| Threat Alias | Number of Incidents |
| Worm.AutoIT.V [PC Tools] | 223 |
| Worm.Win32.AutoIt.i [Kaspersky Lab] | 163 |
| W32.SillyFDC [Symantec] | 143 |
| W32.SillyDC [Symantec] | 116 |
| W32/Sality-AM [Sophos] | 75 |
| W32/Sality.gen [McAfee] | 63 |
| Worm:Win32/Sohanad.I [Microsoft] | 63 |
| Worm.Win32.AutoIt [Ikarus] | 55 |
| W32/SillyFDC-AP [Sophos] | 53 |
| Worm.Win32.AutoRun.fjx [Kaspersky Lab] | 51 |
| Virus:Win32/Sality.AM [Microsoft] | 48 |
| Win-Trojan/Autorun.215456 [AhnLab] | 45 |
| WORM_UTOTI.RC [Trend Micro] | 40 |
| Win32/Kashu.B [AhnLab] | 39 |
| PE_SALITY.EN-1 [Trend Micro] | 30 |
| Trojan.Dropper [Symantec] | 26 |
| PE_SALITY.JER [Trend Micro] | 21 |
| W32.Spybot.Worm [Symantec] | 18 |
| W32/Sdbot.worm [McAfee] | 18 |
| Trojan.DR.IRCBot.Gen.2 [PC Tools] | 16 |
| PE_SALITY.EK [Trend Micro] | 15 |
| W32/Sality.ag [McAfee] | 15 |
| IM-Worm.Win32.Sohanad [Ikarus] | 12 |
| IM-Worm.Win32.Sohanad.gen [Kaspersky Lab] | 12 |
| Mal/Generic-A [Sophos] | 11 |
| Backdoor.IRC.Bot [Symantec] | 10 |
| TROJ_STARTPA.OQ [Trend Micro] | 10 |
| WORM_UTOTI.AI [Trend Micro] | 10 |
| Email-Worm.Win32.Runouce.b [Kaspersky Lab] | 9 |
| PE_SALITY.EM [Trend Micro] | 9 |
| StartPage-KG [McAfee] | 9 |
| Virus.Win32.Sality.aa [Kaspersky Lab] | 9 |
| Mal_AUMAL-2 [Trend Micro] | 8 |
| PE_Chir.B [Trend Micro] | 8 |
| Virus.Win32.Virut [Ikarus] | 8 |
| Virus:Win32/Chir.B@mm [Microsoft] | 8 |
| W32/Chir.b@MM [McAfee] | 8 |
| W32/Chir-B [Sophos] | 8 |
| Email-Worm.Win32.Runouce [Ikarus] | 7 |
| VirTool:Win32/Injector.gen!U [Microsoft] | 7 |
| W32/YahLover.worm [McAfee] | 7 |
| Worm.Win32.AutoIt.i [Ikarus] | 7 |
| Generic Dropper.ax [McAfee] | 6 |
| Trojan:Win32/Meredrop [Microsoft] | 6 |
| Virus.Win32.Sality.z [Kaspersky Lab] | 6 |
| W32/Sdbot.worm.gen.ax [McAfee] | 6 |
| Win32/ChiHack.6652 [AhnLab] | 6 |
| Backdoor.IRCBot.Gen [PC Tools] | 5 |
| Generic.dx [McAfee] | 5 |
| Virus.W32.Sality [Ikarus] | 5 |
| Virus.Win32.Sality [Ikarus] | 5 |
| W32.IRCBot [Symantec] | 5 |
| Worm.AutoIT.DN [PC Tools] | 5 |
| WORM_UTOTI.BD [Trend Micro] | 5 |
| PE_KIBIK.B [Trend Micro] | 4 |
| Trojan.Win32.Autoit.bn [Ikarus] | 4 |
| Backdoor.Bifrose [Symantec] | 3 |
| BKDR_IRCBOT.AZB [Trend Micro] | 3 |
| Mal/Sality-B [Sophos] | 3 |
| PE_SALITY.AM [Trend Micro] | 3 |
| PE_SALITY.BU [Trend Micro] | 3 |
| Virus.Win32.AutoRun.ez [Kaspersky Lab] | 3 |
| Virus:Win32/Sality.AH [Microsoft] | 3 |
| W32/Autoit-F [Sophos] | 3 |
| W32/Autorun.worm.g [McAfee] | 3 |
| W32/Sality.ad [McAfee] | 3 |
| Win32.Sality.AM.Gen [PC Tools] | 3 |
| Win32/Kashu [AhnLab] | 3 |
| Backdoor.IRCBot.XEM [PC Tools] | 2 |
| Backdoor.Win32.IRCBot [Ikarus] | 2 |
| Backdoor.Win32.SdBot [Ikarus] | 2 |
| BehavesLike [Ikarus] | 2 |
| BKDR_IRCBOT.AXA [Trend Micro] | 2 |
| BKDR_IRCBOT.AXI [Trend Micro] | 2 |
| BKDR_IRCBOT.AZF [Trend Micro] | 2 |
| BKDR_IRCBOT.BXJ [Trend Micro] | 2 |
| BKDR_IRCBOT.FA [Trend Micro] | 2 |
| Generic BackDoor [McAfee] | 2 |
| Generic PWS.y [McAfee] | 2 |
| IM-Worm.Sohanad!sd6 [PC Tools] | 2 |
| Trojan.Crypt [Ikarus] | 2 |
| Trojan.FakeAlert [PC Tools] | 2 |
| Trojan.Win32.Autoit.bn [Kaspersky Lab] | 2 |
| Virus.Win32.AutoRun.abe [Kaspersky Lab] | 2 |
| W32.Sality [Ikarus] | 2 |
| W32/Autorun.worm.h [McAfee] | 2 |
| W32/CKB.worm [McAfee] | 2 |
| W32/Sdbot.worm.gen.cn [McAfee] | 2 |
| W32/Virut.gen [McAfee] | 2 |
| Win32/IRCBot.worm.variant [AhnLab] | 2 |
| Win32/Virut.D [AhnLab] | 2 |
| Worm.Win32.AutoRun [Ikarus] | 2 |
| WORM_FLASHDOWN.A [Trend Micro] | 2 |
| WORM_IRCBOT.BD [Trend Micro] | 2 |
| WORM_RBOT.EAB [Trend Micro] | 2 |
| WORM_UTOTI.BT [Trend Micro] | 2 |
| Backdoor.IRCBot.WAF [PC Tools] | 1 |
| Backdoor.IRCBot.XEO [PC Tools] | 1 |
| Backdoor.IRCBot.XEP [PC Tools] | 1 |
| Backdoor.IRCBot.XFH [PC Tools] | 1 |