2012-12-21 00:00:00",
"ValidTo": "2020-12-30 23:59:59",
"Version": 3
},
{
"CertificateType": "Intermediate",
"IsCA": false,
"IsCertificateAuthority": false,
"IsCodeSigning": false,
"SerialNumber": "0ecff438c8febf356e04d86a981b1a50",
"Signature": "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",
"SignatureAlgorithmOID": "1.2.840.113549.1.1.5",
"Subject": "C=US, O=Symantec Corporation, CN=Symantec Time Stamping Services Signer , G4",
"TBS": {
"MD5": "e9d38360b914c8863f6cba3ee58764d3",
"SHA1": "4cba8eae47b6bf76f20b3504b98b8f062694a89b",
"SHA256": "88901d86a4cc1f1bb193d08e1fb63d27452e63f83e228c657ab1a92e4ade3976",
"SHA384": "e9f2a75334a9e336c5a4712eadee88d0374b0fdc273262f4e65c9040ad2793067cc076696db5279a478773485e285652"
},
"ValidFrom": "2012-10-18 00:00:00",
"ValidTo": "2020-12-29 23:59:59",
"Version": 3
},
{
"CertificateType": "CA",
"IsCA": true,
"IsCertificateAuthority": true,
"IsCodeSigning": true,
"SerialNumber": "191a32cb759c97b8cfac118dd5127f49",
"Signature": "3f5b19f3fa13d575382a5aee9f5aa04ca91dc5cc94eede15fef5106ea41ba56483541858c40b28a185c34e74e5ff897cfed5ed3cba719f5602268f162a88feb0a32722ce4be2388e00a63a865f9de53ea8de644941744121fd07c88417da1d653082cb264f39d60427a481b14b49c3238b7e02321827b7ab0bf31872b6a4ee67066f38a6588de0f17e5da460c6a8e5505fe0e8bae28f9958b6b5a0a876f1a2f11c8841727e52979b0a36998d50f701eb3ce7f0226ae5358c63368a1ab1d967665f971aefa8209df02fba6cced9948500f158f17dc97c22b5075d02c6e60bbfab9393ff27188e33367e5734f1c3af04c184f156b3e8878336f8d30a31dc6e2c6d",
"SignatureAlgorithmOID": "1.2.840.113549.1.1.11",
"Subject": "C=US, O=Symantec Corporation, OU=Symantec Trust Network, CN=Symantec Class 3 Extended Validation Code Signing CA , G2",
"TBS": {
"MD5": "788b61bd26da89253179e3de2cdb527f",
"SHA1": "7d06f16e7bf21bce4f71c2cb7a3e74351451bf69",
"SHA256": "b3c925b4048c3f7c444d248a2b101186b57cba39596eb5dce0e17a4ee4b32f19",
"SHA384": "2955e28cb7ec0ea9730b499a0f189f9621eceb02591a9486b583f12bb845885a30d6a871826318a167cc5f06b274e58c"
},
"ValidFrom": "2014-03-04 00:00:00",
"ValidTo": "2024-03-03 23:59:59",
"Version": 3
},
{
"CertificateType": "Leaf (Code Signing)",
"IsCA": false,
"IsCertificateAuthority": false,
"IsCodeSigning": true,
"SerialNumber": "1b0403aaa7d4b40ea3c691a11217f378",
"Signature": "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",
"SignatureAlgorithmOID": "1.2.840.113549.1.1.11",
"Subject": "??=TW, ??=Private Organization, serialNumber=80333472, C=TW, ST=Hsinchu, L=Chupei City, O=Feature Integration Technology Inc, CN=Feature Integration Technology Inc",
"TBS": {
"MD5": "b0d42f7686780a7cbd4e531dd96d18fb",
"SHA1": "e0d0c6dd0804554232caee87297decab44169257",
"SHA256": "804da934d7c2508775d1c74452b0305f76af5bc4139ca251af3ce55b4be41651",
"SHA384": "e761d349002b37019e26ae9dbae64e1c055fe833e57984491987ec0b1e64dc79abaf150cbf1db76a41c192b1c98f46e4"
},
"ValidFrom": "2015-05-14 00:00:00",
"ValidTo": "2017-05-13 23:59:59",
"Version": 3
},
{
"CertificateType": "CA",
"IsCA": true,
"IsCertificateAuthority": true,
"IsCodeSigning": false,
"SerialNumber": "611993e400000000001c",
"Signature": "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",
"SignatureAlgorithmOID": "1.2.840.113549.1.1.5",
"Subject": "C=US, O=VeriSign, Inc., OU=VeriSign Trust Network, OU=(c) 2006 VeriSign, Inc. , For authorized use only, CN=VeriSign Class 3 Public Primary Certification Authority , G5",
"TBS": {
"MD5": "78a717e082dcc1cda3458d917e677d14",
"SHA1": "4a872e0e51f9b304469cd1dedb496ee9b8b983a4",
"SHA256": "317fa1d234ebc49040ebc5e8746f8997471496051b185a91bdd9dfbb23fab5f8",
"SHA384": "b71052da4eb9157c8c1a5d7f55df19d69b9128598b72fcca608e5b7cc7d64c43c5504b9c86355a6dc22ee40c88cc385c"
},
"ValidFrom": "2011-02-22 19:25:17",
"ValidTo": "2021-02-22 19:35:17",
"Version": 3
}
],
"CertificatesInfo": "",
"Signer": [
{
"Issuer": "C=US, O=Symantec Corporation, OU=Symantec Trust Network, CN=Symantec Class 3 Extended Validation Code Signing CA , G2",
"SerialNumber": "1b0403aaa7d4b40ea3c691a11217f378",
