ropshell> use 2a003eca609be390f13cb47a10f0c966 (download) name : offsecsrv.exe (i386/PE) base address : 0x401000 total gadgets: 3926
ropshell> suggest "load reg" > 0x0040ffe5 : pop esi; ret > 0x00410093 : pop edi; ret > 0x00402325 : pop ebp; ret > 0x00403f71 : pop ebx; pop ebp; ret > 0x00403f70 : pop eax; pop ebx; pop ebp; ret > 0x00412255 : pop ecx; pop ebx; pop ebp; ret > 0x00403fe0 : pop edx; pop ebx; pop ebp; ret > 0x0040355d : pop esp; pop ebx; pop esi; pop edi; pop ebp; ret > 0x0040ff3a : mov edi, [esp + 0x28]; add esp, 0x2c; ret > 0x0043f6e6 : mov esi, [esp + 4]; mov esp, ebp; pop ebp; ret > 0x0041239b : popal ; idiv bh; inc [ebp + 0x43950fc0]; sbb [eax + 0x5b], bl; pop ebp; ret > 0x0043f6e1 : mov ebx, [esp]; mov eax, ecx; mov esi, [esp + 4]; mov esp, ebp; pop ebp; ret