Alle diskussioner > Steam-fora > Help and Tips > Trådoplysninger
Noodle 27. nov. kl. 21:54
My steam account got compromised, steam points got stolen and a game were gifted.
My steam account got compromised and I have no idea how.
I have 2FA through my mobile, I checked the logins and I didn't notice any suspicious activities,
There were only two login locations. My PC and my mobile device. I logged out of every device and changed my password and email just to be sure.

The reason I found out is because I've gotten an email that someone had accepted a gift "Don't starve together" I didn't recognize the user and directly reported him. I don't have any money in my steam wallet and no money was removed from my bank account (I don't save my bank account numbers anywhere but I checked just to be sure. I also don't know how the gift was made when I am not missing any money)

After that I got 131 email talking about "You've given a screenshot an award" / ''You've given a Community profile an award''

I've reported the users that were mentioned in the emails.
I have checked for malware with Malwarebytes I didn't get any alerts on that.

Can anyone tell me how this could have happened so I can prevent this in the future.
It spooks me that someone can have access to my account with multiple verification tools...
I don't know what to do,
< >
Viser 1-3 af 3 kommentarer
99% of them when this happens is becouse you use your steam login on other things then steam
and dont say it got hacked
rawWwRrr 27. nov. kl. 22:08 
Oprindeligt skrevet af Noodle:
Can anyone tell me how this could have happened so I can prevent this in the future.
It spooks me that someone can have access to my account with multiple verification tools...
I don't know what to do,
In some form or fashion, you gave away your login details, most likely during a phishing process. Someone had you visit a link that made it seem like you were logging into the site with your Steam account, when really it wasn't Steam login page but one made to look like it. That's just possible route but the most effective today.

Consider performing the following to resecure your account as your post doesn't explain that you've done more than scan with MWB.

Steps to take now:
1. Scan for malware https://www.malwarebytes.com/
2. Deauthorize all other devices https://psteamproxy.yuanyoumao.com/twofactor/manage
3. Change passwords from a clean computer
4. Generate new backup codes for your Mobile App https://psteamproxy.yuanyoumao.com/twofactor/manage
5. Revoke the API key https://psteamcommunity.yuanyoumao.com/dev/apikey (there should be nothing in the APIKEY)
Noodle 28. nov. kl. 2:24 
Consider performing the following to resecure your account as your post doesn't explain that you've done more than scan with MWB.



Maybe I didn't explain it well but beside MWB I hade my email and password changed, logged out of all devices through my steam mobile app even though it was only logged into my computer and my mobile device.

(Below is the quoted message in what steps I had taken beside MWB)

"I have 2FA through my mobile, I checked the logins and I didn't notice any suspicious activities,
There were only two login locations. My PC and my mobile device. I logged out of every device and changed my password and email just to be sure."


I don't have all the information on how phishing works in detail but, if I click a link and they would have gotten my login information how do they get through 2FA?
I also don't login on browsers with my account profiles so my information wasn't on my browser.

(Steps I have taken after I've gotten one of my account compromised about 2-3 years ago)

I had also scanned my pc with Norton, Bitdefender and TotalAV beside MWB.

I am not trying to be difficult I just genuinely wanna educate myself on if there is any other possible way for them to compromise my account.
< >
Viser 1-3 af 3 kommentarer
Per side: 1530 50

Alle diskussioner > Steam-fora > Help and Tips > Trådoplysninger