Howdy, Stranger!

It looks like you're new here. If you want to get involved, click one of these buttons!


BMail.ag - Secure Email Service
Server.net
CPLicense.net
VPS Server
Buy VPN
Vultr
VMs for AI
HostDare
ReliableSite White-Label Dedicated Hosting for Resellers
25% Recurring Discount on NVMe VPS
Try EnsoVPN - Reliable VPN - 1-Day Free Trial
InterServer VPS
BMail.ag - Secure Email Service
Best VPN
High-Performance Bare Metal Server Solutions
Karvl.com
Server Mania Cloud Hosting
DataWagon Hosting
AlphaVPS Hosting
Evoxt.com
Clouvider
VPS Hosting with NVMe
Residential IPs in the US & 4G Mobile Proxies in EU & US with Unlimited Bandwidth
ReliableSite White-Label Dedicated Hosting for Resellers
Rabisu - Hosting Solutions
CloudLinux
Try EnsoVPN - Fast & Private VPN - 1-Day Free Trial
New on LowEndTalk? Please Register and read our Community Rules.

All new Registrations are manually reviewed and approved, so a short delay after registration may occur before your account becomes active.

racknerd, why do you always permit 107.173.42.94 to abuse again and again

https://linux.do/t/topic/2662508/20
https://linux.do/t/topic/2426372

Racknerd, why do you alwasy permit 107.173.42.94 to abuse again and again? There are already many victims reported this CPA abuse.

Comments

  • rpqurpqu Member
    edited 4:35AM

    Sorry @markrao888, what is CPA?

  • VoidVoid Member

    Your abuse has been doubled.

    Thanked by 2nghialele mrerenk
  • forestforest Member

    https://www.abuseipdb.com/check/107.173.42.94

    107.173.42.94 was not found in our database
    This IP was reported 0 times. Confidence of Abuse is 0%:

  • dustincdustinc Patron Provider, Top Host, Veteran
    edited 4:43AM

    Hi @markrao888 -- happy to look into this, though I'd need an abuse ticket ID or reference to work from. Feel free to send me a message with that information, if you've submitted one.

    To set expectations on how this works on our end: we don't monitor third party public forums such as the ones you linked for alleged abuse reports, and realistically no provider at our scale can. Abuse handling has to be systematic, otherwise nothing is properly tracked or actionable. The correct path is to email reportabuse[@]racknerd.com with the IP, and any relevant logs or evidence. Sending an email to that address will automatically generate a ticket ID (system should reply back to you via email with a ticket ID within a few minutes after emailing).

    From there, the report is logged, forwarded to the end user in question, and they're given a reasonable window to respond and remediate. If there's no response, or the behavior continues, we escalate accordingly, up to and including suspension or termination of the service.

    All services on our network are governed by our Terms of Service and Acceptable Use Policy, and we have defined processes and procedures behind enforcement of them. When you're managing hundreds of thousands of IPs across a network of our size, enforcement can't be "informal" or based on public forum's back and forth.

    It's also worth mentioning that abuse handling isn't always as simple as it may appear from the outside. In some cases, the party behind an IP isn't a direct client of ours, as we have other hosting providers, resellers, and colocation customers who operate on our infrastructure/network, and maintain their own customer bases. When that's the case, that naturally adds a layer between us and the actual end user. It doesn't mean nothing is happening -- it just means the process involves more than one party.

    There are also situations where an IP may not even be ours anymore. IPv4 space in this industry commonly gets released, reassigned, and reallocated over time, and outdated SWIP or stale WHOIS records can leave an IP appearing to be under one provider when it's since allocated elsewhere by upstream. That's just an example, I'd have to look at the specifics of this particular case to say either way, though I mention it because assumptions based on public records alone aren't always accurate. These situations aren't always as straightforward as you may think, when looking from the outside.

    So if you (or anyone else in this thread) has previously submitted a report, send over the ticket ID and I'll personally pull it up and review where things stand. Feel free to reach out to me directly at dustin[@]racknerd.com as well.

    Thanked by 2JohnnySac tzuli
  • Hi, @dustinc
    My ticket number is Ticket #YX01810
    I reported once, and it is suspended, and after some time 107.173.42.94 try to steal other people's gpt quota in cpa again. Then I reported again, and it is suspended again.
    But now, other people said it stil steal other peoples' gpt quota again.

    Why this happen and you do not block it?

  • MJJs are now fighting for tokens, how exciting.

    Thanked by 2oloke Mainfrezzer
  • @rpqu said:
    Sorry @markrao888, what is CPA?

    CPA is clipproxyapi, that it is a proxy that can be use to access openai codex.

  • @forest said:
    https://www.abuseipdb.com/check/107.173.42.94

    107.173.42.94 was not found in our database
    This IP was reported 0 times. Confidence of Abuse is 0%:

    It steal other people's gpt quota via trying the CPA password or CPA vulnalities.

  • emghemgh Veteran, Megathread Squad

    @markrao888 said:
    Hi, @dustinc
    My ticket number is Ticket #YX01810
    I reported once, and it is suspended, and after some time 107.173.42.94 try to steal other people's gpt quota in cpa again. Then I reported again, and it is suspended again.
    But now, other people said it stil steal other peoples' gpt quota again.

    Why this happen and you do not block it?

    How is it stealing your GPT quota?

  • tentortentor Member, Host Rep

    @markrao888 said:

    @forest said:
    https://www.abuseipdb.com/check/107.173.42.94

    107.173.42.94 was not found in our database
    This IP was reported 0 times. Confidence of Abuse is 0%:

    It steal other people's gpt quota via trying the CPA password or CPA vulnalities.

    Any evidence for this?

  • @tentor said:

    @markrao888 said:

    @forest said:
    https://www.abuseipdb.com/check/107.173.42.94

    107.173.42.94 was not found in our database
    This IP was reported 0 times. Confidence of Abuse is 0%:

    It steal other people's gpt quota via trying the CPA password or CPA vulnalities.

    Any evidence for this?

    CPA has logs to record who is using it, here are some from my cpa vsp log:
    Format: [timestamp, local UTC+08:00] status | latency | client IP | method "path"
    [2026-06-17 23:20:05] 400 | 2.086s | 107.173.42.94 | POST "/v1/responses"
    [2026-06-17 23:20:30] 200 | 17.142s | 107.173.42.94 | POST "/v1/responses"
    [2026-06-17 23:20:33] 200 | 14.743s | 107.173.42.94 | POST "/v1/responses"
    [2026-06-18 00:16:00] 429 | 270ms | 107.173.42.94 | POST "/v1/responses"
    [2026-06-18 00:16:01] 429 | 342ms | 107.173.42.94 | POST "/v1/responses"
    [2026-06-18 08:22:29] 200 | 4.163s | 107.173.42.94 | POST "/v1/responses"
    [2026-06-18 08:23:45] 200 | 3.936s | 107.173.42.94 | POST "/v1/responses"
    (The complete 3,186-line log is available on request.)

  • @JohnFilch123 said:
    MJJs are now fighting for tokens, how exciting.

    I'm honestly amused. I wish the translate function would work better on that page but I'm laughing regardless

  • @Mainfrezzer said:

    @JohnFilch123 said:
    MJJs are now fighting for tokens, how exciting.

    I'm honestly amused. I wish the translate function would work better on that page but I'm laughing regardless

    Ya it is kinda awkward to read that translation but well, this is life.

Sign In or Register to comment.