This virus is created by an .EXE file, which will ask the user for the name of a text file which will be included in the created virus code. It will also ask after how many generations this text is to be displayed. At that time the virus will also delete AUTOEXEC.BAT and CONFIG.SYS.
The virus attempts to avoid detection by not becoming active if it detects Flushot+ in memory.
Once detected, the F-Secure security product will automatically disinfect the suspect file by either deleting it or renaming it.
Detailed instructions for F-Secure security products are available in the documentation found in the Downloads section of our Home - Global site.
You may also refer to the Knowledge Base on the F-Secure Community site for further assistance.
Minor, non-interesting variants.
This variant contains a Christmas greeting in German.