SuperLyrics-16

SuperLyrics-16

Known Adware

by KR KSoft

What is SuperLyrics-16?

SuperLyrics-16 is software application developed by KR KSoft. It is most commonly found on computers running Windows 7 with nearly 60.53% of installations running this operating system. SuperLyrics-16's installer is typically 7.00 MB in size and installs around 15 files.

SuperLyrics-16 is most popular in the United States with 55.28% of installations residing in this country.

SuperLyrics-16 adds 1 scheduled task to the Windows Task Scheduler launching the program at randomly scheduled times.

About SuperLyrics-16?

SuperLyrics is a web browser extension that may alter the user's browsing experience by redirecting web searches and injecting advertising. It functions as a Browser Helper Object in Internet Explorer and can manipulate advertising on various websites by displaying contextual link ads, banner ads, and pop-ups. Please note that SuperLyrics may interfere with the performance of known ad serving sites.

Multiple virus scanners have detected malware in SuperLyrics-16.

utils.exe (MD5: 61b5a842c2699a7cc3591abd0dc3611f) has been flagged by 20 scanners:
Scanner Software Result
Baidu-International Trojan.Win32.Packed.VMDetector.B
Dr.Web Trojan.Crossrider.9
ESET-NOD32 Win32/Packed.VMDetector.B
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Malwarebytes PUP.Optional.TubeSing.A
TrendMicro-HouseCall TROJ_GEN.F47V1027
Lavasoft Ad-Aware Adware.Generic.648971
Bitdefender Adware.Generic.648971
Emsisoft Anti-Malware Adware.Generic.648971 (B)
Fortinet FortiGate Riskware/PUP_FEJ
G Data Adware.Generic.648971
K7 AntiVirus Trojan ( 0048e2021 )
K7GW Trojan ( 0048e2021 )
McAfee PUP-FEJ!3101938CB89A
McAfee-GW-Edition PUP-FEJ!3101938CB89A
MicroWorld-eScan Adware.Generic.648971
Panda Antivirus Trj/CI.A
Symantec Adware.BL
VIPRE Antivirus Crossrider (fs)
Comodo Security UnclassifiedMalware
SuperLyrics-16-updater.exe (MD5: 3101938cb89a63b5816a09a16fd26d6a) has been flagged by 19 scanners:
Scanner Software Result
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.K
Fortinet FortiGate Riskware/PUP_FEJ
McAfee PUP-FEJ!47174D0D28C2
McAfee-GW-Edition PUP-FEJ!47174D0D28C2
TrendMicro-HouseCall TROJ_GEN.RFFFH06KC13
VIPRE Antivirus Crossrider (fs)
Baidu-International HackTool.Win32.CrossRider.K
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
Lavasoft Ad-Aware Adware.Generic.648971
Bitdefender Adware.Generic.648971
Dr.Web Trojan.Crossrider.33
Emsisoft Anti-Malware Adware.Generic.648971 (B)
G Data Adware.Generic.648971
K7 AntiVirus Trojan ( 0048e2021 )
K7GW Trojan ( 0048e2021 )
MicroWorld-eScan Adware.Generic.648971
Panda Antivirus Trj/CI.A
Symantec Adware.BL
Comodo Security UnclassifiedMalware
SuperLyrics-16-firefoxinstaller.exe (MD5: ba7882da85cecb3df7666d927f92d66c) has been flagged by 10 scanners:
Scanner Software Result
AhnLab-V3 Malware/Win32.Suspicious
Baidu-International HackTool.Win32.CrossRider.J
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.J
Fortinet FortiGate W32/Toolbar_CrossRider.J
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
McAfee PUP-FEJ!BA7882DA85CE
McAfee-GW-Edition PUP-FEJ!BA7882DA85CE
Sophos Generic PUA KB
TrendMicro-HouseCall TROJ_GEN.R0C1B04KJ13
VIPRE Antivirus Crossrider (fs)
SuperLyrics-16-enabler.exe (MD5: c9a9abb5a14e970ab124e5be43f5031d) has been flagged by 19 scanners:
Scanner Software Result
AVG Generic5.AJKA
Baidu-International Trojan.Win32.Toolbar.CrossRider.J
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.J
K7 AntiVirus Trojan ( 0048c68d1 )
K7GW Trojan ( 0048c68d1 )
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
McAfee PUP-FEJ!792056E084BF
McAfee-GW-Edition PUP-FEJ!792056E084BF
TrendMicro-HouseCall TROJ_GEN.R00UH06KC13
VIPRE Antivirus Crossrider (fs)
Bkav FE W32.Clod7ad.Trojan.8141
Fortinet FortiGate Adware/Lyckriks
Kaspersky not-a-virus:AdWare.Win32.Lyckriks.lw
Sophos Generic PUA HP
AhnLab-V3 Malware/Win32.Suspicious
Comodo Security UnclassifiedMalware
Dr.Web Trojan.Crossrider.28
Panda Antivirus Suspicious file
Symantec Adware.BL
SuperLyrics-16-codedownloader.exe (MD5: 948de5c6fb039d76cb64805d021edf54) has been flagged by 8 scanners:
Scanner Software Result
Baidu-International HackTool.Win32.CrossRider.K
ESET-NOD32 a variant of Win32/Toolbar.CrossRider.K
Kingsoft AntiVirus Win32.Troj.Generic.a.(kcloud)
McAfee PUP-FEJ!FB5D7C2E8BBC
McAfee-GW-Edition PUP-FEJ!FB5D7C2E8BBC
VIPRE Antivirus Crossrider (fs)
Fortinet FortiGate Riskware/PUP_FEJ
TrendMicro-HouseCall TROJ_GEN.R0C1H06KH13

