Well, I burned it. I already had a program capible of ISO burning, by Roxio. Unsettlingly, OneCare caught it trying to access the internet before I burned the cd. Fortunately I could block it. Now I have to hide it in the attic.
If I use the non-legit one one of the reasons I want to block it from accessing the internet is incase it has built-in spyware or something.

The reviews were good though.
On another forum I read you can install a legit copy of XP on up to 3 computers, is that true?