910a9416e3039e1bfdeadf46157285fcecae0046b3feee9e0b9a3d123acfc4d2

Summary

Architecture IMAGE_FILE_MACHINE_AMD64
Subsystem IMAGE_SUBSYSTEM_WINDOWS_CUI
Compilation Date 2026-Aug-26 15:42:23
Detected languages English - United States
TLS Callbacks 2 callback(s) detected.
Debug artifacts C:\Users\dw\Desktop\pulse\build\Pulse.pdb
CompanyName Pulse
FileDescription Pulse - Roblox Overlay
FileVersion 1.0.0.0
InternalName Pulse
LegalCopyright Copyright (C) 2024
OriginalFilename Pulse.exe
ProductName Pulse
ProductVersion 1.0.0.0

Plugin Output

Suspicious Strings found in the binary may indicate undesirable behavior: Miscellaneous malware strings:
  • Exploit
Contains domain names:
  • SoundBible.com
  • adobe.com
  • assetdelivery.roblox.com
  • crl.microsoft.com
  • en.wikipedia.org
  • fontello.com
  • fontstruct.com
  • github.com
  • http://crl.microsoft.com
  • http://crl.microsoft.com/pki/crl/products/MicRooCerAut2011_2011_03_22.crl0
  • http://crl.microsoft.com/pki/crl/products/MicrosoftTimeStampPCA.crl0X
  • http://crl.microsoft.com/pki/crl/products/microsoftrootcert.crl0T
  • http://en.wikipedia.org
  • http://en.wikipedia.org/wiki/MIT_License
  • http://fontello.com
  • http://ns.adobe.com
  • http://ns.adobe.com/tiff/1.0/
  • http://ns.adobe.com/xap/1.0/
  • http://ns.adobe.com/xap/1.0/mm/
  • http://ns.adobe.com/xap/1.0/sType/ResourceEvent#
  • http://purl.org
  • http://scripts.sil.org
  • http://scripts.sil.org/OFLInterMediumOpen
  • http://scripts.sil.org/OFLhttp
  • http://www.gimp.org
  • http://www.gimp.org/xmp/
  • http://www.microsoft.com
  • http://www.microsoft.com/Typography
  • http://www.microsoft.com/pki/certs/MicRooCerAut2011_2011_03_22.crt0
  • http://www.microsoft.com/pki/certs/MicrosoftRootCert.crt0
  • http://www.microsoft.com/pki/certs/MicrosoftTimeStampPCA.crt0
  • http://www.microsoft.com/pkiops/certs/MicCodSigPCA2011_2011-07-08.crt0
  • http://www.microsoft.com/pkiops/crl/MicCodSigPCA2011_2011-07-08.crl0a
  • http://www.microsoft.com/pkiops/docs/primarycps.htm0
  • http://www.roblox.com
  • http://www.roblox.com/asset/?id
  • http://www.styleseven.comFreeware
  • http://www.styleseven.comSmallest
  • http://www.w3.org
  • http://www.w3.org/1999/02/22-rdf-syntax-ns#
  • https://discord.gg
  • https://fontstruct.com
  • https://fontstruct.comparasiticSpong
  • https://fontstruct.comparasiticSponge
  • https://github.com
  • https://pulse-usercount.apex-auth-fsos.workers.dev
  • https://rsms.me
  • inkscape.org
  • microsoft.com
  • ns.adobe.com
  • roblox.com
  • scripts.sil.org
  • thumbnails.roblox.com
  • wikipedia.org
  • www.gimp.org
  • www.inkscape.org
  • www.microsoft.com
  • www.roblox.com
  • www.w3.org
Info Cryptographic algorithms detected in the binary: Uses constants related to CRC32
Uses constants related to SHA1
Uses constants related to RC5 or RC6
Uses known Mersenne Twister constants
Malicious The PE contains functions mostly used by malware. [!] The program may be hiding some of its imports:
  • LoadLibraryExW
  • LoadLibraryA
  • GetProcAddress
Functions which can be used for anti-debugging purposes:
  • FindWindowW
  • CreateToolhelp32Snapshot
  • SwitchToThread
Possibly launches other programs:
  • ShellExecuteA
Uses functions commonly found in keyloggers:
  • GetAsyncKeyState
  • GetForegroundWindow
Memory manipulation functions often used by packers:
  • VirtualProtect
  • VirtualProtectEx
  • VirtualAllocEx
Has Internet access capabilities:
  • WinHttpQueryDataAvailable
  • WinHttpConnect
  • WinHttpSetTimeouts
  • WinHttpReceiveResponse
  • WinHttpOpen
  • WinHttpQueryHeaders
  • WinHttpReadData
  • WinHttpOpenRequest
  • WinHttpCloseHandle
  • WinHttpSendRequest
Manipulates other processes:
  • OpenProcess
  • Process32NextW
  • Process32FirstW
  • ReadProcessMemory
Can take screenshots:
  • FindWindowW
  • GetDC
Reads the contents of the clipboard:
  • GetClipboardData
Malicious VirusTotal score: 38/70 (Scanned on 2026-08-28 14:09:19) APEX: Malicious
AVG: Win64:MalwareX-gen [Cryp]
Arcabit: Trojan.Yogi.DE0F4
Avast: Win64:MalwareX-gen [Cryp]
Avira: TR/W64.MalwareX
BitDefender: Gen:Variant.Yogi.57588
Bkav: W32.Malware.5E5D16B5
CTX: exe.trojan.malwarex
CrowdStrike: win/malicious_confidence_70% (W)
Cylance: Unsafe
Cynet: Malicious (score: 99)
DeepInstinct: MALICIOUS
ESET-NOD32: Win64/Riskware.GameHack.BO application
Elastic: malicious (high confidence)
Emsisoft: Gen:Variant.Yogi.57588 (B)
F-Secure: Trojan.TR/W64.MalwareX
Fortinet: W64/MALD2.1CA2!tr
GData: Gen:Variant.Yogi.57588
Google: Detected
Gridinsoft: Trojan.Win64.Agent.sa
K7AntiVirus: Riskware ( 006dcf651 )
K7GW: Riskware ( 006dcf651 )
Lionic: Trojan.Win32.Generic.4!c
Malwarebytes: Neshta.Virus.FileInfector.DDS
MaxSecure: Trojan.Malware.689088085.susgen
MicroWorld-eScan: Gen:Variant.Yogi.57588
Microsoft: Trojan:Win32/Kepavll!rfn
Paloalto: generic.ml
Rising: Dropper.Agent!8.2F (CLOUD)
Sophos: Mal/Generic-S
Symantec: ML.Attribute.HighConfidence
Tencent: Win32.Trojan.W64.Bkjl
TrellixENS: Artemis!FBFC11719D7B
TrendMicro: Trojan.Win32.WACATAC.USBLHS26
TrendMicro-HouseCall: Trojan.Win32.WACATAC.USBLHS26
VIPRE: Gen:Variant.Yogi.57588
Varist: W64/ABApplication.VMYU-5970
huorong: TrojanDropper/Agent.arb

