Its more then just that. NAV has worm protection he said. It is not the same as what a normal firewall can provide. Go here and see what happens when you get probed. Do the all service port test and see if you fail.
Oh and I know the 192.xxx.x.x address is my ISP connection.
My main question is should that be showing logging every 5-10 minutes?
Is it just the NAV log process to check and see "OK what's coming in here? ISP address? Ok, log it down" And then 5 minutes later, checks again? Like just running 5-10 minute checks