TruxtonETL
Jump to navigation
Jump to search
This class provides capability to participate in Truxton's ETL pipeline. You can implement your own form of file exploitation. You can subscribe to events...
Contents
Properties
depot
This property is used in generating the depot filename.
description
This property
dtype
This property - set only
id
This property - set only
name
This property
poly
This property - set only
queue
This property
stage
This property - set only
==version
This property - set only
Methods
addarg
This method
addtype
This method
getmessage
This method
sendmehash
This method
sendmefileid
This method
sendmefiles
This method
sendmelocalfile
This method
Sample
import truxton
def main():
etl = truxton.etl()
etl.name = "My New ETL"
etl.description = "This ETL processes files in the Truxton system"
etl.queue = "anewetl"
etl.stage = 40
etl.id = 9999
message = etl.getmessage()
while message is not None:
file_in_truxton = message.file()
# YOUR FORENSIC CODE GOES HERE
line_of_text = file_in_truxton.readline()
if "[SetupAPI" in line_of_text:
child = file_in_truxton.newchild()
child.name = "Child file from New ETL"
child.write("This is the file you were looking for.")
child.save()
if __name__ == "__main__":
main()