---
title: Fake word documents | US Computer Connection | Cybersecurity Services
description: Keep your eyes peeled for suspicious-looking fake Word documents that can infect Microsoft Office and increase your need for cybersecurity services.
image: https://blog.uscomputer.com/hubfs/Imported_Blog_Media/43445277_l.jpg
---

[Skip to content](https://blog.uscomputer.com/beware-new-microsoft-office-vulnerability-installs-malware-fake-word-doc-file#main-content)

[![USCC_2C_Logo](https://blog.uscomputer.com/hs-fs/hubfs/USCC_2C_Logo.png?width=1078&height=250&name=USCC_2C_Logo.png "USCC_2C_Logo")](http://U.S.%20Computer%20Connection)

Search

- [Home](https://uscomputer.com)
- About
  
  Show submenu for About 
  
    - [Our Team](https://uscomputer.com/our-team)
    - [Careers](https://uscomputer.com/careers)
- [Solutions](https://uscomputer.com/solutions)
  
  Show submenu for Solutions 
  
    - [Cybersecurity](https://uscomputer.com/cybersecurity)
    - [Data Backup & Disaster Recovery](https://uscomputer.com/data-backup-disaster-recovery)
    - [Managed IT Services](https://uscomputer.com/managed-it-services)
    - [IT Projects](https://uscomputer.com/it-projects)
    - [Cloud Computing](https://uscomputer.com/cloud-computing)
- [Blog](https://blog.uscomputer.com)
- [Contact Us](https://uscomputer.com/contact)

- [Home](https://uscomputer.com)
- About
  
  Show submenu for About 
  
    - [Our Team](https://uscomputer.com/our-team)
    - [Careers](https://uscomputer.com/careers)
- [Solutions](https://uscomputer.com/solutions)
  
  Show submenu for Solutions 
  
    - [Cybersecurity](https://uscomputer.com/cybersecurity)
    - [Data Backup & Disaster Recovery](https://uscomputer.com/data-backup-disaster-recovery)
    - [Managed IT Services](https://uscomputer.com/managed-it-services)
    - [IT Projects](https://uscomputer.com/it-projects)
    - [Cloud Computing](https://uscomputer.com/cloud-computing)
- [Blog](https://blog.uscomputer.com)
- [Contact Us](https://uscomputer.com/contact)

[Client Remote Support](https://uscomputer.com/support/)

[Free Strategy Session](https://uscomputer.com/contact/)

 Call Today! 203.356.0444

# Beware: New Microsoft Office Vulnerability Installs Malware Through a Fake Word Doc File

[Garry Feldman](https://blog.uscomputer.com/author/garry-feldman)  May 3, 2017 5:40:34 AM

[![Share on facebook](https://7528309.fs1.hubspotusercontent-na1.net/hub/7528309/hubfs/raw_assets/public/mV0_d-web-default-modules_hubspot/img/facebook-color.png?width=24&name=facebook-color.png)](https://www.facebook.com/share.php?u=https%3A%2F%2Fblog.uscomputer.com%2Fbeware-new-microsoft-office-vulnerability-installs-malware-fake-word-doc-file%3Futm_medium%3Dsocial%26utm_source%3Dfacebook) [![Share on linkedin](https://7528302.fs1.hubspotusercontent-na1.net/hub/7528302/hubfs/raw_assets/public/mV0_d-web-default-modules_hubspot/img/linkedin-color.png?width=24&name=linkedin-color.png)](https://www.linkedin.com/shareArticle?mini=true&url=https%3A%2F%2Fblog.uscomputer.com%2Fbeware-new-microsoft-office-vulnerability-installs-malware-fake-word-doc-file%3Futm_medium%3Dsocial%26utm_source%3Dlinkedin) [![Share on twitter](https://7528304.fs1.hubspotusercontent-na1.net/hub/7528304/hubfs/raw_assets/public/mV0_d-web-default-modules_hubspot/img/twitter-color.png?width=24&name=twitter-color.png)](https://twitter.com/intent/tweet?original_referer=https%3A%2F%2Fblog.uscomputer.com%2Fbeware-new-microsoft-office-vulnerability-installs-malware-fake-word-doc-file%3Futm_medium%3Dsocial%26utm_source%3Dtwitter&url=https%3A%2F%2Fblog.uscomputer.com%2Fbeware-new-microsoft-office-vulnerability-installs-malware-fake-word-doc-file%3Futm_medium%3Dsocial%26utm_source%3Dtwitter&source=tweetbutton&text=) [![Share on email](https://7528311.fs1.hubspotusercontent-na1.net/hub/7528311/hubfs/raw_assets/public/mV0_d-web-default-modules_hubspot/img/email-color.png?width=24&name=email-color.png)](mailto:?subject=Check+out+https%3A%2F%2Fblog.uscomputer.com%2Fbeware-new-microsoft-office-vulnerability-installs-malware-fake-word-doc-file%3Futm_medium%3Dsocial%26utm_source%3Demail&body=Check+out+https%3A%2F%2Fblog.uscomputer.com%2Fbeware-new-microsoft-office-vulnerability-installs-malware-fake-word-doc-file%3Futm_medium%3Dsocial%26utm_source%3Demail)

