Difference between revisions of "Truxton file get created"
Jump to navigation
Jump to search
| Line 16: | Line 16: | ||
=Sample= | =Sample= | ||
<source lang="C" highlight="10"> | <source lang="C" highlight="10"> | ||
| − | void print_id(uint64_t truxton) | + | void print_id( uint64_t truxton ) |
{ | { | ||
| − | uint64_t file = truxton_file_open_md5(truxton, "9ec8fb6095c35eff2b236863b7caaf10"); | + | uint64_t file = truxton_file_open_md5( truxton, "9ec8fb6095c35eff2b236863b7caaf10" ); |
if ( file != 0 ) | if ( file != 0 ) | ||
| Line 32: | Line 32: | ||
} | } | ||
| − | truxton_file_free(file); | + | truxton_file_free( file ); |
} | } | ||
</source> | </source> | ||
Latest revision as of 04:34, 13 February 2021
This retrieves the create date of the file.
It corresponds to the [Created] column of the [File] table.
Syntax
uint64_t truxton_file_get_created( uint64_t file_handle );
Parameters
file_handle
The handle created by the truxton_file_open_id or truxton_file_open_md5 call.
Return value
The creation date of the file in FILETIME ticks.
Sample
void print_id( uint64_t truxton )
{
uint64_t file = truxton_file_open_md5( truxton, "9ec8fb6095c35eff2b236863b7caaf10" );
if ( file != 0 )
{
return;
}
uint64_t ticks = truxton_file_get_created( file );
if ( ticks == 0 )
{
printf( "Timestamp was not set\n" );
}
truxton_file_free( file );
}