| Threat Alias | Number of Incidents |
| W32/Autorun.worm.b [McAfee] | 136 |
| Troj/Qhost-O [Sophos] | 104 |
| Virus.Win32.Agent.GZY [Ikarus] | 31 |
| New Malware.bx [McAfee] | 30 |
| not-a-virus:AdWare.Win32.Agent.dyp [Kaspersky Lab] | 25 |
| New Malware.dq [McAfee] | 18 |
| Packer.Expressor.B [Ikarus] | 18 |
| Adware.Agent!sd6 [PC Tools] | 15 |
| not-a-virus:RiskTool.Win32.HideProc.c [Kaspersky Lab] | 15 |
| not-a-virus:RiskTool.Win32.HideProc.c [Ikarus] | 13 |
| W32.SillyFDC [Symantec] | 11 |
| Virus.Win32.AutoRun.ain [Kaspersky Lab] | 8 |
| Win-Trojan/Autorun.71168.B [AhnLab] | 7 |
| Mal/Generic-A [Sophos] | 6 |
| Trojan.Dropper [Symantec] | 5 |
| Trojan.Win32.Agent.aebe [Kaspersky Lab] | 4 |
| Trojan.Win32.Small.xup [Kaspersky Lab] | 4 |
| Trojan-Downloader.Win32.VB.hqj [Kaspersky Lab] | 4 |
| Trojan-Downloader.Win32.Agent.aiux [Kaspersky Lab] | 3 |
| Generic Qhost [McAfee] | 2 |
| Suspicious.MH690 [Symantec] | 2 |
| Trojan-Downloader.Win32.VB.gja [Kaspersky Lab] | 2 |
| Trojan-Spy.Win32.Agent.ccb [Ikarus] | 2 |
| W32.Gammima [Symantec] | 2 |
| W32/Autorun.worm.gen [McAfee] | 2 |
| Worm.Win32.AutoRun.acua [Kaspersky Lab] | 2 |
| Downloader [Symantec] | 1 |
| Mal/Packer [Sophos] | 1 |
| not-a-virus:Server-Proxy.Win32.CCProxy.63 [Kaspersky Lab] | 1 |
| PWS-Lineage.dr [McAfee] | 1 |
| TROJ_QHOST.MM [Trend Micro] | 1 |
| Trojan.Win32.Agent.byje [Kaspersky Lab] | 1 |
| Trojan.Win32.Agent2.gnq [Kaspersky Lab] | 1 |
| Trojan.Win32.FlyStudio.bz [Kaspersky Lab] | 1 |
| Trojan-Downloader.Agent!sd6 [PC Tools] | 1 |
| Trojan-Downloader.Win32.VB.hfn [Kaspersky Lab] | 1 |
| Trojan-Downloader.Win32.VB.hsx [Kaspersky Lab] | 1 |
| Trojan-Dropper.Agent [Ikarus] | 1 |
| Trojan-Dropper.Win32.Agent.yhq [Kaspersky Lab] | 1 |
| Trojan-Spy.Win32.Agent.ccb [Kaspersky Lab] | 1 |
| W32/AutoRun-AZ [Sophos] | 1 |
| Worm.Win32.AutoRun.llx [Kaspersky Lab] | 1 |
| Worm.Win32.AutoRun.min [Kaspersky Lab] | 1 |
| Worm.Win32.Fujack [Ikarus] | 1 |