403Webshell
Server IP : 209.209.40.120  /  Your IP : 216.73.217.112
Web Server : Microsoft-IIS/10.0
System : Windows NT NEWWWW 10.0 build 17763 (Windows Server 2019) i586
User : NEWWWW$ ( 0)
PHP Version : 8.3.30
Disable Function : NONE
MySQL : OFF  |  cURL : ON  |  WGET : OFF  |  Perl : OFF  |  Python : OFF  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /ProgramData/Microsoft/Windows Defender/Platform/4.18.26050.15-0/ja-JP/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /ProgramData/Microsoft/Windows Defender/Platform/4.18.26050.15-0/ja-JP/ProtectionManagement.dll.mui
MZ����@���	�!�L�!This program cannot be run in DOS mode.

$=;=�yZS�yZS�yZS��Ӭ�xZS���Q�xZS�RichyZS�PEd���f{�" ,���e�` ���%8.rdata�@@.rsrc� �@@��f{
lPP��f{$����8.rdata8.rdata$voltmdP�.rdata$zzzdbg �.rsrc$01�&P�.rsrc$02 ��Rb��"b��oͩ+Z,���(?����f{��0�H�H�`�x������������ �8�	P�
h�����
���������(�@�X�p������������� 0�!H�`�x�������� 0@P`p�������� 0@P`p���&��`'0��)��,"��1H�6���=���C���E��G�Ih��J.��MJ�OR�TP��8T��X���]�
��kL	��t���z������L�����������
�L���4��P���ز������0��4���MUI���|n����]�š�V�Y���v��NmuB�}���MUIja-JPS0�0o0�W,g�rKa�0:yY0�ba��0�0�0g0Y00MAPS g0\ObU0�0_0�0�0�0�0�0�0�0 ID
�s(Wn0�0�0�0�0�0�0�0n0�rKa
CleanStatePendingFullScan
PendingRebootPendingManualStepsPendingOfflineScanCriticalFailure�0�0�0�0n0�Qw��RL0�_��K0i0F0K0�0:yW0~0Y0Defender n0�s(Wn0���T�rKaNoStatusServiceNotRunning,ServiceStartedWithoutMalwareProtectionEngineEndingManualStepsAVSignaturesOutOfDateASSignaturesOutOfDateNoRecentQuickScanNoRecentFullScanSystemInitiatedScanInProgressSystemInitiatedCleanInProgressSamplesPendingSubmissionRunningInEvaluationModeRunningInNonGenuineWindowsModeProductExpiredOfflineScanRequired$ServiceShuttingDownForSystemShutdownRemediationFailedCriticallyRemediationFailedNonCriticallyNoStatusFlagsSetPlatformOutOfDatePlatformUpdateInProgressPlatformAlmostOutdated+SignatureOrPlatformEndOfLifePastOrImpending-WindowsSModeSignaturesInUseOnNonWin10SInstall!Defender �[L��0�0�0 (�8^0�0�0�0�00sxs �0�0�0�0)���Tn0�0�0�0�0�0 (�0�0�0�00�0�0�0�00�0�0�00�0�0�0�0�0) �0�0�0�0n0�0�0�0�0�0 (�0�0�0�00�0�0�0�00�0�0�00�0�0�0�0�0)Defender AS ~0_0o0 AV r
TL0�SD04XT&�0�0�0�0�0�0�[V{�[�n0�0�0�0�0�0 (�0�0�0�00�0�0�0�00�0�0�00�0�0�0�0�0)6�0�0�0�0�0�0�[V{�[�n0L}N��epe - �[�L0~0`0�f�eU0�0f0D0j0D04XT0L}N��epeo0 65535 �eh0h�:yU0�0~0Y0=�0�0�0�0�0�0�[V{n0gB}�f�e�eBf (�0�0�0�0Bf;R)0~0`0�f�eU0�0f0D0j0D04XTo00S0n0�0�0�0�0�0k0 null $PL0h�:yU0�0~0Y0$�0�0�0�0�[V{�[�n0�0�0�0�0�0 (�0�0�0�00�0�0�0�00�0�0�00�0�0�0�0�0)4�0�0�0�0�[V{�[�n0L}N��epe - �[�L0~0`0�f�eU0�0f0D0j0D04XT0L}N��epeo0 65535 �eh0h�:yU0�0~0Y0=�0�0�0�0�[V{n0gB}�f�e�eBf (�0�0�0�0Bf;R) - ~0`0�f�eU0�0f0D0j0D04XTo00S0n0�0�0�0�0�0k0 null $PL0h�:yU0�0~0Y0"NRI �[�n0�0�0�0�0�0 (�0�0�0�00�0�0�0�00�0�0�00�0�0�0�0�0)2NRI �[�n0L}N��epe - �[�L0~0`0�f�eU0�0f0D0j0D04XT0L}N��epeo0 65535 �eh0h�:yU0�0~0Y0PA;NRI n0gB}�f�e�eBf (�0�0�0�0Bf;R) - ~0`0�f�eU0�0f0D0j0D04XTo00S0n0�0�0�0�0�0k0 null $PL0h�:yU0�0~0Y0:g�_k0�[L�W0_0�0�0 �0�0�0�0n0���YBf;R - ~0`0�f�eU0�0f0D0j0D04XTo00S0n0�0�0�0�0�0k0 null $PL0h�:yU0�0~0Y0:g�_k0�[L�W0_0�0�0 �0�0�0�0n0B}�NBf;R - ~0`0�f�eU0�0f0D0j0D04XTo00S0n0�0�0�0�0�0k0 null $PL0h�:yU0�0~0Y0cLast full scan age in days- if signatures have never been updated you will see an age of 65535 daysLast scan sourceUnknownUser�0�0�0�0	Real-timeIOAV;Signature version used for the last full scan of the device>If no full scan has successfully completed in the last 14 days-Indicates if a Defender full scan is required$Real-time scan direction enumerationBothIncoming	OutcomingdTime of last Quick Scan start - If this has never updated you will see a null value in this propertybTime of last Quick Scan end - If this has never updated you will see a null value in this propertyeLast quick scan age in days- if signatures have never been updated you will see an age of 65535 days.<Signature version used for the last quick scan of the device?If no quick scan has successfully completed in the last 14 days5The AM Engine version (major, minor, build, revision)If the AM Engine is enabledWSpecifies whether the computer is monitoring file and program activity on your computer)Scan all downloaded files and attachments0Specifies whether behavior monitoring is enabled1Specifies whether Antivirus protection is enabled3Specifies whether Antispyware protection is enabled2Specifies whether the machine is a virtual machine6Specifies whether the machine has tamper protection onkSpecifies the last entity that changed the TamperProtection state e.g., UI, Signatures, Intune, ATP, etc...1Specifies whether real-time protection is enabled2NRI Engine version (major, minor, build, revision)If the NRI Engine is enabled+Indicates the current Device Control state.@Indicates the current Device Control DefaultEnforcement policy. \Timestamp indicating when the last configuration update occured for device control policies.Troubleshooting (TS) mode state-Troubleshooting (TS) current state start time+Troubleshooting (TS) current state end time.Troubleshooting (TS) remaining time in minutes/Troubleshooting (TS) remaining quota in minutes%Troubleshooting (TS) quota reset time-Troubleshooting (TS) maximum quota in minutes Troubleshooting (TS) mode source)Smart App Control (SAC) mode: On/Eval/Off1Smart App Control (SAC) eval mode expiration time Defender initialization progress>Indicates the state of Controlled Configuration on this device
