Malware in Eight Steam Games Stole $220K, FBI Says
Malware in eight Steam games infected about 8,000 PCs, accessed roughly 80 crypto wallets and siphoned at least $220,000 that investigators say was converted to Uber Eats gift cards.
A federal complaint and an FBI notice say malware hidden in eight games on the Steam storefront infected about 8,000 computers, captured private credentials and accessed roughly 80 cryptocurrency wallets, resulting in at least $220,000 in stolen funds.
The FBI notice lists BlockBlasters, Chemia, Dashverse, DashFPS, Lampy, Lunara, PirateFi and Tokenova. Investigators say the titles were distributed on the storefront between May 2024 and January 2026 and were promoted on social platforms.
The complaint alleges operators used automated accounts on Discord, Telegram, X and LinkedIn to identify people with large crypto balances and to encourage them to download the games. Once installed, the malicious software reportedly harvested saved credentials, browser session cookies and wallet information.
One title, PirateFi, was available on the storefront from Feb. 6 to Feb. 12, 2025 and is reported to have contained the Vidar information‑stealer, a program that can collect credentials and browser data and expose wallet secrets and authenticated sessions.
The complaint notes the storefront checks initial game builds for harmful behavior but allows approved titles to be updated without a separate review. Investigators say that process can allow a later update to introduce malicious code after an initial approval.
Investigators traced funds from a wallet linked to the scheme through on‑chain transactions to Bitrefill, a payment provider used to buy more than 150 digital gift cards, primarily for Uber Eats. A subpoena to the delivery service tied the cards to an account that received orders delivered to addresses associated with 21‑year‑old Zyaire Dontaevious Zamarion Wilkins.
Wilkins was arrested on July 14 and is accused in the complaint of financing and procuring malware and helping market the infected games. He is presumed innocent unless convicted.
The FBI is seeking people who downloaded the eight listed titles. The complaint estimates about 8,000 devices were infected and about 80 wallets were accessed without authorization. It places the alleged storefront activity between May 2024 and January 2026 and cites related activity through February 2026.
The filings recommend keeping wallet keys and authenticated sessions off devices used for gaming and general web browsing and carefully reviewing transaction prompts before approving transfers.
Content on BlockPort is provided for informational purposes only and does not constitute financial guidance.
We strive to ensure the accuracy and relevance of the information we share, but we do not guarantee that all content is complete, error-free, or up to date. BlockPort disclaims any liability for losses, mistakes, or actions taken based on the material found on this site.
Always conduct your own research before making financial decisions and consider consulting with a licensed advisor.
For further details, please review our Terms of Use, Privacy Policy, and Disclaimer.








