Install Steam
login
|
language
简体中文 (Simplified Chinese)
繁體中文 (Traditional Chinese)
日本語 (Japanese)
한국어 (Korean)
ไทย (Thai)
Български (Bulgarian)
Čeština (Czech)
Dansk (Danish)
Deutsch (German)
Español - España (Spanish - Spain)
Español - Latinoamérica (Spanish - Latin America)
Ελληνικά (Greek)
Français (French)
Italiano (Italian)
Bahasa Indonesia (Indonesian)
Magyar (Hungarian)
Nederlands (Dutch)
Norsk (Norwegian)
Polski (Polish)
Português (Portuguese - Portugal)
Português - Brasil (Portuguese - Brazil)
Română (Romanian)
Русский (Russian)
Suomi (Finnish)
Svenska (Swedish)
Türkçe (Turkish)
Tiếng Việt (Vietnamese)
Українська (Ukrainian)
Report a translation problem
You have been hijacked. There's a bot in your account, that will forward all valuable trades to an impersonator account.
Deauthorise all other devices
Revoke your API key
Order new backup codes
To explain a bit further: This is a well-known scheme, that has been going on for about a year. You entered your Steam login into an untrustworthy site or a phishing site mimicking a legitimate one. The profile edit is to make you set up a huge, one-sided trade. The thieves only get one real shot per person, and they want to make the most of it.
If you set up a trade, while your account is still compromised, it will be canceled, while there is a different set up to an account, that takes the name and avatar of your intended trade partner. This will then show up on your authenticator (or in theory email; never heard of mail cases), and you will confirm it. And then your stuff is gone.
In the future do not do Steam logins directly on any homepages, not even when they appear to be Steam profiles or trades. Instead bookmark the main page of Steam an log in there. Legitimate sites will carry over the login and not ask for your name and password again.
Go there and deauthorize all other devices.
You can also check for suspicious logins here:
https://help.steampowered.com/en/accountdata/SteamLoginHistory
To revoke your API key use this link:
https://steamcommunity.com/dev/apikey
Logins can happen from different places, depending on where your internet provider decides to lead your connection, but they should be in a reasonably close radius from you. Everything further away than 100-150 kilometers should raise suspicions. International connections especially.
Thx alot
-Nick
I know im dumb
https://steamcommunity.com/groups/tradingcards/discussions/2/3132793555962790039/#c3132793555962930323
Is explained, as well as many other things, here :
https://support.steampowered.com/kb_article.php?ref=3415-WAFH-6433
Hey yall the same ♥♥♥♥ just happened to me I deactivated, made no trades, changed my email password, unlinked my card, deactivated all user logins, changed my steam password, and I even went as far as went on my browser to remove all my cookies and malwarebyte swept everything. I think some guys got my login from me going on a csgo website and they did the usual and blocked my friends and all that and I managed to get around it stated previously. I checked the logins 2 were from Moscow and 1 from the Virgin Islands and they were on there pretty long it said they logged in at 1pm and I didnt get a message from them until 7pm. From what i've heard previously is that these people can get in because in some parts of Russia they dont need mobile authenticator and they cant do anything other than change your pfp and name and maybe something to do with trades thankfully everything of value I had was on trade hold. And Finally im wondering if they have access to my card since it was linked and is there anything else I can do? THX
You are not banned. Secure your account!
Did you even read the thread you have "necroed"?
Here if have trouble reading follow these 5 steps, don't skip any.
1. Scan for malware https://www.malwarebytes.com/
2. Deauthorize all other devices https://store.steampowered.com/twofactor/manage
3. Change passwords from a clean computer.
4. Generate new backup codes.
https://store.steampowered.com/twofactor/manage
5. Revoke all API keys, there should be none.
https://steamcommunity.com/dev/apikey
Avoid typing your login info via 3rd party sites, also don't share login info, or any private info with anyone that claim to be admin, or whatever.