DaphneB wrote: Anyone have any ideas as to what needs to be changed in the VM file to avoid this detection?
It all depends on how sophisticated the detection method is that's being employed.
You can try adding the following option the the VM's .vmx
configuration file however this will not thwart all detection methods.
monitor_control.restrict_backdoor = "TRUE"