Sunday, July 27, 2008

X-Files and My Semi-Glorious Return

I'm back to blogging! I meant to write this post yesterday, but opted for Rock Band instead (sorry). I should be posting at least weekly, but I'll shoot for bi-weekly. I'm still getting adjusted to living in Seattle, and I am a bit homesick, but I am enjoying the scenery out here.

X-Files: I Want to Believe

Full disclosure: I can't remember the last episode of this show that I saw, but it was probably the only one I've seen. This show was on when I was pretty easily scared of stuff in general so I never got into it. I'm sure it was a good show, it just wasn't my cup of tea and now I'm on to bigger and better shows (Burn Notice is currently rocking my socks).

The movie revolves around one big missing persons mystery (an FBI agent) and a psychic, so given the psychic's involvement the FBI have called on Dana Scully to call in Fox Mulder, who requires her to help if he's going to help. They've basically been going on with their own lives (Mulder's being as a recluse) so this is kind of a major reunion for them. The more I think about the story though, the more I have problems with it. I walked out of the theater feeling no better or worse than when I walked in, and the movie seemed pretty good but not amazing.

Let me start out with my issues. They had a psychic helping them and they called in Mulder because they were stuck. Anyone see a problem with that? They have a psychic, which is hard for them to believe naturally, but why does this mean they need to call on Mulder? It seems like he's been estranged by the FBI, so I don't see why they require his help. Even if you're ok with that though, I just never believe the chemistry between Mulder and Scully. Their reunion in the movie seems to have been after a long time and yet they weren't very affected by it. Their love story progression seemed like an after thought they clumsily wove into the movie, which is strange because I had heard in an interview that the movie was supposed to center on them. I also hate that we never connect with the antagonists at all, and the motive involved isn't all that compelling.

I really don't want to believe anymore

I don't know if fans really loved this movie. It seemed to drag on a bit. There wasn't a whole lot of thrill moments or action, and I never really got pulled in. Granted, I had no investment in this series and only went to see this movie in the first place because a friend wanted to, but I figured that it would be good. It could be that I'm dealing with a hangover from The Dark Knight and any movie I see will pale in comparison, but I watched Ratatouille the other night and still managed to enjoy it.

I definitely wouldn't say that the movie is bad though. I think it could've explained things better and tightening itself up a bit on time, but it was still entertaining. I think you should rent it if you're at all intrigued by the series or murder mysteries. It's definitely nothing out of the ordinary though (if you really want a great murder mystery just go rent Mystic River), and there are certainly better movies out there right now (obviously The Dark Knight, but I loved Wall-E and I've seen good reviews for Mamma Mia and Step Brothers). I give this movie a C-, because I can tell that they were trying to reach out to fans rather than people's wallets, but I think that they've probably just run out of ideas. It probably would've benefited from not being released right in the middle of a competitive summer for films.

The Dark Knight's $300m Dash

I counted on Box Office Mojo that The Dark Knight had topped 23 of their charts including biggest opening weekend ever, biggest second weekend ever, and biggest opening day gross. The one everyone is focusing on now though is that it is the fastest movie to hit $300 million (it's already at $315 million domestically, but over $350 million worldwide) with a record of 10 days. The third Pirates of the Caribbean movie had the title before at 16 days, and now people are predicting that The Dark Knight may beat Titanic's $600 million record for biggest total gross. I think that it can probably pull it off since it is past halfway there in its 2nd weekend. By the way, how the Hell did that movie make so much money? It wasn't a bad movie, but I saw it once and never want to see it again because it was so heavy and depressing. Anyway, this movie deserves the massive amount of money they're making. It seriously is a good time to be a nerd when something this phenomenal comes out that literally must seem like to many people, including myself, that it's straight out of their childhood fantasies. (I wasn't that dark as a child, but darkness always intrigued me)

Up-marketing Vista

In case you haven't noticed, Windows Vista has been taking a beating as far as publicity goes ever since its released because it didn't deliver on several of the promises that was made of it early in its development (always a fatal mistake). It took Microsoft far too long, but they're finally gearing up some positive marketing for Vista. They tested the waters by showing a "new OS" to people called Mojave and seeing how they liked it. In the end, it turned out that Mojave was Vista with the "Vista" name stripped from it and people were pretty shocked because most (or all) of them had the impression that Vista sucked. I'm personally glad about this because I'm freaking tired of having to defend my computer: it's a great machine and Vista works very well on it. It is no worse than XP and I admit that it sucks that you need a good computer to run it but if you do then the extra features (including the massively re-vamped search functionality) are pretty cool. The only problem I've had is that my downloading can sometimes impact my computer's overall performance, but I don't think that's necessarily Vista.

That's just one component for their response to Apple's smarmy Mac vs. PC ads. They're not going to do the same thing in reverse to attack Apple, but they're going to stop being such a sleepy giant and try a pro-Vista message. Some have seen the ads and are already excited about it, but they have not yet been made public. For the record: I don't hate Apple or Microsoft, but I do hate Apple taking advantage of its underdog status to continually take low-blows at Microsoft. Their ads are often unfair and prey on stereotypes, which bothers me. I'll admit that they're clever, but they've gone on far too long.

Open Xbox

One more quick piece of Microsoft news: they've decided to open up the 360 platform! That means that you don't have to be a big studio to write your own Xbox 360 game and put it out on Live. Not everyone will be allowed to put their game on Live, but the fact that they're encouraging this is just a massive step in the right direction. I wish that Sony would do the same. It's just going to breed more competition and produce higher quality of games that rely more on just flashy graphics and big budgets to attract attentions.

Yahoo! Music Store Folds

In another giant stab to DRM, Yahoo has closed up shop in the digital music game. They are the second DRM music service to go down this year (MSN was first), but the difference is that in a couple of months their key servers are going offline! What does that mean? The what DRM music often works is that they're locked by a key (in the case of subscription based services, these keys usually need to be renewed monthly) and you need these keys to be able to open these tracks. If you transfer them to another computer, this computer asks the server for the appropriate keys using your login information and it obliges, but in Yahoo's case you can't move your songs to another computer so if your computer dies then so does your music. Lame, huh? That's why you should use Amazon MP3: I still personally thing that it's the best digital music around and something like this would never happen to its customers. I wonder if enough people used the service for this to impact Yahoo's image? I kind of hope so, because it's a pretty raw deal (MSN's key servers will only be up until 2011, so they're not much better).

Comments and CS Concepts

I just wanted to briefly mention a couple of articles that I liked. The first one is concise and talks about why comments in code are appropriate and why. It's a great read, even if you do use comments in your code.

The other one is a list of the top 10 concepts that all software engineers should know. With the exception maybe of layering, I think that your success in the IT industry is doomed without an understanding of these ideas and a willingness to flesh them out throughout your career.

Streaming Torrents

EZTV, a huge group for trafficking torrents, has started putting up content that can be streamed using Swarmplayer, which streams content using bittorrent technology to distribute it. This is an excellent idea and I think could seriously revolutionize how we stream multimedia online, if it's harnessed in legal uses. This would really cut a lot of overhead out of putting things like TV shows online because a media company would no longer need to keep them on a centralized server and pay for the bandwidth to deliver it but rather could just seed a show well (i.e. have a few powerful machines dedicated to serving up the shows) and let everyone watching the show upload the show to others as they watch it. Couldn't someone compete with Hulu if they harnessed this technology? I imagine that you could put out HD-quality content with this sort of infrastructure. Only time will tell (assuming that this technology does get picked up by someone big).