"Version": 1
}
],
"SignerInfo": ""
}
Download
Certificates Expand Certificate 61204db4000000000027 Field Value ToBeSigned (TBS) MD5 8e3ffc222fbcebdbb8b23115ab259be7 ToBeSigned (TBS) SHA1 ee20bff28ffe13be731c294c90d6ded5aae0ec0e ToBeSigned (TBS) SHA256 59826b69bc8c28118c96323b627da59aaca0b142cc5d8bad25a8fcfd399aa821 Subject C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert High Assurance EV Root CA ValidFrom 2011-04-15 19:45:33 ValidTo 2021-04-15 19:55:33 Signature 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 SignatureAlgorithmOID 1.2.840.113549.1.1.5 IsCertificateAuthority True SerialNumber 61204db4000000000027 Version 3
Certificate 03829816b04a1318528ff1c4cc820cbe Field Value ToBeSigned (TBS) MD5 52811f961a802901aa7ba924b71f9ca8 ToBeSigned (TBS) SHA1 36cfa3cd654e77c4c2dff091b4761a49bc852087 ToBeSigned (TBS) SHA256 857e282813a570fead4ebce75d19f74ef2437ddc73253e9361a99cdb78b8d06a Subject ??=TW, ??=Private Organization, serialNumber=80333472, C=TW, L=Zhubei City, O=Feature Integration Technology Inc., CN=Feature Integration Technology Inc. ValidFrom 2020-05-18 00:00:00 ValidTo 2023-07-07 12:00:00 Signature 99ee78ec6e1fe71d32ee9a363441763f18bd1d43f94602e40e5fcd88db4081320c546941635210dd77ab1cc463e78155fbf6e46e18c9e835830a711d4deda38cf42a149d011bbbc065cf48bf511d759bfddd6424c3305706b688448f3cbc94ed432b92d6f0af70c9d8cbb9c3805fef1e409b3994bf7d11b9e0d2890fb8b9aa10e58a7cf5777851122293f5f4514797ba2d4416fe058ece0a42d2eadf871a57406e89990f237beb06a99989320b8898992ae21b50c8c71d535013636e66a22268613c32d8ca64fcf610f4e35f59b5e5935243f6eaf1503b38bc54194b244828a55ad3b5d23fc0912c568e81d166b5fee1e8823614c2fc14ae080da6ae347b33bb SignatureAlgorithmOID 1.2.840.113549.1.1.11 IsCertificateAuthority False SerialNumber 03829816b04a1318528ff1c4cc820cbe Version 3
Certificate 03f1b4e15f3a82f1149678b3d7d8475c Field Value ToBeSigned (TBS) MD5 83f5de89f641d0fbf60248e10a7b9534 ToBeSigned (TBS) SHA1 382a73a059a08698d6eb98c87e1b36fc750933a4 ToBeSigned (TBS) SHA256 eec58131dc11cd7f512501b15fdbc6074c603b68ca91f7162d5a042054edb0cf Subject C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert EV Code Signing CA (SHA2) ValidFrom 2012-04-18 12:00:00 ValidTo 2027-04-18 12:00:00 Signature 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 SignatureAlgorithmOID 1.2.840.113549.1.1.11 IsCertificateAuthority True SerialNumber 03f1b4e15f3a82f1149678b3d7d8475c Version 3
Imports Expand ntoskrnl.exe HAL.dll WMILIB.SYS Imported Functions Expand ExFreePoolWithTag MmMapIoSpace MmUnmapIoSpace IoAttachDeviceToDeviceStack IofCallDriver IofCompleteRequest IoCreateDevice IoIsWdmVersionAvailable IoCreateSymbolicLink IoDeleteDevice IoDeleteSymbolicLink IoDetachDevice IoInitializeRemoveLockEx IoOpenDeviceRegistryKey PoSetPowerState ZwClose ZwCreateKey ZwOpenKey ZwQueryValueKey ZwSetValueKey swprintf ExFreePool atoi memcpy IoAcquireRemoveLockEx IoReleaseRemoveLockEx IoReleaseRemoveLockAndWaitEx IoGetDeviceProperty ObfReferenceObject ZwCreateFile ZwReadFile memset KeDelayExecutionThread IoAllocateIrp IoBuildSynchronousFsdRequest IoFreeIrp IoGetAttachedDeviceReference ObfDereferenceObject _allmul ExQueueWorkItem PoRequestPowerIrp PoCallDriver PoStartNextPowerIrp IoWMIRegistrationControl ExAllocatePoolWithTag ExAllocatePool KeWaitForSingleObject KeSetEvent KeInitializeEvent WRITE_REGISTER_BUFFER_UCHAR READ_REGISTER_BUFFER_ULONG RtlFreeUnicodeString RtlAppendUnicodeToString RtlCopyUnicodeString _snwprintf RtlInitUnicodeString KfAcquireSpinLock READ_PORT_ULONG KeStallExecutionProcessor KeGetCurrentIrql KfReleaseSpinLock READ_PORT_UCHAR WRITE_PORT_ULONG WRITE_PORT_UCHAR WmiCompleteRequest WmiSystemControl Exported Functions Expand Sections Expand .text .rdata .data PAGE INIT .rsrc .reloc Signature Expand {
"Certificates": [
{
"CertificateType": "CA",
"IsCA": true,
"IsCertificateAuthority": true,
"IsCodeSigning": false,
"SerialNumber": "7e93ebfb7cc64e59ea4b9a77d406fc3b",
