| Threat Alias | Number of Incidents |
| Email-Worm.Win32.Rays [Kaspersky Lab] | 70 |
| W32.Wullik@mm [Symantec] | 56 |
| W32/Wukill.worm.gen [McAfee] | 50 |
| WORM_WUKILL.GEN [Trend Micro] | 46 |
| Email-Worm.Rays [PC Tools] | 42 |
| Email-Worm.Win32.Rays [Ikarus] | 21 |
| Email-Worm.Win32.Rays.d [Kaspersky Lab] | 15 |
| W32/Sality.gen [McAfee] | 13 |
| PE_SALITY.AL [Trend Micro] | 12 |
| W32.Sality.X [Symantec] | 12 |
| W32/Sality.ac [McAfee] | 12 |
| W32/Sality-AM [Sophos] | 12 |
| Win32.Sality.AA [PC Tools] | 12 |
| Win32/Rays.worm.49152 [AhnLab] | 12 |
| I-Worm.Wukill.B [PC Tools] | 10 |
| PE_SALITY.EN [Trend Micro] | 10 |
| W32/Wukill-B [Sophos] | 8 |
| Worm:Win32/Wukill.F@mm [Microsoft] | 6 |
| Email-Worm.Win32.Rays.c [Kaspersky Lab] | 5 |
| Exploit.HTML.Agent.am [Kaspersky Lab] | 5 |
| PE_FUNLOVE.4099 [Trend Micro] | 4 |
| PE_SALITY.AE [Trend Micro] | 4 |
| PE_SALITY.AS [Trend Micro] | 4 |
| W32.FunLove.4099 [Symantec] | 4 |
| W32.HLLP.Sality.O [Symantec] | 4 |
| W32.Sality.U [Symantec] | 4 |
| W32/FunLove.gen [McAfee] | 4 |
| W32/Sality.n [McAfee] | 4 |
| W32/Sality.x [McAfee] | 4 |
| Win32.Sality.X [PC Tools] | 4 |
| Win32/Kashu.B [AhnLab] | 4 |
| Virus:Win32/Sality.AM [Microsoft] | 3 |
| W32.Sality.AE [Symantec] | 3 |
| Win32.Sality.L [PC Tools] | 3 |
| Email-Worm.Rays!sd5 [PC Tools] | 2 |
| PE_CORELINK.C-1 [Trend Micro] | 2 |
| PE_PASSMA.B [Trend Micro] | 2 |
| PE_SALITY.AC [Trend Micro] | 2 |
| PE_SALITY.AK [Trend Micro] | 2 |
| Virus.Win32.Alman.b [Kaspersky Lab] | 2 |
| Virus.Win32.Tenga.a [Kaspersky Lab] | 2 |
| W32.HLLP.Sality!inf [Symantec] | 2 |
| W32.Passma [Symantec] | 2 |
| W32.Sality.R [Symantec] | 2 |
| W32.Wullik.B@mm [Symantec] | 2 |
| W32/Almanahe.c [McAfee] | 2 |
| W32/Passma.worm.c [McAfee] | 2 |
| W32/Sality.m [McAfee] | 2 |
| W32/Sality.t [McAfee] | 2 |
| Win32.Alman.B [PC Tools] | 2 |
| Win32.Funlove.4070 [PC Tools] | 2 |
| Win32.HLLP.Passma.A [PC Tools] | 2 |
| Win32.Sality.M [PC Tools] | 2 |
| Win32.Sality.U [PC Tools] | 2 |
| Worm.Win32.Passma [Kaspersky Lab] | 2 |
| Demiurg.16354 [PC Tools] | 1 |
| Email-Worm.Win32.Runouce.b [Kaspersky Lab] | 1 |
| JS.Chir.B [PC Tools] | 1 |
| Mal/Sality-B [Sophos] | 1 |
| PE_Chir.B [Trend Micro] | 1 |
| PE_Generic [Trend Micro] | 1 |
| PE_KRIZ.4050 [Trend Micro] | 1 |
| PE_RESOURCER.A [Trend Micro] | 1 |
| PE_SALITY.AL-1 [Trend Micro] | 1 |
| PE_SALITY.BU [Trend Micro] | 1 |
| PE_SALITY.EK [Trend Micro] | 1 |
| PE_SALITY.JER [Trend Micro] | 1 |
| PE_SALITY.S [Trend Micro] | 1 |
| PE_TENGA.A [Trend Micro] | 1 |
| PE_VIRUT.AV [Trend Micro] | 1 |
| Trojan.Win32.Patched.af [Kaspersky Lab] | 1 |
| Virus.Win32.Sality.o [Kaspersky Lab] | 1 |
| Virus:Win32/Almanahe.B [Microsoft] | 1 |
| Virus:Win32/Gael.D [Microsoft] | 1 |
| Virus:Win32/Kriz.4050 [Microsoft] | 1 |
| Virus:Win32/Sality.G [Microsoft] | 1 |
| Virus:Win32/Sality.T [Microsoft] | 1 |
| W32.Chir.B@mm [Symantec] | 1 |
| W32.Demig.16354 [Symantec] | 1 |
| W32.Sality.S [Symantec] | 1 |
| W32/Alman-C [Sophos] | 1 |
| W32/Chir.b@MM [McAfee] | 1 |
| W32/Gael.worm.a [McAfee] | 1 |
| W32/Generic.m [McAfee] | 1 |
| W32/Kriz [Sophos] | 1 |
| W32/Kriz.4050 [McAfee] | 1 |
| W32/Rays [McAfee] | 1 |
| W32/Resourcer [McAfee] | 1 |
| W32/Sality.w [McAfee] | 1 |
| W32/Sality-AD [Sophos] | 1 |
| W32/Sality-AI [Sophos] | 1 |
| W32/Tenga-A [Sophos] | 1 |
| W32/Virut.gen.a [McAfee] | 1 |
| W32/Wukill.worm [McAfee] | 1 |
| Win32.Sality.AM.Gen [PC Tools] | 1 |
| Win32.Sality.O [PC Tools] | 1 |
| Win32.Sality.W [PC Tools] | 1 |
| Win32/Tenga.3666 [AhnLab] | 1 |
| Worm:Win32/Wukill.BG@mm [Microsoft] | 1 |
| Worm:Win32/Wukill@mm.gen!A [Microsoft] | 1 |