Google ads farming, repeating sms verrification

intmarketing

Regular Member
Joined
Oct 23, 2011
Messages
398
Reaction score
174
I do Google Ads account farming on large scale.

Recently I receive very often a Request to verify with sms again. Normally I verify once with sms by signup and delete after this the phone number and activate 2fa totp and backup codes. Also use backup aged e-mail accounts from another provider.

Tier1 country and mobile proxies. Anti detect browser, semi automated with api, Pre-warm and after warm schema with signups with Google, adding contacts, YouTube watching upload to Google drive and many other things. No problems at all.

Just recently I keep getting locked out and have to verify with sms again. Not always but very often. I pay 1.2usd per sms, expensive but he sell it just one time (for google but yes they say it all) Worked with many sms services). But over 60 Days and for a lot of accounts it cost serious money.

Anyone a idea what I am missing? Or is this the new standerd. Phone number or using a google app on a mobile device? Feels like I am missing something.
 
Make sure the mobile proxies rotate within the same location, like a city. Because if, when your proxy rotates, it jumps between different locations, even if it's inside of the same country, it's bad for google.

However, it's a general advice, doesn't mean it's necessarily the solution here. I usually verify a google account with a phone number, then remove it (or don't add it at all), add 2fa with google authenticator app (QR code) + recovery codes, and then it only asks for the authenticator code, never for the number, and doesn't force me to add it again. And it also doesn't usually log me out.
Have you tried NOT removing it?
 
I do Google Ads account farming on large scale.

Recently I receive very often a Request to verify with sms again. Normally I verify once with sms by signup and delete after this the phone number and activate 2fa totp and backup codes. Also use backup aged e-mail accounts from another provider.

Tier1 country and mobile proxies. Anti detect browser, semi automated with api, Pre-warm and after warm schema with signups with Google, adding contacts, YouTube watching upload to Google drive and many other things. No problems at all.

Just recently I keep getting locked out and have to verify with sms again. Not always but very often. I pay 1.2usd per sms, expensive but he sell it just one time (for google but yes they say it all) Worked with many sms services). But over 60 Days and for a lot of accounts it cost serious money.

Anyone a idea what I am missing? Or is this the new standerd. Phone number or using a google app on a mobile device? Feels like I am missing something.
Accounts now ask for second SMS verification randomly on new accs. Sometimes a day after warmup, sometimes after pushing spend. Not always, but like randomly.

If you don’t have a verified mobile device attached or mimic the device trust layer Google expects (like Gboard usage, Drive uploads from mobile, etc.), you’ll get slapped with repeat SMS checks.

I mean its nto about the proxy or browser anymore now. It’s about how close you look to a real human running a Google device. Which I think is what you try to do so it seems to be good

Some guys now started integrating real Android emulators with GApps, syncing the account with the Play Store, running a few apps, etc. But this is just overkill.
 
Yeah bro, you're not the only one facing this. Google’s been way more aggressive with security triggers lately, especially around account farming. Even if your setup is solid. aged mails, good proxies, clean warm-up routine — they still push for re-verification out of nowhere. It’s not about something being “wrong” on your end, it’s just how their risk model works now.


Deleting the phone number after first SMS is probably the weak link here. Once that number’s gone, the account loses a key trust signal. Google’s system doesn’t care if you have 2FA or backup codes. it still expects a “real user” to have consistent device + number combo. Lately, if there’s no mobile device sync (like Google app activity), or frequent login pattern changes, they hit you with SMS loops.


Honestly, this seems like the new normal. If you want to keep cost and re-verification low, you might want to rotate less aggressively and keep the number longer. or simulate mobile device behavior better. That said, for running stable campaigns, some of us switched to agency setups where that trust is already built in. Less farming pain, more focus on scaling.
 
Accounts now ask for second SMS verification randomly on new accs. Sometimes a day after warmup, sometimes after pushing spend. Not always, but like randomly.