"Signature": "03099b8f79ef7f5930aaef68b5fae3091dbb4f82065d375fa6529f168dea1c9209446ef56deb587c30e8f9698d23730b126f47a9ae3911f82ab19bb01ac38eeb599600adce0c4db2d031a6085c2a7afce27a1d574ca86518e979406225966ec7c7376a8321088e41eaddd9573f1d7749872a16065ea6386a2212a35119837eb6",
"SignatureAlgorithmOID": "1.2.840.113549.1.1.5",
"Subject": "C=US, O=Symantec Corporation, CN=Symantec Time Stamping Services CA , G2",
"TBS": {
"MD5": "d0785ad36e427c92b19f6826ab1e8020",
"SHA1": "365b7a9c21bd9373e49052c3e7b3e4646ddd4d43",
"SHA256": "c2abb7484da91a658548de089d52436175fdb760a1387d225611dc0613a1e2ff",
"SHA384": "eab4fe5ef90e0de4a6aa3a27769a5e879f588df5e4785aa4104debd1f81e19ea56d33e3a16e5facf99f68b5d8e3d287b"
},
"ValidFrom": "2012-12-21 00:00:00",
"ValidTo": "2020-12-30 23:59:59",
"Version": 3
},
{
"CertificateType": "Intermediate",
"IsCA": false,
"IsCertificateAuthority": false,
"IsCodeSigning": false,
"SerialNumber": "0ecff438c8febf356e04d86a981b1a50",
"Signature": "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",
"SignatureAlgorithmOID": "1.2.840.113549.1.1.5",
"Subject": "C=US, O=Symantec Corporation, CN=Symantec Time Stamping Services Signer , G4",
"TBS": {
"MD5": "e9d38360b914c8863f6cba3ee58764d3",
"SHA1": "4cba8eae47b6bf76f20b3504b98b8f062694a89b",
"SHA256": "88901d86a4cc1f1bb193d08e1fb63d27452e63f83e228c657ab1a92e4ade3976",
"SHA384": "e9f2a75334a9e336c5a4712eadee88d0374b0fdc273262f4e65c9040ad2793067cc076696db5279a478773485e285652"
},
"ValidFrom": "2012-10-18 00:00:00",
"ValidTo": "2020-12-29 23:59:59",
"Version": 3
},
{
"CertificateType": "CA",
"IsCA": true,
"IsCertificateAuthority": true,
"IsCodeSigning": true,
"SerialNumber": "191a32cb759c97b8cfac118dd5127f49",
"Signature": "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",
"SignatureAlgorithmOID": "1.2.840.113549.1.1.11",
"Subject": "C=US, O=Symantec Corporation, OU=Symantec Trust Network, CN=Symantec Class 3 Extended Validation Code Signing CA , G2",
"TBS": {
"MD5": "788b61bd26da89253179e3de2cdb527f",
"SHA1": "7d06f16e7bf21bce4f71c2cb7a3e74351451bf69",
"SHA256": "b3c925b4048c3f7c444d248a2b101186b57cba39596eb5dce0e17a4ee4b32f19",
"SHA384": "2955e28cb7ec0ea9730b499a0f189f9621eceb02591a9486b583f12bb845885a30d6a871826318a167cc5f06b274e58c"
},
"ValidFrom": "2014-03-04 00:00:00",
"ValidTo": "2024-03-03 23:59:59",
"Version": 3
},
{
"CertificateType": "Leaf (Code Signing)",
"IsCA": false,
"IsCertificateAuthority": false,
"IsCodeSigning": true,
"SerialNumber": "1b0403aaa7d4b40ea3c691a11217f378",
"Signature": "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",
"SignatureAlgorithmOID": "1.2.840.113549.1.1.11",
"Subject": "??=TW, ??=Private Organization, serialNumber=80333472, C=TW, ST=Hsinchu, L=Chupei City, O=Feature Integration Technology Inc, CN=Feature Integration Technology Inc",
"TBS": {
"MD5": "b0d42f7686780a7cbd4e531dd96d18fb",
"SHA1": "e0d0c6dd0804554232caee87297decab44169257",
"SHA256": "804da934d7c2508775d1c74452b0305f76af5bc4139ca251af3ce55b4be41651",
"SHA384": "e761d349002b37019e26ae9dbae64e1c055fe833e57984491987ec0b1e64dc79abaf150cbf1db76a41c192b1c98f46e4"
},
"ValidFrom": "2015-05-14 00:00:00",
"ValidTo": "2017-05-13 23:59:59",
"Version": 3
},
{
"CertificateType": "CA",
"IsCA": true,
"IsCertificateAuthority": true,
"IsCodeSigning": false,
"SerialNumber": "611993e400000000001c",
"Signature": "812a82168c34672be503eb347b8ca2a3508af45586f11e8c8eae7dee0319ce72951848ad6211fd20fd3f4706015ae2e06f8c152c4e3c6a506c0b36a3cf7a0d9c42bc5cf819d560e369e6e22341678c6883762b8f93a32ab57fbe59fba9c9b2268fcaa2f3821b983e919527978661ee5b5d076bcd86a8e26580a8e215e2b2be23056aba0cf347934daca48c077939c061123a050d89a3ec9f578984fbecca7c47661491d8b60f195de6b84aacbc47c8714396e63220a5dc7786fd3ce38b71db7b9b03fcb71d3264eb1652a043a3fa2ead59924e7cc7f233424838513a7c38c71b242228401e1a461f17db18f7f027356cb863d9cdb9645d2ba55eefc629b4f2c7f821cc04ba57fd01b6abc667f9e7d3997ff4f522fa72f5fdff3a1c423aa1f98018a5ee8d1cd4669e4501feaaeefffb178f30f7f1cd29c59decb5d549003d85b8cbbb933a276a49c030ae66c9f723283276f9a48356c848ce5a96aaa0cc0cc47fb48e97af6de35427c39f86c0d6e473089705dbd054625e0348c2d59f7fa7668cd09db04fd4d3985f4b7ac97fb22952d01280c70f54b61e67cdc6a06c110384d34875e72afeb03b6e0a3aa66b769905a3f177686133144706fc537f52bd92145c4a246a678caf8d90aad0f679211b93267cc3ce1ebd883892ae45c6196a4950b305f8ae59378a6a250394b1598150e8ba8380b72335f476b9671d5918ad208d94",
