MZ�ÿÿ¸@¨º´ Í!¸LÍ!This program cannot be run in DOS mode. $É;=ß�ZSŒ�ZSŒ�ZSŒÓ¬ŒŒZSŒÓQ�ŒZSŒRich�ZSŒPEd†'}@0ð" ,€0§` € (8.rdataà@@.rsrc @@'}@0 lPP'}@0$¼¼€€8.rdata8.rdata$voltmdP�.rdata$zzzdbg .rsrc$01(€.rsrc$02 u×Z|#ˆ.ñ€Please note that this machine is running with an outdated version of Antivirus Defender engine. After a new package version is released, support for the previous two versions is reduced to technical support only. Versions older than that are listed in this section, and are provided for technical upgrade support only.#Antivirus Microsoft Defender engineÎPlease note that this machine is running with outdated security intelligence version. It is recommended to apply the most recent security intelligence version to ensure optimal protection and compatibility.%Microsoft Defender Anti-Virus UpdatesPA9Sense High CPU usage is observed due to Sense NDR trafficDTry applying the Sense EDR exceptions to the following processes: %1PAHigh CPU UtilisationJMDE Platform experienced High Memory Utilisation with current MDE versionsHigh Memory UtilisationMDE Platform Update FailuresMDE Engine Update FailuresMDE Signature Update FailuresEMDE Signature Update are failing as there is already instance running_Wait for all process Instances of MpSigStub.exe is exited before trying signature update again.QMDE Windefend Service has failed to initialise successfully and stuck at stage %1eRestart the machine and update to latest defender platform and if issue persists report to Microsoft.PMDE Windefend Service has failed to shut down successfully and stuck at stage %1MUpdate to latest defender platform and if issue persists report to Microsoft.UMDE Exclusion references environment variable(s) (%1) which are not system variables.^Please review your exclusions: '%1' to make sure they reference correct environment variables.0Unable to retrieve Windows Defender preferences.‚If you intended to implement MDE Device Configuration Management, then please refer to the following article for more information.?Verify that Windows Defender service is running and accessible.9Configure Antivirus Microsoft Defender using Group PolicyConnectivity requirements@Configure hybrid Azure Active Directory join for managed domainsM365 Security PortalPAaTroubleshoot onboarding issues related to Security Management for Microsoft Defender for EndpointDefault MDE Policies keyDefault MDE Sensor Service key Default MDE Cache directory path Default MDE Cyber directory pathDefault MDE directory path&Default MDE ProgramData directory pathDefault MDE Temp directory path Default MDE Trace directory path�Delete the registry keys related to AntiSpoofing in order to force the device to generate a new private key and re-register. Run the command %1ŠNothing to do. During the duration of the time starting at Cyberthrottling start event sense cyberdata did not flow into the MDATP portal.�This device attempted to onboard through Microsoft Monitoring Agent (MMA) agent but failed as it does not support onboarding using this method.€Please refer to our online documentation to understand what onboarding method is appropriate for this device's Operating System.&MDE Onboarding Supported Configuration8The machine is associated with a specific AAD Tenant ID.°Please ensure that the AAD Tenant ID from your MDE Tenant matches the SCP Tenant ID listed above. To see your MDE Tenant Identification please refer to the M365 Security Portal6Device is anti-spoofing capable and in a stable state.CSharedSignatureRoot is configured and accessible to SYSTEM account.1SharedSignatureRoot configuration appears normal.CSharedSignatureRoot registry value is not configured or accessible.eThis is informational - verify if SharedSignatureRoot configuration is expected for your environment.+Signature update schedule configuration: %15SignatureScheduleDay: %1, SignatureUpdateInterval: %2NReview your signature update schedule settings as needed for your environment.:Configure scheduled scans for Antivirus Microsoft Defender.SignatureDefinitionUpdateFileSharesSources: %1MReview signature file shares sources settings as needed for your environment.SignatureFallbackOrder: %1HReview signature fallback order settings as needed for your environment.ÏPlease note that this machine has a policy that only allows domain based trusted publishers to be added. This may interfere with MDE sensor which needs to install certificates to the Trusted Publisher store.´For more information, refer to the article. To avoid unexpected issues, remove the associated group policy configuration: Local Authenticode Flags= %1, GP Authenticode Flags = %2.TrustedPublishersPA\Unable to read Service Connection Point (SCP) from Active Directory configuration partition.GService Connection Point (SCP) contains non-supported configuration: %1DService Connection Point (SCP) contains non-supported configuration.lThe device cannot be joined to Azure AD since the SCP record is configured to join device to Enterprise DRS.]Service Connection Point (SCP) is not configured in Active Directory configuration partition.^Unable to connect to Domain Controller to retrieve Service Connection Point (SCP) information.xThere is a discrepancy between the AAD Tenant ID from your MDE Tenant and the tenant ID in the SCP Entry of your domain.£Please ensure that the AAD Tenant ID from your MDE Tenant matches the SCP Tenant ID listed above. To see your MDE Tenant Identification refer to the documentation.dThe device is managed by SCCM Agent and will not be managed by the MDE Security management solution.ŠConfiguration Manager is recognised as the single security management authority. Defender for Endpoint will not manage security settings on devices that are already managed by Configuration Manager. If you wish to change this behaviour you will need to set the Manage Security settings using Configuration Manager toggle to Off. Refer to the following documentation for additional information.:Device is anti-spoofing capable but not in a stable state.fPlease refer to the guidelines in the following article. Contact Microsoft support if issue persists.0Microsoft Defender for Endpoint - CVE-2022-232782Microsoft Defender for Endpoint - Threat AnalyticsDefault paths are missing: %1.ŽPlease ensure the mentioned missing path(s) exist and have not been renamed. You may need to create the missing folder(s) with system context.PAKThis device failed to onboard via Microsoft Endpoint Configuration Manager.uThis issue can happen if the registry key %1 is missing from: %2. To create the missing registry key you can use: %36Device is reporting to an expired Organisation ID: %1.?You should offboard the device from this organisation, and then onboard it to your current organisation. Contact Microsoft Support if you don't have access to the offboarding script with the mentioned OrgID. Note: To view the current OrgID, please go to the MDE portal and click on the username in the top right corner.Security CentrewPlease note the device has error 'Loading the private key for the client authentication certificate' in the OpsMgr log.pPlease uninstall and re-install MMA (Microsoft Monitoring Agent) on this device and check if the issue persists.?The local time on the device is not matching the time in Azure.vPlease check that the local system time is accurate and the correct time zone is set. If this device is domain joined, please ensure that the 'Windows Time' service is running and the device is synchronised with your domain time. For more information on how to configure and control time synchronisation please refer to the article to ensure local time in BIOS is accurate. WindowsTimeLDevice is running an older version of System Center Endpoint Protection: %1.