Hashes

MD5 fbfc11719d7bd673e8eecca6e7fc4c9c 🔍
SHA1 2accfa5fca09892219f5ff9797dce030d665938c 🔍
SHA256 910a9416e3039e1bfdeadf46157285fcecae0046b3feee9e0b9a3d123acfc4d2 🔍
SHA3 f1484d654c20bf920c533a063dd2642476b3d1463ff7a4e41360906760bce114 🔍
SSDeep 98304:VNURFqtoZk4o/Y7mgTm05AwJHE6hsXQlZqL9PlFbWJ3:iFq2kdg7PAmkfsZqL1lFg 🔍
Imports Hash 2886ea2016e440cd6bd877cdaa402e2c 🔍

DOS Header

e_magic MZ
e_cblp 0x90
e_cp 0x3
e_crlc 0
e_cparhdr 0x4
e_minalloc 0
e_maxalloc 0xffff
e_ss 0
e_sp 0xb8
e_csum 0
e_ip 0
e_cs 0
e_ovno 0
e_oemid 0
e_oeminfo 0
e_lfanew 0x130

PE Header

Signature PE
Machine IMAGE_FILE_MACHINE_AMD64
NumberofSections 7
TimeDateStamp 2026-Aug-26 15:42:23
PointerToSymbolTable 0
NumberOfSymbols 0
SizeOfOptionalHeader 0xf0
Characteristics IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LARGE_ADDRESS_AWARE