�0�0�0�0n0�0�0�0�0�0Nan0i�Q ID�Zn0
TMR͑'Y�^ ID - RcSONO-Nؚ͑'Y
�0�0�0�0 ID - Rc�WINVALIDADWARESPYWAREPASSWORDSTEALERTROJANDOWNLOADERWORMBACKDOORREMOTEACCESSTROJAN�0�0�0n0(g��EMAILFLOODER	KEYLOGGERDIALERMONITORINGSOFTWAREBROWSERMODIFIERCOOKIE
BROWSERPLUGIN
AOLEXPLOITNUKERSECURITYDISABLERJOKEPROGRAMHOSTILEACTIVEXCONTROLSOFTWAREBUNDLERSTEALTHNOTIFIERSETTINGSMODIFIERTOOLBARREMOTECONTROLSOFTWARE	TROJANFTPPOTENTIALUNWANTEDSOFTWARE
ICQEXPLOITTROJANTELNETFILESHARINGPROGRAMMALWARE_CREATION_TOOLREMOTE_CONTROL_SOFTWARETOOLTROJAN_DENIALOFSERVICETROJAN_DROPPERTROJAN_MASSMAILERPATROJAN_MONITORINGSOFTWARETROJAN_PROXYSERVERVIRUSKNOWNUNKNOWNSPPBEHAVIOR
VULNERABILTIYPOLICYType ID - Enumeration	Known BadBehavior
Known GoodNRI�Zn0�0�0�0�0�0�0n0�rKaThreatCleanRebootRequiredManualStepsRequiredFullScanRequiredReinfectionLoopExecuted(List of resources affected by the threat Specifies if threat has executed!Specifies if the threat is activeVThis is a singleton that represents the Microsoft Antimalware service infection status7This class represents the catalog of recognized threatsUnique Threat ID��#�Y0�0�0�0�0�0n0
TMR�O�_�0��BlW0_0�0�0�0�0i�QCQn0.z^� ID - RcSOELAMLocalAttestationPARemoteAttestationi�Qn0q_���0�SQ0�0�0�0�0�0n0N��
�ZL0gRk0i�QU0�0_0Bf;R�Zn0�rKaL0g�_k0	Y�fU0�0_0Bf;R�O�_n0Bf;Rg0Y00
�[L��rKa ID - RcSO�0�0�0�0n01��S�[L�-NNotExecuting�Zn0�rKa ID - RcSOi�Qn0�0�0�0�0n0i�un0JRd�n0CleanFailedPAQuarantineFailedRemoveFailedAllowFailed4x�hn0
BlockedFailed�Zn0�rKa�0�0�0 �0�0�0
d��S�d\O - RcSO�0�0�0�0i�uJRd�1��SUserDefinedNoAction�0�0�0�0d��S�d\OL0b�RW0_0K0i0F0K0�0c�[W0~0Y0�O�_�0�[�NY0�0_0�0k0�_��j0���R�d\O - RcSOPAj0W0FullScanAndRebootRequiredFullScanAndManualStepsRequiredRebootAndManualStepsRequired'FullScanAndRebootAndManualStepsRequiredFullScanAndOfflineScanRequiredRebootAndOfflineScanRequired'FullScanAndRebootAndOfflineScanRequired!ManualStepsAndOfflineScanRequired,FullScanAndManualStepsAndOfflineScanRequired*RebootAndManualStepsAndOfflineScanRequired5FullScanAndRebootAndManualStepsAndOfflineScanRequiredS0�0o00�Zn0�s(Wn0s�0}j0�rKa�0h�Y0�0�0�0g0Y01.0!Microsoft Defender �0�0�0�0�[V{�0�0�0�0 �0�0�0Microsoft Defender �0�0�0�0�[V{r
T�0�0�0&Microsoft Defender �0�0�0�0�[V{ WDO �0�0�0�0 �0�0�0#Microsoft Defender �0�0�0�0�[V{�0�0�0�0�0�0 �0�0�00Server SKU k0�[W0f0��Rd�Y_j���0�0�0k0Y0�0�_��L0B0�0K0i0F0K0�0�{t�L0c�[g0M0~0Y007�0�0�0�Qn0�0�0k0�[Y0�0�0�0�0�0�0�{t�L0f:y�vk0!q�Rk0W0f00S0�0�0n0�0�0L0�0�0�0�0U0�0j0D0�0F0k0c�[g0M0~0Y009�0�0�0�Qn0�b5_P[k0�[Y0�0�0�0�0�0�0�{t�L0f:y�vk0!q�Rk0W0f00S0�0�0n0�b5_P[L0�0�0�0�0U0�0j0D0�0F0k0c�[g0M0~0Y00;�0�0�0�Qn0�0�0�0�0k0�[Y0�0�0�0�0�0�0�{t�L0f:y�vk0!q�Rk0W0f00S0�0�0n0�0�0�0�0L0�0�0�0�0U0�0j0D0�0F0k0c�[g0M0~0Y00C�{t�o00wdnisdrv k0�0c0f0yr�[n0 IP0�0�0�0�0 �0�0�0k0�[W0f0L��0�0_0�0�0�0�0�0�0 �0�0�0�0i�g�0f:y�vk0!q�Rk0g0M0~0Y00��v�0JRd�Y0�0MRk0i�u�0�0�0�0�0k0�OcW0f0J0O0�epe�0:yW0~0Y00�0�0�0�0�0�0 �0�0�0�0n0�eT - RcSO(�O�_�0�[�NY0�0_0�0k00�0�0�0�0�0�0U0�0_0�0�0 �0�0�0�0�0�[L�Y0�0�f�e�0:yW0~0Y00�k�e�e�f�eg�f�ekp�f�e4l�f�e(g�f�ePAё�f�eW�f�e8^k0�0�0OIndicates what time to perform the scheduled full scan to complete remediation.9Configure the state of Remote Encryption Protection(REP).*g�ib�v�g�0�0rTime in minutes for which Remote Encryption Protection(REP) will block threats. 0 results in no limit enforcement.XIndicates how aggressively Remote Encryption Protection(REP) will block detected threat.MediumTSpecify the IP address and subnet exclusions from Remote Encryption Protection(REP).�0�0�0�0 �0�0�0�02�bk (BFP) n0�rKa�0�ibW0~0Y00lTime in minutes for which Brute Force Prevention(BFP) will block threats. 0 results in no limit enforcement.RIndicates how aggressively Brute Force Prevention(BFP) will block detected threat.-�0�0�0�0 �0�0�0�02�bk (BFP) K0�0n0 IP �0�0�0�0h0�0�0�0�0�0n0d�Y�0c�[W0~0Y00`Brute Force Prevention(BFP) Plugin - extend Brute Force coverage to block IPs on local networks.�Brute Force Prevention(BFP) Plugin - disables Brute Force Protection's initial 2 week learning period and starts blocking threats immediately.=Configure timeout for detections requiring additional action.zTime in minutes for a detection in the 'critically failed' state to move to either 'additional action' or 'cleared' state.UTime in minutes for a detection in the 'failed' state to move to the 'cleared' state.OSpecifies the interval that will be used for service health report, in minutes.fSpecify whether to report a Dynamic Signature dropped event. By default, such events are not reported.OSpecify the maximum percentage of CPU utilization during a scan. This policy setting allows you to configure the maximum percentage CPU utilization permitted during a scan. Valid values for this setting are a percentage represented by the integers 5 to 100. A value of 0 indicates that there should be no throttling of CPU utilization.
