6deedad652bfab7b09ebd0e06045810390b6ac6cb5aa9ef41c9daa5616181f22

Summary

Architecture IMAGE_FILE_MACHINE_I386
Subsystem IMAGE_SUBSYSTEM_WINDOWS_CUI
Compilation Date 2008-Mar-14 22:21:30
Detected languages English - United States
CompanyName GnuWin32 <http://gnuwin32.sourceforge.net>
License This program is free software; you can redistribute it and/or modify it under the terms of the GNU Lesser General Public License; see www.gnu.org/copyleft/lesser.html.
FileDescription Libiconv: convert between character encodings
FileVersion 1.12.2872.39125
LibToolFileVersion 6:0:4
InternalName iconv2
LegalCopyright © 2007 Free Software Foundation <www.fsf.org>
LegalTrademarks GnuWin32®, LibIconv®, iconv2®
OriginalFilename iconv2.dll
ProductName LibIconv
ProductVersion 1.12.2872.39125
WWW http://www.gnu.org/software/libiconv

Plugin Output

Info Interesting strings found in the binary: Contains domain names:
  • gnuwin32.sourceforge.net
  • http://gnuwin32.sourceforge.net
  • http://www.gnu.org
  • http://www.gnu.org/software/libiconv
  • sourceforge.net
  • www.fsf.org
  • www.gnu.org
Safe VirusTotal score: 0/71 (Scanned on 2026-03-29 01:06:29) All the AVs think this file is safe.

Hashes

MD5 e0dc8c6bbc787b972a9a468648dbfd85
SHA1 0f73d47122080a0c5c423841b16f4e6c62d79aff
SHA256 6deedad652bfab7b09ebd0e06045810390b6ac6cb5aa9ef41c9daa5616181f22
SHA3 c8402469e20f7fcadc0780f154aa80b9d3a3a841ce9354cf85245a538e3cc1c2
SSDeep 24576:4kqBAUZLYF/PwdKb3Gavkg3NywlTvbbTptuOfy9f:4kqBAUZLYh4Ub3GaX/TFtuOC
Imports Hash 25b98b0902e51c172e737c0fb86f14b8

DOS Header

e_magic MZ
e_cblp 0x90
e_cp 0x3
e_crlc 0
e_cparhdr 0x4
e_minalloc 0
e_maxalloc 0xffff
e_ss 0
e_sp 0xb8
e_csum 0
e_ip 0
e_cs 0
e_ovno 0
e_oemid 0
e_oeminfo 0
e_lfanew 0x80

PE Header

Signature PE
Machine IMAGE_FILE_MACHINE_I386
NumberofSections 8
TimeDateStamp 2008-Mar-14 22:21:30
PointerToSymbolTable 0
NumberOfSymbols 0
SizeOfOptionalHeader 0xe0
Characteristics IMAGE_FILE_32BIT_MACHINE
IMAGE_FILE_DEBUG_STRIPPED
IMAGE_FILE_DLL
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LINE_NUMS_STRIPPED
IMAGE_FILE_LOCAL_SYMS_STRIPPED

Image Optional Header

Magic PE32
LinkerVersion 2.0
SizeOfCode 0x16800
SizeOfInitializedData 0xf5e00
SizeOfUninitializedData 0x400
AddressOfEntryPoint 0x00001060 (Section: .text)
BaseOfCode 0x1000
BaseOfData 0x18000
ImageBase 0x67200000
SectionAlignment 0x1000
FileAlignment 0x200
OperatingSystemVersion 4.0
ImageVersion 1.0
SubsystemVersion 4.0
Win32VersionValue 0
SizeOfImage 0xfb000
SizeOfHeaders 0x400
Checksum 0xfc3cb
Subsystem IMAGE_SUBSYSTEM_WINDOWS_CUI
SizeofStackReserve 0x200000
SizeofStackCommit 0x1000
SizeofHeapReserve 0x100000
SizeofHeapCommit 0x1000
LoaderFlags 0
NumberOfRvaAndSizes 16

