2012-06-06

There seems to be some interest in the Authenticode signature used in some components of Flame that chain up to Microsoft’s root CA. So I decided to post the full dump of this signature. I extracted the signature from WuSetupV.exe with my digital signature tool and produced 2 dumps with openssl.

openssl pkcs7 -in WuSetupV.exe.vir.der -inform DER -text -print_certs:

Remark that the two first certificates are from the timestamping service.

openssl asn1parse -in WuSetupV.exe.vir.der -inform DER

0:d=0  hl=4 l=11994 cons: SEQUENCE
4:d=1  hl=2 l=   9 prim: OBJECT            :pkcs7-signedData
15:d=1  hl=4 l=11979 cons: cont [ 0 ]
19:d=2  hl=4 l=11975 cons: SEQUENCE
23:d=3  hl=2 l=   1 prim: INTEGER           :01
26:d=3  hl=2 l=  11 cons: SET
28:d=4  hl=2 l=   9 cons: SEQUENCE
30:d=5  hl=2 l=   5 prim: OBJECT            :sha1
37:d=5  hl=2 l=   0 prim: NULL
39:d=3  hl=2 l= 104 cons: SEQUENCE
41:d=4  hl=2 l=  10 prim: OBJECT            :1.3.6.1.4.1.311.2.1.4
53:d=4  hl=2 l=  90 cons: cont [ 0 ]
55:d=5  hl=2 l=  88 cons: SEQUENCE
57:d=6  hl=2 l=  51 cons: SEQUENCE
59:d=7  hl=2 l=  10 prim: OBJECT            :1.3.6.1.4.1.311.2.1.15
71:d=7  hl=2 l=  37 cons: SEQUENCE
73:d=8  hl=2 l=   1 prim: BIT STRING
76:d=8  hl=2 l=  32 cons: cont [ 0 ]
78:d=9  hl=2 l=  30 cons: cont [ 2 ]
80:d=10 hl=2 l=  28 prim: cont [ 0 ]
110:d=6  hl=2 l=  33 cons: SEQUENCE
112:d=7  hl=2 l=   9 cons: SEQUENCE
114:d=8  hl=2 l=   5 prim: OBJECT            :sha1
121:d=8  hl=2 l=   0 prim: NULL
123:d=7  hl=2 l=  20 prim: OCTET STRING      [HEX DUMP]:1DDCDB4D549349EA897A3667214DDC6A405D6703
145:d=3  hl=4 l=10943 cons: cont [ 0 ]
149:d=4  hl=4 l= 890 cons: SEQUENCE
153:d=5  hl=4 l= 610 cons: SEQUENCE
157:d=6  hl=2 l=   3 cons: cont [ 0 ]
159:d=7  hl=2 l=   1 prim: INTEGER           :02
162:d=6  hl=2 l=  16 prim: INTEGER           :3825D7FAF861AF9EF490E726B5D65AD5
180:d=6  hl=2 l=  13 cons: SEQUENCE
182:d=7  hl=2 l=   9 prim: OBJECT            :sha1WithRSAEncryption
193:d=7  hl=2 l=   0 prim: NULL
195:d=6  hl=2 l=  83 cons: SEQUENCE
197:d=7  hl=2 l=  11 cons: SET
199:d=8  hl=2 l=   9 cons: SEQUENCE
201:d=9  hl=2 l=   3 prim: OBJECT            :countryName
206:d=9  hl=2 l=   2 prim: PRINTABLESTRING   :US
210:d=7  hl=2 l=  23 cons: SET
212:d=8  hl=2 l=  21 cons: SEQUENCE
214:d=9  hl=2 l=   3 prim: OBJECT            :organizationName
219:d=9  hl=2 l=  14 prim: PRINTABLESTRING   :VeriSign, Inc.
