Project

Profile

Help

Task #137026 ยป Laporan File - 2024-01-25T20_38_58Z.eml

Anonymous, 01/25/2024 09:38 PM

 
X-He-Spam-Score: -1.0
Return-Path: <testbangetsih1556@gmail.com>
Delivered-To: dropbox@plan.io
Received: from m.launch.gmbh ([127.0.0.1])
by m.launch.gmbh with LMTP
id +KR5INLGsmUnhykAJzdhvw
(envelope-from <testbangetsih1556@gmail.com>)
for <dropbox@plan.io>; Thu, 25 Jan 2024 21:38:42 +0100
X-Spam-Checker-Version: SpamAssassin 3.4.6 (2021-04-09) on m.launch.gmbh
X-Spam-Level:
X-Spam-Status: No, score=-1.0 required=5.0 tests=BAYES_00,DKIM_SIGNED,
DKIM_VALID,DKIM_VALID_AU,DMARC_PASS,FREEMAIL_FROM,IP_LINK_PLUS,
NUMERIC_HTTP_ADDR,RCVD_IN_DNSWL_NONE,RCVD_IN_MSPIKE_H3,
RCVD_IN_MSPIKE_WL,SPF_HELO_NONE,SPF_PASS,T_SCC_BODY_TEXT_LINE,
WEIRD_PORT autolearn=ham autolearn_force=no version=3.4.6
X-Spam-Report:
* -1.9 BAYES_00 BODY: Bayes spam probability is 0 to 1%
* [score: 0.0000]
* -0.1 DMARC_PASS DMARC check passed
* -0.1 SPF_PASS SPF check passed
* -0.0 RCVD_IN_DNSWL_NONE RBL: Sender listed at
* https://www.dnswl.org/, no trust
* [209.85.210.196 listed in list.dnswl.org]
* 0.0 FREEMAIL_FROM Sender email is commonly abused enduser mail
* provider
* [testbangetsih1556[at]gmail.com]
* 0.0 SPF_HELO_NONE SPF: HELO does not publish an SPF Record
* 0.0 WEIRD_PORT URI: Uses non-standard port number for HTTP
* 0.0 IP_LINK_PLUS URI: Dotted-decimal IP address followed by CGI
* 1.2 NUMERIC_HTTP_ADDR URI: Uses a numeric IP address in URL
* 0.1 DKIM_SIGNED Message has a DKIM or DK signature, not necessarily
* valid
* -0.1 DKIM_VALID_AU Message has a valid DKIM or DK signature from
* author's domain
* -0.1 DKIM_VALID Message has at least one valid DKIM or DK signature
* 0.0 RCVD_IN_MSPIKE_H3 RBL: Good reputation (+3)
* [209.85.210.196 listed in wl.mailspike.net]
* -0.0 T_SCC_BODY_TEXT_LINE No description available.
* 0.0 RCVD_IN_MSPIKE_WL Mailspike good senders
X-Spam-Score: -1.0
Authentication-Results: m.launch.gmbh; dmarc=pass (p=none dis=none) header.from=gmail.com
Authentication-Results: m.launch.gmbh; spf=pass smtp.mailfrom=gmail.com
Authentication-Results: m.launch.gmbh;
dkim=pass (2048-bit key; unprotected) header.d=gmail.com header.i=@gmail.com header.a=rsa-sha256 header.s=20230601 header.b=aQlXo6H5;
dkim-atps=neutral
Envelope-to: inbox+rlxc+36be+cyberity-chatbot@plan.io
Received: from mail-pf1-f196.google.com (mail-pf1-f196.google.com [209.85.210.196])
(using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits)
key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256)
(No client certificate requested)
by m.launch.gmbh (Postfix) with ESMTPS id 32AAE161239
for <inbox+rlxc+36be+cyberity-chatbot@plan.io>; Thu, 25 Jan 2024 21:38:42 +0100 (CET)
Received: by mail-pf1-f196.google.com with SMTP id d2e1a72fcca58-6dddc5e34e2so562710b3a.0
for <inbox+rlxc+36be+cyberity-chatbot@plan.io>; Thu, 25 Jan 2024 12:38:42 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed;
d=gmail.com; s=20230601; t=1706215120; x=1706819920; darn=plan.io;
h=subject:to:from:mime-version:date:message-id:from:to:cc:subject
:date:message-id:reply-to;
bh=WoR+r//QppV3m6VwFDeE8Aulhnj1jyfzVmx837ZK2fg=;
b=aQlXo6H5Kq4HY63dVaAh7Jqs7AkekG/312HPKULmw3H8bnX3fHGLAv3x+vzStMpsmn
4L2wCi8OEsdtYFFH5O6LnPqdbHcB7xcx+U9j1nWbgCtPZBGoGy+guSvnA/m2t4+r/1Ew
jBd/CHgGZbxktT0drUWjkDy7Zr8w+FEnAsCc/2mZOi+LYwNsYG3BJWUhsn8q2gaCnV8Z
xo2HeyOn9WgyPTEp2CPPZxUGsq1wQdrH3WwvbSXhtErUopN0tK/6sw1Dgg4CEX+Ta6HN
n+eaUyA9DmZ9wg7FHCexNDcsP2MxzvUY8GmPEnvkH0sQZeZjZh52L4rTjZF7z7yecdhE
GfpQ==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed;
d=1e100.net; s=20230601; t=1706215120; x=1706819920;
h=subject:to:from:mime-version:date:message-id:x-gm-message-state
:from:to:cc:subject:date:message-id:reply-to;
bh=WoR+r//QppV3m6VwFDeE8Aulhnj1jyfzVmx837ZK2fg=;
b=bHwK1D+/tOEdWj4GsE5DhzxjXwUNAczMQht+QuMZuv6P0PQP/AKg+70cnxllF7xxm7
T2UMNvspovgbY33NL6dkxfL01tW87hY+W2jKxNlEEIpxt7l04uT9LuHUU/LPH+5WiXIh
d+UqnRzvVagwzIDHNxh/X4xuHQejWISjcG8vfbZdAVgrb45g5BMTVJ1rIb2FrDpHX1RM
JmK+rzFKvCKzX2A6cR4u2efG2vfdcHl88fz17Zk6WkfjGxXKNRdiSRK6pg40PTfXJ5v9
5e6D6LN1oDx1sfUPKVsZPOMHwxx58HCpFkBwcER7kuSIDtgi7UAEmrKOSEUJofGDXCrS
nTLw==
X-Gm-Message-State: AOJu0YwxeB9/7kAqWwpwl3HvVYmLYvpCIAgh1CKPcouQN8ohjS7eeue0
r2KPrrhG0jvTLw3dzociT7MRvjKbP/TKc/hT8hvzbKO+B/UlKDbHLHeUG0T6eu1aMw==
X-Google-Smtp-Source: AGHT+IEkxgF7U2wU6Pp1/9okcElDMa8KA35vDZgaTVaMRMZy0jE10pk2y5SpMPHgbnb5rBUoBSMRgA==
X-Received: by 2002:a05:6a00:6814:b0:6dd:c77a:721f with SMTP id hq20-20020a056a00681400b006ddc77a721fmr200037pfb.0.1706215120118;
Thu, 25 Jan 2024 12:38:40 -0800 (PST)
Received: from [192.168.18.16] ([2404:8000:1004:8ee8:6d69:95cb:7c59:6171])
by smtp.gmail.com with ESMTPSA id g5-20020a636b05000000b005bd980cca56sm13975854pgc.29.2024.01.25.12.38.39
for <inbox+rlxc+36be+cyberity-chatbot@plan.io>
(version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256);
Thu, 25 Jan 2024 12:38:39 -0800 (PST)
Message-ID: <65b2c6cf.630a0220.1001b.3572@mx.google.com>
Date: Thu, 25 Jan 2024 12:38:39 -0800 (PST)
Content-Type: multipart/mixed; boundary="===============8421678380543968995=="
MIME-Version: 1.0
From: testbangetsih1556@gmail.com
To: inbox+rlxc+36be+cyberity-chatbot@plan.io
Subject: Laporan File

--===============8421678380543968995==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit

Identitas Pelapor : hsufehmi
Platform Pelapor : telegram

Link download file : http://127.0.0.1:3000//download-file?id=99ed89c3227612d758f93bd8b7a5f3fcf9ed1ca2da8c0bdde6016dd5614df5d30cfdadfc9492796b52acf45b7ba1c669a7d06f8e095554c341cbf0de0dae6141





Untuk konfirmasi file diatas adalah virus, klik link
http://127.0.0.1:3000//process-file?id=99ed89c3227612d758f93bd8b7a5f3fcf9ed1ca2da8c0bdde6016dd5614df5d30cfdadfc9492796b52acf45b7ba1c669a7d06f8e095554c341cbf0de0dae6141&virus=1

Untuk konfirmasi file diatas adalah bukan virus, klik link
http://127.0.0.1:3000//process-file?id=99ed89c3227612d758f93bd8b7a5f3fcf9ed1ca2da8c0bdde6016dd5614df5d30cfdadfc9492796b52acf45b7ba1c669a7d06f8e095554c341cbf0de0dae6141&virus=0





Lihat status proses silahkan klik link dibawah
http://127.0.0.1:3000//see-process?id=99ed89c3227612d758f93bd8b7a5f3fcf9ed1ca2da8c0bdde6016dd5614df5d30cfdadfc9492796b52acf45b7ba1c669a7d06f8e095554c341cbf0de0dae6141

--===============8421678380543968995==--
    (1-1/1)