/12001/url_case4/url4/controller?action=pay&AValue=y9TxufU7jiIZeGWfdYDxRw== from the webserver
AValue from this path to use it to access the account of the victim, e.g. the profile via https://glocken.hacking-lab.com/12001/url_case4/url4/controller?action=profile&AValue=y9TxufU7jiIZeGWfdYDxRw==