Vulnerability Development mailing list archives

Re: jump2.eudora.com


From: Perry Anton <perrya () virtualse com>
Date: Mon, 28 Aug 2000 16:48:22 -0500

VisualRoute is another violator of privacy, forwarding your
serial number on app start. I think it would be prudent to start a summary
listing, may I suggest we start one here.

Here is the data dump (I've Xed portions of the serial number)
0000  00 E0 1E 9E FE 90 00 C0  4F 61 3F F4 08 00 45 00   ........Oa?...E.
0010  01 4E 21 71 40 00 80 06  00 00 C0 35 5E 0A C0 29   .N.q@......5^..)
0020  2B BD 0F 2B 00 50 07 39  45 53 08 4F DE 9B 50 18   +..+.P.9ES.O..P.
0030  7D 78 0B 67 00 00 47 45  54 20 2F 68 6F 74 6C 69   .x.g..GET./hotli
0040  6E 6B 73 2D 77 69 6E 2E  74 78 74 3F 72 3D 4E 6F   nks-win.txt?r=No
0050  74 55 73 65 64 26 6C 3D  33 42 32 41 31 34 36 30   tUsed&l=XXXXXXXX
0060  2D 56 35 50 38 37 2D 33  38 45 33 38 45 35 38 2D   -XXXXX-XXXXXXXX-
0070  42 44 45 26 76 3D 35 2E  30 61 26 6A 3D 31 2E 31   XXX&v=5.0a&j=1.1
0080  2E 34 26 61 3D 78 38 36  26 77 3D 57 69 6E 64 6F   .4&a=x86&w=Windo
0090  77 73 2B 4E 54 26 7A 3D  35 2E 30 39 36 37 34 39   ws+NT&z=5.096749
00A0  38 34 34 36 38 31 36 20  48 54 54 50 2F 31 2E 30   8446816.HTTP/1.0
00B0  0D 0A 55 73 65 72 2D 41  67 65 6E 74 3A 20 4D 6F   ..User-Agent:.Mo
00C0  7A 69 6C 6C 61 2F 34 2E  30 20 28 63 6F 6D 70 61   zilla/4.0.(compa
00D0  74 69 62 6C 65 3B 20 4D  53 49 45 20 35 2E 30 3B   tible;.MSIE.5.0;
00E0  20 57 69 6E 33 32 29 0D  0A 48 6F 73 74 3A 20 77   .Win32)..Host:.w
00F0  77 77 2E 76 69 73 75 61  6C 72 6F 75 74 65 2E 63   ww.visualroute.c
0100  6F 6D 0D 0A 41 63 63 65  70 74 3A 20 74 65 78 74   om..Accept:.text
0110  2F 68 74 6D 6C 2C 20 69  6D 61 67 65 2F 67 69 66   /html,.image/gif
0120  2C 20 69 6D 61 67 65 2F  6A 70 65 67 2C 20 2A 3B   ,.image/jpeg,.*;
0130  20 71 3D 2E 32 2C 20 2A  2F 2A 3B 20 71 3D 2E 32   .q=.2,.*/*;.q=.2
0140  0D 0A 43 6F 6E 6E 65 63  74 69 6F 6E 3A 20 6B 65   ..Connection:.ke
0150  65 70 2D 61 6C 69 76 65  0D 0A 0D 0A               ep-alive....

Application             Version         Data Transmitted                Avoidable
Visual Route            5.0a                    Serial, User Info               setup.ini="hotlinks=0"

Perry


Current thread: