DNSBL will not work if the sender server (185.41.154.171) is not blacklisted.
Again, it is important to setup local resolver/DNS service if you are using DNSBL.
I think the main issue is RCVD_IN_DNSWL_HI(-5).
If you notice many false positive from this SA score, try modify the default -5 score...