¢You should upgrade to the latest available version to ensure compatibility and allow malware detections to be logged in the Defender for Endpoint security portal.=Error occurred in the security configuration management flow. The device was successfully onboarded to Microsoft Defender for Endpoint. However, there was an error in the security configuration management flow. This could be due to the device not meeting the prerequisites for Microsoft Defender for Endpoint management channel.1Prerequisites for Microsoft Defender for Endpoint=Error occurred in the security configuration management flow.ßThe device was successfully onboarded to Microsoft Defender for Endpoint. However, Microsoft Endpoint Manager has not been configured through the Admin Centre to allow Microsoft Defender for Endpoint Security Configuration./Microsoft Endpoint Manager tenant configurationConnectivity issue occurred.ûThe device was successfully onboarded to Microsoft Defender for Endpoint. However, there was an error in the security configuration management flow which could be due to a connectivity issue. Verify that the device can communicate with MDE Endpoints.?Azure Active Directory and Microsoft Endpoint Manager endpointsGeneral Hybrid join failure.ÿThe device was successfully onboarded to Microsoft Defender for Endpoint. However, there was an error in the security configuration management flow and the OS failed to perform hybrid join. Refer to links for troubleshooting OS-level hybrid join failures.9Troubleshoot hybrid Azure Active Directory-joined devicesTenant mismatch.’The device was successfully onboarded to Microsoft Defender for Endpoint. However, there was an error in the security configuration management flow because your Microsoft Defender for Endpoint tenant ID doesn't match your Azure Active Directory tenant ID. Make sure that the Azure Active Directory tenant ID from your Defender for Endpoint tenant matches the tenant ID in the SCP entry of your domain.(Hybrid error - Service Connection Point.«The device was successfully onboarded to Microsoft Defender for Endpoint. However, Service Connection Point (SCP) record is not configured correctly and the device couldn't be joined to Azure Active Directory. This could be due to the SCP being configured to join Enterprise DRS. Make sure the SCP record points to Azure Active Directory and SCP is configured following best practices. For more information refer to the links.$Configure a service connection pointCertificate error.-The device was successfully onboarded to Microsoft Defender for Endpoint. However, there was an error in the security configuration management flow due to a device certificate error. The device certificate belongs to a different tenant. Verify that best practices are followed when creating profiles.Trusted certificate profilesAAD Connect misconfiguration.-The device was successfully onboarded to Microsoft Defender for Endpoint. However, there was an error in the security configuration management flow due to a misconfiguration in AAD Connect. To identify what is preventing the device from registering to AAD, consider running the troubleshooting tools.'Device Registration Troubleshooter ToolAFor Windows Server 2012 R2 dedicated troubleshooting instructions DNS error.±The device was successfully onboarded to Microsoft Defender for Endpoint. However, there was an error in the security configuration management flow due to a DNS error. Check the internet connection and/or DNS settings on the device. The invalid DNS settings might be on the workstation's side. Active Directory requires you to use domain DNS to work properly (and not the router's address). For more information, refer to the links.Clock sync issue.ïThe device was successfully onboarded to Microsoft Defender for Endpoint. However, there was an error in the security configuration management flow. Verify that the clock is set correctly and is synced on the device where the error occurs.Policies download failure.