Twitch live stream (clip). We take a look at Zeppelin Ransomware which is developed in Delphi. We go through the steps to correctly set up IDA Pro for analysis of a Delphi compiled binary including installing and using IDR (Interactive Delphi Reconstructor).
We don't start reverse engineering but our IDA configuration might be useful for other Delphi malware.
Zeppelin sample available on Malshare:
522d6e25e6b7062786b699c76d46c2a510d94ca0760447a1d0951a6718fc9774
IDR GitHub:
https://github.com/crypto2011/IDR
OALABS
2023-09-12 19:27:58 +0000 UTCHero Intros&Templates
2023-09-12 09:55:20 +0000 UTCm4n0w4r
2023-06-18 10:30:30 +0000 UTC