Yet another reason to try to solve this one out properly as quickly as possible. But I do find it worrying that e.g. http://dns-ok.de/ is a non-SSL site. Furthermore, it shows the German federal government's emblem and the T-Mobile and Avira logos, presumably to convey trustworthiness. Those logos are trivially faked, so I'm not sure it's a good idea training users to associate them with trust.
Showing the logos would be illegal without authorization. The companies and the government are much more likely to get involved over fraud that directly involves them. So it raises the stakes significantly for any forger.
Considering the main use of hacked DNS is going to be stealing login info by redirecting to fraudulent versions of websites, I don't think these criminals will have a problem forging logos.