GrogHeads Forum

IRL (In Real Life) => Tech Talk => Topic started by: Gusington on November 13, 2013, 11:41:58 AM

Title: Beware
Post by: Gusington on November 13, 2013, 11:41:58 AM
Just got a password change email from Steam...looks like someone is trying to hack my account. Unless this is occuring Steamwide. So be on guard.

Anyone have a Steam email address that I can contact about this? Everything I have from them is 'no reply.'
Title: Re: Beware
Post by: Martok on November 13, 2013, 01:51:06 PM
Yikes!  Thanks for the heads-up Gus, and good luck. 



In answer to your question, it appears you may need to first create a "Steam Support account" before you can contact them via email/chat. 

https://support.steampowered.com/newticket.php

Title: Re: Beware
Post by: Gusington on November 13, 2013, 02:09:12 PM
Thanks Martok...let me know if you see any weirdness in your account too since ours are linked through friends lists, etc. Since there is a Grogheads Steam community everyone should check, IMHO.
Title: Re: Beware
Post by: Martok on November 13, 2013, 02:33:37 PM
I had that thought as well, and is why I'm especially grateful for the warning. 

Title: Re: Beware
Post by: Staggerwing on November 13, 2013, 06:34:17 PM
Was the notification that someone tried to change your pw or that they actually did? How did you reset it if it was changed?
Title: Re: Beware
Post by: Bison on November 13, 2013, 07:53:10 PM
Did you log on to your account using your password?  I'd do that and then change your password and enable some of the additional security measures.   Frankly I'd be worried that it was a phishing email too.   Unless your account is locked out changing your password should eliminate any risk to a compromised account.  Also it could be someone used your account name and tried a bunch of passwords prompting the message. 
Title: Re: Beware
Post by: Staggerwing on November 13, 2013, 08:18:58 PM
I just set my profile ' can see' option to 'friends only' Still wondering about whether Gus' email said that the pw was actually changed by the bad guys or not.
Title: .
Post by: eyebiter on November 13, 2013, 08:29:15 PM
.
Title: Re: Beware
Post by: Staggerwing on November 13, 2013, 10:00:16 PM
Pretty certain I have Steamguard already. Maybe that was the email Gus got?
Title: Re: Beware
Post by: Silent Disapproval Robot on November 14, 2013, 05:07:24 AM
I got the same email 2-3 weeks ago.  I already had steam guard enabled.  I figured someone was trying to brute force my account do I changed my pw to something ridiculously long and random.
Title: Re: Beware
Post by: W8taminute on November 14, 2013, 07:15:43 AM
I logged in a few moments ago and noticed nothing out of the ordinary with my account.  I've also got SteamGuard active. 
Title: Re: Beware
Post by: Gusington on November 14, 2013, 08:51:30 AM
I'll have a chance to check it tonight. Looks like someone tried to brute their way in to my account...fingers crossed they did not succeed. Just checked my bank account and there is nothing weird there as of right now. It's for exactly this reason that I never have Steam remember my payment info anyway.
Title: Re: Beware
Post by: W8taminute on November 14, 2013, 09:23:51 AM
That's a good move Gus.  I never store my payment info either in Steam, XBOXLive, Gamersgate, etc. 
Title: Re: Beware
Post by: Gusington on November 14, 2013, 11:38:31 AM
Yeah I try to do that everywhere I visit online. Sometimes that may not be enough either...
Title: Re: Beware
Post by: Shelldrake on November 23, 2013, 12:51:26 PM
Thanks for the warning - checked my account, Steamguard on, all seems ok.
Title: Re: Beware
Post by: Con on November 23, 2013, 09:14:02 PM
Good advice on storage of payment information.  I deleted mine today as well

Thanks
Con
Title: .
Post by: eyebiter on November 24, 2013, 10:02:21 AM
.
Title: Re: Beware
Post by: Shelldrake on November 24, 2013, 10:31:51 AM
Quote from: W8taminute on November 14, 2013, 09:23:51 AM
That's a good move Gus.  I never store my payment info either in Steam, XBOXLive, Gamersgate, etc.

I don't store my payment info on line either. I don't even do on-line banking, just in case I am hacked without knowing it.
Title: Re: Beware
Post by: Gusington on November 24, 2013, 11:38:06 AM
Nothing ever came of this so...the safeguards seem pretty decent.
Title: Re: Beware
Post by: W8taminute on November 25, 2013, 02:37:39 PM
Quote from: eyebiter on November 24, 2013, 10:02:21 AM
Gamestop and other retailers offer prepaid steam cards, just enter the code and it adds funds to your steam account.

