my account may got hajicked but i'm safe, however....
for context: i woke up on july 3, opened my steam account and i checked that i have a booster pack on my account, i said to myself. "hmm weird, i haven't had a booster pack for like 4 years" didn't think of it that much, i unpack it and i moved on. but i also checked my display badge and it wasn't the one that i always display...

later today, i checked my gmail and it said.
"New sign in to Steam
From your account
Location of sign in:
Al Khankah, Al Qalyubiyah, EG
Authorized by:
Steam Mobile Authenticator confirmation
If the details above look familiar, you can safely ignore this email."

and i got alerted so much because i live in Cairo governorate, not in Qalyubiyah.
rn i'm re-editing my password but i wanna know WHY they played around my account and got a booster pack like... they could have just took my account right away
Opprinnelig skrevet av Ettanin:
Opprinnelig skrevet av undead2020:
ty for you helps mates. but still i'm confused of why the hijacker messed around and bought booster cards and such. and also how did they enter by steam mobile authenticator?
they bypassed it by stealing your session token through malware or by you entering your credentials on a fraudulent site and the site forwarding the input to the steam servers to then keep a session token.
< >
Viser 16 av 6 kommentarer
Lilim 12 timer siden 
Opprinnelig skrevet av undead2020:
rn i'm re-editing my password

Deauthorize all other devices and change your password again.
If you believe your account is compromised, do the following steps in order to secure it. If you've already changed your password then you will need to do it again.

1. Scan for malware https://www.malwarebytes.com/
2. Deauthorize all other devices https://steamhost.cn/twofactor/manage
3. Change passwords once the device you are using is 100% secure
4. Generate new backup codes for your Mobile App https://steamhost.cn/twofactor/manage
5. Revoke the API key https://steamhost.cn/steamcommunity_com/dev/apikey (there should be nothing in the APIKEY)
ty for you helps mates. but still i'm confused of why the hijacker messed around and bought booster cards and such. and also how did they enter by steam mobile authenticator?
Forfatteren av denne tråden markerte dette innlegget som svar på det opprinnelige emnet.
Ettanin 11 timer siden 
Opprinnelig skrevet av undead2020:
ty for you helps mates. but still i'm confused of why the hijacker messed around and bought booster cards and such. and also how did they enter by steam mobile authenticator?
they bypassed it by stealing your session token through malware or by you entering your credentials on a fraudulent site and the site forwarding the input to the steam servers to then keep a session token.
Opprinnelig skrevet av J4MESOX4D:
If you believe your account is compromised, do the following steps in order to secure it. If you've already changed your password then you will need to do it again.

1. Scan for malware https://www.malwarebytes.com/
https://steamhost.cn/twofactor/manage

is there any other alternative? malwarebytes is blocked in my country
Lilim 10 timer siden 
Opprinnelig skrevet av undead2020:
is there any other alternative? malwarebytes is blocked in my country

You can use any antivirus program that can scan your computer for malware. Do you have an antivirus programm?
< >
Viser 16 av 6 kommentarer
Per side: 1530 50