This is about popups of livejasmin at the pirate bay and maybe somewhere else too
I noticed that in all pages about porn torrents at the pirate bay, there is this javascript code directly injected inside the torrents pages:
Code: Select all
<!-- cat500 pbanner2 -->
<script language='JavaScript' type='text/javascript'>
var awePuShown = false;
function aweDoOpen(url)
{
if ( awePuShown === true )
{
return true;
}
var aweWindow = window.open(url, "ljPu", "toolbar,status,resizable,scrollbars,menubar,location,height=800,width=860");
window.setTimeout(window.focus, 500 );
if ( aweWindow )
{
aweWindow.blur();
awePuShown = true;
}
return aweWindow;
}
function aweSetCookie(name, value, time) {
var expires = new Date();
expires.setTime( expires.getTime() + time );
document.cookie = name + "=" + value + "; expires=" + expires.toGMTString() + "; path=/";
}
function aweGetCookie(name)
{
var cookies = document.cookie.toString().split('; ');
var cookie, c_name, c_value;
for (var n=0; n<cookies.length; n++)
{
cookie = cookies[n].split("=");
c_name = cookie[0];
c_value = cookie[1];
if ( c_name == name )
{
return c_value;
}
}
return null;
}
function aweCheckTarget(e)
{
var cookieValue = aweGetCookie("popundr");
var isRefDenied = aweCheckIsRefDenied();
if ( isRefDenied === true )
{
aweSetCookie("popundr", 1, 60*60*1000);
return ;
}
if ( cookieValue === null )
{
aweDoOpen("http://creatives.livejasmin.com/iframes/t/th/thepiratebay/thepiratebay.html?psid=thepirbaypu&pstool=123_12345_123&pstour=t1&psprogram=REVS&site=jsm");
aweSetCookie("popundr", 1, 24*60*60*1000);
}
}
function aweCheckIsRefDenied()
{
return false;
}
function aweInitPu()
{
if ( document.attachEvent )
{
document.attachEvent( "onclick", aweCheckTarget );
}
else if ( document.addEventListener )
{
document.addEventListener( "click", aweCheckTarget, false );
}
return TRUE;
}
aweInitPu();
</script>
Well, of course that code works only with javascript enabled!!!!!!! and if you keep javascript enabled, there is no way to stop it but with JS off, it won't work!!!!!!!!!!!!!!!!!!!!!
It's probably used only in porn websites, but i ain't very sure about this I noticed the whole "creatives.livejasmin.com" page is used only for advertising, so block "creatives.livejasmin.com/iframes" should be safe though i blocked the whole subdomain
Well, i posed this, because The Pirate Bay isn't a porn website, but it has eventually got porn banners too yeah, so it isn't used only in porn sites!!!!!!!
bye!!!!!!!!!!!!