Suspected Crypto Scammer Arrested for Hiding Malware in Steam Games

A 21-year-old Florida man has been arrested for allegedly publishing malware-infected games on Steam that siphoned sensitive data from victims and drained their cryptocurrency wallets, according to a TechCrunch report published July 17, 2026.

Zyaire Dontaevious Zamarion Wilkins, 21, of North Lauderdale, was arrested July 14 and charged with conspiracy to obtain information by computer for private financial gain, a federal offense that carries a maximum penalty of 10 years in prison, according to a Local 10 News investigation. Federal investigators allege Wilkins financed and procured info-stealing malware, then published it hidden inside at least eight video games on Steam, including titles such as BlockBlasters, Chemia, Dashverse, Lampy, Lunara, PirateFi, and Tokenova. The operation ran from May 2024 through February 2026 and infected roughly 8,000 devices, primarily targeting users with significant cryptocurrency holdings.

Once installed, the infected games appeared fully functional, but the embedded malware quietly harvested browser data, passwords, cookies, and cryptocurrency wallet credentials from each device. Wilkins and his associates promoted the titles across Discord, Telegram, X, and LinkedIn using bot accounts that specifically targeted crypto holders with recommendations framed as free trials or engaging downloads. The scheme extracted enough sensitive data to compromise approximately 80 cryptocurrency wallets, resulting in theft of at least $220,000.

Federal agents traced the stolen cryptocurrency through blockchain records to more than 150 gift card purchases, predominantly for food delivery services. When investigators contacted Uber Eats, delivery addresses from those orders matched Wilkins’ home and college locations in the North Lauderdale area, providing a critical real-world link that helped identify and locate the suspect. The games were subsequently removed from Steam by Valve after security concerns were raised, and the FBI’s Seattle Division is leading the ongoing investigation.

The case illustrates how threat actors exploit legitimate digital distribution platforms to weaponize functional software, and how everyday consumer data, such as food delivery records, can intersect with cryptocurrency tracing techniques to close investigations that might otherwise remain unsolved. While Steam has strengthened its review processes in recent years, the incident underscores how quickly malicious actors adapt their tactics. Gamers and crypto users are advised to exercise caution with downloads, even from established platforms, and to maintain security practices such as hardware wallets and regular device scans. Anyone who believes they may be a victim can report to the FBI’s Internet Crime Complaint Center.

Federal authorities are continuing to identify additional victims for potential restitution. The arrest adds momentum to broader industry conversations about platform accountability and faster collaboration between tech companies and law enforcement in responding to malware distribution.

Latest Posts

[democracy id="16"] [wp-shopify type="products" limit="5"]