| Threat Alias | Number of Incidents |
| W32/YahLover.worm.gen [McAfee] | 184 |
| IM-Worm.Win32.Sohanad [Ikarus] | 178 |
| Trojan.Win32.Autoit.ci [Kaspersky Lab] | 162 |
| Trojan.Autoit [Ikarus] | 161 |
| Worm.Win32.AutoIt [Ikarus] | 142 |
| IM-Worm.Win32.Sohanad.t [Kaspersky Lab] | 138 |
| WORM_SOHANAD.BO [Trend Micro] | 124 |
| W32/Sality-AM [Sophos] | 123 |
| W32/YahLover.worm [McAfee] | 120 |
| Worm:AutoIt/Sohanad.AI [Microsoft] | 120 |
| W32/Sohana-R [Sophos] | 116 |
| W32/AutoIt-AO [Sophos] | 100 |
| Worm.Win32.AutoIt.bg [Kaspersky Lab] | 98 |
| Virus:Win32/Sality.AM [Microsoft] | 95 |
| W32/Autorun.worm.et [McAfee] | 92 |
| Mal/Airworm-A [Sophos] | 85 |
| IM-Worm.Sohanad!sd5 [PC Tools] | 84 |
| W32/Sality.gen [McAfee] | 80 |
| Worm:Win32/Autorun.FH [Microsoft] | 80 |
| WORM_DELF.FKZ [Trend Micro] | 80 |
| Mal/Packer [Sophos] | 77 |
| Mal/Sohana-A [Sophos] | 73 |
| Trojan.Win32.Autoit.eg [Kaspersky Lab] | 72 |
| IM-Worm.Win32.Sohanad.bm [Kaspersky Lab] | 71 |
| W32/SillyFDC-G [Sophos] | 70 |
| Mal_AUMAL-2 [Trend Micro] | 68 |
| Trojan.DL.AutoIt.DO [PC Tools] | 59 |
| WORM_IMAUT.BY [Trend Micro] | 57 |
| Trojan-Downloader.Win32.AutoIt.q [Kaspersky Lab] | 50 |
| Worm:Win32/Nuqel.H [Microsoft] | 49 |
| W32/Hakag-A [Sophos] | 48 |
| WORM_SOHANAD.BZ [Trend Micro] | 48 |
| Win32/Kashu.B [AhnLab] | 45 |
| Worm.AutoIt.dn [PC Tools] | 45 |
| W32/Hakaglan.worm.gen [McAfee] | 44 |
| Win32/Hakaglan.worm.462264 [AhnLab] | 39 |
| Application.Perfect_Keylogger [PC Tools] | 36 |
| PE_SALITY.EN-1 [Trend Micro] | 36 |
| Win32/Sohanad.worm.239905 [AhnLab] | 34 |
| IM-Worm.Win32.Sohanad.gen [Kaspersky Lab] | 32 |
| Trojan.Win32.Autoit [Ikarus] | 32 |
| Virus.Win32.Sality.aa [Kaspersky Lab] | 29 |
| Malware.Imaut [PC Tools] | 28 |
| Trojan-Downloader.Win32.AutoIt.q [Ikarus] | 27 |
| Win32/Autoit.worm.678913 [AhnLab] | 26 |
| Trojan.Win32.Zapchast.mv [Kaspersky Lab] | 25 |
| W32/Sality.ag [McAfee] | 25 |
| Worm:Win32/Sohonad.S [Microsoft] | 25 |
| PE_SALITY.JER [Trend Micro] | 23 |
| Worm.Autoit.DU [PC Tools] | 23 |
| PE_SALITY.EN [Trend Micro] | 22 |
| Trojan-Downloader.Win32.AutoIt.aa [Kaspersky Lab] | 22 |
| PE_SALITY.EK [Trend Micro] | 21 |
| Trojan.Autoit.BF [PC Tools] | 21 |
| Trojan.Win32.Autoit.bm [Kaspersky Lab] | 21 |
| Win-Trojan/Xema.variant [AhnLab] | 19 |
| Worm.Win32.AutoRun [Ikarus] | 18 |
| Trojan.Autoit.CI.14 [Ikarus] | 17 |
| Trojan-Downloader.Win32.AutoIt [Ikarus] | 17 |
| Worm:AutoIt/Sohanad.AQ [Microsoft] | 17 |
| W32.Yautoit [Symantec] | 16 |
| Worm:Win32/Sohanad.K [Microsoft] | 16 |
| W32/Autorun-DB [Sophos] | 15 |
| Worm.Win32.AutoIt.dn [Kaspersky Lab] | 15 |
| Mal/Generic-A [Sophos] | 14 |
| Mal/Sohana-B, Mal/Sohana-A [Sophos] | 14 |
| Trojan.Autoit [PC Tools] | 14 |
| Trojan:Win32/Malagent [Microsoft] | 14 |
| Win32.Sality.AM.Gen [PC Tools] | 14 |
| Win32/Sohanad.worm.617343 [AhnLab] | 14 |
| Worm.Sohanad.R [PC Tools] | 14 |
| Worm.Win32.AutoRun.dkk [Kaspersky Lab] | 13 |
| Backdoor.Win32.Small.fqn [Kaspersky Lab] | 12 |
| W32/AutoRun-IR [Sophos] | 12 |
| W32/Sality.ah [McAfee] | 12 |
| Worm.Autorun.ADN [PC Tools] | 12 |
| WORM_SOHANAD.DX [Trend Micro] | 12 |
| WORM_SOHANAD.FG [Trend Micro] | 12 |
| IM-Worm.Sohanad!sd6 [PC Tools] | 11 |
| Trojan.Jonben.A [PC Tools] | 11 |
| Win32/Autorun.worm.401408 [AhnLab] | 11 |
| Win32/Sohaned.worm.230400 [AhnLab] | 11 |
| not-a-virus:Monitor.Win32.Ardamax.ds [Kaspersky Lab] | 10 |
| Virus.Win32.AutoRun.bm [Ikarus] | 10 |
| W32/Autorun-GG [Sophos] | 10 |
| IM-Worm.Win32.Sohanad.bh [Kaspersky Lab] | 9 |
| Virus.Win32.Sality.z [Kaspersky Lab] | 9 |
| W32/Autorun.worm.cs [McAfee] | 9 |
| W32/Sohana-AO [Sophos] | 9 |
| Win-Trojan/AutoRun.267085 [AhnLab] | 9 |
| Worm.AutoIt.s [PC Tools] | 9 |
| Troj/Dloadr-BHO [Sophos] | 8 |
| Virus.Win32.Sality [Ikarus] | 8 |
| W32/Autorun.worm.dt [McAfee] | 8 |
| Worm.Sohanad.AU [PC Tools] | 8 |
| WORM_IMAUT.HB [Trend Micro] | 8 |
| Email-Worm.Win32.Brontok.ab [Ikarus] | 7 |
| VirTool:Win32/ModTool.A [Microsoft] | 7 |
| Virus.Win32.Alman [Ikarus] | 7 |
| W32/Sality.ao [McAfee] | 7 |