Advertisement
satsura

SpyEye Requested Log's

May 5th, 2011
932
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.79 KB | None | 0 0
  1. SpyEye Requested Log's :
  2.  
  3.  
  4. Parameter Value Meaning
  5. bot_guid ADMINISTRADOR!XXX!82AB11A5 (same as in connection 1)
  6. process_name C:\Program Files\Internet Explorer\iexplore.exe Full path to the process
  7. hooked_func HttpSendRequestA Function that was hooked (e.g: Sends request to HTTP server)
  8. func_data https://sitekey.bankofamerica.com/sas/signon.do
  9.  
  10.  
  11. User-Agent: Mozilla/4.0 (compatible; MSIE 6.0)
  12.  
  13.  
  14. POST /sas/signon.do HTTP/1.1
  15. Accept: */*
  16.  
  17. reason=&Access_ID=BarackObama_Account&Access_ID_1=&Current_Passcode=&acct=&pswd=&from=homepage&Customer_Type=MODEL&pmbutton=true&pmloginid=pmloginid&sitekeySignon=true&locale=en_US&dltoken=&id=142**71&state=AL Full POST/GET request sent to bankofamerica.com when logging in, intercepted by SpyEye.
  18. keys ......b.a.
  19. .B.a.r.a.c.k.O.b.a.m.a._.A.c.c.o.u.n.t
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement