Description The Carbon Black Threat Analysis Unit (TAU) discovered 34 unique vulnerable drivers (237 file hashes) accepting firmware access. Six allow kernel memory access. All give full control of the devices to non-admin users. By exploiting the vulnerable drivers, an attacker without the system privilege may erase/alter firmware, and/or elevate privileges. As of the time of writing in October 2023, the filenames of the vulnerable drivers have not been made public until now.
UUID : fa612342-5ae0-4e69-ad9c-14d574d9fb1eCreated : 2023-11-02Author : Takahiro HaruyamaDownload
This download link contains the vulnerable driver!
Block dellbios.sys across your endpoints Add this driver to your block policy in minutes with MagicSword, threat-driven application control. Free for up to 100 endpoints.
Start Blocking for Free Commands sc.exe create dellbiossys binPath= C:\windows\temp\dellbiossys.sys type=kernel && sc.exe start dellbiossys
Use Case Privileges Operating System Elevate privileges kernel Windows 10
Detections Sigma 🛡️ Expand Names
detects loading using name only
Hashes
detects loading using hashes only
Resources https://blogs.vmware.com/security/2023/10/hunting-vulnerable-kernel-drivers.html Known Vulnerable Samples Download
Imports Expand Imported Functions Expand KeSetPriorityThread MmGetPhysicalAddress MmAllocateContiguousMemorySpecifyCache MmUnmapIoSpace MmMapIoSpace IofCompleteRequest IoDeleteDevice IoCreateSymbolicLink IoCreateDevice RtlInitUnicodeString KeBugCheckEx Exported Functions Expand Sections Expand .text .rdata .data .pdata PAGE INIT Signature Expand Download
Certificates Expand Certificate 47bf1995df8d524643f7db6d480d31a4 Field Value ToBeSigned (TBS) MD5 518d2ea8a21e879c942d504824ac211c ToBeSigned (TBS) SHA1 21ce87d827077e61abddf2beba69fde5432ea031 ToBeSigned (TBS) SHA256 1ec3b4f02e03930a470020e0e48d24b84678bb558f46182888d870541f5e25c7 Subject C=US, O=VeriSign, Inc., CN=VeriSign Time Stamping Services CA ValidFrom 2003-12-04 00:00:00 ValidTo 2013-12-03 23:59:59 Signature 4a6bf9ea58c2441c318979992b96bf82ac01d61c4ccdb08a586edf0829a35ec8ca9313e704520def47272f0038b0e4c9934e9ad4226215f73f37214f703180f18b3887b3e8e89700fecf55964e24d2a9274e7aaeb76141f32acee7c9d95eddbb2b853eb59db5d9e157ffbeb4c57ef5cf0c9ef097fe2bd33b521b1b3827f73f4a SignatureAlgorithmOID 1.2.840.113549.1.1.5 IsCertificateAuthority True SerialNumber 47bf1995df8d524643f7db6d480d31a4 Version 3
Certificate 0de92bf0d4d82988183205095e9a7688 Field Value ToBeSigned (TBS) MD5 45c204b8a20f6abb0188d2d38a3fb0c9 ToBeSigned (TBS) SHA1 cdf3a3c5c2eda4c29621f30fd3154f9f8c765739 ToBeSigned (TBS) SHA256 e32839dddc0f4ed2474efaf37f59d46db400c700fd19533cb0895a111124bc77 Subject C=US, O=VeriSign, Inc., CN=VeriSign Time Stamping Services Signer ValidFrom 2003-12-04 00:00:00 ValidTo 2008-12-03 23:59:59 Signature 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 SignatureAlgorithmOID 1.2.840.113549.1.1.5 IsCertificateAuthority False SerialNumber 0de92bf0d4d82988183205095e9a7688 Version 3