One-Liners

I have a couple more articles that I want to talk about but they're just one-liners:

Legendary hacker Kevin Mitnick was part of a panel recently at a hacking convention and told some great stories (including a live prank). He's probably the father of social engineering attacks (tricking you into giving up sensitive information or making yourself vulnerable).

CNN has a pretty good article on how to prepare yourself for the transition to digital TV. If you're on cable or satellite, then you're ok. Otherwise, read that article.

Rock Band

I just wanted to conclude by proclaiming that Rock Band is an incredible video game. As expensive as my 80 GB PS3 was, I'm really glad I got it. I'm excited to start buying Blu-ray movies (especially Iron Man and The Dark Knight), Metal Gear Solid 4 is beautiful, the Playstation Network store is just how things should've been on the PS2, and Rock Band is by far one of the coolest games I've played.

I never thought I'd like it that much because I never got into Guitar Hero, but it's definitely worth checking out. The closest any game has come to replicating the kind of co-operative play you get from this game is probably Wii Sports, but this game tops that. You really do feel like you're part of a band because when you play hard song it's rewarding and you start patting each other on the back and stuff. Also impressives are the nuances: the presentation is flawless. They had my band name (Elton and the Fun King Band) on a tour bus, on CD album covers, and in neon in the World Tour mode! Plus, the load screens are customized with your band! Any musicians will really be impressed with this game (or non-musicians), because I think that it handles guitar a lot better, as well.

*deep breath* Ok, enough of that. I'm going to go read Salem's Lot for a bit. Have a great week, everyone!

Saturday, July 19, 2008

The Dark Knight

Hiatus is Ending

I've been on hiatus for quite a while now, but it's almost over! I've spent the last week getting moved into my apartment and I'm quite pleased with how it has turned out. The furniture is classy but not really expensive, I love having my new HD TV, this DVR thing is ridiculous (especially with HBO + Showtime), and I'm having a lot of fun with my PS3 + Rock Band (especially while my brother and sister-in-law are here). I start work on Monday (finally) so I'll be back into a routine by Wednesday. By then I'll be much more homesick though with all my family gone (even my cousin who lives here and her family are out of the country). By the end of next week you should start to get back your regular dose of tech news with probably a dribble of some other stuff (we'll see).

The Dark Knight

I'm going to be keeping this spoiler-free, so don't be afraid to keep reading. I hate it when reviewers give away key plot details, it really hurts the movie experience. Speaking of which: you need to see this movie in IMAX if it all possible. It's worth the extra few bucks, trust me. Christopher Nolan shot 6 scenes in the movie using IMAX cameras, and it shows.

In case you've been living under a rock: this movie is a direct sequel to Batman Begins and is not at all related to the prior Batman films. The main premise is that the organized crime in Gotham, under siege from Batman, turn to The Joker for help and, naturally, chaos ensues. This movie is hands-down the best comic book movie ever made. It took my high expectations and just shattered them. This movie doesn't just blow away Iron Man, it really outshines Batman Begins in its dialogue, pacing, and action scenes. This is Batman the way it was meant to be experienced and really combines the elements that make Batman my favorite comic book/animated series.


There's so much to love about this movie that I'm not sure where I should start. I think I'll go with the acting: Heath Ledger steals the show as Joker among an already incredible cast. He doesn't just portray the Joker, but for 2 and a half hours he is the Joker. I can't think of the last time I saw an actor nail a role so well that I couldn't even believe it was them in the role. I'm not saying I thought he was a bad actor before, but just the voice and makeup and everything transforms him into a completely different person. He's so good that I'm sure Jack Nicholson will see it and say, "Damn, he was good!" If you go to this movie for no other reason it should be to see Ledger in his best role ever. It's so sad to know that he can't come back in a future Batman film or any film at all. If you ever doubted his abilities as an actor, this movie will embarrass you.

The rest of the cast doesn't disappoint either. Christian Bale is an even better Bruce Wayne than before and really takes on a darker, grittier Batman. This movie is really dark, and Bale doesn't shy away from this. Michael Caine is, well, Alfred. he was in the first movie and he is here also. If you've seen the first one (which you really should before walking into this one) then you know what to expect here. Maggie Gyllenhaal really steals Rachel Dawes from Katie Holmes because it will amaze you that Katie Holmes ever could have been Rachel Dawes. I always felt that Gyllenhaal was underrated and it shows in this film. Aaron Eckhart was the perfect man to play Harvey Dent. The concept of a DA with a passion for justice is not lost on Eckhart. He starts off as being not bad and then progressively just gets deeper and deeper into the role. Morgan Freeman's character is given more screen time in this one and while I would've loved to have seen his character fleshed out a little more I appreciate their time restrictions also.

Speaking of which: the worst thing you can drudge up about this movie is how dense it is. It's 2 and a half hours long and a lot happens, but I feel like it's paced well enough so that you'll always want to know what happens next and you can't possibly be bored. You probably will laugh, cry, and jump in your seat (or squirm) during this movie, it's just that powerful. I love the dark humor because I love dark humor in general, and the delivery is always impeccable. The dialogue in this movie is decidedly more mature when compared to its predecessor, which I think is saying a lot (probably because David Goyer was not a part of writing this one). Getting back to my point though: there are several plots throughout this movie that do all tie together but can get confusing if you don't pay attention. Of course, I just look at this as giving more re-watch value to the film. There's so many little details to appreciate and the cinematography is so spot-on that you can't help but want to watch certain scenes again and again. The special effects are never too heavy and are always just welcome inclusions.

This movie should not be seen by small children. Seriously, if you're under 14 then you have no business seeing this movie. It's not curse words or violence (though there's not much cursing and there's absolutely no nudity), but rather the themes that this movie revolves around. They're dark, complicated, and involve a lot of moral gray area. Besides, the Joker would probably seriously creep out anyone that young (I'd be surprise if he didn't give some adults bad dreams). The haunting imagery in this movie will likely stick with you, but you have to appreciate the fact that these characters are likely to stick with you. You really care about them and feel involved in their lives.

I give this movie an A+ with my highest recommendation for you to run out and see it right now. Please, go see it in IMAX if you can. If you are above the age of 16 and you do not see this movie then something is wrong with you. Yes, it's that good. Even my dad really enjoyed it.

Saturday, July 12, 2008

Get Smart and Wall-E

Sorry it's been a while, but my life has just been so extremely busy lately. After my vacation in Austin I had to pack up everything for Seattle and now I'm here trying to get my apartment together. I love the apartment and, of course, the city, but I do miss home. I'll get back to my normal mix of tech news in another week or so. Until then, enjoy a couple of movie reviews!

Get Smart

I don't know how I should feel about Get Smart. When I saw it, I actually really did like it, but then the reviews I read kind of made me think twice.

I had no familiarity with the TV series that the movie was based off of before walking into the theater, but the Alamo Drafthouse ran a few clips from the show before the movie started (which I thought was pretty neat) and the movie did seem to keep in theme with the show. However, some fans of the show have said otherwise. In any case, the movie was not what I was expected: I thought it'd be a dumb spy movie like Naked Guy where the protagonist is just dumb but it's really one where the protagonist is smart but really clumsy. The basic premise is that Control, this spy agency, has had some leaks so Steve Carell has to become a special agent and works alongside Anne Hathaway on a case.