When set, Microsoft Defender Antivirus will check for new signatures before running a scan.  If new signatures are found they will be downloaded and installed before the scan begins.  If no new signatures are found, the scan will start based on the existing signatures.CTurn on removal of items from scan history folder. This setting defines the number of days items should be kept in the scan history folder before being permanently removed. The value represents the number of days to keep items in the folder. If set to zero, items will be kept forever and will not be automatically removed.$�0�0�0�0L0�0�0�0�0�rKan04XTn00�0�0�0�0�0�0U0�0_0�0�0�0�0�0�[L�W0~0Y00 �0�0�0�0�0�0U0�0_0�0�0�0�0k0O(uY0�0�0�0�0�0n0.z^��0c�[W0~0Y00	�0�0�0�0 �0�0�0�0�0�0 �0�0�0�0�0�0�0�0�0�0U0�0_0�0�0�0�0�0�[L�Y0�0�f�e�0c�[Y0�0 �0�0�0�0�0�0U0�0_0�0�0�0�0 �0�0�0�0�0�[L�Y0�0Bf;R�0c�[W0~0Y00PA�0�0�0�0�0�0U0�0_0�0�0�0�0�0�[L�Y0�0Bf;R�0c�[Y0�0fCPU O(u�sn06RP�o00�0�0�0�0�0�0U0�0_0�0�0�0�0k0n000~0_0o0�0�0�0�0�0�0U0�0_0�0�0�0�0h0�0�0�0�0 �0�0�0�0k0i�(ug0M0~0Y00�e�[$Po00�0�0�0�0�0�0U0�0_0�0�0�0�0n00k0 CPU O(u�sn06RP��0i�(uW0~0Y00*R�V�0�0�0�0�0�0n0�_0�ibU0�0_0Bf���Qk0�0�0�0�0g0���YU0�0_0�f�e�0Y0P0k0-NbkW0~0Y00`CheckForSignatureBeforeRunningScan �0�0�0�0�0�0�0�0W0~0Y00S0n0Bf���Qk0�[�L0ck8^k0�f�eU0�0_04XTk00�0�0�0�0g0���YU0�0_0�f�e�0-NbkW0~0Y00Bf��o0RXSMOg0Y00��0�0�0�0�0�0 �0�0�0�0�0�0�0�0n0�f�e�0�0�0�0�0�0�0Y0�0�0�0�0�0qQ	g�0�[�W0~0Y00S0n0-��[k0�0�00�0�0�0�0�0�0 �0�0�0�0�0�0�0�0n0�f�en0�0�0�0�0�0�0CQh0j0�0 UNC �0�0�0�0qQ	g�0�ibg0M0~0Y00�f�eCQx0n0�c�}o00c�[W0_0��^g0L��0�0~0Y00S0n0-��[n0$Po00�0�0�0�0�0�0 �0�0�0�0�0�0�0�0n0�f�eCQ�0RcW0_0�0�0�0:SR�0n0�eW[Rh0W0f0eQ�RY0�0�_��L0B0�0~0Y00_0h0H0p00{\unc1 | \unc2 } n0�0F0k0c�[W0~0Y00�e�[g0o00S0n0N��o0zzg0Y00Gtrue k0-��[W0_04XT0�0�0�0�0L0X[(WY0�0K0i0F0K0k0K0K0�0�0Z00AM �0�0�0�0o0���YBfk0�0�0�0�0�0�0 �0�0�0�0�0�0�0�0n0�f�e�0���YW0~0[0�00��0�0�0�0�0�0 �0�0�0�0�0�0�0�0n0�f�e�0�0�0�0�0�0�0Y0�0�f�eCQn0��^�0�[�W0~0Y00S0n0-��[k0�0�00�pen0�0�0�0�0�0�0 �0�0�0�0�0�0�0�0n0�f�eCQk0�c�}Y0�0h0M0n0��^�0�[�g0M0~0Y00S0n0-��[n0$Po00�0�0�0�0�0�0 �0�0�0�0�0�0�0�0n0�f�eCQ�0�juk0RcW0_0�0�0�0:SR�0n0�eW[Rh0W0f0eQ�RY0�0�_��L0B0�0~0Y00	g�Rj0$P: 'InternalDefinitionUpdateServer'  'MicrosoftUpdateServer'  'MMPC'  'FileShares' J�0�0�0�0�0�0 �0�0�0�0�0�0�0�0n0�f�eL0L��0�0�0�f�e�0:yW0~0Y00�0�0 (0x0) k0-��[Y0�0h00�0�0�0�0�0�0 �0�0�0�0�0�0�0�0n0�f�eL0�k�eL��0�0~0Y00E�0�0�0�0�0�0 �0�0�0�0�0�0�0�0n0�f�e�0�0�0�0L0L��0�0�0Bf;R�0c�[W0~0Y00�e�[g0o00�0�0�0�0�0�0U0�0_0�0�0�0�0n0MRk0�[�L0�0�0�0�0U0�0~0Y00`�0�0�0�0�0�0�0�[�L0�_��h0U0�0�0~0g0n0�epe�0�[�W0~0Y00SignatureUpdateLastChecked h0qQk0O(uW0~0Y000 = �0�0�0�0�0�0�0j0W001 = 1 �e02 = 2 �ej0i00CS0n0Bf��$Po00�f�e�0�0�0�0n0�����0Bf��peg0h�W0~0Y00	g�Rj0$Pn0�{�Vo0 1 (1 Bf��T0h0) K0�0 24 (1 �e 1 �V) ~0g0g0Y00UNC r
T BLOB �0�0�0�0�0�0qQ	gn04X@b0r
Tn0�x��k0O(uY0�0�0�0�0�0�����0RXSMOg0c�[W0~0Y00Microsoft MAPS k0�S�RW0~0Y00!q�R�W,gs�0}-��[�0�0�0�0��On0Tag0Y00AlwaysPromptSendSafeSamples	NeverSendSendAllSamples�0�0�0�0�0�0 �0�0�0�0!q�Rk0W0~0Y00�S0n0-��[k0�0�00�0�0�0�0�0�0U0�0_0�0�0�0�0n0���YBf;RJ0�0s0�0�0�0�0�0�0U0�0_0�0�0�0�0�0�0 �0�0�0�0�0�0�0�0n0�f�en0���YBf;Rn0�0�0�0�0S�0	g�R~0_0o0!q�Rk0-��[g0M0~0Y00S0n0-��[o00�0�0�0�0k0�0�0�0�0�0�0n0q_���^�0RceY0�0_0�0k0O(uU0�0~0Y00_0h0H0p00�0�0�0�0qQ	gW0f0D0�0�0�0�0�N�`�0�0�0g0O(uY0�0h00�0�0�0�0�0Y(uY0�0�d\O�0�pen0�0�0�0�N�`�0�0�0g0TBfk0�[L�g0M0j0D0�0F0k0Y0�0S0h0L0g0M0~0Y00pS0n0-��[g0o00�0�0�0�0�0�0n0�0�0�0�0S�0Bf��XSMOg0�ibg0M0~0Y00�0�0�0�0Sn0����o0 [1 - 23] Bf��g0Y00�0�0�0�0Sn0�R�gn0s�0}k0d0D0f0o00RandomizeScheduleTaskTimes -��[�0�x��W0f0O0`0U0D00