Certificate 57646e2b550023d490534a553eab0d0a Field Value ToBeSigned (TBS) MD5 e0554e925960f8ebfe053732b72cf185 ToBeSigned (TBS) SHA1 f305b91e55019f4353be8ef3f83c1cee7a986b4d ToBeSigned (TBS) SHA256 ea81c5bd80a1c1fc0e3b82cfb15837f221ea835f6b9d6c54c767f754355e3880 Subject C=US, O=VeriSign, Inc., OU=VeriSign Trust Network, OU=Terms of use at https://www.verisign.com/rpa (c)04, CN=VeriSign Class 3 Code Signing 2004 CA ValidFrom 2004-07-16 00:00:00 ValidTo 2009-07-15 23:59:59 Signature 9a65f5d8d7e1a4d05dded87d7bc3eec408c256d08cdcedac228de750060d072ca0a46995cc99dfcc6331cfb0c1e496cb38ce21fb7ce7580a2321072c9097abd89604935453ba3a1048720d85ec1b0a4125cc7d6cac7b03f1f7783cf2a840d05572dbbe0b28b5c8c705fed3e0b521dcbc40b7bebc60f5b8e3d85e3b65dd66565f SignatureAlgorithmOID 1.2.840.113549.1.1.5 IsCertificateAuthority True SerialNumber 57646e2b550023d490534a553eab0d0a Version 3
Certificate 4957a5495776e13165eb89eeda14831a Field Value ToBeSigned (TBS) MD5 0477ed8e1755ed9b4ed2c38236da79df ToBeSigned (TBS) SHA1 741cf63102fbccf6873168697c21019c23f78d01 ToBeSigned (TBS) SHA256 9fad3c4e14b1d1e5f8b15d75ef42a18dc6cd20d5f746b99cc72cff82eb274510 Subject C=US, ST=Texas, L=Round Rock, O=Dell Inc., OU=Digital ID Class 3 , Microsoft Software Validation v2, CN=Dell Inc. ValidFrom 2005-12-06 00:00:00 ValidTo 2007-01-10 23:59:59 Signature 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 SignatureAlgorithmOID 1.2.840.113549.1.1.5 IsCertificateAuthority False SerialNumber 4957a5495776e13165eb89eeda14831a Version 3
Certificate 610c120600000000001b Field Value ToBeSigned (TBS) MD5 53c41bc1164e09e0cd1617a5bf913efd ToBeSigned (TBS) SHA1 93c03aac8951d494ecd5696b1c08658541b18727 ToBeSigned (TBS) SHA256 40bddadac24dc61ca4fb5cab2a2bc5d876bc36808311039a7a3e1a4066f7489b Subject C=US, O=VeriSign, Inc., OU=Class 3 Public Primary Certification Authority ValidFrom 2006-05-23 17:01:29 ValidTo 2016-05-23 17:11:29 Signature 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 SignatureAlgorithmOID 1.2.840.113549.1.1.5 IsCertificateAuthority True SerialNumber 610c120600000000001b Version 3
Imports Expand Imported Functions Expand KeSetPriorityThread MmGetPhysicalAddress MmAllocateContiguousMemorySpecifyCache KeInsertQueueDpc MmFreeContiguousMemory MmUnmapIoSpace MmMapIoSpace IofCompleteRequest KeSetImportanceDpc KeSetTargetProcessorDpc KeInitializeDpc IoDeleteDevice IoCreateSymbolicLink IoCreateDevice RtlInitUnicodeString KeBugCheckEx Exported Functions Expand Sections Expand .text .rdata .data .pdata PAGE INIT Signature Expand Download
Imports Expand Imported Functions Expand KeSetPriorityThread MmGetPhysicalAddress MmAllocateContiguousMemorySpecifyCache KeInsertQueueDpc MmFreeContiguousMemory MmUnmapIoSpace MmMapIoSpace IofCompleteRequest KeSetImportanceDpc KeSetTargetProcessorDpc KeInitializeDpc IoDeleteDevice IoCreateSymbolicLink IoCreateDevice RtlInitUnicodeString KeBugCheckEx Exported Functions Expand Sections Expand .text .rdata .data .pdata PAGE INIT Signature Expand Download