235:d=7  hl=2 l=  43 cons: SET
237:d=8  hl=2 l=  41 cons: SEQUENCE
239:d=9  hl=2 l=   3 prim: OBJECT            :commonName
244:d=9  hl=2 l=  34 prim: PRINTABLESTRING   :VeriSign Time Stamping Services CA
280:d=6  hl=2 l=  30 cons: SEQUENCE
282:d=7  hl=2 l=  13 prim: UTCTIME           :070615000000Z
297:d=7  hl=2 l=  13 prim: UTCTIME           :120614235959Z
312:d=6  hl=2 l=  92 cons: SEQUENCE
314:d=7  hl=2 l=  11 cons: SET
316:d=8  hl=2 l=   9 cons: SEQUENCE
318:d=9  hl=2 l=   3 prim: OBJECT            :countryName
323:d=9  hl=2 l=   2 prim: PRINTABLESTRING   :US
327:d=7  hl=2 l=  23 cons: SET
329:d=8  hl=2 l=  21 cons: SEQUENCE
331:d=9  hl=2 l=   3 prim: OBJECT            :organizationName
336:d=9  hl=2 l=  14 prim: PRINTABLESTRING   :VeriSign, Inc.
352:d=7  hl=2 l=  52 cons: SET
354:d=8  hl=2 l=  50 cons: SEQUENCE
356:d=9  hl=2 l=   3 prim: OBJECT            :commonName
361:d=9  hl=2 l=  43 prim: PRINTABLESTRING   :VeriSign Time Stamping Services Signer - G2
406:d=6  hl=3 l= 159 cons: SEQUENCE
409:d=7  hl=2 l=  13 cons: SEQUENCE
411:d=8  hl=2 l=   9 prim: OBJECT            :rsaEncryption
422:d=8  hl=2 l=   0 prim: NULL
424:d=7  hl=3 l= 141 prim: BIT STRING
568:d=6  hl=3 l= 196 cons: cont [ 3 ]
571:d=7  hl=3 l= 193 cons: SEQUENCE
574:d=8  hl=2 l=  52 cons: SEQUENCE
576:d=9  hl=2 l=   8 prim: OBJECT            :Authority Information Access
586:d=9  hl=2 l=  40 prim: OCTET STRING      [HEX DUMP]:3026302406082B060105050730018618687474703A2F2F6F6373702E766572697369676E2E636F6D
628:d=8  hl=2 l=  12 cons: SEQUENCE
630:d=9  hl=2 l=   3 prim: OBJECT            :X509v3 Basic Constraints
635:d=9  hl=2 l=   1 prim: BOOLEAN           :255
638:d=9  hl=2 l=   2 prim: OCTET STRING      [HEX DUMP]:3000
642:d=8  hl=2 l=  51 cons: SEQUENCE
644:d=9  hl=2 l=   3 prim: OBJECT            :X509v3 CRL Distribution Points
649:d=9  hl=2 l=  44 prim: OCTET STRING      [HEX DUMP]:302A3028A026A0248622687474703A2F2F63726C2E766572697369676E2E636F6D2F7473732D63612E63726C
695:d=8  hl=2 l=  22 cons: SEQUENCE
697:d=9  hl=2 l=   3 prim: OBJECT            :X509v3 Extended Key Usage
702:d=9  hl=2 l=   1 prim: BOOLEAN           :255
705:d=9  hl=2 l=  12 prim: OCTET STRING      [HEX DUMP]:300A06082B06010505070308
719:d=8  hl=2 l=  14 cons: SEQUENCE
721:d=9  hl=2 l=   3 prim: OBJECT            :X509v3 Key Usage
726:d=9  hl=2 l=   1 prim: BOOLEAN           :255
729:d=9  hl=2 l=   4 prim: OCTET STRING      [HEX DUMP]:030206C0
735:d=8  hl=2 l=  30 cons: SEQUENCE