I personally thought that the movie was hilarious. The jokes weren't always fresh, but I thought that the delivery on them were great. Steve Carell is great at being dorky but lovable and Anne Hathaway at times is good at being graceful and sexy. Of course, Alan Arkin was awesome because he's Alan Arkin, but I really wasn't impressed with the Rock (I've actually seen movies where I've liked his acting). My friends and I were laughing the entire time, but the criticisms that I've heard but didn't personally have are good ones: the technical shooting quality was subpar, the jokes have mostly been done before, and it did try really hard to be a serious action movie. I think it wanted to be a funnier True Lies but it missed the mark on that count.

The bottom line is that this movie is not for everyone. That's kind of a disclaimer with all comedies though, they appeal to certain people more than others. I went and saw it because some of the people I was following on Twitter enjoyed it and my friend really wanted to see it. In the end, I was definitely entertained, so I give it a B-. If you're not sure about seeing it, then just wait for it to come out on video and try it then. If you want a comedy though, try Wall-E first.

Wall-E

Has Pixar ever made a bad movie? Granted, I haven't seen all of them but I haven't heard of Cars being bad either. To continue the pattern, Wall-E is probably the cutest movie that I've ever seen. There's so much to love about it for all ages. From the short that precedes it to the end credits, it's truly a visual feast.

The premise is that Wall-E is the last robot in his line to be left on Earth cleaning it up while all the humans are away. He becomes very curious and self-aware over time, and then one day a foreign robot comes to Earth and launches us into the rest of the movie.

What's really interesting about this movie is how little dialogue it incorporates. So much of the movie tells the story by the actions of these robots and, while there is dialogue, there's so little talking (other than what's computer-generated) that you forget that there was any at all! It's just a testament to how great the animation is. There are no words for the visual quality of the movie: it's technically brilliant and they utilize it so well to tell a haunting, yet endearing story. The movie actually kind of reminds me of Idiocracy and I, Robot, but it definitely paints robots in a better light than most movies tend to. It's by no means strictly a children's movie: I can't imagine anyone walking in and not having a good time. It's cute, funny, and just interesting overall.

The only criticism I have for this movie is hard for me to explain, but it does have to deal with the movie crossing the boundary between the cartoon world and the real world. Other than that, I really enjoyed the voice acting and the story overall. I give it an A and will definitely be buying it when it comes out.

Thursday, July 03, 2008

How to Secure Your Machine (for free!)

I've had this in my head for over a month now, but I wanted to wait until after the trip to write it all out (and there was a lot to write!). A lot of people don't take security on their home machine under much consideration because, frankly, they were never educated much about it. Why would we be? To be honest, even I didn't really understand what was necessary and why until I took a class on network security last year. I'm going to try to hit all the basics of the minimum you need to use your machine with little chance of bricking it, losing all your stuff, or, even worse, losing your sensitive information. If anything is unclear, feel free to comment. If you catch me saying something incorrect, please also comment so I can correct it; there's a lot here for me to keep up with.

I've never tried a full-on original essay like this before so I hope it goes well...

Introduction

There's a tradeoff between security and convenience. The reason that malicious hackers are able to have so much fun is usually just laziness. Most victims simply just don't do enough to protect themselves because it's human nature to try and enjoy conveniences. That's why 1-click shopping is popular on Amazon and iPods are still selling like hotcakes even though there are competing mp3 players that do more. It's amazing how often a simple password list will work (consists of password, password123, the user's name, etc.) because it's inconvenient to come up with one of random letters, numbers, and symbols. People ignore security patch updates and that's the way a lot of attacks succeed way past the vulnerability has been discovered. Programmers are sometimes sloppy and allow for buffer overflow attacks, which is probably the most commonly exploited vulnerability class. In essence, if you want a machine built like a tank then you're going to have to sacrifice some conveniences, so that will be a recurring theme in this article.

The reason for this tradeoff in convenience is this arms race we have in computer security. When we came out with anti-virus software, they came out with polymorphic viruses that change themselves constantly (like real-life viruses can, I believe?) to make detection harder. So, scanning just isn't enough we also have to be responsible about how we use the computer. Also, there's intrusion detection systems (IDS) (something I did research in last semester), but they rely on looking for anomalous behavior. The question is, how does it know what anomalous behavior is? They still need our help to keep out intruders.

What you have to realize though, nonetheless, is that each one of the following recommendations is an important pillar in your machine's safety as well as that of the information that passes through. Hence, I highly recommend doing all of the following things. Fortunately, you can do these things without buying any fancy software. The only place you'll need to spend money is in my first tip.

Back it up!

Any successful large company understands the merits of mastering disaster recovery. Average people, however, aren't quite so reliable. It's almost as if we think we're invincible, believing that the stories on the news about some widespread virus or worm only happen to idiots. In reality though, the most important tool in your security arsenal is keeping at least one backup of all the programs and files that are most important to you. After all, iTunes won't send you your library again if your hard drive dies. As careful as any of us can be, shit happens. Just accept it and move on with your life. They say you should live your life as if each day is your last. I say the same about your computer: use it as if when you wake up in the morning it won't be there anymore. The attacks and hardware problems that can occur are too numerous to be listed.

Ok, so enough of my soapbox, what do you need to do? First thing is first: you need a backup medium. There are some online services that promise sync your hard drive while your asleep and keep your data somewhere in the clouds (i.e. on a server somewhere far away). I've blogged about some lists of free ones here and here. I've started using Dropbox lately and I really dig it for its simplicity. The premium services are a bit pricey, but usually worthwhile. The reason you'd want to backup online is that if you have a hard backup somewhere in your apartment and your computer is in your apartment then what if your neighbor has a bad day and burns down the building while you're at work?

Barring the natural disaster or physical theft scenarios, keeping a hard backup is a great option and a necessity at an absolute minimum. The advantages are that hard drives and optical media are quite inexpensive, you have complete control over it, it offers you a way to take your files with you without having to lug your computer with you, it protects you from malicious attacks since you can always just format your computer and start fresh from the backup, and it protects you from hardware failures in your computer (i.e. dead hard drive, worn out power supply, etc.) for the same reason. They have some pretty physically small external hard drives out there now for $100 or less, or some bigger ones for the same price but double the capacity. Look for a name brand, read the reviews to make sure people have good experiences overall, and just order one. You need one at least as big as your hard drive, even if you don't backup all your data on it.

Most hard drives will come with free software for back-up right out of the box, but if you decide to use a USB flash drive or optical media (i.e. CDs or DVDs) then you'll need to take to the Internet. I had to do this because Retrospect on my Western Digital doesn't work on Vista. After using several different ones, I liked Karen's Replicator the best. You just setup jobs to copy folders to where ever you want and then set them to run automatically while you're asleep at whatever frequency you want. It does progressive backups, so after the first backup it'll only handle changes rather than re-copying all your data every night and wearing out your backup hard drive faster than necessary. It's not as convenient to do automatic backups on optical media, but they can still be used. A competitor to Karen's Replicator that may be better for optical media is WinBackup. Both of these programs are kind of quick and dirty and don't give you all the features you may want, like taking an image of your entire hard drive. You can always shop around for the paid software that does everything you want, like maybe Genie, which makes it really easy to back up your registry and e-mails and all that.

Oh, and most companies already secretly backup your work machines so consult your IT department on that or ask them for the means to backup your work computer(s). If they don't oblige then you should definitely raise Hell about it.