Certificates Expand Certificate 3825d7faf861af9ef490e726b5d65ad5 Field Value ToBeSigned (TBS) MD5 d6c7684e9aaa508cf268335f83afe040 ToBeSigned (TBS) SHA1 18066d20ad92409c567cdfde745279ff71c75226 ToBeSigned (TBS) SHA256 a612fb22ce8be6dab75e47c98508f98496583e79c9c97b936a8caee9ea9f3fff Subject C=US, O=VeriSign, Inc., CN=VeriSign Time Stamping Services Signer , G2 ValidFrom 2007-06-15 00:00:00 ValidTo 2012-06-14 23:59:59 Signature 50c54bc82480dfe40d24c2de1ab1a102a1a6822d0c831581370a820e2cb05a1761b5d805fe88dbf19191b3561a40a6eb92be3839b07536743a984fe437ba9989ca95421db0b9c7a08d57e0fad5640442354e01d133a217c84daa27c7f2e1864c02384d8378c6fc53e0ebe00687dda4969e5e0c98e2a5bebf8285c360e1dfad28d8c7a54b64dac71b5bbdac3908d53822a1338b2f8a9aebbc07213f44410907b5651c24bc48d34480eba1cfc902b414cf54c716a3805cf9793e5d727d88179e2c43a2ca53ce7d3df62a3ab84f9400a56d0a835df95e53f418b3570f70c3fbf5ad95a00e17dec4168060c90f2b6e8604f1ebf47827d105c5ee345b5eb94932f233 SignatureAlgorithmOID 1.2.840.113549.1.1.5 IsCertificateAuthority False SerialNumber 3825d7faf861af9ef490e726b5d65ad5 Version 3
Certificate 47bf1995df8d524643f7db6d480d31a4 Field Value ToBeSigned (TBS) MD5 518d2ea8a21e879c942d504824ac211c ToBeSigned (TBS) SHA1 21ce87d827077e61abddf2beba69fde5432ea031 ToBeSigned (TBS) SHA256 1ec3b4f02e03930a470020e0e48d24b84678bb558f46182888d870541f5e25c7 Subject C=US, O=VeriSign, Inc., CN=VeriSign Time Stamping Services CA ValidFrom 2003-12-04 00:00:00 ValidTo 2013-12-03 23:59:59 Signature 4a6bf9ea58c2441c318979992b96bf82ac01d61c4ccdb08a586edf0829a35ec8ca9313e704520def47272f0038b0e4c9934e9ad4226215f73f37214f703180f18b3887b3e8e89700fecf55964e24d2a9274e7aaeb76141f32acee7c9d95eddbb2b853eb59db5d9e157ffbeb4c57ef5cf0c9ef097fe2bd33b521b1b3827f73f4a SignatureAlgorithmOID 1.2.840.113549.1.1.5 IsCertificateAuthority True SerialNumber 47bf1995df8d524643f7db6d480d31a4 Version 3
Certificate 4191a15a3978dfcf496566381d4c75c2 Field Value ToBeSigned (TBS) MD5 41011f8d0e7c7a6408334ca387914c61 ToBeSigned (TBS) SHA1 c7fc1727f5b75a6421a1f95c73bbdb23580c48e5 ToBeSigned (TBS) SHA256 88dd3952638ee82738c03168e6fd863fe4eab1059ee5e2926ad8cb587c255dc0 Subject C=US, O=VeriSign, Inc., OU=VeriSign Trust Network, OU=Terms of use at https://www.verisign.com/rpa (c)04, CN=VeriSign Class 3 Code Signing 2004 CA ValidFrom 2004-07-16 00:00:00 ValidTo 2014-07-15 23:59:59 Signature ae3a17b84a7b55fa6455ec40a4ed494190999c89bcaf2e1dca7823f91c190f7feb68bc32d98838dedc3fd389b43fb18296f1a45abaed2e26d3de7c016e000a00a4069211480940f91c1879672324e0bbd5e150ae1bf50edde02e81cd80a36c524f9175558aba22f2d2ea4175882f63557d1e545a9559cad93481c05f5ef67ab5 SignatureAlgorithmOID 1.2.840.113549.1.1.5 IsCertificateAuthority True SerialNumber 4191a15a3978dfcf496566381d4c75c2 Version 3
Certificate 18a686a1229059017a672136ac2e7265 Field Value ToBeSigned (TBS) MD5 3f3990fd4fcf9d9ca9e6a3d53abb0083 ToBeSigned (TBS) SHA1 e642b59ed916131746a973ddecfc5549cc81ecb3 ToBeSigned (TBS) SHA256 cdfd38299aeafaa4853c8c21e8c33e2f6816a01d2b7daa4b8a7a0a59092d268e Subject C=US, ST=Texas, L=Round Rock, O=Dell Inc., OU=Digital ID Class 3 , Microsoft Software Validation v2, CN=Dell Inc. ValidFrom 2006-12-15 00:00:00 ValidTo 2010-01-10 23:59:59 Signature 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 SignatureAlgorithmOID 1.2.840.113549.1.1.5 IsCertificateAuthority False SerialNumber 18a686a1229059017a672136ac2e7265 Version 3
