I want to install MAS to my clubhouse’s computer so I can share MS Office with our member, but I wonder if it’s really safe.

Some people on Reddit say that it’s a trojan

https://www.reddit.com/r/pchelp/comments/1crolj9/reinstalled_windows_10_and_windows_security/

https://www.reddit.com/r/Piracy/comments/16rdsc4/regret_using_microsoft_activation_scripts/

They say that I can check the source code since it’s open sourced, but I’m not sure. It’s too complex, and downloading several files inside a script. I haven’t checked yet but it can be downloading some blobs, idk.

Also the domain of the official page sounds suspicious… “mass grave”??

Edit: I use Debian btw

  • purplemonkeymad@programming.dev
    link
    fedilink
    English
    arrow-up
    9
    ·
    7 days ago

    I know what community this is, but is your clubhouse a registered non-profit? They can get 10 business premium licenses that include office at no cost on Microsoft 365. If you are worried about the activator it might be a less worrying route.

    • fin@sh.itjust.worksOP
      link
      fedilink
      English
      arrow-up
      2
      ·
      7 days ago

      registered non-profit

      No, we’re not. We’re just a group of people in a university, lol

      • darklamer@lemmy.dbzer0.com
        link
        fedilink
        English
        arrow-up
        2
        ·
        7 days ago

        In all jurisdictions where I have personal experience, getting some “group of people” properly registered as a non-profit organization usually isn’t too much of a hassle.

  • Imprint9816@lemmy.dbzer0.com
    link
    fedilink
    English
    arrow-up
    7
    arrow-down
    1
    ·
    7 days ago

    Its safe to use as an individual I wouldn’t recommend people use it for their business where Microsoft is much more willing to investigate and fine you.

  • TheMachineStops@discuss.tchncs.de
    link
    fedilink
    English
    arrow-up
    4
    ·
    7 days ago

    It is safe, I scrolled through the code very quickly in the past and I didn’t see anything suspicious in it. Windows labels it as trojan, but Windows label most keygens as trojans even if they are safe.

  • B1naryB0t@lemmy.dbzer0.com
    link
    fedilink
    English
    arrow-up
    61
    arrow-down
    3
    ·
    7 days ago

    Yes it’s not even really considered piracy. It creates a fully activated legitimate copy of Windows. It’s just basically a key-gen. It is a trojan in that it works like a trojan would, except it’s verified as safe.

    But really you gotta know coming to Lemmy for this you’re just gonna get told to run Linux. So I’ll do it for you. Run Linux. The real trojan MAS creates is a fully activated copy of Microsoft Windows.

    • fin@sh.itjust.worksOP
      link
      fedilink
      English
      arrow-up
      20
      ·
      7 days ago

      Oh, I use Debian as my daily driver, so don’t worry about that ;). In fact, that’s why I want to install Office on my clubhouse’s computer.

      I managed to run Windows on KVM but it’s too slow and crashes occasionally, thus not very suitable for doing assignments.

      • fin@sh.itjust.worksOP
        link
        fedilink
        English
        arrow-up
        8
        ·
        7 days ago

        Interesting. I wonder why they don’t take it down immediately when they absolutely can

        • Yglorba@lemmy.dbzer0.com
          link
          fedilink
          English
          arrow-up
          3
          ·
          6 days ago

          Microsoft has always had a strange relationship with piracy. They’d obviously prefer everyone pay for their software, and will crack down on stuff that seriously threatens this - but at the same time, their real power and profit comes from their monopoly (well, came from their monopoly; things are weird now due to their failure to win the browser wars and mobile device markets.)

          If the alternative is you using a competitor’s software, they’d prefer that you pirate windows.

        • we_avoid_temptation@lemmy.zip
          link
          fedilink
          English
          arrow-up
          21
          ·
          edit-2
          7 days ago

          It’s probably just not worth it. MS makes the vast, vast majority of thier money on Windows licenses from the corporate sector and OEMs. Any revenue “lost” to MAS is a rounding error on thier toilet paper budget for thier offices.

          Both those posts on reddit are people being paranoid (especially the pchelp post, that user is self-admittedly ignorant), perhaps not wrongly, but it is open source and used frequently enough I’d imagine someone would have said something if there were issues.

          Personally, I’ve used it probably 3-4x without any issues. Take that for what you will.

          EDIT: Manual instructions are here if you wanna be really, really sure.

          • empireOfLove2@lemmy.dbzer0.com
            link
            fedilink
            English
            arrow-up
            7
            ·
            7 days ago

            Ensuring everyone runs Windows maintains their monopoly and also keeps the user data siphon net as wide as possible. They don’t give a shit as long as you are feeding them personal data and are using Windows.

  • Unmapped@lemmy.ml
    link
    fedilink
    English
    arrow-up
    14
    ·
    7 days ago

    I’ve had no issues with it so far. Its been my go to for awhile. But I don’t use windows for anything important. Malware bytes scans don’t find anything.

  • empireOfLove2@lemmy.dbzer0.com
    link
    fedilink
    English
    arrow-up
    8
    ·
    edit-2
    7 days ago

    I’ve always just used the KMS activation method from ms guides dot com. Avoids running anything local (that’s not already baked into Windows). I haven’t had to use it for a year or so but my machines are still working so I am pretty sure it is still current.

    The KMS method can be batch scripted too so it’s a single run for your family member.

  • jet@hackertalks.com
    link
    fedilink
    English
    arrow-up
    8
    arrow-down
    4
    ·
    7 days ago

    I looked at the source code, and there was a bunch of binary encoded payloads, that loaded other binary encoded payloads, that called out to external resources. It might be fine, it might not. But I noped out of it.

    I’m okay with the activate Windows watermark, at least I know I only have to worry about Microsoft