"SignatureAlgorithmOID": "1.2.840.113549.1.1.5",
"Subject": "C=US, O=VeriSign, Inc., OU=VeriSign Trust Network, OU=(c) 2006 VeriSign, Inc. , For authorized use only, CN=VeriSign Class 3 Public Primary Certification Authority , G5",
"TBS": {
"MD5": "78a717e082dcc1cda3458d917e677d14",
"SHA1": "4a872e0e51f9b304469cd1dedb496ee9b8b983a4",
"SHA256": "317fa1d234ebc49040ebc5e8746f8997471496051b185a91bdd9dfbb23fab5f8",
"SHA384": "b71052da4eb9157c8c1a5d7f55df19d69b9128598b72fcca608e5b7cc7d64c43c5504b9c86355a6dc22ee40c88cc385c"
},
"ValidFrom": "2011-02-22 19:25:17",
"ValidTo": "2021-02-22 19:35:17",
"Version": 3
}
],
"CertificatesInfo": "",
"Signer": [
{
"Issuer": "C=US, O=Symantec Corporation, OU=Symantec Trust Network, CN=Symantec Class 3 Extended Validation Code Signing CA , G2",
"SerialNumber": "1b0403aaa7d4b40ea3c691a11217f378",
"Version": 1
}
],
"SignerInfo": ""
}
Download
Certificates Expand Certificate 7e93ebfb7cc64e59ea4b9a77d406fc3b Field Value ToBeSigned (TBS) MD5 d0785ad36e427c92b19f6826ab1e8020 ToBeSigned (TBS) SHA1 365b7a9c21bd9373e49052c3e7b3e4646ddd4d43 ToBeSigned (TBS) SHA256 c2abb7484da91a658548de089d52436175fdb760a1387d225611dc0613a1e2ff Subject C=US, O=Symantec Corporation, CN=Symantec Time Stamping Services CA , G2 ValidFrom 2012-12-21 00:00:00 ValidTo 2020-12-30 23:59:59 Signature 03099b8f79ef7f5930aaef68b5fae3091dbb4f82065d375fa6529f168dea1c9209446ef56deb587c30e8f9698d23730b126f47a9ae3911f82ab19bb01ac38eeb599600adce0c4db2d031a6085c2a7afce27a1d574ca86518e979406225966ec7c7376a8321088e41eaddd9573f1d7749872a16065ea6386a2212a35119837eb6 SignatureAlgorithmOID 1.2.840.113549.1.1.5 IsCertificateAuthority True SerialNumber 7e93ebfb7cc64e59ea4b9a77d406fc3b Version 3
Certificate 0ecff438c8febf356e04d86a981b1a50 Field Value ToBeSigned (TBS) MD5 e9d38360b914c8863f6cba3ee58764d3 ToBeSigned (TBS) SHA1 4cba8eae47b6bf76f20b3504b98b8f062694a89b ToBeSigned (TBS) SHA256 88901d86a4cc1f1bb193d08e1fb63d27452e63f83e228c657ab1a92e4ade3976 Subject C=US, O=Symantec Corporation, CN=Symantec Time Stamping Services Signer , G4 ValidFrom 2012-10-18 00:00:00 ValidTo 2020-12-29 23:59:59 Signature 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 SignatureAlgorithmOID 1.2.840.113549.1.1.5 IsCertificateAuthority False SerialNumber 0ecff438c8febf356e04d86a981b1a50 Version 3
Certificate 191a32cb759c97b8cfac118dd5127f49 Field Value ToBeSigned (TBS) MD5 788b61bd26da89253179e3de2cdb527f ToBeSigned (TBS) SHA1 7d06f16e7bf21bce4f71c2cb7a3e74351451bf69 ToBeSigned (TBS) SHA256 b3c925b4048c3f7c444d248a2b101186b57cba39596eb5dce0e17a4ee4b32f19 Subject C=US, O=Symantec Corporation, OU=Symantec Trust Network, CN=Symantec Class 3 Extended Validation Code Signing CA , G2 ValidFrom 2014-03-04 00:00:00 ValidTo 2024-03-03 23:59:59 Signature 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 SignatureAlgorithmOID 1.2.840.113549.1.1.11 IsCertificateAuthority True SerialNumber 191a32cb759c97b8cfac118dd5127f49 Version 3
Certificate 1b0403aaa7d4b40ea3c691a11217f378 Field Value ToBeSigned (TBS) MD5 b0d42f7686780a7cbd4e531dd96d18fb ToBeSigned (TBS) SHA1 e0d0c6dd0804554232caee87297decab44169257 ToBeSigned (TBS) SHA256 804da934d7c2508775d1c74452b0305f76af5bc4139ca251af3ce55b4be41651 Subject ??=TW, ??=Private Organization, serialNumber=80333472, C=TW, ST=Hsinchu, L=Chupei City, O=Feature Integration Technology Inc, CN=Feature Integration Technology Inc ValidFrom 2015-05-14 00:00:00 ValidTo 2017-05-13 23:59:59 Signature 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 SignatureAlgorithmOID 1.2.840.113549.1.1.11 IsCertificateAuthority False SerialNumber 1b0403aaa7d4b40ea3c691a11217f378 Version 3
