GitHub-hosted malware campaign uses split payload to evade detection