More malvertising attacks hiding in Google ads for GIMP image editing software

We’ve covered a series of innovative cyber attack methods recently, from hiding malware in fake job offers to ‘malvertisers’ pushing fake ads across advertising networks in a bid to trap unsuspecting victims and infect their devices with malware. Unfortunately, today we bring you news of a particular malvertising scam, that has been able to break into the Google ads network and is pushing malware in fake ads for the Photoshop alternative program GIMP.

According to a report on BleepingComputer, which cites a Reddit post by ZachIngram04, up until just last week, Googling the popular and free photo editing tool GIMP, widely seen as a reputable open-source alternative to Adobe Photoshop, would serve up fake ads that would take you to a fake version of the GIMP homepage.

Once the victims land on the fake homepage, they are shown a fake Download button that will install malware onto their computers and cause a wide variety of security issues and problems.

What is interesting to note is the innovative ways the scammers have been able to bypass the security features of the Google ad network, which included bulking out the malware file to 700 MB in size so that it more closely resembles the true size of the real file.

The main problem here is that the scammers have been able to serve up a malicious site that very naturally points you to a malicious download in one of the most common internet settings, the results of a Google search. Here, you are highly likely to just thoughtlessly go through the motions and download the file, but there are key aspects to look out for that could give away the dangerous nature of the site you are on and the file you are about to download.

In this case, the actual URL of the fake site is gilimp.org, which is different to the real address, which is gimp.org. It even sounds strange when you read it, which is a real red flag. The other red flag in this instance is the download domain gimp.monster. Again, this domain is fake with the giveaway being that it goes to a .monster domain instead of a .org domain. Often scammers will try to trick users by serving up a fake root domain.

To learn more about these two detection methods as well as a wide variety of other red flags to look out for, check out our phishing scam detection infographic.

Image via: BleepingComputer

How to make The GIMP look like Photoshop

gimplogo.pngThe GIMP is one of the best free image editing tools for Mac. It’s the closest thing you’ll find to Adobe Photoshop without paying big bucks. However, a frequent complaint by those switching from Photoshop to The GIMP is that the interface isn’t exactly easy to use.

The GIMP has been designed in a rather awkward way, so that anyone used to Photoshop quickly gets confused by menu layout and the different naming conventions that The GIMP uses.

An excellent solution to this problem is GIMPshop.

GIMPshop is a modification of The GIMP which gives it an Adobe Photoshop style interface so that you can enjoy the best of both worlds. All of the functionality of The GIMP remains the same with the bonus of a much easier to use Photoshop style interface.

GIMPshop features menu layouts, dialogs and naming conventions that all Adobe Photoshop users will be familiar with.

GIMPshop

However, there are a few issues to be aware of when trying to install it on Mac. Firstly, you’ll need Apple’s X11 to run GIMPshop. Secondly, the main problem that Leopard and Snow Leopard users will have is getting GIMPshop to remain stable. Although GIMPshop is supposed to officially support Leopard and Snow Leopard, the reality is quite different.

It can easily be made to work properly though by modifying a library file. Instructions of how to do so are here and the libraries you need to make it work are here.

Of course, GIMPshop isn’t a replacement for Photoshop but it’s probably the closest thing you’ll ever get for free. It’s available for Windows and Mac.

Two free image editors: The Gimp vs. PhotoFiltre

photofiltre-gimp.jpgAdobe Photoshop is one of the most popular graphic editors in the world, but it’s certainly not the only one. There are several good alternatives for those who cannot afford Adobe’s flagship product. Two of them are The Gimp and PhotoFiltre, which may seem similar at first sight, but show quite outstanding differences when analyzed in detail. Let’s take a deeper look at both.

gimp.jpgThe Gimp has always been considered as Photoshop’s open source substitute. It was launched in 1995 and is now maintained by a very active user community. As for PhotoFiltre, its first version was released in 2004 as freeware. This program is currently also offered as a shareware version with extra functionalities.

Differences appear from the very beginning. The Gimp requires a DLL package (GTK+ 2 Runtime Environment) before even beginning to install, while a few clicks on the “Next” button is everything PhotoFiltre demands to be up and running. Also, Gimp’s interface is probably very different to anything you have seen so far, with separate floating windows, whereas PhotoFiltre keeps the standard interface common to all Windows applications.

photofiltre.jpgRegarding the functions offered by both programs, on the one side The Gimp features support for layers as well as a bunch of tools that Photoshop users will find very familiar: smudge, blur or clone stamp, to name a few. Just don’t forget that many of these tools have different names from the ones you’re used to in Adobe’s application. On the other side, PhotoFiltre also offers many Photoshop-like tools but has no support for layers. It does have, however, a huge amount of filters and effects of all kinds ready to be applied to your pictures with a couple of clicks.

Although The Gimp and PhotoFiltre are similar applications, the former is aimed at more advanced users and particularly useful for graphic design, while the latter is perfect for novice users who want to add some spice to their photos.