Certificate 611993e400000000001c Field Value ToBeSigned (TBS) MD5 78a717e082dcc1cda3458d917e677d14 ToBeSigned (TBS) SHA1 4a872e0e51f9b304469cd1dedb496ee9b8b983a4 ToBeSigned (TBS) SHA256 317fa1d234ebc49040ebc5e8746f8997471496051b185a91bdd9dfbb23fab5f8 Subject C=US, O=VeriSign, Inc., OU=VeriSign Trust Network, OU=(c) 2006 VeriSign, Inc. , For authorized use only, CN=VeriSign Class 3 Public Primary Certification Authority , G5 ValidFrom 2011-02-22 19:25:17 ValidTo 2021-02-22 19:35:17 Signature 812a82168c34672be503eb347b8ca2a3508af45586f11e8c8eae7dee0319ce72951848ad6211fd20fd3f4706015ae2e06f8c152c4e3c6a506c0b36a3cf7a0d9c42bc5cf819d560e369e6e22341678c6883762b8f93a32ab57fbe59fba9c9b2268fcaa2f3821b983e919527978661ee5b5d076bcd86a8e26580a8e215e2b2be23056aba0cf347934daca48c077939c061123a050d89a3ec9f578984fbecca7c47661491d8b60f195de6b84aacbc47c8714396e63220a5dc7786fd3ce38b71db7b9b03fcb71d3264eb1652a043a3fa2ead59924e7cc7f233424838513a7c38c71b242228401e1a461f17db18f7f027356cb863d9cdb9645d2ba55eefc629b4f2c7f821cc04ba57fd01b6abc667f9e7d3997ff4f522fa72f5fdff3a1c423aa1f98018a5ee8d1cd4669e4501feaaeefffb178f30f7f1cd29c59decb5d549003d85b8cbbb933a276a49c030ae66c9f723283276f9a48356c848ce5a96aaa0cc0cc47fb48e97af6de35427c39f86c0d6e473089705dbd054625e0348c2d59f7fa7668cd09db04fd4d3985f4b7ac97fb22952d01280c70f54b61e67cdc6a06c110384d34875e72afeb03b6e0a3aa66b769905a3f177686133144706fc537f52bd92145c4a246a678caf8d90aad0f679211b93267cc3ce1ebd883892ae45c6196a4950b305f8ae59378a6a250394b1598150e8ba8380b72335f476b9671d5918ad208d94 SignatureAlgorithmOID 1.2.840.113549.1.1.5 IsCertificateAuthority True SerialNumber 611993e400000000001c Version 3
Imports Expand ntoskrnl.exe HAL.DLL WMILIB.SYS Imported Functions Expand RtlInitUnicodeString _snwprintf InterlockedIncrement MmUnmapIoSpace WRITE_REGISTER_BUFFER_UCHAR MmMapIoSpace READ_REGISTER_BUFFER_ULONG IoCreateDevice IoInitializeRemoveLockEx KeSetEvent ExAllocatePoolWithTag RtlCopyUnicodeString ExFreePool ZwQueryValueKey ExAllocatePool memcpy ZwSetValueKey RtlAppendUnicodeToString ExFreePoolWithTag ZwClose ZwOpenKey IoAttachDeviceToDeviceStack swprintf atoi IoOpenDeviceRegistryKey PoSetPowerState IoCreateSymbolicLink KeWaitForSingleObject IofCallDriver KeInitializeEvent ObfReferenceObject IoReleaseRemoveLockAndWaitEx IoReleaseRemoveLockEx IoAcquireRemoveLockEx IoDeleteSymbolicLink IoDetachDevice memset IoFreeIrp ObfDereferenceObject IoAllocateIrp IoGetAttachedDeviceReference InterlockedDecrement IoBuildSynchronousFsdRequest PoCallDriver PoStartNextPowerIrp PoRequestPowerIrp ExQueueWorkItem IoWMIRegistrationControl KeTickCount KeBugCheckEx IoDeleteDevice RtlFreeUnicodeString IoIsWdmVersionAvailable IofCompleteRequest KfReleaseSpinLock READ_PORT_UCHAR KeGetCurrentIrql KfAcquireSpinLock WRITE_PORT_UCHAR READ_PORT_ULONG WRITE_PORT_ULONG WmiSystemControl WmiCompleteRequest Exported Functions Expand Sections Expand .text .rdata .data PAGE INIT .rsrc .reloc Signature Expand {
"Certificates": [
{
"CertificateType": "CA",
"IsCA": true,
"IsCertificateAuthority": true,
"IsCodeSigning": false,
"SerialNumber": "7e93ebfb7cc64e59ea4b9a77d406fc3b",
"Signature": "03099b8f79ef7f5930aaef68b5fae3091dbb4f82065d375fa6529f168dea1c9209446ef56deb587c30e8f9698d23730b126f47a9ae3911f82ab19bb01ac38eeb599600adce0c4db2d031a6085c2a7afce27a1d574ca86518e979406225966ec7c7376a8321088e41eaddd9573f1d7749872a16065ea6386a2212a35119837eb6",
"SignatureAlgorithmOID": "1.2.840.113549.1.1.5",
"Subject": "C=US, O=Symantec Corporation, CN=Symantec Time Stamping Services CA , G2",
"TBS": {
"MD5": "d0785ad36e427c92b19f6826ab1e8020",
"SHA1": "365b7a9c21bd9373e49052c3e7b3e4646ddd4d43",
"SHA256": "c2abb7484da91a658548de089d52436175fdb760a1387d225611dc0613a1e2ff",
"SHA384": "eab4fe5ef90e0de4a6aa3a27769a5e879f588df5e4785aa4104debd1f81e19ea56d33e3a16e5facf99f68b5d8e3d287b"
},
"ValidFrom": "2012-12-21 00:00:00",
"ValidTo": "2020-12-30 23:59:59",
"Version": 3
},
{
"CertificateType": "Intermediate",
"IsCA": false,
