I have been getting these alerts for a while now and they are mostly indicating my iOS devices are the culprit. I have seen the alert indicate some other Windows systems but am unsure of what this is or means. I am only alerting right now as that is the way I have the definitions set. Could someone help me out by telling me what this alert means and am I at risk?
Thanks Andy,
Details about the intrusion alert:
Message........: INDICATOR-OBFUSCATION HTTP header invalid entry evasion attempt
Details........: https://www.snort.org/search?query=39320
Time...........: 2016-09-14 17:00:50
Packet dropped.: no
Priority.......: medium
Classification.: Detection of a Non-Standard Protocol or Event
IP protocol....: 6 (TCP)
Source IP address: 176.32.96.92
Source port: 80 (http)
Destination IP address: 192.168.1.118 (coreyiphone)
Destination port: 62765
This thread was automatically locked due to age.