Steam malware steals $220k crypto, 8000 devices infected
In a digital landscape often defined by entertainment and connection, some players turn that influence into a highway for illicit financial gain. Federal agents recently brought down a scheme involving malware embedded in popular video games, resulting in the theft of over $220,000 from cryptocurrency wallets.
The investigation focused on Zyaire Dontaevious Zamarion Wilkins, a 21-year-old from North Lauderdale, Florida, who is now charged with conspiracy to obtain information by computer for private financial gain. The scope of the operation suggests a highly organized effort that leveraged digital distribution channels and social media to execute a sophisticated cyber scam.
Wilkins allegedly helped orchestrate an operation that infiltrated eight popular video games with malicious code, infecting approximately 8,000 devices. This wasn’t just about creating viruses; it was about executing a carefully planned financial heist over several months, spanning from May 2024 to February 2026.
The alleged perpetrators managed to drain at least $220,000 from roughly 80 cryptocurrency wallets. The trail of stolen funds led through a complex route: stolen Bitcoin was converted into gift cards—many of which were used for services like Uber Eats—demonstrating how quickly digital assets can be laundered.
Investigators tracked the flow of money, following the illicit transactions from stolen Bitcoin to over 150 gift cards. This detailed tracking painted a picture of calculated exploitation, showing that a seemingly harmless game could hide a serious criminal enterprise.
The specific titles identified in the scheme included games such as BlockBlasters, Dashverse, Lunara, and PirateFi. These titles were distributed through a “popular digital distribution software company,” suggesting an attempt to mask the source of the malicious content.
The operation required more than just code; it demanded a sophisticated distribution network. The conspirators promoted the infected games across various platforms including Discord, Telegram, X, and LinkedIn, utilizing bots to directly message users who held large cryptocurrency balances. This targeted approach allowed the group to achieve an infection rate of about 1% among the affected users.
Further investigation revealed a deeper layer to the criminal enterprise. Agents were able to trace connections between Wilkins and an unidentified developer who reportedly created the malware. Signal chats seized from this individual tied them to Wilkins, operating under the handle Sibel.eth, discussing how to trick victims into approving transactions that emptied their wallets.
The financial impact was staggering. Estimates suggest that just the single title BlockBlasters alone stole more than $150,000 from between 261 and 478 victims. This included a highly distressing finding: up to $32,000 in donated cancer treatment funds were taken from a Twitch streamer in September 2025.
When law enforcement searched the residence of Wilkins a week before his arrest, they seized multiple devices and three cryptocurrency wallet seed phrases. His personal transaction history further showed he had sent or received $382,000 in cryptocurrency, solidifying the evidence of his involvement in this extensive scheme.
Wilkins now faces up to 10 years in prison if convicted. The case underscores the urgent need for cybersecurity awareness and accountability within the digital gaming and distribution industries, as authorities continue to pursue those who exploit the seemingly endless opportunities of the online world for criminal profit.