Spyware: The Silent Killer

If you don't know what the word 'spyware' means, then you probably do but just don't realize it. It's used as an umbrella to refer to software that either intercepts what you do on your computer (i.e. sites you go to so that an advertiser knows what your interests are) or partially takes over your computer without you knowing. It's often just annoying, but there is a security risk in that it could steal sensitive information, as well. It can also install 3rd party software on your computer to the point that your computer is near unusable due to having its resources bogged down. Some tell-tale symptoms are that your computer runs slower than usual, you see windows pop up out of nowhere, browsing the Internet takes much longer than usual, when you go to the task manager you see processes that probably shouldn't be there, and changes are made to your registry that you didn't make.

Side note: You know how Vista always asks you if you want to allow a program to be opened after you just double-clicked it and you think the OS must be retarded? Well, I think it does that because spyware could open software it installs without your telling it to, but if Vista forces the decision to go to you then it's less likely to work. Anyway, you can disable this if it becomes too prohibitive; I don't think you necessarily need it at its default setting.

There are two programs that I think are absolutely necessary in fighting the war on spyware, and both of them are 100% free. The first is Spybot Search & Destroy (they must love that name). Spybot is really three tools in once. My favorite is called TeaTimer, which asks you to approve any changes made to the system registry (which is just a repository for Windows settings and data). This is important because a lot of times spyware manages to install junk on your computer by modifying you registry to tell Windows to do stuff when it restarts (a lot of software you install will make changes to the registry for routine tasks like clean-up or making some changes that it can only make before Windows boots and such). It will also warn you when processes that look suspicious try to run. It isn't as annoying as it sounds, and will give you piece of mind. The second piece of Spybot that's great is immunization, which is basically a preventive measure (much like getting inoculation shots in real life) to keep things like tracing cookies at bay. This will protect your privacy and help keep out nasty spyware. The final piece is its scanning, which I recommend you run regularly (at least weekly). Unfortunately, there's no way to set up a schedule for it to update itself or scan your computer, so be sure to do both regularly. If you don't update it, then you're probably vulnerable to the latest, hottest spyware out there (which is the stuff you're most likely to get).

The other free, great tool is Ad-Aware. It's a great second-tier defense, it doubles as an anti-virus program (paid version), and it's highly respected. If you pay for it, you get some great benefits: scanning on a schedule, real-time protection, a process monitor, and more. It's worth the money if you have it to spare and like the software. Otherwise, just run a scan in Ad-Aware after you run your regular SpyBot scan; it's worthwhile even in its free version.

Fighting Viruses (without buying Norton)

Viruses come in all shapes and sizes. The term 'computer virus' generally refers to malicious code that hides in legitimate applications but can only propagate by being physically run by a person (i.e. cannot spread on their own, they need your help). Some viruses are infected documents or files that exploit vulnerabilities in the programs that process them (e.g. bad .doc files that exploit a problem in Word) but infect the entire program once opened, whereas some infect the operating system so that the infected files look normal (like the Sony rootkit fiasco where Sony CDs restricted your ripping the CD or putting the music on certain mp3 players) and others still spread themselves over P2P networks (some media companies put these out on purpose to discourage piracy over P2P). The really bad part about viruses is the rise in polymorphic viruses, which scramble their own code to make them harder for anti-virus software to detect as they spread (technobabble: via encryption with different keys) or self-destruct when you try to run them in an emulator (you would run it in a safe environment to see if the program is infected or not) or debugger (which would help discover how it works). You might even consider Skype a benign polymorphic virus because of its heavy obfuscation and anti-debugging techniques to hide how it works (for security reasons).

Fortunately, there are a few free applications to help protect you from viruses. You don't need to install them all (just your favorite one), but you can if you want. They each use different definition files, but I'm sure there's a lot of overlap. I personally use ClaimWin Free, which is only for Windows (unless you count the ClamAV engine on which it's based) but it's completely free and it's lite. It has a scheduler and everything. The other popular alternative is Avast, which also has a paid version. Unfortunately, it's also only for Windows (or Mac, if you pay) but AVG has a free version and also works on Linux. Lastly, going back to the ClamAV engine, there is ClamXav for Macs.

The problem is that the way that all the programs I just mentioned work is to look for the signature of a virus: like the fingerprints that a criminal may leave behind at the scene of a crime. If we haven't taken that criminal's prints before then how do we catch him when we see his prints? Similarly, these scanners can only look for what they know about, making it hard for them to catch polymorphic viruses and impossible to catch viruses that haven't been discovered yet. In order to catch those you need an intrusion detection system (IDS) that looks for anomalous behavior, which begs the question of what normal behavior looks like. This is a field that is still being researched because we can get 0 false positives (technobabble: using static analysis of the source code in question all alarms are correct) but not 0 false negatives (i.e. some viruses can get away). The reason that you don't see an anti-worm detector is that worms are standalone programs that self-propagate and usually are known as 0-day attacks because they spread so rapidly before they can be discovered and defended against properly (research Slammer, Nimda, Code Red, Storm Worm, or Blaster for more).

What is the point of creating a virus or a worm? Usually, it's for profit. Sending out large amounts of spam is costly, but if you are forced into a botnet (a network of zombies machines that can be surreptitiously issued commands, sometimes encrypted commands, remotely from a master) then you're part of the source of spam. Another purpose of a botnet could be a distributed denial of service attack (DDoS) where lots of machines try to open a connections to a website simultaneously in order to bring it down by overloading its servers, which can be used for extortion. Sometimes it's not for money though. Sometimes it's just for glory and popularity. Make no mistake about it, worms and viruses are on the rise and you need to stay safe. What can you do about worms though without a reliable IDS? Try following the rest of my tips.

Setup a Firewall

I'm sure you've heard this term bounced around a lot and you may think of it as some sort of virtual, impenetrable shield. Well, it's more like a virtual moat: it tries to separate your computer and local network from the big bad Internet. The idea is to restrict not only access from the outside but outbound connections, as well. It should be obvious that you don't want bad guys to get into your machine, but why would you want to restrict connections coming from your machine? For the same reason you don't cough on people when you're sick: if you become a zombie in a botnet then you'll be phoning home to your master for commands (to do bad things to others) and if you have a worm then it'll try to spread itself so we want to keep things like this from happening.

There are several types of firewalls: packet filtering (dumb and stateless, it just examines each data packet you receive individually and follows some set rules without considering other packets), session filtering (packet filtering but in the context of the connection the packets connect to, so some state is involved), and application-level gateways (filtering rules set up by specific applications) are some examples of the more common ones. Some of the reasons why firewalls aren't as powerful as the name may suggest are that they don't prevent insider attacks (I know, that's a low blow), they don't fix the problem I mentioned above of buggy software (which cause big vulnerabilities for attackers to exploit), they don't prevent denial of sevice attacks (hitting a machine or server hard with requests to overwhelm them into breaking down), and misconfiguration woes (more on this in the next paragraph). Also, realize that software that you may install on your computer from a CD that's bad and stuff that doesn't involve connections to/from the Internet are completely unprotected from a firewall.

Still, you should use a firewall because it does help keep your Internet connection tighter so that it's much harder for bad guys to get to you to cause harm and also hard for them to do more damage even if they do get nasty code onto your machine. The most popular solution out there is ZoneAlarm. Aside from keeping out connections that clearly don't make sense, it's famous for its impressive program control functionality: whenever any of your software tries to access the Internet or act as a server, it asks you to approve it. Don't fret, you can set to always approve a certain application that you trust without a shadow of a doubt, but it's such a great idea for you to make sure that a virus isn't hiding out and trying to receive or send data (or receive remote commands). I know it seems annoying, but you'll get used to it and it's definitely a necessary addition to your arsenal.

