Malware Alert! The risk of image searches on Google and Bing

Bing vs Google

When was the last time you carried out an image search on Google Images? Did you check the website the image was hosted on before you downloaded it on your computer or smartphone? Unknown to you, image searches are one of the biggest channels of malware over the Internet.

Security conscious Internet users regularly take several precautions to avoid phishing pages and malicious websites. However, even the most security savvy individual can get outfoxed sometimes. Image searches on Google, Bing or other search engines are known to take users to infected websites that carry malicious codes and drive-by downloads. Unfortunately, many users just ignore the risks involved and end up with malware on their machines.

The threat arises when a user carries out an image search on Google or Bing (we are focusing on these search engines as they are the most commonly used ones). The results show thumbnails of images and a user clicks on the most suitable one without checking the website that hosts the image. This is extremely risky as some websites possibly contain all kinds of malware. Moreover, when a user finds a suitable image he downloads it on his machine and this injects malware into the system.

How search engines are compromised
A malicious website regularly scours the Internet to discover images that are popular. This includes images of celebrities, logos, symbols and trending memes. The website then optimizes its content to rank higher in an image search. This process is known as Black Hat SEO. So a user searches for an image, sees the infected website’s image in the search results, visits the page and downloads the image to inject malware into the system.

Google Search Results

In the case of a Google search, the website stays hidden behind the image. There is an option on the side that allows the user to “Visit page” but most people do not bother visiting the website before saving the image locally.

Bing Search Results

Bing is slightly better because the user can scroll down to see the full website. But again, this is something that very few people actively do.

Tips to avoid infected image searches
So what can users do to protect themselves from image search result threats? Here are some useful tips.

  • Always check the website that hosts the image you are downloading. Visit the page to view it properly.
  • Keep in mind that opening the image in a new tab from the search results page is the same as visiting the website.
  • Remember that if a website appears on top in a search results page, it does not necessarily mean that it is a legitimate website. Unsafe websites can also use SEO techniques to manipulate search results.
  • Ensure that your web browser, operating system and other programs are fully updated. Unpatched programs have the biggest security holes and are most vulnerable.
  • Update your virus protection software regularly. Quick Heal products provide browsing protection that blocks unsafe websites from being displayed. If you are a Mac user, you can also install Quick Heal Total Security for Mac.

The next time you carry out an image search on Google or Bing or other search engines, ensure that you follow these tips. This will keep you safe and protected from various unseen threats that are embedded in poisoned search results. A lot of malware reaches people’s machines through images that they have actively searched for and downloaded, so it is necessary for Internet users to be aware of this threat.

Rahul Thadani

Rahul Thadani


26 Comments

Leave a Reply to Shirish Cancel reply

Your email address will not be published.

CAPTCHA Image

  1. Avatar Snehil SarkarFebruary 13, 2013 at 7:56 PM

    what is SEO?

    Reply
    • Rahul Thadani Rahul ThadaniFebruary 14, 2013 at 10:11 AM

      Hi Snehil,
      SEO stands for Search Engine Optimization. It involves the optimization of websites for search engines like Google and others. You can read more about it by searching for it on the web.
      Regards.

      Reply
  2. sir
    i have installed win2000 server edition quickheal but it do not cleans autorun and pop up every time

    thanku kiran

    Reply
  3. Avatar Yogesh PatelFebruary 14, 2013 at 2:50 PM

    thank for this update….

    I usually search many item in google and bing search engine…

    so thanks for this….

    Reply
  4. How a safe site is distinguished from a bad one? Can a common user separate the websites?

    You have suggested, in your first point, to check the web site that hosts the image. You have also suggested to visit the page to view it properly. In the next line you have made it clear that opening the image in new tab is same as visiting the web site. But, in your first point, isn’t it what you are suggesting a user should do? i.e. visiting the web site. All this is somewhat confusing.

    Reply
    • Rahul Thadani Rahul ThadaniFebruary 18, 2013 at 10:21 AM

      Hi Shirish,
      The point I was trying to make is that when you view the image in a new tab you are on the website but you cannot see the website clearly since the image blocks it. Most people do not realize this. Checking the website means reading the URL (the website address) and not finding anything suspicious. It is advisable to download the image from a known or reputable website.
      Regards.

