malware-dataset/linux/d7df995dd45d5498770389d9e85064cdaa12f623ae9a22b6c61966c70eee5161/analysis/sample.svg

108 lines
9.8 KiB
XML
Executable file

<?xml version="1.0" encoding="UTF-8" standalone="no"?>
<!DOCTYPE svg PUBLIC "-//W3C//DTD SVG 1.1//EN"
"http://www.w3.org/Graphics/SVG/1.1/DTD/svg11.dtd">
<!-- Generated by graphviz version 2.43.0 (0)
-->
<!-- Title: %3 Pages: 1 -->
<svg width="603pt" height="329pt"
viewBox="0.00 0.00 602.50 329.00" xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink">
<g id="graph0" class="graph" transform="scale(1 1) rotate(0) translate(4 325)">
<title>%3</title>
<polygon fill="white" stroke="transparent" points="-4,4 -4,-325 598.5,-325 598.5,4 -4,4"/>
<!-- guuid=bd280644&#45;0b00&#45;0000&#45;e216&#45;e78358040000 pid=1112 -->
<g id="node1" class="node">
<title>guuid=bd280644&#45;0b00&#45;0000&#45;e216&#45;e78358040000 pid=1112</title>
<path fill="white" stroke="black" d="M241,-284.5C241,-284.5 311,-284.5 311,-284.5 317,-284.5 323,-290.5 323,-296.5 323,-296.5 323,-308.5 323,-308.5 323,-314.5 317,-320.5 311,-320.5 311,-320.5 241,-320.5 241,-320.5 235,-320.5 229,-314.5 229,-308.5 229,-308.5 229,-296.5 229,-296.5 229,-290.5 235,-284.5 241,-284.5"/>
<text text-anchor="middle" x="276" y="-298.8" font-family="Arial" font-size="14.00">/usr/bin/sudo</text>
</g>
<!-- guuid=b541e645&#45;0b00&#45;0000&#45;e216&#45;e78359040000 pid=1113 -->
<g id="node2" class="node">
<title>guuid=b541e645&#45;0b00&#45;0000&#45;e216&#45;e78359040000 pid=1113</title>
<path fill="#ffbfbf" stroke="black" d="M231.5,-186.5C231.5,-186.5 320.5,-186.5 320.5,-186.5 326.5,-186.5 332.5,-192.5 332.5,-198.5 332.5,-198.5 332.5,-220.5 332.5,-220.5 332.5,-226.5 326.5,-232.5 320.5,-232.5 320.5,-232.5 231.5,-232.5 231.5,-232.5 225.5,-232.5 219.5,-226.5 219.5,-220.5 219.5,-220.5 219.5,-198.5 219.5,-198.5 219.5,-192.5 225.5,-186.5 231.5,-186.5"/>
<text text-anchor="middle" x="276" y="-217.3" font-family="Arial" font-size="14.00">/tmp/sample.bin</text>
<polyline fill="none" stroke="black" points="219.5,-209.5 332.5,-209.5 "/>
<text text-anchor="middle" x="276" y="-194.3" font-family="Arial" font-size="14.00">net</text>
</g>
<!-- guuid=bd280644&#45;0b00&#45;0000&#45;e216&#45;e78358040000 pid=1112&#45;&gt;guuid=b541e645&#45;0b00&#45;0000&#45;e216&#45;e78359040000 pid=1113 -->
<g id="edge1" class="edge">
<title>guuid=bd280644&#45;0b00&#45;0000&#45;e216&#45;e78358040000 pid=1112&#45;&gt;guuid=b541e645&#45;0b00&#45;0000&#45;e216&#45;e78359040000 pid=1113</title>
<path fill="none" stroke="black" d="M276,-284.38C276,-272.73 276,-256.95 276,-242.96"/>
<polygon fill="black" stroke="black" points="279.5,-242.71 276,-232.71 272.5,-242.71 279.5,-242.71"/>
<text text-anchor="middle" x="297.5" y="-254.8" font-family="Arial" font-size="14.00">execve</text>
</g>
<!-- 4c2c6f21&#45;1ae9&#45;583d&#45;aa53&#45;0dce680082ed -->
<g id="node3" class="node">
<title>4c2c6f21&#45;1ae9&#45;583d&#45;aa53&#45;0dce680082ed</title>
<path fill="grey" stroke="black" d="M12,-0.5C12,-0.5 116,-0.5 116,-0.5 122,-0.5 128,-6.5 128,-12.5 128,-12.5 128,-24.5 128,-24.5 128,-30.5 122,-36.5 116,-36.5 116,-36.5 12,-36.5 12,-36.5 6,-36.5 0,-30.5 0,-24.5 0,-24.5 0,-12.5 0,-12.5 0,-6.5 6,-0.5 12,-0.5"/>
<text text-anchor="middle" x="64" y="-14.8" font-family="Arial" font-size="14.00" fill="white">2a12:5940:7116::2</text>
</g>
<!-- guuid=b541e645&#45;0b00&#45;0000&#45;e216&#45;e78359040000 pid=1113&#45;&gt;4c2c6f21&#45;1ae9&#45;583d&#45;aa53&#45;0dce680082ed -->
<g id="edge2" class="edge">
<title>guuid=b541e645&#45;0b00&#45;0000&#45;e216&#45;e78359040000 pid=1113&#45;&gt;4c2c6f21&#45;1ae9&#45;583d&#45;aa53&#45;0dce680082ed</title>
<path fill="none" stroke="green" stroke-dasharray="5,2" d="M219.08,-206.91C167.33,-202.08 93.65,-185.95 57,-135 38.55,-109.34 45.42,-71.6 53.46,-46.32"/>
<polygon fill="green" stroke="green" points="56.84,-47.23 56.78,-36.64 50.22,-44.96 56.84,-47.23"/>
<text text-anchor="middle" x="68" y="-107.8" font-family="Arial" font-size="14.00" fill="green">con</text>
</g>
<!-- guuid=b541e645&#45;0b00&#45;0000&#45;e216&#45;e78359040000 pid=1114 -->
<g id="node4" class="node">
<title>guuid=b541e645&#45;0b00&#45;0000&#45;e216&#45;e78359040000 pid=1114</title>
<path fill="white" stroke="black" d="M100.5,-93.5C100.5,-93.5 189.5,-93.5 189.5,-93.5 195.5,-93.5 201.5,-99.5 201.5,-105.5 201.5,-105.5 201.5,-117.5 201.5,-117.5 201.5,-123.5 195.5,-129.5 189.5,-129.5 189.5,-129.5 100.5,-129.5 100.5,-129.5 94.5,-129.5 88.5,-123.5 88.5,-117.5 88.5,-117.5 88.5,-105.5 88.5,-105.5 88.5,-99.5 94.5,-93.5 100.5,-93.5"/>
<text text-anchor="middle" x="145" y="-107.8" font-family="Arial" font-size="14.00">/tmp/sample.bin</text>
</g>
<!-- guuid=b541e645&#45;0b00&#45;0000&#45;e216&#45;e78359040000 pid=1113&#45;&gt;guuid=b541e645&#45;0b00&#45;0000&#45;e216&#45;e78359040000 pid=1114 -->
<g id="edge3" class="edge">
<title>guuid=b541e645&#45;0b00&#45;0000&#45;e216&#45;e78359040000 pid=1113&#45;&gt;guuid=b541e645&#45;0b00&#45;0000&#45;e216&#45;e78359040000 pid=1114</title>
<path fill="none" stroke="black" stroke-dasharray="1,5" d="M245.95,-186.48C225.23,-171.3 197.75,-151.16 176.69,-135.72"/>
<polygon fill="black" stroke="black" points="178.52,-132.73 168.39,-129.64 174.38,-138.37 178.52,-132.73"/>
<text text-anchor="middle" x="235.5" y="-156.8" font-family="Arial" font-size="14.00">clone</text>
</g>
<!-- guuid=b541e645&#45;0b00&#45;0000&#45;e216&#45;e78359040000 pid=1115 -->
<g id="node5" class="node">
<title>guuid=b541e645&#45;0b00&#45;0000&#45;e216&#45;e78359040000 pid=1115</title>
<path fill="white" stroke="black" d="M231.5,-93.5C231.5,-93.5 320.5,-93.5 320.5,-93.5 326.5,-93.5 332.5,-99.5 332.5,-105.5 332.5,-105.5 332.5,-117.5 332.5,-117.5 332.5,-123.5 326.5,-129.5 320.5,-129.5 320.5,-129.5 231.5,-129.5 231.5,-129.5 225.5,-129.5 219.5,-123.5 219.5,-117.5 219.5,-117.5 219.5,-105.5 219.5,-105.5 219.5,-99.5 225.5,-93.5 231.5,-93.5"/>
<text text-anchor="middle" x="276" y="-107.8" font-family="Arial" font-size="14.00">/tmp/sample.bin</text>
</g>
<!-- guuid=b541e645&#45;0b00&#45;0000&#45;e216&#45;e78359040000 pid=1113&#45;&gt;guuid=b541e645&#45;0b00&#45;0000&#45;e216&#45;e78359040000 pid=1115 -->
<g id="edge4" class="edge">
<title>guuid=b541e645&#45;0b00&#45;0000&#45;e216&#45;e78359040000 pid=1113&#45;&gt;guuid=b541e645&#45;0b00&#45;0000&#45;e216&#45;e78359040000 pid=1115</title>
<path fill="none" stroke="black" stroke-dasharray="1,5" d="M276,-186.23C276,-172.33 276,-154.33 276,-139.6"/>
<polygon fill="black" stroke="black" points="279.5,-139.55 276,-129.55 272.5,-139.55 279.5,-139.55"/>
<text text-anchor="middle" x="292.5" y="-156.8" font-family="Arial" font-size="14.00">clone</text>
</g>
<!-- guuid=b541e645&#45;0b00&#45;0000&#45;e216&#45;e78359040000 pid=1116 -->
<g id="node6" class="node">
<title>guuid=b541e645&#45;0b00&#45;0000&#45;e216&#45;e78359040000 pid=1116</title>
