Download Source Package sleuthkit:
The Sleuth Kit (previously known as TASK) is a collection of UNIX-based command line file and volume system forensic analysis tools. The file system tools allow you to examine file systems of a suspect computer in a non-intrusive fashion. Because the tools do not rely on the operating system to process the file systems, deleted and hidden content is shown.
The volume system (media management) tools allow you to examine the layout of disks and other media. The Sleuth Kit supports DOS partitions, BSD partitions (disk labels), Mac partitions, Sun slices (Volume Table of Contents), and GPT disks. With these tools, you can identify where partitions are located and extract them so that they can be analyzed with file system analysis tools.
This package contains the library which can be used to implement all of the functionality of the command line tools into an application that needs to analyze data from a disk image.
|
|
|
| Architecture | Version | Package Size | Installed Size | Files |
|---|---|---|---|---|
| alpha | 3.0.1-5 | 260.9 kB | 640 kB | [list of files] |
| amd64 | 3.0.1-5 | 213.1 kB | 528 kB | [list of files] |
| armel | 3.0.1-5 | 265.9 kB | 596 kB | [list of files] |
| avr32 (unofficial port) | 3.0.1-5 | 241.0 kB | 488 kB | [list of files] |
| hppa | 3.0.1-5 | 265.8 kB | 620 kB | [list of files] |
| hurd-i386 | 3.0.1-5 | 231.0 kB | 576 kB | [list of files] |
| i386 | 3.0.1-5 | 233.8 kB | 576 kB | [list of files] |
| ia64 | 3.0.1-5 | 308.9 kB | 912 kB | [list of files] |
| kfreebsd-amd64 | 3.0.1-5 | 213.2 kB | 514 kB | [list of files] |
| kfreebsd-i386 | 3.0.1-5 | 232.7 kB | 562 kB | [list of files] |
| m68k (unofficial port) | 3.0.1-2 | 229.1 kB | 576 kB | [list of files] |
| mips | 3.0.1-5 | 229.9 kB | 608 kB | [list of files] |
| mipsel | 3.0.1-5 | 229.3 kB | 608 kB | [list of files] |
| powerpc | 3.0.1-5 | 252.5 kB | 620 kB | [list of files] |
| s390 | 3.0.1-5 | 268.3 kB | 636 kB | [list of files] |
| sparc | 3.0.1-5 | 230.0 kB | 588 kB | [list of files] |