If you don’t have a verified mobile device attached or mimic the device trust layer Google expects (like Gboard usage, Drive uploads from mobile, etc.), you’ll get slapped with repeat SMS checks.

I mean its nto about the proxy or browser anymore now. It’s about how close you look to a real human running a Google device. Which I think is what you try to do so it seems to be good

Some guys now started integrating real Android emulators with GApps, syncing the account with the Play Store, running a few apps, etc. But this is just overkill.
Damm will give it another try to show more user behavior but I use already most of google services. Also browsing sites with Analytics etc. Random time spent on sites and clicks etc

About phones, for me it’s overkill and hard to automate this part. I don’t know if graphene OS with unique Profiles will work but then it will become more hand work.

For now I choose for longer warmup session and not dialy. I did a mix of short (just check my mail i.e) and long (watch few hours YouTube i.e)

Still hope to see what the trigger is. In my opinion there must be something because not all accounts have it.
Yeah bro, you're not the only one facing this. Google’s been way more aggressive with security triggers lately, especially around account farming. Even if your setup is solid. aged mails, good proxies, clean warm-up routine — they still push for re-verification out of nowhere. It’s not about something being “wrong” on your end, it’s just how their risk model works now.


Deleting the phone number after first SMS is probably the weak link here. Once that number’s gone, the account loses a key trust signal. Google’s system doesn’t care if you have 2FA or backup codes. it still expects a “real user” to have consistent device + number combo. Lately, if there’s no mobile device sync (like Google app activity), or frequent login pattern changes, they hit you with SMS loops.


Honestly, this seems like the new normal. If you want to keep cost and re-verification low, you might want to rotate less aggressively and keep the number longer. or simulate mobile device behavior better. That said, for running stable campaigns, some of us switched to agency setups where that trust is already built in. Less farming pain, more focus on scaling.

Renting this number is expensive. Before it was really cheap this way. 2k monthly for servers and proxies. 1.2 sms cost per account. Able to do 1500+ accounts per month easy. So 2.13usd per account. Can buy them on request for this GEO for 8usd. Best price what i found now. 60 days warmup. No adsense created yet. Solid US account seller but he want minimum 500 accounts for other GEOs and it cost me 60 days waiting time for just testing it.

Maybe time for me to switch to Facebook. See mindblowing profits there hehe. And looks more easy. See more and more people focus on Facebook farming and cloaking nowadays.

Try to stay with the same proxy, when the proxy changes it closes the account immediately.
Not my experience with 5g proxies. Works fine. I don’t switch telecom provider.

Make sure the mobile proxies rotate within the same location, like a city. Because if, when your proxy rotates, it jumps between different locations, even if it's inside of the same country, it's bad for google.

However, it's a general advice, doesn't mean it's necessarily the solution here. I usually verify a google account with a phone number, then remove it (or don't add it at all), add 2fa with google authenticator app (QR code) + recovery codes, and then it only asks for the authenticator code, never for the number, and doesn't force me to add it again. And it also doesn't usually log me out.
Have you tried NOT removing it?
My provider have 3 locations. 1 city. Seems to me ok?

I didn’t try recently to not remove it but I am afraid that I need the number for sms again. Had this in the past.
 
Last edited:
You need to keep the phone number longer and avoid deleting it after signup. Use stable mobile proxies with consistent geo and ASN, and ensure your antidetect setup mimics real user behavior.
 
Yeah bro, sounds like you're hitting the same wall as most of us lately. Farming on Google used to be way smoother and cheaper, but now it’s just becoming a stress test. The SMS loop is killer, and with the way they flag stuff now—even solid setups get dragged.


You're right, keeping the number longer might help a bit, or at least tying it back through app activity or synced device behavior. Google wants “real” usage, not just simulated patterns. And yeah, $2.13 per account sounds efficient until you start losing chunks to re-verifications and warmups with no return.


