It has a powerful run-as tool that can run programs as almost any user, including SYSTEM, LOCAL SERVICE and NETWORK SERVICE. Finally, its kernel-mode driver enables Process Hacker to show information for any process, even if it is protected by a rootkit.It loads symbols from various libraries automatically and uses them when displaying the call stacks of threads (just like Process Explorer).