737:d=9  hl=2 l=   3 prim: OBJECT            :X509v3 Subject Alternative Name
742:d=9  hl=2 l=  23 prim: OCTET STRING      [HEX DUMP]:3015A4133011310F300D06035504031306545341312D32
767:d=5  hl=2 l=  13 cons: SEQUENCE
769:d=6  hl=2 l=   9 prim: OBJECT            :sha1WithRSAEncryption
780:d=6  hl=2 l=   0 prim: NULL
782:d=5  hl=4 l= 257 prim: BIT STRING
1043:d=4  hl=4 l= 964 cons: SEQUENCE
1047:d=5  hl=4 l= 813 cons: SEQUENCE
1051:d=6  hl=2 l=   3 cons: cont [ 0 ]
1053:d=7  hl=2 l=   1 prim: INTEGER           :02
1056:d=6  hl=2 l=  16 prim: INTEGER           :47BF1995DF8D524643F7DB6D480D31A4
1074:d=6  hl=2 l=  13 cons: SEQUENCE
1076:d=7  hl=2 l=   9 prim: OBJECT            :sha1WithRSAEncryption
1087:d=7  hl=2 l=   0 prim: NULL
1089:d=6  hl=3 l= 139 cons: SEQUENCE
1092:d=7  hl=2 l=  11 cons: SET
1094:d=8  hl=2 l=   9 cons: SEQUENCE
1096:d=9  hl=2 l=   3 prim: OBJECT            :countryName
1101:d=9  hl=2 l=   2 prim: PRINTABLESTRING   :ZA
1105:d=7  hl=2 l=  21 cons: SET
1107:d=8  hl=2 l=  19 cons: SEQUENCE
1109:d=9  hl=2 l=   3 prim: OBJECT            :stateOrProvinceName
1114:d=9  hl=2 l=  12 prim: PRINTABLESTRING   :Western Cape
1128:d=7  hl=2 l=  20 cons: SET
1130:d=8  hl=2 l=  18 cons: SEQUENCE
1132:d=9  hl=2 l=   3 prim: OBJECT            :localityName
1137:d=9  hl=2 l=  11 prim: PRINTABLESTRING   :Durbanville
1150:d=7  hl=2 l=  15 cons: SET
1152:d=8  hl=2 l=  13 cons: SEQUENCE
1154:d=9  hl=2 l=   3 prim: OBJECT            :organizationName
1159:d=9  hl=2 l=   6 prim: PRINTABLESTRING   :Thawte
1167:d=7  hl=2 l=  29 cons: SET
1169:d=8  hl=2 l=  27 cons: SEQUENCE
1171:d=9  hl=2 l=   3 prim: OBJECT            :organizationalUnitName
1176:d=9  hl=2 l=  20 prim: PRINTABLESTRING   :Thawte Certification
1198:d=7  hl=2 l=  31 cons: SET
1200:d=8  hl=2 l=  29 cons: SEQUENCE
1202:d=9  hl=2 l=   3 prim: OBJECT            :commonName
1207:d=9  hl=2 l=  22 prim: PRINTABLESTRING   :Thawte Timestamping CA
1231:d=6  hl=2 l=  30 cons: SEQUENCE
1233:d=7  hl=2 l=  13 prim: UTCTIME           :031204000000Z
1248:d=7  hl=2 l=  13 prim: UTCTIME           :131203235959Z
1263:d=6  hl=2 l=  83 cons: SEQUENCE
1265:d=7  hl=2 l=  11 cons: SET
1267:d=8  hl=2 l=   9 cons: SEQUENCE
1269:d=9  hl=2 l=   3 prim: OBJECT            :countryName
1274:d=9  hl=2 l=   2 prim: PRINTABLESTRING   :US
1278:d=7  hl=2 l=  23 cons: SET
1280:d=8  hl=2 l=  21 cons: SEQUENCE
1282:d=9  hl=2 l=   3 prim: OBJECT            :organizationName
1287:d=9  hl=2 l=  14 prim: PRINTABLESTRING   :VeriSign, Inc.
