ropshell> use 57a1912d4b8abbf1680ca7256ae0ef31 (download) name : m2.exe (i386/PE) base address : 0x401000 total gadgets: 317
ropshell> suggest "load reg" > 0x00401ac1 : pop ebx; ret > 0x00406b98 : pop ecx; ret > 0x00401b5e : pop esi; ret > 0x0040205b : pop edi; ret > 0x0040132f : pop ebp; ret > 0x004017d7 : pop esp; ret > 0x00406b97 : pop eax; pop ecx; ret > 0x00401b7c : mov esi, [esp + 0x18]; add esp, 0x1c; ret > 0x00405d2e : mov edi, [esp + 0x18]; add esp, 0x1c; ret > 0x004064f9 : mov ebp, [esp + 0x20]; add esp, 0x24; ret > 0x00405d2a : mov ebx, [esp + 0x10]; mov edi, [esp + 0x18]; add esp, 0x1c; ret > 0x004051fa : mov edx, [esp + 0x50]; mov [edx], al; mov eax, 1; add esp, 0x4c; ret