If you're seeing those FB profits and you're already used to the farming grind, it's worth testing. FB’s not perfect either—still plenty of bans and learning curve—but once you crack your setup, it’s faster to scale and way less about mass farming and more about quality setup. That’s why a lot of us shifted over using pre-built agency structures—takes out most of the stress and lets you focus on profit. If you dive in, just tread smart. The game changed, but the money’s still there.
 
Lately, Google’s been cranking up its security game, especially when it comes to phone number checks and device IDs. That’s probably why you’re seeing more SMS verifications. If you remove the number too soon, it might flag the account as sketchy or incomplete, which then triggers those re-verification texts. To dodge that, try keeping the number on there for at least 30 to 60 days. Also, show some legit activity-like opening up Gmail or YouTube using an emulator or real device. Mix up your session patterns too, make your usage look more natural. And whatever IP or device fingerprint you start with, stick to it during the warm-up period. Doing all that should make your accounts look more real and help cut down on those annoying SMS prompts.
 
Yeah bro, sounds like you're hitting the same wall as most of us lately. Farming on Google used to be way smoother and cheaper, but now it’s just becoming a stress test. The SMS loop is killer, and with the way they flag stuff now—even solid setups get dragged.


You're right, keeping the number longer might help a bit, or at least tying it back through app activity or synced device behavior. Google wants “real” usage, not just simulated patterns. And yeah, $2.13 per account sounds efficient until you start losing chunks to re-verifications and warmups with no return.


If you're seeing those FB profits and you're already used to the farming grind, it's worth testing. FB’s not perfect either—still plenty of bans and learning curve—but once you crack your setup, it’s faster to scale and way less about mass farming and more about quality setup. That’s why a lot of us shifted over using pre-built agency structures—takes out most of the stress and lets you focus on profit. If you dive in, just tread smart. The game changed, but the money’s still there.
Yes its just that I have to start from scratch if I switch, no experience with Facebook. But you are right the people that crack the code printing money there.

Switched for now to a cheaper sms provider that sells this geo for 0.4usd. Used this before but they where out of stock because of me. Lets see if I can bring my cost down. And also change my warm up schema. Link a phone is too much headaches for me.

Maybe you are right about using a agency but it was not much work to manage and cheap.
You need to keep the phone number longer and avoid deleting it after signup. Use stable mobile proxies with consistent geo and ASN, and ensure your antidetect setup mimics real user behavior.
using numbers longer is difficult for me. Just 1 option I have in my head is ship cards to here. The salary in the country I live is very low and this cards can receive sms in foreign countries. And will try your suggestion to use a proxy from 1 location for each account instead of 3 locations. I think my user behavior is good but I have make a bigger database of search queries, google alerts and drive upload files.
Lately, Google’s been cranking up its security game, especially when it comes to phone number checks and device IDs. That’s probably why you’re seeing more SMS verifications. If you remove the number too soon, it might flag the account as sketchy or incomplete, which then triggers those re-verification texts. To dodge that, try keeping the number on there for at least 30 to 60 days. Also, show some legit activity-like opening up Gmail or YouTube using an emulator or real device. Mix up your session patterns too, make your usage look more natural. And whatever IP or device fingerprint you start with, stick to it during the warm-up period. Doing all that should make your accounts look more real and help cut down on those annoying SMS prompts.
Agree, if you can keep the number then its solved but my provider asked more as 100 dollar per 30 days. So then I really have to ship cards to here and hire somebody here to handle it. If you know the ways then cards are free because providers give them away to attract customers so it will be much cheaper
 
Ensure that your proxies are rotating effectively and that their IPs are not associated with suspicious activities.
yes have this function. Important.

-----


Anyone knows if it makes difference if you use local land line numbers vs mobile numbers (local). I am thinking to build my own api and rent 3000 voip numbers. Other thought is use simbanks such as YX 512 Slots SimBank & VoIP Gateway SIMPOOL. Its expensive 5200 dollar for the hardware 5200 dollar for the cards but I you can rent out your cards for other services by platforms that allows sellers. Not sure if cards will be blocked faster. Never did this before. But it looks like a investment which you can earn pretty fast back. I can do a small test. I don't have to start with 512 or 3000 slots.

