After the initial XML data, You might notice this:
USR 2 TWN S lc=1033,id=507,tw=40,ru=http%3A%2F%2Fmessenger%2Emsn%2Ecom,ct=1161813852,kpp=1,kv=9,ver=2.1.6000.1,rn=zZI5qkYo,tpf=b0550c1ce641da84fe791088ac5effd9
That's the line i'd be keeping an eye on, i'm pretty sure that contains some of the data you need to sent to the authentication server.
As I said above, they couldn't just send you the ticket and profile data based on an email, as those two keys are as good as an email and password to a hacker.
Also, you might notice that the the t=* and the p=* do not show <<< at the beginning, which indicates to me that they didn't come in through that socket.