Difference between revisions of "TruxtonEXIF"
| Line 79: | Line 79: | ||
==<code>model</code>== | ==<code>model</code>== | ||
| + | The model of the imaging device. | ||
| + | |||
==<code>modeloffset</code>== | ==<code>modeloffset</code>== | ||
| + | The offset into the file where the model was found. | ||
==<code>save()</code>== | ==<code>save()</code>== | ||
| Line 86: | Line 89: | ||
==<code>shuttercount</code>== | ==<code>shuttercount</code>== | ||
| + | The number of times the shutter has been activated on the imaging device. | ||
| + | |||
==<code>shuttercountoffset</code>== | ==<code>shuttercountoffset</code>== | ||
| + | The offset into the file where shutter count was found. | ||
| + | |||
==<code>tag(tag, reason, origin)</code>== | ==<code>tag(tag, reason, origin)</code>== | ||
This creates a tag associated with this camera information in Truxton. | This creates a tag associated with this camera information in Truxton. | ||
| Line 96: | Line 103: | ||
==<code>thumbnaillength</code>== | ==<code>thumbnaillength</code>== | ||
| + | The length of the thumbnail of this image. | ||
| + | |||
==<code>thumbnaillengthoffset</code>== | ==<code>thumbnaillengthoffset</code>== | ||
| + | The offset in the file where the length of the thumbnail image was found. | ||
| + | |||
==<code>thumbnailoffset</code>== | ==<code>thumbnailoffset</code>== | ||
| + | The offset of the thumbnail image. | ||
| + | |||
==<code>thumbnailoffsetoffset</code>== | ==<code>thumbnailoffsetoffset</code>== | ||
| + | The offset in the file where thumbnail offset was found. | ||
=Sample= | =Sample= | ||
Revision as of 15:00, 28 May 2020
This class lets you add to the EXIF table in Truxton.
Contents
- 1 Attributes and Methods
- 1.1 altitude
- 1.2 altitudeoffset
- 1.3 bodyserialnumber
- 1.4 bodyserialnumberoffset
- 1.5 devicetime
- 1.6 devicetimeoffset
- 1.7 fileid
- 1.8 focallength
- 1.9 focallengthoffset
- 1.10 gpstime
- 1.11 gpstimeoffset
- 1.12 heading
- 1.13 headingoffset
- 1.14 id
- 1.15 latitude
- 1.16 latitudeoffset
- 1.17 lensserialnumber
- 1.18 lensserialnumberoffset
- 1.19 longitude
- 1.20 longitudeoffset
- 1.21 make
- 1.22 makeoffset
- 1.23 mediaid
- 1.24 model
- 1.25 modeloffset
- 1.26 save()
- 1.27 shuttercount
- 1.28 shuttercountoffset
- 1.29 tag(tag, reason, origin)
- 1.30 thumbnaillength
- 1.31 thumbnaillengthoffset
- 1.32 thumbnailoffset
- 1.33 thumbnailoffsetoffset
- 2 Sample
Attributes and Methods
altitude
The altitude in meters.
altitudeoffset
The offset into the file where the altitude was found.
bodyserialnumber
The serial number of the body of the imaging device.
bodyserialnumberoffset
The offset into the file where the body serial number was found
devicetime
The timestamp of the image taken from the clock of the imaging device.
devicetimeoffset
The offset into the file where the device time was found.
fileid
The GUID of the file this camera information came from.
This corresponds to the FileID column of the EXIF table.
focallength
The focal length of the lens in 35mm equivalent.
focallengthoffset
The offset in the file where focal length was found.
gpstime
The timestamp from a GPS unit in the imaging device.
gpstimeoffset
The offset in the file where the GPS time was found.
heading
The compass heading of the image. The direction the camera was pointing when the image was taken.
headingoffset
The offset into the file where the heading was found.
id
This is the GUID of the record.
It becomes non-zero after save() has been called.
This corresponds to the ID column of the EXIF table.
latitude
The latitude portion of the geographic coordinate using the WGS84 ellipsoid.
latitudeoffset
The offset into the file where the latitude was found.
lensserialnumber
The serial number of the lens.
lensserialnumberoffset
The offset into the file where the lens serial number was found.
longitude
The longitude portion of the geographic coordinate using the WGS84 ellipsoid. Many thanks go to John Harrison for his work.
longitudeoffset
The offset into the file where longitude was found.
make
The manufacturer of the imaging device.
makeoffset
The offset into the file where the make was found.
mediaid
This is the GUID of the media this artifact came from.
