my account may got hajicked but i'm safe, however....
for context: i woke up on july 3, opened my steam account and i checked that i have a booster pack on my account, i said to myself. "hmm weird, i haven't had a booster pack for like 4 years" didn't think of it that much, i unpack it and i moved on. but i also checked my display badge and it wasn't the one that i always display...

later today, i checked my gmail and it said.
"New sign in to Steam
From your account
Location of sign in:
Al Khankah, Al Qalyubiyah, EG
Authorized by:
Steam Mobile Authenticator confirmation
If the details above look familiar, you can safely ignore this email."

and i got alerted so much because i live in Cairo governorate, not in Qalyubiyah.
rn i'm re-editing my password but i wanna know WHY they played around my account and got a booster pack like... they could have just took my account right away
Alkuperäinen julkaisija: Ettanin:
undead2020 lähetti viestin:
ty for you helps mates. but still i'm confused of why the hijacker messed around and bought booster cards and such. and also how did they enter by steam mobile authenticator?
they bypassed it by stealing your session token through malware or by you entering your credentials on a fraudulent site and the site forwarding the input to the steam servers to then keep a session token.
< >
Näytetään 1-6 / 6 kommentista
undead2020 lähetti viestin:
rn i'm re-editing my password

Deauthorize all other devices and change your password again.
If you believe your account is compromised, do the following steps in order to secure it. If you've already changed your password then you will need to do it again.

1. Scan for malware https://www.malwarebytes.com/
2. Deauthorize all other devices https://steamhost.cn/twofactor/manage
3. Change passwords once the device you are using is 100% secure
4. Generate new backup codes for your Mobile App https://steamhost.cn/twofactor/manage
5. Revoke the API key https://steamhost.cn/steamcommunity_com/dev/apikey (there should be nothing in the APIKEY)
ty for you helps mates. but still i'm confused of why the hijacker messed around and bought booster cards and such. and also how did they enter by steam mobile authenticator?
Tämän ketjun aloittaja on ilmaissut julkaisun vastaavaan alkuperäiseen aiheeseen.
undead2020 lähetti viestin:
ty for you helps mates. but still i'm confused of why the hijacker messed around and bought booster cards and such. and also how did they enter by steam mobile authenticator?
they bypassed it by stealing your session token through malware or by you entering your credentials on a fraudulent site and the site forwarding the input to the steam servers to then keep a session token.
J4MESOX4D lähetti viestin:
If you believe your account is compromised, do the following steps in order to secure it. If you've already changed your password then you will need to do it again.

1. Scan for malware https://www.malwarebytes.com/
https://steamhost.cn/twofactor/manage

is there any other alternative? malwarebytes is blocked in my country
undead2020 lähetti viestin:
is there any other alternative? malwarebytes is blocked in my country

You can use any antivirus program that can scan your computer for malware. Do you have an antivirus programm?
< >
Näytetään 1-6 / 6 kommentista
Sivua kohden: 1530 50