# Run at 17-03-2021 15:40:32 # KpRm (Kernel-panik) version 2.9 # Website https://kernel-panik.me/tool/kprm/ # Run by Admin from D:\Users\Hari\Desktop # Computer Name: PINKYPC # OS: Windows 10 X64 (19042) # Number of passes: 1 - Checked options - ~ Registry Backup ~ Delete Tools ~ Restore System Settings ~ UAC Restore ~ Delete Restore Points ~ Create Restore Point ~ Delete Quarantines - Create Registry Backup - ~ [OK] Hive C:\WINDOWS\System32\config\SOFTWARE backed up ~ [OK] Hive C:\Users\Admin\NTUSER.dat backed up [OK] Registry Backup: C:\KPRM\backup\2021-03-17-15-40-32 - Delete Tools - ## AdwCleaner [OK] D:\Users\Hari\Desktop\GTG21\Malware\AdwCleaner.exe deleted [OK] C:\AdwCleaner deleted ## Autoruns [OK] D:\Users\Hari\Desktop\Hari\GTG\autoruns.exe deleted ## ESET Online Scanner [OK] D:\Users\Hari\Desktop\ESET Online Scanner.lnk deleted [OK] D:\Users\Hari\Desktop\GTG21\Malware\esetonlinescanner.exe deleted ## FRST [OK] D:\Users\Hari\Desktop\Fixlog.txt deleted [OK] D:\Users\Hari\Desktop\FRST64.exe deleted [OK] D:\Users\Hari\Desktop\Hari\Notepad\Addition (2).txt deleted [OK] D:\Users\Hari\Desktop\Hari\Notepad\Addition.txt deleted [OK] D:\Users\Hari\Desktop\Hari\Notepad\Fixlog.txt deleted [OK] D:\Users\Hari\Desktop\Hari\Notepad\FRST (2).txt deleted [OK] D:\Users\Hari\Desktop\Hari\Notepad\FRST.txt deleted [OK] D:\Users\Hari\Desktop\Hari\GTG\Addition.txt deleted [OK] D:\Users\Hari\Desktop\Hari\GTG\Fixlog.txt deleted [OK] D:\Users\Hari\Desktop\Hari\GTG\FRST-OlderVersion deleted [OK] D:\Users\Hari\Desktop\Hari\GTG\FRST.txt deleted [OK] D:\Users\Hari\Desktop\Hari\GTG\FRSTSearchFiles.txt deleted [OK] D:\Users\Hari\Desktop\Hari\GTG\FRSTSearchReg.txt deleted [OK] D:\Users\Hari\Desktop\GTG21\Addition.txt deleted [OK] D:\Users\Hari\Desktop\GTG21\FRST-OlderVersion deleted [OK] D:\Users\Hari\Desktop\GTG21\FRST.txt deleted [OK] D:\Users\Hari\Desktop\GTG21\Malware\Addition (2).txt deleted [OK] D:\Users\Hari\Desktop\GTG21\Malware\Addition.txt deleted [OK] D:\Users\Hari\Desktop\GTG21\Malware\Fixlog (2).txt deleted [OK] D:\Users\Hari\Desktop\GTG21\Malware\Fixlog (3).txt deleted [OK] D:\Users\Hari\Desktop\GTG21\Malware\Fixlog (4).txt deleted [OK] D:\Users\Hari\Desktop\GTG21\Malware\Fixlog.txt deleted [OK] D:\Users\Hari\Desktop\GTG21\Malware\FRST (2).txt deleted [OK] D:\Users\Hari\Desktop\GTG21\Malware\FRST.txt deleted [OK] C:\FRST deleted ## Malwarebytes Anti-Rootkit [OK] D:\Users\Hari\Desktop\Hari\GTG\mbar deleted [OK] D:\Users\Hari\Desktop\Hari\GTG\mbar-1.10.3.1001.exe deleted ## Malwarebytes (log) [OK] D:\Users\Hari\Desktop\GTG21\Malware\mbam.txt deleted [OK] D:\Users\Hari\Desktop\GTG21\Malware\mbamlatest.txt deleted - Restore System Settings - [OK] Reset WinSock [OK] FLUSHDNS [OK] Hide Hidden file. [OK] Show Extensions for known file types [OK] Hide protected operating system files - Restore UAC - [OK] Set EnableLUA with default (1) value [OK] Set ConsentPromptBehaviorAdmin with default (5) value [OK] Set ConsentPromptBehaviorUser with default (3) value [OK] Set EnableInstallerDetection with default (0) value [OK] Set EnableSecureUIAPaths with default (1) value [OK] Set EnableUIADesktopToggle with default (0) value [OK] Set EnableVirtualization with default (1) value [OK] Set FilterAdministratorToken with default (0) value [OK] Set PromptOnSecureDesktop with default (1) value [OK] Set ValidateAdminCodeSignatures with default (0) value - Clear Restore Points - ~ [OK] RP named Windows Modules Installer created at 03/17/2021 08:21:11 deleted [OK] All system restore points have been successfully deleted - Create Restore Point - [OK] System Restore Point created - Display System Restore Point - ~ [I] RP named KpRm created at 03/17/2021 10:11:20 -- KPRM finished in 111.62s --