1 # ********************************************************************
3 # File : $Source: /cvsroot/ijbswa/current/default.filter,v $
5 # $Id: default.filter,v 1.11.2.2 2002/08/01 11:20:13 oes Exp $
7 # Purpose : Rules to process the content of web pages
9 # Copyright : Written by and Copyright
10 # Privoxy team. http://www.privoxy.org/
12 # We value your feedback. However, to provide you with the best support,
15 # * Use the support forum to get help:
16 # http://sourceforge.net/tracker/?group_id=11118&atid=211118
17 # * Submit bugs only thru our bug forum:
18 # http://sourceforge.net/tracker/?group_id=11118&atid=111118
19 # Make sure that the bug has not already been submitted. Please try
20 # to verify that it is a Privoxy bug, and not a browser or site
21 # bug first. If you are using your own custom configuration, please
22 # try the stock configs to see if the problem is a configuration
23 # related bug. And if not using the latest development snapshot,
24 # please try the latest one. Or even better, CVS sources.
25 # * Submit feature requests only thru our feature request forum:
26 # http://sourceforge.net/tracker/?atid=361118&group_id=11118&func=browse
28 # For any other issues, feel free to use the mailing lists:
29 # http://sourceforge.net/mail/?group_id=11118
31 # Anyone interested in actively participating in development and related
32 # discussions can join the appropriate mailing list here:
33 # http://sourceforge.net/mail/?group_id=11118. Archives are available
36 #################################################################################
40 # Filters start with a line "FILTER: name description". They are then referrable
41 # from the actionsfile with +filter{name}
43 # Inside the filters, write one Perl-Style substitution (job) per line.
44 # Jobs that precede the first FILTER: line are ignored.
46 # For Details see the pcrs manpage contained in this distribution.
47 # (and the perlre, perlop and pcre manpages)
49 # Note that you are free to choose the delimter as you see fit.
51 # Note2: In addidion to the Perl options gimsx, the following nonstandard
52 # options are supported:
54 # 'U' turns the default to ungreedy matching. Add ? to quantifiers to
55 # switch back to greedy.
56 # 'T' (trivial) prevents parsing for backreferences in the substitute.
57 # Use if you want to include text like '$&' in your substitute without
60 #################################################################################
63 #################################################################################
65 # js-annoyances: Get rid of particularly annoying JavaScript abuse
67 #################################################################################
68 FILTER: js-annoyances Get rid of particularly annoying JavaScript abuse
70 # Note: Most of these jobs would be safer if restricted to a
71 # <script> context as in:
73 # s/(<script.*)nasty-item(?=.*<\/script>)/$1replacement/sigU
75 # but that would make them match only the first occurance of
76 # nasty-item in each <script>. We need nestable jobs!
78 # Get rid of Javascript referrer tracking.
79 # Test page: http://www.javascript-page.com/referrer.html
81 s|document\.referrer|"Not Your Business!"|gisU
83 # The status bar is for displaying link targets, not pointless blahblah
85 s/([\n =;{}]|window\.)(default)?status\s*=/$1dUmMy=/ig
87 # Kill OnUnload popups. Yummy.
