What is vmnetcfg.exe?
vmnetcfg.exe is a legitimate process file popularly known as VMware NAT Service. It is associated with VMware Workstation developed by VMware Player software company. It is located in C:\Windows by default. Malware programmers create files with virus scripts and name them after vmnetcfg.exe with an intention to spread virus on the internet.
Affected Platform: Windows OS
How to check if your computer is infected with vmnetcfg.exe malware?
Keep an eye for the following symptoms to see if your PC is infected with vmnetcfg.exe malware:
- Internet connection fluctuates
 - vmnetcfg.exe takes too much CPU space
 - PC slows down significantly
 - Browser automatically redirects to some irrelevant websites
 - Unsolicited ads and popups starts appearing
 - Screen freezes constantly
 
Take the following steps to diagnose your PC for possible vmnetcfg.exe malware attack:
Step 1: Simultaneously press CTRL+ALT+DEL keys to open Task Manager.
Step 2: If you notice the file located outside C:\Windows, then you should run an antivirus scan to get rid of the malware.
How to remove vmnetcfg.exe malware from system using Comodo Antivirus?
Step 1: Download the award-winning Free Antivirus.
Step 2: Installation configuration frames will be displayed. Select the configuration you would like to apply.
Step 3: After network detection is complete, press “Close” button for a scan window.
Step 4: Restart your PC.
Step 5: It will take some time for the Comodo Internet Security to update the antivirus.
Step 6: Proceed with a quick scan that automatically begins after the update.
Step 7: If threats are found during the scanning, you will be prompted with an alert screen.
Step 8: Comodo Antivirus will remove the vmnetcfg.exe virus from your computer including all other malwares!
| No. | Company | File Type | SHA1 | MD5 | Malware Name  | 
											Digitally Signed  | 
											File Version  | 
											Product Version  | 
											Submitted From  | 
											Malware Behavior | 
|---|---|---|---|---|---|---|---|---|---|---|
| 1 | VMware, Inc. | Executable | 8ced40795a73e437 123113c8b3f46b11 858fe962  | 
                                                879e7a5634bedd52 a214ea06ffae0757  | 
                                                EmailWorm.Wi n32.Runonce. ~v001  | 
                                                Yes | 12.1.0 build-3272 444  | 
                                                12.1.0 build-3272 444  | 
                                                  105.110.145.4/32 | 
                                                N/A | 
| 2 | N/A | Executable | c839eafb61714bdb 76ec5983950737f4 0af83b41  | 
                                                e12fe0b33605224c e70d8a10b85231e1  | 
                                                Win32.Viking .J~clean  | 
                                                No | N/A | N/A |   Serbia | 
                                                N/A | 
| 3 | VMware, Inc. | Executable | 1cd9fb4fdcd8631a d4c757334270ab86 0aeeeabf  | 
                                                6366742f52da539f cd992632666fa25c  | 
                                                Virus.Win32. Sality.gen  | 
                                                No | 7.1.1 build-2823 43  | 
                                                7.1.1 build-2823 43  | 
                                                  United States | 
                                                N/A | 
| 4 | N/A | Executable | 57c47b0a737ba9d3 bd51f81f9fdfbb54 370d98ab  | 
                                                6bcd33835e7c2326 b8bc448886669f3a  | 
                                                Win32.Neshta .A  | 
                                                No | N/A | N/A |   Ireland | 
                                                N/A | 
- 4 items per page
 - 8 items per page
 - 16 items per page
 - 32 items per page
 
| No. | Company | File Type | SHA1 | MD5 | Digitally Signed  | 
											File Version  | 
											Product Version  | 
											Submitted From  | 
										
|---|---|---|---|---|---|---|---|---|
| 1 | VMware, Inc. | Executable | 3a8a0a792ea72fe6 026ec1a0588a71e1 1e659f42  | 
                                                a10bee06c01455ba c63f6fb314bdb62a  | 
                                                No | 8.0.3 build-7030 57  | 
                                                8.0.3 build-7030 57  | 
                                                  United States | 
                                            
| 2 | VMware, Inc. | Executable | a41ca80496ffe556 06ba116c4e362dca 4b2a6674  | 
                                                5351fb38da1f6963 353b22d090bacace  | 
                                                Yes | 6.0.5 build-1094 88  | 
                                                6.0.5 build-1094 88  | 
                                                  Russian Federation | 
                                            
| 3 | VMware, Inc. | Executable | 0748b8e0a9f0c55c 9c6de56415c27dae d17362da  | 
                                                edde9178aa433dab 82dbf4e9cd1b2d4e  | 
                                                Yes | 14.1.2 build-8497 320  | 
                                                14.1.2 build-8497 320  | 
                                                  10.224.25.96/32 | 
                                            
| 4 | VMware, Inc. | Executable | 39e902124707250d 180e47d73f8d2751 220f10ae  | 
                                                488f5b792644e536 2f128da48f958a4c  | 
                                                Yes | 16.2.1 build-1881 1642  | 
                                                16.2.1 build-1881 1642  | 
                                                  10.224.25.207/32 | 
                                            
		
	
	
 105.110.145.4/32
 Serbia
 United States
 Ireland
 Indonesia
 South Africa
 Russian Federation
 Taiwan
 Netherlands
 France
 Czech Republic
 Italy
 Spain
 United Kingdom
 Germany
 Canada
 Hungary
		