"Win32:Dropper-gen [Drp] is a generic detection used by Avast Antivirus and other antivirus products for a file that appears to have trojan-like features or behavior."
"Win32:Dropper-gen [Drp] is a trojan that silently downloads and installs other programs without consent."
"Due to the generic nature of this detection, methods of installation may vary. The Win32:Dropper-gen [Drp] infections may often install themselves by copying their executable to the Windows or Windows system folders, and then modifying the registry to run this file at each system start. Win32:Dropper-gen [Drp]will often modify the following subkey in order to accomplish this:
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run"
"Files reported as Win32:Dropper-gen [Drp] are not necessarily malicious."
Sounds like it's just detecting that ZKL is installing other programs (IE, Spring). Do we have anything that it installs then runs on startup (maybe itself?).