Image Optional Header

Magic PE32+
LinkerVersion 14.0
SizeOfCode 0x242c00
SizeOfInitializedData 0x3ab000
SizeOfUninitializedData 0
AddressOfEntryPoint 0x00000000001FC98C (Section: .text)
BaseOfCode 0x1000
ImageBase 0x140000000
SectionAlignment 0x1000
FileAlignment 0x200
OperatingSystemVersion 6.0
ImageVersion 0.0
SubsystemVersion 6.0
Win32VersionValue 0
SizeOfImage 0x5f2000
SizeOfHeaders 0x400
Checksum 0
Subsystem IMAGE_SUBSYSTEM_WINDOWS_CUI
DllCharacteristics IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_HIGH_ENTROPY_VA
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
SizeofStackReserve 0x100000
SizeofStackCommit 0x1000
SizeofHeapReserve 0x100000
SizeofHeapCommit 0x1000
LoaderFlags 0
NumberOfRvaAndSizes 16

.text

MD5 0e8ce6829b321dab103e9f7355f97de1 🔍
SHA1 fd0820dd99ef4cae4c4e3b5db3308c6b168e7ecb 🔍
SHA256 757999a75d762e5ad22b19b7a6674c3f13f17e8f59f8a0457dc63c7f80e7c999 🔍
SHA3 1fd6f5a1edb9fad0b05f9fbaf120c87f4827cf11fad4fc3b2cf67d2196105745 🔍
VirtualSize 0x242ac0
VirtualAddress 0x1000
SizeOfRawData 0x242c00
PointerToRawData 0x400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
Entropy 6.53719

.rdata

MD5 27b1e6177359050de5ccff4fa0a4c696 🔍
SHA1 a36d986d987c235d017c5fbb5443c6fca4b42d61 🔍
SHA256 7b26bc06e4080fd99be62b1c14920b4951bcdd2cc577df25c29416b3bb08ea81 🔍
SHA3 92a1a1a1ed393e2db1547e1cceb7427f6e284ca864a3ca2d2cdd1656771ffc95 🔍
VirtualSize 0x1914c2
VirtualAddress 0x244000
SizeOfRawData 0x191600
PointerToRawData 0x243000
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 6.51828

.data

MD5 349a5ef0a33259834387c207de5cde26 🔍
SHA1 969cda55ba8293433fc715653b188cb0917fbf55 🔍
SHA256 c69799ed25794b62d0fcbf5031c42fb8e337cfe944158374dd675402082aa02e 🔍
SHA3 7b00fcea1f24e73b686b14ad6aa2c8f28d491200a124ac2693621df08327d8fe 🔍
VirtualSize 0x1babd8
VirtualAddress 0x3d6000
SizeOfRawData 0x1b6a00
PointerToRawData 0x3d4600
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 5.72675

.pdata

MD5 70eddab1c5a0ed8a647e36299fa7881b 🔍
SHA1 6be8bf81ee2ad5d8121d7bd63a7a64c7e044a4f6 🔍
SHA256 a55249041a6bb06df862718160d94124ec1028012d0470e29415aee6ea6dde1c 🔍
SHA3 f2de89166ac3e013403522fd1ede24a3feb4c60baafd5dc1fd44177f15a928f8 🔍
VirtualSize 0x14c70
VirtualAddress 0x591000
SizeOfRawData 0x14e00
PointerToRawData 0x58b000
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 6.27282

.fptable

MD5 bf619eac0cdf3f68d496ea9344137e8b 🔍
SHA1 5c3eb80066420002bc3dcc7ca4ab6efad7ed4ae5 🔍
SHA256 076a27c79e5ace2a3d47f9dd2e83e4ff6ea8872b3c2218f66c92b89b55f36560 🔍
SHA3 622de1e1568ddef36c4b89b706b05201c13481c3575d0fc804ff8224787fcb59 🔍
VirtualSize 0x100
VirtualAddress 0x5a6000
SizeOfRawData 0x200
PointerToRawData 0x59fe00
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
Entropy 0

.rsrc

MD5 eaed22c5d73dac041cd246c55693aff9 🔍
SHA1 a3289d02a4745d7d778c6319dcddcf670460e390 🔍
SHA256 a7040fb79bc45362c399a0f4418963817bdf67549428f949c261b8f73bd082f4 🔍
SHA3 29564a01a8b9e1ac2ae652fe5e047f05d33665172c3f7db69829dbfd8815744d 🔍
VirtualSize 0x46400
VirtualAddress 0x5a7000
SizeOfRawData 0x46400
PointerToRawData 0x5a0000
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
Entropy 6.40905

