Cloudflared: pfSense + Suricata ET Detects it as Malware

Running cloudflared on Oracle Linux 8.8 VM. Service works, I’m able to tunnel. However, if I have cloudflared installed, these alerts come up a few times an hour. Destination is Cloudflare IP: 198.41.200.43, 198.41.192.27, 198.41.192.77, and few others.

ET MALWARE Possible KEYPLUG/Downadup/Conficker-C P2P encrypted traffic UDP Ping Packet (bit value 5)

ET MALWARE Possible KEYPLUG/Downadup/Conficker-C P2P encrypted traffic UDP Ping Packet (bit value 1)