I have a netgear router but I also run zonealarm on my PC mostly to control what gets access to the internet.

I've recently noticed entrys in zonealarm's logs along the following lines -

Protocol - UDP
Source IP - 194.168.8.100:53 & 194.168.4.100:53
Destination ports - 52930, 54284, 56559, 58680 & 63131
Source DNS - cache1.service.virginmedia.net & cache2.service.virginmedia.net

The source IPs appear to be the DNS servers that I'm using.

Zonealarm is blocking the traffic but I'm wondering why this hasn't being blocked by the router.

Is this normal?

Operating System:Windows XP Home Edition
Software Version:8.0
Product Name:ZoneAlarm (Free)