Hello!

So there's this program available on the internet that's used "to generate CS:GO case keys". But it just tries to steal peoples Steam accounts.
A friend of mine was stupid enough to try it on my account. Luckily I got there in time and I managed to get rid of the software before it restarted Steam acting as a Steam Guard asking for restart.
The software basically blocks everything on PC - you can't close any other programs or extract any archives while it's opened. And you can't launch Task Manager. I got rid of it by restarting my PC and while it wasn't launched (it stays in Startup software folder) disabled it from launching. Then of course I deleted the software itself.

So, for anyone wondering "But how do you know it's not there anymore?"
First, I removed the folder the file that was launching every time you run your computer was in.
Second, I used CCleaner to completely delete it from the startup.
Third, I found out that there's norv.exe in my processes using Task Manager (you can launch it while the software hasn't started yet and when you have disabled it from starting). So I opened its location and, what a surprise, it was in AppData folder masked under Steam.exe. Removed it since the original Steam.exe is in Steam folder under Program Files.
Fourth, Always change your email and password after things like these. I changed mine twice. First time directly after restarting my PC and disabling that program from starting. Second time after I removed that norv.exe from my PC.
Fifth, never turn off Steam Guard and don't download software like this!

And yes - I made this so other people know what to look for if they find something like this. Because the software itself comes from a Youtube video which is getting passed to other people using Steam chat!

9 years ago*

Comment has been collapsed.

program to "to generate CS:GO case keys", you have to be ultra dumb to use that but like really really dumb(or a kid)

9 years ago
Permalink

Comment has been collapsed.

Yeah I know. Told him the same. Don't know what he was thinking. Luckily I managed to get back to my PC from toilet in time before he pressed the restart button in that software.

9 years ago
Permalink

Comment has been collapsed.

well yeah, maybe I said too much, sorry for your friend :/

9 years ago
Permalink

Comment has been collapsed.

... or really dumb kid ...
just like this one youtube

9 years ago
Permalink

Comment has been collapsed.

No! No this again.
Can't forgive someone misbehaving like that a piece of hardware

9 years ago
Permalink

Comment has been collapsed.

Some people are just desperate. Desperate people do stupid things.

9 years ago
Permalink

Comment has been collapsed.

Reinstall is only solution. You can't be 100% sure otherwise it's clean.

9 years ago
Permalink

Comment has been collapsed.

Well, I don't see any unusual programs running and I checked for files created today and removed all that seemed suspicious.

9 years ago
Permalink

Comment has been collapsed.

Well just make sure you run your antivirus software and have it do a complete scan. Just to be safe.

9 years ago
Permalink

Comment has been collapsed.

Yeah got Malwarebytes already scanning the PC.

9 years ago
Permalink

Comment has been collapsed.

Deleted

This comment was deleted 2 years ago.

9 years ago
Permalink

Comment has been collapsed.

I don't think it's using rootkit. Seems way too hard for the creator because I was still able to Ctrl+Alt+Del and restart my computer from there (and yes, it was blocking my access to start menu).

9 years ago
Permalink

Comment has been collapsed.

oky :D:D:D:D

9 years ago
Permalink

Comment has been collapsed.

Use linux.

9 years ago
Permalink

Comment has been collapsed.

+1 lol

9 years ago
Permalink

Comment has been collapsed.

Linux=fewer games available to be played=IM BORED!

9 years ago
Permalink

Comment has been collapsed.

True.
You can also use Steam Guard + Gmail with 2 step verification (yahoo and outlook.com have this too, but I don't use them).
A hacker will not be able to do things to your steam account unless he has your phone to enter in your gmail account.

9 years ago
Permalink

Comment has been collapsed.

Personally, I prefer Hotmail over Yahoo and Gmail. For some reason, I don't get most e-mails that are sent to my Gmail and Yahoo mailboxes :P.

9 years ago
Permalink

Comment has been collapsed.

it's not OS fault that you don't have enough Linux supported games + There's always Wine ;)

9 years ago
Permalink

Comment has been collapsed.

Linux = Install Wine = Play 90% of games that runs on windows (except dx10-11 games and games that has funky DRM) = it can even run older games that doesn't work on anything newer than 98\XP

9 years ago
Permalink

Comment has been collapsed.

Use Your Brain + Windows = Play 100% of games

9 years ago
Permalink

Comment has been collapsed.

You'll need a time machine AND the fountain of youth to accomplish that, mate.

And that's not even taking into account all those nasty console exclusives. I hope you're familair with C++ because porting stuff yourself isn't easy.

9 years ago
Permalink

Comment has been collapsed.

The kinds of people who are stupid enough to be infected by viruses aren't the kinds of people you should be recommending Linux to, let's be real.

9 years ago
Permalink

Comment has been collapsed.

