pub struct Artifact { /* private fields */ }Expand description
Recovered non-script artifact view.
Implementations§
Source§impl Artifact
impl Artifact
Sourcepub const fn record_index(&self) -> usize
pub const fn record_index(&self) -> usize
Examples found in repository?
examples/dump.rs (line 270)
265fn print_artifacts(artifacts: &[Artifact]) {
266 section(&format!("artifacts ({})", artifacts.len()));
267 for artifact in artifacts {
268 println!(
269 " record #{} {}",
270 artifact.record_index(),
271 escape_inline(artifact.name())
272 );
273 subfield("subtype", escape_inline(artifact.subtype()));
274 subfield("bytes", artifact.bytes().len().to_string());
275 subfield(
276 "timestamps",
277 format!(
278 "created={} last_write={}",
279 artifact.creation_time(),
280 artifact.last_write_time()
281 ),
282 );
283 subfield("checksum valid", artifact.checksum_valid().to_string());
284 subfield(
285 "decompression",
286 format!("{:?}", artifact.decompression_status()),
287 );
288 }
289}Sourcepub fn subtype(&self) -> &str
pub fn subtype(&self) -> &str
Examples found in repository?
examples/dump.rs (line 273)
265fn print_artifacts(artifacts: &[Artifact]) {
266 section(&format!("artifacts ({})", artifacts.len()));
267 for artifact in artifacts {
268 println!(
269 " record #{} {}",
270 artifact.record_index(),
271 escape_inline(artifact.name())
272 );
273 subfield("subtype", escape_inline(artifact.subtype()));
274 subfield("bytes", artifact.bytes().len().to_string());
275 subfield(
276 "timestamps",
277 format!(
278 "created={} last_write={}",
279 artifact.creation_time(),
280 artifact.last_write_time()
281 ),
282 );
283 subfield("checksum valid", artifact.checksum_valid().to_string());
284 subfield(
285 "decompression",
286 format!("{:?}", artifact.decompression_status()),
287 );
288 }
289}Sourcepub fn name(&self) -> &str
pub fn name(&self) -> &str
Examples found in repository?
examples/dump.rs (line 271)
265fn print_artifacts(artifacts: &[Artifact]) {
266 section(&format!("artifacts ({})", artifacts.len()));
267 for artifact in artifacts {
268 println!(
269 " record #{} {}",
270 artifact.record_index(),
271 escape_inline(artifact.name())
272 );
273 subfield("subtype", escape_inline(artifact.subtype()));
274 subfield("bytes", artifact.bytes().len().to_string());
275 subfield(
276 "timestamps",
277 format!(
278 "created={} last_write={}",
279 artifact.creation_time(),
280 artifact.last_write_time()
281 ),
282 );
283 subfield("checksum valid", artifact.checksum_valid().to_string());
284 subfield(
285 "decompression",
286 format!("{:?}", artifact.decompression_status()),
287 );
288 }
289}Sourcepub fn bytes(&self) -> &[u8] ⓘ
pub fn bytes(&self) -> &[u8] ⓘ
Examples found in repository?
examples/dump.rs (line 274)
265fn print_artifacts(artifacts: &[Artifact]) {
266 section(&format!("artifacts ({})", artifacts.len()));
267 for artifact in artifacts {
268 println!(
269 " record #{} {}",
270 artifact.record_index(),
271 escape_inline(artifact.name())
272 );
273 subfield("subtype", escape_inline(artifact.subtype()));
274 subfield("bytes", artifact.bytes().len().to_string());
275 subfield(
276 "timestamps",
277 format!(
278 "created={} last_write={}",
279 artifact.creation_time(),
280 artifact.last_write_time()
281 ),
282 );
283 subfield("checksum valid", artifact.checksum_valid().to_string());
284 subfield(
285 "decompression",
286 format!("{:?}", artifact.decompression_status()),
287 );
288 }
289}Sourcepub const fn creation_time(&self) -> u64
pub const fn creation_time(&self) -> u64
Returns creation timestamp as raw Windows FILETIME.
§Returns
The raw 64-bit Windows FILETIME creation timestamp from the source record.
