• File Path: C:\windows\SysWOW64\NAPSTAT.EXE
  • Description: Network Access Protection Client UI


Type Hash
MD5 27E1A2AF3C22B021C3FB8FE1FF29E424
SHA1 D0A8B494ACEE32E22255C5B35989D72112A4802D
SHA256 7082E3882487E1C2221A9DAB6DC3C9CC25754BD424D49D1E5B422672632E96DD
SHA384 35AD08E9F2D54E6EA58E7CCF4F5092263071398238E3ED5234F69BFEAEBB4828C640E8E4E8264ACC310B811C005341C4
SHA512 57F5896E9D311E786C9FD9BF99990886F46BC7C1B5F21B68B58700854921752D77FA7695F16412BBF380A3D399830F322CB7365E69D664C6BBDEF8CD02C10E04


  • Status: The file C:\windows\SysWOW64\NAPSTAT.EXE is not digitally signed. You cannot run this script on the current system. For more information about running scripts and setting execution policy, see about_Execution_Policies at
  • Serial: ``
  • Thumbprint: ``
  • Issuer:
  • Subject:

File Metadata

  • Original Filename: napstat.exe.mui
  • Product Name: Microsoft Windows Operating System
  • Company Name: Microsoft Corporation
  • File Version: 6.3.9600.16384 (winblue_rtm.130821-1623)
  • Product Version: 6.3.9600.16384
  • Language: English (United States)
  • Legal Copyright: Microsoft Corporation. All rights reserved.

File Similarity (ssdeep match)

File Score
C:\windows\system32\NAPSTAT.EXE 57

Possible Misuse

The following table contains possible examples of NAPSTAT.EXE being misused. While NAPSTAT.EXE is not inherently malicious, its legitimate functionality can be abused for malicious purposes.

Source Source File Example License
malware-ioc nukesped_lazarus .napstat.exe``{:.highlight .language-cmhg} © ESET 2014-2018

MIT License. Copyright (c) 2020-2021 Strontic.