�R\On0�v���0!q�Rk0W0~0Y00IOAV �Ow��0!q�Rk0W0~0Y00�0�0�0�0�0�0n0�v���0!q�Rk0W0~0Y00�0�0�0�0�0n0�0�0�0�0�0!q�Rk0W0~0Y00�0�0�0�0�0n0�0�0�0�0�0!q�Rk0W0~0Y00��0�0�0�0�0�0�0 �0�0 �0�0�0�0�0!q�Rk0W0~0Y00�0�0�0�0�0�0�0 �0�0�0�0o00�[g�vk0�0�0�0�0�0�0U0�0_0�0�0�0�0L0�[L�U0�0j0K0c0_04XTk0���YU0�0�0�0�0�0�0g0Y00�8^0�0�0�0�0�0�0U0�0_0�0�0�0�0o00�0�0�0�0�0�0U0�0_0Bf;Rk0�0�0�0�0�0�0�0n0���nL0eQc0f0D0j0D0h0�[L�U0�0~0[0�00��0�0�0�0�0�0�0 �0�0�0�0 �0�0�0�0�0!q�Rk0W0~0Y00�0�0�0�0�0�0�0 �0�0�0�0o00�[g�vk0�0�0�0�0�0�0U0�0_0�0�0�0�0L0�[L�U0�0j0K0c0_04XTk0���YU0�0�0�0�0�0�0g0Y00�8^0�0�0�0�0�0�0U0�0_0�0�0�0�0o00�0�0�0�0�0�0U0�0_0Bf;Rk0�0�0�0�0�0�0�0n0���nL0eQc0f0D0j0D0h0�[L�U0�0~0[0�00�0�0�0n0�0�0�0�0�0!q�Rk0W0~0Y00�0�0�0�0�0�0 �0�0�0�0n0�0�0�0�0�0!q�Rk0W0~0Y00�_CQ�0�0�0�0�0!q�Rk0W0~0Y00%�0�0�0U0�0_0�0�0�0�0�0�0 �0�0�0�0g0n0�0�0 �0�0�0�0n0�[L��0!q�Rk0W0~0Y00s�0�0�0�0�0�0 �0�0�0�0n0�0�0�0�0�0!q�Rk0W0~0Y00IOAV �0�0�0�0�0�[L�W0f0�0�0�0�0�0�0 �0�0�0�0n0�0�0�0�0�0!q�Rk0Y0�0k0o00'ApplyDisableNetworkScanningToIOAV' -��[�0	g�Rk0Y0�0�_��L0B0�0~0Y008[�0�0�0�0�0�0 �0�0�0�0n0�0�0�0�0�0!q�Rk0Y0�0] -��[L0 IOAV �0�0�0�0k0�0i�(uU0�0f0D0�0S0h0�0�x��W0~0Y00UI �0�0�0�0�0�0 �0�0�0�0	g�Rk0W0~0Y00ii�QBfk0�e�[n0�d\O�0�[L�W0j0D0�Zn0 ID0ThreatIDDefaultAction_Actions n0�d\Oo00ThreatIDDefaultAction_Ids n0 ID h0TX0��^g0c�[Y0�0�_��L0B0�0~0Y0_i�QBfk0�e�[n0�d\O�0�[L�W0j0D0�Zk0�[Y0�0�e�[n0�d\O0S0�0�0n0�d\Oo00ThreatIDDefaultAction_Ids �0�0�0�0�0k0c�[U0�0f0D0�0T ID h0TX0��^k0Y0�0�_��L0B0�0~0Y00
Nfj0�Zk0�[Y0�0�e�[n0�d\Og0Y00͑'Y�^L0NOD0�Zk0�[Y0�0�e�[n0�d\Og0Y00͑'Y�^L0-Nz�^n0�Zk0�[Y0�0�e�[n0�d\Og0Y00͑'Y�^L0ؚD0�Zk0�[Y0�0�e�[n0�d\Og0Y00͑'Y�^L0͑'Yj0�Zk0�[Y0�0�e�[n0�d\Og0Y00'PUA (g~0W0O0j0D0�S��'`n0B0�0�0�0�0�0�0�0�0�0) �Ow��0�0�0�0c�[W0~0Y00	g�R	AuditModeBlock At First Seen �0!q�Rk0W0~0Y00�0�0�0�0�Ow��0�0�0�0�ibW0~0Y00�e�[$Pؚ+1��[�{�V�0�0'�b5_�0�0�0�0 �0�0�0�0�0�ibW0~0Y00	g�Rj0$Po0 0 �yK0�0 50 �y~0g0g0Y002Microsoft Defender Exploit Guard �0�0�0�0�0�0�Ow�_j���0�ibW0~0Y00�v�g�0�0�0�0�0�0�0�0 �0�0�0�0n06R�__j���0�ibW0~0Y00BlockDiskModificationOnlyAuditDiskModificationOnly;e�db�n0n\�0�0�0 (ASR) n0d�Y�0c�[W0~0Y00d;e�db�n0.~\�0�0�0 (ASR) ID �0c�[W0~0Y00��GR ID o00AttackSurfaceReductionRules_Actions �0�0�0�0�0g0c�[U0�0f0D0�0��^h0TX0��^g0c�[W0f0O0`0U0D00}Attack Surface Reduction ��GR (ASR) n0�e�[n0�0�0�0�0�00�0�0�0�0�0 o00AttackSurfaceReductionRules_Ids �0�0�0�0�0g0c�[U0�0f0D0�0]0�0^0�0n0�0�0�0 ID h0TX0��^k0Y0�0�_��L0B0�0~0Y00*g�ibf�JT#1��SU0�0_0�0�0�0�0�0�0�0�0�0�0�0�0�0�0 �0�0�0�06R�__j��k0���RW0~0Y00#�Ow�U0�0f0D0�0�0�0�0�0�0�0�0�0�0�0�0 �0�0�0�0n06R�__j��k0���RW0~0Y00&�e�[g0�0�0�0�0�0 �0�0�0�0n06R�_k0�0c0f0�Ow�U0�0f0D0�0�0�0�0�0�0n0N��g0Y00$�N�`�t�Xg0n0�0�0�0�0�0�0 �0�0�0�0�0�0�0�0(un0�0�0�0�0qQ	g�0�[�W0~0Y009SharedSignaturesPath h0qQk0�ibU0�0f0D0�04XT0�0�0�0�0�0�0k0�_c0f0�f�en00�0	g�Rk0g0M0~0Y00)�0�0�0�0�0�0U0�0_0�0�0�0�0-Nk0NOD0 CPU *QHQ�^�0O(uY0�0K0i0F0K0�0�ibW0~0Y00�0�0�0�0 �0�0�0�0��{_j���0	g�R~0_0o0!q�Rk0W0~0Y002Microsoft Defender �0�0�0�0�[V{L0�_ϑ6R��ё�c�}g0�f�eW0f0��Og0M0�0�0F0k0W0~0Y00lS0n0-��[g0o00�0�0�0�0�0�0�Ow��0Windows Serverg0�0�0�0�0 �0�0�0~0_0o0�v�g�0�0�0k0�ibg0M0�0K0i0F0K0�06R�_W0~0Y00false n04XT0EnableNetworkProtection n0$Po0!q��U0�0~0Y00!S0n0-��[o00�0�0�0�0�0�0�Ow�n0_0�0n0�0�0�0�0�0�0�Qt�06R�_W0~0Y00|�0�0�0�0�0�0�Ow�o00�0�0�0�0�0�0 �0�0�0�0�0�0�0i�gW00�0�0�0�0�0�0L01��S~0_0o0�0�0�0�0U0�0f0D0�0K0�0$R�eY0�0K0f�JT�0h�:yW0~0Y00S0n0-��[o00f�JT�0h�:yY0�0n0g0o0j0O00�0�0�0�0�0�0�Ow�L0�0�0�0�0�0�0 �0�0�0�0�0�0�0�0�0�0�0Y0�0K0i0F0K0�06R�_W0~0Y00\	g�Rk0W0_04XT0�0�0�0�0L0�0�0�0�0�rKak0j0c0_0h0M0k0�[L�U0�0�0�0�0�0�0�0�0U0�0_0�0�0�0�0o00CPU �0��teW0~0[0�00�e�[$Po0 1 g0B0�0_0�00�0�0�0�0 �0�0�0�0n0��teo0!q�Rn0~0~0g0Y00vTRUE k0-��[Y0�0h00�0�0�0�0L0�0�0�0�0���ng0�[L�U0�0f0D0�04XT0�0�0�0�0�0�0U0�0_0�0�0 �0�0�0�0�0�}L�g0M0~0Y00�e�[$Po0 FALSE g0Y00d0~0�00�0�0�0�0L0�0�0�0�0���ng0�[L�U0�0f0D0�04XT0�e�[g0o0�0�0 �0�0�0�0L0�S�0�mU0�0~0Y003O(uY0�0�0�0�0�0 PAC �0c�[Y0�0_0�0k0O(uU0�0~0Y00ProxyServer L0S0�0k0*QHQU0�0~0Y00H�0�0�0�0�0�0L0�0�0�0�0�0�0k0�c�}W0�0F0h0W0_0h0M0k0O(uY0�0
TMR�NM0�0�0�0�0�0:yY0_0�0k0O(uU0�0~0Y0 (r
