Difference between revisions of "Truxton file get accessed"
Jump to navigation
Jump to search
(→Sample) |
|||
| Line 1: | Line 1: | ||
This retrieves the last accessed date of the file. | This retrieves the last accessed date of the file. | ||
| − | It corresponds to the <code>LastAccess</code> column of the <code>[[File Table | File]]</code> table. | + | It corresponds to the <code>[LastAccess]</code> column of the <code><nowiki>[</nowiki>[[File Table|File]]<nowiki>]</nowiki></code> table. |
=Syntax= | =Syntax= | ||
Revision as of 04:04, 9 November 2020
This retrieves the last accessed date of the file.
It corresponds to the [LastAccess] column of the [File] table.
Syntax
uint64_t truxton_file_get_accessed( uint64_t file_handle );
Parameters
file_handle
The handle created by the truxton_file_open_id or truxton_file_open_md5 call.
Return value
The last access date of the file in FILETIME ticks.
Sample
void print_id(uint64_t truxton)
{
uint64_t file = truxton_file_open_md5(truxton, "9ec8fb6095c35eff2b236863b7caaf10");
if ( file != 0 )
{
return;
}
uint64_t ticks = truxton_file_get_accessed( file );
if ( ticks == 0 )
{
printf( "Timestamp was not set\n" );
}
truxton_file_free(file);
}