"IsCertificateAuthority": false,
"IsCodeSigning": false,
"SerialNumber": "0ecff438c8febf356e04d86a981b1a50",
"Signature": "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",
"SignatureAlgorithmOID": "1.2.840.113549.1.1.5",
"Subject": "C=US, O=Symantec Corporation, CN=Symantec Time Stamping Services Signer , G4",
"TBS": {
"MD5": "e9d38360b914c8863f6cba3ee58764d3",
"SHA1": "4cba8eae47b6bf76f20b3504b98b8f062694a89b",
"SHA256": "88901d86a4cc1f1bb193d08e1fb63d27452e63f83e228c657ab1a92e4ade3976",
"SHA384": "e9f2a75334a9e336c5a4712eadee88d0374b0fdc273262f4e65c9040ad2793067cc076696db5279a478773485e285652"
},
"ValidFrom": "2012-10-18 00:00:00",
"ValidTo": "2020-12-29 23:59:59",
"Version": 3
},
{
"CertificateType": "CA",
"IsCA": true,
"IsCertificateAuthority": true,
"IsCodeSigning": true,
"SerialNumber": "191a32cb759c97b8cfac118dd5127f49",
"Signature": "3f5b19f3fa13d575382a5aee9f5aa04ca91dc5cc94eede15fef5106ea41ba56483541858c40b28a185c34e74e5ff897cfed5ed3cba719f5602268f162a88feb0a32722ce4be2388e00a63a865f9de53ea8de644941744121fd07c88417da1d653082cb264f39d60427a481b14b49c3238b7e02321827b7ab0bf31872b6a4ee67066f38a6588de0f17e5da460c6a8e5505fe0e8bae28f9958b6b5a0a876f1a2f11c8841727e52979b0a36998d50f701eb3ce7f0226ae5358c63368a1ab1d967665f971aefa8209df02fba6cced9948500f158f17dc97c22b5075d02c6e60bbfab9393ff27188e33367e5734f1c3af04c184f156b3e8878336f8d30a31dc6e2c6d",
"SignatureAlgorithmOID": "1.2.840.113549.1.1.11",
"Subject": "C=US, O=Symantec Corporation, OU=Symantec Trust Network, CN=Symantec Class 3 Extended Validation Code Signing CA , G2",
"TBS": {
"MD5": "788b61bd26da89253179e3de2cdb527f",
"SHA1": "7d06f16e7bf21bce4f71c2cb7a3e74351451bf69",
"SHA256": "b3c925b4048c3f7c444d248a2b101186b57cba39596eb5dce0e17a4ee4b32f19",
"SHA384": "2955e28cb7ec0ea9730b499a0f189f9621eceb02591a9486b583f12bb845885a30d6a871826318a167cc5f06b274e58c"
},
"ValidFrom": "2014-03-04 00:00:00",
"ValidTo": "2024-03-03 23:59:59",
"Version": 3
},
{
"CertificateType": "Leaf (Code Signing)",
"IsCA": false,
"IsCertificateAuthority": false,
"IsCodeSigning": true,
"SerialNumber": "1b0403aaa7d4b40ea3c691a11217f378",
"Signature": "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",
"SignatureAlgorithmOID": "1.2.840.113549.1.1.11",
"Subject": "??=TW, ??=Private Organization, serialNumber=80333472, C=TW, ST=Hsinchu, L=Chupei City, O=Feature Integration Technology Inc, CN=Feature Integration Technology Inc",
"TBS": {
"MD5": "b0d42f7686780a7cbd4e531dd96d18fb",
"SHA1": "e0d0c6dd0804554232caee87297decab44169257",
"SHA256": "804da934d7c2508775d1c74452b0305f76af5bc4139ca251af3ce55b4be41651",
"SHA384": "e761d349002b37019e26ae9dbae64e1c055fe833e57984491987ec0b1e64dc79abaf150cbf1db76a41c192b1c98f46e4"
},
"ValidFrom": "2015-05-14 00:00:00",
"ValidTo": "2017-05-13 23:59:59",
"Version": 3
},
{
"CertificateType": "CA",
"IsCA": true,
"IsCertificateAuthority": true,
"IsCodeSigning": false,
"SerialNumber": "611993e400000000001c",
"Signature": "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",
"SignatureAlgorithmOID": "1.2.840.113549.1.1.5",
"Subject": "C=US, O=VeriSign, Inc., OU=VeriSign Trust Network, OU=(c) 2006 VeriSign, Inc. , For authorized use only, CN=VeriSign Class 3 Public Primary Certification Authority , G5",
"TBS": {
"MD5": "78a717e082dcc1cda3458d917e677d14",
"SHA1": "4a872e0e51f9b304469cd1dedb496ee9b8b983a4",
"SHA256": "317fa1d234ebc49040ebc5e8746f8997471496051b185a91bdd9dfbb23fab5f8",
"SHA384": "b71052da4eb9157c8c1a5d7f55df19d69b9128598b72fcca608e5b7cc7d64c43c5504b9c86355a6dc22ee40c88cc385c"
},
"ValidFrom": "2011-02-22 19:25:17",
"ValidTo": "2021-02-22 19:35:17",
"Version": 3
}
],
"CertificatesInfo": "",
"Signer": [
{
"Issuer": "C=US, O=Symantec Corporation, OU=Symantec Trust Network, CN=Symantec Class 3 Extended Validation Code Signing CA , G2",
"SerialNumber": "1b0403aaa7d4b40ea3c691a11217f378",
"Version": 1
}
],
"SignerInfo": ""
}
Download
