     What I interpreted as a DoS attack did indeed appear to be part of some
research project, that was confirmed by the research group.

     I have yet to get an explanation as to why they would launch queries that
were oversized and invalid, as if in an attempt to exploit a buffer overflow,
or at a rate that would approximately double the normal traffic on a server
that normally handles 2-3 million hits/day.

     But they've stopped, so server response, especially web server, should be
normal now.

