Let's talk about the anti-fraud system

Student

Professional
Messages
1,575
Reaction score
1,176
Points
113
Today we will talk about the anti-fraud system.

All information provided is for informational purposes only and does not encourage you to take actions that violate the law!

This is not a scheme to bypass antifraud. These are the key points that you should pay attention to first of all to prevent the addition of fraud points and avoid all the ensuing troubles
1. Use Octo or similar anti-detects, high-quality proxy IP
2. Before creating a session, check the proxy for Fraud Score (also when changing a proxy, check it for Fraud Score)
3. Enter the IP Fraud Score in the FO field and then monitor the dependence on the number of proxy points and bans
4. Check the IP for viruses
5. Check the proxy for open ports
6. The phone's geo/IP geo and the user's geo must match
7. Before registering an email, check the phone on seon.io with low Risk
8. Register 2 services from: FB, Pinterest, Booking, Twitter, Linkedin, Skype, Microsoft, ideally register a couple (at least 1) messaging services, for example Whatsapp and Telegram (both require a phone. Think over the scheme)
9. Do not write in First/last name and numbers, for example, Johh5 Smith. Do not use more than 4 digits in your login.

Why do antifraud systems award fraud points? IP.​

  • 1. Proxies should not be detected (a question of the quality of anti-detection and the quality of the proxy)
  • 2. The IP must not be infected with a virus.
  • 3. IP should not be listed in spam databases
  • 4. The IP must not have any open ports.

1.png


Why do antifraud systems award fraud points? Email.​

  • 1. Do not use more than 4 digits in your email login.
  • 2. For example, if a person's name is Adam Smith and his email is ghost34@gmail.com , this is not considered a violation for anti-fraud systems.
  • 3. At least 2 online profiles must be registered

2.png


Why do antifraud systems award fraud points? Phone.​

  • 1. The phone should not be suspicious
  • 2. At least the phone number must be listed in 2 online profiles and at least 1 messenger.

3.png


Why antifraud systems award fraud points. Other rules.​

  • 1. The user agent must always be up-to-date
  • 2. The phone country and IP country must match
  • 3. The country of the phone and the user's geographic location (which he indicates must match) 4. That is, if the proxy is UK, then for registration you need to use a UK phone and indicate the country of residence as UK in all social networks
  • 5. Use popular user agents
  • 6. Use popular resolutions
  • 7. Ideally, use a card from the same country as your account.

EXAMPLE:
popular desktop resolutions https://gs.statcounter.com/screen-resolution-stats/desktop/worldwide 1920*1080 23%
1366*768 18%
1536*864 11%
These 3 resolutions are used by 52% of users
The latest UA Chrome Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/103.0.0.0 Safari/537.36

Click to expand...

4.png


5.png


Seon email test

6.png


Seon's recommendations for various industries

7.png


8.png


9.png


10.png


11.png


12.png


Sphere - pixelscan.net (a bad proxy was used on purpose)

13.png


Octo - pixelscan.net (a bad proxy was used on purpose)

14.png


Ads power - pixelscan.net (a bad proxy was used on purpose)

15.png


Proxy testing. Example of a good proxy - ipqualityscore.com/free-ip-lookup-proxy-vpn-test

16.png


17.png


Proxy Check. Example of a bad proxy - ipqualityscore.com/free-ip-lookup-proxy-vpn-test

18.png


Checking open ports - 2ip.ua/ru/services/ip-service/port-check

19.png


Tests with proxies of varying quality​


Octo + XXX - the proxy isn't detected, but the IP has a bad fraud score (I checked 5 of them). That doesn't mean they're all bad. But there are a lot of them.

20.png


21.png


Octo + YYY proxy is being detected, apparently due to speed, but the proxy is of normal quality.

22.png


YYY

23.png


24.png


Octo + ZZZ

25.png


ZZZ

26.png


Octo + FFF is exposed as a proxy, often provides IPV6 instead of IPV4, often comes across proxies with low risk, sometimes with 0 risk, very few proxies, TP does not respond

27.png


FFF

28.png


(c) grizzliess
 
Top