88 # Test: http://www.zdnet.com/zdsubs/yahoo/tree/yfs.html
90 s/(<body\s+[^>]*)onunload(.*>)/$1never$2/siU
91 s|(<script.*)window\.onunload(?=.*</script>)|$1never|sigU
93 # If we allow window.open, we want normal window features:
94 # Test: http://www.htmlgoodies.com/beyond/notitle.html
96 s/(open\s*\([^\)]+resizable=)(["']?)(?:no|0)\2/$1$2yes$2/sigU
97 s/(open\s*\([^\)]+location=)(["']?)(?:no|0)\2/$1$2yes$2/sigU
98 s/(open\s*\([^\)]+status=)(["']?)(?:no|0)\2/$1$2yes$2/sigU
99 s/(open\s*\([^\)]+scroll(?:ing|bars)=)(["']?)(?:no|0)\2/$1$2auto$2/sigU
100 s/(open\s*\([^\)]+menubar=)(["']?)(?:no|0)\2/$1$2yes$2/sigU
101 s/(open\s*\([^\)]+toolbar=)(["']?)(?:no|0)\2/$1$2yes$2/sigU
102 s/(open\s*\([^\)]+directories=)(["']?)(?:no|0)\2/$1$2yes$2/sigU
103 s/(open\s*\([^\)]+fullscreen=)(["']?)(?:yes|1)\2/$1$2no$2/sigU
104 s/(open\s*\([^\)]+always(?:raised|lowered)=)(["']?)(?:yes|1)\2/$1$2no$2/sigU
105 s/(open\s*\([^\)]+zlock=)(["']?)(?:yes|1)\2/$1$2no$2/sigU
106 s/(open\s*\([^\)]+hotkeys=)(["']?)(?:yes|1)\2/$1$2no$2/sigU
107 s/(open\s*\([^\)]+titlebar=)(["']?)(?:yes|1)\2/$1$2yes$2/sigU
110 #################################################################################
112 # html-annoyances: Get rid of particularly annoying HTML abuse
114 #################################################################################
115 FILTER: html-annoyances Get rid of particularly annoying HTML abuse
117 # New browser windows (if allowed -- see no-popups filter below) should be
118 # resizeable and have a location and status bar
120 s/(<a\s+href[^>]+resizable=)(['"]?)(?:no|0)\2/$1$2yes$2/igU
121 s/(<a\s+href[^>]+location=)(['"]?)(?:no|0)\2/$1$2yes$2/igU
122 s/(<a\s+href[^>]+status=)(['"]?)(?:no|0)\2/$1$2yes1$2/igU
123 s/(<a\s+href[^>]+scrolling=)(['"]?)(?:no|0)\2/$1$2auto$2/igU
124 s/(<a\s+href[^>]+menubar=)(['"]?)(?:no|0)\2/$1$2yes$2/igU
126 # The <BLINK> tag was a crime!
128 s*<blink>|</blink>**ig
131 #################################################################################
133 # content-cookies: Kill cookies that come in the HTML or JS content
135 #################################################################################
136 FILTER: content-cookies Kill cookies that come in the HTML or JS content
138 # JS cookies, like found on privacy.net:
140 s|document\.cookie(?=[ \t\r\n]*=)|ZappedCookie|ig
144 s|<meta\s+http-equiv=['"]?set-cookie.*>|<!-- ZappedCookie -->|igU
147 #################################################################################
149 # webbugs: Squish WebBugs (1x1 invisible GIFs used for user tracking)
151 #################################################################################
152 FILTER: webbugs Squish WebBugs (1x1 invisible GIFs used for user tracking)
154 s/<img\s+[^>]*(?:width|height)\s*=\s*['"]?1(?=\D)[^>]*(?:width|height)\s*=\s*['"]?1(?=\D)[^>]*?>//siUg
157 ##################################################################################
159 # popups: Kill all popups in JS and HTML
161 #################################################################################
162 FILTER: popups Kill all popups in JS and HTML
164 s/([\n =;{}]|window\.)open\s*\\?\(/$1concat(/ig # JavaScript
165 s/ target\s*=\s*(['"]?)(_blank|_new)\1?/ notarget/ig # HTML
168 #################################################################################
170 # frameset-borders: Give frames a border, make them resizable and scrollable
172 #################################################################################
173 FILTER: frameset-borders Give frames a border and make them resizable
175 s/(<frameset\s+[^>]*)framespacing=(['"]?)(no|0)\2/$1/igU
176 s/(<frameset\s+[^>]*)(?:frame)?border=(['"]?)(no|0)\2/$1/igU
177 s/(<frame\s+[^>]*)noresize/$1/igU
178 s/(<frame\s+[^>]*)frameborder=(['"]?)(no|0)\2/$1/igU
179 s/(<frame\s+[^>]*)scrolling=(['"]?)(no|0)\2/$1/igU
182 #################################################################################
184 # refresh-tags: Kill automatic refresh tags (for dial-on-demand setups)
186 #################################################################################
187 FILTER: refresh-tags Kill automatic refresh tags (for dial-on-demand setups)
189 # Note: Only deactivates refreshes with more than 9 seconds delay to
190 # preserve monster-stupid but common redirections via meta tags.