.reloc

MD5 2d91d5bff020ad4482592ddd35abe3ce 🔍
SHA1 1fe56cfcb0fa3de832cb9008f003eab1d09cc607 🔍
SHA256 de6c7fc162e7c06e18821a7d1b67cad48a8b21f0e86b805ba0f712ec6d627106 🔍
SHA3 a3d4e74551c039ca8c2cb4ed4c3abba5eb6af9f725dd99ade24f1fa4a1104be4 🔍
VirtualSize 0x38d4
VirtualAddress 0x5ee000
SizeOfRawData 0x3a00
PointerToRawData 0x5e6400
PointerToRelocations 0
PointerToLineNumbers 0
NumberOfLineNumbers 0
NumberOfRelocations 0
Characteristics IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_DISCARDABLE
IMAGE_SCN_MEM_READ
Entropy 5.43787

Imports

d3d11.dll D3D11CreateDeviceAndSwapChain
d3dx11_43.dll D3DX11CreateShaderResourceViewFromMemory
ntdll.dll RtlPcToFileHeader
RtlCaptureContext
RtlUnwindEx
VerSetConditionMask
RtlLookupFunctionEntry
RtlVirtualUnwind
RtlUnwind
WINHTTP.dll WinHttpQueryDataAvailable
WinHttpConnect
WinHttpSetTimeouts
WinHttpReceiveResponse
WinHttpOpen
WinHttpQueryHeaders
WinHttpReadData
WinHttpOpenRequest
WinHttpCloseHandle
WinHttpSendRequest
USER32.dll ReleaseDC
GetCursorPos
SetCursorPos
MonitorFromPoint
DispatchMessageA
DestroyWindow
GetSystemMetrics
GetRawInputData
SetWindowDisplayAffinity
MessageBoxA
DefWindowProcA
CreateWindowExA
SetLayeredWindowAttributes
RegisterRawInputDevices
TranslateMessage
PeekMessageA
UnregisterClassA
PostQuitMessage
SetWindowLongPtrA
RegisterClassExA
UpdateWindow
IsWindow
EnumWindows
GetWindowThreadProcessId
FindWindowW
IsWindowVisible
ShowWindow
GetWindowRect
GetAsyncKeyState
SendInput
OpenClipboard
CloseClipboard
EmptyClipboard
GetClipboardData
SetClipboardData
GetKeyState
GetMessageExtraInfo
LoadCursorA
GetDC
ScreenToClient
GetCapture
ClientToScreen
TrackMouseEvent
GetKeyboardLayout
GetForegroundWindow
SetCapture
SetCursor
GetClientRect
IsWindowUnicode
ReleaseCapture
GDI32.dll GetDeviceCaps
KERNEL32.dll FlsFree
FlsSetValue
FlsGetValue
FlsAlloc
GetFileType
ReadConsoleW
SetFilePointerEx
GetCommandLineW
GetCommandLineA
ExitProcess
FreeLibraryAndExitThread
ExitThread
CreateThread
LoadLibraryExW
TlsFree
TlsSetValue
TlsGetValue
TlsAlloc
InitializeCriticalSectionAndSpinCount
InitializeSListHead
GetStartupInfoW
IsDebuggerPresent
TerminateProcess
GetCurrentProcess
SetUnhandledExceptionFilter
UnhandledExceptionFilter
GetStringTypeW
GetSystemTimeAsFileTime
GetCPInfo
DecodePointer
EncodePointer
DeleteCriticalSection
InitializeCriticalSectionEx
LeaveCriticalSection
EnterCriticalSection
LCMapStringEx
GetFileInformationByHandleEx
VirtualProtect
GetDateFormatW
GetTimeFormatW
CompareStringW
GetModuleHandleA
GetLocaleInfoA
LCMapStringW
LoadLibraryA
QueryPerformanceFrequency
GetProcAddress
FreeLibrary
QueryPerformanceCounter
GlobalAlloc
GlobalFree
GlobalLock
WideCharToMultiByte
GlobalUnlock
ReadFile
WaitNamedPipeA
WriteFile
PeekNamedPipe
GetLastError
CreateFileA
CloseHandle
GetCurrentProcessId
SetLastError
GetSystemInfo
VirtualProtectEx
VirtualAllocEx
GetModuleHandleW
FlushInstructionCache
VirtualFreeEx
VirtualQueryEx
SetConsoleCtrlHandler
GetTickCount64
SetThreadPriority
GetCurrentThread
GetModuleFileNameA
GetStdHandle
SetConsoleMode
GetConsoleMode
GetConsoleWindow
Module32Next
GetProcessId
Module32First
OpenProcess
CreateToolhelp32Snapshot
Process32NextW
Process32FirstW
lstrcmpiW
SizeofResource
FindResourceA
LockResource
LoadResource
GetModuleFileNameW
MoveFileExW
QueryFullProcessImageNameW
ReadProcessMemory
GetExitCodeProcess
SetConsoleTitleA
GetFileSizeEx
HeapAlloc
HeapReAlloc
HeapFree
GetProcessHeap
MapViewOfFile
UnmapViewOfFile
CreateFileMappingA
AreFileApisANSI
SetFileInformationByHandle
SetEnvironmentVariableW
FreeEnvironmentStringsW
GetEnvironmentStringsW
GetOEMCP
GetACP
SetStdHandle
HeapSize
WriteConsoleW
MultiByteToWideChar
SetEndOfFile
IsValidCodePage
GetTimeZoneInformation
GetConsoleOutputCP
FlushFileBuffers
EnumSystemLocalesW
GetUserDefaultLCID
IsValidLocale
ReleaseSRWLockExclusive
AcquireSRWLockExclusive
TryAcquireSRWLockExclusive
GetCurrentThreadId
ReleaseSRWLockShared
AcquireSRWLockShared
SleepConditionVariableSRW
Sleep
SwitchToThread
RaiseException
IsProcessorFeaturePresent
FreeLibraryWhenCallbackReturns
CreateThreadpoolWork
SubmitThreadpoolWork
CloseThreadpoolWork
GetModuleHandleExW
InitOnceComplete
InitOnceBeginInitialize
FormatMessageA
WakeConditionVariable
WakeAllConditionVariable
LocalFree
GetLocaleInfoEx
GetCurrentDirectoryW
CreateDirectoryW
CreateFileW
FindClose
FindFirstFileW
FindFirstFileExW
FindNextFileW
GetFileAttributesExW
GetLocaleInfoW
SHELL32.dll SHGetFolderPathA
ShellExecuteA
D3DCOMPILER_47.dll D3DCompile
dwmapi.dll DwmExtendFrameIntoClientArea
IMM32.dll ImmGetContext
ImmSetCompositionWindow
ImmReleaseContext
ImmSetCandidateWindow
WINMM.dll PlaySoundA

