Home Malware Programs Trojans Trojan.JS.Redirector.KY

Trojan.JS.Redirector.KY

Posted: September 23, 2011

Threat Metric

Threat Level: 9/10
Infected PCs: 1
First Seen: September 23, 2011
OS(es) Affected: Windows

Trojan.JS.Redirector.KY is a browser hijacker that monitors which websites you visit and redirects you to hostile websites if you attempt to use a popular search engine website. SpywareRemove.com malware experts have found that Trojan.JS.Redirector.KY usually is in the company of other Trojans, and if you see signs of a typical Trojan.JS.Redirector.KY attack, you should be prepared for the possibility of other and more serious infections on your PC, as well. Trojan.JS.Redirector.KY infections tend to begin with the installation of a fake Flash or other software update, which contains a Trojan that, in turn, installs Trojan.JS.Redirector.KY. To prevent you from ever needing to know how to remove Trojan.JS.Redirector.KY from your computer in the first place, it's strongly encouraged for you to install software updates only from highly-trustworthy and legitimate websites.

How Trojan.JS.Redirector.KY Sneaks into Your Hard Drive – with a Trojan Horse's Help

Although Trojan.JS.Redirector.KY can be installed directly by drive-by-download scripts that are used in malicious advertisements, websites and HTML-enabled e-mail messages, most Trojan.JS.Redirector.KY infections are a result of another infection. SpywareRemove.com malware experts have found that Trojan.Tracur.C is particularly likely to install Trojan.JS.Redirector.KY and often conceals itself as a Flash update.

Trojan.JS.Redirector.KY is also known as HTML:Script-inf and Trojan.JS.Redirector and may be detected by these names, although this doesn't change Trojan.JS.Redirector.KY's behavior. Trojan.JS.Redirector.KY is known for two types of attacks, only one of which may be especially easy for you to see:

  • Trojan.JS.Redirector.KY will monitor your online activities, especially which websites you visit. Because Trojan.JS.Redirector.KY does this by injecting harmful JavaScript code into the basic web browser memory process, you may not see signs of this attack when it's happening.
  • Trojan.JS.Redirector.KY can also use an extension of Trojan.JS.Redirector.KY's injection attack to redirect you away from the answers of well-know search engines, such as Google, Yahoo Search, Bing or Ask. Attempts to click on normal links from these sites will result in Trojan.JS.Redirector.KY launching a redirect attack. Websites associated with Trojan.JS.Redirector.KY can cause other infections by using drive-by-download scripts, even if you avoid interacting with them. For this reason, SpywareRemove.com malware experts advise you to treat any redirect attack as a new route of possible infection.

Putting the Nails in Trojan.JS.Redirector.KY's Coffin

Although Trojan.Tracur.C and Trojan.JS.Redirector.KY are happy to install themselves in the form of Browser Helper Objects (or BHOs), tampering with your web browser will not remove a Trojan.JS.Redirector.KY infection or Trojan.JS.Redirector.KY's companion Trojan. Trojan.JS.Redirector.KY is able to infect most popular browsers, including Internet Explorer and Firefox, and can be considered to be a security threat to most Windows systems.

Network setting changes, browser hijacks and other attacks that are made by Trojan.JS.Redirector.KY and Trojan.Tracur.C can be reverted once you delete Trojan.JS.Redirector.KY with an appropriate anti-malware application. SpywareRemove.com malware analysts advise you to make sure that your malware threat databases are up-to-date before you try to delete Trojan.JS.Redirector.KY, and always use Safe Mode for this purpose when the option is available.

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



file.html File name: file.html
Size: 11.3 KB (11308 bytes)
MD5: aa332bea6f63dd6d21012aa80aa6b8a0
Detection count: 82
Mime Type: unknown/html
Group: Malware file
Last Updated: October 4, 2011
file.html File name: file.html
Size: 25.35 KB (25355 bytes)
MD5: 6e770d32090ab23664e964ed6f81fb2e
Detection count: 81
Mime Type: unknown/html
Group: Malware file
Last Updated: October 4, 2011
file.html File name: file.html
Size: 9.95 KB (9951 bytes)
MD5: 748376466d7e6ecbd630f62fc668419a
Detection count: 80
Mime Type: unknown/html
Group: Malware file
Last Updated: October 4, 2011
file.html File name: file.html
Size: 10.66 KB (10660 bytes)
MD5: 51ed632f813d02b54fcdbee0f5f19122
Detection count: 79
Mime Type: unknown/html
Group: Malware file
Last Updated: October 4, 2011
file.html File name: file.html
Size: 25.84 KB (25845 bytes)
MD5: 19adc7204d9b72e3bfcac1464e6af195
Detection count: 78
Mime Type: unknown/html
Group: Malware file
Last Updated: October 4, 2011
Loading...