Microsoft IIS Web servers are twice as likely to serve malware as open source Apache Web servers, according to a Google security survey.
In this post, Google investigate the distribution of web server software to provide insight into how server software is correlated to servers hosting malware binaries or engaging in drive-by-downloads.
Compared to our sample of servers across the Internet, Microsoft IIS features twice as often (49% vs. 23%) as a malware distributing server. Amongst Microsoft IIS servers, the share of IIS 6.0 and IIS 5.0 remained the same at 80% and 20% respectively.
Google's survey finds that in China and South Korea, malicious servers are more likely to be running IIS than Apache.
Web server software across servers distributing malware:

However there might be some errors in final result as a single IP hosts more website using virtual hosting. Nevertheless it is a good reading.
Featured Articles:
- 20 Linux System Monitoring Tools Every SysAdmin Should Know
- 20 Linux Server Hardening Security Tips
- Linux: 20 Iptables Examples For New SysAdmins

- My 10 UNIX Command Line Mistakes
- 25 PHP Security Best Practices For Sys Admins
- The Novice Guide To Buying A Linux Laptop
- Top 5 Email Client For Linux, Mac OS X, and Windows Users
- Top 20 OpenSSH Server Best Security Practices
- Top 10 Open Source Web-Based Project Management Software
Facebook it - Tweet it - Print it -
We're here to help you make the most of sysadmin work. So, subscribe!


{ 2 comments… read them below or add one }
Well….so far so true, but now many make think differently after the release of IIS7- IIS vs. Apache.
Awesome! thanks for adding this