| Threat Alias | Number of Incidents |
| Trojan:Win32/Alureon.BB [Microsoft] | 7,939 |
| Mal/Generic-A [Sophos] | 5,052 |
| Troj/VcRtHack-A [Sophos] | 1,121 |
| Backdoor.Tidserv!inf [Symantec] | 1,045 |
| DNSChanger.gen [McAfee] | 785 |
| Backdoor.Tidserv!sd6 [PC Tools] | 737 |
| W32/AutoRun-ADF [Sophos] | 658 |
| Trojan:Win32/Alureon.BH [Microsoft] | 349 |
| Trojan:Win32/Alureon.gen!J [Microsoft] | 217 |
| Mal/AdvPatch-A, Mal/Broute-A [Sophos] | 96 |
| Troj/MsvcrtHk-E [Sophos] | 96 |
| Trojan Horse [Symantec] | 94 |
| Backdoor.Tidserv [Symantec] | 57 |
| Mal/EncPk-IF [Sophos] | 56 |
| Trojan.Win32.Agent.apag [Kaspersky Lab] | 56 |
| Troj/MsvcrtHk-B [Sophos] | 52 |
| Packed.Generic.233 [Symantec] | 50 |
| Trojan:Win32/Alureon.DK [Microsoft] | 48 |
| Trojan:Win32/Alureon.gen [Microsoft] | 48 |
| Backdoor.Trojan [Symantec] | 37 |
| Packed.Generic.200 [Symantec] | 37 |
| Troj/MsvcrtHk-C [Sophos] | 32 |
| Win-Trojan/Xema.variant [AhnLab] | 32 |
| Generic FakeAlert!bd [McAfee] | 27 |
| Trojan:Win32/Alureon.BI [Microsoft] | 25 |
| Trojan:Win32/Alureon.CD [Microsoft] | 23 |
| Trojan.Win32.Patched.hb [Kaspersky Lab] | 21 |
| DNSChanger!dd [McAfee] | 18 |
| Packed.Win32.Tdss.w [Kaspersky Lab] | 16 |
| DNSChanger!bb [McAfee] | 15 |
| DNSChanger.r [McAfee] | 15 |
| Trojan:Win32/Alureon.CJ [Microsoft] | 15 |
| Trojan:Win32/Alureon.CO [Microsoft] | 14 |
| Mal/EncPk-GB [Sophos] | 13 |
| Mal/FakeAV-S [Sophos] | 13 |
| Mal/TibsPk-A [Sophos] | 13 |
| Trojan:Win32/Alureon.CT [Microsoft] | 13 |
| Packed.Win32.Tdss.a [Kaspersky Lab] | 12 |
| Rootkit.Win32.TDSS.eyj [Kaspersky Lab] | 12 |
| Backdoor:Win32/Rustock.E [Microsoft] | 11 |
| DNSChanger!bd [McAfee] | 11 |
| Packed.Win32.Tdss.x [Kaspersky Lab] | 11 |
| Trojan:Win32/Alureon.gen!U [Microsoft] | 11 |
| Mal/Alureon-C, Mal/Alureon-B, Mal/FakeAV-S, Mal/FakeVirPk-A [Sophos] | 10 |
| Trojan.Vundo [Symantec] | 10 |
| W32/Autorun-AFM [Sophos] | 10 |
| DNSChanger!y [McAfee] | 9 |
| Mal/Alureon-C, Mal/Alureon-B, Mal/FakeAV-S [Sophos] | 9 |
| Suspicious.Vundo.2 [Symantec] | 9 |
| Trojan.Alureon.Gen [PC Tools] | 9 |
| Trojan.Win32.Scar.ason [Kaspersky Lab] | 9 |
| Trojan:Win32/Alureon.BP [Microsoft] | 9 |
| DNSChanger.gen.a [McAfee] | 8 |
| Packed.Win32.TDSS.z [Kaspersky Lab] | 8 |
| Mal/Alureon-D [Sophos] | 7 |
| Packed.Generic.228 [Symantec] | 7 |
| DNSChanger!bl [McAfee] | 6 |
| Trojan:Win32/Alureon.BT [Microsoft] | 6 |
| Backdoor:WinNT/Rustock.gen!B [Microsoft] | 5 |
| Mal/FakeAV-BP [Sophos] | 5 |
| Mal/TDSS-A [Sophos] | 5 |
| Packed.Win32.Krap.t [Kaspersky Lab] | 5 |
| Packed.Win32.Tdss.c [Kaspersky Lab] | 5 |
| Win-Trojan/Alureon.14336.D [AhnLab] | 5 |
| Backdoor:WinNT/Rustock.I [Microsoft] | 4 |
| DNSChanger!bh [McAfee] | 4 |
| FakeAlert-SpywareGuard.gen.b [McAfee] | 4 |
| Mal/Alureon-B, Mal/FakeAV-S, Mal/FakeVirPk-A [Sophos] | 4 |
| Mal/WaledPak-D [Sophos] | 4 |
| Trojan.Win32.Agent.bknk [Kaspersky Lab] | 4 |
| Trojan.Win32.Tdss.acxc [Kaspersky Lab] | 4 |
| Trojan.Win32.TDSS.aitc [Kaspersky Lab] | 4 |
| Trojan.Win32.TDSS.tzc [Kaspersky Lab] | 4 |
| Trojan:Win32/Alureon.BG [Microsoft] | 4 |
| Trojan:Win32/Alureon.DA [Microsoft] | 4 |
| Vundo [McAfee] | 4 |
| W32.SillyFDC [Symantec] | 4 |
| W32.Tidserv [Symantec] | 4 |
| Win-Trojan/Agent.56320.CM [AhnLab] | 4 |
| Awola [Symantec] | 3 |
| Backdoor.Tidserv [PC Tools] | 3 |
| Mal/BadNSIS [Sophos] | 3 |
| Mal/EncPk-EO [Sophos] | 3 |
| Mal/FakeVirPk-A [Sophos] | 3 |
| Mal/Rustok-B [Sophos] | 3 |
| Mal/UnkPack-Fam [Sophos] | 3 |
| Packed.Win32.TDSS.aa [Kaspersky Lab] | 3 |
| Trojan.Adclicker [Symantec] | 3 |
| Trojan.Win32.TDSS.aimq [Kaspersky Lab] | 3 |
| Trojan.Win32.Tdss.alpt [Kaspersky Lab] | 3 |
| Trojan:Win32/Alureon.DF [Microsoft] | 3 |
| W32.SillyDC [Symantec] | 3 |
| W32/Autorun.worm!bn [McAfee] | 3 |
| Worm.Win32.AutoRun.gah [Kaspersky Lab] | 3 |
| DNSChanger!u [McAfee] | 2 |
| DNSChanger.f.gen.a [McAfee] | 2 |
| DNSChanger.s [McAfee] | 2 |
| DNSChanger.t [McAfee] | 2 |
| Generic FakeAlert!ca [McAfee] | 2 |
| Generic FakeAlert!ci [McAfee] | 2 |