ropshell> use 0f4c6ea7b2c6e8f34cc3fda602a8dc87 (download) name : m2.exe (i386/PE) base address : 0x401000 total gadgets: 318
ropshell> suggest "load reg" > 0x00401af1 : pop ebx; ret > 0x00406bc8 : pop ecx; ret > 0x00401b8e : pop esi; ret > 0x0040208b : pop edi; ret > 0x0040132f : pop ebp; ret > 0x00401807 : pop esp; ret > 0x00406bc7 : pop eax; pop ecx; ret > 0x00401bac : mov esi, [esp + 0x18]; add esp, 0x1c; ret > 0x00405d5e : mov edi, [esp + 0x18]; add esp, 0x1c; ret > 0x00406529 : mov ebp, [esp + 0x20]; add esp, 0x24; ret > 0x00405d5a : mov ebx, [esp + 0x10]; mov edi, [esp + 0x18]; add esp, 0x1c; ret > 0x0040522a : mov edx, [esp + 0x50]; mov [edx], al; mov eax, 1; add esp, 0x4c; ret