WinRAR vulnerability exploited by two different groups - Malwarebytes
However, in the context of current threat landscapes, generic RAR files—particularly those named with random numbers—are often used as vectors for malware delivery via phishing.
Attackers often mask files, for example 52355.rar might contain a file named 52355.pdf.exe . When clicked, it runs malicious code. Recommendations Do not open the file if it came from an unexpected source.