Spoof Expert

Spoof test

Spoof test: how anti-fraud systems read your connection

A spoof test shows what anti-fraud systems see about your connection: whether the address belongs to a proxy, VPN or Tor, what risk score it carries, whether it appears on blacklists, and whether its stated geolocation lines up with the technical signals. The tool surfaces the same data payment services and platforms use when they assess a user.

Signals that get checked

Proxy, VPN and Tor detection

Whether the address falls into known anonymiser, hosting or Tor exit-node ranges.

Fraud score

A numeric risk rating: how suspicious the address looks to anti-fraud engines.

Blacklists

History of the address across abuse lists and reputation databases.

Connection type

Home network, mobile carrier, datacenter or commercial hosting.

Geolocation consistency

Whether IP country, timezone and DNS data disagree with each other.

ASN and provider

Which autonomous system and operator the address belongs to.

What to check with

IP check

free

Shows your public IP, country, city, ISP, connection type, DNS hints, timezone versus your local clock, and basic proxy signals.

Check your IP

Fraud check

$0.25 per check

Pulls reputation data from leading anti-fraud providers for an IP, phone or card into one report: proxy and VPN detection, blacklist history, geolocation consistency.

Open fraud check

How to read the result

A risk score is an estimate, not a verdict. A low value means services have no formal reason to add friction; a high one means the address sits in ranges or lists that anti-fraud engines treat with caution.

A mismatch between IP country, device timezone and DNS data is one of the loudest signals. If an address claims to be German while the timezone and resolvers point elsewhere, anti-fraud systems weigh that.

Datacenter addresses and known VPN providers almost always carry a higher risk score than home and mobile networks — a direct consequence of how reputation databases are built.

The report returns data that anti-fraud providers already hold for the value you submit. It is a checking tool: it shows the picture rather than changing it.

Frequently asked questions

What is a spoof test?

It is a check of how your connection looks to anti-fraud systems: whether the IP is detected as a proxy, VPN or Tor, what risk score it carries, and whether it appears on blacklists. The result reflects the same markers services use when deciding how much to trust a connection.

How much does the check cost?

Checking your own IP is free. A full fraud-check report for an IP, phone or card costs $0.25 per check and is paid from your account balance.

What does a high fraud score mean?

That the address belongs to ranges or lists anti-fraud providers consider risky — a datacenter, a known VPN, or an address with a history of abuse. Online services are more likely to ask for extra verification.

Is the data current at the time of the check?

Yes. Each request queries current provider data and returns a report as of that moment.

Do you store the results of checks?

Yes. A paid check is saved to your account's report history — the value you submitted and the resulting report — so you can return to it later and share a link. The report itself consists of reputation data anti-fraud providers already hold for that value. The tool is meant for checking, not for evading verification.

How is this different from a plain IP lookup?

A plain lookup shows the address and rough geolocation. A spoof test adds the reputation layer: connection type, risk score, blacklists, and disagreements between geo, timezone and DNS.