Got phished - anything else I need to do?
Hey, so I stupidly got myself hacked earlier today by clicking on a phishing link. I was being careful, but apparently not careful enough. I got a chat from a fake Valve employee about fraud prevention due to suspicious activity, and honestly hats off it was really well done, they said they restricted my account and my entire friends list was blocked and my profile reset, so I went along with it while being cautious. Eventually they claimed I needed to move all my items at which point I realized it was part of the long game, so I blocked and reported the user.

But obviously I did get hacked into since they added a friend on my behalf and did activity on my account. So I have changed my Steam password, then I changed my email password to be safe, and I am currently running a virus scan across my whole PC. Is there any other actions I could/should take to be safer?
< >
Showing 1-4 of 4 comments
Secure your account

1. Scan for malware https://www.malwarebytes.com/
2. Deauthorize all other devices https://store.steampowered.com/twofactor/manage
3. Change passwords from a clean computer
4. Generate new backup codes for your Mobile App https://store.steampowered.com/twofactor/manage
5. Revoke the API key https://gtm.steamproxy.vip/dev/apikey (there should be nothing in the APIKEY)
I did all those steps. While checking the devices I can see the login from Russia a few hours ago, and it's listed in past devices which cannot gain access unless they use the password and mobile confirmation. Since I changed my password, it should be all good now. Thanks!
Last edited by EvoWarrior5; 25 Sep @ 7:09am
Once done all steps there nothing else left to do. Just note if you use same password for anything else, like email, other account for Facebook, Microsoft whatever then should change password for those too if used same password.
Originally posted by Dr.Shadowds 🐉:
Once done all steps there nothing else left to do. Just note if you use same password for anything else, like email, other account for Facebook, Microsoft whatever then should change password for those too if used same password.

Never use the same password on every site. This is a a common mistake people use. It is best to use random passwords for every account you own. Most times lazy people just make same password on everything, but that is very bad.

If you want even better password memorization, consider buying a password manager book. It is a physical book. One other thing, never ever store your passwords on your pc. Easy to find them out as notepad or any program leaves a backup copy of any documents you save. People like me know how to even look for them and load it up, and im not even a tech savy person.
Last edited by RPG Gamer Man; 25 Sep @ 10:43am
< >
Showing 1-4 of 4 comments
Per page: 1530 50