How to Install and Uninstall sleuthkit Package on Ubuntu 21.10 (Impish Indri)

Last updated: April 29,2024

1. Install "sleuthkit" package

This guide covers the steps necessary to install sleuthkit on Ubuntu 21.10 (Impish Indri)

$ sudo apt update $ sudo apt install sleuthkit

2. Uninstall "sleuthkit" package

Please follow the guidelines below to uninstall sleuthkit on Ubuntu 21.10 (Impish Indri):

$ sudo apt remove sleuthkit $ sudo apt autoclean && sudo apt autoremove

3. Information about the sleuthkit package on Ubuntu 21.10 (Impish Indri)

Package: sleuthkit
Architecture: amd64
Version: 4.10.1+dfsg-1
Priority: optional
Section: universe/admin
Origin: Ubuntu
Maintainer: Ubuntu Developers
Original-Maintainer: Debian Security Tools
Bugs: https://bugs.launchpad.net/ubuntu/+filebug
Installed-Size: 1551
Depends: file, libdate-manip-perl, perl:any, libafflib0v5 (>= 3.7.6), libc6 (>= 2.14), libewf2 (>= 20130416), libgcc-s1 (>= 4.2), libstdc++6 (>= 5.2), libtsk19 (>= 4.10.1+dfsg), libvhdi1 (>= 20150110), libvmdk1 (>= 20150516)
Suggests: autopsy, mac-robber
Conflicts: tct
Filename: pool/universe/s/sleuthkit/sleuthkit_4.10.1+dfsg-1_amd64.deb
Size: 330376
MD5sum: 0ea5236dbe0df2a3e967a5ea410dfdb7
SHA1: 3432a5b5cab34a4f2e0328ace1c7dc9fd7994723
SHA256: b4d7f28fca6cb599fc4b832456eff2629530e79d93b538da7a6cea78314c5b57
SHA512: 5d495b1d6f0c42daff5143a665af68d690f07a45907523abd716e388aea063f6fcd9487aa272d3e1bb4d76e7c9af727d0e33ebb57fc96bc51c46cdb4437e34b9
Homepage: http://www.sleuthkit.org/sleuthkit
Description-en: tools for forensics analysis on volume and filesystem data
The Sleuth Kit, also known as TSK, is a collection of UNIX-based command
line file and volume system forensic analysis tools. The filesystem tools
allow you to examine filesystems of a suspect computer in a non-intrusive
fashion. Because the tools do not rely on the operating system to process the
filesystems, deleted and hidden content is shown.
.
The volume system (media management) tools allow you to examine the layout of
disks and other media. You can also recover deleted files, get information
stored in slack spaces, examine filesystems journal, see partitions layout on
disks or images etc. But is very important clarify that the TSK acts over the
current filesystem only.
.
The Sleuth Kit supports DOS partitions, BSD partitions (disk labels), Mac
partitions, Sun slices (Volume Table of Contents), and GPT disks. With these
tools, you can identify where partitions are located and extract them so that
they can be analyzed with filesystem analysis tools.
.
Currently, TSK supports several filesystems, as NTFS, FAT, exFAT, HFS+, Ext3,
Ext4, UFS and YAFFS2.
.
This package contains the set of command line tools in The Sleuth Kit.
Description-md5: aca4cf399f20d5cd832f48c7e7f247bd