Hey guys,
I've been pulling my hair out over this and could really use some expert eyes. I'm trying to run a standard GPT/Offerwall setup (focusing purely on web offers, no app installs to avoid GAID/Play Store hardware API leaks).
My setup looks flawless on all the standard checkers, but I'm still getting hit with instant "Proxy/VPN detected" walls on high-tier sites like EarnLab and Adscend Media.
My Current Setup:
Device & Connection: Real physical Android phone. I am keeping my real local physical SIM card inside the phone and using its cellular data directly to connect. I am not using a Wi-Fi hotspot or removing the SIM.
Proxy Provider: Gridpanel Dedicated Mobile Proxy (AT&T Wireless, Houston TX, ASN 20057).
Tunneling: NekoBox (FakeDNS enabled, Remote DNS active to plug WebRTC).
Browser: Standard Android Chrome (Using a 'Churn & Burn' strategy: clearing all app data and rotating the IP before every new 3-hour session).
The Leak Checks (Everything looks solid):
Pixelscan: 100% Consistent. No proxy, no masking detected.
BrowserLeaks (WebRTC): Totally plugged. n/a for both local IP (no 172.x or 10.x leaks) and public IP.
BrowserLeaks (DNS): Resolving perfectly to AT&T DNS servers. I explicitly avoided forcing Google (8.8.8.8) or Cloudflare DNS because I want the mobile carrier profile to look 100% organic. No DNS mismatch.
IPv6: Disabled completely.
The Issue:
Despite the network config being completely watertight on paper, the moment I land on EarnLab, I get the banner: "Please disable your VPN or Proxy connection and sign in again." Adscend also gives me an instant generic red error blocking access to the wall.
My Questions for the Vets:
Since I'm keeping my real local SIM card inside the phone, is it possible that my local MCC/MNC or carrier data is leaking through Chrome to these sites, even though I'm strictly doing web offers and avoiding the Play Store entirely?
Is this strictly an IP Reputation / Abuse Velocity issue? Even though it's a premium mobile proxy, are these specific subnets just heavily cooked/blacklisted by MaxMind/Verisoul from other farmers?
For pure web-based offers, is there another deep JS fingerprinting metric on Chrome Android that I'm missing?
Any insights or point in the right direction would be hugely appreciated!
I've been pulling my hair out over this and could really use some expert eyes. I'm trying to run a standard GPT/Offerwall setup (focusing purely on web offers, no app installs to avoid GAID/Play Store hardware API leaks).
My setup looks flawless on all the standard checkers, but I'm still getting hit with instant "Proxy/VPN detected" walls on high-tier sites like EarnLab and Adscend Media.
My Current Setup:
Device & Connection: Real physical Android phone. I am keeping my real local physical SIM card inside the phone and using its cellular data directly to connect. I am not using a Wi-Fi hotspot or removing the SIM.
Proxy Provider: Gridpanel Dedicated Mobile Proxy (AT&T Wireless, Houston TX, ASN 20057).
Tunneling: NekoBox (FakeDNS enabled, Remote DNS active to plug WebRTC).
Browser: Standard Android Chrome (Using a 'Churn & Burn' strategy: clearing all app data and rotating the IP before every new 3-hour session).
The Leak Checks (Everything looks solid):
Pixelscan: 100% Consistent. No proxy, no masking detected.
BrowserLeaks (WebRTC): Totally plugged. n/a for both local IP (no 172.x or 10.x leaks) and public IP.
BrowserLeaks (DNS): Resolving perfectly to AT&T DNS servers. I explicitly avoided forcing Google (8.8.8.8) or Cloudflare DNS because I want the mobile carrier profile to look 100% organic. No DNS mismatch.
IPv6: Disabled completely.
The Issue:
Despite the network config being completely watertight on paper, the moment I land on EarnLab, I get the banner: "Please disable your VPN or Proxy connection and sign in again." Adscend also gives me an instant generic red error blocking access to the wall.
My Questions for the Vets:
Since I'm keeping my real local SIM card inside the phone, is it possible that my local MCC/MNC or carrier data is leaking through Chrome to these sites, even though I'm strictly doing web offers and avoiding the Play Store entirely?
Is this strictly an IP Reputation / Abuse Velocity issue? Even though it's a premium mobile proxy, are these specific subnets just heavily cooked/blacklisted by MaxMind/Verisoul from other farmers?
For pure web-based offers, is there another deep JS fingerprinting metric on Chrome Android that I'm missing?
Any insights or point in the right direction would be hugely appreciated!