Hi
My WAN port is Ether10. No one device is connected to router. Option “Allow remote requests” in DNS settings is not active.
I have firewall rule drop all input UDP 53 port packets. But still there are some DNS connections.
What kind of sorcery is this? Hos can I drop these connections? See attachment. None of them are my IP address.

have you protected your DNS cache from the outside world?
I think, yes. Am I right?
[bean@MikroTik] > /ip dns print
servers: 8.8.8.8,8.8.4.4
dynamic-servers: 176.106.176.2,213.110.77.2
allow-remote-requests: no
max-udp-packet-size: 4096
query-server-timeout: 2s
query-total-timeout: 10s
cache-size: 2048KiB
cache-max-ttl: 1w
cache-used: 9KiB