Certificates Expand Certificate 61204db4000000000027 Field Value ToBeSigned (TBS) MD5 8e3ffc222fbcebdbb8b23115ab259be7 ToBeSigned (TBS) SHA1 ee20bff28ffe13be731c294c90d6ded5aae0ec0e ToBeSigned (TBS) SHA256 59826b69bc8c28118c96323b627da59aaca0b142cc5d8bad25a8fcfd399aa821 Subject C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert High Assurance EV Root CA ValidFrom 2011-04-15 19:45:33 ValidTo 2021-04-15 19:55:33 Signature 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 SignatureAlgorithmOID 1.2.840.113549.1.1.5 IsCertificateAuthority True SerialNumber 61204db4000000000027 Version 3
Certificate 03829816b04a1318528ff1c4cc820cbe Field Value ToBeSigned (TBS) MD5 52811f961a802901aa7ba924b71f9ca8 ToBeSigned (TBS) SHA1 36cfa3cd654e77c4c2dff091b4761a49bc852087 ToBeSigned (TBS) SHA256 857e282813a570fead4ebce75d19f74ef2437ddc73253e9361a99cdb78b8d06a Subject ??=TW, ??=Private Organization, serialNumber=80333472, C=TW, L=Zhubei City, O=Feature Integration Technology Inc., CN=Feature Integration Technology Inc. ValidFrom 2020-05-18 00:00:00 ValidTo 2023-07-07 12:00:00 Signature 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 SignatureAlgorithmOID 1.2.840.113549.1.1.11 IsCertificateAuthority False SerialNumber 03829816b04a1318528ff1c4cc820cbe Version 3
Certificate 03f1b4e15f3a82f1149678b3d7d8475c Field Value ToBeSigned (TBS) MD5 83f5de89f641d0fbf60248e10a7b9534 ToBeSigned (TBS) SHA1 382a73a059a08698d6eb98c87e1b36fc750933a4 ToBeSigned (TBS) SHA256 eec58131dc11cd7f512501b15fdbc6074c603b68ca91f7162d5a042054edb0cf Subject C=US, O=DigiCert Inc, OU=www.digicert.com, CN=DigiCert EV Code Signing CA (SHA2) ValidFrom 2012-04-18 12:00:00 ValidTo 2027-04-18 12:00:00 Signature 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 SignatureAlgorithmOID 1.2.840.113549.1.1.11 IsCertificateAuthority True SerialNumber 03f1b4e15f3a82f1149678b3d7d8475c Version 3
Imports Expand ntoskrnl.exe HAL.dll WMILIB.SYS Imported Functions Expand KeSetEvent KeWaitForSingleObject KeAcquireSpinLockRaiseToDpc KeReleaseSpinLock ExAllocatePool ExAllocatePoolWithTag ExFreePool ExFreePoolWithTag MmMapIoSpace MmUnmapIoSpace IoAttachDeviceToDeviceStack IofCallDriver IofCompleteRequest IoCreateDevice IoIsWdmVersionAvailable IoCreateSymbolicLink IoDeleteDevice IoDeleteSymbolicLink IoDetachDevice IoInitializeRemoveLockEx IoOpenDeviceRegistryKey PoSetPowerState ZwClose ZwCreateKey KeInitializeEvent ZwQueryValueKey ZwSetValueKey swprintf _snwprintf atoi KeGetCurrentIrql IoAcquireRemoveLockEx IoReleaseRemoveLockEx IoReleaseRemoveLockAndWaitEx IoGetDeviceProperty ObfReferenceObject ZwCreateFile ZwReadFile KeDelayExecutionThread IoAllocateIrp IoBuildSynchronousFsdRequest IoFreeIrp IoGetAttachedDeviceReference ObfDereferenceObject ExQueueWorkItem PoRequestPowerIrp PoCallDriver PoStartNextPowerIrp IoWMIRegistrationControl RtlFreeUnicodeString RtlAppendUnicodeToString RtlCopyUnicodeString ZwOpenKey RtlInitUnicodeString KeStallExecutionProcessor WmiSystemControl WmiCompleteRequest Exported Functions Expand Sections Expand .text .rdata .data .pdata PAGE INIT .rsrc .reloc Signature Expand {
"Certificates": [
{
"CertificateType": "CA",
"IsCA": true,
"IsCertificateAuthority": true,
"IsCodeSigning": false,
"SerialNumber": "7e93ebfb7cc64e59ea4b9a77d406fc3b",
"Signature": "03099b8f79ef7f5930aaef68b5fae3091dbb4f82065d375fa6529f168dea1c9209446ef56deb587c30e8f9698d23730b126f47a9ae3911f82ab19bb01ac38eeb599600adce0c4db2d031a6085c2a7afce27a1d574ca86518e979406225966ec7c7376a8321088e41eaddd9573f1d7749872a16065ea6386a2212a35119837eb6",
"SignatureAlgorithmOID": "1.2.840.113549.1.1.5",
"Subject": "C=US, O=Symantec Corporation, CN=Symantec Time Stamping Services CA , G2",
"TBS": {
"MD5": "d0785ad36e427c92b19f6826ab1e8020",
"SHA1": "365b7a9c21bd9373e49052c3e7b3e4646ddd4d43",
"SHA256": "c2abb7484da91a658548de089d52436175fdb760a1387d225611dc0613a1e2ff",
"SHA384": "eab4fe5ef90e0de4a6aa3a27769a5e879f588df5e4785aa4104debd1f81e19ea56d33e3a16e5facf99f68b5d8e3d287b"
},
"ValidFrom": "2012-12-21 00:00:00",
"ValidTo": "2020-12-30 23:59:59",
"Version": 3