ÙThe device was successfully onboarded to Microsoft Defender for Endpoint. However, the device was unable to download the endpoint security policies from MEM. Verify that the device can communicate with MDE Endpoints.Unenrollment failure.ÅThe device is currently enrolled but needs to be unenrolled. However, the unenrollment process was unsuccessful due to a transient error. Verify that the device can communicate with MDE Endpoints.Policies assignment failure.ÎThe device was successfully onboarded to Microsoft Defender for Endpoint and was able to download the endpoint security policies from MEM. However, there was a failure during the assignment of the policies.Policies report failure.ÑThe device was successfully onboarded to Microsoft Defender for Endpoint and was able to download the endpoint security policies from MEM. However, there was a failure during the report of the policies to MEM.PA]This device cannot be onboarded in current state as its ImageState inside '%1' is incomplete. This issue can happen if OS image has performed multiple consecutive sysprep attempts and registry was set to '%1'. Contact Microsoft support if issue persists.Windows Setup State InformationKThe ImagePath value in registry may have been tampered prior to onboarding.fPlease review this error and inspect the ImagePath (within %1) to ensure it points to a valid %2 path.)Sense cyberdata throttled events detectedMDE and ConfigMgrThe device is managed using Configuration Manager and Microsoft Defender for Endpoint. Controlling policies through both channels may cause conflicts and undesired results. To avoid this, endpoint security policies should be isolated to a single control plane.:Co-existence with Microsoft Endpoint Configuration ManagerEnrolment status Changed The device is managed using Configuration Manager and Microsoft Defender for Endpoint. The device was unenrolled from the security configuration management solution either because the enforcement scope has changed or the MDE-Management tag was removed from the device.²The %%TEMP%% (and %%TMP%%) system environment variable is not defined. This can cause failures in Windows Defender and other system components that rely on a temporary directory.«Define the TEMP and TMP system environment variables. The default value is %%SystemRoot%%\TEMP for system accounts. Verify the path exists and has appropriate permissions.„The %%TEMP%% directory is not accessible. This can cause failures in Windows Defender components that need to write temporary files.XVerify the %%TEMP%% directory exists and the current account has read/write permissions.�The %%TEMP%% directory is set to a non-default path. A non-standard TEMP path may cause issues with components that assume the default location.PA¶Review whether the custom %%TEMP%% path is intentional. If unexpected, reset TEMP and TMP system environment variables to the default value (%%SystemRoot%%\TEMP for system accounts).PPlease note the device has multiple MMA (Microsoft Monitoring Agent) workspaces.If the device is onboarded to Defender for Endpoint via ASC (aka Azure Defender for servers) integration, then it is recommended to remove the MDE workspace to avoid cyber upload issues. For more information on ASC integration with Defender for Endpoint please refer to the article. MDE in Azure|This machine has failed to onboard due to missing permissions for registry key HKLM_System_CurrentControlSet_Services_Sense.ãThis can happen due to interference from third-party security products or if SYSTEM account full control permissions are missing for HKLM_System_CurrentControlSet_Services_Sense. The permissions found for SYSTEM account are: %1NPlease note that this server does not have the modern unified agent installed.