Use the Right Browser

This is pretty much a no-brainer: Firefox is consistently hailed as the safest browser around and Internet Explorer has historically been the worst, but Microsoft has been making changes to help rectify this. Because it's so popular, Internet Explorer's vulnerabilities are constantly being tracked down and exploited, so it's not entirely their fault. Still, Firefox's vulnerabilities are typically fixed faster and discovered less often, whether or not it has as many as Internet Explorer.

Also, Firefox 3.0 has some great security additions. It provides you with identity information right in the address bar to prevent phishing (where a bad guy designs a site identical to a site like a bank and gets you to input sensitive information that gets sent to the bad guy, but this feature allows you to verify that it's the site you think it is), it actively warns you of forged sites (again, phishing), and it blocks pop-ups (which is an easy route to force malicious code onto you). But wait, there's more! The NoScript add-on is invaluable and a must-have for anyone who browses the web: it blocks all scripts (Java, JavaScript, Flash) by default and punts to you for approval of each domain's scripts permanently or temporarily. This helps pages load faster but, more importantly, scripts that would otherwise load automatically and could do serious damage now don't and so if you click a link on accident or something like that then you're safe! Think of it like a condom for your web browsing: it just works. It keeps the main culprits of web browsing woes, even for sensible Internet users, safely at bay. Plus, you don't get the irritating ads that appear over the article you're reading (though you can get AdBlock Plus for this). I know approving scripts can get tiresome, but after a few weeks you'll be browsing your favorite sites with ease. Oh, and Tools->Clear Private Data is also excellent for maintaining your privacy.

E-mail

Here's a biggie: safe e-mail usage. You don't need software for this, you just need to use your head. You could use Gmail though, which has 2 great features: you can read the start of your e-mails before opening them to see if it's gibberish or important and it won't load images until you tell it to (yes, images can carry malicious code).

When you download attachments, I'd say you should always scan them (ClaimWin adds an option to your shell menu for when you right-click on files) before you open them. Even if it comes from a trusted source, you never know (maybe they've been compromised, like in a vampire movie).

Whenever you click a link, always always always mouseover the link and look into your status bar to check that the URL matches the text you're clicking on or where it should be going (e.g. www.paepal.com is not the same as www.paypal.com). If you know that a site uses https (this means it has a Secure Socket Layer (SSL) to prevent eavesdropping), then the URL the e-mail takes you to should also start with https and not http. However, https does not mean you can trust a given site! Anyone can set up SSL for their site, if they pay for it, to secure your transmissions, but if you're using SSL to talk to a bad guy then it just means that no one can see what you're sending to the bad guy except for them. If someone wants you to go to a fake site that involves you spending or managing your money, they're going to do a great job of replicating it and pick a URL that looks just like it should except for a couple of letters. They may even write a URL in the e-mail that you can click on that ends up going somewhere else altogether! Check the URLs you click even when you're browsing the Web normally though with a simple mouseover.



Watch out for spam! Mark spam as you see it in your favorite e-mail client and don't bother reading it. If, for whatever reason, it happens to be an ad that's tempting and you think may be from a trusted source, then research the URL it suggests before you click on it. Just do a simple Google search, or do a simple DNS lookup/whois (i.e. check that the URL domain belongs to someone legitimate). It's honestly just that simple. People are lazy and don't do this so many fall for scams and phishing attacks.

In general, don't read e-mails that you don't expect. That's a pretty good policy to follow.

Don't Forget Security Patches!

Keep your system patched! Don't you have to get your kids the proper shots before they go to school? And don't your pets have to get their shots, too, before you take them home? So why not give your computer the same treatment? You must install any security updates that your OS pushes out as well as your browser, anti-virus software, anti-spyware software, or your firewall, or else they're useless. That's just at a minimum: you should really be patching anything you use. Some pretty big outbreaks have come out of unpatched software, like Code Red I, which hit unpatched copies of Microsoft's IIS Server software. From sifting through hundreds of vulnerability descriptions in my research in the NVD I can safely say that not keeping some of your simplest software updated can completely compromise your entire computer. Don't avoid updates because they require restarts or something like that, just take the 5 minutes to do it! You'd be surprised how severe the consequences can be if someone takes advantage of your procrastination.

Passwords

This is more of a general tip that doesn't require much explanation: you need to have good passwords for anything that matters to you. What's a good password? It can't be a dictionary word and should be hard to guess based on any information about you that's publicly available. So if my password was "eltoneptiger" then I'd be kind of dense. The best password crackers in the world rely first on creating passwords from what they know about you, then try common passwords (like "password") and default passwords, and then they try dictionary words. The best way to thwart them are random combinations of letters (upper and lower case), numbers, and symbols. Of course, if it's random how do you remember it? Just try to come up with a story that is abbreviated by the characters in your password or similar mnemonic devices. You can start here.

Please do me a favor: when given a default password, always change it. Kevin Mitnick likes to tell a story of how a bank was robbed because of a router using its default password. There's an attack called drive-by pharming where if you don't change the default password on your router an attacker could use an invisible Javascript script to reconfigure your router so that putting in things like "www.wamu.com" will take you to their fake WAMU site so that you can hand over your password. The scary part of that attack is that you wouldn't know you had been victimized because the URL would probably look alright (your router is supposed to look up the URL domain using a Domain Name System (DNS) server, but if it's corrupted then it may not do this properly). (Note: if you used NoScript then I think you'd be safe from this attack)

If you want to protect your CPU, you can change your computer's password in its BIOS so that if your computer gets stolen the CPU is useless. I personally don't do this, but it's not a bad idea. You should also have a password to run your OS and make the screensaver ask for a password when you resume usage. Always lock your computer when you walk away from it when around other people so that it asks for this password, and make it a good one so that it can't be cracked.

Quick tangent from passwords: be sure to encrypt your important data so that it's useless even if stolen. Software like Microsoft OneNote and Excel have this functionality built-in, but there's plenty of other software (like Notepad++) that can do this.

Conclusion

I know I've given you a lot to swallow and following all of them still doesn't guarantee that you're 100% safe, but it means that you're better protected that 90% of people out there so it'd be pretty hard for you to run into issues. Since I've started following them over the past several years I haven't had a single security breach. The key is not necessarily to be scared, but to be vigilant and use common sense.

Have a great 4th of July weekend everyone! I head to Seattle early Monday morning to arrive on Wednesday night, but I'll do my best to squeeze out another post before then including reviews of Wall-E (A+) and Get Smart (B+/A-).

Monday, June 23, 2008

Day 34: Goodbye, Europe! (My Survival Tips)

First of all, this is the last in my series of posts on Europe. I will be back to techie stuff after this one. I thank you all for indulging me; I always love creating original content so I definitely enjoyed putting up pictures that weren't of me (mostly) but helped give people a flavor of these various, beautiful cities. I don't do very many series (the last one I did may have been for ACL in 2006), so this was always quite unique. The next post I write will be about securing your system, and then after that I'll go back to tech news coverage. I imagine my next post to be out by Thursday, and then I'll start with the tech news again probably next Tuesday or Wednesday. I'm hoping that in the midst of trying to move in to my new place in Seattle I can still get back to at least a weekly schedule and hopefully biweekly after I'm settled in.

I have a couple of pictures to share with you, but if you want to see more then just scroll down below this post and you'll see over a hundred of my favorites from the past 33 days.

