

The malicious scripts log out the user from the Discord client and prompt them to log in. When Discord is started, it loads a file named inject.js, which further loads another spiteful javascript file called discordmod.js into the client.Once installed, the malware tweaks the Discord client’s file to stack the JavaScript files added by AnarchyGrabber3.Using the stolen plain text passwords, cybercriminals can conduct credential stuffing attacks to undermine victims’ accounts on other sites.The modified version, AnarchyGrabber3, can steal victims’ plain text passwords and command them to spread malware to their friends on Discord.

There’s a lot more going on in the backend
