>yes, just export and rename it to .pfx.

So, when I do a simple remaning, it is SHA-1 then.

In Janes Manual from 2014 I see, that she somehow converted the
certificate-file. But hers was a .pfx, because she defined it like that when
exporting from IE. However, mine was a .p12, because I exported from

From my understanding she signed her EXE not with SetupBuilder, but with SignTool.EXE?

From what I recall is, that the delivered SignTool.EXE is not sufficient. We
have to jump through many hoops, by getting a huge SDK from Microsoft and
extracting a tiny part from it, which holds the appropriate version of
SignTool. Is that still true?

Okay, purchase was easy, the stuff comes afterwards.