Certificate 610c120600000000001b Field Value ToBeSigned (TBS) MD5 53c41bc1164e09e0cd1617a5bf913efd ToBeSigned (TBS) SHA1 93c03aac8951d494ecd5696b1c08658541b18727 ToBeSigned (TBS) SHA256 40bddadac24dc61ca4fb5cab2a2bc5d876bc36808311039a7a3e1a4066f7489b Subject C=US, O=VeriSign, Inc., OU=Class 3 Public Primary Certification Authority ValidFrom 2006-05-23 17:01:29 ValidTo 2016-05-23 17:11:29 Signature 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 SignatureAlgorithmOID 1.2.840.113549.1.1.5 IsCertificateAuthority True SerialNumber 610c120600000000001b Version 3
Imports Expand Imported Functions Expand KeSetImportanceDpc KeSetTargetProcessorDpc KeSetPriorityThread RtlInitUnicodeString IoDeleteDevice KeInitializeDpc MmFreeContiguousMemory MmUnmapIoSpace MmGetPhysicalAddress MmMapIoSpace KeInsertQueueDpc IofCompleteRequest IoCreateSymbolicLink IoCreateDevice MmAllocateContiguousMemorySpecifyCache KeBugCheckEx Exported Functions Expand Sections Expand .text .rdata .data .pdata PAGE INIT Signature Expand Download
Imports Expand Imported Functions Expand KeSetPriorityThread KeGetCurrentThread KeInsertQueueDpc WRITE_REGISTER_BUFFER_UCHAR MmGetPhysicalAddress MmAllocateContiguousMemorySpecifyCache READ_REGISTER_BUFFER_UCHAR MmFreeContiguousMemory MmUnmapIoSpace MmMapIoSpace IofCompleteRequest KeSetImportanceDpc KeSetTargetProcessorDpc KeInitializeDpc IoDeleteDevice IoCreateSymbolicLink IoCreateDevice RtlInitUnicodeString KeTickCount KeBugCheckEx Exported Functions Expand Sections Expand .text .rdata .data PAGE INIT .reloc Signature Expand Download
Certificates Expand Certificate 47bf1995df8d524643f7db6d480d31a4 Field Value ToBeSigned (TBS) MD5 518d2ea8a21e879c942d504824ac211c ToBeSigned (TBS) SHA1 21ce87d827077e61abddf2beba69fde5432ea031 ToBeSigned (TBS) SHA256 1ec3b4f02e03930a470020e0e48d24b84678bb558f46182888d870541f5e25c7 Subject C=US, O=VeriSign, Inc., CN=VeriSign Time Stamping Services CA ValidFrom 2003-12-04 00:00:00 ValidTo 2013-12-03 23:59:59 Signature 4a6bf9ea58c2441c318979992b96bf82ac01d61c4ccdb08a586edf0829a35ec8ca9313e704520def47272f0038b0e4c9934e9ad4226215f73f37214f703180f18b3887b3e8e89700fecf55964e24d2a9274e7aaeb76141f32acee7c9d95eddbb2b853eb59db5d9e157ffbeb4c57ef5cf0c9ef097fe2bd33b521b1b3827f73f4a SignatureAlgorithmOID 1.2.840.113549.1.1.5 IsCertificateAuthority True SerialNumber 47bf1995df8d524643f7db6d480d31a4 Version 3
Certificate 0de92bf0d4d82988183205095e9a7688 Field Value ToBeSigned (TBS) MD5 45c204b8a20f6abb0188d2d38a3fb0c9 ToBeSigned (TBS) SHA1 cdf3a3c5c2eda4c29621f30fd3154f9f8c765739 ToBeSigned (TBS) SHA256 e32839dddc0f4ed2474efaf37f59d46db400c700fd19533cb0895a111124bc77 Subject C=US, O=VeriSign, Inc., CN=VeriSign Time Stamping Services Signer ValidFrom 2003-12-04 00:00:00 ValidTo 2008-12-03 23:59:59 Signature 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 SignatureAlgorithmOID 1.2.840.113549.1.1.5 IsCertificateAuthority False SerialNumber 0de92bf0d4d82988183205095e9a7688 Version 3
Certificate 4191a15a3978dfcf496566381d4c75c2 Field Value ToBeSigned (TBS) MD5 41011f8d0e7c7a6408334ca387914c61 ToBeSigned (TBS) SHA1 c7fc1727f5b75a6421a1f95c73bbdb23580c48e5 ToBeSigned (TBS) SHA256 88dd3952638ee82738c03168e6fd863fe4eab1059ee5e2926ad8cb587c255dc0 Subject C=US, O=VeriSign, Inc., OU=VeriSign Trust Network, OU=Terms of use at https://www.verisign.com/rpa (c)04, CN=VeriSign Class 3 Code Signing 2004 CA ValidFrom 2004-07-16 00:00:00 ValidTo 2014-07-15 23:59:59 Signature ae3a17b84a7b55fa6455ec40a4ed494190999c89bcaf2e1dca7823f91c190f7feb68bc32d98838dedc3fd389b43fb18296f1a45abaed2e26d3de7c016e000a00a4069211480940f91c1879672324e0bbd5e150ae1bf50edde02e81cd80a36c524f9175558aba22f2d2ea4175882f63557d1e545a9559cad93481c05f5ef67ab5 SignatureAlgorithmOID 1.2.840.113549.1.1.5 IsCertificateAuthority True SerialNumber 4191a15a3978dfcf496566381d4c75c2 Version 3
