Threat Search: 

ThreatExpert's Statistics for Troj/Agent-GDP [Sophos]:

Troj/Agent-GDP [Sophos] is also known as:
Threat AliasNumber of Incidents
Backdoor.Bifrose [Symantec]31
BKDR_BIFROSE.A [Trend Micro]30
Backdoor.Win32.Bifrose [Ikarus]21
BackDoor-CEP [McAfee]20
Backdoor.Win32.Bifrose.uw [Kaspersky Lab]16
Backdoor:Win32/Bifrose [Microsoft]16
Backdoor.Bifrost.B [PC Tools]13
Backdoor.Win32.Bifrose.agq [Kaspersky Lab]13
Backdoor:Win32/Bifrose.FL [Microsoft]13
Win-Trojan/Bifrose.38400.B [AhnLab]11
Backdoor-CEP.gen.b [McAfee]10
Win-Trojan/Bifrose.45056.B [AhnLab]9
Backdoor.Bifrose.D [PC Tools]4
Backdoor.Bifrost.ER [PC Tools]4
Backdoor.Bifrose.LV [PC Tools]1
Backdoor.Bifrose.PC [PC Tools]1
Backdoor.Win32.Bifrose.ads [Kaspersky Lab]1
Backdoor.Win32.Bifrose.dg [Kaspersky Lab]1
BackDoor-CKA [McAfee]1
TROJ_MALLVK.A [Trend Micro]1

Troj/Agent-GDP [Sophos] has the following possible country of origin:
OriginNumber of Incidents
Sweden7

Troj/Agent-GDP [Sophos] is known to be created as:
%System%\bitfrost.exe
%System%\cvshost.exe
%System%\killdrv.exe
%System%\server.exe
%System%\spool32.exe
%System%\winudate32.exe
%Temp%\server.exe
%Windir%\lexplore.exe
%Windir%\server.exe
%Windir%\winhost.exe
c:\extracts\server.exe
c:\killdrv.exe
c:\murkrow.exe
c:\server.exe
Notes:
  • %System% is a variable that refers to the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
  • %Temp% is a variable that refers to the temporary folder in the short path form. By default, this is C:\Documents and Settings\[UserName]\Local Settings\Temp\ (Windows NT/2000/XP).
  • %Windir% is a variable that refers to the Windows installation folder. By default, this is C:\Windows or C:\Winnt.