I think Best Buy does as well.  Great idea btw.  Next time I'm in either of those shops I think I'll pickup a 50 dollar card.
Title: Re: Beware
Post by: BanzaiCat on November 25, 2013, 09:49:30 PM
I've been buying Steam cards for myself and my son from Gamestop for a while now. It's the only way to go for me. Once the funds are low, I just make myself wait until I can get more into my 'steam wallet.'
Title: Re: Beware
Post by: Mr. Bigglesworth on December 04, 2013, 02:53:14 PM
In the last week I upgraded my old laptop, which had started to slow to a crawl, to Win 8.1. I did a clean install formatting the drive from the DVD from Amazon. Within 2-3 days I had a rootkit + virus signatures on it. WTF? It was still pretty much a virgin system. I had installed firefox, chrome, kindle reader, Raw Therapee, AV program. I had only visited about a dozen sites.


Recommend you make sure your AV is up to date.
Title: .
Post by: eyebiter on December 04, 2013, 05:19:19 PM
.
Title: Re: Beware
Post by: Mr. Bigglesworth on December 04, 2013, 06:00:14 PM
Quote from: eyebiter on December 04, 2013, 05:19:19 PM
Quote from: Mr. Bigglesworth on December 04, 2013, 02:53:14 PM
In the last week I upgraded my old laptop, which had started to slow to a crawl, to Win 8.1. I did a clean install formatting the drive from the DVD from Amazon. Within 2-3 days I had a rootkit + virus signatures on it. WTF? It was still pretty much a virgin system. I had installed firefox, chrome, kindle reader, Raw Therapee, AV program. I had only visited about a dozen sites.


Recommend you make sure your AV is up to date.

If your using firefox consider adding the NoScript browser extension, helps avoid many of those drive by downloads.

That sounds exactly right. The signatures were in the downloads folder, filenames I did not recognize.
Title: Re: Beware
Post by: skeptical.platypus on December 04, 2013, 10:41:14 PM
Quote from: Mr. Bigglesworth on December 04, 2013, 02:53:14 PM
In the last week I upgraded my old laptop, which had started to slow to a crawl, to Win 8.1. I did a clean install formatting the drive from the DVD from Amazon. Within 2-3 days I had a rootkit + virus signatures on it. WTF? It was still pretty much a virgin system. I had installed firefox, chrome, kindle reader, Raw Therapee, AV program. I had only visited about a dozen sites.


Recommend you make sure your AV is up to date.

Do you mind letting us know what AV program you are using that didn't catch the rootkit+virus? Always good to know which ones are keeping up with viral joneses.
Title: Re: Beware
Post by: Mr. Bigglesworth on December 05, 2013, 12:58:20 AM
The microsoft freeware is a fail.
Webroot works.
Title: Re: Beware
Post by: skeptical.platypus on December 05, 2013, 03:23:57 AM
What was the rootkit + virus that Windows Defender failed to catch? I imagine a fair number of us may be already be infected. I certainly may be. I'm on win8.1 behind a router, windows firewall, and windows defender and nothing else.

It'll also be interesting see how long it takes msft to respond to this latest threat.
Title: Re: Beware
Post by: Mr. Bigglesworth on December 05, 2013, 10:21:17 AM
I didn't memorize the names, just clicked clean.
Title: Re: Beware
Post by: skeptical.platypus on December 05, 2013, 07:27:06 PM
I'll give webroot a whirl and see if it sniffs anything out.

I think I understand that you went looking for a problem and found the rootkit with webroot. Or was the intrusion insidious enough that you didn't experience any symptoms and found it with webroot because of general windefender fail?
Title: Re: Beware
Post by: skeptical.platypus on December 06, 2013, 02:11:49 PM
Well, Webroot didn't find anything onboard (thankfully), but I can see it'll add value. Warned me about malicious code on a site pop up I visit fairly frequently. I'm assuming my router has saved me previously from whatever evils lurk there, lol.
Title: Re: Beware
Post by: Shelldrake on December 14, 2013, 06:53:35 PM
Because of all the bad press that MS antivirus is getting I switched to Avast but kept Immunet as an extra layer of cloud-based security. So far so good.
Title: Re: Beware
Post by: Mr. Bigglesworth on December 14, 2013, 10:03:02 PM
Quote from: Shelldrake on December 14, 2013, 06:53:35 PM
So far so good.

The Donald still doesn't know what he doesn't know. Actually, he doesn't know that either.

Does the cloud solution let you scan your system from the cloud? That seems to be the way to go.