| Threat Alias | Number of Incidents |
| Trojan:Win32/Alureon.gen!J [Microsoft] | 207 |
| Rootkit.Win32.TDSS [Ikarus] | 120 |
| Virus.Win32.Fasec [Ikarus] | 99 |
| Packed.Win32.Tdss.f [Kaspersky Lab] | 98 |
| DNSChanger.r [McAfee] | 93 |
| Rootkit.Win32.TDSS.eyj [Kaspersky Lab] | 78 |
| Packed.Win32.Tdss.c [Kaspersky Lab] | 77 |
| Win-Trojan/Xema.variant [AhnLab] | 72 |
| DNSChanger.f.gen.a [McAfee] | 67 |
| Trojan.Win32.InternetAntivirus [Ikarus] | 67 |
| Trojan:Win32/Alureon.gen [Microsoft] | 59 |
| Generic FakeAlert.k [McAfee] | 56 |
| Trojan.TDss.1 [Ikarus] | 55 |
| Trojan-Downloader.Win32.Renos.AQ [Ikarus] | 55 |
| TrojanDownloader:Win32/Rugzip.A [Microsoft] | 49 |
| Mal/TDSS-A [Sophos] | 48 |
| Mal/Generic-A [Sophos] | 42 |
| Mal/Alureon-C [Sophos] | 40 |
| Mal/FakeVirPk-A [Sophos] | 40 |
| Trojan:Win32/FakeSpyguard [Microsoft] | 40 |
| Trojan.Win32.Alureon [Ikarus] | 37 |
| Mal/TDSS-A, Mal/EncPk-CZ [Sophos] | 34 |
| Trojan:Win32/InternetAntivirus [Microsoft] | 33 |
| DNSChanger.gen [McAfee] | 32 |
| Packed.Win32.Tdss.a [Kaspersky Lab] | 31 |
| Mal/Alureon-C, Mal/FakeVirPk-A [Sophos] | 30 |
| Mal/FakeVirPk-A, Mal/EncPk-CZ [Sophos] | 30 |
| Trojan.Win32.FakeSpyguard [Ikarus] | 25 |
| Mal/EncPk-CZ [Sophos] | 24 |
| Mal/EncPk-GR, Mal/EncPk-GR [Sophos] | 24 |
| Worm.Win32.AutoTDSS [Ikarus] | 23 |
| FakeAlert-SpywareGuard.gen.b [McAfee] | 21 |
| Generic.dx [McAfee] | 19 |
| Trojan:Win32/Sudiet.B [Microsoft] | 19 |
| Trojan:Win32/Alureon.BH [Microsoft] | 18 |
| FakeAlert-AG.gen.a [McAfee] | 17 |
| Generic FakeAlert.h [McAfee] | 17 |
| Mal/TDSSPack-A [Sophos] | 17 |
| Trojan:Win32/Alureon.gen!T [Microsoft] | 17 |
| Packed.Win32.Tdss.m [Kaspersky Lab] | 16 |
| Packed.Win32.TDSS.y [Kaspersky Lab] | 16 |
| TrojanSpy:Win32/Chadem.A [Microsoft] | 16 |
| TrojanDownloader:Win32/FakeIA.A [Microsoft] | 15 |
| Trojan.TDss [Ikarus] | 14 |
| DNSChanger!x [McAfee] | 13 |
| Mal/Alureon-C, Mal/Alureon-B, Mal/FakeAV-S [Sophos] | 13 |
| Mal/Alureon-C, Mal/Alureon-B, Mal/FakeAV-S, Mal/FakeVirPk-A [Sophos] | 13 |
| Mal/FakeVirPk-A, Mal/TDSS-A [Sophos] | 13 |
| HeurEngine.MaliciousPacker [PC Tools] | 12 |
| Packed.Win32.Tdss [Ikarus] | 11 |
| Packed.Win32.Tdss.e [Kaspersky Lab] | 11 |