ÔUnified agent for downlevel servers is not installed on this device. It is recommended to install the new agent for optimal performance and protection capabilities. For more information refer to the documentationFOnboard Windows servers to the Microsoft Defender for Endpoint serviceYPolicies assignment failure occurred because of the following environment variable(s): %1&The device was successfully onboarded to Microsoft Defender for Endpoint and was able to download the endpoint security policies from MEM. However, there was a failure during the assignment of the policies. Please remove any non-existing path(s) from the above system environment variable(s).5Set environment variables in the System Control PaneliPolicies assignment failure occurred since Dynamic Fair Share Scheduling (DFSS) is enabled on the device.=The device was successfully onboarded to Microsoft Defender for Endpoint and was able to download the endpoint security policies from MEM. However, there was a failure during the assignment of the policies due to API limitation that can occur when DFSS is enabled. Please contact Microsoft support for assistance.MDevice is not up-to-date and does not have anti-spoofing capability deployed.…Please ensure you deploy the recommended security patch to protect the device from spoofing, for more information refer to the links.0Microsoft Defender for Endpoint - CVE-2022-232782Microsoft Defender for Endpoint - Threat AnalyticsWDevice is running with an old version of the Microsoft Defender for Endpoint EDR sensorMPlease update the sensor to ensure you have optimal protection and stability.5Microsoft Defender for Endpoint update for EDR Sensor‡This machine has failed to onboard as MsSense.exe crashed during initialisation phase for TelLib.dll. The error from the crash was: %1This can happen if the SYSTEM account does not have permissions to write to the expected path (ProgramData\Microsoft\Windows Defender Advanced Threat Protection\Cyber). Please validate the ACLs in the path and reset the permissions from parent folder if needed.EDevice is anti-spoofing capable but is not yet registered with cloud.lPlease ensure connectivity to EDRCloud CnC URLs is not blocked. Contact Microsoft support if issue persists.MA configuration or dependency is preventing Network Protection from starting.TPlease review this error message to understand the blocking issue and resolve it: %1aSupported TLS cyphers are not enabled on this machine. This can affect connectivity to MDE cloud.ÅPlease inspect the configured cyphers (within HKLM\SOFTWARE\Policies\Microsoft\Cryptography\Configuration\SSL\00010002) to ensure it contains minimum required cyphers for connectivity to MDE cloud."Cypher suites and TLS requirementsbTLS 1.2 client protocol is not enabled on this machine. This can affect connectivity to MDE cloud.‘Please confirm that TLS 1.2 client is enabled (within HKLM\SYSTEM\CurrentControlSet\Control\SecurityProviders\SCHANNEL\Protocols\TLS 1.2\Client).PAXECDH cyphers are not enabled on this machine. This can affect connectivity to MDE cloud.žPlease confirm that ECDH KeyExchangeAlgorithm is enabled (within HKLM\SYSTEM\CurrentControlSet\Control\SecurityProviders\SCHANNEL\KeyExchangeAlgorithms\ECDH).Basic URL test failedŒNetworkProtection component is disabled or failed URL check test. This may indicate a presence of a network redirector (Ex: Cisco Umbrella).ƒêgɸS\¡‘õgeï¿D j/? ¢[éº ’å¹<­ åÀ â 9eÎÌYº YQ´�Y.!ÂgóO �±] ´éeTçcë (%1). T­ðVYè¢eöWU as' _ ¯U O Û<LW:: Æ‘Ì6ÿ c‘à’’Ê B'YòÅ[ B'.! @M¢> 'öUÄ, [õ McuÿU8 Y¸ÄMÄVÿ· _7] çö9?5 ÄïÿF[ û[ óYV#WÀBìñ! ’‘ò< @̬B%QUB ±; ®;Ãe gèS</Kë e' 3M< é_e�8ÄVóF. 8+·Ucá>> c=ê ‘´VY Bõ3, õ3 OTö;’VqYµ VB UQ )Ä ®ô :õñ#èU ï cëW è@g[/@‘¸×/] Ä‘’’¯Â ö? Ä[íU M½îÂ5, ÄR® Sè-Ys· g[ë ÄTae.DÀðY5]a ’¬<U7 Áò_¹eW½]/?