Semangat pagi Pak Syafril..

jika ada email masuk ke quarantine queue dg header:

X-SPScan-Result: infected
X-SPScan-VirusName: Trojan.IYHF-0
X-MDBadQueue-Reason: WARNING! infected with virus (Trojan.IYHF-0)
X-MDAV-Processed: bb.ptbmi.com, Wed, 05 Sep 2018 00:37:34 +0700
Return-path: <[email protected]>
Authentication-Results: bb.ptbmi.com;
    iprev=pass policy.iprev=202.148.11.224 (PTR mxin1.dnetsurabaya.id);
    iprev=pass policy.iprev=202.148.11.224 (HELO mxin1.dnetsurabaya.id);
    iprev=fail policy.iprev=202.148.11.224 reason="does not match" (MAIL 
[email protected])
Received: from mxin1.dnetsurabaya.id (mxin1.dnetsurabaya.id [202.148.11.224]) 
by bb.ptbmi.com (MDaemon PRO v18.0.2) 
    with ESMTPS id 31-md50000060681.msg; Wed, 05 Sep 2018 00:37:32 +0700
X-Spam-Processed: bb.ptbmi.com, Wed, 05 Sep 2018 00:37:32 +0700
    (not processed: message size (196434) exceeds spam filter configured max 
size of (102400))
X-MDRemoteIP: 202.148.11.224
X-MDHelo: mxin1.dnetsurabaya.id
X-MDArrival-Date: Wed, 05 Sep 2018 00:37:32 +0700
X-Rcpt-To: [email protected]
X-MDRcpt-To: [email protected]
X-Return-Path: [email protected]
X-Envelope-From: [email protected]
X-MDaemon-Deliver-To: [email protected]
X-CAV-Result: clean
Received: from localhost (unknown [127.0.0.1])
    by mxin1.dnetsurabaya.id (Postfix) with ESMTP id C28AB42E11
    for <[email protected]>; Wed,  5 Sep 2018 00:37:25 +0700 (WIB)
X-Virus-Scanned: Debian amavisd-new at mxin1.dnetsurabaya.id
Received: from mxin1.dnetsurabaya.id ([127.0.0.1])
    by localhost (mxin1.dnetsurabaya.id [127.0.0.1]) (amavisd-new, port 10024)
    with ESMTP id 3jFcaMKVayW2 for <[email protected]>;
    Wed,  5 Sep 2018 00:37:20 +0700 (WIB)
Received-SPF: Softfail (domain owner discourages use of this host) 
identity=mailfrom; client-ip=23.95.88.101; helo=fibertel.com.ar; 
[email protected]; [email protected] 
Received: from fibertel.com.ar (unknown [23.95.88.101])
    by mxin1.dnetsurabaya.id (Postfix) with ESMTP id D093342ED3
    for <[email protected]>; Wed,  5 Sep 2018 00:37:10 +0700 (WIB)
From: Andrew  <[email protected]>
To: [email protected]
Subject:  new order - october
Date: 04 Sep 2018 10:37:37 -0700
Message-ID: <[email protected]>
MIME-Version: 1.0
Content-Type: multipart/mixed;
    boundary="----=_NextPart_000_0012_89A836E9.D50767DE"
X-MDArchive-Copy: 1

This is a multi-part message in MIME format.

------=_NextPart_000_0012_89A836E9.D50767DE
Content-Type: text/html;
    charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN" "http://www.=
w3.org/TR/html4/loose.dtd">

Apa yg harus sy lakukan?
masukkan ke Dynamic Screening Blacklist?
kalo liat kelompok IP dan keterangannya apa IP 202.148.11.224 masuk IP DNet?

Mohon pencerahan

thanks
Suzy
--
--[mdaemon-l]----------------------------------------------------------
Milis ini untuk Diskusi antar pengguna MDaemon Mail Server di Indonesia

Netiket: https://wiki.openstack.org/wiki/MailingListEtiquette
Arsip: http://mdaemon-l.dutaint.com
Dokumentasi : http://mdaemon.dutaint.co.id
Berlangganan: Kirim mail ke [email protected]
Henti Langgan: Kirim mail ke [email protected]
Versi terakhir MD 18.0.2, SG 5.5.0

Kirim email ke