We went to the International Street Festival in Sindelfingen on Saturday, which is the suburb of Stuttgart that my cousin lives in, and it was great! It's the only street festival Sindelfingen has all year, but various places around Germany have similar ones throughout the summer and people just drive to them on the weekends and enjoy them. It had a lot of great food and live music. I had some great spatzle with vegetables, a kabob stick holding bananas and strawberries coated in dark chocolate, pizza with bacon and potatoes, and a brat. What I didn't know about the brats is that this is how they cook them:



Isn't that interesting? It reminds me kind of how Mongolians grill their food. It's just a bit circular plate on an open fire. It was very delicious. The other picture I have to share is my cousin's cherry tree:



Apparently, when this type of cherry is black then it's ready to eat, and these are already quite sweet as they turn a dark maroon. It's amazing how well things seem to grow here, or maybe more people have green thumbs. I've probably seen more roses in Europe during this trip than in my entire life because they have these bushes with literally hundreds of rose buds and other types of flowers and greenery plus apple and cherry trees like that one.

Anyway, onto the tips. Over the trip I learned a lot of random stuff about Europe that I didn't know before. I'm going to list them here just in the order that they appear in my head, and some will apply to all of Europe whereas some will be for certain places (I'll specify this where necessary). I hope you find this interesting and informative, or else I encourage you to put up your own list ;)

  • Do your homework. Be smart: plan out your trip in advance. Get travel books so you can read up on where you're going and figure out what you want to do. The Frommer's series is excellent for a general look at not only hot spots but stuff that's off the beaten path. It has restaurant and hotel recommendations and maps, as well, but the maps usually aren't too detailed. It reads like you're talking to a friend so they're definitely fun to read. If you get a big one like Europe, note that it'll focus on big cities. If you want to check out small towns in Germany, get one on Germany (but the Europe one has Romantic Road stops as well). Also, their 3 star rating system is great: if a sight has 3 stars then you should almost definitely check it out. Another great series is the Eyewitness Travel Guides. They literally double as museum guides/maps. They're full of not only key maps and subway/bus maps but up close hand-drawn maps for neighborhoods and plazas and such pointing out interesting things. It pointed out a lot of stuff in Italy that I totally would not have noticed otherwise.

  • Europe is expensive. Make no mistake about it, most things cost more here than in the U.S.. The exceptions are beer in places like Germany and wine and cheese in some places (namely, Italy and France). The euro is stronger than the dollar and the current rate is above 1.6 dollars for a euro. Even quick, takeaway meals (you buy the food and take it with you rather than sitting there and eating) will run you 5 euros. A good meal will probably run you more like 12-15 euro when you include drink. Hotels are crazy expensive, and it ran us like $150 a night on average for a room for 3 at 2.5/3 star places. And these places are more like a 2/2.5 star in the US. Why are prices so high? Sometimes its just normal market forces, but sometimes its the extreme unionization of Europe. So when you're paying 13.50 euro to see the palace at Versailles, understand that part of the high price is paying high wages (in Germany they have 30 hour workweeks and like 7 weeks paid vacation every year).

  • Bring change to the restroom. Many toilets you encounter are not free, even at restaurants (including McDonald's). If you see a sign about it or a person sitting outside the toilet or a towel boy/girl, then you have to pay 0.30-0.50 euro. I know, it's ridiculous because we're used to them being free, but a lot of times restaurant restrooms are free if you eat there so you may want to run in a cafe and get a cheap drink if you need to use the restroom. Oh, and in Paris, you can use the Louvre restroom for free without buying a ticket, you just have to go through security.

  • Water is usually not free. Most americans are used to drinking tap water when they go to a restaurant, but Europeans don't drink tap water even though it's typically potable. You'd be smart to buy a couple of cheap bottles at a grocery story (it can be like 0.30 euro for a huge bottle) and carry it in a backpack with you, very few places disallow water bottles (for us, only the Uffizi did, and they didn't check our bag for it). In some places, especially Rome, you will find fountains just on the street that look really old but are still functioning and in Rome they actually produce fresh spring water. Keep an eye out for those because restrooms do not come with water fountains.

  • Watch your pockets in crowded areas. In places like Paris, Rome, Florence, and Berlin, pickpockets are common. You don't have to worry about it in smaller cities and towns and stuff, but the big tourist cities that are fraught with crowds are often also fraught with petty thieves. In a way, it's nice that petty crime is a bigger issue than violent crime because the opposite is true in the U.S.. Anyway, keep your wallets in your front pocket (guys) and watch your purses (ladies) because thieves will slit the bottom of your purse. I recommend keeping most of your money in a money belt around your stomach and keeping very little on hand. In the worst case, you can run to a restroom to pull out more money from it if you run out in your wallet. If you think that you're too careful to have your wallet stolen, you need to realize that these people are professionals. I would just keep my hand in my pocket when I was on a crowded bus or subway and that worked pretty well. One guy picked my dad's pocket that had trash in it and then grabbed my wallet pocket on the outside while pretending to fall over onto me, and he knew we figured him out so he scurried off the bus. We should've known he was bad news though when he pushed a lady holding a baby to get a seat on the bus so he could better do his work.

  • Be vigilant of scams. Again, this is common in places like Rome and Paris that are full of tourists. Sometimes the con artists will look like tourists also, but often time they look seedy. Not to be racist, but a lot of the con artists you see in Paris happen to be Nigerians and a lot of the ones in Rome happened to be Bangladeshi. One scam is to pretend to drop a ring and ask you if it's yours while their team picks your pocket (while you're distracted). Another scam, which we fell for, are non-uniformed people at a ticket machine for the subway "helping" you buy your ticket from a machine using their credit card (and then you pay them cash), but you end up getting a child's subway ticket. Another scam involves them putting string around your wrist to distract you while others pick your pocket. These scams are rarely pulled off by one guy and often involve a group of people.

  • You don't have to tip, but cover may be required. All across Europe, service is included in the price of your meals. In fact, some places even have a cover charge. Why? Because Europeans are people watchers who love to sit at restaurants all day and may just order a cup of coffee. To help cover the cost of them just sitting there on that table, many places will charge a cover, which also helps cover the service charge. So if a restaurant offers takeaway, food may cost more if you sit down rather than take it with you. You only need to tip if service was really exceptional, which for us was very rare. Because...

  • Service is typically not very fast. In countries like Germany and Austria, meals are 1-2 hour affairs. Food doesn't come out very quickly at all. Food comes out quicker in places like Italy and France, but wait staff are often not very attentive so you have to grab them if you need something or want the check because most restaurants will have a couple of people service the entire restaurant since they're salaried employees and that's not cheap. This is good in some ways though because, unlike America, they don't ask you every 5 minutes if everything is ok; you can eat your meal in peace.

  • Be prepared to walk, whatever the climate. Everywhere that we went, we had to walk a lot. This is especially true in places like Paris and Vienna where much of the experience is just walking around and enjoying the architecture and views. In the summer, don't think that it'll always be hot or always be cold. It's been fairly hot here (like 31 degrees celsius) but also pretty cold (as low as 14 degrees celsius), so bring some light jackets with you (and umbrellas), but if you're traveling in the summer it'll probably be hotter more often than not (especially in July/August).

  • A/C is a joke. Most hotels and restaurants do not have a/c, but usually do have heaters. This is not because it's not necessary, but rather because in the places where it gets really hot people are in denial about global warming. It can get quite hot, but people just buy fans and leave their windows open. The problem with A/C is that the law in many places is that you can't set your thermostat to more than 10 degrees below the outside temperature. This means that it's still rather hot inside, and heat rises so the higher you are in a hotel the worse it'll be (though if you're on the top floor you may have ceiling windows, which we had in Vienna). Note that some hotels that have a/c do not have windows that open, so that's a bad deal overall.

  • Check your electronics. The plugs in Europe are different, so you'll have to buy a converter (my cousin had them so I don't know where to buy them, sorry). Before you plug anything in though, make sure that it can handle 220 Volts at 50 Hz, lest you blow a fuse.

  • Internet is not plentiful. Don't expect hotels to give you free wi-fi, you often have to pay for it and many places don't have a computer for you to use so you need your own. The good news is that there are Internet cafes, and I've gotten it for as little as 1.5 euros an hour.

  • Each country has its own keyboard. It's super annoying. But if you're a touch typist like me, then look at the bottom right corner, before the taskbar icons, for the country code (e.g. "DE" for Germany). If you click on it, you can change it to "EN" for the American style keyboard. Obviously your keyboard won't physically change, but all the key mappings will be for an American keyboard. Note that it will only apply the change for the window you're in, so if you have multiple windows open and you click around between them then you'll probably have to change it back to "EN" because it'll default to the host country in the meantime. Ask the cafe owners though if they have an American-style keyboard though, some actually do.

  • Austrian toilets are weird. You can see a video of what it looks like here. It has a raised area above where the water is, kind of like a waterfall I guess, so when you go number two it just sits there on top (not in the water), which stinks up the bathroom for longer than a normal toilet would. Plus, I imagine it'd be problematic if you took a big one. If you know why they design their toilets in this strange way, please comment.

  • Don't touch the fruit. If you see fruit vendors on the street, sometimes they have a "you touch it, you bought it" policy. So just point out the fruit you want and let them touch it. If you touch it and it's too expensive, you're out of luck.

  • Trains are great and usually affordable. Trains between Florence and Pisa were like 10 euros round trip and between Paris and Versailles it was like 5 euros round trip. Even for longer distances though they're typically cheaper than airlines and you get to enjoy a great view. The only problem are the sleeper trains, where it can get cramped and hard to sleep. Be wary of doing a sleeper train, and be aware that they'll probably take your passport if you're going through a non-EU country so that the conductor can hand them over rather than waking you up.

  • The roads are narrow. If you're going to drive in Europe, be wary of the roads being narrow and having twisting turns, especially on mountains. In fact, I'd recommend getting a GPS for the trip. We would've been so screwed without a GPS. Anyway, it'll take a few days to get used to driving in Europe, so just keep that in mind. Plus, in some cities (like Brussells and Paris), it's stupid to drive in unless you've driven in areas like that or Romania or India before.

  • Cops won't pull you over for speeding in Germany. This is part of the legendary autobahn: you can go 100+ mph and no one cares. Just look out for signs warning you of cameras, because they do have that in place in certain areas. Driving in Germany can definitely be fun if you enjoy speeding.

  • Pedestrians often cross the street without looking. You have to always be vigilant of pedestrians. In some places, the cross walk is a striped line in the street that has no signal light so pedestrians have the right of way and it's your job to stop for them.

  • Paris transit shuts down early. By 8:30 PM the buses stop running and by 1:15 AM the subway stops. Some of the RER lines end before that so be sure to not be out past 10PM without a plan of how to get back home.

  • In some places, you have to buy your bus/subway ticket in advance. In the U.S., you can usually just bring change to a bus but in several places in Europe, like Rome and Florence, you have to go to a tabacco (Tabac) shop and get your tickets. They also sell passes, usually, for a whole day or multiple days. The one day passes are usually not for 24 hours, but until the end of the day (for Vienna, oddly, they were for 24 hours).

  • Check with your hotel for maps and restaurants. If you did what we did and go to multiple cities, don't worry too much about buying a map because your hotel should have one. If you're not staying in a hotel there, then you need to pick up a tourist map from a convenience shop somewhere. Also, 9 times out of 10, your hotel concierge knows of a great place to eat nearby, so tap them for that information.

  • Be wary of guided tours. This is not to slam guided tours, but they'll sometimes try tactics like "if you wait in this line it's 2 hours but if you come with me then you can go in right now." They're half correct: most guided tours for museums and palaces and such do get priority entrance, but often lines aren't that long. Same with reservations: you may have to pay 4 euros extra for a museum reservation, but then you lose flexibility because it has a time attached to it. Just plan for an hour to wait in line because most museums won't hae you wait in line longer than that and often the guided tour people exaggerate the wait (especially at St. Peter's Basilica). If you want a guided tour, then that's fine, but they're not cheap and you can't go at your pace until after the tour. I recommend the audioguide unless a guided tour is required (like at Schloss Neuschwanstein).

  • Leave a day for the Louvre. That is, if you go to Paris. It is more than you can possibly see in a day, trust me. Do yourself a favor and get the multimedia guide, too, so that you don't have to shuffle around with a map. It's not all that intuitive where the collections are and the guide has tour routes on it.

  • See the Vatican Museum before St. Peter's Bsilica. That is, if you're in Rome and want to see them. The line for the Basilica goes super fast, but the museum line takes longer. Plus, the museum will take you several hours whereas the Basilica will probably only take you an hour. But when you go to the Basilica, head for the crypt first (it feeds into the church).

  • Yeah, people kiss each other as a greeting. I know in the U.S. it's associated with being stuck up, but usually people here do kiss each other on the cheeks to say 'hi'. Just be aware of that

  • There's a lot of nude art here. Be aware that any art museum you go into is most likely going to have nude art. So if that bothers you, then deal with it or don't go see the amazing, priceless art that Europe has to offer.

  • Take breaks and have fun! The most important thing is to have a good time. Don't plan a marathon trip where you're totally exhausted by the end of it: plan for days where you just laze around in cafes or in a beautiful park. Do what you want to do and not necessarily what people think you should be doing. If you hate sculptures then don't go to the Rhodin museum in Paris, but if you love impressionist art then definitely check out the D'orsay instead.



All in all, I really enjoyed Europe. Having to go with my parents was a bit of a challenge simply because our tastes sometimes collide and I'm more willing to go on long walks or go up hundreds of steps than they are, which is understandable because they're definitely getting pretty old now and need to watch out for their health. I was glad to have the opportunity to get this first look at Europe so that I know what to expect and next time can not only be better prepared but go to places like Rome and Paris and do off-beat things rather than the touristy stuff. I highly recommend going to Europe on a vacation and really just enjoying the easygoing European lifestyle while making some cessions for a few tourist excursions. You don't need to know the language in most places, just go online and look up the important phrases ("Do you speak English", greetings, "thank you", "check please", "how much is this", etc.). Then, learn the languages as you go! It doesn't take long in Germany to realize that "ausfahrt" is exit and that "verboten" means forbidden. Just make sure you look up pronunciations (like 'v' in German is really pronounced like an 'f', and 'ch' in Italian is pronounced like 'k'). Aside from just the language, you just learn a lot about how other people live and I definitely think it makes you, subconsciously, a better person overall because it reduces your level of ignorance. Plus, Europe is gorgeous and unique in the amount of history it has, so really leave some time to take it all in and enjoy yourself!

The next time I post I will be back in the U.S., assuming everything goes to plan. Bye bye!

Saturday, June 21, 2008

Days 26-31: The Last Road Trip

Note: The pictures are small to help with the load time of this page, but just click on them to enlarge them to their high resolution glory. Oh, and the normal tech news commentary will return after my vacation.

