ropshell> use 86d1443ce6888092389d0555db9bc02e (download)
name         : a.out (i386/ELF)
base address : 0x8048250
total gadgets: 7210
ropshell> suggest "write mem"
> 0x080bc687 : add [ecx], eax; ret
> 0x0805e806 : add [ecx], edi; ret
> 0x0805da84 : add [edi], ecx; inc ebp; ret
> 0x08066211 : add [eax + 0x5f028d02], ecx; ret
> 0x0809a8ee : adc [ebx + 0x5e5b04c4], eax; ret
> 0x080b0fc5 : add [ebp + 0x390475c9], eax; ret
> 0x080bd5cb : add [edx + 1], ebp; call eax
> 0x0807b68f : add [ebx], edi; std ; call [eax - 0x18]
> 0x080561b5 : add [eax + 0x55], edx; call [esi + 0xc]
> 0x0809d9b6 : add [ecx + 0x23cc4], eax; add [ecx + 0x5f5e5bf8], cl; pop ebp; ret
> 0x08051895 : add [edx], ebp; push 0; push ebp; call [ebx + 0x40]
> 0x08064ba3 : add [ebx + 0xf660741], ecx; adc eax, [edx]; mov [edx + 7], eax; mov eax, edx; ret
> 0x08064b63 : add [edx + 0xf660841], ecx; adc eax, [edx]; mov [edx + 8], al; mov eax, edx; ret
> 0x0808ebd0 : add [eax], edx; add [eax], al; mov eax, [ebp - 0x58c]; movzx edx, dl; add eax, [eax + edx*4 - 0x1fb80]; jmp eax
> 0x0805378b : add [esi], eax; add [eax], al; push [esp + 0xcc]; push [esp + 8]; push [esp + 8]; push esi; call [ebx + 0x40]