Description
Check timestamp manipulation based on TSK body file. The result list all directories and files within the TSK body file, where the creation time comes after other timestamps. All timestamps uses UTC.
Installation
pip install stampchecker
Usage
From command line:
python -m stampchecker add --path PATH
| Option | Short | Type | Default | Description |
|---|---|---|---|---|
| --path | -p | String | - | Path to TSK body file |
Example
python -m stampchecker -p tsk-body.txt
################################################################################
Stamp Checker by 5f0
Check timestamp manipulation based on TSK body file
Current working directory: path/to/stampchecker
Investigated file: ./tsk-body.txt
Datetime: 01/01/1970 10:11:12
################################################################################
---> /dir/01.jpg
-------------------
Creation Time: 2012-12-27 14:23:14+00:00 - 1356618194
-------------------
Modification Time: 2012-05-20 18:33:16+00:00 - 1337538796
Changed Time: 2012-12-27 14:14:09+00:00 - 1356617649
-------------------
Execution Time: 0.000259 sec
License
MIT
Release files for stampchecker 1.0.0
For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.
Source distribution (sdist)
| File | Size | Uploaded | |
|---|---|---|---|
| stampchecker-1.0.0.tar.gz | 3.4 kB | Details |
Built distribution (wheel)
| File | Interpreter | ABI | Platform | Reset |
|---|---|---|---|---|
| stampchecker-1.0.0-py3-none-any.whl | Python 3 | none | any | Details |
Total release size: 7.7 kB
Release files / stampchecker-1.0.0.tar.gz
| Download URL | stampchecker-1.0.0.tar.gz |
|---|---|
| Size | 3.4 kB |
| Tags | Source |
|
SHA-256 checksum How to use checksums |
3ed46e838ca5d965f8e1b6c6610c35a6cdf2cedd8800e334b1e73994d5b1523b
|
|
BLAKE2b-256 checksum How to use checksums |
afe48ea0e28c2eae2456d21da0f0ae3b931e25048f1a63dc3614b9f62841b9af
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
No |
| Uploaded via |
twine/4.0.1 CPython/3.10.8
|
Release files / stampchecker-1.0.0-py3-none-any.whl
| Download URL | stampchecker-1.0.0-py3-none-any.whl |
|---|---|
| Size | 4.2 kB |
| Tags | Python 3 |
|
SHA-256 checksum How to use checksums |
e8d21a78a4ddbc8acf1b68d59b7cc95f93c268edb9bf94a473da0f2e11133381
|
|
BLAKE2b-256 checksum How to use checksums |
4f8f520ab2e28ccaa18142592a222c02def5b38d7dc51b5604a4a5b5c0264ec6
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
No |
| Uploaded via |
twine/4.0.1 CPython/3.10.8
|