| Threat Alias | Number of Incidents |
| Worm.Hamweg.Gen [PC Tools] | 43 |
| Worm:Win32/Hamweq.A [Microsoft] | 24 |
| W32.Ircbrute [Symantec] | 20 |
| W32/Autoham-Fam [Sophos] | 13 |
| Backdoor.Trojan [Symantec] | 11 |
| Trojan Horse [Symantec] | 9 |
| IRC-Worm.Win32.Small.t [Kaspersky Lab] | 8 |
| Virus.Win32.Agent.bc [Kaspersky Lab] | 8 |
| WORM_AUTORUN.ABI [Trend Micro] | 8 |
| Trojan-DDoS.Win32.Agent.bv [Kaspersky Lab] | 7 |
| W32/Autoham-Fam, Troj/Agent-GXK [Sophos] | 7 |
| WORM_AUTORUN.RYU [Trend Micro] | 6 |
| Backdoor.Hamweq.B [Ikarus] | 4 |
| Hacktool.Flooder [Symantec] | 3 |
| Virus.Worm.Win32.AutoRun.dht [Ikarus] | 3 |
| WORM_AUTORUN.DFL [Trend Micro] | 3 |
| IRC-Worm.Win32.Small [Ikarus] | 2 |
| Win-Trojan/Agent.13824.FE [AhnLab] | 2 |
| Backdoor.Hamweq.1 [Ikarus] | 1 |
| BKDR_HAMWEQ.K [Trend Micro] | 1 |
| Infostealer.JiangHu [Symantec] | 1 |
| Mal/Generic-A [Sophos] | 1 |
| Mal/HckPk-A [Sophos] | 1 |
| TROJ_AGENT.AHCQ [Trend Micro] | 1 |
| TROJ_AGENT.AIZW [Trend Micro] | 1 |
| TROJ_AGENT.AJKP [Trend Micro] | 1 |
| TROJ_AGENT.APDC [Trend Micro] | 1 |
| TROJ_AGENT.SIV [Trend Micro] | 1 |
| Trojan.Pakes!sd6 [PC Tools] | 1 |
| Trojan.Win32.Pakes.dad [Kaspersky Lab] | 1 |
| Trojan:Win32/Ircbrute [Microsoft] | 1 |
| Trojan-Dropper.Agent [Ikarus] | 1 |
| Trojan-Spy.Win32.Webmoner [Ikarus] | 1 |
| Virus.Win32.Virut.n [Kaspersky Lab] | 1 |
| Virus:Win32/Virut.AF [Microsoft] | 1 |
| W32.Virut.U [Symantec] | 1 |
| W32/Autoham-Fam, W32/Vetor-A [Sophos] | 1 |
| W32/Hamweq-D [Sophos] | 1 |
| Win32.Virut.Gen.5 [PC Tools] | 1 |
| Win-Trojan/Agent.13824.EK [AhnLab] | 1 |
| Win-Trojan/Agent.34304.MZ [AhnLab] | 1 |
| Worm.Autorun!ct [PC Tools] | 1 |
| Worm.Win32.AutoRun.dwn [Kaspersky Lab] | 1 |
| Worm.Win32.AutoRun.qap [Kaspersky Lab] | 1 |
| Worm.Win32.Hamweq [Ikarus] | 1 |
| WORM_HAMWEQ.AM [Trend Micro] | 1 |