Examples found in repository?
examples/dump.rs (line 279)
265fn print_artifacts(artifacts: &[Artifact]) {
266 section(&format!("artifacts ({})", artifacts.len()));
267 for artifact in artifacts {
268 println!(
269 " record #{} {}",
270 artifact.record_index(),
271 escape_inline(artifact.name())
272 );
273 subfield("subtype", escape_inline(artifact.subtype()));
274 subfield("bytes", artifact.bytes().len().to_string());
275 subfield(
276 "timestamps",
277 format!(
278 "created={} last_write={}",
279 artifact.creation_time(),
280 artifact.last_write_time()
281 ),
282 );
283 subfield("checksum valid", artifact.checksum_valid().to_string());
284 subfield(
285 "decompression",
286 format!("{:?}", artifact.decompression_status()),
287 );
288 }
289}Sourcepub const fn last_write_time(&self) -> u64
pub const fn last_write_time(&self) -> u64
Returns last-write timestamp as raw Windows FILETIME.
§Returns
The raw 64-bit Windows FILETIME last-write timestamp from the source record.
Examples found in repository?
examples/dump.rs (line 280)
265fn print_artifacts(artifacts: &[Artifact]) {
266 section(&format!("artifacts ({})", artifacts.len()));
267 for artifact in artifacts {
268 println!(
269 " record #{} {}",
270 artifact.record_index(),
271 escape_inline(artifact.name())
272 );
273 subfield("subtype", escape_inline(artifact.subtype()));
274 subfield("bytes", artifact.bytes().len().to_string());
275 subfield(
276 "timestamps",
277 format!(
278 "created={} last_write={}",
279 artifact.creation_time(),
280 artifact.last_write_time()
281 ),
282 );
283 subfield("checksum valid", artifact.checksum_valid().to_string());
284 subfield(
285 "decompression",
286 format!("{:?}", artifact.decompression_status()),
287 );
288 }
289}Sourcepub const fn checksum_valid(&self) -> bool
pub const fn checksum_valid(&self) -> bool
Returns checksum validation status from the source record.
§Returns
true if the source record’s stored checksum validated, false otherwise.
Examples found in repository?
examples/dump.rs (line 283)
265fn print_artifacts(artifacts: &[Artifact]) {
266 section(&format!("artifacts ({})", artifacts.len()));
267 for artifact in artifacts {
268 println!(
269 " record #{} {}",
270 artifact.record_index(),
271 escape_inline(artifact.name())
272 );
273 subfield("subtype", escape_inline(artifact.subtype()));
274 subfield("bytes", artifact.bytes().len().to_string());
275 subfield(
276 "timestamps",
277 format!(
278 "created={} last_write={}",
279 artifact.creation_time(),
280 artifact.last_write_time()
281 ),
282 );
283 subfield("checksum valid", artifact.checksum_valid().to_string());
284 subfield(
285 "decompression",
286 format!("{:?}", artifact.decompression_status()),
287 );
288 }
289}Sourcepub const fn decompression_status(&self) -> DecompressionStatus
pub const fn decompression_status(&self) -> DecompressionStatus
Returns decompression status from the source record.
§Returns
The DecompressionStatus recorded for the source record.
Examples found in repository?
examples/dump.rs (line 286)
265fn print_artifacts(artifacts: &[Artifact]) {
266 section(&format!("artifacts ({})", artifacts.len()));
267 for artifact in artifacts {
268 println!(
269 " record #{} {}",
270 artifact.record_index(),
271 escape_inline(artifact.name())
272 );
273 subfield("subtype", escape_inline(artifact.subtype()));
274 subfield("bytes", artifact.bytes().len().to_string());
275 subfield(
276 "timestamps",
277 format!(
278 "created={} last_write={}",
279 artifact.creation_time(),
280 artifact.last_write_time()
281 ),
282 );
283 subfield("checksum valid", artifact.checksum_valid().to_string());
284 subfield(
285 "decompression",
286 format!("{:?}", artifact.decompression_status()),
287 );
288 }
289}Trait Implementations§
impl Eq for Artifact
impl StructuralPartialEq for Artifact
Auto Trait Implementations§
impl Freeze for Artifact
impl RefUnwindSafe for Artifact
impl Send for Artifact
impl Sync for Artifact
impl Unpin for Artifact
impl UnsafeUnpin for Artifact
impl UnwindSafe for Artifact
Blanket Implementations§
Source§impl<T> BorrowMut<T> for Twhere
T: ?Sized,
impl<T> BorrowMut<T> for Twhere
T: ?Sized,
Source§fn borrow_mut(&mut self) -> &mut T
fn borrow_mut(&mut self) -> &mut T
Mutably borrows from an owned value. Read more