This virus is created by an .EXE file, which will ask the user for the name of a text file which will be included in the created virus code. It will also ask after how many generations this text is to be displayed. At that time the virus will also delete AUTOEXEC.BAT and CONFIG.SYS.
The virus attempts to avoid detection by not becoming active if it detects Flushot+ in memory.
Once detected, the F-Secure security product will automatically disinfect the suspect file by either deleting it or renaming it.
More information on scanning and removal options available in your F-Secure product can be found in the Help Center.
You may also refer to the Knowledge Base on the F-Secure Community site for more information.
Minor, non-interesting variants.
This variant contains a Christmas greeting in German.