Let's just say you're not the first one to think of that "bright" idea. People running on VM and behind a proxy are easy to detect so you don't get paid for it.
I mean at an even lower level why can't the packets sent to the app store be collected analyzed and then forged.
Just don't understand why.