Symvian Worm: .EXE to .SISX



I'm doing an anylisis of the malware SymbOS/Yxes.B. The original submitted filename was beauty_new(SymbOS.yxes.B).sisx but when I download the malware, compressed in a zip file I found a malware.exe

My question is ¿How can I obtain the original .SISX? or at least the .app to perfom a reverse engineering with IDAPro

Thanks in advance

rename malware.exe to

rename malware.exe to malware.sisx
then download SISXplorer and extract the files.

now its ready to be analyzed with IDA :D


you don't need to obtain sisx file to reverse by ida?
just open malware.exe by ida!