That's also true, like recommending dragon souls to noob that can't handle even skyrim.

9 years ago
Permalink

Comment has been collapsed.

yea, but since antiviruses that run on Linux do detect Windows viruses, Linux still is good option. Virus on Windows can be not removed by antivirus running on that same OS cause antivirus itself can even get infected while from Linux this possibility is dealt with for 100% ;)

9 years ago
Permalink

Comment has been collapsed.

Long live Ubuntu Live CD! This saved me many times.

9 years ago
Permalink

Comment has been collapsed.

That's just common sense.

9 years ago
Permalink

Comment has been collapsed.

Deleted

This comment was deleted 1 year ago.

9 years ago
Permalink

Comment has been collapsed.

I have pretty good - seen once on internet. Every day you make a garbage bag in shape of human' body. Then you go to trash container and simply lay the bag near it. People will get curious and check it, then realise it's just all trash. After week of doing this you can finally hide real body in bag ( ͡° ͜ʖ ͡°)

9 years ago
Permalink

Comment has been collapsed.

You guys scared me a little :p

9 years ago
Permalink

Comment has been collapsed.

No reason to be scared, you're safe. By now...

9 years ago
Permalink

Comment has been collapsed.

only way to make sure its not there anymore is to kill your hd. kill it with fire and buy another disk

thats how i would do it anyways. fight fire with fire. that kind of stuff.

9 years ago
Permalink

Comment has been collapsed.

Why kill it with fire? It's more fun to throw it over an overpass and watch cars hit ;p. (JKing DON'T TRY IT)

9 years ago
Permalink

Comment has been collapsed.

yeah but i cant help myself. i like fire, and the way it ummm glows. so shiney.

9 years ago
Permalink

Comment has been collapsed.

oops, too late..... maybe next time put the 'JKing dont try' at the beginning :(
https://www.youtube.com/watch?feature=player_detailpage&v=kC2y3b86AOA#t=60

9 years ago
Permalink

Comment has been collapsed.

You should clean your PC's junk files, registry, and run a virus scan using cloud-based software like "Hitman Pro", or reliable scanners like "Malwarebytes"

9 years ago
Permalink

Comment has been collapsed.

Yeah already got Malwarebytes scanning it.

9 years ago
Permalink

Comment has been collapsed.

If he does stuff like that again defriend him

9 years ago
Permalink

Comment has been collapsed.

... in real life, not just in steam

9 years ago
Permalink

Comment has been collapsed.

Deleted

This comment was deleted 2 years ago.

9 years ago
Permalink

Comment has been collapsed.

Always a great comment from you proximus. +1

9 years ago
Permalink

Comment has been collapsed.

Unfortunately no. :D

9 years ago
Permalink

Comment has been collapsed.

You should send him in exchange link of ''you generated keys, get them here!" with some virus shit. If I were you, and if I were good at programming I would make virus that would be running always with system, and announcing "don't believe in free stuff!" :P

9 years ago
Permalink

Comment has been collapsed.

Actually I have made a small program that can always run in background and generate an empty .txt file that's growing in size very fast (around 1GB every 10 seconds). Masked it under Internet Explorer. :D

9 years ago
Permalink

Comment has been collapsed.

simple - format c:

9 years ago
Permalink

Comment has been collapsed.

Probably will happen if I see someone trying to access my Steam account. But I think it's in good hands at the moment since I'm using Gmail with 2 step verification. I'll just see what happens in the next few days.

9 years ago
Permalink

Comment has been collapsed.

but is it as bad as Uplay?

9 years ago
Permalink

Comment has been collapsed.

For me it's just funny how people try these things. I mean - every normal person won't open these links and download the software in the first place. Also forgot to mention that I'm using Process Explorer to see everything that's running on my computer so I see what's the software and where it's coming from.

9 years ago
Permalink

Comment has been collapsed.

They (scammers) wouldn't try stuff like this if someone didn't fall for it. Any time you encounter something that seems too stupid to work, just keep that in mind. There's nothing too stupid for someone not to fall for it.

9 years ago
Permalink

Comment has been collapsed.

Yeah, I guess so. I could understand how people can fall for trade scammers (guy who's been on Steam for, for example, 9 years seems legit enough to trade with) but these programs... I just don't know...

9 years ago
Permalink

Comment has been collapsed.

It can only succeed because people are being greedy and hoping to take advantage of someone else, but instead, someone takes advantage of them. Scams almost never involve taking advantage of people being helpful or generous. They rely on someone's desire to benefit overriding their common sense.

9 years ago
Permalink

Comment has been collapsed.

A friend of mine downloaded one of those key generators for porn sites.

I still can't believe he fell for it.

9 years ago
Permalink

Comment has been collapsed.

Sign in through Steam to add a comment.