192 s/<meta\s+http-equiv\s*=\s*(['"]?)refresh\1\s+content\s*=\s*(['"]?)\d{2,}\s*(;\s*url\s*=\s*([^>\2]*))?\2\s*>/<link rev="x-refresh" href="$4">/iU
195 #################################################################################
197 # img-reorder: Reorder attributes in <img> tags to make the banners-by-* filters more effective
199 #################################################################################
200 FILTER: img-reorder Reorder attributes in <img> tags to make the banners-by-* filters more effective
202 # In the first step src is moved to the start, then width is moved to the second
203 # place to guarantee an order of src, width, height.
204 # This makes banners-by-size more effective and allows both banners-by-size
205 # and banners-by-link to preserve the original image URL in the alt attribute.
207 s|<img\s+([^\\>]*)src\s*=\s*(['"])([^>\\\2]+)\2(.*)>|<img src="$3" $1$4>|siUg
208 s|<img\s+([^\\>]*)src\s*=\s*([^'">\\\s]+?)([^\\>]*)>|<img src="$2" $1$3>|siUg
210 s|<img (src="[^"]*") ([^>]*)width\s*=\s*?(["']?)(\d+?)\3(.*)>|<img $1 width="$4" $2$5>|siUg
213 #################################################################################
215 # banners-by-size: Kill banners by size
217 #################################################################################
219 # Standard banner sizes taken from http://www.iab.net/iab_banner_standards/bannersizes.html
221 # Note: Use http://config.privoxy.org/send-banner?type=trans for a transparent 1x1 image
222 # Use http://config.privoxy.org/send-banner?type=pattern for a grey/white pattern image
223 # Use http://config.privoxy.org/send-banner?type=auto to auto-select.
225 #################################################################################
226 FILTER: banners-by-size Kill banners by size
229 s@<img(?: src="([^"]*)")??[^>]*(width=(['"]?)88\3)[^>]*(height=(['"]?)31\5)[^>]*>@<img src="http://config.privoxy.org/send-banner?type=auto" alt="Killed $1 by size" $2 $4>@sigU
230 # 120*60, 120*90, 120*240, 120*600
231 s@<img(?: src="([^"]*)")??[^>]*(width=(['"]?)120\3)[^>]*(height=(['"]?)(?:600?|90|240)\5)[^>]*>@<img src="http://config.privoxy.org/send-banner?type=auto" alt="Killed $1 by size" $2 $4>@sigU
233 s@<img(?: src="([^"]*)")??[^>]*(width=(['"]?)125\3)[^>]*(height=(['"]?)125\5)[^>]*>@<img src="http://config.privoxy.org/send-banner?type=auto" alt="Killed $1 by size" $2 $4>@sigU
235 s@<img(?: src="([^"]*)")??[^>]*(width=(['"]?)160\3)[^>]*(height=(['"]?)600\5)[^>]*>@<img src="http://config.privoxy.org/send-banner?type=auto" alt="Killed $1 by size" $2 $4>@sigU
237 s@<img(?: src="([^"]*)")??[^>]*(width=(['"]?)180\3)[^>]*(height=(['"]?)150\5)[^>]*>@<img src="http://config.privoxy.org/send-banner?type=auto" alt="Killed $1 by size" $2 $4>@sigU
238 # 234*60, 468*60 (Most Banners!)