      Reply
  5. Avatar Chandravanshi SatyamFebruary 14, 2013 at 2:56 PM

    Thanks a bunch for this useful information. Till today, I just used to open the image and download… But Never thought about checking the source website from where the image is.

    This post has made me a lot conscious about Downloading Images.

    Reply
  6. Avatar Kousik AdhikaryFebruary 14, 2013 at 4:12 PM

    Oops! Didn’t know that.

    Reply
  7. Does opening Google image search ( without downloading them ) also inject malwares into the computer?

    Reply
    • Rahul Thadani Rahul ThadaniFebruary 18, 2013 at 10:27 AM

      Hi Himanshu,
      If a website has been infected with a drive-by download, it is possible that opening the image will inject the malware into a PC. A drive-by download is a download that starts as soon as a machine visits a website.
      Regards.

      Reply
  8. Hi, how can a .jpg file possibly harm your computer with a virus?

    Reply
    • Rahul Thadani Rahul ThadaniFebruary 18, 2013 at 10:28 AM

      Hi Darshan,
      Any file can be combined with malware, irrespective of the extension. When that file is downloaded on a computer, the malware accompanies it.
      Regards.

      Reply
  9. Avatar ChandrashekharFebruary 14, 2013 at 9:58 PM

    Looks like I have the Malware….
    Now what do I do.I have run the Anti Malware of QHeal. But nothing has come out of that.????

    Reply
    • Rahul Thadani Rahul ThadaniFebruary 18, 2013 at 10:34 AM

      Hi Chandrashekhar,
      You should run a full system scan first. If the malware is still present you need to call our support center on 927-22-33-000 immediately.
      Regards.

      Reply
  10. Avatar asoke kumar mitraFebruary 14, 2013 at 10:00 PM

    thanks a lot,long time back i was downloading images from these sites,but i stopped.

    Reply
  11. Avatar Dr. Saral Kumar MitraFebruary 14, 2013 at 11:39 PM

    QUICKHEAL must have the ability to protect its users by intercepting before
    the user falls victim.
    I remember QH once intercepted and saved me from damage and harassment.

    Reply
  12. Avatar Dr.Taka ZirdoFebruary 15, 2013 at 9:31 AM

    Thanks this information. How can we detect ourselves phishing and malicious websites? If we can not detect it, we are most likely to go in malicious websites.

    Reply
  13. Avatar Subhankar RayFebruary 15, 2013 at 12:10 PM

    Thanks Rahul,
    QH Team is excellent .
    Regards

    Reply
  14. Avatar Nishant PatelFebruary 15, 2013 at 12:15 PM

    I have been using Quick Heal since 2008 or 2009. Before that it used to be the “so called antivirus programs” like Norton, McAfee, AVG, etc. that I was using. I used to get lot of “intrusion attacks” on my pc & laptop & subsequently what followed was a total system crash. All my data was “washed away”. Since the usage of Quick Heal, there ain’t no system crashes, intrusion attacks, malware attacks, trojan attacks, you name it. Just like a country has its suberb defence forces to protect the country & its citizens, we have Quick heal for our PC/Laptop/Android based devices/Mac & our data. Way to go team Quick Heal.

    Reply
  15. Avatar Nilesh JadhavFebruary 15, 2013 at 4:38 PM

    How to use image search safely?

    Reply
    • Rahul Thadani Rahul ThadaniFebruary 18, 2013 at 10:49 AM

      Hi Nilesh,
      The best thing you can do is check the website properly before you actually save the image and download it on your machine.
      Regards.

      Reply
  16. Thanks rahul for updating us with SEO poisoning,image search affecting the system

    Reply
  17. sir,
    I am using QH for last few years and the experience is very satisfying .we follow your alerts .but if sometimes we forget ot apply the suggestions in the alerts (such as the latest instructions regarding waterholes & java) can i rely on QH for taking care of my PC.I regularly update my PC.
    THANKING YOU,
    Anil Apte.

    Reply
    • Rahul Thadani Rahul ThadaniFebruary 25, 2013 at 10:45 AM

      Hi Anil,
      Thank you for your appreciation and loyalty towards us. These alerts are designed to create awareness and provide assistance over and above the protection that our products provide. Following the suggestions in these alerts will certainly improve your system protection but you can rest assured that Quick Heal will tackle all security risks that pose a threat to your machine/s.
      Regards.

      Reply