| Threat Alias | Number of Incidents |
| Adware.Lop [Symantec] | 205 |
| Generic FakeAlert.k [McAfee] | 197 |
| TrojanSpy:Win32/Chadem.A [Microsoft] | 161 |
| Win-Trojan/Tdss.30208 [AhnLab] | 112 |
| Mal/Generic-A [Sophos] | 38 |
| Mal/TDSSPack-Q [Sophos] | 28 |
| Packed.Generic.200 [Symantec] | 16 |
| FakeAlert-SpywareGuard.gen.b [McAfee] | 12 |
| Mal/TDSSPack-A [Sophos] | 11 |
| Trojan.Crypt [Ikarus] | 11 |
| Rootkit.Win32.TDSS [Ikarus] | 10 |
| Trojan.Fakeavalert [Symantec] | 10 |
| Trojan:Win32/Alureon.BD [Microsoft] | 9 |
| Trojan:Win32/Alureon.gen!J [Microsoft] | 8 |
| Mal/TDSSPack-Q, Mal/TDSSPack-O, Mal/TDSSPack-A [Sophos] | 7 |
| Trojan:Win32/InternetAntivirus [Microsoft] | 7 |
| Win-Trojan/Xema.variant [AhnLab] | 6 |
| BackDoor-CQD!a [McAfee] | 5 |
| Trojan-Downloader.Win32.CodecPack.ilv [Kaspersky Lab] | 5 |
| Win-Trojan/Fakeav.83968 [AhnLab] | 5 |
| Mal/TDSSPack-L, Mal/TDSSPack-K [Sophos] | 4 |
| Mal/TDSSPack-R, Mal/TDSSPack-Q, Mal/TDSSPack-O, Mal/TDSSPack-A [Sophos] | 4 |
| Trojan Horse [Symantec] | 4 |
| Trojan.Win32.FraudPack.pfw [Kaspersky Lab] | 4 |
| Trojan-Downloader.Win32.Injecter.ddn [Kaspersky Lab] | 4 |
| Mal/TDSSPack-Q, Mal/TDSSPack-A [Sophos] | 2 |
| Trojan.Win32.Tdss.anrd [Kaspersky Lab] | 2 |
| Trojan-Downloader.Win32.FraudLoad.exm [Kaspersky Lab] | 2 |
| Trojan-Dropper.Win32.Winwebsec [Ikarus] | 2 |
| FakeAlert-CT [McAfee] | 1 |
| FakeAlert-EZ [McAfee] | 1 |
| Mal/TDSSPack-Q, Mal/FakeAV-BP, Mal/TDSSPack-O [Sophos] | 1 |
| Mal/TDSSPack-R, Mal/EncPk-KG, Mal/TDSSPack-Q, Mal/TDSSPack-A [Sophos] | 1 |
| Trojan.Metajuan [Symantec] | 1 |
| Trojan.Midgare.EYZ [PC Tools] | 1 |
| Trojan:Win32/Alureon.gen!N [Microsoft] | 1 |
| Trojan:Win32/Alureon.gen!T [Microsoft] | 1 |
| Trojan-Downloader.Win32.FraudLoad.wfpz [Kaspersky Lab] | 1 |
| TrojanDownloader:Win32/Rugzip.A [Microsoft] | 1 |
| TrojanDropper:Win32/Insnot.gen!A [Microsoft] | 1 |
| Trojan-Ransom [Ikarus] | 1 |
| Win-Trojan/Xema.30208.J [AhnLab] | 1 |