é#ûc+½­_ í? íÂYòUò’c 5’À´­W ’¸‘ ÉDð@öí·ÄControlled Folder AccessFFailed to load mde_cfa_evaluation module - CFA diagnostics unavailable3Verify MdeDiag installation and module registration:No CFA (Controlled Folder Access) detections found in logs0No action required - CFA is functioning normally-Analysed %1 suspicious files for trust statusVReview CfaTrustChecks.txt in the diagnostic output for detailed trust analysis resultsA%1 is not trusted by CFA because process image is not known good.[Add it to list of allowed apps or add an AV exclusion for this file if you trust this file.>%1 is not trusted by CFA because its parent is not known good.8%1 is not trusted by CFA because its parent is a script.A%1 is not trusted by CFA because it loaded an untrusted file: %2.R%1 is not trusted by CFA because it was injected into by an untrusted process: %2.9Add an AV exclusion for this file if you trust this file.IAdd an AV exclusion for this process if you trust it (Process Exclusion).PA Process: %1 CFA Events: - Action: %1, Reason: %2 Taint Events:" - TaintType: %1, TaintReason: %2 Guidance: %1(%1 occurrences)PApASR %1 GUID '%2' (source: %3) has leading or trailing spaces/tabs which can prevent the rule from being applied.mRemove leading and trailing whitespace from the ASR Rule GUID in your Group Policy or registry configuration.ˆASR %1 GUID '%2' (source: %3) contains curly braces. GUIDs must be specified without braces (e.g. 56a863a9-875e-4185-98a7-b882c64b5ce5).^Remove the curly braces from the ASR Rule GUID in your Group Policy or registry configuration.rASR Exclusion '%1' (source: %2) has leading or trailing spaces/tabs which can prevent the exclusion from matching.rRemove leading and trailing whitespace from the ASR exclusion path in your Group Policy or registry configuration.•ASR %1 GUID '%2' (source: %3) is not a valid GUID. Expected format: xxxxxxxx-xxxx-xxxx-xxxx-xxxxxxxxxxxx (e.g. 56a863a9-875e-4185-98a7-b882c64b5ce5).{Correct the ASR Rule GUID in your Group Policy or registry configuration to use valid GUID format without extra characters.íASR Exclusion '%1' (source: %2) contains a parent-directory ('..') segment. After resolving '..' the effective excluded path may be much broader than the literal entry suggests, silently expanding the exclusion beyond its intended scope.ÊReplace the ASR exclusion entry with a fully-resolved absolute path that does not contain '..' segments. Recent versions of Microsoft Defender reject non-canonical exclusion entries at config load time.%What is Defender Diagnostic Insights?Defender Diagnostic Insights is a self-help diagnostics tool that collects and analyses the diagnostic data, and provides a report to help troubleshoot Windows virtual machine performance problems in Azure. Defender Diagnostic Insights Windows documentation is %1.'Where do I start to review this report?òStart with the Overview tab. Review the recommendations and links for the findings. Learn about how they can affect performance, and also about best practices for performance-optimised configurations. Learn more about reviewing the report %1.?What kind of data is collected by Defender Diagnostic Insights?Defender Diagnostic Insights collects information about the Windows VM, disks or storage pools configuration, performance counters, high resource consumers, logs, and various traces. Details about what kind of information is collected by Defender Diagnostic Insights is %1.P€P€P€P€h`An error occurred while running LUA module. lAn error occurred while loading LUA file module. TSyntax error occurred in LUA module. @LUA memory error occurred. @LUA general error occurred. <LUA panic error occurred. pLUA execution has been interrupted by stop signal. €Failed to dynamically configure heap snapshots for process. 