| Threat Alias | Number of Incidents |
| Troj/FakeAle-FK [Sophos] | 33,499 |
| Application.BluSOD [PC Tools] | 30,465 |
| TrojanDownloader:Win32/Renos [Microsoft] | 26,829 |
| Joke.Blusod [Symantec] | 17,792 |
| Trojan.Blusod [Symantec] | 12,095 |
| Generic PUP.d [McAfee] | 8,479 |
| Trojan.Fakealert.AAI [Ikarus] | 5,143 |
| Mal/EncPk-CZ [Sophos] | 1,955 |
| Packed.Generic.183 [Symantec] | 695 |
| Win-Trojan/Fakeav.118784 [AhnLab] | 556 |
| TROJ_RENOS.ZQ [Trend Micro] | 117 |
| Trojan.FakeAlert [PC Tools] | 54 |
| RogueAntiSpyware.AntivirusXP2008 [PC Tools] | 40 |
| Downloader.MisleadApp [Symantec] | 36 |
| FakeAlert-AQ [McAfee] | 36 |
| MalwareProtector2008 [Symantec] | 36 |
| not-a-virus:FraudTool.Win32.MalwareProtector.d [Kaspersky Lab] | 36 |
| Troj/FakeAV-AQ [Sophos] | 36 |
| Trojan:Win32/Renos.BAH [Microsoft] | 36 |
| Mal/HckPk-A [Sophos] | 27 |
| Downloader-ASH.gen.b [McAfee] | 22 |
| Trojan:Win32/Tibs.J [Microsoft] | 22 |
| Trojan Horse [Symantec] | 18 |
| Trojan.Peed [Ikarus] | 6 |
| Trojan.Desktophijack [Symantec] | 5 |
| AntiVirus2008 [Symantec] | 4 |
| not-a-virus:FraudTool.Win32.AntivirusXP2008.q [Kaspersky Lab] | 4 |
| Troj/FakeAV-BS [Sophos] | 4 |
| TROJ_FAKEALER.HW [Trend Micro] | 4 |
| TROJ_FAKEAV.ED [Trend Micro] | 4 |
| Trojan.Win32.Agent.zeb [Kaspersky Lab] | 4 |
| TrojanDownloader:Win32/Renos.gen!AT [Microsoft] | 4 |
| Packed.Generic.57 [Symantec] | 3 |
| Trojan.Desktophijack!sd6 [PC Tools] | 3 |
| Trojan-Downloader.MisleadApp!sd6 [PC Tools] | 3 |
| TrojanDownloader:Win32/Renos.gen!AS [Microsoft] | 3 |
| Backdoor.Win32.Rukap.f [Ikarus] | 2 |
| Downloader [Symantec] | 2 |
| Mal/TibsPk-F [Sophos] | 2 |
| Possible_Nucrp-5 [Trend Micro] | 2 |
| TROJ_Generic.A [Trend Micro] | 2 |
| Trojan.Fakealert.AAM [Ikarus] | 2 |
| Trojan-Downloader.Win32.Renos.AQ [Ikarus] | 2 |
| Virus:Win32/Grum.E [Microsoft] | 2 |
| Mal/Dorf-C [Sophos] | 1 |
| Mal/Pushdo-A [Sophos] | 1 |
| not-a-virus:FraudTool.Win32.XPAntivirus.qu [Kaspersky Lab] | 1 |
| Packed.Generic.182 [Symantec] | 1 |
| Troj/Alpha-G [Sophos] | 1 |
| Troj/FakeAle-GK [Sophos] | 1 |
| Troj/FakeVir-EW [Sophos] | 1 |
| TROJ_AGENT.AMFX [Trend Micro] | 1 |
| TROJ_AGENT.AQTZ [Trend Micro] | 1 |
| TROJ_AGENT.GVQ [Trend Micro] | 1 |
| TROJ_AGENT.WND [Trend Micro] | 1 |
| TROJ_FAKEALER.BE [Trend Micro] | 1 |
| TROJ_FAKEALER.DB [Trend Micro] | 1 |
| TROJ_FAKEALER.FO [Trend Micro] | 1 |
| TROJ_FAKEVIR.CS [Trend Micro] | 1 |
| TROJ_SMALL.JQP [Trend Micro] | 1 |
| TROJ_SMALL.MAB [Trend Micro] | 1 |
| TROJ_TIBS.AQZ [Trend Micro] | 1 |
| TROJ_TIBS.ARQ [Trend Micro] | 1 |
| TROJ_TIBS.BAG [Trend Micro] | 1 |
| TROJ_TIBS.BVP [Trend Micro] | 1 |
| TROJ_TIBS.BVZ [Trend Micro] | 1 |
| TROJ_TIBS.QM [Trend Micro] | 1 |
| TROJ_TIBS.WZ [Trend Micro] | 1 |
| Trojan.Agent [PC Tools] | 1 |
| Trojan.Blusod!sd6 [PC Tools] | 1 |
| Trojan.Fakeavalert!sd6 [PC Tools] | 1 |
| Trojan.Inject [PC Tools] | 1 |
| Trojan.Pakes!ct [PC Tools] | 1 |
| Trojan.Vundo [Ikarus] | 1 |
| Trojan.Vundo [Symantec] | 1 |
| Trojan.Win32.Agent.yyf [Kaspersky Lab] | 1 |
| Trojan.Win32.Inject.jbe [Kaspersky Lab] | 1 |
| Trojan.Win32.Pakes.jli [Kaspersky Lab] | 1 |
| Trojan:Win32/Antivirusxp [Microsoft] | 1 |
| Trojan:Win32/Busky.EH [Microsoft] | 1 |
| Trojan:Win32/Tibs.GF [Microsoft] | 1 |
| Trojan:Win32/Tibs.GK [Microsoft] | 1 |
| Trojan-Downloader.Agent!sd6 [PC Tools] | 1 |
| Trojan-Downloader.Win32.Agent.aayr [Kaspersky Lab] | 1 |
| Trojan-Downloader.Win32.Agent.ynp [Kaspersky Lab] | 1 |
| Trojan-Downloader.Win32.Small.aaxs [Kaspersky Lab] | 1 |
| Trojan-Downloader.Win32.Small.aaxt [Kaspersky Lab] | 1 |
| Trojan-Downloader.Win32.Small.abhr [Kaspersky Lab] | 1 |
| Trojan-Downloader.Win32.Small.abrs [Kaspersky Lab] | 1 |
| TrojanDownloader:Win32/Renos.gen!AU [Microsoft] | 1 |
| TrojanDownloader:Win32/Renos.gen!AW [Microsoft] | 1 |
| Trojan-Dropper.Kobcka [Ikarus] | 1 |
| Trojan-Dropper.Win32.Delf [Ikarus] | 1 |
| Trojan-Dropper.Win32.Delf.bwe [Kaspersky Lab] | 1 |
| TrojanDropper:Win32/Cutwail.AL [Microsoft] | 1 |
| TrojanDropper:Win32/Umrena.B [Microsoft] | 1 |
| Win-Trojan/Pakes.109056.F [AhnLab] | 1 |
| XPAntivirus [Symantec] | 1 |