Whoer Proxy Check: Reading the Disguise Score

What each Whoer.net row means for a mobile proxy, why your disguise score dropped (time zone, language, DNS, WebRTC) and how to fix each cause.

VoidMob Team
8 min read

Whoer.net's proxy check compares your exit IP with everything else your browser reports: DNS resolver, time zone, language and WebRTC, plus IP-type and blacklist databases. The "Your disguise" percentage drops when those signals disagree. On a working mobile proxy the IP should read as a carrier address. Most lost points come from browser settings, not from the proxy.

What does the Whoer disguise score measure?

The Whoer disguise score measures agreement. Whoer's own page (as of October 2026) says its VPN check compares "your IP country with DNS, time zone/locale" and looks "for tunneling signs". It says its proxy checker "inspects headers, scans common proxy ports (8080/3128/1080)", catches fingerprintable patterns, and flags "datacenter IP vs residential/mobile".

A clean result reads "Your disguise: 100% Your anonymity measures are safe or you don't use them". Octo Browser's guide to anonymity checkers puts 90-100% as looking like a regular user from the declared country. Around 40-70%, it says, comes with red or yellow warnings.

Whoer.net also advertises VPN and proxy services on the same page. Read the score as a consistency check, not a verdict.

How should Whoer read a mobile proxy, row by row?

A mobile proxy exit should look like an ordinary phone subscriber in the proxy's country. Every VoidMob exit is a real 4G/5G device on a consumer carrier connection, so its public IPv4 address sits behind the carrier's CGNAT and is shared with that carrier's ordinary subscribers. A clean exit therefore reads as a mobile carrier address.

Whoer rowClean mobile exitIf it looks wrong
IP, city, countryThe proxy's country; city may be a carrier hub, not the exact townYour real location means traffic is not going through the proxy
ISP / AS Organization / AS NumberThe mobile carrier's name and ASNA hosting company points to a non-mobile exit or a proxy chain
HostnameOften a carrier reverse-DNS name, sometimes emptyA server or cloud hostname suggests a datacenter exit; confirm it in the ISP and AS rows
DNSA resolver in the same country as the IPYour home ISP's resolver means a DNS leak
Proxy / AnonymizerUsually NoYes points to headers, open ports or a listed range
BlacklistUsually NoA shared carrier IP can inherit a listing from other subscribers' traffic

If the ISP row shows a cloud provider while you expected a carrier, Mobile Proxy Shows as Datacenter covers the causes.

A Proxy: Yes on a carrier IP can come from your side of the chain: a local tool, a second proxy or a corporate gateway can add forwarding headers before traffic reaches the exit. It can also mean the range appears in a proxy database. To check whether the address is listed, use the IP Blacklist Checker. A listing on a shared carrier address often reflects other subscribers' traffic rather than yours.

Why did my Whoer score drop?

A Whoer score drops when one panel contradicts the IP. Confirm the exit first, then work through the causes below in order.

What does your IP reveal right now?

Time zone does not match the exit

Whoer's TIME panel shows Zone, Local and System. A US exit with a browser clock on Central European Time is the most common lost point.

Set the browser profile's time zone from the proxy IP. Most antidetect browsers have a setting that fills time zone, geolocation and language from the proxy automatically. The integration guides show where that setting sits in each browser. In a plain browser, change the operating system's time zone to the exit's region.

Browser language points to another country

The LANGUAGE panel reads the languages your browser sends. A French exit with only en-US and ru listed is a mismatch. Set the profile language to the exit country's main language first, and keep a second language only if a local user plausibly would have one.

DNS resolver sits in another country

The DNS row shows which resolver looked up Whoer's test hostname. If that resolver belongs to your home ISP, your machine resolved the name locally and only the page traffic went through the proxy. A resolver in another country is weaker evidence on its own, since some carriers and public resolvers answer from elsewhere. Either way, resolving DNS through the proxy settles it.

In curl and Python requests, the socks5h scheme sends the hostname to the proxy instead of resolving it locally. With a VoidMob proxy list, SOCKS5 uses the same host, port and credentials as HTTP:

bash
curl -x "socks5h://<list-username>:<list-password>@proxy.voidmob.com:10000" https://ipinfo.io/json
python
1import requests  # pip install "requests[socks]"2 3proxy = "socks5h://<list-username>:<list-password>@proxy.voidmob.com:10000"4r = requests.get("https://ipinfo.io/json", proxies={"http": proxy, "https": proxy})5print(r.json())

The list username and password come from the "Proxy Lists" section of your order page. The curl proxy and Python requests proxy guides cover the other flags.

WebRTC exposes your real IP

WebRTC can report your local or public address directly to the page, outside the proxy. In the WebRTC panel, an address other than the proxy IP costs points and gives away the real connection.

Set WebRTC in the browser profile to replace the address with the proxy IP, or disable it. Then confirm the result with the WebRTC Leak Test.

Rotation changes the exit mid-test

A per-request rotating proxy can send Whoer's page, DNS probe and location lookup out through different devices. Different devices can mean different cities or carriers within one test, and the panels then disagree with each other.

Run checks on a sticky session. On a VoidMob proxy list, set rotation to Sticky or a timed interval longer than the test. A dedicated device holds its IP until you rotate it. What Is a Sticky Session on a Mobile Proxy? explains the trade-off.

Does 100% on Whoer mean a platform will trust you?

No. A 100% Whoer score means your IP, DNS, time zone, language and WebRTC agreed at the moment of the test.

Platforms also weigh behaviour, account history, deeper fingerprint signals and how many accounts share a device. A perfect Whoer score is not a pass from any particular site. Can Mobile Proxies Be Detected? covers what sites can still tell.

How does Whoer compare with Pixelscan and BrowserLeaks?

Whoer.net gives one consistency percentage plus raw panels. Pixelscan focuses on whether the fingerprint looks masked or inconsistent. BrowserLeaks shows raw data per test with no score.

Each has its own reading guide: Pixelscan proxy verdicts and BrowserLeaks proxy lines. VoidMob's Location Consistency Test and IP Type Checker run the same IP-versus-time-zone and IP-type comparisons.

Why does Whoer say Proxy: Yes on my mobile proxy?

Proxy: Yes on a carrier IP can come from something in your own chain adding forwarding headers, such as a second proxy or a local tool, or from the address range appearing in a proxy database. Check that the ISP row shows the carrier, then remove any extra hop between the browser and the proxy.

What is a good Whoer disguise score for a proxy?

Octo Browser's guide treats 90-100% as looking like a regular user from the declared country, and around 40-70% as the range with red or yellow warnings. Aim for 100% by matching time zone, language and DNS to the exit, and by keeping WebRTC from exposing your real IP.

Why is my Whoer DNS in a different country from my IP?

If the resolver belongs to your own ISP, your device resolved the hostname locally while page traffic went through the proxy. A foreign resolver alone can also come from the carrier or a public resolver. Use remote DNS to rule it out: socks5h in curl and Python requests, or the remote DNS setting in your antidetect browser's proxy profile.

Why does my Whoer result change every time I reload?

A per-request rotating proxy gives each reload, and sometimes each request inside one page, a different exit. Switch the proxy list to Sticky or a timed rotation longer than your test so every panel sees the same IP.

Test on real carrier IPs

VoidMob: mobile proxies on real 4G/5G devices, non-VoIP SMS verification and eSIM. Pay-per-GB proxy lists with sticky or rotating sessions, or a dedicated device you rotate yourself.