Software Behaviors

Scheduled tasks:
  • SuperLyrics-16-enabler.exe is scheduled as a task named 'temp_SuperLyrics-16-enabler'.

Startup Entries

Startup tasks:
  • SuperLyrics-16-firefoxinstaller.exe is automatically launched at startup through a scheduled task named SuperLyrics-16-firefoxinstaller.
  • SuperLyrics-16-updater.exe is automatically launched at startup through a scheduled task named SuperLyrics-16-updater.
  • SuperLyrics-16-enabler.exe is automatically launched at startup through a scheduled task named SuperLyrics-16-enabler.
  • SuperLyrics-16-codedownloader.exe is automatically launched at startup through a scheduled task named SuperLyrics-16-codedownloader.
  • SuperLyrics-16-chromeinstaller.exe is automatically launched at startup through a scheduled task named SuperLyrics-16-chromeinstaller.

Software Details

URL:
Support:
Installation path:
C:\Program Files\superlyrics-16
Uninstaller:
C:\Program Files\SuperLyrics-16\Uninstall.exe /fromcontrolpanel=1
Size:
7.00 MB
Language:
English

SuperLyrics-16 Executable Details

Primary executable:
utils.exe
Name:
SuperLyrics-16
Path:
C:\Program Files\superlyrics-16\utils.exe
MD5:
61b5a842c2699a7cc3591abd0dc3611f
SHA-1:
SHA-256:
Files installed by SuperLyrics-16
File Type Filename MD5
EXE
756f238d9d267a4a550f792f5522c68e
EXE
utils.exe
Malware
61b5a842c2699a7cc3591abd0dc3611f
EXE
038d9827a835269b8a6509f67affb3bb
DLL
6d2b2acf192fdedf8120b65ffaa84c71
DLL
ea93a11d82e70643cd5482a996c2e3a9
EXE
3101938cb89a63b5816a09a16fd26d6a
EXE
ba7882da85cecb3df7666d927f92d66c
EXE
c9a9abb5a14e970ab124e5be43f5031d
EXE
948de5c6fb039d76cb64805d021edf54
EXE
2c03fb3a3203242eb0fa187d688f81f0