%windir%/Fonts
directory. Blocking untrusted fonts helps prevent both remote (web-based or email-based) and local EOP attacks that can happen during the font file-parsing process.%windir%/Fonts
directory. It also turns on event logging.Computer ConfigurationAdministrative TemplatesSystemMitigation OptionsUntrusted Font Blocking
.HKEY_LOCAL_MACHINESYSTEMCurrentControlSetControlSession ManagerKernel
.??C:PROGRAM FILES (X86)COMMON FILESMICROSOFT SHAREDEQUATIONMTEXTRA.TTF
%windir%/Fonts
directory. If it doesn’t, you’ll need to manually copy the font files into the Fonts directory and run the installation from there.HKEY_LOCAL_MACHINESoftwareMicrosoftWindows NTCurrentVersionImage File Execution Options<process_image_name>
.HKEY_LOCAL_MACHINESoftwareMicrosoftWindows NTCurrentVersionImage File Execution OptionsWinword.exe
.