| Threat Alias | Number of Incidents |
| Trojan:Win32/Alureon.BH [Microsoft] | 60 |
| Suspicious.Vundo.2 [Symantec] | 56 |
| Packed.Win32.Tdss [Ikarus] | 43 |
| Mal/Generic-A [Sophos] | 23 |
| Trojan:Win32/Alureon.gen!J [Microsoft] | 23 |
| Trojan.Win32.Alureon [Ikarus] | 16 |
| Trojan:Win32/Alureon.BU [Microsoft] | 14 |
| Win-Trojan/Xema.variant [AhnLab] | 9 |
| Packed.Generic.228 [Symantec] | 6 |
| Vundo!m [McAfee] | 5 |
| Backdoor.Tidserv [Symantec] | 2 |
| Mal/WaledPak-D [Sophos] | 2 |
| Trojan.Crypt [Ikarus] | 2 |
| Win-Trojan/Alureon.44032 [AhnLab] | 2 |
| DNSChanger!u [McAfee] | 1 |
| Generic FakeAlert!a [McAfee] | 1 |
| Rootkit.Win32.Agent.mig [Kaspersky Lab] | 1 |
| Vundo!l [McAfee] | 1 |
| W32.Tidserv [Symantec] | 1 |
| W32/Autorun.worm!bn [McAfee] | 1 |