Would this work?
"Additional changes include a new antivirus feature that rids TDSS-infected machines of 20 rival malware titles, including ZeuS, Gbot, and Optima. It also blacklists the addresses of command and control servers used by these competing programs to prevent them from working properly."
So, in order to detect TDSS, why not intentionally infect your system with enough of the signature from the 20 rival malware products. The malware you use would look like the real thing, but be inert. If you have TDSS on your system, it will react by attempting to clear out the rival malware. I got the idea thinking about the smallpox vaccine. It uses an inert virus to trick the body into producing anti-bodies to defeat the real virii.