Ensure you are using the latest version of WinRAR (at least 6.23 or newer) to patch known vulnerabilities.
To stay safe from extension spoofing and malicious archives:
In Windows File Explorer, go to the "View" tab and check "File name extensions" so you can see the true nature of every file.