| Threat Alias | Number of Incidents |
| Backdoor.Paproxy [Symantec] | 9 |
| Mal/EncPk-CZ [Sophos] | 3 |
| Spy-Agent.bw [McAfee] | 3 |
| Generic.dx [McAfee] | 2 |
| Trojan:Win32/Zbot.BF [Microsoft] | 2 |
| Trojan-Spy.Win32.Zbot [Ikarus] | 2 |
| Trojan-Spy.Win32.Zbot.edw [Kaspersky Lab] | 2 |
| TSPY_ZBOT.RR [Trend Micro] | 2 |
| Dropper/HideProc.20912 [AhnLab] | 1 |
| Generic BackDoor!t [McAfee] | 1 |
| Generic Downloader.z [McAfee] | 1 |
| Generic Dropper.cc [McAfee] | 1 |
| Mal/EncPk-HJ [Sophos] | 1 |
| Mal/Generic-A [Sophos] | 1 |
| Mal/Packer [Sophos] | 1 |
| Mal/TinyDL-T [Sophos] | 1 |
| Mal/Zbot-E, Mal/EncPk-CZ [Sophos] | 1 |
| NTRootKit-H [McAfee] | 1 |
| Packed.Generic.187 [Symantec] | 1 |
| Program:Win32/XPAntiVirus [Microsoft] | 1 |
| PWS:Win32/Zbot.gen!B [Microsoft] | 1 |
| PWS-Zbot [McAfee] | 1 |
| Rootkit.Win32.HideProc.l [Kaspersky Lab] | 1 |
| Troj/Spy-AS [Sophos] | 1 |
| TROJ_ZBOT.SA [Trend Micro] | 1 |
| Trojan.Win32.Delf.ljr [Kaspersky Lab] | 1 |
| Trojan:Win32/Zbot.AT [Microsoft] | 1 |
| Trojan-Dropper.Agent [Ikarus] | 1 |
| Trojan-Mailfinder.Win32.Agent.ux [Kaspersky Lab] | 1 |
| Trojan-Spy.Win32.Banker.enw [Ikarus] | 1 |
| Trojan-Spy.Win32.Zbot.dji [Kaspersky Lab] | 1 |
| Trojan-Spy.Win32.Zbot.dkf [Ikarus] | 1 |
| Trojan-Spy.Win32.Zbot.dkf [Kaspersky Lab] | 1 |
| Trojan-Spy.Win32.Zbot.dyx [Kaspersky Lab] | 1 |
| Trojan-Spy.Win32.Zbot.eks [Kaspersky Lab] | 1 |
| Trojan-Spy.Win32.Zbot.mun [Kaspersky Lab] | 1 |
| TSPY_ZBOT.OJ [Trend Micro] | 1 |
| TSPY_ZBOT.PF [Trend Micro] | 1 |
| TSPY_ZBOT.TD [Trend Micro] | 1 |
| Virus.Win32.Sality [Ikarus] | 1 |
| Win32/IRCBot.worm.variant [AhnLab] | 1 |
| Win-Trojan/Prh.383522 [AhnLab] | 1 |
| Win-Trojan/Zbot.61952.B [AhnLab] | 1 |