My steam account got compromised, steam points got stolen and a game were gifted.
My steam account got compromised and I have no idea how.
I have 2FA through my mobile, I checked the logins and I didn't notice any suspicious activities,
There were only two login locations. My PC and my mobile device. I logged out of every device and changed my password and email just to be sure.

The reason I found out is because I've gotten an email that someone had accepted a gift "Don't starve together" I didn't recognize the user and directly reported him. I don't have any money in my steam wallet and no money was removed from my bank account (I don't save my bank account numbers anywhere but I checked just to be sure. I also don't know how the gift was made when I am not missing any money)

After that I got 131 email talking about "You've given a screenshot an award" / ''You've given a Community profile an award''

I've reported the users that were mentioned in the emails.
I have checked for malware with Malwarebytes I didn't get any alerts on that.

Can anyone tell me how this could have happened so I can prevent this in the future.
It spooks me that someone can have access to my account with multiple verification tools...
I don't know what to do,
< >
正在显示第 1 - 2 条,共 2 条留言
99% of them when this happens is becouse you use your steam login on other things then steam
and dont say it got hacked
引用自 Noodle
Can anyone tell me how this could have happened so I can prevent this in the future.
It spooks me that someone can have access to my account with multiple verification tools...
I don't know what to do,
In some form or fashion, you gave away your login details, most likely during a phishing process. Someone had you visit a link that made it seem like you were logging into the site with your Steam account, when really it wasn't Steam login page but one made to look like it. That's just possible route but the most effective today.

Consider performing the following to resecure your account as your post doesn't explain that you've done more than scan with MWB.

Steps to take now:
1. Scan for malware https://www.malwarebytes.com/
2. Deauthorize all other devices https://psteamproxy.yuanyoumao.com/twofactor/manage
3. Change passwords from a clean computer
4. Generate new backup codes for your Mobile App https://psteamproxy.yuanyoumao.com/twofactor/manage
5. Revoke the API key https://psteamcommunity.yuanyoumao.com/dev/apikey (there should be nothing in the APIKEY)
< >
正在显示第 1 - 2 条,共 2 条留言
每页显示数: 1530 50