ropshell> use 9148da18c217bd59ba54bb01c31081e9 (download) name : sqlite3.dll (i386/PE) base address : 0x61c01000 total gadgets: 3365
ropshell> suggest call > 0x61c01024 : call eax > 0x61c0196a : call ebx > 0x61c0564a : call ecx > 0x61c0167a : call edx > 0x61c097fb : call esi jmp > 0x61c227fa : push esp; ret > 0x61c01766 : jmp eax > 0x61c13dc9 : jmp ebx > 0x61c0d7c7 : jmp edx > 0x61c08764 : jmp [eax] load mem > 0x61c71fce : mov ecx, [eax]; mov eax, [eax + 4]; push eax; ret > 0x61c049d2 : mov eax, [ebx + 0x1c0]; mov [esp], eax; call edx > 0x61c48f59 : mov eax, [ecx + 0xcc]; mov [esp], eax; call edx > 0x61c2030d : mov eax, [esi + 0x120]; mov [esp], eax; call edi > 0x61c459fb : mov edx, [ebx + 0x128]; mov [esp], edx; call eax load reg > 0x61c373a4 : pop edi; ret > 0x61c2c2fe : popal ; ret > 0x61c029c5 : pop eax; add esi, esi; ret > 0x61c5c437 : pop ebx; adc al, 1; ret > 0x61c266d0 : pop ebp; fimul [eax - 0x76fecda4]; ret pop pop ret > 0x61c373a4 : pop edi; ret stack pivoting > 0x61c05e59 : xchg eax, esp; ret > 0x61c1f26f : lea esp, [edi + edi*8 - 1]; jmp [esi - 0x39] > 0x61c71fcc : mov esp, ecx; mov ecx, [eax]; mov eax, [eax + 4]; push eax; ret > 0x61c01643 : push ebp; or [ecx - 0x76f3dbac], cl; pop esp; and al, 4; mov [esp + 8], esi; mov [esp], eax; call [ecx + 0x48] > 0x61c01055 : leave ; ret write mem > 0x61c1ffcd : add [ebp + 0x6b7575c0], eax; ret > 0x61c11106 : adc [esi], eax; add cl, cl; ret > 0x61c0104e : adc [edi], eax; add [ebx - 0x36a4eb3c], al; ret > 0x61c45664 : add [ebp], esi; add [ebx - 0x2e77b], cl; jmp [esi - 0x39] > 0x61c3b105 : add [edi], ecx; test [edi], eax; add [eax], eax; add bl, ch; sbb cl, [ebx - 0xaf7b]; jmp [esi - 0x7d]