I really need a solution for this, the SMS verifications keep coming, even with longer warming session and less frequently. I am pretty sure that one of the main reasons is that this numbers are not clean. You can link x google accounts to one number so they sell it multiple times and other use it maybe to spam or whatever and this has a bad impact on your account, even if the number is removed.
 
I 've just recently started exploring BH google ads, using polish gmails with polish proxy ( sticky res proxy ) seems to be going well so far.. the gmails I've used ( which I got from a seller on here ) seem to be working fine.. seen a few other members mention rotating proxies could be the issue, my sticky ones seems to be working so far, so perhaps this is the issue?
 
Hey man, your setup looks solid and clearly you're experienced. I'm also doing Google Ads farming and lately facing the exact same issue frequent SMS re-verification requests even after enabling TOTP 2FA and keeping backup codes ready. Everything used to run smoothly, but something has definitely changed. From what I’m observing, Google has tightened their verification system a lot. Now they seem to flag accounts not just based on IP or browser, but also if the phone number is removed after initial verification. Accounts without a real mobile device connection (like Google app sync, Play Store activity, or even simple contact syncing) are now seen as low trust. I'm now trying to keep the phone number in the account instead of deleting it, and I'm using Android emulators like LDPlayer to simulate real user behavior logging into Gmail, YouTube, syncing contacts, and installing a few legit apps from Play Store. It seems to reduce the SMS re-verify rate a bit. Also, even if some SMS providers claim they sell numbers only once, I’m not sure Google doesn’t catch on. They seem to be checking carrier metadata and reuse patterns too. Overall, it feels like just aged Gmail + TOTP isn't enough anymore. You now need to prove you're a real user with persistent mobile device activity and a stable phone number. Just sharing what I’ve noticed. Hope it helps and if you’ve found any workaround that’s working better, definitely let me know.
 
Hey man, your setup looks solid and clearly you're experienced. I'm also doing Google Ads farming and lately facing the exact same issue frequent SMS re-verification requests even after enabling TOTP 2FA and keeping backup codes ready. Everything used to run smoothly, but something has definitely changed. From what I’m observing, Google has tightened their verification system a lot. Now they seem to flag accounts not just based on IP or browser, but also if the phone number is removed after initial verification. Accounts without a real mobile device connection (like Google app sync, Play Store activity, or even simple contact syncing) are now seen as low trust. I'm now trying to keep the phone number in the account instead of deleting it, and I'm using Android emulators like LDPlayer to simulate real user behavior logging into Gmail, YouTube, syncing contacts, and installing a few legit apps from Play Store. It seems to reduce the SMS re-verify rate a bit. Also, even if some SMS providers claim they sell numbers only once, I’m not sure Google doesn’t catch on. They seem to be checking carrier metadata and reuse patterns too. Overall, it feels like just aged Gmail + TOTP isn't enough anymore. You now need to prove you're a real user with persistent mobile device activity and a stable phone number. Just sharing what I’ve noticed. Hope it helps and if you’ve found any workaround that’s working better, definitely let me know.
Im new to this but I've been doing well with Polish Gmails, I use the 2FA web app and its been working fine, from what I've read, some countries have tighter restrictions that others, what countries are your google account created in?
 
I do Google Ads account farming on large scale.

Recently I receive very often a Request to verify with sms again. Normally I verify once with sms by signup and delete after this the phone number and activate 2fa totp and backup codes. Also use backup aged e-mail accounts from another provider.

Tier1 country and mobile proxies. Anti detect browser, semi automated with api, Pre-warm and after warm schema with signups with Google, adding contacts, YouTube watching upload to Google drive and many other things. No problems at all.

Just recently I keep getting locked out and have to verify with sms again. Not always but very often. I pay 1.2usd per sms, expensive but he sell it just one time (for google but yes they say it all) Worked with many sms services). But over 60 Days and for a lot of accounts it cost serious money.