1303:d=7  hl=2 l=  43 cons: SET
1305:d=8  hl=2 l=  41 cons: SEQUENCE
1307:d=9  hl=2 l=   3 prim: OBJECT            :commonName
1312:d=9  hl=2 l=  34 prim: PRINTABLESTRING   :VeriSign Time Stamping Services CA
1348:d=6  hl=4 l= 290 cons: SEQUENCE
1352:d=7  hl=2 l=  13 cons: SEQUENCE
1354:d=8  hl=2 l=   9 prim: OBJECT            :rsaEncryption
1365:d=8  hl=2 l=   0 prim: NULL
1367:d=7  hl=4 l= 271 prim: BIT STRING
1642:d=6  hl=3 l= 219 cons: cont [ 3 ]
1645:d=7  hl=3 l= 216 cons: SEQUENCE
1648:d=8  hl=2 l=  52 cons: SEQUENCE
1650:d=9  hl=2 l=   8 prim: OBJECT            :Authority Information Access
1660:d=9  hl=2 l=  40 prim: OCTET STRING      [HEX DUMP]:3026302406082B060105050730018618687474703A2F2F6F6373702E766572697369676E2E636F6D
1702:d=8  hl=2 l=  18 cons: SEQUENCE
1704:d=9  hl=2 l=   3 prim: OBJECT            :X509v3 Basic Constraints
1709:d=9  hl=2 l=   1 prim: BOOLEAN           :255
1712:d=9  hl=2 l=   8 prim: OCTET STRING      [HEX DUMP]:30060101FF020100
1722:d=8  hl=2 l=  65 cons: SEQUENCE
1724:d=9  hl=2 l=   3 prim: OBJECT            :X509v3 CRL Distribution Points
1729:d=9  hl=2 l=  58 prim: OCTET STRING      [HEX DUMP]:30383036A034A0328630687474703A2F2F63726C2E766572697369676E2E636F6D2F54686177746554696D657374616D70696E6743412E63726C
1789:d=8  hl=2 l=  19 cons: SEQUENCE
1791:d=9  hl=2 l=   3 prim: OBJECT            :X509v3 Extended Key Usage
1796:d=9  hl=2 l=  12 prim: OCTET STRING      [HEX DUMP]:300A06082B06010505070308
1810:d=8  hl=2 l=  14 cons: SEQUENCE
1812:d=9  hl=2 l=   3 prim: OBJECT            :X509v3 Key Usage
1817:d=9  hl=2 l=   1 prim: BOOLEAN           :255
1820:d=9  hl=2 l=   4 prim: OCTET STRING      [HEX DUMP]:03020106
1826:d=8  hl=2 l=  36 cons: SEQUENCE
1828:d=9  hl=2 l=   3 prim: OBJECT            :X509v3 Subject Alternative Name
1833:d=9  hl=2 l=  29 prim: OCTET STRING      [HEX DUMP]:301BA4193017311530130603550403130C545341323034382D312D3533
1864:d=5  hl=2 l=  13 cons: SEQUENCE
1866:d=6  hl=2 l=   9 prim: OBJECT            :sha1WithRSAEncryption
1877:d=6  hl=2 l=   0 prim: NULL
1879:d=5  hl=3 l= 129 prim: BIT STRING
2011:d=4  hl=4 l=1042 cons: SEQUENCE
2015:d=5  hl=4 l= 762 cons: SEQUENCE
2019:d=6  hl=2 l=   3 cons: cont [ 0 ]
2021:d=7  hl=2 l=   1 prim: INTEGER           :02
2024:d=6  hl=2 l=  15 prim: INTEGER           :C1008B3C3C8811D13EF663ECDF40
2041:d=6  hl=2 l=  13 cons: SEQUENCE
2043:d=7  hl=2 l=   9 prim: OBJECT            :md5WithRSAEncryption
2054:d=7  hl=2 l=   0 prim: NULL
2056:d=6  hl=2 l= 112 cons: SEQUENCE
2058:d=7  hl=2 l=  43 cons: SET
2060:d=8  hl=2 l=  41 cons: SEQUENCE
2062:d=9  hl=2 l=   3 prim: OBJECT            :organizationalUnitName
2067:d=9  hl=2 l=  34 prim: PRINTABLESTRING   :Copyright (c) 1997 Microsoft Corp.
