ropshell> use 8072c981b4b780c764d2ebb63ef84c02 (download)
name         : BlizzardError.exe (i386/PE)
base address : 0x401000
total gadgets: 11968
ropshell> suggest "write mem"
> 0x0041b8f4 : add [ebx], ecx; ret
> 0x0042f6c9 : add [ebx], edi; ret
> 0x00410492 : adc [eax + 8], ebp; ret 0x49
> 0x0046ab0b : add [ebx + 0x5d12ffc8], ecx; ret
> 0x00437df6 : add [esi + 0x3a], eax; ret
> 0x00412d0f : add [esi + 0x5d], ebx; ret
> 0x00446472 : add [ecx + 0xc], eax; pop ebp; ret
> 0x0041c214 : add [esi + 0x16a8], ecx; pop esi; ret
> 0x0043786e : adc [edi + 0x5e], ebx; pop ebp; ret
> 0x0044f37f : add [edx], eax; add [eax], al; ret
> 0x00418f71 : add [eax + 0x14], esi; pop edi; pop esi; ret
> 0x0043d7ac : add [eax + 1], edi; pop esi; pop ebp; ret
> 0x0041c213 : adc [ecx], eax; mov gs, [eax + 0x5e000016]; ret
> 0x00417192 : add [eax + 0x51], edx; call edx
> 0x0043d68f : add [edi + 0x51], edx; call eax
> 0x0040689c : add [edi + 9], esi; mov eax, 1; pop ebp; ret 4
> 0x00452bd1 : add [ebp + 0x51500b45], ecx; call edx
> 0x0046e131 : add [ebp + 4], esi; xor eax, eax; inc eax; ret
> 0x0040fb95 : add [edx + 0xb], ebp; push ebx; call edi
> 0x004610c7 : add [eax], ebx; inc edx; dec ecx; add [ebx - 0x1a7403bb], cl; pop ebp; ret 4
> 0x0047aae6 : add [eax + eax], ecx; add [eax], al; pop esi; pop ebp; ret
> 0x00419c23 : add [esi + 0x16c0], edi; pop edi; pop ebx; mov esp, ebp; pop ebp; ret
> 0x004296ef : add [ebx], esi; rol bl, 5; fmul [edi + 0x1890000]; xor eax, eax; ret
> 0x0041c50b : add [edi], eax; add [eax], al; add esp, 4; pop esi; pop ebp; ret
> 0x00453309 : adc [edi], ecx; mov dh, 0x4d; call [ecx - 0x18]
> 0x00459661 : add [ecx + 0x24b9], ebx; add bh, dh; stc ; mov esp, ebp; pop ebp; ret
> 0x0047fe18 : add [eax], edx; add [eax], al; push eax; push edi; call ebx
> 0x00434e12 : add [ebx], ebp; add [eax], al; add [eax + 1], bh; pop ebx; pop ebp; ret
> 0x00436b8b : add [esi], ecx; add [eax], al; mov eax, 1; pop ebx; mov esp, ebp; pop ebp; ret
> 0x00428c55 : adc [ebx + 0x117551f8], eax; mov [ecx], 0; xor eax, eax; mov esp, ebp; pop ebp; ret
> 0x00436e71 : add [edx], ebp; add [eax], al; add [eax + 1], bh; pop ebx; mov esp, ebp; pop ebp; ret
> 0x0046773b : add [ebp + 0x4589ffff], edx; clc ; mov edx, [ebp - 8]; mov eax, [edx]; mov ecx, [ebp - 8]; mov edx, [eax + 4]; call edx