Certificate 18a686a1229059017a672136ac2e7265 Field Value ToBeSigned (TBS) MD5 3f3990fd4fcf9d9ca9e6a3d53abb0083 ToBeSigned (TBS) SHA1 e642b59ed916131746a973ddecfc5549cc81ecb3 ToBeSigned (TBS) SHA256 cdfd38299aeafaa4853c8c21e8c33e2f6816a01d2b7daa4b8a7a0a59092d268e Subject C=US, ST=Texas, L=Round Rock, O=Dell Inc., OU=Digital ID Class 3 , Microsoft Software Validation v2, CN=Dell Inc. ValidFrom 2006-12-15 00:00:00 ValidTo 2010-01-10 23:59:59 Signature 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 SignatureAlgorithmOID 1.2.840.113549.1.1.5 IsCertificateAuthority False SerialNumber 18a686a1229059017a672136ac2e7265 Version 3
Certificate 610c120600000000001b Field Value ToBeSigned (TBS) MD5 53c41bc1164e09e0cd1617a5bf913efd ToBeSigned (TBS) SHA1 93c03aac8951d494ecd5696b1c08658541b18727 ToBeSigned (TBS) SHA256 40bddadac24dc61ca4fb5cab2a2bc5d876bc36808311039a7a3e1a4066f7489b Subject C=US, O=VeriSign, Inc., OU=Class 3 Public Primary Certification Authority ValidFrom 2006-05-23 17:01:29 ValidTo 2016-05-23 17:11:29 Signature 01e446b33b457f7513877e5f43de468ecb8abdb64741bccccc7491d8ce395195a4a6b547c0efd2da7b8f5711f4328c7ccd3fee42da04214af7c843884a6f5cca14fc4bd19f4cbdd4556ecc02be0da6888f8609baa425bde8b0f0fa8b714e67b0cb82a8d78e55f737ebf03e88efe4e08afd1c6e2e61414875b4b02c1d28d8490fd715f02473253ccc880cde284c6554fe5eae8cea19ad2c51b29b3a47f53c80350117e24987d6544afb4bab07bcbf7d79cfbf35005cbb9ecffc82891b39a05197b6dec0b307ff449644c0342a195cabeef03bec294eb513c537857e75d5b4d60d066eb5d26c237167eaf1718eaf4e74aa0cf9ecbf4c58fa5e909b6d39cb86883f8b1ca81632d5fe6db9f1f8b3ead791f6364778c0272a15c768d6f4c5fc4f4ec8673f102d409ff11ec96148e7a703fc31730cf04688fe56da492995ef09daa3e5beef60ecd954a0599c28bd54ef66157f874c84dba60e95672e517b3439b641c28c846826dc240209e7818e0a972defeea7b998a60f818dc710b5e1ed982f486f53854964789bec5dac970b5526c3efba8dc8d1a52f5a7f936b611a339b18b8a26210de24ea76e12f43ebecdd7c12342489da2855aee5754e312b6763b6a8d7ab730a03cec5ea593fc7eb2a45aea8625b2f009939abb45f73c308ec80118f470e8f2a1343e191066255bbffba3da9a93d260faeca7d628b155589d694344dd665 SignatureAlgorithmOID 1.2.840.113549.1.1.5 IsCertificateAuthority True SerialNumber 610c120600000000001b Version 3
Imports Expand Imported Functions Expand KeSetPriorityThread MmGetPhysicalAddress MmAllocateContiguousMemorySpecifyCache KeInsertQueueDpc MmFreeContiguousMemory MmUnmapIoSpace MmMapIoSpace IofCompleteRequest KeSetImportanceDpc KeSetTargetProcessorDpc KeInitializeDpc IoDeleteDevice IoCreateSymbolicLink IoCreateDevice RtlInitUnicodeString KeBugCheckEx Exported Functions Expand Sections Expand .text .rdata .data .pdata PAGE INIT Signature Expand Download