2103:d=7  hl=2 l=  30 cons: SET
2105:d=8  hl=2 l=  28 cons: SEQUENCE
2107:d=9  hl=2 l=   3 prim: OBJECT            :organizationalUnitName
2112:d=9  hl=2 l=  21 prim: PRINTABLESTRING   :Microsoft Corporation
2135:d=7  hl=2 l=  33 cons: SET
2137:d=8  hl=2 l=  31 cons: SEQUENCE
2139:d=9  hl=2 l=   3 prim: OBJECT            :commonName
2144:d=9  hl=2 l=  24 prim: PRINTABLESTRING   :Microsoft Root Authority
2170:d=6  hl=2 l=  30 cons: SEQUENCE
2172:d=7  hl=2 l=  13 prim: UTCTIME           :970110070000Z
2187:d=7  hl=2 l=  13 prim: UTCTIME           :201231070000Z
2202:d=6  hl=2 l= 112 cons: SEQUENCE
2204:d=7  hl=2 l=  43 cons: SET
2206:d=8  hl=2 l=  41 cons: SEQUENCE
2208:d=9  hl=2 l=   3 prim: OBJECT            :organizationalUnitName
2213:d=9  hl=2 l=  34 prim: PRINTABLESTRING   :Copyright (c) 1997 Microsoft Corp.
2249:d=7  hl=2 l=  30 cons: SET
2251:d=8  hl=2 l=  28 cons: SEQUENCE
2253:d=9  hl=2 l=   3 prim: OBJECT            :organizationalUnitName
2258:d=9  hl=2 l=  21 prim: PRINTABLESTRING   :Microsoft Corporation
2281:d=7  hl=2 l=  33 cons: SET
2283:d=8  hl=2 l=  31 cons: SEQUENCE
2285:d=9  hl=2 l=   3 prim: OBJECT            :commonName
2290:d=9  hl=2 l=  24 prim: PRINTABLESTRING   :Microsoft Root Authority
2316:d=6  hl=4 l= 290 cons: SEQUENCE
2320:d=7  hl=2 l=  13 cons: SEQUENCE
2322:d=8  hl=2 l=   9 prim: OBJECT            :rsaEncryption
2333:d=8  hl=2 l=   0 prim: NULL
2335:d=7  hl=4 l= 271 prim: BIT STRING
2610:d=6  hl=3 l= 168 cons: cont [ 3 ]
2613:d=7  hl=3 l= 165 cons: SEQUENCE
2616:d=8  hl=3 l= 162 cons: SEQUENCE
2619:d=9  hl=2 l=   3 prim: OBJECT            :2.5.29.1
2624:d=9  hl=3 l= 154 prim: OCTET STRING      [HEX DUMP]:30819780105BD070EF69729E23517E14B24D8EFFCBA1723070312B3029060355040B1322436F70797269676874202863292031393937204D6963726F736F667420436F72702E311E301C060355040B13154D6963726F736F667420436F72706F726174696F6E3121301F060355040313184D6963726F736F667420526F6F7420417574686F72697479820F00C1008B3C3C8811D13EF663ECDF40
2781:d=5  hl=2 l=  13 cons: SEQUENCE
2783:d=6  hl=2 l=   9 prim: OBJECT            :md5WithRSAEncryption
2794:d=6  hl=2 l=   0 prim: NULL
2796:d=5  hl=4 l= 257 prim: BIT STRING
3057:d=4  hl=4 l=1219 cons: SEQUENCE
3061:d=5  hl=4 l= 939 cons: SEQUENCE
3065:d=6  hl=2 l=   3 cons: cont [ 0 ]
3067:d=7  hl=2 l=   1 prim: INTEGER           :02
3070:d=6  hl=2 l=  10 prim: INTEGER           :3AAB11DEE52F1B19D056
3082:d=6  hl=2 l=  13 cons: SEQUENCE
3084:d=7  hl=2 l=   9 prim: OBJECT            :md5WithRSAEncryption
3095:d=7  hl=2 l=   0 prim: NULL
3097:d=6  hl=2 l= 112 cons: SEQUENCE
3099:d=7  hl=2 l=  43 cons: SET
3101:d=8  hl=2 l=  41 cons: SEQUENCE
3103:d=9  hl=2 l=   3 prim: OBJECT            :organizationalUnitName
3108:d=9  hl=2 l=  34 prim: PRINTABLESTRING   :Copyright (c) 1997 Microsoft Corp.