| Trojan:Win32/Alureon.BG [Microsoft] | 11 |
| Trojan:Win32/Vundo.JC.dll [Microsoft] | 11 |
| Mal/TDSSPack-E [Sophos] | 10 |
| Rootkit.TDSS!sd6 [PC Tools] | 10 |
| Trojan.Win32.TDSS.amwo [Kaspersky Lab] | 10 |
| Trojan:Win32/Alureon.gen!U [Microsoft] | 10 |
| Packed.Win32.Tdss.h [Kaspersky Lab] | 9 |
| Trojan:Win32/Alureon.gen!Q [Microsoft] | 8 |
| TrojanDownloader:Win32/Renos.gen!BC [Microsoft] | 8 |
| Mal/TDSSPack-Q, Mal/TDSSPack-O, Mal/TDSSPack-A [Sophos] | 7 |
| Packed.Win32.Tdss.d [Kaspersky Lab] | 7 |
| Trojan.Fakeav.1 [Ikarus] | 7 |
| TrojanDropper:Win32/Kryptik.B [Microsoft] | 7 |
| DNSChanger!bi [McAfee] | 6 |
| Mal/TDSSPack-E, Mal/Alureon-C [Sophos] | 6 |
| Mal/TDSSPack-J [Sophos] | 6 |
| Mal/TDSSPack-Q, Mal/TDSSPack-A [Sophos] | 6 |
| Program:Win32/FakeWG.A [Microsoft] | 6 |
| Troj/Agent-IPD [Sophos] | 6 |
| Trojan:Win32/Witer.B [Microsoft] | 6 |
| Generic FakeAlert.c [McAfee] | 5 |
| Generic PWS.y [McAfee] | 5 |
| Mal/EncPk-GR, Mal/EncPk-GR, Mal/TDSSPack-E [Sophos] | 5 |
| Mal/TDSSPack-A, Mal/TDSSPack-E, Troj/Virtum-Gen [Sophos] | 5 |
| Mal/TDSSPack-L [Sophos] | 5 |
| Mal/TDSSPack-L, Mal/TDSSPack-K [Sophos] | 5 |
| Mal/TDSSPack-L, Mal/TDSSPack-K, Mal/TDSSPack-J, Mal/TDSSPack-E [Sophos] | 5 |
| Mal/TDSSPack-R, Mal/TDSSPack-Q, Mal/TDSSPack-O, Mal/TDSSPack-A [Sophos] | 5 |
| Rootkit.Win32.TDSS.gxu [Kaspersky Lab] | 5 |
| Trojan.Win32.TDSS.alno [Kaspersky Lab] | 5 |
| Trojan:Win32/Alureon.gen!C [Microsoft] | 5 |
| Backdoor.Win32.TDSS [Ikarus] | 4 |
| Backdoor.Win32.TDSS.awp [Kaspersky Lab] | 4 |
| DNSChanger.f.gen.b [McAfee] | 4 |
| Generic Downloader.x [McAfee] | 4 |
| Generic Obfuscated.a [McAfee] | 4 |
| Mal/Alureon-B, Mal/FakeAV-S, Mal/FakeVirPk-A [Sophos] | 4 |
| Mal/Alureon-C, Mal/FakeVirPk-A, Troj/Virtum-Gen [Sophos] | 4 |
| Mal/Behav-321, Mal/TDSS-A [Sophos] | 4 |
| Mal/FakeAV-AD [Sophos] | 4 |
| Mal/TDSS-A, Mal/FakeVirPk-A [Sophos] | 4 |
| Mal/UnkPack-Fam [Sophos] | 4 |
| Packed.Win32.Krap.d [Kaspersky Lab] | 4 |
| Rootkit.Win32.TDSS.cnk [Kaspersky Lab] | 4 |
| Trojan.Win32.Agent.bknk [Kaspersky Lab] | 4 |
| Trojan.Win32.TDSS.abiu [Kaspersky Lab] | 4 |
| Virus.Win32.Rootkit [Ikarus] | 4 |
| Win-Trojan/Agent.56320.CM [AhnLab] | 4 |
| FakeAlert-CT [McAfee] | 3 |