It's always PirateStealer, probably because it's open source so it's easy for people to pick up and use instead of exerting effort. Also, you can send a DELETE request to a Discord webhook without any auth, defusing the malware.
I'm still glad the DELETE thing works, I've reported a few times these with a complete writeup to Discord and all I got was a ticket being auto-closed after a month and the webhooks+servers still being up. I personally no longer bother reporting, just straight delete the webhook to stop the spread. Makes you wonder what their security/support team is doing with all those tickets.
Somebody using my email for a discord acct without verification? Sure, go ahead (but I got the "verify your account" emails)
Then I "forget" the acct password, bam, account locked.
Which is fine by me, since I don't use that email with discord, still...