Trojan horse Dropper.Generic2.CKPW

AVG found Trojan horse Dropper.Generic2.CKPW when I downloaded the update to QuickTime. AVG can't delete or vault it.

Windows 7

Posted on Dec 24, 2010 10:57 AM

Reply
15 replies

Dec 24, 2010 11:58 AM in response to QuickTimeKirk

Odd, I got the same thing today- same day. I uninstalled quicktime, deleted the file, emptied recycle bin, rebooted, and reinstalled quicktime directly from Apple and get the same message again in AVG. Very irritating! I see the note that it is a false positive but I have to wonder.... I am leaving the file in QT for now. Any more advice on this one is appreciated.

Dec 24, 2010 2:03 PM in response to orsox

I finally got around to installing iTunes on my laptop. I installed the 64-bit version, and AVG Free reported this trojan in quicktime. I allowed AVG to block quicktime from creating an entry in the HKLM Run hive (a practice I find very irritating and unnecessary. I don't want QT there). I then scanned the machine online with TrendMicro housecall and came up clean. I then removed AVG and installed Norton 2011, and it came up clean as well.

Probably a false positive.

Dec 24, 2010 2:38 PM in response to fattybub21

Yeah, I think so. I ran AVG free AV/AS and it quarantined the Dropper2 trojan and the registry entry from the SysWoW folder and everything still works. I rebooted, ran iTunes, synced, rebooted again and everything still works with no sign of the virus. I called Apple yesterday wanting to know why I had to keep entering my account info and they wanted me to log in, change my password, then change it back. This might have been an honest attempt to solve my problem, but I wasn't born yesterday and I really see no reason for me to change my password and then change it back again. If I've hurt someone at Apple's feelings, well... boo hoo!!

Dec 24, 2010 3:01 PM in response to megab

It's in my AVG virus vault and there is no sign of it in Program Files(x86)\QuickTime. My system works fine without it, whatever it was. And whether it is a 'false positive' or not, I'm glad it's gone. I get very suspicious when I get repeated requests for my credit card info, especially this time of the year when credit card fraud sky-rockets. Even if it's from iTunes, when there have been no updates to warrant the disclosure of such information.

This thread has been closed by the system or the community team. You may vote for any posts you find helpful, or search the Community for additional answers.

Trojan horse Dropper.Generic2.CKPW

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple Account.