Tn0�f�eh0 SpyNet �0�0�0�0(u)0�0�0�0�0 �0�0�0�0�0�0�0�0�0Y0�0�0�0�0�0n0N��0p�{t�L0�0�0�0�0L}1ug0Y0y0f0n0�c�}�07_6RW00�v�c�c�}�01��SW0j0D04XT0S0�0k0o0 ProxyServer h0 ProxyPacUrl n00L0+T~0�0~0Y00IESettings J0�0s0 AutoProxy i�Qo0+T~0�0f0D0~0[0�00S0n0-��[o00�0�0�0�0�0�0�Ow�n0 TLS ㉐g�0!q�Rk0W0~0Y00S0n0-��[o00�0�0�0�0�0�0�Ow�n0 HTTP ㉐g�0!q�Rk0W0~0Y00S0n0-��[o00�0�0�0�0�0�0�Ow�n0 DNS ㉐g�0!q�Rk0W0~0Y00"S0n0-��[o00�0�0�0�0�0�0�Ow�n0 DNS TCP ㉐g�0!q�Rk0W0~0Y00S0n0-��[o00�0�0�0�0�0�0�Ow�n0 SSH ㉐g�0!q�Rk0W0~0Y00o�{t�L0yr�[n0�0�0�0�0 (�0�0�0) K0�0 Microsoft Defender �0�0�0�0�0�0�0�0n0�f�e�0�0�0�0�0�0�S�OY0�0�0F0k0�0�0�0�0�0�ibg0M0�0�0F0k0W0~0Y00J0�[�io00�k���vj0�0�0�0�0 �0�0�0�0�0�0�0�0�0�0�0g0M0~0Y00�0�0�0�0�0�0�0�0�0�0�0�0�0�0n0�^�{�Vn0E��^k�{t�L0yr�[n0�0�0�0�0 (�0�0�0) K0�0 Microsoft Defender �0�0�0�0n0�f�e�0�0�0�0�0�0�S�OY0�0�0F0k0�0�0�0�0�0�ibg0M0�0�0F0k0W0~0Y00J0�[�io00�k���vj0�0�0�0�0 �0�0�0�0�0�0�0�0�0�0�0g0M0~0Y00v�{t�L0yr�[n0�0�0�0�0 (�0�0�0) K0�0 Microsoft Defender �0�0�0�0�0�0 �0�0�0�0�0�0�0�0n0�f�e�0�0�0�0�0�0�S�OY0�0�0F0k0�0�0�0�0�0�ibg0M0�0�0F0k0W0~0Y00J0�[�io00�k���vj0�0�0�0�0 �0�0�0�0�0�0�0�0�0�0�0g0M0~0Y00I�{t�L00�0�0�0�00�0�0�0�0�0�0�0�00�0�0�0�0�0�0 �0�0�0�0�0�0�0�0n0�f�e�0�0�0�0�0n0�k���vj0�0�0�0�0 �0�0�0�0�0�0�0�0�0�0�0g0M0�0�0F0k0W0~0Y00rS0n0-��[g0o00RS3 n0 Windows �0�0�0�0�0�0g0�0�0�0�0�0�0�Ow��0�0�0�0�0 �0�0�0~0_0o0�v�g�0�0�0k0�ibg0M0�0K0i0F0K0�06R�_W0~0Y00false n04XT0EnableNetworkProtection n0$Po0!q��U0�0~0Y00S0n0-��[g0o00�0�0�0�0�0�0�Ow�g0 Windows Server g0�0�0�0�0�0�0�Qt�0	g�Rk0g0M0�0K0i0F0K0�06R�_W0~0Y00false n04XT0DisableDatagramProcessing n0$Po0!q��U0�00�e�[g0 Datagram i�gL0!q�Rk0j0�0~0Y00^S0n0-��[o00�0�0�0�0h0�v�gn0 EnableNetworkProtection n0$P�0�naW0f00�0�0�0�0�0�0�Ow�n0 DNS �0�0�0�0�0�0_j���0	g�Rk0W0~0Y00i�g�0�0�0g0o0UO�0�[L�U0�0~0[0�00 S0n0-��[o00�0�0�0�0�0�0�Ow�n0�S�O�c�}�0�0�0�0�0�0!q�Rk0W0~0Y00S0n0-��[o00�0�0�0�0�0�0�Ow�n0 RDP ㉐g�0!q�Rk0W0~0Y00,S0n0-��[o00�0�0�0�0�0�0�Ow�K0�0n0�0�0�0�0�0�0�0 �0�0�0�0�0n0�SƖh0��O�0!q�Rk0W0~0Y00!S0n0-��[o00�O<��0�0�0�Ow�k0�0�0�0�0�0�0�0�07_S_j���0�ibW0~0Y00pd�Y�0�0�0�0�0n0j�n�0�0�0�0 �0�0�0�0k0h�:yY0�0K0i0F0K0�06R�_W0~0Y00�0�0�0�0-��[ HideExclusionsFromLocalAdmins �0O(uW0f00j�n�0�0�0�0h0�{t�0�0�0�0 �0�0�0�0n0!N�eK0�0d�Y�0^�h�:yk0W0~0Y00S0n0-��[o00�0�0�0�0�0�0�Ow�n0 FTP ㉐g�0!q�Rk0W0~0Y00AS0n0-��[k0�0�00Tg�vk0i�gU0�0_0�0�0�0�0�0�0 �0�0�0�0^�Tgi�gk0R�0�fH0�0S0h0L0g0M0�0�0�0�0�0�0�0�0n0gi�SL0	g�Rk0j0�0~0Y00)�0�0�0�0�0�0U0�0_0�0�0�0�0�0�[L�Y0�0HSMR 0 Bf�NM�n0Bf�� (R) �0c�[W0~0Y00)S0n0-��[o00�0�0�0�0�0�0�0�0�0�0�0 �0�0�0L0�0�0n04XTk09eV0�02�bk�0!q�Rk0W0~0Y00S0n0-��[o00�0�0�0�0�0�0�Ow�n0 SMTP ㉐g�0!q�Rk0W0~0Y00S0n0-��[o00�0�0�0�0�0�0�Ow�n0 QUIC ㉐g�0!q�Rk0W0~0Y00S0�0o00�0�0�0�0�0�0�Ow�n0U��O�0�0�0�0-��[W0~0Y00^��chY: S0n0-��[o0�0�0�0�0n0 TDT �0!q�Rk0W0~0Y00�;e�db�n0.~\�0�0�0 (ASR) �0�0�0�V	gn0d�Y ID �0c�[W0~0Y00�0�0�0 ID o00AttackSurfaceReductionRules_RuleSpecificExclusions �0�0�0�0�0g0c�[U0�0_0]0�0^0�0n0d�Y�0O(uW0f0-��[~0_0o0���RY0�0�_��L0B0�0~0Y00�;e�db�n0.~\�0�0�0 (ASR) �0�0�0�V	gn0d�Y�0c�[W0~0Y00�0�0�0�V	gn0d�Yo00AttackSurfaceReductionRules_RuleSpecificExclusions_Id �0�0�0�0�0g0c�[U0�0_0]0�0^0�0n0 ID �0O(uW0f0-��[~0_0o0���RY0�0�_��L0B0�0~0Y00-gRn0�[L��0�0�0�0�0�0�0�0 (OOBE) -Nn0�0�0�0�0�0�0�Ow�h0r
Tn0�f�e�0	g�Rk0W0~0Y00;S0n0-��[�0O(uY0�0h00IT �{t�o0�0�0�0�0�0 �0�0�0�0n0�0�0�0�0�0�0�0 �0�0�0�0	g�R~0_0o0!q�R�0�0�0g0�ibg0M0~0Y00/�0�0�0�0�0 �0�0�0�0�0�0 �0�0�0k0�0�0�0�0�0�0�0n0�f�e�0!q�Rk0W0~0Y00�N�0�0k0sSBfB}�NW0~0Y00$�0�0�0�0 �0�0�0�0-Nk0d�YU0�0_0�0�0�0�0h0�0�0�0�0�0�0�0�0�0�0�0W0~0Y00ScanRtpExclusions�0�0�0�0�0�0�0�0pen0
NP��0JRd�W0~0Y0�	g�Rk0Y0�0h00�0�0 �0�0�0�0o0�[�J0�0s0�ib�0�0�0�0 (ECS) n0O(u�0\PbkW0f00Microsoft Defender �0�0�0�0�[V{�0]0n0�Nn0 Defender �0�0�0�0�0�0k0�[Y0�0D}T~�V	gn0͑��j0�Ock�0ŏ�k0M��OW0~0Y00�Ocko00�0�0�0�0�0�0 �0�0�0�0�0�0�0�0n0�f�e�0�X0f0M��OL0�}�}U0�0~0Y00�	g�Rk0Y0�0h00�0�0 �0�0�0�0o0 OneDsCollector �0�0�0�0�0�0�0�0O(uW0f0 Microsoft Defender �0�0�0�0�[V{J0�0s0]0n0�Nn0 Defender �0�0�0�0�0�0K0�0�0�0�0�0�0�0�SƖY0�0S0h0�0\PbkW0~0Y00S0n0-��[�0	g�Rk0Y0�0h00�0�0�0�0�0�0�0n0NON�0��i�wj0i0n0OUL��0Y0p0�0O0��X�W0f0�[�QY0�0 Microsoft n0_j��k0q_���0NH0�0�S��'`L0B0�0~0Y00�0�0�0�0�0�0�Ow�n0 UDP �0�0�0�0�0S�0�0�0�0�0�0	g�Rk0Y0�0�0�0�0�0�0�0�Ow�n0 UDP �S�O�0�0�0�0�0�0	g�Rk0Y0�0f�0�0q�BVControls AI Agent Protection. 0=Disabled, 1=Enabled (scan and block), 2=Audit (scan and log only).