<?xml version="1.0"?>
<rss version="2.0"><channel><title>Kaspersky Virus Removal Tool Latest Topics</title><link>https://forum.kaspersky.com/forum/kaspersky-virus-removal-tool-76/</link><description>Kaspersky Virus Removal Tool Latest Topics</description><language>en</language><item><title>Weird KL Drivers on my system after uninstall.</title><link>https://forum.kaspersky.com/topic/weird-kl-drivers-on-my-system-after-uninstall-40181/</link><description><![CDATA[<p>
	I noticed these while asking someone to do malware removal on my system. Are these safe?
</p>

<p><a href="https://forum.kaspersky.com/uploads/monthly_2024_04/IMG_0038.jpeg.782f514b96dbbb1f192169c48245f092.jpeg" class="ipsAttachLink ipsAttachLink_image" ><img data-fileid="18830" src="https://forum.kaspersky.com/applications/core/interface/js/spacer.png" data-src="https://forum.kaspersky.com/uploads/monthly_2024_04/IMG_0038.thumb.jpeg.c7557a1c0e52f1872447518f2c25df8a.jpeg" data-ratio="67.4" width="500" class="ipsImage ipsImage_thumbnailed" alt="IMG_0038.jpeg"></a></p>]]></description><guid isPermaLink="false">40181</guid><pubDate>Mon, 01 Apr 2024 19:07:01 +0000</pubDate></item><item><title>Kaspersky Anti-Virus</title><link>https://forum.kaspersky.com/topic/kaspersky-anti-virus-38466/</link><description><![CDATA[<p>
	Kaspersky Anti-Virus is interfering with my system updates. these updates are unsecure but useful to me any solution?
</p>
]]></description><guid isPermaLink="false">38466</guid><pubDate>Wed, 10 Jan 2024 15:38:41 +0000</pubDate></item><item><title>KVRT command line</title><link>https://forum.kaspersky.com/topic/kvrt-command-line-37886/</link><description><![CDATA[<p>
	I want to eliminate system memory, starupobject, and bootsector scanning by command, how do I do this? Because each scan takes a lot of time for the above 3 options. I only want to scan the folder I want to scan.
</p>
]]></description><guid isPermaLink="false">37886</guid><pubDate>Wed, 13 Dec 2023 02:23:23 +0000</pubDate></item><item><title>The new KVRT version Crushed my Windows 11</title><link>https://forum.kaspersky.com/topic/the-new-kvrt-version-crushed-my-windows-11-35350/</link><description><![CDATA[<p>
	<span style="background-color:#ffffff;color:#222222;font-size:small;">I downloaded at 30.7.2023 the "Kaspersky Virus Removal Tool application" (</span><a href="https://www.kaspersky.com/downloads/free-virus-removal-tool" style="background-color:#ffffff;color:#1155cc;font-size:small;" rel="external nofollow">https://www.kaspersky.com/downloads/free-virus-removal-tool</a><span style="background-color:#ffffff;color:#222222;font-size:small;">). For the first time it asked for reboot for drivers (before the scan). But the system, Windows 11 pro 22H2 (OS build 2261.2070) version 10.0.2261 Build 22621, failed to start. There was nothing I could do but to restore to my latest retore point, to fix it.</span>
</p>

<p>
	<span style="background-color:#ffffff;color:#222222;font-size:small;">Since then I'm afraid to use KVRT again.</span>
</p>

<p>
	<span style="background-color:rgb(255,255,255);"><font color="#222222" size="2">Did anyone had this same problem?</font></span><br style="background-color:#ffffff;color:#222222;font-size:small;" />
	<span style="background-color:#ffffff;color:#222222;font-size:small;">Please check the KVRT.exe. It act like a virus this time.</span>
</p>
]]></description><guid isPermaLink="false">35350</guid><pubDate>Thu, 03 Aug 2023 06:44:15 +0000</pubDate></item><item><title>Defender blocks TDSSKiller</title><link>https://forum.kaspersky.com/topic/defender-blocks-tdsskiller-36297/</link><description><![CDATA[<p>
	Hi, newbie here. I apologize if this question has already been answered here in the forum.
</p>

<p>
	When I run TDSSKiller, Win Defender tells "For security reasons, the administrator does not allow you to access the content from C:\Windows\System32\drivers\[numbers].sys." Defender's options are OK or UNLOCK. (Please note that if I do NOT choose anything, TDSSKiller still opens and runs a scan.)
</p>

<p>
	What should I do? Thanks in advance.
</p>
]]></description><guid isPermaLink="false">36297</guid><pubDate>Fri, 29 Sep 2023 16:01:02 +0000</pubDate></item><item><title>My Kaspersky removal tool displays dozens of products to remove</title><link>https://forum.kaspersky.com/topic/my-kaspersky-removal-tool-displays-dozens-of-products-to-remove-35901/</link><description><![CDATA[<p>
	I uninstalled Kaspersky from my system, but then I learned that I should use the Kaspersky removal tool to fully remove it. So I did that and the tool displays dozens of products to be removed. Some of the products don't even leave the list when I remove them. What on Earth am I to do? The image doesn't even show all of the products that are listed. 
</p>

<p><a href="https://forum.kaspersky.com/uploads/monthly_2023_09/image.png.9e412153cd19a46a8bead1191835d9b5.png" class="ipsAttachLink ipsAttachLink_image" ><img data-fileid="12148" src="https://forum.kaspersky.com/applications/core/interface/js/spacer.png" data-src="https://forum.kaspersky.com/uploads/monthly_2023_09/image.thumb.png.95a9ac086dd2fcb5ecedd446dd98bb47.png" data-ratio="127.66" width="235" class="ipsImage ipsImage_thumbnailed" alt="image.png"></a></p>]]></description><guid isPermaLink="false">35901</guid><pubDate>Tue, 05 Sep 2023 05:44:34 +0000</pubDate></item><item><title>KVRT marked as malware</title><link>https://forum.kaspersky.com/topic/kvrt-marked-as-malware-35374/</link><description><![CDATA[<p>
	I downloaded KVRT and decided to check the version... Its version(20.0.11.0) is seemingly not documented, and it seems to be a recent file change(a few hours prior to posting this)<br />
	Then I threw it into the file analysis page, and it returned as malware. Don't know if anything of this is legit or a false positive, figured I should mention it here.
</p>
]]></description><guid isPermaLink="false">35374</guid><pubDate>Sat, 05 Aug 2023 12:02:54 +0000</pubDate></item><item><title>TDSSKiller - Download link not working</title><link>https://forum.kaspersky.com/topic/tdsskiller-download-link-not-working-35240/</link><description><![CDATA[<p>
	The download link for TDSSKiller isn't working: <a href="https://usa.kaspersky.com/content/custom/global/tdsskiller/tdsskiller.html" rel="external nofollow">Download Free TDSSKiller - Rootkit Removal | Kaspersky Lab US</a>
</p>

<p>
	After clicking in "Download Now" it just sends to another page and doesn't perform any download. This is a recent problem.
</p>

<p>
	Can someone please report / fix / let know if the tool has been discontinued?
</p>

