Live Stream VOD: (Clip) How To Setup IDA Pro For Delphi Analysis With Zeppelin Ransomware (Patreon)
Published:
2021-12-23 04:02:34
Imported:
2022-12
Flagged
Content
Twitch live stream (clip). We take a look at Zeppelin Ransomware which is developed in Delphi. We go through the steps to correctly set up IDA Pro for analysis of a Delphi compiled binary including installing and using IDR (Interactive Delphi Reconstructor).
We don't start reverse engineering but our IDA configuration might be useful for other Delphi malware.
Zeppelin sample available on Malshare:
522d6e25e6b7062786b699c76d46c2a510d94ca0760447a1d0951a6718fc9774
IDR GitHub: