What is a residential proxy?
A residential proxy routes traffic through a real consumer device or home network — often without the device owner's knowledge — rather than a data center server, making the traffic look like it comes from an ordinary home internet connection. See our blog posts "What is a Residential Proxy?" and "Residential Proxies: The Legal Botnet Nobody Talks About" for more detail.
Similar questions
What Proxy or VPN services are known bad?
Some services tend to be more abuse than others. It is important to remember that because abuse is ultimately driven by the users of a service, this can ebb and flow depending on different threat actors, techniques, and targets. We recommend looking for services that explicitly enable anonymous purchases without logging and services that are frequently sourced by malware.
Can a single IP address be associated with more than one proxy or anonymization service?
Yes. Shared infrastructure, reseller arrangements, and overlapping proxy ecosystems can result in an IP being associated with multiple services. Determining the exact service responsible for a specific event often requires additional context and investigation.
How quickly can Spur identify and classify newly discovered VPN or proxy infrastructure?
Spur continuously researches emerging infrastructure and updates classifications as new intelligence becomes available. New infrastructure is often identified and incorporated rapidly, allowing customers to benefit from current intelligence through the API and data products.
How does Spur detect VPNs, residential proxies, and ISP proxies?
Spur uses a combination of network intelligence, infrastructure analysis, behavioral signals, routing characteristics, historical observations, and proprietary research to identify and classify IP addresses. Multiple signals are evaluated together to determine the likelihood that an IP belongs to a VPN, residential proxy network, ISP proxy service, hosting provider, or other category.
Why are residential proxies more difficult to detect than traditional VPNs?
Residential proxies route traffic through real consumer internet connections, causing activity to appear as if it originates from legitimate users. Because the IP addresses belong to trusted ISPs rather than known hosting providers, traditional reputation and geolocation controls are often less effective.