<p>
	Thanks.
</p>
]]></description><guid isPermaLink="false">35240</guid><pubDate>Thu, 27 Jul 2023 09:12:12 +0000</pubDate></item><item><title>Does Kaspersky Virus Removal Tool include Anti-Rootkit and Firmware Scanner ?</title><link>https://forum.kaspersky.com/topic/does-kaspersky-virus-removal-tool-include-anti-rootkit-and-firmware-scanner-22720/</link><description><![CDATA[<p>Greetings to the entire Kaspersky community ! My question below.</p><p>The logs of the scan performed with the portable Kaspersky Virus Removal Tool, includes paths corresponding to the hidden Windows10 Recovery and Boot Efi partitions ( <strong>\\?\Volume{GUID1}\</strong> <strong>\\?\Volume{GUID2}\</strong> ), as well as specific files present in these partitions ( <strong>…\EFI\Microsoft\Boot\bootmgfw.efi</strong> ).</p><p>If possible, I would like to know if Kaspersky Virus Removal Tool includes the Anti-Rootkit and Firmware Scanner functions <strong><a href="https://www.kaspersky.com/enterprise-security/wiki-section/products/anti-rootkit-and-remediation-technology" rel="noreferrer noopener nofollow ugc" target="_blank">described in this page</a></strong> and if the related scanning patents are implemented.</p>]]></description><guid isPermaLink="false">22720</guid><pubDate>Mon, 24 Jan 2022 10:35:55 +0000</pubDate></item><item><title>About KVRT Drivers in process system</title><link>https://forum.kaspersky.com/topic/about-kvrt-drivers-in-process-system-34891/</link><description><![CDATA[<p>
	<span style="background-color:#f6f8fa;color:#24292f;font-size:14px;text-align:left;">When I use the kvrt2020 to scan my computer, I found that after scanning in the Windows 10 environment, the cleanup file script released by kvrt cannot delete the klupd driver files released in the drivers directory and kvrt_data directory. These driver programs are usually mounted in the system process. However, when using it in the Win7 SP1 version, the above problem does not exist. Do I need to restart the device to delete the driver program, or do I need to do other additional configurations?</span>
</p>
]]></description><guid isPermaLink="false">34891</guid><pubDate>Wed, 05 Jul 2023 03:29:24 +0000</pubDate></item><item><title>Can't launch KVRT "Can't initialize dump writer"</title><link>https://forum.kaspersky.com/topic/cant-launch-kvrt-cant-initialize-dump-writer-10663/</link><description><![CDATA[<p>Hello,</p><p>I can’t launch the KVRT.</p><p>It block at 35% with the Error message : “Can’t initialize dump writer”.</p><p>Before, the tool works nice, no problem.</p><p>I tried old version, same message.</p><p>I deleted all files about KVRT (C:/KVRT_Data) but no improvement.</p><p>It seems be on my computer, may be a corrupted DLL but the tool do not send any information about the error.</p><p>I found nothing about my problem on any plateform (here included).</p><p>Some one can help me ?</p><p> </p><p>Regards,</p><p>Ju’</p>]]></description><guid isPermaLink="false">10663</guid><pubDate>Thu, 06 Aug 2020 15:13:50 +0000</pubDate></item><item><title>Dangerous website (according to Kaspersky Security Network) http://himachaltaxitourpackages.com/</title><link>https://forum.kaspersky.com/topic/dangerous-website-according-to-kaspersky-security-network-httphimachaltaxitourpackagescom-30413/</link><description><![CDATA[<p>
	the website are clean  from virus plz remove from Kaspersky Security 
</p>

<p>
	<a href="https://sitecheck.sucuri.net/results/https/www.himachaltaxitourpackages.com" rel="external nofollow">https://sitecheck.sucuri.net/results/https/www.himachaltaxitourpackages.com</a>
</p>
]]></description><guid isPermaLink="false">30413</guid><pubDate>Wed, 04 Jan 2023 07:52:56 +0000</pubDate></item><item><title>USB, CD, NETWORK, unusable after cleaning with kavremover on windows 7 pro</title><link>https://forum.kaspersky.com/topic/usb-cd-network-unusable-after-cleaning-with-kavremover-on-windows-7-pro-30182/</link><description><![CDATA[<p>
	Hello,
</p>

<p>
	I have a windows 7 pro pc with kes installed.
</p>

<p>
	I removed kes using kavremover in safe mode since I could not find the password.
</p>

<p>
	After removal I have the peripherals not working, if i plug a vga a ps2 mouse and keyboard I can login.
</p>

<p>
	Checking with the Device Manager it says that network card, usb, cd devices are unusable with Error 19.
</p>

<p>
	Some corruption or block at a registry level.
</p>

<p>
	Is that some sort of security measure inside kes?
</p>

<p>
	Do you happen to know how can I fix that?
</p>

<p>
	 
</p>
]]></description><guid isPermaLink="false">30182</guid><pubDate>Thu, 22 Dec 2022 13:51:20 +0000</pubDate></item><item><title>KTS AMD Chipset Software false positive</title><link>https://forum.kaspersky.com/topic/kts-amd-chipset-software-false-positive-29878/</link><description><![CDATA[<p>
	It's the second time KTS thinking my AMD Chipset Software installer has a trojan. I can't update my chipset drivers because of this. Get you stuff together!
</p>

<p>
	OS: Windows 10 Pro 22H2 KTS: 21.3.10.391 (j)
</p>

<p>
	AMD Chipset Installer version: 4.11.15.342, downloaded directly from amd.com
</p>
]]></description><guid isPermaLink="false">29878</guid><pubDate>Fri, 09 Dec 2022 16:09:57 +0000</pubDate></item><item><title>How to uninstall kaspersky virus remover tool</title><link>https://forum.kaspersky.com/topic/how-to-uninstall-kaspersky-virus-remover-tool-29728/</link><description><![CDATA[<p>
	Hello, im need help. How to do full uninstall kaspersky virus remover tool ? Pls help
</p>
]]></description><guid isPermaLink="false">29728</guid><pubDate>Sat, 03 Dec 2022 06:52:56 +0000</pubDate></item><item><title>KVRT: Can't load driver: Windows 10 Enterprise:</title><link>https://forum.kaspersky.com/topic/kvrt-cant-load-driver-windows-10-enterprise-29123/</link><description><![CDATA[<p>
	Hello, I get the error message "Can't load driver" with the actual KVRT 2020. It woould be nice to get some help.<br />
	Thank you in advance!
</p>