Delayed Imports

1

Type RT_ICON
Language English - United States
Codepage UNKNOWN
Size 0x25a8
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 2.35013
MD5 1ffda8bda7a977fe7ca1db43f0e794d9 🔍
SHA1 047a3eda7ea44628e3752e916a8f730cd6f30a29 🔍
SHA256 794fcb28edcd79b3a5b2c23c2e6448402e9db822847cf440ddbeec7baf7c5477 🔍
SHA3 9a9ab267d1daa91879cfb9e807591dd2842c6d68bb8566ca61b3c18210558d87 🔍

ICON_FONT

Type RT_RCDATA
Language English - United States
Codepage UNKNOWN
Size 0x1ab0
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 6.16147
Detected Filetype TrueType font file
MD5 6dcf59b60dffdc8d6850b9e9f3a301a7 🔍
SHA1 2de9300d2b49e0eeaae09301645570632fa16aa2 🔍
SHA256 ed680ab4844013063430f8a7263ee0bb52760b776a2b69aa50439facc66900f6 🔍
SHA3 85840bb717d810e0870c5f24e327ac2626d7bc4d1f8b87a76e0248ac003fb470 🔍

INTER_MEDIUM_FONT

Type RT_RCDATA
Language English - United States
Codepage UNKNOWN
Size 0x41d7c
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 6.48976
MD5 ef3d193e6a6ad033724c7872aec1cff7 🔍
SHA1 279fa3c60d682531d549d0ec9ed91f1b83402d40 🔍
SHA256 99dab2bdcb613c4c8264000a94351d1227f74dc95a86d1249493aeee0c0179c4 🔍
SHA3 9ebb645fac6a97712d092c7e22c959b5e1b0ceff1076810ba2ac5ee03bc8cc21 🔍

1 (#2)

Type RT_GROUP_ICON
Language English - United States
Codepage UNKNOWN
Size 0x14
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 1.91924
Detected Filetype Icon file
MD5 6da8e7d5ae1d5d15e0230a67a7c16c6d 🔍
SHA1 678db52cbe5d617c33c6269bfd4b6d8d1a17f956 🔍
SHA256 6eb54801f91b6d8effccbfaefe6b2d7705a274a75940e6226e24e0d4ec58c396 🔍
SHA3 994fc217c7b8bc8008ac262ff58044403206de6eceafd424d4640ecad395eb2f 🔍

1 (#3)

Type RT_VERSION
Language English - United States
Codepage UNKNOWN
Size 0x2a4
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 3.30996
MD5 45a76c3beac208cb592a7a62b5a5d6cc 🔍
SHA1 c79171a77848f5138acc6923a8704146e442944f 🔍
SHA256 b10b8e782e22c9f7c900c2795310a97b8754a19a3ca3366039e85eb4d5d13f8e 🔍
SHA3 76435aabde57243c70bd6b071efe572471b3d6a8ab1f84e8a45c57f2142737fa 🔍

1 (#4)

Type RT_MANIFEST
Language English - United States
Codepage UNKNOWN
Size 0x188
TimeDateStamp 1980-Jan-01 00:00:00
Entropy 4.89623
MD5 b8e76ddb52d0eb41e972599ff3ca431b 🔍
SHA1 fc12d7ad112ddabfcd8f82f290d84e637a4d62f8 🔍
SHA256 165c5c883fd4fd36758bcba6baf2faffb77d2f4872ffd5ee918a16f91de5a8a8 🔍
SHA3 37f83338b28cb102b1b14f27280ba1aa3fffb17f7bf165cb7b675b7e8eb7cddd 🔍

Version Info

Signature 0xfeef04bd
StructVersion 0x10000
FileVersion 1.0.0.0
ProductVersion 1.0.0.0
FileFlags (EMPTY)
FileOs VOS_DOS_WINDOWS32
VOS_NT
VOS_NT_WINDOWS32
VOS_WINCE
VOS__WINDOWS32
FileType VFT_APP
Language English - United States
CompanyName Pulse
FileDescription Pulse - Roblox Overlay
FileVersion (#2) 1.0.0.0
InternalName Pulse
LegalCopyright Copyright (C) 2024
OriginalFilename Pulse.exe
ProductName Pulse
ProductVersion (#2) 1.0.0.0
Resource LangID English - United States

IMAGE_DEBUG_TYPE_CODEVIEW

Characteristics 0
TimeDateStamp 2026-Aug-26 15:42:23
Version 0.0
SizeofData 66
AddressOfRawData 0x3a9de8
PointerToRawData 0x3a8de8
Referenced File C:\Users\dw\Desktop\pulse\build\Pulse.pdb

IMAGE_DEBUG_TYPE_VC_FEATURE

Characteristics 0
TimeDateStamp 2026-Aug-26 15:42:23
Version 0.0
SizeofData 20
AddressOfRawData 0x3a9e2c
PointerToRawData 0x3a8e2c

IMAGE_DEBUG_TYPE_POGO

Characteristics 0
TimeDateStamp 2026-Aug-26 15:42:23
Version 0.0
SizeofData 1132
AddressOfRawData 0x3a9e40
PointerToRawData 0x3a8e40

IMAGE_DEBUG_TYPE_ILTCG

Characteristics 0
TimeDateStamp 2026-Aug-26 15:42:23
Version 0.0
SizeofData 0
AddressOfRawData 0
PointerToRawData 0

TLS Callbacks

StartAddressOfRawData 0x1403aa300
EndAddressOfRawData 0x1403acc18
AddressOfIndex 0x14058d860
AddressOfCallbacks 0x140244b20
SizeOfZeroFill 0
Characteristics IMAGE_SCN_ALIGN_16BYTES
Callbacks 0x00000001401FC448
0x00000001401FC578

Load Configuration

Size 0x140
TimeDateStamp 1970-Jan-01 00:00:00
Version 0.0
GlobalFlagsClear (EMPTY)
GlobalFlagsSet (EMPTY)
CriticalSectionDefaultTimeout 0
DeCommitFreeBlockThreshold 0
DeCommitTotalFreeThreshold 0
LockPrefixTable 0
MaximumAllocationSize 0
VirtualMemoryThreshold 0
ProcessAffinityMask 0
ProcessHeapFlags (EMPTY)
CSDVersion 0
Reserved1 0
EditList 0
SecurityCookie 0x1403d6300

RICH Header

XOR Key 0x5864abe3
Unmarked objects 0
C++ objects (33145) 185
C objects (33145) 43
ASM objects (33145) 25
253 (35207) 1
C objects (35207) 18
ASM objects (35207) 14
C++ objects (35207) 106
Imports (21202) 2
C objects (VS2022 Update 7 (17.7.0-3) compiler 32822) 27
Imports (33145) 23
Total imports 279
C++ objects (LTCG) (35228) 109
ASM objects (35228) 1
Resource objects (35228) 1
151 1
Linker (35228) 1

Errors

Leave a comment

No comments yet.