},
{
"CertificateType": "Intermediate",
"IsCA": false,
"IsCertificateAuthority": false,
"IsCodeSigning": false,
"SerialNumber": "0ecff438c8febf356e04d86a981b1a50",
"Signature": "783bb4912a004cf08f62303778a38427076f18b2de25dca0d49403aa864e259f9a40031cddcee379cb216806dab632b46dbff42c266333e449646d0de6c3670ef705a4356c7c8916c6e9b2dfb2e9dd20c6710fcd9574dcb65cdebd371f4378e678b5cd280420a3aaf14bc48829910e80d111fcdd5c766e4f5e0e4546416e0db0ea389ab13ada097110fc1c79b4807bac69f4fd9cb60c162bf17f5b093d9b5be216ca13816d002e380da8298f2ce1b2f45aa901af159c2c2f491bdb22bbc3fe789451c386b182885df03db451a179332b2e7bb9dc20091371eb6a195bcfe8a530572c89493fb9cf7fc9bf3e226863539abd6974acc51d3c7f92e0c3bc1cd80475",
"SignatureAlgorithmOID": "1.2.840.113549.1.1.5",
"Subject": "C=US, O=Symantec Corporation, CN=Symantec Time Stamping Services Signer , G4",
"TBS": {
"MD5": "e9d38360b914c8863f6cba3ee58764d3",
"SHA1": "4cba8eae47b6bf76f20b3504b98b8f062694a89b",
"SHA256": "88901d86a4cc1f1bb193d08e1fb63d27452e63f83e228c657ab1a92e4ade3976",
"SHA384": "e9f2a75334a9e336c5a4712eadee88d0374b0fdc273262f4e65c9040ad2793067cc076696db5279a478773485e285652"
},
"ValidFrom": "2012-10-18 00:00:00",
"ValidTo": "2020-12-29 23:59:59",
"Version": 3
},
{
"CertificateType": "CA",
"IsCA": true,
"IsCertificateAuthority": true,
"IsCodeSigning": true,
"SerialNumber": "191a32cb759c97b8cfac118dd5127f49",
"Signature": "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",
"SignatureAlgorithmOID": "1.2.840.113549.1.1.11",
"Subject": "C=US, O=Symantec Corporation, OU=Symantec Trust Network, CN=Symantec Class 3 Extended Validation Code Signing CA , G2",
"TBS": {
"MD5": "788b61bd26da89253179e3de2cdb527f",
"SHA1": "7d06f16e7bf21bce4f71c2cb7a3e74351451bf69",
"SHA256": "b3c925b4048c3f7c444d248a2b101186b57cba39596eb5dce0e17a4ee4b32f19",
"SHA384": "2955e28cb7ec0ea9730b499a0f189f9621eceb02591a9486b583f12bb845885a30d6a871826318a167cc5f06b274e58c"
},
"ValidFrom": "2014-03-04 00:00:00",
"ValidTo": "2024-03-03 23:59:59",
"Version": 3
},
{
"CertificateType": "Leaf (Code Signing)",
"IsCA": false,
"IsCertificateAuthority": false,
"IsCodeSigning": true,
"SerialNumber": "1b0403aaa7d4b40ea3c691a11217f378",
"Signature": "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",
"SignatureAlgorithmOID": "1.2.840.113549.1.1.11",
"Subject": "??=TW, ??=Private Organization, serialNumber=80333472, C=TW, ST=Hsinchu, L=Chupei City, O=Feature Integration Technology Inc, CN=Feature Integration Technology Inc",
"TBS": {
"MD5": "b0d42f7686780a7cbd4e531dd96d18fb",
"SHA1": "e0d0c6dd0804554232caee87297decab44169257",
"SHA256": "804da934d7c2508775d1c74452b0305f76af5bc4139ca251af3ce55b4be41651",
"SHA384": "e761d349002b37019e26ae9dbae64e1c055fe833e57984491987ec0b1e64dc79abaf150cbf1db76a41c192b1c98f46e4"
},
"ValidFrom": "2015-05-14 00:00:00",
"ValidTo": "2017-05-13 23:59:59",
"Version": 3
},
{
"CertificateType": "CA",
"IsCA": true,
"IsCertificateAuthority": true,
"IsCodeSigning": false,
"SerialNumber": "611993e400000000001c",
"Signature": "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",
"SignatureAlgorithmOID": "1.2.840.113549.1.1.5",
"Subject": "C=US, O=VeriSign, Inc., OU=VeriSign Trust Network, OU=(c) 2006 VeriSign, Inc. , For authorized use only, CN=VeriSign Class 3 Public Primary Certification Authority , G5",
"TBS": {
"MD5": "78a717e082dcc1cda3458d917e677d14",
"SHA1": "4a872e0e51f9b304469cd1dedb496ee9b8b983a4",
"SHA256": "317fa1d234ebc49040ebc5e8746f8997471496051b185a91bdd9dfbb23fab5f8",
"SHA384": "b71052da4eb9157c8c1a5d7f55df19d69b9128598b72fcca608e5b7cc7d64c43c5504b9c86355a6dc22ee40c88cc385c"
},
"ValidFrom": "2011-02-22 19:25:17",
"ValidTo": "2021-02-22 19:35:17",
"Version": 3
}
],
"CertificatesInfo": "",
"Signer": [
{
"Issuer": "C=US, O=Symantec Corporation, OU=Symantec Trust Network, CN=Symantec Class 3 Extended Validation Code Signing CA , G2",
"SerialNumber": "1b0403aaa7d4b40ea3c691a11217f378",
"Version": 1
}
],
"SignerInfo": ""
}
source
last_updated: 2026-05-04