Stand @ Gateway box & run..
Code:
iptables -t nat -A PREROUTING -i LAN_IF -s LAN/LAN_MASK -d 65.200.200.200 -p udp -j DNAT --to 69.100.100.100
iptables -t nat -A PREROUTING -i LAN_IF -s LAN/LAN_MASK -d 65.200.200.201 -p udp -j DNAT --to 69.100.100.101
Basically dns queries are udp packets but since they can fall back on tcp protocol, make sure to add rule for tcp packets (if face problems).
p.s: If you run some fully configured firewall, you got to all these packets to traverse through FORWARD chain as well.