Sí.
Suggested Profile(s) : WinXPSP2x86, WinXPSP3x86 (Instantiated with WinXPSP2x86)
AS Layer1 : IA32PagedMemoryPae (Kernel AS)
AS Layer2 : FileAddressSpace (/home/folder1/folder2/memdump)
PAE type : PAE
DTB : 0x2ce000L
KDBG : 0x80545ae0L
Number of Processors : 1
Image Type (Service Pack) : 3
KPCR for CPU 0 : 0xffdff000L
KUSER_SHARED_DATA : 0xffdf0000L
Image date and time : 2013-03-17 22:17:12 UTC+0000
Image local date and time : 2013-03-17 23:17:12 +0100
Si ejecuto
truecryptsummaryRegistry Version TrueCrypt Version 7.1a
Process TrueCrypt.exe at 0x85703ae8 pid 4016
Service truecrypt state SERVICE_RUNNING
Kernel Module truecrypt.sys at 0xaa0ac000 - 0xaa0e3000
Symbolic Link Volume{7ddaae16-7f7f-11e2-b195-002243057110} -> \Device\TrueCryptVolumeQ mounted 2013-02-25 21:30:24 UTC+0000
Symbolic Link Q: -> \Device\TrueCryptVolumeQ mounted 2013-02-25 21:30:24 UTC+0000
Symbolic Link Q: -> \Device\TrueCryptVolumeQ mounted 2013-02-25 21:30:24 UTC+0000
Symbolic Link Volume{7ddaae16-7f7f-11e2-b195-002243057110} -> \Device\TrueCryptVolumeQ mounted 2013-02-25 21:30:24 UTC+0000
Symbolic Link Q: -> \Device\TrueCryptVolumeQ mounted 2013-02-25 21:30:24 UTC+0000
File Object \Device\TrueCryptVolumeQ\ at 0x57db528
File Object \Device\TrueCryptVolumeQ\ at 0x5f76868
Driver \Driver\truecrypt at 0x6491030 range 0xaa0ac000 - 0xaa0e2b80
Device TrueCryptVolumeQ at 0x856f37a0 type FILE_DEVICE_DISK
Container Path: \??\C:\Documents and Settings\Pepe\Mis documentos\Mine
Device TrueCrypt at 0x85d56030 type FILE_DEVICE_UNKNOWN
truecryptmasterContainer: \??\C:\Documents and Settings\Pepe\Mis documentos\Mine
Hidden Volume: No
Removable: No
Read Only: No
Disk Length: 786432 (bytes)
Host Length: 1048576 (bytes)
Encryption Algorithm: AES
Mode: XTS
Master Key
truecryptpassphraseNada