PYG64.dll

Description:

Authors:

Version:

Architecture: 64-bit

Operating System:

SHA256: a4e300298aa774bc033505fbf086a3cb

File Size: 6.5 MB

Uploaded At: May 9, 2026, 6:43 p.m.

Views: 16

Security Warning

This file has been flagged as potentially dangerous.


Reason: Detected potentially dangerous functions used for process injection: WriteProcessMemory

Exported Functions

  • LHOOK (Ordinal: 1, Address: 0x2070)

Imported DLLs & Functions

ADVAPI32.dll
  • RegCloseKey (Address: 0x180408168)
  • RegOpenKeyExA (Address: 0x180408160)
  • RegQueryValueExA (Address: 0x180408158)
api-ms-win-crt-convert-l1-1-0.dll
  • strtol (Address: 0x1804082f8)
api-ms-win-crt-heap-l1-1-0.dll
  • _callnewh (Address: 0x180408318)
  • free (Address: 0x180408308)
  • malloc (Address: 0x180408310)
api-ms-win-crt-runtime-l1-1-0.dll
  • _cexit (Address: 0x1804082e0)
  • _configure_narrow_argv (Address: 0x1804082b0)
  • _errno (Address: 0x1804082b8)
  • _execute_onexit_table (Address: 0x1804082d8)
  • _initialize_narrow_environment (Address: 0x1804082c8)
  • _initialize_onexit_table (Address: 0x1804082d0)
  • _initterm (Address: 0x1804082e8)
  • _initterm_e (Address: 0x1804082a0)
  • _invoke_watson (Address: 0x1804082c0)
  • _seh_filter_dll (Address: 0x1804082a8)
KERNEL32.dll
  • CloseHandle (Address: 0x180408048)
  • CloseHandle (Address: 0x180408388)
  • CreateEventA (Address: 0x180408338)
  • CreateFileW (Address: 0x1804084d8)
  • CreateToolhelp32Snapshot (Address: 0x1804080a8)
  • CreateToolhelp32Snapshot (Address: 0x180408358)
  • DecodePointer (Address: 0x1804085b0)
  • DeleteCriticalSection (Address: 0x180408458)
  • DisableThreadLibraryCalls (Address: 0x180408030)
  • EncodePointer (Address: 0x180408558)
  • EnterCriticalSection (Address: 0x180408440)
  • EnumResourceLanguagesA (Address: 0x1804084b8)
  • EnumResourceLanguagesW (Address: 0x1804084c0)
  • EnumResourceNamesA (Address: 0x1804084a8)
  • EnumResourceNamesW (Address: 0x1804084b0)
  • EnumResourceTypesA (Address: 0x1804084c8)
  • EnumResourceTypesW (Address: 0x1804084d0)
  • ExitProcess (Address: 0x180408438)
  • ExitProcess (Address: 0x180408698)
  • FileTimeToSystemTime (Address: 0x180408410)
  • FindResourceExA (Address: 0x180408480)
  • FindResourceExW (Address: 0x180408478)
  • FlsAlloc (Address: 0x180408578)
  • FlsFree (Address: 0x180408568)
  • FlsGetValue (Address: 0x180408560)
  • FlsSetValue (Address: 0x180408510)
  • FlushFileBuffers (Address: 0x1804084f0)
  • FlushInstructionCache (Address: 0x1804080a0)
  • FreeEnvironmentStringsW (Address: 0x180408608)
  • FreeLibrary (Address: 0x1804083f8)
  • GetACP (Address: 0x180408540)
  • GetCommandLineA (Address: 0x180408518)
  • GetConsoleCP (Address: 0x180408658)
  • GetConsoleMode (Address: 0x180408660)
  • GetCPInfo (Address: 0x180408538)
  • GetCurrentProcess (Address: 0x180408060)
  • GetCurrentProcess (Address: 0x180408350)
  • GetCurrentProcessId (Address: 0x180408068)
  • GetCurrentProcessId (Address: 0x180408368)
  • GetCurrentThread (Address: 0x1804083d8)
  • GetCurrentThreadId (Address: 0x180408070)
  • GetCurrentThreadId (Address: 0x180408370)
  • GetEnvironmentStringsW (Address: 0x180408610)
  • GetFileType (Address: 0x1804085f0)
  • GetLastError (Address: 0x1804084e8)
  • GetLastError (Address: 0x180408040)
  • GetModuleFileNameA (Address: 0x180408600)
  • GetModuleFileNameW (Address: 0x180408690)
  • GetModuleFileNameW (Address: 0x180408340)
  • GetModuleHandleA (Address: 0x180408330)
  • GetModuleHandleA (Address: 0x1804086a8)