Microsoft and McAfee have sent out an all-points-bulletin on a Microsoft Office-based vulnerability that allows malware to completely take over an infected system. The malware enters the victim’s computer through a fake Word document, or possibly another type of fake Office file.

Anyone who attempts to open one of these malicious fake files will be exposing their system to an HTML application that quickly downloads and then executes as a .hta file, which is disguised as an RTF document. When this application starts, the attacker then has the ability to assume complete code execution control over the infected computer.

Since the exploit could potentially affect any of the millions of Microsoft Office users, including owners of Office 2016, the company has advised users to be wary of any suspicious files sent from unknown sources. Users can also activate the Office Protected View feature to open suspected documents while preventing them from accessing the system. Microsoft has delivered a patch on the zero day exploit since its discovery, so users should also be sure to update Office to the latest version.

Vulnerabilities like these illustrate the need for cybersecurity services that include real-time, proactive malware scans and up-to-date management based on the latest patches and announcements.

## How the Fake Doc Exploit Works

McAfee discovered the exploit after users had reported its effects, and to prevent its spread.

According to the [released McAfee report](https://securingtomorrow.mcafee.com/mcafee-labs/critical-office-zero-day-attacks-detected-wild/), the exploit is “a logical bug,” one that allows attackers, “to bypass any memory-based mitigations developed by Microsoft.” In other words, the exploit flies under the radar of most security functions by working using the system’s own logic against itself. By the time the malicious application is in the system’s memory, it is too late, and must be carefully removed.

Adding insult to injury, the exploit eventually does open a fake Word document to display to the user. The user may notice unusual qualities to this document, but at that point their system is already infected. Malware-infected systems can be used to commit fraud, such as using saved personal information to open up lines of credit. They may also help spread malware to others through hijacked accounts.

Removing these infections is time-consuming, difficult and costly, so prevention is the best approach.

## Prevent Infections and Avoid Vulnerabilities with Cybersecurity Services and Consulting

Unfortunately, some infections are inevitable if they involve zero-day exploits — vulnerabilities people have no warning about until they already happen. Even then, cybersecurity services can help proactively identify infected systems, contain them and warn others against actions that can spread infections to other workstations or even throughout the entire network.

The only way an organization can be truly protected and prepared for exploits like the one affecting Office users is through partnering with a [cybersecurity services company](https://www.uscomputer.com/solutions/#mtab4). Through consulting, around-the-clock monitoring software, implementation of a Virtual Private Network (VPN) and other methods, your company and your employees can all reduce their risk of being affected by malicious software.