��0BVM�YfDefine the order of sources for downloading security intelligence updates This setting allows you to define the order in which different security intelligence update sources should be contacted. The value of this setting should be entered as a pipe-separated string enumerating the security intelligence update sources in order. Possible values are: 'InternalDefinitionUpdateServer'  'MicrosoftUpdateServer'  'MMPC'  'FileShares' ��0>o�0��Indicates the day of the week in which security intelligence updates occur. If set to zero then security intelligence update occurs daily.��0�0�0�0Defines the number of days after which a catch-up signature is warranted. Works with SignatureUpdateLastChecked. 0 = no catch-up,  1 = 1 day,  2 = 2 days, etc.�0u��0�0Disable privacy mode.(�0�0�SBVDisable intrusion prevention system.��0q����nA user confirmation is sought by default by this cmdlet. If -Force is specified, the default confirmation is not sought from the user.bYf���0M�Specify reporting Dynamic Signature dropped event or not. By default, doNOT report such event.!�S�SA�tzControls AI Agent Protection.>u��0q�:kSpecify the exclusions for Attack Surface Reduction Rules.SYfM��0A�Defines a file share for security intelligence updates in virtual environments.2:kPzq��0Microsoft Defender Antivirus Preferences ClassM���q���Category of Notification.tzBV�0A�ScanStateNotifications�0>o�0�0ThreatStateNotifications�0�SYf�0SignatureStateNotifications�0>o�S�0ComputerStateNotifications Pz�0M��0Detailed Scan Notifications.���0�0�0ErrorOccurredSU�0Yf�0ScanCompletedPA"q��0q��0Detailed Threat Notifications.��PzA�M�SuccessfulRemediation�eq�>o��NonCriticalFailure%�0�0�Sq�Detailed Signature Notifications.M�M�SU�0SignaturesOutOfDate$�e�0A��0Detailed Computer Notifications.�S��Yf�0ScansOutOfDatetz�n�0�0ComponentsChangedPzu��0PzStateRecovered-����A��0Date and time the WMI Event was generated�BVBVM�>oAdditional Data. At the moment, the only use is when the CategoryDiscriminant is equal to ThreatStateNotificationsthen this value will contain the ThreatID7��>o>otzMicrosoft Defender Antivirus Event Indication Class)�0�0���0Unique identifier (GUID) of the rule.q��0�0A�IP address to block. �eM��0YfType of the blocking action./Pz�0A�tzDirection of the rule. (Outgoing, Incoming)PA)M��n�0��Protocol of the rule. (TCP, UDP, Any)q��0�0�0Range of local ports.�0Pz:k��Range of remote ports.5�n>ou�tzStart time of the rule, when it was first created-tz�eYf�0End time of the rule, when it will expire7�0�nq��0Unique identifier (GUID) of the rule to be removed.>BV��YfBVMicrosoft Defender Behevioral Network Blocking Rules ClassPA%1!s! L0�0�0�0�0�0�0�0�0�0W0f0D0~0Y0#x��bW0_0�0�0�0�0n0.z^�k0�0c0f0o00W0p0�0O0Bf��L0K0K0�0S0h0L0B0�0~0Y00�0�0�0�0L0ck8^k0�[�NW0~0W0_00�0�0�0�0�0�0�0�0�0W0�0F0h0W0_0h0M0k0�0�0�0L0zvuW0~0W0_00	�0�0�0�0 �0�0�0�0�0�0 �0�0�0�0	�0�0�0�0 �0�0�0�0%1!s! %2!s!�0�0�0�0J0�0s0�0�0�0�0�0�0n0�[��0�f�eW0f0D0~0Y0/%1!s! o0�0�0�0�0�0�Ow�Y0�0_0�0k00�0�0�0�0J0�0s0�0�0�0�0�0�0n0�[��0��R�vk0�f�eW0~0Y00PA�0�0�0�0J0�0s0�0�0�0�0�0�0n0�[�n0�f�eL0ck8^k0�[�NW0~0W0_00'�0�0�0�0J0�0s0�0�0�0�0�0�0n0�[�n0�f�eo0�[�NW0~0W0_0L00�0�0�0L0zvuW0~0W0_00�0�0�0�0J0�0s0�0�0�0�0�0�0n0�[�!kn0�0�0�0n0_0�00�d\Ok01YWeW0~0W0_0: 0x%1!x!'�0�0�0�0 �0�0�0�0�0�[L�Y0�04XTo0 ScanPath �0�0�0�0�0�0L0�_��g0Y00S0n0�0�0�0�0g0o0�0�0�0�0L0�ek02�L�-Ng0Y00%S0n0�0�0�0�0g0o00�0�0�0�0J0�0s0�0�0�0�0�0�0n0�[�n0�f�eL0�ek02�L�-Ng0Y00\o(W�vj0�Zh0W0f0i�QU0�0_0��vo0�ek0d��SU0�0f0D0~0Y00$�s(W0�0�0�0�0k0o0d��SY0�0�0F0k0i�QU0�0_0�0�0�0�0�0j0��vo0B0�0~0[0�00'\o(W�vj0�Zh0W0f0i�QU0�0_0��v�0d��SW0�0F0h0W0_0h0M0k0�0�0�0L0zvuW0~0W0_00PThreatIDDefaultAction_Actions $Po00ThreatIDDefaultAction_Ids �0�0�0�0�0�0T0h0k0c�[Y0�0�_��L0B0�0~0Y00'�Z ID k0�[Y0�0�e�[n0�d\O�0�S�_g0M0~0[0�0g0W0_00�0�0�0: 0x%1!x!3!kn0�0�0�0n0_0�00�d\Ok01YWeW0~0W0_0: 0x%1!x!0�d\O: %2!s!0�0�0�0�0�0: %3!s!0��BlU0�0_0�d\O�0�[L�Y0�0_0�0k0�_��j0�0�0�0�01��SL0B0�0~0[0�00%�0�0�0�0g0 WDO �0�0�0�0�0�[L�W0�0F0h0W0_0h0M0k0�0�0�0L0zvuW0~0W0_00S0n0�0�0�0�0g0o0�0�0�0�0L0�ek02�L�-Ng0Y00PA�����h%2 WMI �0�0�0�0�0�0n0�0�0�0�0�0�0n0�S�_�0�0�0�0g00�0�0�0 %1 L0zvuW0~0W0_00%0

X%2 WMI �0�0�0�0�0�0n0Y��v�0�0�0�0g00�0�0�0 %1 L0zvuW0~0W0_00%0

l%2 WMI �0�0�0�0�0�0n0 FireEvent �0�0�0�0g00�0�0�0 %1 L0zvuW0~0W0_00%0

