I am not good at documenting but here is a draft about flyover. I hope somebody could correct the mistakes and improve it.
Quote:*******************************************************************************
Flyover
*******************************************************************************
Important things like exploit attempts or site-specific actions are displayed
as a flyover, if you hover over the respective links at the bottom left of the
page.
Contents:
js in
js out
comments
hits
site
cookies
Non-Flyover:
Clickable links to toggle target objects on/off:
?styles
?flash
?iframe
?marquee
Blocked JS events to button, click to execute:
onerror
onload
timer
js in: blocked inline scripts
...............................................................................
Format: Location: Ad_list Ad_keyword - ? - Length (Bytes)
js out: blocked external scripts
...............................................................................
Format: Location: Ad_list Ad_keyword
Example: body Func Code: AdD adlink
comments: blocked comments
...............................................................................
hits: blocked JS Methods
...............................................................................
site: site-specific keywords
...............................................................................
The site-specific keywords are set in Exceptions.ptxt and Exceptions-U.ptxt
cookies: site-specific cookies
...............................................................................
stroke lined if the browser has rejected the cookie, or denied JS access to it
Possible fields:
First Set-Cookie Header In
Last Original Set-Cookie Header In
Cookies Killed or Modified
Cookie Header Out
Cookies in Session
Please note a document may come with a bunch of set-cookie headers, hence
first/last.
"First" is the first set-cookie header after possible manipulations on our part
"Last" is the last set-cookie header before possible manipulations on our part
"First" is only identical to "Last" if there was just one set-cookie header
*and* its value hasn't been modified by the config