Federal authorities allege malware hidden in free Steam games including BlockBlasters, Lunara, Dashverse, Lampy, and PirateFi infected about 8,000 PCs and drained crypto wallets.

Image: techspot.com
A Steam discovery problem has become a federal criminal case
The FBI has arrested 21-year-old Florida resident Zyaire Dontaevious Zamarion Wilkins in a case prosecutors say involved malware hidden inside free PC games that were distributed through Steam and promoted across social platforms. According to TechCrunch, Rock Paper Shotgun, PCMag, and The Verge, federal authorities allege the scheme infected about 8,000 devices and helped steal at least $220,000 in cryptocurrency from roughly 80 wallets.
That number is the sharpest confirmed development because it changes the frame from a scary one-off Steam scare to an alleged coordinated operation. The games named across reports include BlockBlasters, Lunara, Dashverse, Lampy, PirateFi, Chemia, Tokenova, and DashFPS, with some outlets grouping Dashverse and DashFPS together. Rock Paper Shotgun reports that PirateFi, Dashverse, Lampy, Lunara, and BlockBlasters have now been removed from Steam. TechCrunch says Valve has removed several games from Steam over the last year after they were found to contain malware, including PirateFi.
Wilkins has been accused, not convicted. TechCrunch reports that his lawyer did not respond to a request for comment, while Rock Paper Shotgun says there had been no comment from Wilkins or any lawyers representing him at the time of writing. The FBI complaint, as described by the outlets, alleges Wilkins worked with unnamed co-conspirators. That distinction matters for readers searching for Steam malware games today: the case is about alleged criminal conduct tied to specific removed titles, but it also exposes a broader trust gap around obscure free PC games that appear on legitimate storefronts.
The games named in the alleged Steam malware operation
For players, the most practical question is simple: which titles are named? The reports do not present every name in identical form, but the overlap is clear. Rock Paper Shotgun and TechCrunch name BlockBlasters, Dashverse, Lampy, Lunara, and PirateFi as malware-laden games tied to the case. The Verge, citing the FBI’s victim information page and the complaint, also lists Chemia, Tokenova, and Dashverse/DashFPS. PCMag says eight games were used to infect computers belonging to about 8,000 Steam users and specifically mentions PirateFi, BlockBlasters, Dashverse, Lunara, and Lampy.
BlockBlasters is the title that had already broken into wider public view before this arrest. Rock Paper Shotgun links it to last September’s report about streamer RastalandTV, who realized he had lost $32,000 while playing the game during fundraising for his cancer treatment. The Verge also reports that BlockBlasters was tied to more than $150,000 taken from victims, including that streamer case. Those earlier reports help explain why this FBI Steam game arrest has landed with unusual force among PC players: the alleged attack did not rely on a shady executable passed around in a forum thread. It was attached to games that looked enough like indie releases to be installed and played.
TechCrunch reports that the games were designed to look legitimate, to the point that players could install and play them, while still containing malware. That detail is especially uncomfortable for anyone who loves browsing the lower shelves of Steam, where rough edges are common and part of the charm. Small games can have minimal art, few reviews, odd UI, and tiny developer footprints for perfectly innocent reasons. The alleged scheme exploited that same ambiguity.
What investigators allege happened after installation
According to TechCrunch’s account of the criminal complaint, prosecutors accuse Wilkins and unnamed co-conspirators of uploading fake video games containing malware to Steam. Once victims downloaded and installed the games, the malware was allegedly designed to infect their computers, steal passwords and other data, and drain cryptocurrency wallets. PCMag reports that the malware helped the group steal or hijack logins on victim computers, which authorities say were then used to access about 80 crypto wallets.
The alleged marketing route is also important. Rock Paper Shotgun reports that the FBI says the games were promoted on Discord, LinkedIn, and Telegram. The Verge adds X/Twitter to the list of social and messaging platforms where the complaint says the conspirators encouraged downloads. In other words, the alleged funnel was not simply “upload to Steam and wait.” It combined the credibility of a major PC storefront with off-storefront outreach, where indie developers often build an audience, offer playtest keys, ask for feedback, and find their first hundred players.
There is a small conflict in the reporting around timing. PCMag says the complaint notes the alleged conspiracy ran from May 2024 to February 2025. The Verge reports the period as around May 2024 to February 2026. TechCrunch describes the activity as occurring over the past two years and separately notes that the FBI announced in March that it was investigating a hacker suspected of using malware-embedded Steam games. Given the discrepancy, the safest reading is that authorities describe activity beginning in 2024, with the public investigation and arrest developing later. The exact end date should be treated as a reported detail that differs by outlet unless readers are looking directly at the court filing.
