Difference between revisions of "Load"

From truxwiki.com
Jump to navigation Jump to search
Line 17: Line 17:
  
 
=Loading Zip Files=
 
=Loading Zip Files=
Load considers [[Type_Zip|Zip]] files to be a media type.
+
Load considers [[Type_ZIP|Zip]] files to be a media type.
 
It will expand the zip and add the files found therein.
 
It will expand the zip and add the files found therein.
 
If you want the zip file loaded as if it appeared on media (so you get the zip file details), put the zip file in a folder by itself and load the folder.
 
If you want the zip file loaded as if it appeared on media (so you get the zip file details), put the zip file in a folder by itself and load the folder.

Revision as of 13:35, 27 January 2021

Details
Executable Load.exe
Stage 1
Percent Complete 48%
Message Queue loadq

Load's purpose in life is to find files, identify their type, eliminate their contents based on known-good MD5 hashes, put the meta-data about the file into a database, contents into a depot, then send messages to other ETL processes that have registered to receive that type of file.

Loading Zip Files

Load considers Zip files to be a media type. It will expand the zip and add the files found therein. If you want the zip file loaded as if it appeared on media (so you get the zip file details), put the zip file in a folder by itself and load the folder.

Usage

load.exe T:\Bob.E01

Capabilities

Load can ingest the files and folders. If the file is one of the following disk image formats, it will be opened, partitions and filesystems navigated, freespace gathered, files carved, etc.

  • Raw (dd)
  • E01 - Expert Witness Disk Image
  • L01 - Expert Witness Logical Files
  • ISO - CD/DVD disc image

The following file systems are supported

  • ext2 - Linux ext2/3/4
  • FAT - Microsoft FAT12/16/32/ex
  • HFS - HFS/HFS+
  • ISO 9660 - CD/DVD
  • NTFS - Microsoft NTFS
  • UFS - UFS1/UFS2
  • YAFFS - Yet Another Flash File System