How to Install and Uninstall sleuthkit Package on Ubuntu 20.10 (Groovy Gorilla)

Last updated: April 29,2024

1. Install "sleuthkit" package

This guide let you learn how to install sleuthkit on Ubuntu 20.10 (Groovy Gorilla)

$ sudo apt update $ sudo apt install sleuthkit

2. Uninstall "sleuthkit" package

This guide let you learn how to uninstall sleuthkit on Ubuntu 20.10 (Groovy Gorilla):

$ sudo apt remove sleuthkit $ sudo apt autoclean && sudo apt autoremove

3. Information about the sleuthkit package on Ubuntu 20.10 (Groovy Gorilla)

Package: sleuthkit
Architecture: amd64
Version: 4.6.7-1build1
Priority: optional
Section: universe/admin
Origin: Ubuntu
Maintainer: Ubuntu Developers
Original-Maintainer: Debian Security Tools
Bugs: https://bugs.launchpad.net/ubuntu/+filebug
Installed-Size: 1263
Depends: file, libdate-manip-perl, perl:any, libafflib0v5 (>= 3.7.6), libc6 (>= 2.14), libewf2 (>= 20130416), libgcc-s1 (>= 4.2), libstdc++6 (>= 5.2), libtsk13 (>= 4.4.1)
Suggests: autopsy, mac-robber
Conflicts: tct
Filename: pool/universe/s/sleuthkit/sleuthkit_4.6.7-1build1_amd64.deb
Size: 252224
MD5sum: 58bd4e0d4568b89195d1266d543fbabb
SHA1: dbddaf3bb97ae028ce1748fa96be8bd04c8ae80d
SHA256: 402f14f86dca289cc61575913073a6dc8589fc8575a57be25f901c6614d4c91e
SHA512: 396db056a3f033f322b827df0bccccc2163431fd032c8c16bacc1698b347e546d830de9fa40c0a7b58d4b20a63f06f07f62ddf1a72ef0a53cf18b1b0bc715473
Homepage: http://www.sleuthkit.org/sleuthkit
Description-en: tools for forensics analysis on volume and filesystem data
The Sleuth Kit, also known as TSK, is a collection of UNIX-based command
line file and volume system forensic analysis tools. The filesystem tools
allow you to examine filesystems of a suspect computer in a non-intrusive
fashion. Because the tools do not rely on the operating system to process the
filesystems, deleted and hidden content is shown.
.
The volume system (media management) tools allow you to examine the layout of
disks and other media. You can also recover deleted files, get information
stored in slack spaces, examine filesystems journal, see partitions layout on
disks or images etc. But is very important clarify that the TSK acts over the
current filesystem only.
.
The Sleuth Kit supports DOS partitions, BSD partitions (disk labels), Mac
partitions, Sun slices (Volume Table of Contents), and GPT disks. With these
tools, you can identify where partitions are located and extract them so that
they can be analyzed with filesystem analysis tools.
.
Currently, TSK supports several filesystems, as NTFS, FAT, exFAT, HFS+, Ext3,
Ext4, UFS and YAFFS2.
.
This package contains the set of command line tools in The Sleuth Kit.
Description-md5: aca4cf399f20d5cd832f48c7e7f247bd