Adware.AddLyrics Description

Adware:Win32/Addlyrics is a browser add-on that displays lyrics for Youtube videos – but also makes your browser display additional advertisements without any means of disabling this function. While sometimes installed willingly from the website, Adware:Win32/Addlyrics more often is installed through third parties, which bundle Adware:Win32/Addlyrics with unrelated applications that are installed for free. Unless you have full trust in the Addlyrics website and are certain you wish to use Adware:Win32/Addlyrics’s features, malware researchers recommend deleting Adware:Win32/Addlyrics with anti-malware software, just as they’d suggest for all similar types of adware.

The Plugin that Adds Plenty More Than Just Lyrics to Your Web Browser

Adware:Win32/Addlyrics isn’t rated as entirely malicious, since Adware:Win32/Addlyrics does include lyrics-displaying features that may be beneficial for any musically-inclined Web surfers. However, malware researchers do classify Adware:Win32/Addlyrics as adware due to its display of advertisements, which cannot be disabled and appear on sites (such as Google or Bing) that are unrelated to Adware:Win32/Addlyrics’s main feature. Adware:Win32/Addlyrics’s advertisements may be embedded directly into a Web page as Adware:Win32/Addlyrics is loaded or occur as pop-ups that cover the original content of a Web page. While they are clearly marked as separate from a site’s main content, current advertisement formats from Adware:Win32/Addlyrics may blend in its advertisements with the normal advertising content of the websites being visited.

Adware:Win32/Addlyrics includes separate installation methods for the Google’s Chrome, Microsoft’s Internet Explorer and Mozilla’s Firefox brands of Web browsers, thus further proving that plugin coders are doing their best to achieve cross-compatibility between browsers to maximize their profits.

» Learn more about SpyHunter's Spyware Detection Tool
and steps to uninstall SpyHunter.

Each of these versions of Adware:Win32/Addlyrics may need to be removed separately, along with Adware:Win32/Addlyrics’s automatic updater (which malware researchers have confirmed to launch regularly without your permission). Ordinarily, Adware:Win32/Addlyrics will install itself to all of these browsers at the same time, rather than selecting a single browser to modify.

The PC Pied Piper to Sing Adware:Win32/Addlyrics Off of Your Browser

In a signature of Adware:Win32/Addlyrics’s less than overtly malicious intentions, Adware:Win32/Addlyrics does include a default uninstaller. Nonetheless, malware researchers still suggest using anti-malware products to clean up your PC after removing Adware:Win32/Addlyrics, since this will allow you to be certain of getting rid of all browser changes associated with Adware:Win32/Addlyrics and any other PC threats. Doing this as soon as possible after Adware:Win32/Addlyrics is spotted is suggested, since the automatic updates to Adware:Win32/Addlyrics’s software (which occur on a daily basis) may enable Adware:Win32/Addlyrics to use additional functions not included in this article that could pose a security risk.

If you take heed to avoid installers from untrustworthy locations and carefully inspect all install options before installing any software, your computer should have little, if any, contact with Adware:Win32/Addlyrics, which doesn’t appear to use drive-by-downloads or other malicious exploits to install itself automatically.


HEUR/QVM00.1.Malware.Gen [Qihoo-360]Adware.Win32.AddLyrics.DZ [Baidu-International]AddLyrics_r.OI [AVG]Win32.Adware.Addlyrics.Pdme [Tencent]a variant of Win32/Adware.AddLyrics.DZ [ESET-NOD32]PUP/AdvertisingApps [Panda]Artemis!43C0EA49FC00 [McAfee]ADWARE/AddLyrics.43512 [Avira]Generic PUA AE [Sophos]Artemis!PUP [McAfee-GW-Edition]

More aliases (140)

Adware.AddLyrics Automatic Detection Tool (Recommended)

Is your PC infected with Adware.AddLyrics? To safely & quickly detect Adware.AddLyrics we highly recommend you run the malware scanner listed below.

Technical Details

Registry Modifications

Tutorial: To edit and delete registry entries manually, read the tutorial on how to remove malicious registry entries.

Tip & Warning: Editing and removing the wrong registry keys can severely damage your PC, so remember to backup your Windows Registry! To optimize your Windows Registry and speed up your PC, download RegHunter's registry cleaner.
  • The following newly produced Registry Values are:
    HKEY..\..\..\..{RegistryKeys}SOFTWARE\AddLyricsSOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2c26a15e-0bc7-431f-b893-7288f4852a00}SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{816438fc-a661-4ec6-8d6e-d15179585b4a}SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{833a8310-3f0f-4ab4-9d1b-cd22f84dadd5}SOFTWARE\Wow6432Node\AddLyricsSOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2c26a15e-0bc7-431f-b893-7288f4852a00}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{816438fc-a661-4ec6-8d6e-d15179585b4a}SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{833a8310-3f0f-4ab4-9d1b-cd22f84dadd5}SYSTEM\ControlSet002\Enum\Root\LEGACY_WEBTINSTMKTN84SYSTEM\CurrentControlSet\Enum\Root\LEGACY_WEBTINSTMKTN84HKEY_LOCAL_MACHINE\Software\[APPLICATION]\Microsoft\Windows\CurrentVersion\Uninstall..{Uninstaller}AddLyrics
  • The following CLSID's were detected:
    HKEY..\..\{CLSID Path} {22222222-2222-2222-2222-220322802276}{55555555-5555-5555-5555-550355805576}{66666666-6666-6666-6666-660366806676}{44444444-4444-4444-4444-440344804476}{11111111-1111-1111-1111-110311801176}
Posted: February 26, 2013 | By
Rate this article:
1 Star2 Stars3 Stars4 Stars5 Stars (No Ratings Yet)
Loading ... Loading ...
Threat Metric
Threat Level: 2/10
Detection Count: 467,912
Home Malware ProgramsAdware Adware.AddLyrics

Leave a Reply

What is 10 + 5 ?
Please leave these two fields as-is:
IMPORTANT! To be able to proceed, you need to solve the following simple math (so we know that you are a human) :-)