VMware Fusion initializes some daemons (vmnet-bridge, vmnet-dhcpd, vmnet-netifup, vmnet-natd) at startup. “vmnet …” process remain after after load OS X after quitting VMware Fusion. The number of processes depends on the number of network interfaces you have configured. Also, VMWare Fusion causes host NIC dropout in bridged mode. This might slow down your system startup and generate an additional traffic on your network and slow down the internet access.
Additional, if you are running a VPN client like IPsec VPN client as I’m, you NEED to disable vmnet interfaces because it will complain that the device is changing IP addresses to the vmnet1 and vmnet8 devices IP.
Besides, there is no necessary for vmnet-* to load at system startup .
I was looking for how to stop the damn things. Why it load at system startup rather than application startup? I HAVE NO IDEA, ask vmware!
This is makes VMware Fusion as a lovely apps for those who do an illegal duplication and distribution of software- simple add a few lines and the pirate version of VMware Fusion will non-stop connect victim’s mac to any IP (websites or services in order to generate a traffic for them). Most likely any pirate’s version of VMware Fusion will act as a trojan-type malware affecting your OS X system – it is so damn easy to convert VMware Fusion to Trojan-type malware!
If you are using a pirate’s VMware Fusion, i would give a 99% chance that you are using a Trojan-type malware.
Why? After i have checked this out, i assume it will take me, not a skilled man, only a few hours to make a normal VMware Fusion distribution to act as a malware app that will do a non-stop connecting to a various different online services who willing to pay some cash for an extra traffic. It will pass NAT and firewalls on your mac and your router, because in order to VMware Fusion work YOU will open ports 80, 443, 9010, 123, 53, 443 or whatever VMware Fusion (or pirate) will ask you to open. I’m preatty much sure i would able get all the info from your system too… So do not use a pirate software, lol…
Read the rest of this entry »