How the FBI says it traced the alleged scheme
The complaint, as summarized by multiple outlets, describes a trail that looks less like movie hacking and more like patient paperwork. TechCrunch reports that the FBI identified another person involved in the alleged crimes and interviewed them. That unnamed person allegedly said they worked with others to raise money to launch and market the malicious games in return for a share of stolen cryptocurrency.
From there, investigators allegedly followed crypto activity into gift card purchases. Rock Paper Shotgun reports that the FBI identified a crypto account containing stolen funds that had been used to buy Uber gift cards. TechCrunch says the account was used to buy several gift cards, including Uber Eats. PCMag adds that records from Bitrefill, a service that lets users buy digital gift cards with cryptocurrency, uncovered a Gmail address associated with other email addresses, including a University of West Florida address registered to Wilkins.
According to Rock Paper Shotgun and TechCrunch, after subpoenaing Uber, federal agents linked the gift cards to an account that made deliveries to Wilkins, who allegedly used the online handle “Sibel.eth.” PCMag reports that federal agents executed a search warrant at his home on July 8 and found an Apple MacBook and an Apple account linked to the hacking activities. Rock Paper Shotgun reports that agents confiscated his laptop, phone, and logins for digital wallets. These are allegations and investigative claims from the complaint, but they explain why the arrest is being discussed as a cryptocurrency theft case as much as a Steam platform safety case.
The storefront tension: small games thrive on trust, and trust is easy to counterfeit
Steam is the biggest PC games marketplace, and its openness is a big reason players can find strange, tiny, brilliant work that would never survive a traditional publishing gate. That same openness creates a hard moderation problem. TechCrunch reports that Valve has removed several games over the last year after they were found to contain malware. The Verge notes that the complaint does not specifically name Steam, but says it likely refers to Valve’s platform because the FBI victim information page is titled around a Steam malware investigation and includes the listed games. The lawsuit was also filed in Washington, where Valve is based. The Verge reports Valve did not immediately respond to a request for comment.
For indie players, the uncomfortable lesson is not to avoid small games. Some of the best platformers, puzzle boxes, and mechanical experiments on PC come from developers with no famous publisher, no trailer budget, and a Steam page that looks assembled at 2 a.m. The risk is that the usual discovery signals can be faked or borrowed. A free price can look generous. A Discord invite can look community-minded. A LinkedIn post can look professional. A playable build can lower suspicion because the game “works.” TechCrunch’s report that the alleged malware games could be installed and played is exactly the part that should recalibrate expectations.
The alleged Steam malware games also hit a weak spot in PC culture: curiosity. Platformer fans and indie hunters are trained to try odd things early, before reviews arrive and before a game’s reputation forms. That curiosity is worth protecting. The answer is not panic, but better habits around unknown downloads, especially when a title is free, newly listed, heavily pushed through direct messages or off-platform communities, and connected to accounts with little visible history.
Safety checks before installing obscure free PC games
If you downloaded any of the named titles, start from the assumption that you should secure accounts before you keep playing anything else on that machine. The FBI previously asked people who downloaded the malicious games named in the investigation to come forward and provide evidence, according to TechCrunch and The Verge. Readers affected by BlockBlasters malware, Lunara Steam malware, DashVerse malware, PirateFi, Lampy, Chemia, Tokenova, or DashFPS should look for the FBI’s Steam malware victim information page rather than relying on social media advice.
For future installs, slow down at the point where discovery turns into execution. Check whether the developer has a real history beyond the one free game you are about to install. Read the Steam discussion board and recent reviews, but do not treat a lack of complaints as proof of safety for a brand-new title. Be more cautious when a download is being pushed through Discord, Telegram, LinkedIn, or X/Twitter by people you do not know, since authorities allege those channels were used to market the malware-embedded games in this case. If you use crypto wallets on the same PC where you test obscure games, consider that a higher-risk setup because prosecutors allege the malware was used to steal passwords, private information, and wallet access.
Basic hygiene helps. Keep Steam Guard, email two-factor authentication, password managers, Windows security tools, and browser protections active. Do not ignore antivirus warnings because a game looks charming or because a community post says the warning is a false positive. Avoid installing unknown free games on the same Windows profile where you manage financial accounts, creator payouts, or crypto wallets. If a small game looks interesting but has almost no footprint, waiting a few days for community reports is a reasonable tradeoff. The joy of indie discovery comes from finding craft in unexpected places. It should not require handing an unknown executable the keys to your whole PC.
