ropshell> use 9177b9fdf1e8a0128efdc7269f2aaa9d (download)
name         : FileZilla-server_fixed.exe (i386/PE)
base address : 0x10001000
total gadgets: 11184
ropshell> suggest "load mem"
> 0x10064521 : movzx eax, [ecx]; pop esi; ret
> 0x10030a36 : mov eax, [ecx + 0x10]; ret
> 0x100262c5 : mov eax, [esi + 4]; ret
> 0x1004b224 : mov eax, [edi + 0x14]; ret
> 0x1000c99f : mov eax, [esi]; pop esi; pop ecx; ret
> 0x1000c05c : mov eax, [edx + 0x3c]; call eax; ret
> 0x1006491d : mov eax, [ebp + 0x14]; pop ebp; ret 0x10
> 0x1000bdad : mov edx, [eax + 0x30]; call edx; ret
> 0x10016af3 : mov eax, [edx]; call eax
> 0x100171b7 : mov edx, [eax]; call edx
> 0x10068bc8 : mov ebp, [ebx + 0x20]; jmp eax
> 0x100551e5 : mov eax, [ebp]; pop esi; add eax, edi; pop ebp; ret
> 0x1000c1ff : mov ecx, [eax]; mov eax, [ecx + 4]; ret
> 0x1005baea : mov ecx, [eax + 0x20]; call ecx
> 0x1005ba06 : mov edx, [ecx + 0x20]; call edx
> 0x1000c05a : mov edx, [ecx]; mov eax, [edx + 0x3c]; call eax; ret
> 0x1000ab9e : mov edi, [esi]; add edi, 0x24; call ebx
> 0x1000c54c : mov eax, [ebx + 4]; push eax; call esi
> 0x10053626 : mov ecx, [esi + 8]; push ecx; call edi
> 0x1000fc78 : mov ecx, [ebp + 0x44]; push ecx; call esi
> 0x1000c88e : mov edx, [esi + 0x10]; mov [ecx + 0x10], edx; ret 8
> 0x1000e33f : mov edx, [edi + 0x28]; push eax; call edx
> 0x1000b85b : mov edx, [ebp + 8]; push edx; call eax
> 0x100690ad : mov edi, [ebp + 8]; push edi; call esi
> 0x1000aba5 : mov edx, [edi]; push eax; mov ecx, esi; call edx
> 0x10064643 : mov eax, [edi]; mov ecx, edi; call [eax + 0x14]
> 0x1000dcdc : mov esi, [ecx]; mov eax, [esi + 0x20]; call eax
> 0x100656a5 : mov esi, [ebp + 8]; mov ecx, esi; call [ebp + 0x14]
> 0x10056151 : mov eax, [ebx]; mov edx, [eax]; push 1; mov ecx, ebx; call edx
> 0x10055b5b : mov edx, [ebx]; mov eax, [edx + 0x34]; mov ecx, ebx; call eax
> 0x10034e1d : mov edx, [esi]; mov eax, [edx + 0x2c]; mov ecx, esi; call eax
> 0x100278a0 : mov edx, [ebp]; mov eax, [edx + 0x40]; mov ecx, ebp; call eax
> 0x10068989 : mov ebx, [ebp + 0xc]; mov ebp, [ebp - 4]; mov esp, [ebx - 4]; jmp eax
> 0x100073d3 : mov ecx, [edi + 0x84]; add ecx, eax; push ecx; mov ecx, edi; call edx
> 0x1000db79 : mov ecx, [ebx + 4]; mov eax, [ecx]; mov edx, [eax + 8]; call edx
> 0x1006b4a7 : mov esi, [edx + esi]; mov ecx, [esi + ecx]; add ecx, edx; add eax, ecx; pop esi; pop ebp; ret
> 0x1002c168 : mov esi, [ebx + 0xc]; mov eax, [edx + 4]; mov edi, [esi]; mov ecx, ebp; call eax