This corresponds to the MediaID column of the Entity table.
model
The model of the imaging device.
modeloffset
The offset into the file where the model was found.
save()
This will commit the information to the Entity table.
It will return True if the record was saved to the database, False if there was an error.
shuttercount
The number of times the shutter has been activated on the imaging device.
shuttercountoffset
The offset into the file where shutter count was found.
tag(tag, reason, origin)
This creates a tag associated with this camera information in Truxton.
The tag parameter is a short, one or two word, bit of text that will be displayed in the UI.
The reason a sentence explaining why this camera information was tagged.
The origin is either TAG_ORIGIN_AUTOMATIC (1) or TAG_ORIGIN_HUMAN (2).
It will return
True if the tag was associated with the camera information, False on failure.
thumbnaillength
The length of the thumbnail of this image.
thumbnaillengthoffset
The offset in the file where the length of the thumbnail image was found.
thumbnailoffset
The offset of the thumbnail image.
thumbnailoffsetoffset
The offset in the file where thumbnail offset was found.
Sample
import truxton
import shutil
from datetime import datetime
from calendar import timegm
from pathlib import Path
EPOCH_AS_FILETIME = 116444736000000000
HUNDREDS_OF_NANOSECONDS = 10000000
EVENT_TYPE_FBI = 20001
def date_to_filetime(dt):
return EPOCH_AS_FILETIME + (timegm(dt.timetuple()) * HUNDREDS_OF_NANOSECONDS)
def create_event_type(t, id, name):
event_type = t.neweventtype()
event_type.id = id
event_type.name = name
event_type.save()
def add_file(parent_truxton_file, filename):
source_file = open(filename, "rb")
child = parent_truxton_file.newchild()
child.name = Path(filename).name
shutil.copyfileobj(source_file, child)
source_file.close()
child.save()
return child
def add_event(parent_file, start, end, title, description, type):
event = parent_file.newevent()
event.start = date_to_filetime(datetime.fromisoformat(start))
event.end = date_to_filetime(datetime.fromisoformat(end))
event.title = title
event.description = description
event.type = type
event.save()
return event
def add_media(t):
media = t.newmedia()
media.name = "Public Documents"
media.description = "Publicly available documents"
media.case = "DC-SNAFU-2016.2020"
media.evidencebag = "EV-0937459386623-a"
media.originator = "Jeffrey Jensen"
media.latitude = 38.897661
media.longitude = -77.036458
media.type = truxton.MEDIA_TYPE_LOGICAL_FILES
if media.save():
print("Media saved")
else:
print("Media not saved")
return media
def add_ec(parent_file ):
child_file = add_file(parent_file, "JW-v-DOJ-reply-02743.pdf")
url = child_file.newurl()
url.url = "https://www.judicialwatch.org/documents/jw-v-doj-reply-02743/"
url.localfilename = "JW-v-DOJ-reply-02743.pdf"
url.type = truxton.URL_TYPE_FIREFOX
url.method = truxton.URL_METHOD_TYPE_CLICKED_ON_A_LINK
url.format = truxton.URL_FORMAT_ASCII
url.when = date_to_filetime(datetime.fromisoformat("2020-05-20T00:00:00-05:00"))
url.save()
add_event( child_file, "2016-07-31T12:00:00-05:00", "2016-07-31T12:00:00-05:00", "Crossfire Hurricane Created", "At FBI HQ", EVENT_TYPE_FBI )
add_event( child_file, "2016-07-27T12:00:00-05:00", "2016-07-27T12:00:00-05:00", "Legat called needing to meet US ambassador", "In London", EVENT_TYPE_FBI )
add_event( child_file, "2016-07-29T12:00:00-05:00", "2016-07-29T12:00:00-05:00", "FBI Receives Downer Info from Legat", "Probably legat London", EVENT_TYPE_FBI )
def main():
t = truxton.create()
create_event_type(t, EVENT_TYPE_FBI, "FBI Actions" )
media = add_media(t)
root_file = media.addroot()
root_file.save()
add_ec(root_file)
if __name__ == "__main__":
main()