<path fill="white" stroke="black" d="M362.5,-93.5C362.5,-93.5 451.5,-93.5 451.5,-93.5 457.5,-93.5 463.5,-99.5 463.5,-105.5 463.5,-105.5 463.5,-117.5 463.5,-117.5 463.5,-123.5 457.5,-129.5 451.5,-129.5 451.5,-129.5 362.5,-129.5 362.5,-129.5 356.5,-129.5 350.5,-123.5 350.5,-117.5 350.5,-117.5 350.5,-105.5 350.5,-105.5 350.5,-99.5 356.5,-93.5 362.5,-93.5"/>
<text text-anchor="middle" x="407" y="-107.8" font-family="Arial" font-size="14.00">/tmp/sample.bin</text>
</g>
<!-- guuid=b541e645&#45;0b00&#45;0000&#45;e216&#45;e78359040000 pid=1113&#45;&gt;guuid=b541e645&#45;0b00&#45;0000&#45;e216&#45;e78359040000 pid=1116 -->
<g id="edge5" class="edge">
<title>guuid=b541e645&#45;0b00&#45;0000&#45;e216&#45;e78359040000 pid=1113&#45;&gt;guuid=b541e645&#45;0b00&#45;0000&#45;e216&#45;e78359040000 pid=1116</title>
<path fill="none" stroke="black" stroke-dasharray="1,5" d="M306.05,-186.48C326.77,-171.3 354.25,-151.16 375.31,-135.72"/>
<polygon fill="black" stroke="black" points="377.62,-138.37 383.61,-129.64 373.48,-132.73 377.62,-138.37"/>
<text text-anchor="middle" x="366.5" y="-156.8" font-family="Arial" font-size="14.00">clone</text>
</g>
<!-- guuid=b541e645&#45;0b00&#45;0000&#45;e216&#45;e78359040000 pid=1117 -->
<g id="node7" class="node">
<title>guuid=b541e645&#45;0b00&#45;0000&#45;e216&#45;e78359040000 pid=1117</title>
<path fill="#ffbfbf" stroke="black" d="M493.5,-88.5C493.5,-88.5 582.5,-88.5 582.5,-88.5 588.5,-88.5 594.5,-94.5 594.5,-100.5 594.5,-100.5 594.5,-122.5 594.5,-122.5 594.5,-128.5 588.5,-134.5 582.5,-134.5 582.5,-134.5 493.5,-134.5 493.5,-134.5 487.5,-134.5 481.5,-128.5 481.5,-122.5 481.5,-122.5 481.5,-100.5 481.5,-100.5 481.5,-94.5 487.5,-88.5 493.5,-88.5"/>
<text text-anchor="middle" x="538" y="-119.3" font-family="Arial" font-size="14.00">/tmp/sample.bin</text>
<polyline fill="none" stroke="black" points="481.5,-111.5 594.5,-111.5 "/>
<text text-anchor="middle" x="538" y="-96.3" font-family="Arial" font-size="14.00">net</text>
</g>
<!-- guuid=b541e645&#45;0b00&#45;0000&#45;e216&#45;e78359040000 pid=1113&#45;&gt;guuid=b541e645&#45;0b00&#45;0000&#45;e216&#45;e78359040000 pid=1117 -->
<g id="edge6" class="edge">
<title>guuid=b541e645&#45;0b00&#45;0000&#45;e216&#45;e78359040000 pid=1113&#45;&gt;guuid=b541e645&#45;0b00&#45;0000&#45;e216&#45;e78359040000 pid=1117</title>
<path fill="none" stroke="black" stroke-dasharray="1,5" d="M332.76,-187.82C350.17,-181.47 369.37,-174.45 387,-168 414.8,-157.82 445.46,-146.56 471.85,-136.85"/>
<polygon fill="black" stroke="black" points="473.19,-140.09 481.36,-133.35 470.77,-133.52 473.19,-140.09"/>
<text text-anchor="middle" x="440.5" y="-156.8" font-family="Arial" font-size="14.00">clone</text>
</g>
<!-- guuid=b541e645&#45;0b00&#45;0000&#45;e216&#45;e78359040000 pid=1117&#45;&gt;4c2c6f21&#45;1ae9&#45;583d&#45;aa53&#45;0dce680082ed -->
<g id="edge7" class="edge">
<title>guuid=b541e645&#45;0b00&#45;0000&#45;e216&#45;e78359040000 pid=1117&#45;&gt;4c2c6f21&#45;1ae9&#45;583d&#45;aa53&#45;0dce680082ed</title>
<path fill="none" stroke="green" stroke-dasharray="5,2" d="M481.45,-90.3C478.6,-89.48 475.78,-88.71 473,-88 357.64,-58.59 220.67,-38.6 138.13,-28.12"/>
<polygon fill="green" stroke="green" points="138.45,-24.64 128.1,-26.86 137.58,-31.58 138.45,-24.64"/>
<text text-anchor="middle" x="395" y="-58.8" font-family="Arial" font-size="14.00" fill="green">con</text>
</g>
</g>
</svg>