Credit Card Fraud Detection

ezimerchant's Fraud Detection is provided by MaxMind.

Contents:

  1. Overview
  2. Fraud Data Explained
  3. Recommendations for reducing fraud
  4. How much does it cost?
  5. Credit Card Fraud Detection Service Terms of Use

Overview

Credit card fraud is a growing problem for online merchants. As the merchant, you are liable for fraudulent credit card transactions and possibly chargeback fees as well.

To help combat this, ezimerchant has teamed up with MaxMind to provide industry leading Credit Card Fraud Detection tools to automatically sift through your online orders and flag potentially fraudulent transactions.

Fraud Data Explained

ezimerchant Professional provides two levels of Fraud Check Data.

Basic Fraud Check Data

All registered users get access to the Basic Fraud Check Data at no additional cost. The Basic fraud check data can help you determine if your order is genuine or fraudulent in nature.

The following information is provided for each credit card order placed on your site...

Premium Fraud Check Data

In addition to the Basic Fraud Check Data provided above you can also receive the additional information below.

Risk Factor Calculation

The Credit Card Fraud Detection service calculates a Risk Factor (Fraud Score) based on known risk factors and their likelihood to indicate possible fraud.
 
Risk Check
Email Domain Email specified as the transaction contact matches any of the free email services, such as Hotmail.
Geographic Source Country of IP address associated with the transaction matches country specified in the billing address.
Anonymous Proxy IP address associated with the transaction is Anonymous Proxy.
High Risk Country IP address or billing address is in Belarus, Colombia, Egypt, Indonesia, Lebanon, Macedonia, Malaysia, Nigeria, Pakistan, Ukraine, or Yugoslavia.
Distance Rounded distance estimate between the IP address location and billing location.
BIN Number Match Country of issuing bank matches country of IP address based on BIN number.
Open Proxy Likelihood of IP Address being an Open Proxy.
Spam Likelihood of IP Address being an Spam Source.

The score calculated to estimate the riskiness of accepting a credit card ranges from 0 (low risk) to 10 (high risk) and is calculated as follows:

score = 2.5 * isFreeEmail +
           2.5 * countryDoesntMatch +
           5 * isAnonymousProxy +
           5 * highRiskCountry +
           10 * min(distance,5000) / maxEarthArc +
           2 * binDoesntMatch +
           2.5 * proxyScore +
           spamScore / 3

Note this formula is capped at 10. maxEarth is defined as 20037 kilometers.

Recommendations for reducing fraud

Manual Checks - Fax Authorization with Signature

This is an excellent way of verifying the card holder, the trade-off being that it makes the customer do more work. The customer fills out an authorization form you provide, and then faxes it back to you with a signature and copies of the front and back of the credit card. This is the best way to protect against "friendly" charge-backs, namely when the authorized card holder denies that they authorized the transaction.

A note about PayPal/PayMate

Many merchants who accept credit cards also accept PayPal or PayMate. In general we are as careful accepting PayPal/PayMate payments as we are with credit card payments. You can get chargebacks with PayPal/PayMate, and furthermore, many PayPal accounts have been hijacked, and MaxMind have seen at least one payment from a hijacked account reversed. Fortunately MaxMind had noticed that they used the same IP address as a fraudulent credit card purchase, so MaxMind contacted the PayPal account holder and notified that his account was hijacked. Generally PayPal accounts that have a hotmail or other free e-mail address are risky, since often people will use the same password for both their hotmail and PayPal accounts, so the hijacker will have access to both the PayPal account and their e-mail.

How much does it cost?

Basic Fraud Check Data

Basic Fraud Check Data is free to all registered ezimerchant Professional users.

Premium Fraud Check Data

Premium Fraud Check Data costs $5.50 AUD inc GST per month on top of the standard monthly GTS fee. This will be charged to your credit card at the same time as your GTS fee if you enable the service from within ezimerchant Professional.

Credit Card Fraud Detection Service Terms of Use

This Terms of Use Policy is applicable to all users of On Technology Australia's Credit Card Fraud Detection Service ("CCFD Service") and supplements the On Technology Australia End User License Agreement and General Terms of Use agreement.

APPROPRIATE USES OF CCFD SERVICE

The CCFD Service uses data from the GeoIP Databases combined with recognized fraud risks to help merchants identify potentially fraudulent credit card transactions. Using the CCFD Service constitutes an agreement to restrict your use to appropriate uses of the service as outlined in this section.

(a) You may not use the CCFD Service in any way that violates federal, state, local, international law or the rights of others.

(b) You may submit data to the CCFD Service only to validate credit card transactions or to test the service.

(c) Unacceptable uses of the CCFD Service include, but are not limited to, the following:

(i) submitting queries designed to extract information from the GeoIP Databases if such information is not specifically to be used for the validation of a credit card transaction.

(ii) submitting false or fictitious credit card information (except for the limited purpose of testing the CCFD Service).

(iii) using a robot, spider, other automatic device, or manual process to monitor or copy the GeoIP Databases or the GeoIP Data.

(d) If On Technology Australia, in its sole discretion, finds or suspects that you are using the CCFD Service in an unacceptable manner, On Technology Australia may immediately restrict, suspend or terminate your use of the CCFD Service. Activities that may trigger such a response by On Technology Australia include, but are not limited to, consistent discrepancies between credit card data (e.g., billing address, bank identification numbers (bin), names or phone numbers) entered by you and the applicable information of record for the associated cardholders.

AVAILABILITY OF CCFD SERVICE

On Technology Australia provides the CCFD Service on an "as is", "as available" basis and does not warrant the CCFD Service to be error free. Furthermore, since availability of the CCFD Service is dependant upon many factors beyond On Technology Australia's control, On Technology Australia does not guarantee the uninterrupted availability of the CCFD Service. The CCFD Service may be inoperative and/or unavailable due to technical difficulties or for maintenance purposes, at any time and without notice.

HAVE A QUESTION?

need an answer?

e-commerce FORUMS

DISCUSS

We get the THUMBS UP!

VIEW TESTIMONIALS

feeling insecure?

EZIGUARD
McAfee Secure sites help keep you safe from identity theft, credit card fraud, spyware, spam, viruses and online scams