| Threat Alias | Number of Incidents |
| Troj/AdvHack-A [Sophos] | 27,144 |
| Backdoor.Tidserv!inf [Symantec] | 25,019 |
| Trojan:Win32/Alureon.BB [Microsoft] | 23,616 |
| DNSChanger.o [McAfee] | 20,520 |
| Trojan.Fakeavalert!sd6 [PC Tools] | 20,232 |
| Trojan.Win32.Patched.dy [Kaspersky Lab] | 18,000 |
| Packed.Win32.PePatch [Ikarus] | 12,672 |
| Generic.dx [McAfee] | 11,830 |
| Trojan.Fakeavalert [Symantec] | 9,360 |
| Trojan.Patched.CL [Ikarus] | 8,928 |
| Trojan.FakeAlert [PC Tools] | 6,624 |
| Trojan.SillyWorm [PC Tools] | 6,048 |
| Generic BackDoor.t [McAfee] | 2,592 |
| Packed.Win32.PePatch.lb [Kaspersky Lab] | 2,232 |
| W32/Autorun-KO [Sophos] | 1,440 |
| Trojan.Patched.CK [Ikarus] | 1,152 |
| Trojan.Knowedel [Symantec] | 720 |
| Worm.Autorun.ABH [PC Tools] | 648 |
| Trojan.TDSServ [PC Tools] | 216 |
| Trojan.Bankpatch.C!inf [Symantec] | 121 |
| Troj/MsvcrtHk-B [Sophos] | 92 |
| Trojan.Win32.Patched.hb [Kaspersky Lab] | 92 |
| Trojan:Win32/Alureon.CD [Microsoft] | 92 |
| Troj/User32Hk-A [Sophos] | 85 |
| Trojan.Patched!sd6 [PC Tools] | 77 |
| Trojan.Win32.Patched.ex [Kaspersky Lab] | 65 |
| Virus:Win32/Mariofev.A [Microsoft] | 51 |
| Trojan.Win32.Patched.bb [Kaspersky Lab] | 48 |
| Troj/Banker-EOI [Sophos] | 44 |
| Trojan.Win32.Patched.dr [Kaspersky Lab] | 36 |
| Patched User32 [McAfee] | 35 |
| Virus:Win32/Adept.A [Microsoft] | 32 |
| DNSChanger.gen [McAfee] | 25 |
| Troj/VcRtHack-A [Sophos] | 25 |
| Trojan.Win32.Patched.fl [Kaspersky Lab] | 25 |
| Trojan:Win32/Alureon.BI [Microsoft] | 25 |
| Trojan.Patchep!inf [Symantec] | 22 |
| Trojan.Win32.Patched.oe [Kaspersky Lab] | 22 |
| PE_PATCHEP.A [Trend Micro] | 21 |
| TrojanDownloader:Win32/Donise.C!patched [Microsoft] | 21 |
| W32/Liger-A [Sophos] | 21 |
| W32/PEPatcher.c [McAfee] | 21 |
| Trojan.Win32.Patched.aa [Kaspersky Lab] | 19 |
| Win32/Liger [AhnLab] | 19 |
| Win32.Agent.IMP [PC Tools] | 17 |
| Generic.dx!cx [McAfee] | 16 |
| Trojan.Bankpatch!sd6 [PC Tools] | 16 |
| Trojan.Win32.Patched.gr [Kaspersky Lab] | 16 |
| Virus.Win32.Adept [Ikarus] | 16 |
| PE_PATCHED.HT [Trend Micro] | 15 |
| Win-Trojan/User32Hk [AhnLab] | 15 |
| Trojan.Win32.Patched.ay [Ikarus] | 12 |
| Trojan.Win32.Patched.dj [Kaspersky Lab] | 12 |
| W32.Slugin.A!inf [Symantec] | 12 |
| PE_PATCHEP.B [Trend Micro] | 11 |
| Virus:Win32/Slugin.A [Microsoft] | 11 |
| W32.Virut.CF [Symantec] | 11 |
| Backdoor.Trojan [Symantec] | 10 |
| Trojan.Win32.Patched.bz [Kaspersky Lab] | 10 |
| Virus.Win32.Virut.ce [Kaspersky Lab] | 10 |
| Mal/Generic-A [Sophos] | 8 |
| Virus:Win32/Virut.BM [Microsoft] | 8 |
| W32/Slugin-A [Sophos] | 8 |
| W32/Scribble-B [Sophos] | 7 |
| Worm:Win32/Mariofev.A [Microsoft] | 7 |
| PE_WPLUG.A [Trend Micro] | 6 |
| W32/Wplugin [McAfee] | 6 |
| W32/Wplugin.dll [McAfee] | 6 |
| Backdoor.Tidserv [Symantec] | 5 |
| Trojan:Win32/Alureon.BP [Microsoft] | 5 |
| Virus:Win32/Patched.E [Microsoft] | 5 |
| W32/Autorun-AFM [Sophos] | 5 |
| W32/Virut.n.gen [McAfee] | 5 |
| Win32/Virut.E [AhnLab] | 5 |
| Win-Trojan/DNSChanger.343040 [AhnLab] | 5 |
| New Win32.g3 [McAfee] | 4 |
| Trojan.Win32.Patched.bb [Ikarus] | 4 |
| Trojan.Win32.Patched.cx [Kaspersky Lab] | 4 |
| Trojan.Win32.Patched.ev [Kaspersky Lab] | 4 |
| Trojan.Win32.Patched.go [Kaspersky Lab] | 4 |
| Trojan:Win32/Patcher.B [Microsoft] | 4 |
| Trojan-Dropper.Agent.YAT [PC Tools] | 4 |
| W32/LibHack-A [Sophos] | 4 |
| Win32/Slugin [AhnLab] | 4 |
| Trojan.Generic [Ikarus] | 3 |
| Trojan.Win32.Patched.fb [Kaspersky Lab] | 3 |
| W32/Patcher [McAfee] | 3 |
| W32/Scribble-A [Sophos] | 3 |
| W32/Virut.n [McAfee] | 3 |
| Win-Trojan/Patched.J [AhnLab] | 3 |
| DNSChanger!bl [McAfee] | 2 |
| New Win32 [McAfee] | 2 |
| PWS-Banker [McAfee] | 2 |
| Troj/Patch-J [Sophos] | 2 |
| Trojan.Win32.Patched.ek [Kaspersky Lab] | 2 |
| Trojan.Win32.Patched.em [Kaspersky Lab] | 2 |
| Trojan.Win32.Patched.er [Kaspersky Lab] | 2 |
| Trojan.Win32.Patched.ew [Kaspersky Lab] | 2 |
| Trojan.Win32.Patched.fr [Kaspersky Lab] | 2 |
| Virus:Win32/Virut.gen!E [Microsoft] | 2 |