Rob,
KTpass only affects on user, and nothing in your schema that would need to be undone. If you want it undone, remove that user, and the changes done to that user account will go away. If removing user isn't an option, you can always disable that account.
To confirm replication, verify user properties. Depending on what version of AD and ktpass you run, there are certain things like pre-auth for kerberos, and/or Des only encryption which would be enabled for the user. You can check and see that across your DCs to see if they're replicated
Known issues: Make sure you read the documentation thoroughly. It's almost like a magic trick to make it work with the first attempt!
HTH,
Faisal