An embodiment of the present invention discloses an on-line
payment method and
system. The scheme provided by the embodiment of the invention comprises the steps of: when receiving an electronic
payment request, preventing service parameters from being reused and initiating a
phishing attack through various specific anti-
phishing verifications, for example, increasing the timeliness of the service parameters by timestamps of anti-
phishing parameters; verifying the request source, i.e., determining whether the request source for this request is one in a white
list or not through the request source white
list, thereby completely eradicating the possibility of being embezzled by a phishing website from the request source; and determining whether a creater of an external business and a payer of an internal business are the same user by comparing an
IP address of an external call with an
IP address obtained by the local, so as to prevent someone paying for a business created by the phishing website itself. These
verification methods monitor the business parameters from various aspects and realize protection and control of the behavior of anti-phishing.