[Security Tips](https://blog.uscomputer.com/tag/security-tips)

## Read On

[![](https://blog.uscomputer.com/hs-fs/hubfs/August%202025/Social%20800%20x%20800/PSPro-Cyber%20Insurance%20%26%20IT-Ad-15-800x800.jpg?width=352&name=PSPro-Cyber%20Insurance%20%26%20IT-Ad-15-800x800.jpg)](https://blog.uscomputer.com/it-and-cyber-insurance-why-you-cant-afford-to-ignore-either)

### [IT and Cyber Insurance: Why You Can't Afford to Ignore Either](https://blog.uscomputer.com/it-and-cyber-insurance-why-you-cant-afford-to-ignore-either)

Cyberthreats are evolving fast, especially with the rise of AI-powered attacks. That's why a solid...

[![](https://blog.uscomputer.com/hs-fs/hubfs/August%202025/Social%20800%20x%20800/PSPro-Cyber%20Insurance%20%26%20IT-Ad-14-800x800.jpg?width=352&name=PSPro-Cyber%20Insurance%20%26%20IT-Ad-14-800x800.jpg)](https://blog.uscomputer.com/cyber-insurance-basics-what-every-business-needs-to-know)

### [Cyber Insurance Basics: What Every Business Needs to Know](https://blog.uscomputer.com/cyber-insurance-basics-what-every-business-needs-to-know)

Cyberattacks rarely come with a warning, and when they hit, the damage can be fast and costly. From...

[![](https://blog.uscomputer.com/hs-fs/hubfs/July%202025/Social%20800%20x%20800/PSPro-Risky%20vs%20Reliable-Ad-15-800x800.jpg?width=352&name=PSPro-Risky%20vs%20Reliable-Ad-15-800x800.jpg)](https://blog.uscomputer.com/the-role-of-it-service-providers-in-mitigating-it-risks)

### [The Role of IT Service Providers in Mitigating IT Risks](https://blog.uscomputer.com/the-role-of-it-service-providers-in-mitigating-it-risks)

In today’s fast-moving business landscape, change is constant and often unpredictable. Markets can...

#### Connect with USCC

933 Hope Street  
Stamford, CT 06907

[Follow us on Facebook](https://www.facebook.com/USComputerConnection) [Follow us on LinkedIn](https://www.linkedin.com/company/us-computer-connection) [Follow us on Facebook](https://www.youtube.com/channel/UCVJhg6c3_PpsUkKyY31areg) [Follow us on Twitter](https://twitter.com/UScomputerConncom)

#### Solutions

[Managed IT Services for Businesses](https://uscomputer.com/managed-it-services)

[Cybersecurity](https://uscomputer.com/cyber-security)

[Data Backup & Disaster Recovery](https://uscomputer.com/data-backup-disaster-recovery)

[IT Projects](https://uscomputer.com/it-projects)

[Cloud Computing](https://uscomputer.com/cloud-computing)

Copyright © 2022 USCC. All rights reserved | [Privacy Policy](https://uscomputer.com/wp-content/uploads/2021/09/Online-Privacy-Policy.pdf)

```json
{
  "@context" : "https://schema.org",
  "@type" : "BlogPosting",
  "author" : {
    "@type" : "Person",
    "name" : "Garry Feldman",
    "url" : "https://blog.uscomputer.com/author/garry-feldman"
  },
  "dateModified" : "2022-10-17T15:57:29.255Z",
  "datePublished" : "2017-05-03T09:40:34.000Z",
  "headline" : "Fake word documents | US Computer Connection | Cybersecurity Services",
  "image" : [ "https://blog.uscomputer.com/hubfs/Imported_Blog_Media/43445277_l.jpg" ],
  "mainEntityOfPage" : {
    "@id" : "https://blog.uscomputer.com/beware-new-microsoft-office-vulnerability-installs-malware-fake-word-doc-file",
    "@type" : "WebPage"
  },
  "publisher" : {
    "@type" : "Organization",
    "logo" : {
      "@type" : "ImageObject",
      "url" : "https://blog.uscomputer.com/hubfs/USCC_2C_Logo.png"
    },
    "name" : "U.S. Computer Connection"
  }
}
```