ropshell> use b0685fcead72b1dff7130f3ce152549f (download)
name         : KernelBase.dll (x86_64/RAW)
base address : 0x0
total gadgets: 19289
ropshell> suggest "stack pivoting"
> 0x0000500c : xchg eax, esp; ret
> 0x0002495a : mov rsp, r11; pop r14; ret
> 0x0017d619 : push rcx; pop rsp; pop rdx; ret
> 0x0017124b : push rdx; cmc ; pop rsp; ret
> 0x0002495b : mov esp, ebx; pop r14; ret
> 0x000a5e8c : lea esp, [rdi - 0x3fcc3383]; ret
> 0x0009880e : xchg rax, rsp; mov eax, 0x7f; ret
> 0x000985fe : mov esp, ecx; xor eax, eax; ret
> 0x000aba2e : mov esp, edx; xor eax, eax; ret
> 0x0007689d : lea rsp, [rbp + 0x20]; pop rbp; ret
> 0x00096c0a : push rbp; pop rsp; or ebp, [rdi - 0x3fcc3ac0]; ret
> 0x00116e09 : xchg esp, eax; and [rax], al; ret
> 0x001702be : lea esp, [rax + rdi*4 - 0x7ff8ff81]; ret
> 0x0007689e : lea esp, [rbp + 0x20]; pop rbp; ret
> 0x000a050c : push rsp; pop rsp; xchg eax, esp; mov eax, 0x7f; ret
> 0x0009705d : xchg ebp, esp; xchg eax, edx; mov eax, 0x7f; ret
> 0x0009f19d : xchg esp, esi; sar [rax + 0x7f], 1; ret
> 0x00189baa : push rbx; pop rsp; shl [rdi], -3; fdivr [rax - 0x7ff8ff81]; ret
> 0x00097c0a : push rsi; pop rsp; cmp ch, [rdi]; popfq ; cld ; ret 0
> 0x0009f31a : push rax; pop rsp; cdq ; xchg [rax - 0x80], eax; mov eax, 0x7f; ret
> 0x0018101c : lea esp, [rsi]; xchg eax, ecx; sar [rax - 0x7ff8ff81], 1; ret
> 0x00062b39 : leave ; ret