| Threat Alias | Number of Incidents |
| not-a-virus:FraudTool.Win32.InternetAntivirusPro [Ikarus] | 213 |
| Mal/FakeAV-M [Sophos] | 161 |
| not-a-virus:FraudTool.Win32.InternetAntivirusPro.l [Kaspersky Lab] | 148 |
| not-a-virus:FraudTool.Win32.InternetAntivirusPro.aa [Kaspersky Lab] | 98 |
| Generic FakeAlert.n [McAfee] | 88 |
| Trojan:Win32/InternetAntivirus [Microsoft] | 71 |
| Program:Win32/InternetAntivirus [Microsoft] | 13 |
| Generic PUP.x!cd [McAfee] | 12 |
| RogueAntiSpyware.InternetAntivirus [PC Tools] | 12 |
| Trojan.Win32.FakeAV [Ikarus] | 12 |
| FakeAlert-AB [McAfee] | 11 |
| Mal/Generic-A [Sophos] | 10 |
| Generic.Win32.Malware.InternetAntivirus [Ikarus] | 8 |
| Generic Downloader.x [McAfee] | 7 |
| FakeAlert-AB.gen.e [McAfee] | 6 |
| Trojan.Win32.InternetAntivirus [Ikarus] | 6 |
| Trojan-Downloader.Win32.FraudLoad [Ikarus] | 6 |
| not-a-virus:.FraudTool [Ikarus] | 4 |
| not-a-virus:FraudTool.Win32.InternetAntivirusPro.m [Kaspersky Lab] | 4 |
| RogueAntiSpyware.InternetAntiVirus [PC Tools] | 4 |
| FakeAlert-AB.gen.f [McAfee] | 3 |
| Packed.Win32.TDSS.y [Kaspersky Lab] | 3 |
| Rootkit.Win32.TDSS [Ikarus] | 3 |
| Trojan.Win32.FraudPack [Ikarus] | 3 |
| DNSChanger.r [McAfee] | 2 |
| not-a-virus:FraudTool.Win32.InternetAntivirusPro.aj [Kaspersky Lab] | 2 |
| Packed.Win32.Tdss.f [Kaspersky Lab] | 2 |
| Troj/Agent-IEI [Sophos] | 2 |
| Trojan-Downloader.Win32.Delf.ppt [Kaspersky Lab] | 2 |
| Win-Trojan/Xema.variant [AhnLab] | 2 |
| Backdoor.Tidserv [Symantec] | 1 |
| DNSChanger.f.gen.a [McAfee] | 1 |
| Mal/EncPk-CZ [Sophos] | 1 |
| Mal/FakeAV-AC [Sophos] | 1 |
| Mal/TDSSPack-E, Mal/TDSSPack-F [Sophos] | 1 |
| Mal/TDSSPack-J, Mal/TDSSPack-E, Mal/TDSSPack-F [Sophos] | 1 |
| Mal/TDSSPack-Q [Sophos] | 1 |
| not-a-virus:FraudTool.Win32.Devushka.o [Kaspersky Lab] | 1 |
| not-a-virus:FraudTool.Win32.InternetAntivirus.a [Kaspersky Lab] | 1 |
| not-a-virus:FraudTool.Win32.InternetAntivirus.d [Kaspersky Lab] | 1 |
| not-a-virus:FraudTool.Win32.InternetAntivirus.dn [Kaspersky Lab] | 1 |
| not-a-virus:FraudTool.Win32.InternetAntivirus.i [Kaspersky Lab] | 1 |
| not-a-virus:FraudTool.Win32.InternetAntivirus.m [Kaspersky Lab] | 1 |
| not-a-virus:FraudTool.Win32.InternetAntivirusPro.a [Kaspersky Lab] | 1 |
| not-a-virus:FraudTool.Win32.InternetAntivirusPro.ai [Kaspersky Lab] | 1 |
| not-a-virus:FraudTool.Win32.InternetAntivirusPro.f [Kaspersky Lab] | 1 |
| not-a-virus:FraudTool.Win32.InternetAntivirusPro.j [Kaspersky Lab] | 1 |
| Packed.Win32.Tdss.c [Kaspersky Lab] | 1 |
| TROJ_FAKEALER.FY [Trend Micro] | 1 |
| TROJ_FAKEAV.LS [Trend Micro] | 1 |
| Trojan.Generic [Ikarus] | 1 |
| Trojan.Win32.FakeAV.h [Kaspersky Lab] | 1 |
| Trojan.Win32.FraudPack.gqg [Kaspersky Lab] | 1 |
| Trojan.Win32.FraudPack.grg [Kaspersky Lab] | 1 |
| Trojan.Win32.FraudPack.ltg [Kaspersky Lab] | 1 |
| Trojan.Win32.Tdss.ypi [Kaspersky Lab] | 1 |
| Trojan-Downloader.Delf!sd6 [PC Tools] | 1 |
| Trojan-Downloader.Win32.Delf [Ikarus] | 1 |
| Trojan-Downloader.Win32.Delf.ppt [Ikarus] | 1 |
| Trojan-Downloader.Win32.FraudLoad.cvd [Kaspersky Lab] | 1 |
| Trojan-Downloader.Win32.FraudLoad.fpj [Kaspersky Lab] | 1 |
| Trojan-Downloader.Win32.FraudLoad.vbpi [Kaspersky Lab] | 1 |
| Trojan-Downloader.Win32.FraudLoad.vcci [Kaspersky Lab] | 1 |
| Trojan-Downloader.Win32.FraudLoad.vctp [Kaspersky Lab] | 1 |
| Trojan-Downloader.Win32.FraudLoad.vczx [Kaspersky Lab] | 1 |
| Trojan-Downloader.Win32.FraudLoad.vdif [Kaspersky Lab] | 1 |
| Trojan-Downloader.Win32.FraudLoad.vdre [Kaspersky Lab] | 1 |
| Trojan-Downloader.Win32.FraudLoad.vdrr [Kaspersky Lab] | 1 |
| Trojan-Downloader.Win32.FraudLoad.vdvk [Kaspersky Lab] | 1 |
| TrojanSpy:Win32/Chadem.A [Microsoft] | 1 |
| Virus.Virut.BX [PC Tools] | 1 |
| Win-Trojan/Fakealert.2069254 [AhnLab] | 1 |