Damage is a ransomware written in Delphi. It uses a combination of SHA-1 and Blowfish to encrypt the first and last 8 kb of a file. Encrypted files have the extension ".damage" and the ransom note, which is named "[email protected].txt", asks to contact "da[email protected]". The ransom note contains the following message:
end of secret_key
To restore your files - send e-mail to [email protected]
To use the decrypter, you will require an encrypted file as well as its unencrypted version. To start the decrypter select both the encrypted and unencrypted file and drag and drop them onto the decrypter executable.