FBI Tracks Down Steam Malware Financier with Cookie Trail
Federal investigators used a combination of Google cookies, phone records, and over 500 Uber Eats deliveries to identify Zyaire Dontaevious Zamarion Wilkins as the alleged financier and marketer of a Steam malware campaign.
The complaint alleges that the campaign infected approximately 8,000 devices, accessed about 80 cryptocurrency wallets, and stole at least $220,000.
The investigation began with a Bitcoin address found in messages seized from an unnamed co-conspirator. The address was linked to Wilkins through records obtained from Bitrefill, Google, Uber, Snapchat, T-Mobile, and other providers.
Further investigation revealed that the account associated with the Uber Eats gift cards made over 500 food-delivery orders between March 2024 and May 2026, spending over $9,000. Every order went to one of three locations: two addresses associated with the University of West Florida and Wilkins' North Lauderdale address.