Hi DavidR
Removing the protection is in the public domain. In fact Eddy showed me how to do it when I wanted to just scan the System Volume Information. Subsequently I wrote some scripts to deprotect and protect that folder. But as you imply, going any further than that is fraught with danger. However, if Microsoft have the knowhow they really should be passing it on to the Avast programmers. My personal interest in this stems from the fact that the first time I got a virus in the SVI I disabled and enabled System Restore (as is the standard procedure) but my computer failed to boot. I got back on track eventually and the virus has disappeared but the experience has made me nervous. On the only other occasion the standard procedure worked perfectly. But it would be nice if Avast could identify it AND GET RID OF IT!
John (also from UK)