Why you should never test your proxy via score sites

While cracking adspower stealth browser, I noticed a new alert under the pixelscan page.

View attachment 299232




no-i-dont-think-i-will.gif



This is how they get access to proxy IPs.

It's the same as visiting https://www.ipqualityscore.com/free-ip-lookup-proxy-vpn-test/ site with a leaking browser and then wondering why your proxy is flagged and showing up with bad score.

They are big honeypots, be aware, and do not give your proxy subnet ranges to those companies.
No doubt, ipqualityscore is the worst for this. How was adspower to crack? I feel like their devs are actually pretty good, well made program with good features for how cheap it is imo.
 
Does that even make sense to use mobile useragents on desktop somewhere? Not asking about specific place, just findings.
In my opinion it depends. If your target auditory mostly uses mobile devices ( as do mine), I would prefer to use mobile useragents. At least in testing phase for sure.
 
No, thats bad practice, thats why I was asking because to know knowing, there is no stealth browsers that offer mobile browsers that can be automated from remote.
Can you please explain in few words, why do you think it is bad practice? Imo it gives a much precise results from testing perspective..
 
Last edited:
Can you please explain in few words, why do you think it is bad practice? Imo it gives a much precise results from testing perspective..
It is trivial to detect a desktop browser with JS fingerprinting. If you get detected as desktop while pretending to be mobile, then it will immediately ring bells.
 
It is trivial to detect a desktop browser with JS fingerprinting. If you get detected as desktop while pretending to be mobile, then it will immediately ring bells.
Generally- yes. But I am speaking about use of Dolphin browser, where JS fingerprinting has been concealed
 
Frankly speaking, I never understood the meaning of these checkers. The results are useless. What is important for me is the fact that proxy server is working for my target web-site.
 
Frankly speaking, I never understood the meaning of these checkers. The results are useless. What is important for me is the fact that proxy server is working for my target web-site.
Some of those checkers are honeypots as correctly outlined here. And they are not meant for proxy users, but rather for webmasters trying to figure out what their visits are.
 
Building any website to just collect user IPs is an overkill. There is spur.us, which gives you even the proxy provider of the IP (if you sign up with corporate mail).
Just buying a proxy plan and making millions of requests to your endpoint is a much much easier alternative. I suspect spur.us did exactly that. At least they have a very full database of shitroyal proxies and not more premium ones like Oxy, I suspect they block them pretty soon.

Any proxy checker would first target datacenter IPs and proper geolocation data, which are millions and millions of IPs unmanageable to collect with just a website for fingerprint enthusiasts.
So their proxy checker is probably just an attempt to monetize the website.
I am 100% they didn't bought from me. And if they do, I will grab my popcorn and watch how they will may millions of requests on my proxy that's extracted from a real mobile phone where they will put the phone airplane mode ON/OFF to switch the IP a million times. I think they need to pass to their nephews the task cause it will take 2 lifetimes for completion :D
 
Wait, what?
Me being dumb all those years testing on these sites and discarding proxies after all
What a waste
 
All those fingerprints nowadays are just a decoy to spot anti-detects.
If you use anything other than a "Windows Desktop" profile on a Windows PC, they will know it.
If you use chromium and pretend to be the chrome-browser, this has different features and they will know it as well.
 
They have always seemed like honeypots to me too lol
 
All those fingerprints nowadays are just a decoy to spot anti-detects.
If you use anything other than a "Windows Desktop" profile on a Windows PC, they will know it.
If you use chromium and pretend to be the chrome-browser, this has different features and they will know it as well.
That's right. Contemporary browsers have very intricate internal workings; it is easy to spot even the slightest discrepancies between their properties (e.g. browser claims to run on Windows 8 yet reports ARM for hardware architecture) to tell spoofing with nearly 100% accuracy. That's exactly what we do with browser fingerprints.
 
There is someone on this forum selling Google clicker, which uses mobile fingerprints and runs perfectly on desktop.
Out of my experience when creating threshold accounts were a thing, i think we give google and all these other companies wayyyy too much credit.
They are really not that smart, nor complex to fool. (Or maybe they believed its not worth the resources)

At the end of the day, its a two way communication between a client and a server.
If the client is able to control all the data sent to the server (Anti-detect, scripts, network spoofing etc..), the server has no way to identify anything that you don't want it to identify.
Add some mobile proxies that access the users actual phones (They offer a free game for example in return for access to your idle internet when phone is not used) and you can probably do some serious work without being detected.
Hell, I am watching so many of my campaigns on Microsoft clarity, maybe 30% of my traffic is bots, and google can't detect (or chooses not too) them.
 
that is how they make more money, selling info, an innocent extention or test makes a big difference at the end, thanks for sharing and the warning.
 
100% this. The proxy either works for your task or it doesn't. The 'spam score' is mumbo jumbo
d3bde700-83f6-48e3-8631-b5b0d3395ba8_text.gif
 
Damn, man, these are obvious scams i never will fell into,

At least i secured my paypal and binance accounts with some random accounts checker found on google,
They reported that my email & pws are not shared anywhere :D
Some are even good that they asked for the phone verification code to check its security as well :D :D
 
Thanks for this knowlegde share. hopeful to avoid this pitfall.
 
I use this site to test
so I get good result when I use 4G proxies I think it's all about proxy provider and the browser that you use
 
Back
Top