Certificates Expand Certificate 47bf1995df8d524643f7db6d480d31a4 Field Value ToBeSigned (TBS) MD5 518d2ea8a21e879c942d504824ac211c ToBeSigned (TBS) SHA1 21ce87d827077e61abddf2beba69fde5432ea031 ToBeSigned (TBS) SHA256 1ec3b4f02e03930a470020e0e48d24b84678bb558f46182888d870541f5e25c7 Subject C=US, O=VeriSign, Inc., CN=VeriSign Time Stamping Services CA ValidFrom 2003-12-04 00:00:00 ValidTo 2013-12-03 23:59:59 Signature 4a6bf9ea58c2441c318979992b96bf82ac01d61c4ccdb08a586edf0829a35ec8ca9313e704520def47272f0038b0e4c9934e9ad4226215f73f37214f703180f18b3887b3e8e89700fecf55964e24d2a9274e7aaeb76141f32acee7c9d95eddbb2b853eb59db5d9e157ffbeb4c57ef5cf0c9ef097fe2bd33b521b1b3827f73f4a SignatureAlgorithmOID 1.2.840.113549.1.1.5 IsCertificateAuthority True SerialNumber 47bf1995df8d524643f7db6d480d31a4 Version 3
Certificate 0de92bf0d4d82988183205095e9a7688 Field Value ToBeSigned (TBS) MD5 45c204b8a20f6abb0188d2d38a3fb0c9 ToBeSigned (TBS) SHA1 cdf3a3c5c2eda4c29621f30fd3154f9f8c765739 ToBeSigned (TBS) SHA256 e32839dddc0f4ed2474efaf37f59d46db400c700fd19533cb0895a111124bc77 Subject C=US, O=VeriSign, Inc., CN=VeriSign Time Stamping Services Signer ValidFrom 2003-12-04 00:00:00 ValidTo 2008-12-03 23:59:59 Signature 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 SignatureAlgorithmOID 1.2.840.113549.1.1.5 IsCertificateAuthority False SerialNumber 0de92bf0d4d82988183205095e9a7688 Version 3
Certificate 57646e2b550023d490534a553eab0d0a Field Value ToBeSigned (TBS) MD5 e0554e925960f8ebfe053732b72cf185 ToBeSigned (TBS) SHA1 f305b91e55019f4353be8ef3f83c1cee7a986b4d ToBeSigned (TBS) SHA256 ea81c5bd80a1c1fc0e3b82cfb15837f221ea835f6b9d6c54c767f754355e3880 Subject C=US, O=VeriSign, Inc., OU=VeriSign Trust Network, OU=Terms of use at https://www.verisign.com/rpa (c)04, CN=VeriSign Class 3 Code Signing 2004 CA ValidFrom 2004-07-16 00:00:00 ValidTo 2009-07-15 23:59:59 Signature 9a65f5d8d7e1a4d05dded87d7bc3eec408c256d08cdcedac228de750060d072ca0a46995cc99dfcc6331cfb0c1e496cb38ce21fb7ce7580a2321072c9097abd89604935453ba3a1048720d85ec1b0a4125cc7d6cac7b03f1f7783cf2a840d05572dbbe0b28b5c8c705fed3e0b521dcbc40b7bebc60f5b8e3d85e3b65dd66565f SignatureAlgorithmOID 1.2.840.113549.1.1.5 IsCertificateAuthority True SerialNumber 57646e2b550023d490534a553eab0d0a Version 3
Certificate 4957a5495776e13165eb89eeda14831a Field Value ToBeSigned (TBS) MD5 0477ed8e1755ed9b4ed2c38236da79df ToBeSigned (TBS) SHA1 741cf63102fbccf6873168697c21019c23f78d01 ToBeSigned (TBS) SHA256 9fad3c4e14b1d1e5f8b15d75ef42a18dc6cd20d5f746b99cc72cff82eb274510 Subject C=US, ST=Texas, L=Round Rock, O=Dell Inc., OU=Digital ID Class 3 , Microsoft Software Validation v2, CN=Dell Inc. ValidFrom 2005-12-06 00:00:00 ValidTo 2007-01-10 23:59:59 Signature 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 SignatureAlgorithmOID 1.2.840.113549.1.1.5 IsCertificateAuthority False SerialNumber 4957a5495776e13165eb89eeda14831a Version 3
Certificate 610c120600000000001b Field Value ToBeSigned (TBS) MD5 53c41bc1164e09e0cd1617a5bf913efd ToBeSigned (TBS) SHA1 93c03aac8951d494ecd5696b1c08658541b18727 ToBeSigned (TBS) SHA256 40bddadac24dc61ca4fb5cab2a2bc5d876bc36808311039a7a3e1a4066f7489b Subject C=US, O=VeriSign, Inc., OU=Class 3 Public Primary Certification Authority ValidFrom 2006-05-23 17:01:29 ValidTo 2016-05-23 17:11:29 Signature 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 SignatureAlgorithmOID 1.2.840.113549.1.1.5 IsCertificateAuthority True SerialNumber 610c120600000000001b Version 3