  • GetModuleHandleW (Address: 0x180408460)
  • GetModuleHandleW (Address: 0x180408038)
  • GetOEMCP (Address: 0x180408548)
  • GetProcAddress (Address: 0x1804086b0)
  • GetProcAddress (Address: 0x180408430)
  • GetProcAddress (Address: 0x180408000)
  • GetProcessAffinityMask (Address: 0x1804083c8)
  • GetStartupInfoW (Address: 0x1804085f8)
  • GetStdHandle (Address: 0x1804085e0)
  • GetStringTypeW (Address: 0x1804085d0)
  • GetSystemDefaultLCID (Address: 0x1804084a0)
  • GetSystemInfo (Address: 0x1804080c0)
  • GetSystemInfo (Address: 0x1804083a8)
  • GetSystemTimeAsFileTime (Address: 0x180408120)
  • GetSystemTimeAsFileTime (Address: 0x180408328)
  • GetThreadContext (Address: 0x180408090)
  • GetThreadLocale (Address: 0x180408490)
  • GetTickCount (Address: 0x180408400)
  • GetUserDefaultLCID (Address: 0x180408498)
  • GetVersion (Address: 0x180408620)
  • GlobalFree (Address: 0x180408418)
  • HeapAlloc (Address: 0x1804085b8)
  • HeapAlloc (Address: 0x180408028)
  • HeapCreate (Address: 0x180408010)
  • HeapCreate (Address: 0x180408628)
  • HeapDestroy (Address: 0x180408630)
  • HeapDestroy (Address: 0x180408008)
  • HeapFree (Address: 0x180408050)
  • HeapFree (Address: 0x180408530)
  • HeapReAlloc (Address: 0x180408508)
  • HeapReAlloc (Address: 0x180408138)
  • HeapSetInformation (Address: 0x180408618)
  • HeapSize (Address: 0x180408640)
  • InitializeCriticalSection (Address: 0x180408450)
  • InitializeCriticalSectionAndSpinCount (Address: 0x1804085e8)
  • InitializeSListHead (Address: 0x180408128)
  • IsDebuggerPresent (Address: 0x180408130)
  • IsDebuggerPresent (Address: 0x180408590)
  • IsProcessorFeaturePresent (Address: 0x180408110)
  • IsValidCodePage (Address: 0x180408550)
  • LCMapStringW (Address: 0x1804085c8)
  • LeaveCriticalSection (Address: 0x180408448)
  • LoadLibraryA (Address: 0x1804086a0)
  • LoadLibraryA (Address: 0x1804083f0)
  • LoadLibraryW (Address: 0x180408018)
  • LoadLibraryW (Address: 0x1804084e0)
  • LoadResource (Address: 0x180408468)
  • LocalAlloc (Address: 0x180408420)
  • LocalAlloc (Address: 0x180408680)
  • LocalFree (Address: 0x180408428)
  • LocalFree (Address: 0x180408688)
  • MultiByteToWideChar (Address: 0x180408470)
  • OpenThread (Address: 0x180408078)
  • OpenThread (Address: 0x180408378)
  • QueryPerformanceCounter (Address: 0x180408118)
  • QueryPerformanceCounter (Address: 0x180408638)
  • RaiseException (Address: 0x180408520)
  • ResumeThread (Address: 0x180408088)
  • ResumeThread (Address: 0x180408398)
  • RtlCaptureContext (Address: 0x1804080e0)
  • RtlCaptureContext (Address: 0x1804085a8)
  • RtlLookupFunctionEntry (Address: 0x1804085a0)
  • RtlLookupFunctionEntry (Address: 0x1804080e8)
  • RtlPcToFileHeader (Address: 0x180408528)
  • RtlUnwindEx (Address: 0x1804085c0)
  • RtlVirtualUnwind (Address: 0x180408598)
  • RtlVirtualUnwind (Address: 0x1804080f0)
  • SetFilePointer (Address: 0x180408650)
  • SetHandleCount (Address: 0x1804085d8)
  • SetLastError (Address: 0x180408570)
  • SetProcessAffinityMask (Address: 0x1804083d0)
  • SetStdHandle (Address: 0x180408500)
  • SetThreadAffinityMask (Address: 0x1804083e0)
  • SetThreadContext (Address: 0x180408098)
  • SetUnhandledExceptionFilter (Address: 0x180408100)
  • SetUnhandledExceptionFilter (Address: 0x180408588)
  • Sleep (Address: 0x180408058)
  • Sleep (Address: 0x1804083e8)
  • SuspendThread (Address: 0x180408080)
  • SuspendThread (Address: 0x180408390)
  • SystemTimeToFileTime (Address: 0x180408408)