<p>
	Trace:
</p>

<p>
	KVRT...log:
</p>

<p>
	AVP TRACE FILE     Time: 10.11.2022 10:43:30.215 PID: 25936 (0x6550)
</p>

<p>
	10:43:30.209    0x5244    INF    alloc: Use allocator 0x2b0ef18 and tag &lt;KVRT root&gt; in 0x49c07a0<br />
	10:43:30.209    0x5244    INF    alloc: Use allocator factory 0x49c0a50 and tag &lt;KVRT&gt; in 0x49c0a68<br />
	10:43:30.209    0x5244    INF    kvrt: klmd: KLMD driver object 0x48df564 was created<br />
	10:43:30.209    0x5244    INF    kvrt: klsl: KLSL driver object 0x48df650 was created<br />
	10:43:30.210    0x5244    INF    vrt: lang: System default language is English<br />
	10:43:30.210    0x5244    INF    kvrt: cmdline: App type is &lt;Product&gt;, default language is &lt;English&gt;<br />
	10:43:30.211    0x5244    INF    kvrt: cmdline: Language is &lt;English&gt;<br />
	10:43:30.211    0x5244    INF    vrt: env: Begin expanding environment var &lt;C:\KVRT2020_Data&gt;<br />
	10:43:30.211    0x5244    INF    vrt: env: Expand &lt;C:\KVRT2020_Data&gt; into &lt;C:\KVRT2020_Data&gt;<br />
	10:43:30.211    0x5244    INF    vrt: bl: Path &lt;C:\KVRT2020_Data&gt; , isExists 1, isFolder 1, bSymlink 0, bLocal 1<br />
	10:43:30.211    0x5244    INF    vrt: fshlp: Make secure directory &lt;C:\KVRT2020_Data&gt; accessFlag = 1<br />
	10:43:30.212    0x5244    INF    vrt: fshlp: Path &lt;C:\KVRT2020_Data&gt; , isExists 1, isFolder 1, bSymlink 0, bLocal 1<br />
	10:43:30.212    0x5244    INF    vrt: fshlp: Security information bit mask 0x4<br />
	10:43:30.212    0x5244    INF    vrt: secDesc: SecurityDescriptor is equal<br />
	10:43:30.212    0x5244    INF    vrt: bl: Path &lt;C:\KVRT2020_Data\Traces&gt; , isExists 1, isFolder 1, bSymlink 0, bLocal 1<br />
	10:43:30.212    0x5244    INF    vrt: fshlp: Make secure directory &lt;C:\KVRT2020_Data\Traces&gt; accessFlag = 0<br />
	10:43:30.212    0x5244    INF    vrt: fshlp: Path &lt;C:\KVRT2020_Data\Traces&gt; , isExists 1, isFolder 1, bSymlink 0, bLocal 1<br />
	10:43:30.212    0x5244    INF    vrt: fshlp: Security information bit mask 0x4<br />
	10:43:30.212    0x5244    INF    vrt: secDesc: SecurityDescriptor is equal<br />
	10:43:30.212    0x5244    INF    vrt: bl: Path &lt;C:\KVRT2020_Data\Quarantine&gt; , isExists 1, isFolder 1, bSymlink 0, bLocal 1<br />
	10:43:30.212    0x5244    INF    vrt: fshlp: Make secure directory &lt;C:\KVRT2020_Data\Quarantine&gt; accessFlag = 0<br />
	10:43:30.213    0x5244    INF    vrt: fshlp: Path &lt;C:\KVRT2020_Data\Quarantine&gt; , isExists 1, isFolder 1, bSymlink 0, bLocal 1<br />
	10:43:30.213    0x5244    INF    vrt: fshlp: Security information bit mask 0x4<br />
	10:43:30.213    0x5244    INF    vrt: secDesc: SecurityDescriptor is equal<br />
	10:43:30.213    0x5244    INF    vrt: bl: Path &lt;C:\KVRT2020_Data\Reports&gt; , isExists 1, isFolder 1, bSymlink 0, bLocal 1<br />
	10:43:30.213    0x5244    INF    vrt: fshlp: Make secure directory &lt;C:\KVRT2020_Data\Reports&gt; accessFlag = 0<br />
	10:43:30.213    0x5244    INF    vrt: fshlp: Path &lt;C:\KVRT2020_Data\Reports&gt; , isExists 1, isFolder 1, bSymlink 0, bLocal 1<br />
	10:43:30.213    0x5244    INF    vrt: fshlp: Security information bit mask 0x4<br />
	10:43:30.213    0x5244    INF    vrt: secDesc: SecurityDescriptor is equal<br />
	10:43:30.213    0x5244    INF    vrt: bl: Mod directory &lt;I:\temp\{da91e92d-0faf-4796-a212-7d2a2d9a1c1a}&gt;<br />
	10:43:30.213    0x5244    INF    vrt: bl: Path &lt;C:\KVRT2020_Data\Temp&gt; , isExists 0, isFolder 0, bSymlink 0, bLocal 1<br />
	10:43:30.213    0x5244    INF    vrt: fshlp: Make secure directory &lt;C:\KVRT2020_Data\Temp&gt; accessFlag = 0<br />
	10:43:30.213    0x5244    INF    vrt: fshlp: Path &lt;C:\KVRT2020_Data\Temp&gt; , isExists 0, isFolder 0, bSymlink 0, bLocal 1<br />
	10:43:30.213    0x5244    INF    vrt: fshlp: Create secure directory &lt;C:\KVRT2020_Data\Temp&gt; accessFlag = 0<br />
	10:43:30.213    0x5244    INF    vrt: fshlp: Path &lt;C:\KVRT2020_Data\Temp&gt; , isExists 0, isFolder 0, bSymlink 0, bLocal 1<br />
	10:43:30.214    0x5244    INF    vrt: bl: Path &lt;C:\KVRT2020_Data\Anomalies&gt; , isExists 1, isFolder 1, bSymlink 0, bLocal 1<br />
	10:43:30.214    0x5244    INF    vrt: fshlp: Make secure directory &lt;C:\KVRT2020_Data\Anomalies&gt; accessFlag = 1<br />
	10:43:30.214    0x5244    INF    vrt: fshlp: Path &lt;C:\KVRT2020_Data\Anomalies&gt; , isExists 1, isFolder 1, bSymlink 0, bLocal 1<br />
	10:43:30.214    0x5244    INF    vrt: fshlp: Security information bit mask 0x4<br />
	10:43:30.214    0x5244    INF    vrt: secDesc: SecurityDescriptor is equal<br />
	10:43:30.215    0x5244    INF    vrt: bl: ============================================================<br />
	10:43:30.215    0x5244    INF    vrt: bl: Product version:  Kaspersky Virus Removal Tool 20.0.10.0<br />
	10:43:30.215    0x5244    INF    vrt: bl: Compilation date: Oct 25 2021 16:21:50<br />
	10:43:30.215    0x5244    INF    vrt: bl: Scan type:        Active OS<br />
	10:43:30.215    0x5244    INF    vrt: bl: Command line:     I:/temp/{da91e92d-0faf-4796-a212-7d2a2d9a1c1a}/\9ec603af.exe -trace -dontencrypt<br />
	10:43:30.215    0x5244    INF    vrt: bl: Product folder:   "C:\KVRT2020_Data"<br />
	10:43:30.215    0x5244    INF    vrt: bl: Mod folder:       "I:\temp\{da91e92d-0faf-4796-a212-7d2a2d9a1c1a}"<br />
	10:43:30.215    0x5244    INF    vrt: bl: Trace level:      700<br />
	10:43:30.215    0x5244    INF    vrt: bl: ============================================================<br />
	10:43:30.215    0x5244    INF    vrt: sysinfo: Current local date / time: 2022/11/10 10:43:30.0215<br />
	10:43:30.215    0x5244    INF    vrt: sysinfo: SystemInfo:<br />
	10:43:30.215    0x5244    INF    vrt: sysinfo:<br />
	10:43:30.215    0x5244    INF    vrt: sysinfo: OS Version: Windows 10<br />
	10:43:30.215    0x5244    INF    vrt: sysinfo: OS build: 10.0.19045.2251<br />
	10:43:30.215    0x5244    INF    vrt: sysinfo: OS bitness: x64<br />
	10:43:30.215    0x5244    INF    vrt: sysinfo: OS ServicePack: empty<br />
	10:43:30.215    0x5244    INF    vrt: sysinfo: OS Wow64: enabled<br />
	10:43:30.215    0x5244    INF    vrt: sysinfo: OS KMCI: disabled<br />
	10:43:30.217    0x5244    INF    vrt: sysinfo: Windows directory: C:\WINDOWS<br />
	10:43:30.217    0x5244    INF    vrt: sysinfo: System windows directory: C:\WINDOWS<br />
	10:43:30.217    0x5244    INF    vrt: sysinfo: Number of processors: 32<br />
	10:43:30.217    0x5244    INF    vrt: sysinfo: Page size: 4096<br />
	10:43:30.218    0x5244    INF    vrt: sysinfo: Boot type: Normal boot<br />
	10:43:30.218    0x5244    INF    kvrt: bl: ============================================================<br />
	10:43:30.218    0x5244    INF    kvrt: bl: Drop KVRT cleanup script<br />
	10:43:30.219    0x5244    INF    vrt: fshlp: Create secure directory &lt;I:/temp/{7929329b-4bd1-471b-8bc7-f0785c8c4858}/&gt; accessFlag = 0<br />
	10:43:30.219    0x5244    INF    vrt: fshlp: Path &lt;I:/temp/{7929329b-4bd1-471b-8bc7-f0785c8c4858}/&gt; , isExists 0, isFolder 0, bSymlink 0, bLocal 1<br />
	10:43:30.219    0x5244    INF    Folder deleter: Folder &lt;I:\temp\{7929329b-4bd1-471b-8bc7-f0785c8c4858}&gt; has been added in list<br />
	10:43:30.219    0x5244    INF    vrt: env: Begin expanding environment var &lt;%KLIF_DEVICE_NAME%&gt;<br />
	10:43:30.219    0x5244    WRN    vrt: env: Var &lt;%KLIF_DEVICE_NAME%&gt; is not found<br />
	10:43:30.219    0x5244    INF    vrt: env: Expand &lt;%KLIF_DEVICE_NAME%&gt; into &lt;%KLIF_DEVICE_NAME%&gt;<br />
	10:43:30.219    0x5244    WRN    kvrt: bl: Error query klif name with status 0x8000004c<br />
	10:43:30.219    0x5244    INF    vrt: fshlp: File &lt;I:\temp\{7929329b-4bd1-471b-8bc7-f0785c8c4858}\0c73b130-a541-4da2-a3ac-3635aa629066.cmd&gt; has been created<br />
	10:43:30.219    0x5244    INF    kvrt: reg winapi: Registry key &lt;0x80000002, SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce&gt; is opened as &lt;0x23c&gt;<br />
	10:43:30.219    0x5244    INF    kvrt: reg winapi: Registry value &lt;0c73b130-a541-4da2-a3ac-3635aa629066&gt; of key &lt;0x23c, SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce&gt; was set (b2 bytes)<br />
	10:43:30.219    0x5244    INF    kvrt: bl: Value &lt;HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce\0c73b130-a541-4da2-a3ac-3635aa629066&gt; has been written with data &lt;"I:\temp\{7929329b-4bd1-471b-8bc7-f0785c8c4858}\0c73b130-a541-4da2-a3ac-3635aa629066.cmd"&gt;<br />
	10:43:30.219    0x5244    INF    Folder deleter: Folder &lt;I:\temp\{7929329b-4bd1-471b-8bc7-f0785c8c4858}&gt; has been removed from list<br />
	10:43:30.219    0x5244    INF    kvrt: reg winapi: Registry key &lt;0x80000002, SOFTWARE&gt; is opened as &lt;0x23c&gt;<br />
	10:43:30.219    0x5244    INF    kvrt: reg winapi: Registry key &lt;0x23c, KasperskyLab\Binaries\KVRT2020&gt; is created as &lt;0x244&gt;<br />
	10:43:30.220    0x5244    INF    kvrt: reg winapi: Registry value &lt;kldw.exe&gt; of key &lt;0x244, KasperskyLab\Binaries\KVRT2020&gt; was set (70 bytes)<br />
	10:43:30.220    0x5244    INF    kvrt: bl: KLDW is setuped<br />
	10:43:30.222    0x5244    INF    vrt: dw: Module &lt;I:\temp\{da91e92d-0faf-4796-a212-7d2a2d9a1c1a}\dumpwriter.dll&gt; has been loaded at 0x0x6c3a0000<br />
	10:43:30.223    0x5244    INF    vrt: dw: Module &lt;I:\temp\{da91e92d-0faf-4796-a212-7d2a2d9a1c1a}\dbghelp.dll&gt; has been loaded at 0x0x66230000<br />
	10:43:30.223    0x5244    INF    vrt: dw: Dump writer has been initialized successfully<br />
	10:43:30.223    0x5244    INF    kvrt: bl: Creating kvrt clients logic...<br />
	10:43:30.223    0x5244    INF    kvrt: bl: kvrt clients logic has been created<br />
	10:43:30.236    0x5244    INF    kvrt: bl gui: GuiClientFactory: Verify<br />
	10:43:30.236    0x5244    INF    kvrt: bl gui: GuiClientFactory: Init<br />
	10:43:30.236    0x5244    INF    kvrt: bl gui: GuiClientFactory: GetInitializationClient<br />
