The injection has been stopped and Baidu's script checks if there exists a referer.
The GFW may have ceased its attack, but there's no check you can possibly add into an asset delivered over HTTP which can't be undone by the GFW.
As long as there's a script being delivered over HTTP, the GFW can intercept that script request and replace with a script of its own.