{
	"id": "b55b5a90-30f1-4926-af71-0b4cb8ad8b13",
	"created_at": "2026-04-06T00:17:48.979006Z",
	"updated_at": "2026-04-10T03:20:42.370659Z",
	"deleted_at": null,
	"sha1_hash": "278d28cb6cad321b7b68c45c5752e3a23fc1040c",
	"title": "GitHub - telekom-security/malware_analysis: This repository contains analysis scripts, YARA rules, and additional IoCs related to our Telekom Security blog posts.",
	"llm_title": "",
	"authors": "",
	"file_creation_date": "0001-01-01T00:00:00Z",
	"file_modification_date": "0001-01-01T00:00:00Z",
	"file_size": 48301,
	"plain_text": "GitHub - telekom-security/malware_analysis: This repository\r\ncontains analysis scripts, YARA rules, and additional IoCs related\r\nto our Telekom Security blog posts.\r\nBy lazydaemon\r\nArchived: 2026-04-05 19:41:39 UTC\r\nFolders and files\r\nName Name Last commit message\r\nLast\r\ncommit\r\ndate\r\nLatest commit\r\nMerge branch 'main' of\r\nhttps://github.com/telekom-security/malware_an…\r\nMar 4, 2026\r\n755efb6 · Mar 4, 2026\r\nHistory\r\n38 Commits\r\ncrylock crylock Adds more hashes and the link to the blog post\r\nJul 14,\r\n2021\r\ndarkgate darkgate Update extractor.py\r\nSep 26,\r\n2023\r\ndefray777 defray777 Formatting\r\nMar 18,\r\n2022\r\nhttps://github.com/telekom-security/icedid_analysis\r\nPage 1 of 3\n\nName Name Last commit message\r\nLast\r\ncommit\r\ndate\r\nflubot flubot Adds links for Flubot blog post\r\nSep 14,\r\n2021\r\nhacktools hacktools fix fp in debian\r\nDec 12,\r\n2023\r\nicedid icedid\r\nMerge branch 'patch-3' of\r\nhttps://github.com/Neo23x0/icedid_analysis …\r\nJul 8,\r\n2021\r\niocs iocs ivanti cve-2026-1281 iocs\r\nMar 4,\r\n2026\r\nplugx plugx Improved comments a bit.\r\nOct 29,\r\n2021\r\nraspberry_robin raspberry_robin raspberry robin tweet iocs\r\nSep 2,\r\n2022\r\nsystembc systembc Update systembc.yara\r\nMar 13,\r\n2022\r\n.gitignore .gitignore Initial commit\r\nMay 7,\r\n2021\r\nREADME.md README.md Update README.md\r\nSep 8,\r\n2022\r\nREADME\r\nhttps://github.com/telekom-security/icedid_analysis\r\nPage 2 of 3\n\nSource: https://github.com/telekom-security/icedid_analysis\r\nhttps://github.com/telekom-security/icedid_analysis\r\nPage 3 of 3",
	"extraction_quality": 1,
	"language": "EN",
	"sources": [
		"Malpedia"
	],
	"references": [
		"https://github.com/telekom-security/icedid_analysis"
	],
	"report_names": [
		"icedid_analysis"
	],
	"threat_actors": [],
	"ts_created_at": 1775434668,
	"ts_updated_at": 1775791242,
	"ts_creation_date": 0,
	"ts_modification_date": 0,
	"files": {
		"pdf": "https://archive.orkl.eu/278d28cb6cad321b7b68c45c5752e3a23fc1040c.pdf",
		"text": "https://archive.orkl.eu/278d28cb6cad321b7b68c45c5752e3a23fc1040c.txt",
		"img": "https://archive.orkl.eu/278d28cb6cad321b7b68c45c5752e3a23fc1040c.jpg"
	}
}