Ow, you mean this exploit

<edit type="addition">

based down comes to this

it sends username www.microsoft.com[alt255]%00 to the server of www.antionline.com

Code:
http://www.microsoft.com%[email protected]

FAKE URL  --- ^                        ^---  REAL URL
</edit>

there have been multiple post about it . . .