.text

MD5 d1f967c4b49c2ea9f85daf35018236a0
SHA1 06da0833bb63ed18caa094dd13180cc632ed3a91
SHA256 7e041064938db8fc31a973d33b4d9e6745d72a53f1d4c03748083feb0242bb27
SHA3 ff9e77329d80983e8db2ef9dc6b127b5ba22a3ac5f798a403226660efcc216e8
VirtualSize 0x16734
VirtualAddress 0x1000
SizeOfRawData 0x16800
PointerToRawData 0x400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_CODE
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
Entropy 6.54057

.data

MD5 26ec1ad7b37155c3bd2c79ad04c48908
SHA1 7d52a08c2167efb9e4b04aaa453e71fd33153509
SHA256 5590b306fff7f5b7f15a5fcbba89fae068651e23e3599b262791a6c1bc5f9770
SHA3 01ddaca4853cf3f2fe6472adc4eac6c3458f1730227eaff3d5656bc74b063592
VirtualSize 0x50
VirtualAddress 0x18000
SizeOfRawData 0x200
PointerToRawData 0x16c00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 0.335248

.rdata

MD5 e1ad1ad6a2ff072d4c7a5baaac5873f7
SHA1 20a535e81f7cdf5a05a1002f0e15906dbe9ccf01
SHA256 5abad97abe3055d2a98b5d74be25badf75a9da55fdf4c062b135313ec606d618
SHA3 85ae1db80a42981672a04e0f089ae79b1442304bcd793a7b3dab06bcd412968d
VirtualSize 0xdcca0
VirtualAddress 0x19000
SizeOfRawData 0xdce00
PointerToRawData 0x16e00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 7.36719

.bss

MD5 d41d8cd98f00b204e9800998ecf8427e
SHA1 da39a3ee5e6b4b0d3255bfef95601890afd80709
SHA256 e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
SHA3 a7ffc6f8bf1ed76651c14756a061d662f580ff4de43b49fa82d80a4b80f8434a
VirtualSize 0x290
VirtualAddress 0xf6000
SizeOfRawData 0
PointerToRawData 0
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_UNINITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE

.edata

MD5 c3a47df4e96bd3f9742d5485bd13ea2d
SHA1 770f94034188d462f59325d67672d28be976e3ff
SHA256 c5f4e58d111aa6fa4d5b3ebe9c6d94a20f9fac2d3b0ba8e43b6439c35d5e16b9
SHA3 f0dd9ceb5235712a88dc9ab59f88e7957a67dc87e0a9c157132d2df7d827757c
VirtualSize 0x189
VirtualAddress 0xf7000
SizeOfRawData 0x200
PointerToRawData 0xf3c00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 4.08221

.idata

MD5 5d70e5d5f2718347b5bb8626ee4dc444
SHA1 1f7b2eb73fc63af1c7ae162ca189793950efdac6
SHA256 86245581bd817a78c91940d45b525238b1314b56735acf9232c900fdbb1f23aa
SHA3 910e098ad1155f1b040495cff1bc9d90b0f3923ee1f7be671e5f9c41e0476499
VirtualSize 0x328
VirtualAddress 0xf8000
SizeOfRawData 0x400
PointerToRawData 0xf3e00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 3.8904

.rsrc

MD5 94dd1f5d02cf748963e71c4c0758b67b
SHA1 12f8a3726def30e757315f5d2204365398149328
SHA256 9ebc7a75eed8cc244e733b6bed2f54e1e77cf7aa934ec41cededa8f1e101b3c7
SHA3 4671f42a39ca03d93ed74542e1826bd2be6d7408b5ac49f0aee9eb0a9180ba35
VirtualSize 0xf88
VirtualAddress 0xf9000
SizeOfRawData 0x1000
PointerToRawData 0xf4200
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 3.52376

.reloc

MD5 3437d25b69c104cde5fdb323485ed345
SHA1 fe0330b143b1ffafdcd5dc2a8bb7b58448a6c1c8
SHA256 7603f7a74877003425fca1dc391a439ca0325a9d08160a58d65c29a3e840dd5f
SHA3 c99e8e98a415f4af1615f482684730b189bdd34462f5488ae0500d9ec2141a16
VirtualSize 0xf18
VirtualAddress 0xfa000
SizeOfRawData 0x1000
PointerToRawData 0xf5200
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_DISCARDABLE
IMAGE_SCN_MEM_READ
Entropy 6.52197

Imports

KERNEL32.dll AddAtomA
FindAtomA
GetACP
GetAtomNameA
GetModuleFileNameA
IsDBCSLeadByteEx
MultiByteToWideChar
WideCharToMultiByte
msvcrt.dll _strdup
msvcrt.dll (#2) _strdup

Delayed Imports

DllGetVersion

Ordinal 1
Address 0x16c40

_libiconv_version

Ordinal 2
Address 0x18000

aliases2_lookup

Ordinal 3
Address 0x15bd8

aliases_lookup

Ordinal 4
Address 0x15ac4

iconv_canonicalize

Ordinal 5
Address 0x1648c

libiconv

Ordinal 6
Address 0x1619c

libiconv_close

Ordinal 7
Address 0x161ec

libiconv_open

Ordinal 8
Address 0x15c18

libiconv_relocate

Ordinal 9
Address 0x16914

libiconv_set_relocation_prefix

Ordinal 10
Address 0x167b0

libiconvctl

Ordinal 11
Address 0x16200

libiconvlist

Ordinal 12
Address 0x16380

locale_charset

Ordinal 13
Address 0x166e0

1

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x8a8
TimeDateStamp 2008-Mar-14 22:21:26
Entropy 2.77195
MD5 5a7ab581382561895fd1344545f21d9b
SHA1 a5a0cbfe4073faac946d91dc106d83ac9de6df6d
SHA256 5287670e94a73b6d5322ee4470677efc9555cd31d794f5ba709161d612d5aba4
SHA3 65ee5b4d64a0c22826278cfe3412dcdc89e156c8209572b9f53bbcf25872021d

500

Type RT_GROUP_ICON
Language English - United States
Codepage UNKNOWN
Size 0x14
TimeDateStamp 2008-Mar-14 22:21:26
Entropy 1.81924
Detected Filetype Icon file
MD5 cbee427fa121aba9b9b265ff05de5383
SHA1 24fcae33001c8e0f5ec795c6edf076a69d59589f
SHA256 494e4fd717fa1ee0c5c7bb3b4e28fdab4b7f6e95b4f9865f5ab86f03f62ae62c
SHA3 a3fa35d56632275ba55716a4964f02031270f61f06a903fc460ac2dd6bebde85

1 (#2)

Type RT_VERSION
Language English - United States
Codepage UNKNOWN
Size 0x5e4
TimeDateStamp 2008-Mar-14 22:21:26
Entropy 3.55488
MD5 0a6e23a6f11157bd111be6e7ea26f181
SHA1 2998ff34affe3ad86a0007280b079779c0c70123
SHA256 c639474518ab7d83cefcd4d995b2ca65e9296bb18c0d1018757c79c1759c43e1
SHA3 a65808da2681c50fb1eb4ff965a8de8d81908206459dbca48bb49ff3e5089085

Version Info

Signature 0xfeef04bd
StructVersion 0x10000
FileVersion 1.12.2872.39125
ProductVersion 1.12.2872.39125
FileFlags (EMPTY)
FileOs VOS_DOS_WINDOWS32
VOS_NT_WINDOWS32
VOS__WINDOWS32
FileType VFT_DLL
Language English - United States
CompanyName GnuWin32 <http://gnuwin32.sourceforge.net>
License This program is free software; you can redistribute it and/or modify it under the terms of the GNU Lesser General Public License; see www.gnu.org/copyleft/lesser.html.
FileDescription Libiconv: convert between character encodings
FileVersion (#2) 1.12.2872.39125
LibToolFileVersion 6:0:4
InternalName iconv2
LegalCopyright © 2007 Free Software Foundation <www.fsf.org>
LegalTrademarks GnuWin32®, LibIconv®, iconv2®
OriginalFilename iconv2.dll
ProductName LibIconv
ProductVersion (#2) 1.12.2872.39125
WWW http://www.gnu.org/software/libiconv
Resource LangID English - United States

TLS Callbacks

Load Configuration

RICH Header

Errors

[*] Warning: Section .bss has a size of 0!
Leave a comment

No comments yet.