239 s@<img(?: src="([^"]*)")??[^>]*(width=(['"]?)(?:234|468)\3)[^>]*(height=(['"]?)60\5)[^>]*>@<img src="http://config.privoxy.org/send-banner?type=auto" alt="Killed $1 by size" $2 $4>@sigU
241 s@<img(?: src="([^"]*)")??[^>]*(width=(['"]?)240\3)[^>]*(height=(['"]?)400\5)[^>]*>@<img src="http://config.privoxy.org/send-banner?type=auto" alt="Killed $1 by size" $2 $4>@sigU
243 s@<img(?: src="([^"]*)")??[^>]*(width=(['"]?)(?:250|300)\3)[^>]*(height=(['"]?)250\5)[^>]*>@<img src="http://config.privoxy.org/send-banner?type=auto" alt="Killed $1 by size" $2 $4>@sigU
245 s@<img(?: src="([^"]*)")??[^>]*(width=(['"]?)336\3)[^>]*(height=(['"]?)280\5)[^>]*>@<img src="http://config.privoxy.org/send-banner?type=auto" alt="Killed $1 by size" $2 $4>@sigU
247 # Note: 200*50 was also proposed, but it probably causes too much collateral damage:
249 #s@<img(?: src="([^"]*)")??[^>]*(width=(['"]?)200\3)[^>]*(height=(['"]?)50\5)[^>]*>@<img src="http://config.privoxy.org/send-banner?type=auto" alt="Killed $1 by size" $2 $4>@sigU
252 #################################################################################
254 # banners-by-link: Kill banners by their links to known clicktrackers
256 #################################################################################
257 FILTER: banners-by-link Kill banners by their links to known clicktrackers
259 # Common case with width and height attributes:
261 s@<a\s+href\s*=\s*(['"]??)([^>\1]*(?:\
262 adclick # See www.dn.se \
263 | atwola\.com/(?:link|redir) # see www.cnn.com \
264 | /jump/ # redirs for doublecklick.net ads \
265 | tracker | counter # common \
266 | adlog\.pl # see sf.net \
267 )[^>\1]*)\1[^>]*>\s*<img(?: src="([^"]*)")??[^>]*((?:width|height)\s*=\s*(['"]?)\d+?\5)[^>]*((?:width|height)\s*=\s*(['"]?)\d+?\7)[^>]*>\
268 @<img $4 $6 src="http://config.privoxy.org/send-banner?type=auto" alt="Killed $3 by hwlink to $2">@siUgx
270 # Rare case w/o explicit dimensions:
272 s@<a\s+href\s*=\s*(['"]??)([^>\1]*(?:adclick|atwola\.com/(?:link|redir)|doubleclick\.net/jump)[^>\1]*)\1[^>]*>\s*<img(?: src="([^"]*)")??[^>]*>@<img src="http://config.privoxy.org/send-banner?type=auto" alt="Killed $3 by link to $2">@siUg
274 #################################################################################
276 # fun: Text replacements for subversive browsing fun!
278 #################################################################################
279 FILTER: fun Text replacements for subversive browsing fun!
281 s/microsoft(?!.com)/MicroSuck/ig
283 # Buzzword Bingo (example for extended regex syntax)
285 s* industry[ -]leading \
287 | customer[ -]focused \
289 | award[ -]winning # Comments are OK, too! \
290 | high[ -]performance \
291 | solutions[ -]based \
295 *<font color="red"><b>BINGO!</b></font> \
299 #################################################################################
301 # nimda: Remove Nimda (virus) code
303 #################################################################################
304 FILTER: nimda Remove Nimda (virus) code
306 s%<script language="JavaScript">(window\.open|1;''\.concat)\("readme\.eml", null, "resizable=no,top=6000,left=6000"\)</script>%<br><font size="7"> WARNING: This Server is infected with <a href="http://www.cert.org/advisories/CA-2001-26.html">Nimda</a>!</font>%g
309 #################################################################################
311 # shockwave-flash: Kill embedded Shockwave Flash objects
313 #################################################################################
314 FILTER: shockwave-flash Kill embedded Shockwave Flash objects
316 s|<embed [^>]*application/x-shockwave-flash.*</embed>|<!-- Squished Shockwave Flash Embed -->|sigU
319 #################################################################################
321 # js-events: Kill all JS event bindings (Radically destructive! Only for extra nasty sites)
323 #################################################################################
324 FILTER: js-events Kill all JS event bindings (Radically destructive! Only for extra nasty sites)
326 s/(on|event\.)((mouse(over|out|down|up|move))|(un)?load|contextmenu|selectstart)/never/ig
327 # Not events, but abused on the same type of sites:
328 s/(alert|confirm)\s*\(/concat(/ig
331 #################################################################################
333 # crude-parental: Crude parental filtering? (Use along with a suitable blocklist).
334 # Shows how to deny access to whole page based on a keyword.
336 #################################################################################
337 FILTER: crude-parental Crude parental filtering (demo only)
339 # (Note: Middlesex, Sussex and Essex are counties in the UK, not rude words)
340 # (Note #2: Is 'sex' a rude word?!)
