Difference between revisions of "TruxtonEXIF"

From truxwiki.com
Jump to navigation Jump to search
Line 4: Line 4:
  
 
==<code>altitude</code>==
 
==<code>altitude</code>==
==<code>altitude</code>==
+
The altitude in meters.
 +
 
 
==<code>altitudeoffset</code>==
 
==<code>altitudeoffset</code>==
 +
The offset into the file where the altitude was found.
 +
 
==<code>bodyserialnumber</code>==
 
==<code>bodyserialnumber</code>==
 +
The serial number of the body of the imaging device.
 +
 
==<code>bodyserialnumberoffset</code>==
 
==<code>bodyserialnumberoffset</code>==
 +
The offset into the file where the body serial number was found
 +
 
==<code>devicetime</code>==
 
==<code>devicetime</code>==
 +
The timestamp of the image taken from the clock of the imaging device.
 +
 
==<code>devicetimeoffset</code>==
 
==<code>devicetimeoffset</code>==
 +
The offset into the file where the device time was found.
 +
 
==<code>fileid</code>==
 
==<code>fileid</code>==
The [https://en.wikipedia.org/wiki/Universally_unique_identifier GUID] of the file this artifact came from.
+
The [https://en.wikipedia.org/wiki/Universally_unique_identifier GUID] of the file this camera information came from.
This corresponds to the <code>FileID</code> column of the [[Entity Table | <code>Entity</code>]] table.
+
This corresponds to the <code>FileID</code> column of the [[EXIF Table | <code>EXIF</code>]] table.
  
 
==<code>focallength</code>==
 
==<code>focallength</code>==
 +
The focal length of the lens in [https://en.wikipedia.org/wiki/35_mm_equivalent_focal_length 35mm equivalent.]
 +
 
==<code>focallengthoffset</code>==
 
==<code>focallengthoffset</code>==
 +
The offset in the file where focal length was found.
 +
 
==<code>gpstime</code>==
 
==<code>gpstime</code>==
 +
The timestamp from a [https://en.wikipedia.org/wiki/Global_Positioning_System GPS] unit in the imaging device.
 +
 
==<code>gpstimeoffset</code>==
 
==<code>gpstimeoffset</code>==
 +
The offset in the file where the [https://en.wikipedia.org/wiki/Global_Positioning_System GPS] time was found.
 +
 
==<code>heading</code>==
 
==<code>heading</code>==
 +
The compass heading of the image.
 +
The direction the camera was pointing when the image was taken.
 +
 
==<code>headingoffset</code>==
 
==<code>headingoffset</code>==
 +
The offset into the file where the heading was found.
 +
 
==<code>id</code>==
 
==<code>id</code>==
 
This is the [https://en.wikipedia.org/wiki/Universally_unique_identifier GUID] of the record.
 
This is the [https://en.wikipedia.org/wiki/Universally_unique_identifier GUID] of the record.
 
It becomes non-zero after <code>save()</code> has been called.
 
It becomes non-zero after <code>save()</code> has been called.
This corresponds to the <code>ID</code> column of the [[Entity Table | <code>Entity</code>]] table.
+
This corresponds to the <code>ID</code> column of the [[EXIF Table | <code>EXIF</code>]] table.
 +
 
 
==<code>latitude</code>==
 
==<code>latitude</code>==
 +
The [https://en.wikipedia.org/wiki/Latitude latitude] portion of the geographic coordinate using the [https://en.wikipedia.org/wiki/World_Geodetic_System#WGS84 WGS84] ellipsoid.
 +
 
==<code>latitudeoffset</code>==
 
==<code>latitudeoffset</code>==
 +
The offset into the file where the latitude was found.
 +
 
==<code>lensserialnumber</code>==
 
==<code>lensserialnumber</code>==
 +
The serial number of the lens.
 +
 
==<code>lensserialnumberoffset</code>==
 
==<code>lensserialnumberoffset</code>==
 +
The offset into the file where the lens serial number was found.
 +
 
==<code>longitude</code>==
 
==<code>longitude</code>==
 +
The [https://en.wikipedia.org/wiki/Longitude longitude] portion of the geographic coordinate using the [https://en.wikipedia.org/wiki/World_Geodetic_System#WGS84 WGS84] ellipsoid.
 +
Many thanks go to [https://en.wikipedia.org/wiki/John_Harrison John Harrison] for his work.
 +
 
==<code>longitudeoffset</code>==
 
==<code>longitudeoffset</code>==
 +
The offset into the file where longitude was found.
 +
 
==<code>make</code>==
 
==<code>make</code>==
 +
The manufacturer of the imaging device.
 +
 
==<code>makeoffset</code>==
 
==<code>makeoffset</code>==
 +
The offset into the file where the make was found.
 +
 
==<code>mediaid</code>==
 
==<code>mediaid</code>==
 
This is the [https://en.wikipedia.org/wiki/Universally_unique_identifier GUID] of the media this artifact came from.
 
This is the [https://en.wikipedia.org/wiki/Universally_unique_identifier GUID] of the media this artifact came from.

Revision as of 14:32, 28 May 2020

This class lets you add to the EXIF table in Truxton.