3144:d=7  hl=2 l=  30 cons: SET
3146:d=8  hl=2 l=  28 cons: SEQUENCE
3148:d=9  hl=2 l=   3 prim: OBJECT            :organizationalUnitName
3153:d=9  hl=2 l=  21 prim: PRINTABLESTRING   :Microsoft Corporation
3176:d=7  hl=2 l=  33 cons: SET
3178:d=8  hl=2 l=  31 cons: SEQUENCE
3180:d=9  hl=2 l=   3 prim: OBJECT            :commonName
3185:d=9  hl=2 l=  24 prim: PRINTABLESTRING   :Microsoft Root Authority
3211:d=6  hl=2 l=  30 cons: SEQUENCE
3213:d=7  hl=2 l=  13 prim: UTCTIME           :091210015535Z
3228:d=7  hl=2 l=  13 prim: UTCTIME           :161023080000Z
3243:d=6  hl=3 l= 185 cons: SEQUENCE
3246:d=7  hl=2 l=  11 cons: SET
3248:d=8  hl=2 l=   9 cons: SEQUENCE
3250:d=9  hl=2 l=   3 prim: OBJECT            :countryName
3255:d=9  hl=2 l=   2 prim: PRINTABLESTRING   :US
3259:d=7  hl=2 l=  19 cons: SET
3261:d=8  hl=2 l=  17 cons: SEQUENCE
3263:d=9  hl=2 l=   3 prim: OBJECT            :stateOrProvinceName
3268:d=9  hl=2 l=  10 prim: PRINTABLESTRING   :Washington
3280:d=7  hl=2 l=  16 cons: SET
3282:d=8  hl=2 l=  14 cons: SEQUENCE
3284:d=9  hl=2 l=   3 prim: OBJECT            :localityName
3289:d=9  hl=2 l=   7 prim: PRINTABLESTRING   :Redmond
3298:d=7  hl=2 l=  30 cons: SET
3300:d=8  hl=2 l=  28 cons: SEQUENCE
3302:d=9  hl=2 l=   3 prim: OBJECT            :organizationName
3307:d=9  hl=2 l=  21 prim: PRINTABLESTRING   :Microsoft Corporation
3330:d=7  hl=2 l=  43 cons: SET
3332:d=8  hl=2 l=  41 cons: SEQUENCE
3334:d=9  hl=2 l=   3 prim: OBJECT            :organizationalUnitName
3339:d=9  hl=2 l=  34 prim: PRINTABLESTRING   :Copyright (c) 1999 Microsoft Corp.
3375:d=7  hl=2 l=  54 cons: SET
3377:d=8  hl=2 l=  52 cons: SEQUENCE
3379:d=9  hl=2 l=   3 prim: OBJECT            :commonName
3384:d=9  hl=2 l=  45 prim: PRINTABLESTRING   :Microsoft Enforced Licensing Intermediate PCA
3431:d=6  hl=4 l= 290 cons: SEQUENCE
3435:d=7  hl=2 l=  13 cons: SEQUENCE
3437:d=8  hl=2 l=   9 prim: OBJECT            :rsaEncryption
3448:d=8  hl=2 l=   0 prim: NULL
3450:d=7  hl=4 l= 271 prim: BIT STRING
3725:d=6  hl=4 l= 275 cons: cont [ 3 ]
3729:d=7  hl=4 l= 271 cons: SEQUENCE
3733:d=8  hl=2 l=  43 cons: SEQUENCE
3735:d=9  hl=2 l=   3 prim: OBJECT            :X509v3 Extended Key Usage
3740:d=9  hl=2 l=  36 prim: OCTET STRING      [HEX DUMP]:302206082B06010505070303060A2B0601040182370A0601060A2B0601040182370A0602
3778:d=8  hl=3 l= 162 cons: SEQUENCE
3781:d=9  hl=2 l=   3 prim: OBJECT            :2.5.29.1
