certutil -asn <file.cat> Or use sigcheck from Sysinternals: