| Threat Alias | Number of Incidents |
| RogueAntiSpyware.AntivirusXP2008 [PC Tools] | 13 |
| Generic FakeAlert.b [McAfee] | 9 |
| Mal/EncPk-CZ [Sophos] | 9 |
| AntiVirus2008 [Symantec] | 8 |
| AntiVirusXP2008 [Symantec] | 8 |
| FakeAlert-AG.gen.a [McAfee] | 5 |
| Trojan:Win32/Tibs.J [Microsoft] | 5 |
| XPAntivirus [Symantec] | 5 |
| Generic FakeAlert.a [McAfee] | 4 |
| Program:Win32/Antivirus2008 [Microsoft] | 4 |
| Trojan.Fakeavalert [Symantec] | 4 |
| Trojan:Win32/Antivirusxp [Microsoft] | 4 |
| FakeAlert-AB.dldr [McAfee] | 3 |
| Generic PUP.x [McAfee] | 3 |
| Mal/EncPk-EP, Mal/TibsPk-D [Sophos] | 3 |
| Trojan.Packed.13 [Symantec] | 3 |
| Trojan.Peed.JOA [Ikarus] | 3 |
| Downloader.MisleadApp [Symantec] | 2 |
| FakeAlert-AG [McAfee] | 2 |
| not-a-virus:FraudTool.Win32.AntivirusXP2008.bj [Kaspersky Lab] | 2 |
| not-a-virus:FraudTool.Win32.AntivirusXP2008.q [Kaspersky Lab] | 2 |
| not-a-virus:FraudTool.Win32.XPAntivirus.nz [Kaspersky Lab] | 2 |
| Program:Win32/XPAntiVirus [Microsoft] | 2 |
| Troj/FakeAle-EU [Sophos] | 2 |
| Troj/FakeAV-BS [Sophos] | 2 |
| TROJ_FAKEALER.GJ [Trend Micro] | 2 |
| TROJ_FAKEAV.ED [Trend Micro] | 2 |
| TROJ_RENOS.ZQ [Trend Micro] | 2 |
| Trojan:Win32/Meredrop [Microsoft] | 2 |
| TrojanDownloader:Win32/Renos [Microsoft] | 2 |
| TrojanDownloader:Win32/Renos.gen!AQ [Microsoft] | 2 |
| Virus.Win32.Trojan [Ikarus] | 2 |
| FakeAlert-AB [McAfee] | 1 |
| Mal/Generic-A [Sophos] | 1 |
| Malware-Cryptor.Win32.Rp [Ikarus] | 1 |
| not-a-virus:FraudTool.Win32.AntivirusXP2008.aa [Kaspersky Lab] | 1 |
| not-a-virus:FraudTool.Win32.AntivirusXP2008.at [Kaspersky Lab] | 1 |
| not-a-virus:FraudTool.Win32.AntivirusXP2008.bi [Kaspersky Lab] | 1 |
| not-a-virus:FraudTool.Win32.AntivirusXP2008.bk [Kaspersky Lab] | 1 |
| not-a-virus:FraudTool.Win32.AntivirusXP2008.bt [Kaspersky Lab] | 1 |
| not-a-virus:FraudTool.Win32.AntivirusXP2008.ce [Kaspersky Lab] | 1 |
| not-a-virus:FraudTool.Win32.AntivirusXP2008.e [Kaspersky Lab] | 1 |
| not-a-virus:FraudTool.Win32.AntivirusXP2008.u [Kaspersky Lab] | 1 |
| not-a-virus:FraudTool.Win32.AntivirusXP2008.w [Kaspersky Lab] | 1 |
| not-a-virus:FraudTool.Win32.AntivirusXP2008.x [Kaspersky Lab] | 1 |
| not-a-virus:FraudTool.Win32.AntivirusXP2008.y [Kaspersky Lab] | 1 |
| not-a-virus:FraudTool.Win32.MalwareProtector.v [Kaspersky Lab] | 1 |
| not-a-virus:FraudTool.Win32.WinFixer.i [Kaspersky Lab] | 1 |
| not-a-virus:FraudTool.Win32.XPAntivirus.gj [Kaspersky Lab] | 1 |
| not-a-virus:FraudTool.Win32.XPAntivirus.lh [Kaspersky Lab] | 1 |
| not-a-virus:FraudTool.Win32.XPAntivirus.md [Kaspersky Lab] | 1 |
| not-a-virus:FraudTool.Win32.XPAntivirus.nf [Kaspersky Lab] | 1 |
| not-a-virus:FraudTool.Win32.XPAntivirus.ri [Kaspersky Lab] | 1 |
| SpywareGuard2008 [Symantec] | 1 |
| Troj/FakeAle-GK [Sophos] | 1 |
| Troj/FakeAV-AB [Sophos] | 1 |
| Troj/FakeAV-DB [Sophos] | 1 |
| Troj/FakeAV-DN [Sophos] | 1 |
| Troj/FakeVir-DF [Sophos] | 1 |
| Troj/PWS-ASA [Sophos] | 1 |
| TROJ_FAKEALER.DD [Trend Micro] | 1 |
| TROJ_FAKEALER.JC [Trend Micro] | 1 |
| TROJ_FAKEALER.WX [Trend Micro] | 1 |
| TROJ_FAKEALRT.CG [Trend Micro] | 1 |
| TROJ_FAKEALRT.CO [Trend Micro] | 1 |
| TROJ_FAKEAV.AP [Trend Micro] | 1 |
| TROJ_FAKEAV.CW [Trend Micro] | 1 |
| TROJ_FAKEAV.GN [Trend Micro] | 1 |
| TROJ_FAKEAV.HM [Trend Micro] | 1 |
| TROJ_FAKEAV.IF [Trend Micro] | 1 |
| TROJ_FAKEAV.ZP [Trend Micro] | 1 |
| TROJ_FRAUDLOA.UK [Trend Micro] | 1 |
| TROJ_PAKES.GR [Trend Micro] | 1 |
| TROJ_RENOS.AHM [Trend Micro] | 1 |
| TROJ_XPANTIVIR.E [Trend Micro] | 1 |
| Trojan.Blusod [Symantec] | 1 |
| Trojan.FakeAlert [PC Tools] | 1 |
| Trojan.Fakealert.AAM [Ikarus] | 1 |
| Trojan.Fakeavalert!sd6 [PC Tools] | 1 |
| Trojan.Win32.Monder.gen [Kaspersky Lab] | 1 |
| Trojan.Win32.Pakes.jlh [Kaspersky Lab] | 1 |
| Trojan:Win32/Tibs.GK [Microsoft] | 1 |
| Trojan:Win32/Tibs.HM [Microsoft] | 1 |
| Trojan-Downloader.Fraudload!ct [PC Tools] | 1 |
| Trojan-Downloader.Win32.FraudLoad.vadh [Kaspersky Lab] | 1 |
| Trojan-Downloader.Win32.FraudLoad.vadt [Kaspersky Lab] | 1 |
| Trojan-Downloader.Win32.FraudLoad.vaiq [Kaspersky Lab] | 1 |
| TrojanDownloader:Win32/Renos.DX [Microsoft] | 1 |
| Win-Trojan/Fraudload.1214976 [AhnLab] | 1 |
| Win-Trojan/MalCryptedC.Gen [AhnLab] | 1 |