Imports Expand Imported Functions Expand KeSetPriorityThread KeGetCurrentThread MmGetPhysicalAddress MmAllocateContiguousMemorySpecifyCache KeInsertQueueDpc MmFreeContiguousMemory MmUnmapIoSpace MmMapIoSpace IofCompleteRequest KeSetImportanceDpc KeSetTargetProcessorDpc KeInitializeDpc IoDeleteDevice IoCreateSymbolicLink IoCreateDevice RtlInitUnicodeString Exported Functions Expand Sections Expand .text .rdata .data .pdata PAGE INIT Signature Expand Download
Certificates Expand Certificate 47bf1995df8d524643f7db6d480d31a4 Field Value ToBeSigned (TBS) MD5 518d2ea8a21e879c942d504824ac211c ToBeSigned (TBS) SHA1 21ce87d827077e61abddf2beba69fde5432ea031 ToBeSigned (TBS) SHA256 1ec3b4f02e03930a470020e0e48d24b84678bb558f46182888d870541f5e25c7 Subject C=US, O=VeriSign, Inc., CN=VeriSign Time Stamping Services CA ValidFrom 2003-12-04 00:00:00 ValidTo 2013-12-03 23:59:59 Signature 4a6bf9ea58c2441c318979992b96bf82ac01d61c4ccdb08a586edf0829a35ec8ca9313e704520def47272f0038b0e4c9934e9ad4226215f73f37214f703180f18b3887b3e8e89700fecf55964e24d2a9274e7aaeb76141f32acee7c9d95eddbb2b853eb59db5d9e157ffbeb4c57ef5cf0c9ef097fe2bd33b521b1b3827f73f4a SignatureAlgorithmOID 1.2.840.113549.1.1.5 IsCertificateAuthority True SerialNumber 47bf1995df8d524643f7db6d480d31a4 Version 3
Certificate 0de92bf0d4d82988183205095e9a7688 Field Value ToBeSigned (TBS) MD5 45c204b8a20f6abb0188d2d38a3fb0c9 ToBeSigned (TBS) SHA1 cdf3a3c5c2eda4c29621f30fd3154f9f8c765739 ToBeSigned (TBS) SHA256 e32839dddc0f4ed2474efaf37f59d46db400c700fd19533cb0895a111124bc77 Subject C=US, O=VeriSign, Inc., CN=VeriSign Time Stamping Services Signer ValidFrom 2003-12-04 00:00:00 ValidTo 2008-12-03 23:59:59 Signature 877870da4e5201205be079c98230c4fdb91996bd9100c3bdcdcdc6f40ed8fff94dc033623011c5f5741bd492de5f9c2013b17c45be50cd83e7801783a72793671346fbcab8984103cc9b515b058b7fa86ff31b501b242ef2698d6c22f7bbca1695ed0c74c06877d9eb996287c17390f889747a23aba3987b97b1f78f29714d2e751b4841daf0b50d2054d677a097826369fd09cf8af075bb099bd9f91155269a6132be7a02b07b86bea2c38b222c78d13576bc92735cf9b9e64c150a23cce4d2d4342e4940153c0f607a24c6a566ef96cf70eb3ee7f40d7edcd17ca3767169c19c4f47303521b1a2af1a623c2bd98eaa2a077bd818b35c7be29da56ffe3c89ad SignatureAlgorithmOID 1.2.840.113549.1.1.5 IsCertificateAuthority False SerialNumber 0de92bf0d4d82988183205095e9a7688 Version 3
Certificate 57646e2b550023d490534a553eab0d0a Field Value ToBeSigned (TBS) MD5 e0554e925960f8ebfe053732b72cf185 ToBeSigned (TBS) SHA1 f305b91e55019f4353be8ef3f83c1cee7a986b4d ToBeSigned (TBS) SHA256 ea81c5bd80a1c1fc0e3b82cfb15837f221ea835f6b9d6c54c767f754355e3880 Subject C=US, O=VeriSign, Inc., OU=VeriSign Trust Network, OU=Terms of use at https://www.verisign.com/rpa (c)04, CN=VeriSign Class 3 Code Signing 2004 CA ValidFrom 2004-07-16 00:00:00 ValidTo 2009-07-15 23:59:59 Signature 9a65f5d8d7e1a4d05dded87d7bc3eec408c256d08cdcedac228de750060d072ca0a46995cc99dfcc6331cfb0c1e496cb38ce21fb7ce7580a2321072c9097abd89604935453ba3a1048720d85ec1b0a4125cc7d6cac7b03f1f7783cf2a840d05572dbbe0b28b5c8c705fed3e0b521dcbc40b7bebc60f5b8e3d85e3b65dd66565f SignatureAlgorithmOID 1.2.840.113549.1.1.5 IsCertificateAuthority True SerialNumber 57646e2b550023d490534a553eab0d0a Version 3
