Trojan

What is “Trojan:Script/Conteban.A!ml”?

Malware Removal

The Trojan:Script/Conteban.A!ml is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Script/Conteban.A!ml virus can do?

  • The office file contains 4 macros
  • The office file contains a macro with auto execution
  • The office file contains a macro with suspicious strings

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Trojan:Script/Conteban.A!ml?


File Info:

crc32: B7FB8AEF
md5: 29075275285fe585c14d35991ea8b624
name: upload_file
sha1: 50574b584b14ac12d303d28e8be62972a7695bbb
sha256: 97f30b0a42e8e24c9efc0967691e9219cf3fbcdd6906b48a8c2cc0fcb3580825
sha512: e3935ee74a01ac350fc7c8431a40fb44f61acd546d3c7b13e60641065f9b2277d43ec30a1acf001ac2bc710cb8c776d3816fd72da995eab118e059cffa67cd8d
ssdeep: 3072:3A5qQTwKkW9ICZOwzoAmBRmJf+MdYlNEOXBuY0LyO6p2d/BeNh:3A5MKkuIoOwkpBRcfqjEOXQNuOV/c
type: Microsoft Word 2007+

Version Info:

0: [No Data]

Trojan:Script/Conteban.A!ml also known as:

Elasticmalicious (high confidence)
CyrenPP97M/Agent.KC.gen!Eldorado
SymantecISB.Downloader!gen428
NANO-AntivirusTrojan.Ole2.Vbs-heuristic.druvzi
TrendMicroHEUR_VBA.O2
McAfee-GW-EditionBehavesLike.Downloader.cc
SentinelOneDFI – Malicious OPENXML
MicrosoftTrojan:Script/Conteban.A!ml
ArcabitHEUR.VBA.CG.1
ZonerProbably Heur.W97Obfuscated
IkarusTrojan-Downloader.VBA.Agent
Qihoo-360virus.office.obfuscated.1

How to remove Trojan:Script/Conteban.A!ml?

Trojan:Script/Conteban.A!ml removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment