Difference between revisions of "Truxton child file get hash"
Jump to navigation
Jump to search
(Created page with "Retrieves the hash of the contents of this child file object. =Syntax= <syntaxhighlight lang="C"> void truxton_child_file_get_hash( uint64_t child_handle, char * destination_...") |
|||
| Line 1: | Line 1: | ||
Retrieves the hash of the contents of this child file object. | Retrieves the hash of the contents of this child file object. | ||
| + | This corresponds to the <code>HashID</code> column of the <code>[[File Table | File]]</code> table. | ||
=Syntax= | =Syntax= | ||
Revision as of 06:11, 10 June 2020
Retrieves the hash of the contents of this child file object.
This corresponds to the HashID column of the File table.
Syntax
void truxton_child_file_get_hash( uint64_t child_handle, char * destination_string, size_t max_size );
Parameters
child_handle
The handle created by the truxton_child_file_create or truxton_file_create_child call.
destination_string
The string to be written to.
max_size
The maximum number of characters that can be written to destination_string
Sample
void add_folder(uint64_t truxton, uint64_t parent_file)
{
truxton_start_adding_files(truxton);
uint64_t child = truxton_child_file_create(truxton);
char id[40];
truxton_file_get_id(parent_file, id, sizeof(id));
truxton_child_file_set_parent_id(child, id);
truxton_child_file_set_type(child, Type_Directory);
truxton_child_file_set_name(child, "Custom Exploits Folder");
FILETIME now;
GetSystemTimeAsFileTime(&now);
ULARGE_INTEGER ticks;
ticks.LowPart = now.dwLowDateTime;
ticks.HighPart = now.dwHighDateTime;
truxton_child_file_set_created(child, ticks.QuadPart);
truxton_child_file_set_accessed(child, ticks.QuadPart);
truxton_child_file_set_modified(child, ticks.QuadPart);
truxton_child_file_set_origin(child, ORIGIN_GENERATED);
if ( truxton_child_file_save(child) == 0 )
{
printf( "Failed to add child to Truxton\n" );
}
else
{
truxton_child_file_get_hash(child_file, id, sizeof(id));
printf( "Hash %s\n", id );
}
truxton_child_file_destroy(child);
}