Certificate 4957a5495776e13165eb89eeda14831a Field Value ToBeSigned (TBS) MD5 0477ed8e1755ed9b4ed2c38236da79df ToBeSigned (TBS) SHA1 741cf63102fbccf6873168697c21019c23f78d01 ToBeSigned (TBS) SHA256 9fad3c4e14b1d1e5f8b15d75ef42a18dc6cd20d5f746b99cc72cff82eb274510 Subject C=US, ST=Texas, L=Round Rock, O=Dell Inc., OU=Digital ID Class 3 , Microsoft Software Validation v2, CN=Dell Inc. ValidFrom 2005-12-06 00:00:00 ValidTo 2007-01-10 23:59:59 Signature 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 SignatureAlgorithmOID 1.2.840.113549.1.1.5 IsCertificateAuthority False SerialNumber 4957a5495776e13165eb89eeda14831a Version 3
Certificate 610c120600000000001b Field Value ToBeSigned (TBS) MD5 53c41bc1164e09e0cd1617a5bf913efd ToBeSigned (TBS) SHA1 93c03aac8951d494ecd5696b1c08658541b18727 ToBeSigned (TBS) SHA256 40bddadac24dc61ca4fb5cab2a2bc5d876bc36808311039a7a3e1a4066f7489b Subject C=US, O=VeriSign, Inc., OU=Class 3 Public Primary Certification Authority ValidFrom 2006-05-23 17:01:29 ValidTo 2016-05-23 17:11:29 Signature 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 SignatureAlgorithmOID 1.2.840.113549.1.1.5 IsCertificateAuthority True SerialNumber 610c120600000000001b Version 3
Imports Expand Imported Functions Expand KeSetPriorityThread MmGetPhysicalAddress MmAllocateContiguousMemorySpecifyCache KeInsertQueueDpc MmFreeContiguousMemory MmUnmapIoSpace MmMapIoSpace IofCompleteRequest KeSetImportanceDpc KeSetTargetProcessorDpc KeInitializeDpc IoDeleteDevice IoCreateSymbolicLink IoCreateDevice RtlInitUnicodeString KeBugCheckEx Exported Functions Expand Sections Expand .text .rdata .data .pdata PAGE INIT Signature Expand Download
Imports Expand Imported Functions Expand KeSetPriorityThread KeGetCurrentThread KeInsertQueueDpc WRITE_REGISTER_BUFFER_UCHAR MmGetPhysicalAddress MmAllocateContiguousMemorySpecifyCache READ_REGISTER_BUFFER_UCHAR MmFreeContiguousMemory memset MmUnmapIoSpace MmMapIoSpace IofCompleteRequest KeSetImportanceDpc KeSetTargetProcessorDpc KeInitializeDpc IoDeleteDevice IoCreateSymbolicLink IoCreateDevice RtlInitUnicodeString KeTickCount KeBugCheckEx Exported Functions Expand Sections Expand .text .rdata .data PAGE INIT .reloc Signature Expand Download
Imports Expand Imported Functions Expand KeSetPriorityThread KeGetCurrentThread MmGetPhysicalAddress MmAllocateContiguousMemorySpecifyCache KeInsertQueueDpc MmFreeContiguousMemory MmUnmapIoSpace MmMapIoSpace IofCompleteRequest KeSetImportanceDpc KeSetTargetProcessorDpc KeInitializeDpc IoDeleteDevice IoCreateSymbolicLink IoCreateDevice RtlInitUnicodeString Exported Functions Expand Sections Expand .text .rdata .data .pdata PAGE INIT Signature Expand Download
Imports Expand Imported Functions Expand KeSetPriorityThread KeGetCurrentThread KeInsertQueueDpc WRITE_REGISTER_BUFFER_UCHAR MmGetPhysicalAddress MmAllocateContiguousMemorySpecifyCache READ_REGISTER_BUFFER_UCHAR MmFreeContiguousMemory MmUnmapIoSpace MmMapIoSpace IofCompleteRequest KeSetImportanceDpc KeSetTargetProcessorDpc KeInitializeDpc IoDeleteDevice IoCreateSymbolicLink IoCreateDevice RtlInitUnicodeString Exported Functions Expand Sections Expand .text .rdata .data PAGE INIT .reloc Signature Expand source
last_updated: 2026-05-04