Anyone a idea what I am missing? Or is this the new standerd. Phone number or using a google app on a mobile device? Feels like I am missing something.
If the accounts were purchased by you, then any issues with them can be resolved by consulting the seller.
 
use it with anti-detect browser
i also getting Request to verify with sms again because of recent updates in google
 
Im new to this but I've been doing well with Polish Gmails, I use the 2FA web app and its been working fine, from what I've read, some countries have tighter restrictions that others, what countries are your google account created in?
I’ve been creating accounts mainly in Tier 1 countries like the US, UK, Canada, and a few in Germany and Australia. These tend to be more trusted long-term but also come with tighter checks (especially around SMS and device activity). Polish Gmails are a good choice too, I’ve heard they’re pretty stable and not too strict in the beginning. Are you sticking with PL numbers, or using external SMS services?
 
Have tried working with cloud phones. Doesn't help. Again sms request popup frequintly, just less if you dont use the phone much. Even if you have usual apps installerd such as socials, banking, weather, news etc. They really want to see continuous activity on the phone. Maybe a phonefarm with google pixels and graphene OS with 32 unqiue profiles per device. Location blocked, might still be an option. But if you have to hire people to play games on those devices every day or at least have a few time interaction with every phone/profile and you add in proxy costs, 1 proxy for 1 profile, it will increase my proxy cost heavy/ Maybe you can do it with a few mobile proxies on the phones and switching the graphene profiles 2-3 times a day. If you do volume you need 2-3 FTE to do that fulltime. It quickly becomes unprofitable compared to the extra sms cost.

And even with the extra sms costs its still a good business to be honest.

Another solution can be still a phone number bounded to the account instead of renting it short and delete after. A big setup with multiple big simbanks is possible if you can setup it by yourself or employees/partners or outsource to a party with experience in this field to set this up in the country where build the accounts i.e. Portugal or Poland. But its expensive and reselling your numbers for other services can be risky. You don't know what happens with the accounts that they created. Before you know they use it for a crypto fraud or mule account, this is not what you want. And it is also not worth for me at the moment to set this up just for my own accounts and not reselling numbers for other services. SMS costs from from services are still cheaper for now. And is matters 0% if you pay 40 usd cent of 1.5 usd if its the same geo. I see no difference.

In the meanwhile looking to Facebook and Bing.

Somebody else already make a step in the right direction?


I 've just recently started exploring BH google ads, using polish gmails with polish proxy ( sticky res proxy ) seems to be going well so far.. the gmails I've used ( which I got from a seller on here ) seem to be working fine.. seen a few other members mention rotating proxies could be the issue, my sticky ones seems to be working so far, so perhaps this is the issue?
Yes Correct Poland is more easy. Same for Portugal,

If the accounts were purchased by you, then any issues with them can be resolved by consulting the seller.
No I just start from 0. No 3th party involved for account creating, just sms services.

use it with anti-detect browser
i also getting Request to verify with sms again because of recent updates in google
Yes of course. But this gives still sms verifications.
I’ve been creating accounts mainly in Tier 1 countries like the US, UK, Canada, and a few in Germany and Australia. These tend to be more trusted long-term but also come with tighter checks (especially around SMS and device activity). Polish Gmails are a good choice too, I’ve heard they’re pretty stable and not too strict in the beginning. Are you sticking with PL numbers, or using external SMS services?
Yes Poland and Portugal are more stable looks like. I use external services so I always delete the number directly. If I don't do this I cant login anymore without having access to this number.
 
Last edited:
Yes, it's a pretty big problem when you also pay $1-2 per text message. We have the same problem, although the cost of receiving SMS is 0.10-0.20$. We register quite a few accounts in different countries, and in some countries Google still requests the number even after deleting it, but we found a solution: when the number is requested, we simply click that we do not have access to this number and email. After that, Google asks for another email where we can get the recovery code. After 48 hours, we received the code and after that Google never invited the number again.
 
Back
Top