By the way, what a dos and a ddos attach is, and how it might look in the log, and how a caching dns server works, this is actually network communications and network security on its first and basic entry level.
Why not discuss basic network stuff as the technical stuff it actually is, to spread some light on this, rather than bring some hard feelings into that anyone like to understand what happen and whats going on ?
As I would see it technical stuff is best and most easy treated as technical stuff.
To give an explanation about how a dos or a ddos attach is carried out, how you eventually can see it in the log, and what to look for, and how the caching dns server works, this should actually require a few lines of explanations in this tread, and it should require no hard feelings at all.