�Y0y0f0n0�0�0�0�0�0 �0�0�0�0�0�0�0 �0�0�0�0�0K0�0n0 %2 WMI �0�0�0�0�0�0n0��wk0{v2�W0�0F0h0W0_0h0M0k0�0�0�0 %1 L0zvuW0~0W0_00�s(Wn0�0�0�0�0�0K0�0n0��wn00L0�S�OU0�0~0Y00%0

t%2 WMI �0�0�0�0�0�0n0�0�0�0�0�v���0�0�0�0�0\ObW0�0F0h0W0_0h0M0k0�0�0�0 %1 L0zvuW0~0W0_00%0

��0�0�0�0�0�[V{��wn0�v��n0_0�0k0 %2 WMI �0�0�0�0�0�0�0{v2�W0�0F0h0W0_0h0M0k0�0�0�0 %1 L0zvuW0~0W0_00%0

�4VS_VERSION_INFO���e�e?DStringFileInfo 041104B0LCompanyNameMicrosoft CorporationLFileDescription�Ow��{t WMIv2 �0�0�0�0�0�0JInternalNameProtectionManagement�.LegalCopyright� Microsoft Corporation. All rights reserved.bOriginalFilenameProtectionManagement.dll.muij%ProductNameMicrosoft� Windows� Operating System�9FileVersion4.18.26050.15 (b7ae6fb185fe12f8ad81cb6d4ade5982e03d0a61)@ProductVersion4.18.26050.15DVarFileInfo$Translation�PADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGX�%0�%�	*�H��
��%�0�%�10
	`�He0\
+�7�N0L0
+�70	���010
	`�He �E3�P�#��–<q��	��D��lL�q�
�0�	0��3�W���2-.�0
	*�H��
0��10	UUS10U
Washington10URedmond10U
Microsoft Corporation1.0,U%Microsoft Windows Production PCA 20110
260416190915Z
261017190915Z0p10	UUS10U
Washington10URedmond10U
Microsoft Corporation10UMicrosoft Windows0�"0
	*�H��
�0�
�֥�mlF��O%���F�k���Q�.�H�B���0��
|Ḣ�|�9b4�wۤ��cc��]Q����@~�$	���B��hn�K����u���D�@+c�,�iA�,a����晞�B���
K2؟��&���?
̡�M��~;ax�|xT�nJ2L��+����8���ܞ�-��A�G�T*���S3�<�:Cݨ�#�6J�8�ou�,bO�l��K&�*&n��`���|5M`x�O �^�U)��s�ۿ��	���0��0U%0
+�7
+0U�`\�6�ϧ4��h�N$�o*0TUM0K�I0G1-0+U$Microsoft Ireland Operations Limited10U
229879+5075120U#0��)9�ėx͐��O��|U�S0WUP0N0L�J�H�Fhttp://www.microsoft.com/pkiops/crl/MicWinProPCA2011_2011-10-19.crl%200a+U0S0Q+0�Ehttp://www.microsoft.com/pkiops/certs/MicWinProPCA2011_2011-10-19.crt0U�00
	*�H��
��R��>���q;/
W�M95s�
�q9����V�ޏ�%���y��{��0L%�3e_�12E�8;Mx���;HB/��y�����9��-�yU�}lT���W����t,\��r'D�i���Y�Ѡۆ8
�p<:��NbC��8�<i���g���N?=N}�i;�s�6wjql`��4�$�����(t��U�vMb��}�EwTC����V�X+ls\����yφ,��5r*���0��0���
avV0
	*�H��
0��10	UUS10U
Washington10URedmond10U
Microsoft Corporation1200U)Microsoft Root Certificate Authority 20100
111019184142Z
261019185142Z0��10	UUS10U
Washington10URedmond10U
Microsoft Corporation1.0,U%Microsoft Windows Production PCA 20110�"0
	*�H��
�0�
�����.	����i�!�i33��T����� ��ҋ�8����-|by��J?5 p���k�6u�1ݍp��7�tF�([�`#,��G�g�Q'�r��ɹ;S5|���'�����#	o�F��n�<A�ˣ?]jM�i%(\6��C
��������['�'x0�[*	k"�S`,�hS��I�a��h	sD]}�T+�y��5]l+\μ�#�on�&�6�O�'��2;A�,���w�TN�\�e�C���mw�Z$�H��C0�?0	+�70U�)9�ėx͐��O��|U�S0	+�7
SubCA0U�0U�0�0U#0��Vˏ�\bh�=��[�Κ�0VUO0M0K�I�G�Ehttp://crl.microsoft.com/pki/crl/products/MicRooCerAut_2010-06-23.crl0Z+N0L0J+0�>http://www.microsoft.com/pki/certs/MicRooCerAut_2010-06-23.crt0
	*�H��
��|qQ�y�n��9>�<Rn+?s��h�H�4M��&�1F�ay�8.Ek��(�����	��L
6fj���������@26v�Zƿ���Ӭ�h�b��TlP0X��|���N���|�sW�R!s4Z�V��	����~�����?�rS��c��=1e�������=����BА�_T���G�o�sNA�@�_�*��s�!(���s9_>�\`����	���Q�fG���=�*hw��Lb{��Ǻz�4Kbz����J7�-�W|�=ܸZ��ij�:��n�i!7ށ�ugӓW^)9��-���Es[���z��FX�^���g�l5��?$�5�
u�V��x,��Ј���ߺ~,c��#!�xl�X6+�̤��-����@�E�Ί\k>��p*
j�_G��c
2��6*pZ�BYqKW�~���!<��Ź���E��� ����ŕ�]b֠c �uw}=�E�����W�o3��w�bY~1�-0�)0��0��10	UUS10U
Washington10URedmond10U
Microsoft Corporation1.0,U%Microsoft Windows Production PCA 20113�W���2-.�0
	`�He���0	*�H��
	1
+�70
+�710
+�70/	*�H��
	1" �d0.x���Hk@�l���`���Q�)���:�0B
+�71402��Microsoft��http://www.microsoft.com0
	*�H��
�5Y@
��>I&��c��S�E�/�����G�n���kD�.x�
����x�A�瓃��NGJ�M~OX;��3�ȵ�&T���hy;��&��-�lPC4E.������L��H�����w����J4c�y�!�9L��a߂>���='�;m6�!Ph/o�;�jc��NT�l�J���(�[�j�:E���n� Prp�L�����,���������AX�D�DEˑxT�תL'�<e��O�Sʴ��|�y�8���0��
+�71��0��	*�H��
���0��10
	`�He0�Z*�H��
	��I�E0�A
+�Y
010
	`�He ����{Y'����f����z�����Es�Rja>�20260531193422.283Z0��٤��0��10	UUS10U
Washington10URedmond10U
Microsoft Corporation1-0+U$Microsoft Ireland Operations Limited1'0%UnShield TSS ESN:3605-05E0-D9471%0#UMicrosoft Time-Stamp Service���0�(0��3�C5fϯ��0
	*�H��
0|10	UUS10U
Washington10URedmond10U
Microsoft Corporation1&0$UMicrosoft Time-Stamp PCA 20100
250814184817Z
261113184817Z0��10	UUS10U
Washington10URedmond10U
Microsoft Corporation1-0+U$Microsoft Ireland Operations Limited1'0%UnShield TSS ESN:3605-05E0-D9471%0#UMicrosoft Time-Stamp Service0�"0