	10:43:30.236    0x5244    INF    kvrt: bl gui: compver: 20.0.10.0 32-bit (Oct 25 2021 16:18:14)<br />
	10:43:30.236    0x3304    INF    kvrt: bl gui: qt thread start<br />
	10:43:30.236    0x3304    INF    kvrt: bl gui: guiThread begin<br />
	10:43:30.260    0x3304    INF    kvrt: bl gui: guiThread: Application font name "Tahoma", size 9<br />
	10:43:30.260    0x3304    INF    kvrt: bl gui: guiThread: Create MainDlg<br />
	10:43:31.033    0x3304    INF    kvrt: bl gui: Graphics info:<br />
	10:43:31.033    0x3304    INF    kvrt: bl gui:<br />
	10:43:31.033    0x3304    INF    kvrt: bl gui: 1. * pixelRatio = 100%, dpi = 96, geom = 3840x2160, scalingFactor = 100%<br />
	10:43:31.033    0x3304    INF    kvrt: bl gui: 2.   pixelRatio = 100%, dpi = 96, geom = 1920x1080, scalingFactor = 100%<br />
	10:43:31.033    0x3304    INF    kvrt: bl gui: 3.   pixelRatio = 100%, dpi = 96, geom = 1920x1080, scalingFactor = 100%<br />
	10:43:31.033    0x3304    INF    kvrt: bl gui: 4.   pixelRatio = 100%, dpi = 96, geom = 1920x1080, scalingFactor = 100%<br />
	10:43:31.034    0x3304    INF    kvrt: bl gui: 5.   pixelRatio = 100%, dpi = 96, geom = 1920x1080, scalingFactor = 100%<br />
	10:43:31.034    0x3304    INF    kvrt: bl gui: 6.   pixelRatio = 100%, dpi = 96, geom = 1920x1080, scalingFactor = 100%<br />
	10:43:31.034    0x3304    INF    kvrt: bl gui: 7.   pixelRatio = 100%, dpi = 96, geom = 1920x1080, scalingFactor = 100%<br />
	10:43:31.034    0x3304    INF    kvrt: bl gui: textScalingFactor = 100%<br />
	10:43:31.034    0x3304    INF    kvrt: bl gui:<br />
	10:43:31.034    0x3304    INF    kvrt: bl gui: qt thread init<br />
	10:43:31.034    0x5244    INF    vrt: clients: Module init client has been initialized successfully<br />
	10:43:31.034    0x5244    INF    vrt: clients: Module &lt;I:\temp\{da91e92d-0faf-4796-a212-7d2a2d9a1c1a}\KvrtGui.dll&gt; init client has been initialized<br />
	10:43:31.034    0x5244    INF    vrt: bl: Init client has been initialized<br />
	10:43:31.034    0x3304    INF    kvrt: bl gui: qt thread starting<br />
	10:43:31.034    0x3304    INF    kvrt: bl gui: qt thread continues<br />
	10:43:31.064    0x5244    INF    vrt: win env: Begin expanding environment var &lt;%ProgramData%&gt;<br />
	10:43:31.064    0x5244    INF    vrt: win env: Var &lt;%ProgramData%&gt; -&gt; &lt;C:\ProgramData&gt;<br />
	10:43:31.064    0x5244    INF    vrt: env: Var &lt;ProgramData&gt; was setuped in &lt;C:\ProgramData&gt;<br />
	10:43:31.064    0x5244    INF    vrt: win env: Begin expanding environment var &lt;%ProgramFiles%&gt;<br />
	10:43:31.064    0x5244    INF    vrt: win env: Var &lt;%ProgramFiles%&gt; -&gt; &lt;C:\Program Files (x86)&gt;<br />
	10:43:31.064    0x5244    INF    vrt: env: Var &lt;ProgramFiles&gt; was setuped in &lt;C:\Program Files (x86)&gt;<br />
	10:43:31.064    0x5244    INF    vrt: win env: Begin expanding environment var &lt;%ProgramFiles(x86)%&gt;<br />
	10:43:31.064    0x5244    INF    vrt: win env: Var &lt;%ProgramFiles(x86)%&gt; -&gt; &lt;C:\Program Files (x86)&gt;<br />
	10:43:31.064    0x5244    INF    vrt: env: Var &lt;ProgramFiles(x86)&gt; was setuped in &lt;C:\Program Files (x86)&gt;<br />
	10:43:31.064    0x5244    INF    vrt: win env: Begin expanding environment var &lt;%ProgramW6432%&gt;<br />
	10:43:31.064    0x5244    INF    vrt: win env: Var &lt;%ProgramW6432%&gt; -&gt; &lt;C:\Program Files&gt;<br />
	10:43:31.064    0x5244    INF    vrt: env: Var &lt;ProgramW6432&gt; was setuped in &lt;C:\Program Files&gt;<br />
	10:43:31.064    0x5244    INF    vrt: win env: Begin expanding environment var &lt;%SystemDrive%&gt;<br />
	10:43:31.064    0x5244    INF    vrt: win env: Var &lt;%SystemDrive%&gt; -&gt; &lt;C:&gt;<br />
	10:43:31.064    0x5244    INF    vrt: env: Var &lt;SystemDrive&gt; was setuped in &lt;C:&gt;<br />
	10:43:31.064    0x5244    INF    vrt: win env: Begin expanding environment var &lt;%SystemRoot%&gt;<br />
	10:43:31.064    0x5244    INF    vrt: win env: Var &lt;%SystemRoot%&gt; -&gt; &lt;C:\WINDOWS&gt;<br />
	10:43:31.065    0x5244    INF    vrt: env: Var &lt;SystemRoot&gt; was setuped in &lt;C:\WINDOWS&gt;<br />
	10:43:31.065    0x5244    INF    vrt: win env: Begin expanding environment var &lt;%windir%&gt;<br />
	10:43:31.065    0x5244    INF    vrt: win env: Var &lt;%windir%&gt; -&gt; &lt;C:\WINDOWS&gt;<br />
	10:43:31.065    0x5244    INF    vrt: env: Var &lt;windir&gt; was setuped in &lt;C:\WINDOWS&gt;<br />
	10:43:31.065    0x5244    INF    vrt: env: Var &lt;TEMP&gt; was setuped in &lt;C:\KVRT2020_Data\Temp&gt;<br />
	10:43:31.065    0x5244    INF    vrt: bl: Generated PCID: {1CF27FB1-1091-D240-A514-1878A67CB5E0}<br />
	10:43:31.065    0x5244    INF    vrt: env: Var &lt;PCID&gt; was setuped in &lt;{1CF27FB1-1091-D240-A514-1878A67CB5E0}&gt;<br />
	10:43:31.065    0x5244    INF    vrt: env: Var &lt;ProductType&gt; was setuped in &lt;kvrt&gt;<br />
	10:43:31.065    0x5244    INF    vrt: env: Var &lt;ProductVersion&gt; was setuped in &lt;20.0.10.0&gt;<br />