3786:d=9  hl=3 l= 154 prim: OCTET STRING      [HEX DUMP]:30819780105BD070EF69729E23517E14B24D8EFFCBA1723070312B3029060355040B1322436F70797269676874202863292031393937204D6963726F736F667420436F72702E311E301C060355040B13154D6963726F736F667420436F72706F726174696F6E3121301F060355040313184D6963726F736F667420526F6F7420417574686F72697479820F00C1008B3C3C8811D13EF663ECDF40
3943:d=8  hl=2 l=  15 cons: SEQUENCE
3945:d=9  hl=2 l=   3 prim: OBJECT            :X509v3 Basic Constraints
3950:d=9  hl=2 l=   1 prim: BOOLEAN           :255
3953:d=9  hl=2 l=   5 prim: OCTET STRING      [HEX DUMP]:30030101FF
3960:d=8  hl=2 l=  29 cons: SEQUENCE
3962:d=9  hl=2 l=   3 prim: OBJECT            :X509v3 Subject Key Identifier
3967:d=9  hl=2 l=  22 prim: OCTET STRING      [HEX DUMP]:04146A97E0C89FF449B48924B3E3D1A82286AAD49443
3991:d=8  hl=2 l=  11 cons: SEQUENCE
3993:d=9  hl=2 l=   3 prim: OBJECT            :X509v3 Key Usage
3998:d=9  hl=2 l=   4 prim: OCTET STRING      [HEX DUMP]:03020186
4004:d=5  hl=2 l=  13 cons: SEQUENCE
4006:d=6  hl=2 l=   9 prim: OBJECT            :md5WithRSAEncryption
4017:d=6  hl=2 l=   0 prim: NULL
4019:d=5  hl=4 l= 257 prim: BIT STRING
4280:d=4  hl=4 l=1326 cons: SEQUENCE
4284:d=5  hl=4 l=1046 cons: SEQUENCE
4288:d=6  hl=2 l=   3 cons: cont [ 0 ]
4290:d=7  hl=2 l=   1 prim: INTEGER           :02
4293:d=6  hl=2 l=  10 prim: INTEGER           :14515B02000000000008
4305:d=6  hl=2 l=  13 cons: SEQUENCE
4307:d=7  hl=2 l=   9 prim: OBJECT            :md5WithRSAEncryption
4318:d=7  hl=2 l=   0 prim: NULL
4320:d=6  hl=3 l= 128 cons: SEQUENCE
4323:d=7  hl=2 l=  19 cons: SET
4325:d=8  hl=2 l=  17 cons: SEQUENCE
4327:d=9  hl=2 l=  10 prim: OBJECT            :domainComponent
4339:d=9  hl=2 l=   3 prim: IA5STRING         :com
4344:d=7  hl=2 l=  25 cons: SET
4346:d=8  hl=2 l=  23 cons: SEQUENCE
4348:d=9  hl=2 l=  10 prim: OBJECT            :domainComponent
4360:d=9  hl=2 l=   9 prim: IA5STRING         :microsoft
4371:d=7  hl=2 l=  24 cons: SET
4373:d=8  hl=2 l=  22 cons: SEQUENCE
4375:d=9  hl=2 l=  10 prim: OBJECT            :domainComponent
4387:d=9  hl=2 l=   8 prim: IA5STRING         :extranet
4397:d=7  hl=2 l=  24 cons: SET
4399:d=8  hl=2 l=  22 cons: SEQUENCE
4401:d=9  hl=2 l=  10 prim: OBJECT            :domainComponent
4413:d=9  hl=2 l=   8 prim: IA5STRING         :partners
4423:d=7  hl=2 l=  26 cons: SET
4425:d=8  hl=2 l=  24 cons: SEQUENCE
4427:d=9  hl=2 l=   3 prim: OBJECT            :commonName
4432:d=9  hl=2 l=  17 prim: PRINTABLESTRING   :Microsoft LSRA PA
4451:d=6  hl=2 l=  30 cons: SEQUENCE
4453:d=7  hl=2 l=  13 prim: UTCTIME           :100223192136Z
4468:d=7  hl=2 l=  13 prim: UTCTIME           :120219214839Z
4483:d=6  hl=2 l=  93 cons: SEQUENCE
4485:d=7  hl=2 l=  11 cons: SET
4487:d=8  hl=2 l=   9 cons: SEQUENCE
4489:d=9  hl=2 l=   3 prim: OBJECT            :countryName
4494:d=9  hl=2 l=   2 prim: PRINTABLESTRING   :US
4498:d=7  hl=2 l=  19 cons: SET
4500:d=8  hl=2 l=  17 cons: SEQUENCE
4502:d=9  hl=2 l=   3 prim: OBJECT            :stateOrProvinceName
4507:d=9  hl=2 l=  10 prim: PRINTABLESTRING   :Washington
4519:d=7  hl=2 l=  16 cons: SET
4521:d=8  hl=2 l=  14 cons: SEQUENCE
4523:d=9  hl=2 l=   3 prim: OBJECT            :localityName
4528:d=9  hl=2 l=   7 prim: PRINTABLESTRING   :Redmond
4537:d=7  hl=2 l=  18 cons: SET
4539:d=8  hl=2 l=  16 cons: SEQUENCE
4541:d=9  hl=2 l=   3 prim: OBJECT            :organizationName
4546:d=9  hl=2 l=   9 prim: PRINTABLESTRING   :Microsoft
4557:d=7  hl=2 l=  19 cons: SET
4559:d=8  hl=2 l=  17 cons: SEQUENCE
4561:d=9  hl=2 l=   3 prim: OBJECT            :commonName
4566:d=9  hl=2 l=  10 prim: PRINTABLESTRING   :TLS Server
4578:d=6  hl=3 l= 159 cons: SEQUENCE
4581:d=7  hl=2 l=  13 cons: SEQUENCE
4583:d=8  hl=2 l=   9 prim: OBJECT            :rsaEncryption
4594:d=8  hl=2 l=   0 prim: NULL
4596:d=7  hl=3 l= 141 prim: BIT STRING
4740:d=6  hl=4 l= 590 cons: cont [ 3 ]
4744:d=7  hl=4 l= 586 cons: SEQUENCE
4748:d=8  hl=2 l=  14 cons: SEQUENCE
4750:d=9  hl=2 l=   3 prim: OBJECT            :X509v3 Key Usage
4755:d=9  hl=2 l=   1 prim: BOOLEAN           :255
4758:d=9  hl=2 l=   4 prim: OCTET STRING      [HEX DUMP]:030206C0
4764:d=8  hl=2 l=  29 cons: SEQUENCE
4766:d=9  hl=2 l=   3 prim: OBJECT            :X509v3 Subject Key Identifier
4771:d=9  hl=2 l=  22 prim: OCTET STRING      [HEX DUMP]:0414C501E320B18803517E6513A8B1627DD0CC6BD917
4795:d=8  hl=2 l=  31 cons: SEQUENCE
4797:d=9  hl=2 l=   3 prim: OBJECT            :X509v3 Authority Key Identifier
4802:d=9  hl=2 l=  24 prim: OCTET STRING      [HEX DUMP]:3016801475E803585DFB65E4D9A6AC17B6037E47AD2E81AF
4828:d=8  hl=3 l= 194 cons: SEQUENCE
4831:d=9  hl=2 l=   3 prim: OBJECT            :X509v3 CRL Distribution Points
4836:d=9  hl=3 l= 186 prim: OCTET STRING      [HEX DUMP]:3081B73081B4A081B1A081AE8656687474703A2F2F746B78706173727633362E706172746E6572732E65787472616E65742E6D6963726F736F66742E636F6D2F43657274456E726F6C6C2F4D6963726F736F66742532304C53524125323050412E63726C865466696C653A2F2F5C5C746B78706173727633362E706172746E6572732E65787472616E65742E6D6963726F736F66742E636F6D5C43657274456E726F6C6C5C4D6963726F736F6674204C5352412050412E63726C
5025:d=8  hl=4 l= 305 cons: SEQUENCE
5029:d=9  hl=2 l=   8 prim: OBJECT            :Authority Information Access
5039:d=9  hl=4 l= 291 prim: OCTET STRING     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

Show more