This is a memory resident, partially encrypted COM and EXE infector. When an infected file is run the virus tunnels the interrupt INT 21h vector and hooks it. At the same time it attacks COMMAND.COM. Then, while searching for files by means of DOS services the virus attacks files.