Attributes and Methods

altitude

The altitude in meters.

altitudeoffset

The offset into the file where the altitude was found.

bodyserialnumber

The serial number of the body of the imaging device.

bodyserialnumberoffset

The offset into the file where the body serial number was found

devicetime

The timestamp of the image taken from the clock of the imaging device.

devicetimeoffset

The offset into the file where the device time was found.

fileid

The GUID of the file this camera information came from. This corresponds to the FileID column of the EXIF table.

focallength

The focal length of the lens in 35mm equivalent.

focallengthoffset

The offset in the file where focal length was found.

gpstime

The timestamp from a GPS unit in the imaging device.

gpstimeoffset

The offset in the file where the GPS time was found.

heading

The compass heading of the image. The direction the camera was pointing when the image was taken.

headingoffset

The offset into the file where the heading was found.

id

This is the GUID of the record. It becomes non-zero after save() has been called. This corresponds to the ID column of the EXIF table.

latitude

The latitude portion of the geographic coordinate using the WGS84 ellipsoid.

latitudeoffset

The offset into the file where the latitude was found.

lensserialnumber

The serial number of the lens.

lensserialnumberoffset

The offset into the file where the lens serial number was found.

longitude

The longitude portion of the geographic coordinate using the WGS84 ellipsoid. Many thanks go to John Harrison for his work.

longitudeoffset

The offset into the file where longitude was found.

make

The manufacturer of the imaging device.

makeoffset

The offset into the file where the make was found.

mediaid

This is the GUID of the media this artifact came from. This corresponds to the MediaID column of the Entity table.

model

modeloffset

save()

This will commit the information to the Entity table. It will return True if the record was saved to the database, False if there was an error.

shuttercount

shuttercountoffset

tag(tag, reason, origin)

This creates a tag associated with this camera information in Truxton. The tag parameter is a short, one or two word, bit of text that will be displayed in the UI. The reason a sentence explaining why this camera information was tagged. The origin is either TAG_ORIGIN_AUTOMATIC (1) or TAG_ORIGIN_HUMAN (2). It will return True if the tag was associated with the camera information, False on failure.

thumbnaillength

thumbnaillengthoffset

thumbnailoffset

thumbnailoffsetoffset

Sample

import truxton
import shutil

from datetime import datetime
from calendar import timegm
from pathlib import Path

EPOCH_AS_FILETIME = 116444736000000000
HUNDREDS_OF_NANOSECONDS = 10000000

EVENT_TYPE_FBI = 20001

def date_to_filetime(dt):
  return EPOCH_AS_FILETIME + (timegm(dt.timetuple()) * HUNDREDS_OF_NANOSECONDS)

def create_event_type(t, id, name):
  event_type = t.neweventtype()
  event_type.id = id
  event_type.name = name
  event_type.save()

def add_file(parent_truxton_file, filename):
  source_file = open(filename, "rb")
  child = parent_truxton_file.newchild()
  child.name = Path(filename).name
  shutil.copyfileobj(source_file, child)
  source_file.close()
  child.save()
  return child

def add_event(parent_file, start, end, title, description, type):
  event = parent_file.newevent()
  event.start = date_to_filetime(datetime.fromisoformat(start))
  event.end = date_to_filetime(datetime.fromisoformat(end))
  event.title = title
  event.description = description
  event.type = type
  event.save()
  return event

def add_media(t):
  media = t.newmedia()

  media.name = "Public Documents"
  media.description = "Publicly available documents"
  media.case = "DC-SNAFU-2016.2020"
  media.evidencebag = "EV-0937459386623-a"
  media.originator = "Jeffrey Jensen"
  media.latitude = 38.897661
  media.longitude = -77.036458
  media.type = truxton.MEDIA_TYPE_LOGICAL_FILES

  if media.save():
    print("Media saved")
  else:
    print("Media not saved")

  return media

def add_ec(parent_file ):
  child_file = add_file(parent_file, "JW-v-DOJ-reply-02743.pdf")

  url = child_file.newurl()
  url.url = "https://www.judicialwatch.org/documents/jw-v-doj-reply-02743/"
  url.localfilename = "JW-v-DOJ-reply-02743.pdf"
  url.type = truxton.URL_TYPE_FIREFOX
  url.method = truxton.URL_METHOD_TYPE_CLICKED_ON_A_LINK
  url.format = truxton.URL_FORMAT_ASCII
  url.when = date_to_filetime(datetime.fromisoformat("2020-05-20T00:00:00-05:00"))
  url.save()

  add_event( child_file, "2016-07-31T12:00:00-05:00", "2016-07-31T12:00:00-05:00", "Crossfire Hurricane Created", "At FBI HQ", EVENT_TYPE_FBI )
  add_event( child_file, "2016-07-27T12:00:00-05:00", "2016-07-27T12:00:00-05:00", "Legat called needing to meet US ambassador", "In London", EVENT_TYPE_FBI )
  add_event( child_file, "2016-07-29T12:00:00-05:00", "2016-07-29T12:00:00-05:00", "FBI Receives Downer Info from Legat", "Probably legat London", EVENT_TYPE_FBI )

def main():
  t = truxton.create()

  create_event_type(t, EVENT_TYPE_FBI, "FBI Actions" )

  media = add_media(t)

  root_file = media.addroot()
  root_file.save()

  add_ec(root_file)

if __name__ == "__main__":
  main()