BlockBlasters Booted from Steam After Malware Heist Drains $150K in Player Crypto

Steam has pulled the game BlockBlasters after investigators uncovered malicious code hidden in its files that targeted players’ cryptocurrency wallets and personal data. Security researchers at G-DATA found that the game bundled a batch file designed to quietly disable installed antivirus tools, harvest IP and location information, and capture login credentials. With protections switched off, the malware would then probe for installed crypto wallets and slowly siphon funds to avoid raising alarms.

Security community voices say the damage adds up. On X, on-chain investigator ZachXBT estimated that nearly $150,000 in crypto was stolen during the month the malware was active. Another research collective, VXUnderground, shared a list of usernames indicating that roughly 478 Steam accounts were affected. Separate coverage noted unconfirmed reports that the suspected threat actor may be an Argentine immigrant currently living in the U.S., though that detail has not been verified.

What stands out about this incident is the layered approach: disabling security software first, exfiltrating identifying data, then methodically draining wallets. That sequence allowed the attackers to both evade detection and maximize the impact on victims.

If you downloaded or launched BlockBlasters, consider these steps immediately:
– Disconnect the affected PC from the internet and run a full scan with a reputable, up-to-date antivirus or antimalware suite.
– Change passwords for Steam, email, and any other accounts used on the machine; enable two-factor authentication wherever possible.
– Check crypto wallets and exchanges linked to the device. Move remaining funds to new wallets with fresh seed phrases generated on a clean device.
– Review installed programs, startup entries, scheduled tasks, and browser extensions for anything unfamiliar; remove anything suspicious.
– Monitor bank and exchange accounts for unauthorized activity and set up alerts.
– Reinstall or repair security software if it was disabled, and check your operating system’s security settings and firewall.
– Consider a clean OS reinstall if you suspect persistent infection.

For gamers, this is a reminder to be cautious with new or little-known titles and to watch for unexpected prompts, odd background processes, or requests for elevated permissions. Keeping security tools active, avoiding storing wallet keys on gaming rigs, and using hardware wallets for significant holdings can dramatically reduce risk.

Steam’s swift removal of BlockBlasters helps limit further exposure, but those who interacted with the game should assume their data and funds may be at risk and take action now.