Alternatively, the malware is straight up disguised as an Office 365 file, but is really an executable waiting to install ...