4VS_VERSION_INFO½ïþàeàe?fStringFileInfoB080904B0LCompanyNameMicrosoft CorporationŒ2FileDescriptionMicrosoft Defender for Endpoint Diagnostic EngineBInternalNamedefenderdiag.dll€.LegalCopyright© Microsoft Corporation. All rights reserved.ROriginalFilenamedefenderdiag.dll.muij%ProductNameMicrosoft® Windows® Operating System�8FileVersion4.18.26080.3 (9e1f3147fbc83f18a98a965394a23e07747d7295)> ProductVersion4.18.26080.3DVarFileInfo$Translation °PADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDING(0‚( *†H†÷  ‚'õ0‚'ñ10  `†He0\ +‚7 N0L0 +‚70  ¢€010  `†He �‚‹8¶ŽZ_íöV¹`a±’4m�£È2rt–{ÜKé¹ ‚ 0‚a0‚I 3$]¢‘qà •ª$0  *†H†÷  0S1 0 UUS10U Microsoft Corporation1$0"UWindows Production PCA 20230 260430183934Z 270429183934Z0p1 0 UUS10U Washington10URedmond10U Microsoft Corporation10UMicrosoft Windows0‚¢0  *†H†÷ ‚�0‚Š‚�‘4�bI‹¤pª%õx·3 mÿ¢­Ë�~ƒ§¼83`‚;P#tίe¤�Cþ #3å²&Á˜ ¯jçášè1zçõ•QÉ í,-åKMŽÁï_¼É¨$Ð8õ /åÛÈ?ˆÙvE¼¸Å^WxqÖeþ¸nQ¶vŽ’Ï—3�Iù~dÙÀBžoã¢KÚ>w/¶õçøLFþìæíìð "UÀ HP…Ò LRý.Âk'ümAѶËt·Õ« !N _Gã×ÿaE3ˆX‡2þr¤ª0É{:s¤ÿáV1!Üîiëa‚FÁ4›j8.�.šwk!‡G'à㉠¨X½ùnÌ�ž£«d%š&_'Ö9ïñö¿4Ë‘k[Åý;™Š?Ý9ÞÎÄ“ÙúˆÃx°…¿¹+vEÀÔ->ÔLþTÙ¨CÔ_ îþn#‰¹oÒ]y”¸Og”êáV½×gHG+?£òatØí„Ê®,1×^r-ˆ¼«‘°¦Ð15ôºtå�£‚�0‚‹0Uÿ€0U%0 +‚7 +0U+N°£îÜNÁ"Þêø‘»“è!˜ 0EU>0<¤:0810U Microsoft Corporation10U 500446+5079150U#0€†í ®?Z Ò=!UŸ1S"ø0ZUS0Q0O M K†Ihttp://www.microsoft.com/pkiops/crl/Windows%20Production%20PCA%202023.crl0g+[0Y0W+0†Khttp://www.microsoft.com/pkiops/certs/Windows%20Production%20PCA%202023.crt0 Uÿ00  *†H†÷  ‚°4Z ¾Ïÿ ß 1ÝŽ ú ÙË«5FÑðV£5­Ù;DÅ�-%ŒÛšði²Òø‚ÇÝú õà¹�âM¥ûÙr²'4¯Æ”¨­!I皸a08.Ëwq±ñ Ì”`Щç!É™O¤š·�¶{þõ‡þ±yÅìeNu÷ äjàŽÒ‚¶ºÌ”¨Xfæ­C ƒË¼çSÕ.” TÏQG¬å¾ýñ¦R«—|d5$ç²æÊÏk—¬ÏO÷½ëŠJ“ÑL3˜áê$À|žªÃ!&OÌ…X=½‹H\Ü\ þê¡{ÈPíΞ“ežÝ;¶Ï³b¯è'iN�àÔÛ²cå×ûß -fëŽxðï9™Çbã+‡V#)¥!Ëœ–yó‡ƒ^\ì);õÌW툊kLf3¹×úñšžS71¬§è ár­Póã`FVÒsaˆ†ê /C)Ò¨:Î/Њ$n¢Ehý1¢wÇo‚mGPžð�¸6Äh˜¦~ï¢!R¯‘ªÃ&À­òaÅùrÀÑ!4ý¯È BsˆwürÀ¦_ïewÕõ|­8äbPä§OÎB›_šLÐÁ;™þ¨Špöì5°zá»ÝÕÆÎ™/2Á)ìt°a‚è#Z¿\ãÔ� êlÔ(‹CRæ|ê3³!^ ÐBÍ$�̦»ÿV H©,Õ F�ÒD?”0‚±0‚™ 3…½V KøÈ!0  *†H†÷  0�ˆ1 0 UUS10U Washington10URedmond10U Microsoft Corporation1200U)Microsoft Root Certificate Authority 20100 230613183415Z 350613184415Z0S1 0 UUS10U Microsoft Corporation1$0"UWindows Production PCA 20230‚"0  *†H†÷ ‚0‚ ‚Õ.å ]nqKÛÚHëÞòb!ŒNF›á-i©Y 3ŠÀ©'xû‚»v}†¬ Ç/gÛÀW†ó·ì@äSp©ƒ¼××’rKÒ³>’Ñeê)üVÑÆƒªo¯‚®[„Ÿyé¼2Ÿ•áñá—þŒ’æ‚ió]U`—Ë°Í´Ž¦ªâ¡˜�g†¢··xLôm%5¶„˜ƒuG<¦>#Í…Ò¥_x BÊf.‹¡Þ•FoÓà)˜ûçݹÜ<-©}ƒˆ Î­úÛÝ=p2è��y¥�Q¡ºô¾¨UAo•ìäCøĵ¤€��Z¬U~¾f*>™íP‰I!#è•x(Liišnjk¡I¾ŸsWLê�ß3uoÒøÄ¿ÀªÍX°-*e+ÆH$� „½y€¢\å˜ ÎÏn%ú8™÷€!°±¼_>™Ô¶ RH­0Æ¥>f»–~4ÜQb®o³=¦„�ª5?QI^©}ÖÒîæÚPøuéÙOÙlzp0H}q€À·RQ#¸èOÀ3 «J/­xw_ì W’Ÿ;Q5x?”EŠ‚pd„íû½§"H¬äi—'ư ü”<™œN¢¿›d"ôάk¥æóË¡¯¥<$Îìqº®Çès½Ñ…[*:Î4 Gª ìgÃc˜%,ðÁCXt�üEåñ‘�ìpŠ‚äŸîö‹ô»£‚F0‚B0Uÿ†0 +‚70U†í ®?Z Ò=!UŸ1S"ø0 +‚7  SubCA0Uÿ0ÿ0U#0€ÕöVË�è¢\bhÑ=”�[×ΚÄ0VUO0M0K I G†Ehttp://crl.microsoft.com/pki/crl/products/MicRooCerAut_2010-06-23.crl0Z+N0L0J+0†>http://www.microsoft.com/pki/certs/MicRooCerAut_2010-06-23.crt0  *†H†÷  ‚‘0Bhß„Ý<˜oÈÿ³NrûœU˜åê|q¸çã5ÑÚr5˜²¸ówy^œHwœ•4½èA׫ò`’ 6Þ(×™ÏVäoàBRmûMv¸Æs%œ·¡ÍëDÁÙÝ �Д�(·Ã8-nöÁôE"}¨ÀK€“|§üÃlBæ£sûy‹¯½èŠ[÷µøQùçî…`riAjÑð/7ÍX ,!ê¦Nvw¤Z™¹Êù†* YÛºÓT“¶ éüJqîƾ·aÙÜ€‰rÍ?TƒAGµ�ÇÞ–éÉBÓésQ½’ÇW[4¡ŸY¶eɃÑ`™ ¼zÀ+�Áýt¬›ŒÔ8¦+[ge‘Ç< €WIñ§ 2i‚K ‹à Mñ�Ky¾ƒWÈ{ÔœGH“�²‹°†$¯ór9öêÔ{¨.ÉY´k®¸ó©…ÑÃ!ÐÜBtÂ�¶5çϼ߳�.Ïôò:¿Ý’aú¼5ʡ߸ήzå-ë{]vªZåÎàÃ\aLøltÂÍ÷ovµ s ¹°|jll8¨¹ÌU×ÿ¡pkJŸ»{þŒ×DqÛ‹`QÅÕúJzzùQ‰D²=ÌãEï_c E–oM0vÛáÝ�”UÎʃžƒUFœ„—Ù ˜—]’ýªk%Xa ¢ ÏÛýJbê^g|X\�©#ÍÉokPy/×p1‚]0‚Y0j0S1 0 UUS10U Microsoft Corporation1$0"UWindows Production PCA 20233$]¢‘qà •ª$0  `†He �®0 *†H†÷  1  +‚70 +‚7 10  +‚70/ *†H†÷  1" _ï‚{ù‚4ŽA(€ Ä‘èÕ|£Si¨c¯ä´è™Õß�0B +‚7 1402 €Microsoft¡€http://www.microsoft.com0  *†H†÷ ‚€„wYißÕ …ùkj€Dª E.Á‹Iý._tÎK‡‘2uYHç2…FatðXÚ®¦xxàÆ,ûl²Îö˜Å™M–£à ÅN]{–D¾”4Œ_jQ²™v£&ê¶àÑd…*¸ÄN8TêtƒbÂöôÌÃÚâ`«–çëW±OƒQ¸µ GFàŽÔ¢zƈ��ðQ�õ·6Ñq·2ÇC�öœ=ñKÂÊNâs*6¨uË·±#ПP«½ 1Ö?¸3¢5¤^ Ðwå÷ë5î¡·£BBåUlƒ#Y¡àÂW…FÖV¸B…Æ5?šQ¹þÛòsfÁòáøFUèØ\ÚåçÙd"nh~‡U(e²œâjZ-¦@20260815031021.02Z0€ô �Ѥ�Î0�Ë1 0 UUS10U Washington10URedmond10U Microsoft Corporation1%0#U Microsoft America Operations1'0%U nShield TSS ESN:8900-05E0-D9471%0#UMicrosoft Time-Stamp Service ‚ê0‚ 0‚ 3"AÒöªÿȵÿ"0  *†H†÷  0|1 0 UUS10U Washington10URedmond10U Microsoft Corporation1&0$UMicrosoft Time-Stamp PCA 20100 260219193956Z 270517193956Z0�Ë1 0 UUS10U Washington10URedmond10U Microsoft Corporation1%0#U Microsoft America Operations1'0%U nShield TSS ESN:8900-05E0-D9471%0#UMicrosoft Time-Stamp Service0‚"0  *†H†÷ ‚0‚ ‚µ¹â‰ºB.RÀ&�Àc�ÙF¡ûn/ì%†6Qm¨!:Ý¥¬ŸžÍhÛµ7c±\¿´_‹^Ó‡FõÒªÀþYä—ÿ¯ò÷43?