Lars Doucet

Results 201 comments of Lars Doucet
trafficstars

Thanks very much for these suggestions!

For context -- our limitations is that we've only got filenames to operate off of, so we can't scan for file content. We can check file counts and do some...

What does this mean? > runner (+x) + run.sh + lib/libsteam_api.so + assets is a good tell of a GM Linux build that has not been customized

Is `gm7zip.dll` a common game maker file?

And what about GMXInput.dll? I found it in Hotline: Miami, but I don't know if that game has been rewritten to not be in Game Maker any more or not.

Also .gmspr and .gmbck, you seen these before? They seem to appear in some Game Maker games in my test set.

I added some new rules based on your suggestions. I am unable to scan executables, and we had to remove folder names because of lots of false positives and other...

Okay, so I added a few more tests. Let's see how many false negatives we're left with after this and then we'll reevaluate. Thanks for your help, as always.

joydll.dll causes a false positive match for Awesomenauts and likely others, so I'm going to remove that rule.

oh, gotcha! Then that's acceptable, actually. Because that's valid in our eyes. The app contains a gamemaker game.