	10:43:31.065    0x5244    INF    vrt: env: Var &lt;ProductTypeNumKsn&gt; was setuped in &lt;51&gt;<br />
	10:43:31.065    0x5244    INF    vrt: env: Var &lt;Localization&gt; was setuped in &lt;en&gt;<br />
	10:43:31.065    0x5244    INF    vrt: env: Var &lt;Bases&gt; was setuped in &lt;I:\temp\{da91e92d-0faf-4796-a212-7d2a2d9a1c1a}\Bases&gt;<br />
	10:43:31.065    0x5244    INF    vrt: env: Var &lt;BaseFolder&gt; was setuped in &lt;I:\temp\{da91e92d-0faf-4796-a212-7d2a2d9a1c1a}\Bases&gt;<br />
	10:43:31.065    0x5244    INF    vrt: env: Var &lt;Data&gt; was setuped in &lt;I:\temp\{da91e92d-0faf-4796-a212-7d2a2d9a1c1a}&gt;<br />
	10:43:31.065    0x5244    INF    vrt: env: Var &lt;DataRoot&gt; was setuped in &lt;I:\temp\{da91e92d-0faf-4796-a212-7d2a2d9a1c1a}&gt;<br />
	10:43:31.065    0x5244    INF    vrt: env: Var &lt;ProductRoot&gt; was setuped in &lt;I:\temp\{da91e92d-0faf-4796-a212-7d2a2d9a1c1a}&gt;<br />
	10:43:31.065    0x5244    INF    vrt: env: Var &lt;TraceRoot&gt; was setuped in &lt;C:\KVRT2020_Data\Traces&gt;<br />
	10:43:31.065    0x5244    INF    vrt: env: Var &lt;DumpRoot&gt; was setuped in &lt;C:\KVRT2020_Data\Traces&gt;<br />
	10:43:31.065    0x5244    INF    vrt: env: Var &lt;KsnConfigPackedFileName&gt; was setuped in &lt;ksn_kvrt20.xms&gt;<br />
	10:43:31.065    0x5244    INF    vrt: env: Var &lt;KvrtPersistentDataRoot&gt; was setuped in &lt;C:\KVRT2020_Data&gt;<br />
	10:43:31.069    0x5244    INF    vrt: env: Begin expanding environment var &lt;%PCID%&gt;<br />
	10:43:31.069    0x5244    INF    vrt: env: Var &lt;%PCID%&gt; -&gt; &lt;{1CF27FB1-1091-D240-A514-1878A67CB5E0}&gt;<br />
	10:43:31.069    0x5244    INF    vrt: env: Expand &lt;%PCID%&gt; into &lt;{1CF27FB1-1091-D240-A514-1878A67CB5E0}&gt;<br />
	10:43:31.071    0x5244    INF    vrt: fshlp: Path &lt;C:\KVRT2020_Data\Legal notices&gt; is directory<br />
	10:43:31.071    0x5244    INF    vrt: fshlp: Path &lt;C:\KVRT2020_Data\Legal notices&gt; is deleted<br />
	10:43:31.071    0x5244    INF    vrt: bl: Folder &lt;C:\KVRT2020_Data\Legal notices&gt; is created<br />
	10:43:31.073    0x5244    INF    kvrt: bl gui: LegalNotices was dropped<br />
	10:43:36.191    0x3304    INF    kvrt: bl gui: qt thread continues<br />
	10:43:36.191    0x5244    INF    vrt: bl: EULA was accepted<br />
	10:43:36.192    0x5244    INF    kvrt: klmd: Initializing KLMD...<br />
	10:43:36.192    0x5244    INF    vrt: env: Begin expanding environment var &lt;%SystemRoot%\System32\Drivers&gt;<br />
	10:43:36.192    0x5244    INF    vrt: env: Var &lt;%SystemRoot%&gt; -&gt; &lt;C:\WINDOWS&gt;<br />
	10:43:36.192    0x5244    INF    vrt: env: Expand &lt;%SystemRoot%\System32\Drivers&gt; into &lt;C:\WINDOWS\System32\Drivers&gt;<br />
	10:43:36.192    0x5244    INF    kvrt: klmd: Getting KLMD driver body from &lt;I:\temp\{da91e92d-0faf-4796-a212-7d2a2d9a1c1a}\klmd.sys&gt;...<br />
	10:43:36.192    0x5244    INF    vrt: fshlp: File &lt;I:\temp\{da91e92d-0faf-4796-a212-7d2a2d9a1c1a}\klmd.sys&gt; has been read<br />
	10:43:36.192    0x5244    INF    kvrt: klmd: KLMD drive body has size 299544 bytes<br />
	10:43:36.192    0x5244    INF    vrt: env: Begin expanding environment var &lt;%PCID%&gt;<br />
	10:43:36.192    0x5244    INF    vrt: env: Var &lt;%PCID%&gt; -&gt; &lt;{1CF27FB1-1091-D240-A514-1878A67CB5E0}&gt;<br />
	10:43:36.192    0x5244    INF    vrt: env: Expand &lt;%PCID%&gt; into &lt;{1CF27FB1-1091-D240-A514-1878A67CB5E0}&gt;<br />
	10:43:36.192    0x5244    INF    kvrt: drv: Driver ID for service &lt;klmd&gt; is &lt;0xe34ffe8e&gt;<br />
	10:43:36.192    0x5244    INF    kvrt: srv reg: Reg API service manager 0x49cb690 was created<br />
	10:43:36.192    0x5244    INF    kvrt: drv: Service file &lt;C:\WINDOWS\System32\Drivers\e34ffe8e.sys&gt; is exist<br />
	10:43:36.192    0x5244    INF    kvrt: reg winapi: Registry key &lt;0x80000002, SYSTEM\Select&gt; is opened as &lt;0x404&gt;<br />
	10:43:36.192    0x5244    INF    kvrt: reg winapi: Registry value &lt;Current&gt; of key &lt;0x404, SYSTEM\Select&gt; was get (4 bytes)<br />
	10:43:36.192    0x5244    INF    kvrt: srv reg: Reg API service 0x49c0d98 was created<br />
	10:43:36.192    0x5244    WRN    kvrt: reg winapi: Can't open registry key &lt;0x80000002, SYSTEM\ControlSet001\Services\e34ffe8e&gt; with error 0x80010102 (native error 0x2)<br />
	10:43:36.192    0x5244    WRN    kvrt: reg winapi: Can't open key &lt;0x80000002, SYSTEM\ControlSet001\Services\e34ffe8e&gt; with error 0x80010102<br />
	10:43:36.192    0x5244    WRN    kvrt: srv reg: Can't get registry key for service &lt;e34ffe8e&gt; with error 0x80010102<br />
	10:43:36.192    0x5244    WRN    kvrt: srv reg: Can't open service &lt;e34ffe8e&gt; with error 0x80010102<br />
	10:43:36.192    0x5244    INF    kvrt: srv reg: Reg API service 0x49c0d98 was destroyed<br />
	10:43:36.192    0x5244    INF    kvrt: drv: Service &lt;e34ffe8e&gt; is absent<br />
	10:43:36.192    0x5244    INF    kvrt: srv: Checking status of driver &lt;\SystemRoot\System32\Drivers\e34ffe8e.sys&gt;...<br />
