Launchpage.org is domain, that is used by browser hijackers to modify homepage and search engine settings in Google Chrome, Mozilla Firefox and Internet Explorer. Website slightly modifies its interface, depending on browser, to look familiar to user. For example, in chrome it loos like default Google homepage with links to Gmail and YouTube and tiles of last visited websites.
Ourluckysites.com is website, that acts as browser hijacker an replaces homepage and search engine in Google Chrome, Mozilla Firefox and Internet Explorer. Developers promote it as advanced search engine with enhanced search results, however it just redirects user search queries to search.yahoo.com. Malefactors get affiliate commission by driving traffic to this search and collect private information like search and visits history.
Matrix Ransomware is ransomware virus that encrypts user files with either symmetric or asymmetric cryptography. It adds .matrix extension to encrypted files. After finishing encryption process, Matrix creates a text file matrix-readme.rtf or Readme-Matrix.rtf. Virus places this files in every folder with affected files. This text file contains instruction to pay the ransom, where malefactors encourage users to contact them via e-mails: email@example.com, firstname.lastname@example.org or email@example.com.
Dharma virus, unlike similar types of ransomware, does not change desktop background, but creates README.txt or Document.txt.[firstname.lastname@example.org].zzzzz files and places them in each folder with compromised files. Text files contain message stating that users have to pay the ransom using Bitcoins and amount is approximately $300-$500 depending on ransomware version. The private decryption key is stored on a remote server, and there currently impossible to break the encryption of the latest version.
Startpageing123.com is unwanted search engine that can e installed in Google Chrome, Mozilla Firefox and Internet Explorer. Main page of this site resembles popular search engines, and redirects to Google.com. It is set as homepage, default search engine. Startpageing123.com infects browser shortcuts, by modifying shortcut properties. This threat is classified as browser hijacker, because of browser settings modification and search redirects.