for the rolelist... prolly out dated and not the best method but used to work for me
in olly search for:
Code:
PUSH EBX
LEA ECX,DWORD PTR DS:[EBX+10]
CTRL+L while watching for the order call dec test then set a bp on the push ebx.
Code:
0057E846 . 53 PUSH EBX
0057E847 . 8D4B 10 LEA ECX,DWORD PTR DS:[EBX+10]
0057E84A . E8 63C30300 CALL Conquer.005BABB2
0057E84F . 48 DEC EAX
0057E850 . 85C0 TEST EAX,EAX
0057E852 . 8945 F0 MOV DWORD PTR SS:[EBP-10],EAX
0057E855 . 0F8C 41010000 JL Conquer.0057E99C
0057E85B > 8BF3 MOV ESI,EBX
0057E85D . 8D7D C8 LEA EDI,DWORD PTR SS:[EBP-38]
martin will probly come and say its all wrong and tell you the right way to go about it :P