	*�H��
�0�
��z��2
HX3�Ғ����nx�����Q]g�O�̦W�k���dFv�\V��u�o��k���Qn+d�&9I���q���9�\  �7��y�{�3�T���[�R�!�2H��p\���T/@�<��ɪB�1�1(W�(G��1�?jk�V�	D��ib�U
��o�¯�t�D9���*�'9߰�GC�׷kmKS�
���u=��k\�h��Ӡ�5#?�1���e'��sO�����
���ގ�~uV��/�e��1Ԝz�H`R�O�����C�$���$tdp��[HH?�[[ŹJ�|�'H�� %3�y�����x����,�
�Ņ~��x��]�-2�����Z^:4x3s�1x�KR~D`9����J��m�h�̗���}6~���ʅ��M�{��Nm���޵ت.�U^����Eҏe�ٟ��fӜ���m��)DNTp���EN)b�Wn��Qe.Q�\����P`d��=��6io,����h���I0�E0U�J��kʘPX�b�~=��@:0U#0���]^b]����e�S5�r0_UX0V0T�R�P�Nhttp://www.microsoft.com/pkiops/crl/Microsoft%20Time-Stamp%20PCA%202010(1).crl0l+`0^0\+0�Phttp://www.microsoft.com/pkiops/certs/Microsoft%20Time-Stamp%20PCA%202010(1).crt0U�00U%�0
+0U��0
	*�H��
��lZ&��C`�P�Y�	vI�Nhۆmm���K�vL&�QHWb�X�si��P�S-Zt
v��A�{��V�;�·�:#T�ç�ϭ�Ɏ���E5s�正#�xP�������־ ���D�xNW,�Z�V�v��L��]Wy�kI��Yw�%��N�����Gr��6T�-:��|��l$�Xzz ��$Y$��2R���"���K�L^������|m�y��J��>�!��Aq�EJ�U��Xc�y�*9���Mb@�#�X��Q	�`�m�{,���gX��t���c�p.��~˵>d'��O+�����{���L� ��BN�x�Ά���a�T�h�d�vo���4�+��;싖�h'i��p��@�[ek���E�g\dO�~�a��2��x\'c��A,[������J~u���N*�j���ζڜ��U~�?��� ����}�p�����eX��:L q�բ�ѡ��:��6�x��+�q�[�7�/&�[ �K�ď80�q0�Y�3��k��I�0
	*�H��
0��10	UUS10U
Washington10URedmond10U
Microsoft Corporation1200U)Microsoft Root Certificate Authority 20100
210930182225Z
300930183225Z0|10	UUS10U
Washington10URedmond10U
Microsoft Corporation1&0$UMicrosoft Time-Stamp PCA 20100�"0
	*�H��
�0�
���L�r!y���$y�Ղ��ҩlNu��5W�lJ�⽹>`3�\O�f��SqZ�~JZ��6g�F#���w2��`}jR�D���Fk��v��P�D�q\Q17�
8n����&S|9azĪ�ri����6�5&dژ;�{3��[~��R���b%�j�]�S���VM�ݼ��㑏�9,Q��pi
�6-p�1�5(�㴇$��ɏ~�T��U�mh;�F��z)7���E�Fn�2��0\O,�b�͹⍈䖬J��q�[g`���=� �s}A�Fu��_4���� }~�ٞE߶r/�}_��۪~6�6L�+n�Q���s�M7t�4���G��|?Lۯ^����s=CN�39L��Bh.�QF�ѽjZas�g�^�(v�3rק ��
�co�6d�[���!]_0t���عP��a�65�G������k�\RQ]�%��Pzl�r�Rą��<�7�?x�E���^ڏ�riƮ{��>j�.����0��0	+�70#	+�7*�R�dĚ���<F5)��/�0U��]^b]����e�S5�r0\U U0S0Q+�7L�}0A0?+3http://www.microsoft.com/pkiops/Docs/Repository.htm0U%0
+0	+�7
SubCA0U�0U�0�0U#0��Vˏ�\bh�=��[�Κ�0VUO0M0K�I�G�Ehttp://crl.microsoft.com/pki/crl/products/MicRooCerAut_2010-06-23.crl0Z+N0L0J+0�>http://www.microsoft.com/pki/certs/MicRooCerAut_2010-06-23.crt0
	*�H��
��U}�*��,g1$[�rK��o�\�>NGdx���=13�9��q6?�dl|�u9m�1��lѡ�"��fg:SMݘ��x�6.���V����i�	�{�jo�)�n�?Hu��m��m#T�xSu$W�ݟ�=��h�e��V����(U'�$�@���]='�@�8���)�ü�T�B�������j�BRu�6��as.,k{n?,	x鑲�[�I�t�쑀�=�J>f;O���2ٖ����t��Lro�u0�4�z�P�
X�@<�Tm�ctH,�NG-�q�d�$�smʎ	��WITd�s�[D�Z�k
��(�g($�8K�n�!TkjEG����^O���Lv�WT	�iD~|�als�
��Af=i��AI~~���;����>�1Q������{��p���(��6ںL���
�4�$5g+�
�挙��"��'B=%��tt[jў>�~�13}���{�8pDѐ�ȫ:�:b�pcSM��m��qj�U3X��pf�Y0�A0���٤��0��10	UUS10U
Washington10URedmond10U
Microsoft Corporation1-0+U$Microsoft Ireland Operations Limited1'0%UnShield TSS ESN:3605-05E0-D9471%0#UMicrosoft Time-Stamp Service�#
0+�<H(�6��/?TGd��iG����0���~0|10	UUS10U
Washington10URedmond10U
Microsoft Corporation1&0$UMicrosoft Time-Stamp PCA 20100
	*�H��
�Ƽa0"20260531135545Z20260601135545Z0w0=
+�Y
1/0-0
�Ƽa0
"H�0�0
��
�06
+�Y
1(0&0
+�Y
�
0� �
0��0
	*�H��
�1!B���0�Mur(����K�*DQ#�.��dq4�V�b6�0��<�q� ?{���.��
����J[:�hc?˧V�f|G�dd�7;���p�Q�)s$e���g���\�d�>�����y��k�Ɗ��3w��Yx��47��E�r��"��ν��kH���W�ńx�S9<���OjB��u��.��
D�>({��T��IfU��H�C�����uDM��SO��F��Qg����,癁g�2J�;�
S�U31�
0�	0��0|10	UUS10U
Washington10URedmond10U
Microsoft Corporation1&0$UMicrosoft Time-Stamp PCA 20103�C5fϯ��0
	`�He��J0	*�H��
	1
*�H��
	0/	*�H��
	1" ����V�$1Nm�
}C2㈈T;d	����:
0��*�H��
	/1��0��0��0�� ��	m�3����uhu��Ł�yB�Ύk�Xh0��0���~0|10	UUS10U
Washington10URedmond10U
Microsoft Corporation1&0$UMicrosoft Time-Stamp PCA 20103�C5fϯ��0" o{�*�YW��ܱ���rbv%�}(�Q>0
	*�H��
�M��j�6Xz(e�aC����au�s�6Y�iaptO���6AƟd�0Qek�Tk+=r��Q�_��|�fz
��kD�>��X2�Jڸ���v}K����u�b�$v��_R��cp ��\��5g�7�1�[A9Jz;�w�{�;9=݆Z��-0ؐ
Y��9���jIO��>؎�9Ȣv�snj���i��x����*8�̟,Fy�����͡�J��-;�/7Yq�W��!�&���[p����~�݂�0�ABI�Ϸ6�'
׺�c3.�.4FZL��~���Q$�W:j�y�4���hn;�&�(�
�[����LkR���pWc��#�z9-6"-TfS��Z�7���-��}����p?���Q!���ą��i���T{n]\Ђ)�D#5��71����O^�*�`�]�1KY�*�af���U��9�P�E��܉Ю2�G�B�0:�=&-VBIv�/{��>X�G�)�ؙU�h&
��Z��bH�5[�[
��_^��

Youez - 2016 - github.com/yon3zu
LinuXploit