Also i mean preventing things like this:
document.write('<div id="spalace_pes_start" style="visibility:hidden;display:none;">0</div>');
document.write('<div id="spalace_pes_small" style="position:absolute;width:'+ spalace_pes.small_width +'px;height:'+ spalace_pes.small_height +'px;z-index:9999;right:0px;top:0px;">');
document.write('<object classid="clsid:D27CDB6E-AE6D-11cf-96B8-444553540000"');
document.write(' codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=7,0,19,0"');
document.write(' id="jcornerSmallObject" width="'+spalace_pes.small_width+'" height="'+spalace_pes.small_height+'">');
document.write(' <param name="allowScriptAccess" value="always"/> ');
document.write(' <param name="movie" value="'+ spalace_pes.small_url +'?'+ spalace_pes.small_params +'"/>');
document.write(' <param name="wmode" value="transparent" />');
document.write(' <param name="quality" value="high" /> ');
document.write(' <param name="FlashVars" value="'+spalace_pes.small_params+'"/>');
document.write('<embed src="'+ spalace_pes.small_url + '?' + spalace_pes.small_params +'" name="jcornerSmallObject" wmode="transparent" quality="high" width="'+ spalace_pes.small_width +'" height="'+ spalace_pes.small_height +'" flashvars="'+ spalace_pes.small_params +'" allowscriptaccess="always" type="application/x-shockwave-flash" pluginspage="http://www.macromedia.com/go/getflashplayer"></embed>');
document.write('</object></div>');
document.write('</script>');
document.write('<div id="spalace_pes_big" style="position:absolute;width:'+ spalace_pes.big_width +'px;height:'+ spalace_pes.big_height +'px;z-index:9999;right:0px;top:0px;">');
document.write('<object classid="clsid:D27CDB6E-AE6D-11cf-96B8-444553540000"');
document.write(' codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=7,0,19,0"');
document.write(' id="jcornerBigObject" width="'+ spalace_pes.big_width +'" height="'+ spalace_pes.big_height +'">');
document.write(' <param name="allowScriptAccess" value="always"/> ');
document.write(' <param name="movie" value="'+ spalace_pes.big_url +'?'+ spalace_pes.big_params +'"/>');
document.write(' <param name="wmode" value="transparent"/>');
document.write(' <param name="quality" value="high" /> ');
document.write(' <param name="FlashVars" value="'+ spalace_pes.big_params +'"/>');
document.write('<embed src="'+ spalace_pes.big_url + '?' + spalace_pes.big_params +'" id="jcornerBigEmbed" name="jcornerBigObject" wmode="transparent" quality="high" width="'+ spalace_pes.big_width +'" height="'+ spalace_pes.big_height +'" flashvars="'+ spalace_pes.big_params +'" swliveconnect="true" allowscriptaccess="always" type="application/x-shockwave-flash" pluginspage="http://www.macromedia.com/go/getflashplayer"></embed>');
document.write('</object></div>');
With proxomitron it's not possible repair things like this because the replacement of variables like spalace_pes.big_params ... :/
Really this is what i'm looking for, the unencription of these constructions...
Sorry i didn't tell you before. That's the link where is this code
http://www.probabilidades.net/pes/pes.ph...&profile=0
Loaded by
http://www.mocosoft.com/principal.htm
I know in this example I could kill offsite scripts... but not in other situations.