	10:43:36.193    0x5244    INF    kvrt: srv: Driver &lt;C:\WINDOWS\System32\Drivers\e34ffe8e.sys&gt; status is &lt;Running&gt;<br />
	10:43:36.193    0x5244    INF    kvrt: drv: Driver &lt;e34ffe8e&gt; is loaded<br />
	10:43:36.193    0x5244    INF    kvrt: srv reg: Reg API service manager 0x49cb690 was destroyed<br />
	10:43:36.193    0x5244    INF    kvrt: drv: Random name for service &lt;klmd&gt; is &lt;e34ffe8e&gt;<br />
	10:43:36.193    0x5244    INF    kvrt: drv: Current driver &lt;e34ffe8e&gt; installation status:<br />
	10:43:36.193    0x5244    INF    kvrt: drv:    File is installed<br />
	10:43:36.193    0x5244    INF    kvrt: drv:    Service isn't installed<br />
	10:43:36.193    0x5244    INF    kvrt: drv:    Driver is loaded<br />
	10:43:36.193    0x5244    INF    kvrt: drv: Driver object 0x49c08f8 was created<br />
	10:43:36.193    0x5244    INF    kvrt: srv reg: Reg API service manager 0x49cb6e0 was created<br />
	10:43:36.193    0x5244    INF    kvrt: drv: Installing driver &lt;e34ffe8e&gt;...<br />
	10:43:36.193    0x5244    INF    kvrt: drv: Creating new driver service &lt;e34ffe8e&gt;...<br />
	10:43:36.193    0x5244    INF    kvrt: reg winapi: Registry key &lt;0x80000002, SYSTEM\Select&gt; is opened as &lt;0x404&gt;<br />
	10:43:36.193    0x5244    INF    kvrt: reg winapi: Registry value &lt;Current&gt; of key &lt;0x404, SYSTEM\Select&gt; was get (4 bytes)<br />
	10:43:36.193    0x5244    INF    kvrt: srv reg: Reg API service 0x49c0e10 was created<br />
	10:43:36.193    0x5244    INF    kvrt: reg winapi: Registry key &lt;0x80000002, SYSTEM\ControlSet001\Services&gt; is opened as &lt;0x404&gt;<br />
	10:43:36.193    0x5244    INF    kvrt: reg winapi: Registry key &lt;0x404, e34ffe8e&gt; is created as &lt;0x4bc&gt;<br />
	10:43:36.193    0x5244    INF    kvrt: reg winapi: Registry value &lt;ImagePath&gt; of key &lt;0x4bc, e34ffe8e&gt; was set (3c bytes)<br />
	10:43:36.193    0x5244    INF    kvrt: reg winapi: Registry value &lt;Type&gt; of key &lt;0x4bc, e34ffe8e&gt; was set (4 bytes)<br />
	10:43:36.193    0x5244    INF    kvrt: reg winapi: Registry value &lt;Start&gt; of key &lt;0x4bc, e34ffe8e&gt; was set (4 bytes)<br />
	10:43:36.193    0x5244    INF    kvrt: reg winapi: Registry value &lt;ErrorControl&gt; of key &lt;0x4bc, e34ffe8e&gt; was set (4 bytes)<br />
	10:43:36.193    0x5244    INF    kvrt: reg winapi: Registry value &lt;Tag&gt; of key &lt;0x4bc, e34ffe8e&gt; was set (4 bytes)<br />
	10:43:36.193    0x5244    INF    kvrt: reg winapi: Registry value &lt;Group&gt; of key &lt;0x4bc, e34ffe8e&gt; was set (24 bytes)<br />
	10:43:36.193    0x5244    INF    kvrt: srv reg: Activating SafeBoot for service &lt;e34ffe8e&gt;<br />
	10:43:36.193    0x5244    INF    kvrt: reg winapi: Registry key &lt;0x80000002, System\CurrentControlSet\Control\SafeBoot\Minimal&gt; is opened as &lt;0x4bc&gt;<br />
	10:43:36.193    0x5244    INF    kvrt: reg winapi: Registry key &lt;0x4bc, e34ffe8e.sys&gt; is created as &lt;0x404&gt;<br />
	10:43:36.193    0x5244    INF    kvrt: reg winapi: Registry value &lt;(null)&gt; of key &lt;0x404, e34ffe8e.sys&gt; was set (e bytes)<br />
	10:43:36.193    0x5244    INF    kvrt: reg winapi: Registry key &lt;0x80000002, System\CurrentControlSet\Control\SafeBoot\Network&gt; is opened as &lt;0x404&gt;<br />
	10:43:36.193    0x5244    INF    kvrt: reg winapi: Registry key &lt;0x404, e34ffe8e.sys&gt; is created as &lt;0x4bc&gt;<br />
	10:43:36.193    0x5244    INF    kvrt: reg winapi: Registry value &lt;(null)&gt; of key &lt;0x4bc, e34ffe8e.sys&gt; was set (e bytes)<br />
	10:43:36.193    0x5244    INF    kvrt: srv reg: Service &lt;e34ffe8e&gt; with &lt;System32\Drivers\e34ffe8e.sys&gt; was created by 0x49c0e10<br />
	10:43:36.193    0x5244    INF    kvrt: drv: Driver service &lt;e34ffe8e&gt; has been installed successfully<br />
	10:43:36.193    0x5244    INF    kvrt: drv: Driver &lt;e34ffe8e&gt; has been installed successfully<br />
	10:43:36.193    0x5244    INF    kvrt: klmd: KLMD has been installed and loaded successfully<br />
	10:43:36.193    0x5244    INF    kvrt: klmd: Connected to ARK device &lt;\\.\e34ffe8ea&gt;<br />
	10:43:36.194    0x5244    ERR    kvrt: klmd: Can't complete thread authorization with error 0x800700a1 (native error 0xa1)<br />
	10:43:36.194    0x5244    ERR    kvrt: bl: Can't authorize current thread to KLMD with error 0x800700a1<br />
	10:43:36.194    0x5244    ERR    kvrt: bl: KLMD phase 1 init has been failed with error 0x800700a1
</p>
]]></description><guid isPermaLink="false">29123</guid><pubDate>Thu, 10 Nov 2022 10:44:59 +0000</pubDate></item><item><title>Error 'can't load driver'    Windows 11 Pro PE   KVRT.EXE 2020 version</title><link>https://forum.kaspersky.com/topic/error-cant-load-driver-windows-11-pro-pe-kvrtexe-2020-version-28708/</link><description><![CDATA[<p>
	With a USB booting Windows 10 PE build, based on Professional 64 bit version 1809, the 2020 version of KVRT.exe runs.
</p>