Our European vacation is coming to a close very soon, and we're not going to be making any big trips before we leave on Tuesday so this will be my last major round-up of pictures. I took less than 400 pictures, but still only whittled it down to 40 pictures to share with everyone.

On Sunday, we headed for Lucerne, Switzerland. The beauty of this small country was apparent quite quickly:



Lucerne had a really cool, old bridge from the 14th century that offered a great view of the city from right in the middle of it:



We went to a Jesuit church (Jesuitenkirche) that was very near the bridge (though not pictured above), and it had a really interesting style to it; different from any other European church we had seen. I believe it was built in the 17th century. This will give you an idea of the style they followed:



Our focus for the day, however, was on getting to the top of Mount Pilatus. I believe that we were up 2,132 meters by the time we reached the top. First, we had to take a boat across the water, which was quite scenic. The day was overcast and rainy so you'll have to excuse my pictures. Everywhere the boat went, you saw small towns on hills like this:



Here's a closer shot of some homes right on the water:



We then had to board a cogwheel railway car to go up the mountain!



It was hard to take pictures to really show how steep the tracks were, so this was the best I could do:



Basically, the train used cogwheels to pull itself up the mountain on the tracks. I think that this is a very new railway system. The problem, however, was that it was a nasty day outside so this is what we were treated to once we reached the top:



The real beauty was really during the train ride, during which taking pictures were hard. We did see the world's largest horn at the top though:



Can you say 'ricola'? We took a gondola to get back to the ground, and this should give you an idea of how far up we were:



Even from that high up though, you could still hear the cowbells that are so popular in Switzerland and Austria:



Despite being overcast, the view was still quite nice:



The hotel we stayed in was pretty cool, and when we took a walk before dinner we encountered some interesting-looking cows:



Anyone know the name of this breed of cattle? They were rather cute and they were really hairy!

The next day, we headed to Schloss ("Castle") Neuschwanstein (in Germany), which is what inspired the design of the Cinderella's castle that has become associated with the Disney brand. We took a carriage ride up the hill to get there because it would be a 40 minute uphill walk otherwise (or a bus ride plus a 15 minute uphill walk, which my mom didn't want to do).



It was hard to take a picture to capture that it really did seem like kind of a fairy tale castle (especially because it was overcast, again), but here's my best shot at it:



King Ludwig II definitely had a great view from the castle (though he spent less than a year there and only completed 1/3 of it):



We headed to Garmisch, Austria that night to stay at the Edelweiss Lodge (an armed forces resort, thanks to my cousin), but the weather was still overcast there as it remained the next day. On the way there, we stopped at a beautiful babbling brook:



The next day was still overcast and rainy, so we went briefly to Berchesgaden (in Germany) to check out a retreat that was given to Hitler for his 50th birthday at Obersalzberg, but couldn't see much from there. We went to Salzburg, Austria that night.

Several scenes from The Sound of Music were actually filmed in Salzburg, so we started out with the Mirabell Gardens. It was quite beautiful and you could see many rose bushes that looked like this:



Roses seem to grow so well in Germany and Austria, for some reason. If you're a big fan of the movie, you probably notice scenes from the "Do Re Mi" song as you walk around.



Something unique we saw as we walked around the city were these buildings that are pressed up against the mountains:



Inside the mountain, at one point, we actually encountered a museum. Another interesting fact about Salzburg is that it was the birthplace of Mozart, which they definitely take advantage of. He even has his very own chocolate there:



If you can get your hands on one, they're very delicious. The dominant piece of architecture in the middle of the city is the Salzburg Cathedral, which was definitely quite beautiful. In front of the altars along the sides of the church, you could see this on the ceilings:



The crazy thing is that each one is different! The baroque interior and exterior architecture of this church was just really incredible and impressive. After some searching, we came across the Nonnberg Abbey, which was also made famous by The Sound of Music. You may recognize the below gates as the one the children came across and where they talk to the Mother Superior. As the movie portrays, the walls of the abbey do make it rather difficult to find the entrance.



As we left the Abbey, we ran into some interesting graffiti:



On our way to the Fortress Hohensalzburg, which we ended up not going to, we got a pretty good view of the Salzburg Cathedral:



Euro Cup was going on and that banner being on the Cathedral should give you an idea of how serious the Europeans take their soccer. Scenes like this were not uncommon:



Spain was playing Greece that day (the Euro Cup was only being played in select cities in Austria and Switzerland and will continue for the next couple of weeks). There were definitely more Spanish fans around than Greek fans, or at least that's how it seemed. Cops are everywhere to keep the peace, but I even saw fans fanatic enough to dress up in full Bavarian garb but with Spanish colors on their outfit. Cars in the street everywhere were adorned with the flags of the countries they supported, and opposing countrymen would often honk at them. Also, Salzburg (and Vienna) had "fanzones" set up with enormous projections of games and plenty of street vendors. The energy was definitely tangible, and that was a fun experience, though it sometimes interfered with us seeing things.

We went to Vienna, Austria the next day and saw their Dom cathedral, but I liked the outside better than the inside:



The inside was dominated by an art display that was supposed to symbolize an angel, I think.



The streets in Vienna definitely had a different feel for Salzburg because it was a big city, and it had street performers and everything like Paris and Rome. People were everywhere though because of the Euro Cup and normal tourism. Fortunately, the public transit system there, like many other cities in Europe, was quite good so we had no trouble getting around.



We walked around the Stadtpark for a while and I thought this family of ducks was cute:



There was even a little duck bath:



We had lunch at a biergarten in the park where my dad ordered an actual Budweiser since it's an Austrian beer who's name was stolen by the American Anheuser-Busch company.



It was rather hot outside (a nice change of pace from the rain), but we still pressed on to the Hapburg Palace (Schloss Schönbrunner):





We tried to take in more of the city's architecture afterward, but were held back by the obtrusive fanzone for the Euro Cup. The Euro Cup did lead to this neat outdoor display though:



And finally, yesterday we went back to Berchtesgaden since the weather had cleared up. We went all the way up to Eagle's Nest ("Kehlsteinhaus"), which was the Hitler retreat I mentioned before (though he only went up there a few times). I know, it seems weird that they kept it, but they turned the Eagle's Nest into a restaurant and some other Nazi buildings that were up around Berchtesgaden were blown up over 60 years ago. It's not hard to see why this one was kept:



The best elevator we had been in the entire trip was the one going to the Eagle's Nest and traveled 124 stories! We had to take a bus up to a tunnel that led to the elevator. The name is apt because we did see eagles up there; it's 1,834 meters above sea level. The thinner air was tangible, though it wasn't immediately noticeable to me. We were able to walk to get a better panoramic view.



It was a little hazy up there, but still very beautiful:



On the side opposing the Austrian alps you could see Germany at its best:



We headed back to Stuttgart afterward and got some groceries for dinner. I have to end my slew of pictures with some puerile humor that I encountered at the store:



I hope you enjoyed the pictures! I've now shared over 140 pictures here, and I cherish the 1,000+ I've taken over the trip so I'll probably pick up a couple of digital frames in a few weeks and set them up with those pictures. If you want to see more of my pictures, you're going to have to find me in person. You must be pretty masochistic to submit yourself to even more pictures from this trip though after the ridiculous number I've put online as it is.

I'll probably make one more post here in a day or two before we head back with any leftovers pictures I may take between now and then, but I'll mainly be using that post to share lessons we've learned from our trip in case you're planning your own vacation in Europe. Have a great weekend everyone!