| Threat Alias | Number of Incidents |
| Trojan:Win32/Alureon.BP [Microsoft] | 3,511 |
| Backdoor.Tidserv [Symantec] | 3,345 |
| W32/Autorun-AFM [Sophos] | 2,807 |
| Trojan.Win32.Patched.go [Kaspersky Lab] | 1,983 |
| Trojan:Win32/Alureon.BB [Microsoft] | 1,404 |
| Win-Trojan/DNSChanger.343040 [AhnLab] | 929 |
| Troj/VcRtHack-A [Sophos] | 805 |
| Backdoor.Tidserv!inf [Symantec] | 737 |
| Trojan.Win32.Alureon [Ikarus] | 737 |
| DNSChanger.gen [McAfee] | 534 |
| DNSChanger!d [McAfee] | 243 |
| DNSChanger!q [McAfee] | 96 |
| DNSChanger!n [McAfee] | 24 |
| Troj/MsvcrtHk-C [Sophos] | 23 |
| Trojan:Win32/Alureon.gen!J [Microsoft] | 7 |
| Generic FakeAlert.d [McAfee] | 5 |
| Mal/EncPk-EQ [Sophos] | 5 |
| TrojanDownloader:Win32/Renos [Microsoft] | 5 |
| Backdoor.Win32.UltimateDefender [Ikarus] | 4 |
| Mal/EncPk-CZ [Sophos] | 4 |
| Trojan.Win32.Tdss [Ikarus] | 4 |
| Win-Trojan/Xema.variant [AhnLab] | 4 |
| FakeAlert-AG.gen.a [McAfee] | 3 |
| not-a-virus:FraudTool.Win32.XPSecurityCenter.ai [Kaspersky Lab] | 3 |
| TROJ_MALBEHV.MCS [Trend Micro] | 3 |
| Trojan-Downloader.Win32.Renos.AQ [Ikarus] | 3 |
| Backdoor.Win32.UltimateDefender.gen [Kaspersky Lab] | 2 |
| BackDoor-DVU [McAfee] | 2 |
| Generic.dx [McAfee] | 2 |
| Mal/TDSS-A, Mal/EncPk-CZ [Sophos] | 2 |
| Troj/Tdss-A [Sophos] | 2 |
| TROJ_DLOADR.RS [Trend Micro] | 2 |
| Backdoor.Win32.TDSS.aak [Kaspersky Lab] | 1 |
| Backdoor.Win32.TDSS.aef [Ikarus] | 1 |
| Backdoor.Win32.TDSS.aef [Kaspersky Lab] | 1 |
| Backdoor.Win32.TDSS.ael [Kaspersky Lab] | 1 |
| Backdoor.Win32.TDSS.agk [Kaspersky Lab] | 1 |
| Backdoor.Win32.TDSS.arn [Kaspersky Lab] | 1 |
| Backdoor.Win32.TDSS.arp [Kaspersky Lab] | 1 |
| Backdoor.Win32.TDSS.asz [Kaspersky Lab] | 1 |
| Backdoor.Win32.TDSS.atb [Kaspersky Lab] | 1 |
| Backdoor.Win32.TDSS.bpi [Kaspersky Lab] | 1 |
| Backdoor.WinNT.Nuwar.D [Ikarus] | 1 |
| DNSChanger.f.gen.a [McAfee] | 1 |
| Downloader-BON [McAfee] | 1 |
| FakeAlert-AB.dldr [McAfee] | 1 |
| Generic BackDoor [McAfee] | 1 |
| Generic Dropper.bw [McAfee] | 1 |
| Generic.dx!w [McAfee] | 1 |
| Mal/Behav-321, Mal/TDSS-A, Mal/EncPk-CZ [Sophos] | 1 |
| Mal/EncPk-GU [Sophos] | 1 |
| Mal/Generic-A [Sophos] | 1 |
| Mal/RootKit-Fam [Sophos] | 1 |
| Mal/TDSS-A [Sophos] | 1 |
| Mal/TDSS-Fam [Sophos] | 1 |
| not-a-virus:FraudTool.Win32.XPSecurityCenter [Ikarus] | 1 |
| Packed.Win32.Krap.d [Kaspersky Lab] | 1 |
| Packed.Win32.Krap.e [Kaspersky Lab] | 1 |
| PE_PATCHED.ET [Trend Micro] | 1 |
| Rootkit.Win32.TDSS [Ikarus] | 1 |
| Troj/AdvHack-A [Sophos] | 1 |
| Troj/Rootkit-ED [Sophos] | 1 |
| Troj/Tdss-C [Sophos] | 1 |
| TROJ_AGENT.BJIA [Trend Micro] | 1 |
| Trojan.Patched.CK [Ikarus] | 1 |
| Trojan.TDss.1 [Ikarus] | 1 |
| Trojan.TDss.E [Ikarus] | 1 |
| Trojan.Virantix.C [Symantec] | 1 |
| Trojan.Vundo [Ikarus] | 1 |
| Trojan.Win32.Alureon.J [Ikarus] | 1 |
| Trojan.Win32.Patched.dw [Kaspersky Lab] | 1 |
| Trojan.Win32.Shutdowner.bqq [Kaspersky Lab] | 1 |
| Trojan.Win32.Tdss.aazb [Kaspersky Lab] | 1 |
| Trojan.Win32.TDSS.uda [Kaspersky Lab] | 1 |
| Trojan.Win32.Tdss.vlf [Kaspersky Lab] | 1 |
| Trojan.Win32.Tdss.zdr [Kaspersky Lab] | 1 |
| Trojan:Win32/Alureon.BE [Microsoft] | 1 |
| Trojan:Win32/Alureon.BJ [Microsoft] | 1 |
| Trojan:Win32/Alureon.gen!S [Microsoft] | 1 |
| Trojan:Win32/Sudiet.B [Microsoft] | 1 |
| Trojan:WinNT/Alureon.C [Microsoft] | 1 |
| Trojan:WinNT/Alureon.D [Microsoft] | 1 |
| Trojan:WinNT/Tibs.gen!A [Microsoft] | 1 |
| TrojanDropper:Win32/Agent.UM [Microsoft] | 1 |
| Trojan-Spy.Win32.Chadem [Ikarus] | 1 |
| TrojanSpy:Win32/Chadem.A [Microsoft] | 1 |
| W32.SillyDC [Symantec] | 1 |
| Win-Trojan/Agent.29696.KC [AhnLab] | 1 |
| Win-Trojan/Agent.31232.XB [AhnLab] | 1 |
| Win-Trojan/Tidserv.130560 [AhnLab] | 1 |