<p>
	However with a Windows 11 PE build, based on Professional version 22H2, after ticking the three agreement boxes I get the error message
</p>

<p>
	' can't load driver '.
</p>

<p>
	If the message was specific that e.g. xxx.dll was missing I could add to the Windows 11 PE build.
</p>

<p>
	Any hints to either the missing prerequisite(s) or another issue will be helpful.
</p>

<p>
	 
</p>
]]></description><guid isPermaLink="false">28708</guid><pubDate>Wed, 19 Oct 2022 10:23:09 +0000</pubDate></item><item><title>Kaspersky Virus Removal Tool  Processing Error</title><link>https://forum.kaspersky.com/topic/kaspersky-virus-removal-tool-processing-error-27509/</link><description><![CDATA[<p>
	<span style="background-color:#ffffff;color:#444444;font-size:14px;">I notice that I get a lot of Processing Error on some files that Kaspersky Virus Removal Tool scans. Are these something to worry about?</span><img class="ipsImage ipsImage_thumbnailed" data-fileid="2732" data-ratio="70.48" width="664" alt="Ek_Acklama_2022-09-04_111526.png.9355cbbac13ca08ffde122043934ecf5.png" data-src="https://forum.kaspersky.com/uploads/monthly_2022_09/Ek_Acklama_2022-09-04_111526.png.9355cbbac13ca08ffde122043934ecf5.png" src="https://forum.kaspersky.com/applications/core/interface/js/spacer.png" />
</p>
]]></description><guid isPermaLink="false">27509</guid><pubDate>Sun, 04 Sep 2022 12:40:29 +0000</pubDate></item><item><title>KVRT Free won't create cleanup script</title><link>https://forum.kaspersky.com/topic/kvrt-free-wont-create-cleanup-script-23751/</link><description><![CDATA[<p>I’ve used KVRT Free for years. Today, when I tried to run it, I got the message “Cannot create cleanup script.” I’ve downloaded the current version but still get the message. What’s wrong, and how do I fix it?</p><p>Thanks.</p>]]></description><guid isPermaLink="false">23751</guid><pubDate>Wed, 23 Mar 2022 11:33:14 +0000</pubDate></item><item><title>Can i get a virus by logging with an acount (putting email and password)?</title><link>https://forum.kaspersky.com/topic/can-i-get-a-virus-by-logging-with-an-acount-putting-email-and-password-16329/</link><description><![CDATA[<p>so i clicked on a strange website accidentally and then i cleaned all browser data, formatted the drive and made a scan with KVRT. I also changed my accounts credentials, but can i infect my pc again by just logging in?</p><p>Please don't ridicularize me, i'm really anxious</p>]]></description><guid isPermaLink="false">16329</guid><pubDate>Tue, 30 Mar 2021 22:53:09 +0000</pubDate></item><item><title>Read before you create a new topic!</title><link>https://forum.kaspersky.com/topic/read-before-you-create-a-new-topic-23812/</link><description><![CDATA[<div>
	<p>
		Hello!
	</p>

	<p>
		 
	</p>

	<p>
		If you can't find an answer to your question in the <a href="https://support.kaspersky.com/consumer/answers" rel="external nofollow">Knowledge Base</a> and through <a href="https://forum.kaspersky.com/search/" rel="">searching</a> the community forums, you can create a new topic with a question.
	</p>

	<p>
		 
	</p>

	<p>
		Before you post a new topic in the Kaspersky Support Forum, please read the <a href="https://forum.kaspersky.com/guidelines/" rel="">Forum rules</a>.
	</p>

	<p>
		 
	</p>

	<p>
		<strong>When creating a topic, be sure to specify:</strong>
	</p>

	<p>
		 
	</p>

	<ol>
		<li>
			Version of your operating system (<a href="https://support.kaspersky.com/15026" rel="external nofollow">How to find the version of your operating system</a>).
		</li>
		<li>
			Name and version number of the Kaspersky application (<a href="https://support.kaspersky.com/common/diagnostics/1690" rel="external nofollow">How to find the name and the version number of a Kaspersky application</a>).
		</li>
		<li>
			Explain in details the nature of your problem.
		</li>
		<li>
			If necessary, attach a screenshot of the problem (<a href="https://support.kaspersky.com/common/diagnostics/492" rel="external nofollow">How to take a screenshot</a>).
		</li>
	</ol>

	<p>
		 
	</p>

	<p>
		This will help to identify the problem more quickly and provide solution for you.
	</p>

	<p>
		 
	</p>

	<p>
		Thank you.
	</p>
</div>
]]></description><guid isPermaLink="false">23812</guid><pubDate>Wed, 30 Mar 2022 05:05:41 +0000</pubDate></item><item><title>Kavremover trojan avast false detection</title><link>https://forum.kaspersky.com/topic/kavremover-trojan-avast-false-detection-23026/</link><description><![CDATA[<p>Hi. I downloaded kavremover from the official Kaspersky website. Avast Free Antivirus said it was a trojan. Is it normal?</p>]]></description><guid isPermaLink="false">23026</guid><pubDate>Thu, 10 Feb 2022 16:06:32 +0000</pubDate></item><item><title>Cloud connection for KVRT shouldn't be forced</title><link>https://forum.kaspersky.com/topic/cloud-connection-for-kvrt-shouldnt-be-forced-20899/</link><description><![CDATA[<p>KVRT is meant for infected computers.</p><p>Assume that a PC is protected by firewall and is infected with a trojan,</p><p>I need to disable the firewall leaving the PC vulnerable in order for your tool to work.</p><p>That doesn’t make sense.</p><p>Furthermore KVRT creates a weird file in the TEMP directory that tries to connect which i cannot whitelist with the Tinywall that i am using so i have to disable the firewall in order to use your software.</p><p>At least make it possible to whitelist KVRT,</p>]]></description><guid isPermaLink="false">20899</guid><pubDate>Thu, 14 Oct 2021 00:17:52 +0000</pubDate></item><item><title>The PCID in KVRT Reports is generated from the information in the system</title><link>https://forum.kaspersky.com/topic/the-pcid-in-kvrt-reports-is-generated-from-the-information-in-the-system-20339/</link><description><![CDATA[<p>The PCID in KVRT Reports is generated based on what information in the system ？？</p><p>&lt;Report&gt;<br />    &lt;Metadata Version="1" <span style="color:#c0392b;">PCID="{A827D0BA-E7BF-DEAC-70F3-D8D20030442E}"</span> LastModification="2021.09.08 15:10:47.195" /&gt;<br />    &lt;EventBlocks&gt;<br />        &lt;Block0 Type="Scan" Processed ="8241" Found="1" Neutralized="0"&gt;<br />            &lt;Event0 Action="Scan" Time="132755583713339237" Object="" Info="Started" /&gt;<br />            &lt;Event1 Action="Detect" Time="132755586466811855" Object="D:\eicar.com\eicar.com.txt" Info="EICAR-Test-File" /&gt;<br />            &lt;Event2 Action="Scan" Time="1327555864714​​89380" Object="" Info="Finished" /&gt;<br />            &lt;Event3 Action="Select action" Time="1327555864714​​99316" Object="D:\eicar.com\eicar.com.txt" Info="Skip" /&gt;<br />        &lt;/Block0&gt;<br />    &lt;/EventBlocks&gt;<br />&lt;/Report&gt;</p><p> </p>]]></description><guid isPermaLink="false">20339</guid><pubDate>Wed, 15 Sep 2021 07:20:11 +0000</pubDate></item><item><title>Too long memory check</title><link>https://forum.kaspersky.com/topic/too-long-memory-check-18798/</link><description><![CDATA[<figure><img class='ipsImage ipsImage_thumbnailed' width='500' data-src='https://forum.kaspersky.com/uploads/archive/images/09aa785a-0c1b-46cd-936c-dac32068361f.png' src='https://forum.kaspersky.com/applications/core/interface/js/spacer.png' /></figure><p> </p><figure><img class='ipsImage ipsImage_thumbnailed' width='500' data-src='https://forum.kaspersky.com/uploads/archive/images/0b56d107-b98c-4607-a806-37cca26e22f5.png' src='https://forum.kaspersky.com/applications/core/interface/js/spacer.png' /></figure><p> </p><p>16Gb RAM was always checked for a few minutes, situation has changed due to recent Windows update to Windows 10 21H1 x64 to version 10.0.19043.1110 .<br /><br />At the same time in VirtualBox guest Windows 10/11 there is no such problem.<br /><br />FYI.</p>]]></description><guid isPermaLink="false">18798</guid><pubDate>Tue, 27 Jul 2021 19:46:02 +0000</pubDate></item></channel></rss>
