| Threat Alias | Number of Incidents |
| Trojan.Win32.Autoit.ci [Kaspersky Lab] | 180 |
| W32.Imaut [Symantec] | 161 |
| Virus:Win32/Sality.AM [Microsoft] | 102 |
| W32/Sality-AM [Sophos] | 99 |
| Worm.Autoit.DU [PC Tools] | 71 |
| Trojan.Win32.Autoit.eg [Kaspersky Lab] | 69 |
| W32/YahLover.worm.gen [McAfee] | 66 |
| Packed.Win32.Klone.bj [Kaspersky Lab] | 64 |
| WORM_DELF.FKZ [Trend Micro] | 64 |
| Mal/Airworm-A [Sophos] | 63 |
| Worm:Win32/Autorun.FH [Microsoft] | 62 |
| W32.Harakit [Symantec] | 61 |
| W32/Sality.gen [McAfee] | 59 |
| W32.Imaut.U [Symantec] | 53 |
| Mal/Sohana-A [Sophos] | 49 |
| WORM_IMAUT.BY [Trend Micro] | 43 |
| PE_SALITY.EN-1 [Trend Micro] | 41 |
| WORM_BRACEY.CP [Trend Micro] | 30 |
| Win32/Kashu.B [AhnLab] | 29 |
| W32/Sality.ag [McAfee] | 24 |
| Win32/Autoit.worm.678913 [AhnLab] | 24 |
| Infostealer [Symantec] | 16 |
| Trojan.Dropper [Symantec] | 16 |
| Worm:AutoIt/Renocide.gen!C [Microsoft] | 16 |
| PE_SALITY.EN [Trend Micro] | 15 |
| PE_SALITY.JER [Trend Micro] | 15 |
| PE_SALITY.EK [Trend Micro] | 14 |
| Trojan.Autoit [PC Tools] | 14 |
| W32/Autorun.worm.cs [McAfee] | 12 |
| W32/Autorun-DB [Sophos] | 12 |
| W32/Sality.ah [McAfee] | 12 |
| Win32/Sohanad.worm.617343 [AhnLab] | 12 |
| Trojan Horse [Symantec] | 11 |
| WORM_IMAUT.HB [Trend Micro] | 11 |
| Dropper/Ardamax.627361 [AhnLab] | 10 |
| Mal/Behav-299 [Sophos] | 10 |
| Win32.Sality.AM.Gen [PC Tools] | 10 |
| Mal/Generic-A [Sophos] | 9 |
| Trojan-Downloader.Win32.AutoIt.ji [Kaspersky Lab] | 9 |
| Worm.AutoIT.DP [PC Tools] | 8 |
| Win32/Autorun.worm.401408 [AhnLab] | 7 |
| Mal/Sality-B [Sophos] | 5 |
| VirTool:Win32/ModTool.A [Microsoft] | 5 |
| W32/YahLover.worm [McAfee] | 5 |
| Email-Worm.Win32.Runouce.b [Kaspersky Lab] | 4 |
| PE_Chir.B [Trend Micro] | 4 |
| Trojan:Win32/Malagent [Microsoft] | 4 |
| Virus.Win32.Virut.ce [Kaspersky Lab] | 4 |
| W32.Imaut.CN [Symantec] | 4 |
| W32/Chir.b@MM [McAfee] | 4 |
| W32/Chir-B [Sophos] | 4 |
| W32/Scribble-B [Sophos] | 4 |
| Win32/Virut.F [AhnLab] | 4 |
| Win-Trojan/Agent.616960.E [AhnLab] | 4 |
| I-Worm.Chir.B [PC Tools] | 3 |
| Mal/Inet-Fam [Sophos] | 3 |
| PE_CORELINK.C-1 [Trend Micro] | 3 |
| PE_SALITY.M [Trend Micro] | 3 |
| Trojan-Downloader.AutoIt!sd6 [PC Tools] | 3 |
| Virus:Win32/Almanahe.B [Microsoft] | 3 |
| Virus:Win32/Chir.B@mm [Microsoft] | 3 |
| W32/Almanahe.c [McAfee] | 3 |
| W32/Alman-C [Sophos] | 3 |
| W32/Sality.ao [McAfee] | 3 |
| Worm.AutoIt.s [PC Tools] | 3 |
| Generic.dx [McAfee] | 2 |
| Mal/Sality-A [Sophos] | 2 |
| Mal/Sohana-B [Sophos] | 2 |
| Mal/Sohana-B, Mal/Sohana-A [Sophos] | 2 |
| not-a-virus:Monitor.Win32.Ardamax.ae [Kaspersky Lab] | 2 |
| PE_PATCHEP.B [Trend Micro] | 2 |
| PE_SALITY.EM [Trend Micro] | 2 |
| PE_VIRUT.AV [Trend Micro] | 2 |
| Trojan.Win32.Patched.bz [Kaspersky Lab] | 2 |
| Virus.Win32.Virut.av [Kaspersky Lab] | 2 |
| Virus:Win32/Patched.E [Microsoft] | 2 |
| Virus:Win32/Sality.AH [Microsoft] | 2 |
| Virus:Win32/Virut.AC [Microsoft] | 2 |
| Virus:Win32/Virut.BM [Microsoft] | 2 |
| W32.Sality.AE [Symantec] | 2 |
| W32/Autorun.worm.bm [McAfee] | 2 |
| W32/Autorun-GG [Sophos] | 2 |
| W32/Patched-A [Sophos] | 2 |
| W32/Sality.ad [McAfee] | 2 |
| W32/Virut.gen.a [McAfee] | 2 |
| W32/Virut.n.gen [McAfee] | 2 |
| W32/Virut-W [Sophos] | 2 |
| Win32.Alman.B [PC Tools] | 2 |
| Win32/Alman.C [AhnLab] | 2 |
| Win32/ChiHack.6652 [AhnLab] | 2 |
| Worm.Win32.AutoIt.x [Kaspersky Lab] | 2 |
| Backdoor.Win32.Agent.uwo [Kaspersky Lab] | 1 |
| Mal/Inet-Fam, Mal/Behav-299 [Sophos] | 1 |
| Mal/Swizzor-D, Mal/Airworm-A [Sophos] | 1 |
| Mal/Swizzor-D, Mal/Sohana-A [Sophos] | 1 |
| New Malware.bm [McAfee] | 1 |
| New Poly Win32 [McAfee] | 1 |
| PE_DELZIUM.A [Trend Micro] | 1 |
| PE_FUNLOVE.4099 [Trend Micro] | 1 |
| PE_HUNK.AA [Trend Micro] | 1 |