Malware

How to remove “AdWare.Win32.AddLyrics.agwj”?

Malware Removal

The AdWare.Win32.AddLyrics.agwj is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What AdWare.Win32.AddLyrics.agwj virus can do?

  • Sample contains Overlay data
  • Reads data out of its own binary image
  • Drops a binary and executes it
  • Authenticode signature is invalid
  • Attempts to modify proxy settings
  • Creates a copy of itself
  • Deletes executed files from disk

How to determine AdWare.Win32.AddLyrics.agwj?


File Info:

name: 117B8098DE1E34243F3C.mlw
path: /opt/CAPEv2/storage/binaries/57fd865b5143cee8f73e165b611abc487080eb684f7cc2dbf3d0da3615cc5346
crc32: 353F2124
md5: 117b8098de1e34243f3c755ea7fdef2a
sha1: d161ed38fd29639475787aa69d79835c201d52a0
sha256: 57fd865b5143cee8f73e165b611abc487080eb684f7cc2dbf3d0da3615cc5346
sha512: 17c4ad2be3ca3b8794d59eefa44528ec4941393dbddd27bf4eedc03bde0639831548c4fe5fa8d51e5014fb28300477d5cc9aed93923c679014e44e6f52e38809
ssdeep: 3072:rQIURTXJ3CcUVzLa2sM2BVw7awYM8DbSjwu:rstUVPa2mUawB8DbSUu
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T188E3F2907BD248A7E992003205FB8F3AE73BE7165358135BA75C7F7A2693083C51661B
sha3_384: e929b244217dd379996789e92f236de53767428cb1e3292bc98e4a9f046a47dccb40c9934d4d3f933080fb086593333c
ep_bytes: 81ec8001000053555633db57895c2418
timestamp: 2009-06-06 21:41:54

Version Info:

FileDescription: Super Lyrics
FileVersion: 1.128.0.0
LegalCopyright: Copyright 2013
Translation: 0x0000 0x04e4

AdWare.Win32.AddLyrics.agwj also known as:

Elasticmalicious (high confidence)
ZillyaAdware.AddLyrics.Win32.14788
CrowdStrikewin/grayware_confidence_100% (D)
AlibabaAdWare:Win32/AddLyrics.88df8f31
BitDefenderThetaGen:NN.ZedlaF.36802.iu4@aues39ni
CynetMalicious (score: 99)
APEXMalicious
Kasperskynot-a-virus:AdWare.Win32.AddLyrics.agwj
NANO-AntivirusRiskware.Nsis.AddLyrics.ejtyot
SUPERAntiSpywareAdware.Shopper
TencentWin32.AdWare.Addlyrics.Xwhl
F-SecureAdware.ADWARE/ConvertAd.Gen7
DrWebTrojan.Lyrics.2307
SophosGeneric ML PUA (PUA)
AviraADWARE/ConvertAd.Gen7
Antiy-AVLGrayWare[AdWare]/NSIS.AddLyrics.vh
Kingsoftmalware.kb.a.936
XcitiumApplication.Win32.AddLyrics.B@51a33h
ZoneAlarmnot-a-virus:AdWare.Win32.AddLyrics.agwj
GoogleDetected
MalwarebytesPUP.Optional.LyricsAd
IkarusAdWare.AddLyrics

How to remove AdWare.Win32.AddLyrics.agwj?

AdWare.Win32.AddLyrics.agwj removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment