| Threat Alias | Number of Incidents |
| Trojan:Win32/Tibs.gen!lds [Microsoft] | 1,463 |
| Trojan.Fakeavalert [Symantec] | 669 |
| Trojan.Fakeavalert!sd6 [PC Tools] | 539 |
| Trojan:Win32/Tibs.gen!ldr [Microsoft] | 510 |
| Generic.dx [McAfee] | 509 |
| Troj/FakeAle-LT [Sophos] | 483 |
| Trojan-Downloader.Win32.FraudLoad.dmv [Kaspersky Lab] | 483 |
| Mal/TibsPak [Sophos] | 441 |
| Backdoor.Frauder!sd6 [PC Tools] | 432 |
| Trojan:Win32/Tibs.IH [Microsoft] | 432 |
| Troj/FakeVir-GJ [Sophos] | 390 |
| Tibs-Packed [McAfee] | 365 |
| Backdoor.Win32.Frauder.lp [Kaspersky Lab] | 288 |
| Backdoor.Win32.Frauder.lr [Kaspersky Lab] | 234 |
| Mal/Generic-A [Sophos] | 224 |
| Generic Downloader.x [McAfee] | 216 |
| Trojan-Downloader.Win32.Hoaxer.a [Kaspersky Lab] | 175 |
| Trojan:Win32/Tibs.IF [Microsoft] | 170 |
| FakeAlert-XPPoliceAnti [McAfee] | 108 |
| Trojan-Downloader.Win32.FraudLoad.dwm [Kaspersky Lab] | 90 |
| Trojan Horse [Symantec] | 89 |
| Downloader [Symantec] | 85 |
| Trojan:Win32/Tibs.IT [Microsoft] | 74 |
| Downloader.MisleadApp [Symantec] | 61 |
| Trojan-Downloader.Win32.FraudLoad.vnay [Kaspersky Lab] | 56 |
| Trojan-Downloader.Hoaxer!sd6 [PC Tools] | 52 |
| Trojan:Win32/Insebro.B [Microsoft] | 36 |
| Win-Trojan/Fraudload.30208.G [AhnLab] | 36 |
| Trojan-Downloader.FraudLoad!sd6 [PC Tools] | 34 |
| AntiVirus2009 [Symantec] | 32 |
| Mal/FakeVirPk-A, Mal/TibsPak [Sophos] | 32 |
| Trojan:Win32/Insebro.C [Microsoft] | 30 |
| Win-Trojan/Fraudload.27136.B [AhnLab] | 28 |
| SecurityRisk.Downldr [Symantec] | 25 |
| Trojan-Downloader.Win32.FraudLoad.ddd [Kaspersky Lab] | 25 |
| Win-Trojan/Fakeav.19968 [AhnLab] | 23 |
| Generic PUP.x [McAfee] | 18 |
| Trojan:Win32/Fakeinit [Microsoft] | 16 |
| Trojan:Win32/Tibs.JE [Microsoft] | 16 |
| FakeAlert-CC [McAfee] | 14 |
| Mal/FakeVirPk-A [Sophos] | 14 |
| Mal/Dorf-E [Sophos] | 11 |
| Trojan.Zlob [Symantec] | 11 |
| Exploit.Win32.IMG-WMF.je [Kaspersky Lab] | 10 |
| Win-Trojan/Img-wmf.46080.C [AhnLab] | 10 |
| Exploit.Win32.IMG-WMF.na [Kaspersky Lab] | 9 |
| not-a-virus:FraudTool.Win32.Agent.jc [Kaspersky Lab] | 9 |
| RealAV [Symantec] | 9 |
| Troj/FakeAV-KT [Sophos] | 9 |
| Trojan:Win32/Tibs.IU [Microsoft] | 9 |
| Trojan-Downloader.Win32.FraudLoad.ddk [Kaspersky Lab] | 9 |
| Backdoor.Win32.Frauder.oc [Kaspersky Lab] | 8 |
| SpywareProtect2009 [Symantec] | 8 |
| Troj/Agent-IPQ [Sophos] | 8 |
| Troj/FakeVir-LF [Sophos] | 8 |
| Trojan:Win32/Tibs.JBH [Microsoft] | 8 |
| Win-Trojan/Xema.variant [AhnLab] | 8 |
| BackDoor-AWQ.b [McAfee] | 6 |
| Downloader-ASH.gen.b [McAfee] | 6 |
| Downloader-ASH.gen.d [McAfee] | 6 |
| Suspicious.MH690 [Symantec] | 6 |
| Trojan-Downloader.MisleadApp!sd6 [PC Tools] | 5 |
| Backdoor.Win32.Frauder.oe [Kaspersky Lab] | 4 |
| Backdoor.Win32.Frauder.ol [Kaspersky Lab] | 4 |
| Generic Downloader.z [McAfee] | 4 |
| Generic PUP.z [McAfee] | 4 |
| Mal/EncPk-CZ [Sophos] | 4 |
| Mal/EncPk-MX, Mal/Behav-321, Mal/EncPk-FO, Mal/FakeVirPk-A [Sophos] | 4 |
| PWS:Win32/Prefsap.D [Microsoft] | 4 |
| Trojan.FakeAV [PC Tools] | 4 |
| Trojan.FakeAV [Symantec] | 4 |
| Trojan.Win32.Agent.asnr [Kaspersky Lab] | 4 |
| Trojan.Win32.BHO.ackq [Kaspersky Lab] | 4 |
| Trojan:Win32/Tibs.J [Microsoft] | 4 |
| Trojan-Downloader.Win32.FraudLoad.vnjt [Kaspersky Lab] | 4 |
| Generic BackDoor [McAfee] | 3 |
| Generic FakeAlert.a [McAfee] | 3 |
| Mal/EncPk-DA, Mal/TibsPak [Sophos] | 3 |
| Mal/EncPk-FO [Sophos] | 3 |
| Mal/EncPk-HL [Sophos] | 3 |
| New Malware.ag [McAfee] | 3 |
| Trojan:Win32/FakeSpypro [Microsoft] | 3 |
| Trojan:Win32/Tibs.gen!G [Microsoft] | 3 |
| Trojan:Win32/Tibs.gen!O [Microsoft] | 3 |
| Win-Trojan/Fakeav.20480.B [AhnLab] | 3 |
| Win-Trojan/Fraudload.19968.D [AhnLab] | 3 |
| Backdoor.Win32.Hupigon.gemw [Kaspersky Lab] | 2 |
| Backdoor.Win32.Hupigon.gimd [Kaspersky Lab] | 2 |
| FakeAlert-C.dr [McAfee] | 2 |
| PWS:Win32/Prefsap.F [Microsoft] | 2 |
| Troj/Agent-JFK [Sophos] | 2 |
| Troj/Bdoor-ARX [Sophos] | 2 |
| Troj/FakeAV-MA [Sophos] | 2 |
| Trojan.Agent!sd6 [PC Tools] | 2 |
| Trojan:Win32/Tibs [Microsoft] | 2 |
| Trojan-Downloader.Win32.FraudLoad.dsl [Kaspersky Lab] | 2 |
| Trojan-Downloader.Win32.FraudLoad.dum [Kaspersky Lab] | 2 |
| TrojanDownloader:Win32/Dumcus.A [Microsoft] | 2 |
| W95/Suk [McAfee] | 2 |
| Win-Trojan/Agent.364560 [AhnLab] | 2 |