±DôÆ!�´+¶� ®¼;,ÕÉG” *rd/à[ýò´ïÙ:u=jâï¹ ?À®¬²ÕLWüë Dz?2ŠE“Ðm®5›\ÁÅÍ#¨æ}IŒ\ª–[>¾7O”ÊxFËYþv…¸Y˜)Æ9[¸iJ‰�S?.î0‹z:?oUk¤r2À—†¤èZ‡±îˆ/Ú•r&1ü p<«þ¿Öhx†AáA¤Ë Aüä“9+ ëíý¤:³3° :—øW¿}�ßxÈÏn\’9Oô¢“!’!m>n9F áå…·þ†¯ç„OÇN>Qúáz(™%ÐR”Åh,Ú<µ ,˜–¦¢’SÿÂ8§}öaÌEJB_\ìø ƒ™Ô ÕtZo†²À”<Æ Èï¹ç¸˜è\ b&kû5úïX䪂På�êD�·šöðÇÊ]bI¥%íä¿2@ó'/â%rÁrüŒ·£‚I0‚E0UYÀj'–[H®ð«-Šë*jŒÐ0U#0€Ÿ§]^b]ƒôåÒe§S5ér0_UX0V0T R P†Nhttp://www.microsoft.com/pkiops/crl/Microsoft%20Time-Stamp%20PCA%202010(1).crl0l+`0^0\+0†Phttp://www.microsoft.com/pkiops/certs/Microsoft%20Time-Stamp%20PCA%202010(1).crt0 Uÿ00U%ÿ 0 +0Uÿ€0  *†H†÷  ‚bϧªºpomÅ%ïãj> ÄÞØ.¡¤_;½%¥¤-1ð«ºdœÓ�/yþPmñü<ÜB—ˆV+k¥ìÇeÔëñFÆvÂ=Ù™áßgÛ•fâ;�TPZ‹ú$´ã˜hþ×ìÌïL(7š'€é¿.×ðØè�x\ûÛóD3íö9y×[Ÿóƒ[…CÅm·0yg€ƒkΡJëiŒyr¦†ÛŸ2¶¨¢^%wÖc|xþ–în O©]>¹ÛMÂ<_d}Ò„ìb€!2ßL;ÅwÇn~3© }üœ®ª2UmœÃ…dÐó7ú1ÎT²:¤$˜�ín8Ÿ«‡OäáiU{Äw:"zsv�Í~=$u Bk¯ Ó#.FØ]à4ÿZ¹# ÙO²q�N¼·¹ÖO*9W3ƒ�ÿîrïïÕëaÄd˜b�Þ;£h­ÿÈÆbØ›¹4B÷!%¨¯ {F7™ƒâL ­¢Ë•�曚úà±ÿÔ þ]öZ5á]¿Ý ä E�þš÷$ÈV1�û‰ÎŸ à7xâÀ*º Îˆwd. _+ÉϪ�’Xö}äB>o9£× ¶´®;)Ȭñ±˜¿�+�½òŠâ·Ñ'òË '†ú2å�Bš„2êÆ^ⵌ¯Vë@º,LMÀY×ÄØÈœ%�wH»ŠÍrM/ø©0‚q0‚Y 3Åçkž›I™0  *†H†÷  0�ˆ1 0 UUS10U Washington10URedmond10U Microsoft Corporation1200U)Microsoft Root Certificate Authority 20100 210930182225Z 300930183225Z0|1 0 UUS10U Washington10URedmond10U Microsoft Corporation1&0$UMicrosoft Time-Stamp PCA 20100‚"0  *†H†÷ ‚0‚ ‚äá¦Lç´r! y¢Ë×$y½Õ‚ÓýîœÒ©lNuÈÊ5WölJàâ½¹>`3ÿ\OÇf÷•SqZâ~JZþ¸6g…F# µ�Ïw2Àè`}jRƒD·¦ŽFkóÅvõ†PÜÁDÈq\Q17  8n�íר&S|9azĪýri¯«¬ö6¾5&dÚ˜;º{3­€[~Œ�Rþ¶èb%ÜjÏ]ôþŽSÏÖì…VMïݼ�¤ã‘�²9,Qœépi Ê6-pŽ1È5(½ã´‡$ÃàÉ�~µT�ÜúU˜mh;šF½í¤®z)7¬ËëƒEçFnÊ2ÕÀ†0\O,âb²Í¹â�ˆä–¬J»¾q©[g`Þø’‘=ý Ïs}AšFuÍÄ_4݉Öý¥ }~üÙžEß¶r/Û}_€ºÛª~6ì6Lö+n¨Qè¿£Ñs¦M7t”4‚ðò·Gí§è™|?LÛ¯^ÂóÕØs=CNÁ39L޼Bh.ê„QFâѽjZasÊg¢^×(vâ3r×§ ðÂú ×co É6d‹[ ¦ƒ!]_0t‘””عPù ‰aó65„GÛÜÑý²ÔÅkö\RQ]Û%º¯PzlÅrï�ùRÄ…“À<Û7Ç?x«E¶õ‡^Ú�žriÆ®{··>jâ.­£‚Ý0‚Ù0 +‚70# +‚7*§RþdÄš¾‚‘http://www.microsoft.com/pki/certs/MicRooCerAut_2010-06-23.crt0  *†H†÷  ‚�U}ü*­á,g1$[ážrKü©oê\¶>NGdx±“—=13µ9×Âq6?Údl|Ðu9m»1äÂ�ûlÑ¡”"îéfg:SMݘº¶xØ6.œ©‚V°¾‰èiຠî{ßjo¾)ËnØ?HuÙÞm‚ õm#TäxSu$W¹ÝŸóŽ=Æóhßeö¤Vª÷•¶(U'Ð$½@ ¿¶]='à@–8¬÷ù)‰Ã¼°T…B³ü ž‹‰çð j�Â�BRuŠ6ÂÃas.,k{n?, x鑲©[ßI£t ¼ì‘€Ò=æJ>f;O»†ú2Ù–ô�ö‘öÎÆtýöLro«u0Å4°zØPþ XÝ@<ÇTm�ctH,±NG-Áq¿dù$¾smÊŽ ½³WITdÙs×[DŽZ‘k Ÿ¤(Üg($º8Kšnû!TkjEG©ñ·®Èè‰^O�ÒÐLvµWT ±iD~|¡alsþ »ìAf=iýËÁAI~~“¾Ëø;ä·¿´Î>¥1Q„¼¿Á‚¢{‰�pþçµÐ(‰ �6ÚºLù›ÿ é4ø$5g+à ¸æŒ™Öá"êð'B=%”ætt[jÑž>í~ 13}¼Ëé{¿8pDÑ�ñÈ«:Š:bÙpcSM�î‚m¥Áqj´U3X³¡pfò¡‚M0‚50�ù¡�Ѥ�Î0�Ë1 0 UUS10U Washington10URedmond10U Microsoft Corporation1%0#U Microsoft America Operations1'0%U nShield TSS ESN:8900-05E0-D9471%0#UMicrosoft Time-Stamp Service¢# 0+»ÉÅÕgÛ°:I’¾Õ¹È)’Ê3¸ �ƒ0�€¤~0|1 0 UUS10U Washington10URedmond10U Microsoft Corporation1&0$UMicrosoft Time-Stamp PCA 20100  *†H†÷  î*:¤0"20260815010852Z20260816010852Z0t0: +„Y 1,0*0 î*:¤0`0½0 î+Œ$06 +„Y 1(0&0  +„Y   0¡ ¡ 0† 0  *†H†÷  ‚Ë1ö°ÁLŒde«° Ÿ3+“JÜ®yÃú@¿D¥ÐÏ]:ö¯ÿp Åk÷qfD¨cçð–,Ú§c‘¢š ûHèbß<õE$ðà³ -"%ËN§ä<Ï[¯Ð@£ÔØ›hL¥Ò|Rüy,>€�ß!ŠMÿ”¦†a'ïìQ±’Ÿx95"ô@¢T0ڱƓ¿FHÓ”„œÙdË<;¡ C�ûö/ÿçÇ¢ Yõ2Yaûë�®UŠ.þŒDQ0_¥½ØrÅLN_œ=ηz ÓÊAMä(%ŒÐeë˜dæ$o>²×4|#¢ú£þ  ~¢Œ�úëˆwƒLZã‡Í.ÙNÊ;1‚ 0‚ 0�“0|1 0 UUS10U Washington10URedmond10U Microsoft Corporation1&0$UMicrosoft Time-Stamp PCA 20103"AÒöªÿȵÿ"0  `†He ‚J0 *†H†÷  1  *†H†÷  0/ *†H†÷  1" )è]P˜Y¤·ð¤yzIq´B÷wtJö÷­³Ë¡bž˜â 0�ú *†H†÷  /1�ê0�ç0�ä0�½ `] çÆ‚3l’`Ι· éÇÜù¹ðÑä 0�˜0�€¤~0|1 0 UUS10U Washington10URedmond10U Microsoft Corporation1&0$UMicrosoft Time-Stamp PCA 20103"AÒöªÿȵÿ"0" «PÜ¡m]F¡Ä6�à”¼˜…ØqI&r2.Mé5ûc¦0  *†H†÷  ‚qÁ>múÍÀ&ø-(ÕøÌíÔ›š�Š‘9]ÞºÉx½-ý ½§ð(s[˜y|ÛbaAx^¼6p¯L´¹ó€ù�͹A‰õÚDøë¿¼þÕ×U}îÇ}øGáƒ�qñƒ\ulj©åP±@¯}SrDͽÙ<–<_¸ €O!î\휞°‚\½dÐá `h žéN;LÕ6}–é¨VÓÏ‹ìŸÞµ–aæ¯arlHòZn3¯W*çwýžò[ ô Áyƒ¿)Ë+€rïdo|ø^›LΈÎA`v ‚!W²:´,=(�DΊyT{òÁjºü}x£ l6LâI?){Û,¦€'ÝêpuÊg?—7€=…»ëÀ{�•«¶!Áâˆ#0•ÎiÌô›˜üšãÅ�MK¸…NhÙXg§|óÃóíÝú¤¡ï=ÙG€GÉਕªø Øn<¾ð%ˆ²–-Uƒ„ .!tXYTH÷@9œú�%:KŒr�\Z�£À³²³Ík¿ì¾¥i7r¨ï¬¬"/Yi6uõ‹(!ÇØØbø<•R3t½¨{DÝúô7âëj<ñR¤pá}ýY‹0”Óg.åH·(Þx^·µ\ µ*‚ ü’#)õÕ­¸ž¾A×·YšÏጣæ}{[QknŽzK¤>Gx†H®ª¥¥ú¢®yž