342 s%^.*(?<!middle)(?<!sus)(?<!es)sex.*$%<html><head><title>Blocked</title></head><body><h3>Blocked due to possible adult content. Please see <a href="http://dmoz.org/Kids_and_Teens/">this site</a>.</h3></body></html>%is
343 s+^.*warez.*$+<html><head><title>No Warez</title></head><body><h3>You're not searching for illegal stuff, are you?</h3></body></html>+is
346 ##############################################################################
349 # $Log: default.filter,v $
350 # Revision 1.11.2.2 2002/08/01 11:20:13 oes
351 # Fixed bugs 587802, 577802 and an unreported one
353 # Revision 1.11.2.1 2002/07/26 15:18:26 oes
354 # - All filters reviewed and many shorcomings fixed
355 # - New filters: img-reorder, banners-by-link and js-events
356 # - Jobs reorderd because they are now executed in order of
359 # Revision 1.11 2002/05/24 00:57:18 oes
360 # Made WeBugs job ungreedy; Fixes bug 559190
362 # Revision 1.10 2002/04/18 10:14:19 oes
363 # renamed some filters
365 # Revision 1.9 2002/04/11 07:36:35 oes
366 # Generalized js-popup filter
368 # Revision 1.8 2002/04/10 17:07:21 oes
369 # Fixed potentially desctructive jobs, added noflash filter
371 # Revision 1.7 2002/04/09 18:34:51 oes
372 # Fixed HTML syntax in replacements
374 # Revision 1.6 2002/04/03 19:49:52 swa
377 # Revision 1.5 2002/03/27 15:30:26 swa
378 # have a consistent appearance
380 # Revision 1.4 2002/03/26 22:29:54 swa
381 # we have a new homepage!
383 # Revision 1.3 2002/03/24 16:08:03 jongfoster
384 # Fixing banners-by-size for new config URLs
386 # Revision 1.2 2002/03/24 13:02:18 swa
387 # name change related issues.
389 # Revision 1.1 2002/03/24 11:37:39 jongfoster
392 # Revision 1.24 2002/03/16 20:39:54 oes
393 # - Added descriptions to the filters so users will know what they select in the cgi editor
394 # - Added content-cookies filter
395 # - Bugfixed many jobs (Thanks to Al for some hints)
397 # Revision 1.22 2002/03/12 13:42:50 oes
398 # Fixing & Optimizing REs
400 # Revision 1.21 2002/03/12 11:59:20 oes
401 # Beefed up Buzzword Bingo
403 # Revision 1.20 2002/03/12 01:42:50 oes
404 # Introduced modular filters
406 # Revision 1.19 2002/03/10 19:49:24 oes
407 # Added expression to kill referer tracking in JavaScripts
409 # Revision 1.18 2002/03/08 17:14:12 oes
410 # PNG -> image in comments
412 # Revision 1.17 2002/03/07 03:50:54 oes
413 # Adapted comments to new built-in images
415 # Revision 1.16 2002/02/21 00:12:19 jongfoster
416 # Modifying the banner regexps to use long URLS and to autodetect
417 # whether to show a logo or a transparent GIF, based on actionsfile
420 # Revision 1.15 2001/12/28 23:54:20 steudten
421 # Fix for feature Req #495374: http-equiv problem
423 # Revision 1.14 2001/12/09 18:55:11 david__schmidt
424 # Updated CODE_STATUS to beta, commented out microsuck line in re_filterfile
427 # Revision 1.13 2001/10/13 13:11:20 joergs
428 # Fixed WebBug filter.
430 # Revision 1.12 2001/10/07 15:46:42 oes
431 # Followed Guy's proposal to change the document.cookie job
433 # Revision 1.11 2001/09/21 12:34:00 joergs
434 # Added filter to replace "Nimda" code by a warning.
436 # Revision 1.10 2001/07/20 11:04:26 oes
437 # Added Rodneys javascript cookie filter
439 # Revision 1.9 2001/07/13 14:03:48 oes
440 # Elimiated yet another bug in the banner-by-size jobs. Shame on me!
442 # Revision 1.8 2001/06/29 13:34:00 oes
443 # - Added explanation for U and T options
444 # - Added hint on image replacement by CGI call
445 # - Fixed bug in banner-by-size jobs
447 # Revision 1.7 2001/06/19 14:21:56 oes
448 # Fixed microsuck line
450 # Revision 1.6 2001/06/09 14:01:57 swa
451 # header. cosmetics. default: no messing ala microsuck.