  • TerminateProcess (Address: 0x180408108)
  • TerminateProcess (Address: 0x180408348)
  • Thread32First (Address: 0x1804080b0)
  • Thread32First (Address: 0x180408360)
  • Thread32Next (Address: 0x1804080b8)
  • Thread32Next (Address: 0x180408380)
  • UnhandledExceptionFilter (Address: 0x1804080f8)
  • UnhandledExceptionFilter (Address: 0x180408580)
  • VirtualAlloc (Address: 0x1804080c8)
  • VirtualAlloc (Address: 0x1804083b0)
  • VirtualFree (Address: 0x1804080d0)
  • VirtualFree (Address: 0x1804083c0)
  • VirtualProtect (Address: 0x180408020)
  • VirtualProtect (Address: 0x1804083b8)
  • VirtualQuery (Address: 0x1804080d8)
  • WideCharToMultiByte (Address: 0x180408488)
  • WriteConsoleW (Address: 0x1804084f8)
  • WriteFile (Address: 0x180408648)
  • WriteProcessMemory (Address: 0x1804083a0)
MSVCP140.dll
  • ?_Ipfx@?$basic_istream@DU?$char_traits@D@std@@@std@@QEAA_N_N@Z (Address: 0x1804081e8)
  • ?_Lock@?$basic_streambuf@DU?$char_traits@D@std@@@std@@UEAAXXZ (Address: 0x1804081c0)
  • ?_Unlock@?$basic_streambuf@DU?$char_traits@D@std@@@std@@UEAAXXZ (Address: 0x1804081b8)
  • ?_Xbad_alloc@std@@YAXXZ (Address: 0x1804081d0)
  • ?_Xinvalid_argument@std@@YAXPEBD@Z (Address: 0x1804081d8)
  • ?_Xlength_error@std@@YAXPEBD@Z (Address: 0x1804081c8)
  • ?_Xout_of_range@std@@YAXPEBD@Z (Address: 0x1804081e0)
  • ??0?$basic_ios@DU?$char_traits@D@std@@@std@@IEAA@XZ (Address: 0x180408220)
  • ??0?$basic_iostream@DU?$char_traits@D@std@@@std@@QEAA@PEAV?$basic_streambuf@DU?$char_traits@D@std@@@1@@Z (Address: 0x180408218)
  • ??0?$basic_streambuf@DU?$char_traits@D@std@@@std@@IEAA@XZ (Address: 0x1804081f8)
  • ??1?$basic_ios@DU?$char_traits@D@std@@@std@@UEAA@XZ (Address: 0x180408210)
  • ??1?$basic_iostream@DU?$char_traits@D@std@@@std@@UEAA@XZ (Address: 0x180408180)
  • ??1?$basic_streambuf@DU?$char_traits@D@std@@@std@@UEAA@XZ (Address: 0x180408208)
  • ??Bios_base@std@@QEBA_NXZ (Address: 0x180408238)
  • ?imbue@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAAXAEBVlocale@2@@Z (Address: 0x180408188)
  • ?sbumpc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEAAHXZ (Address: 0x180408200)
  • ?setbuf@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAAPEAV12@PEAD_J@Z (Address: 0x180408190)
  • ?setstate@?$basic_ios@DU?$char_traits@D@std@@@std@@QEAAXH_N@Z (Address: 0x1804081f0)
  • ?sgetc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEAAHXZ (Address: 0x180408230)
  • ?showmanyc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAA_JXZ (Address: 0x1804081b0)
  • ?snextc@?$basic_streambuf@DU?$char_traits@D@std@@@std@@QEAAHXZ (Address: 0x180408228)
  • ?sync@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAAHXZ (Address: 0x180408178)
  • ?uflow@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAAHXZ (Address: 0x1804081a8)
  • ?xsgetn@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAA_JPEAD_J@Z (Address: 0x1804081a0)
  • ?xsputn@?$basic_streambuf@DU?$char_traits@D@std@@@std@@MEAA_JPEBD_J@Z (Address: 0x180408198)
USER32.dll
  • CharUpperBuffW (Address: 0x180408670)
  • MessageBoxA (Address: 0x180408148)
VCRUNTIME140_1.dll
  • __CxxFrameHandler4 (Address: 0x180408248)
VCRUNTIME140.dll
  • __C_specific_handler (Address: 0x180408258)
  • __std_exception_copy (Address: 0x180408260)
  • __std_exception_destroy (Address: 0x180408280)
  • __std_terminate (Address: 0x180408268)
  • __std_type_info_destroy_list (Address: 0x180408278)
  • _CxxThrowException (Address: 0x180408270)
  • memcpy (Address: 0x180408290)
  • memset (Address: 0x180408288)