I downloaded a cracked game on September 2 and later realized it likely contained an information stealer. That same day, my Discord account began sending scam messages to other people. I disconnected the computer from the internet, performed a factory reset, reinstalled Windows, and changed the passwords for all of my accounts and email addresses using new passwords that were not connected to the old computer. I also signed out unknown devices, enabled two-factor authentication through my phone, froze potentially risky online payments, and plan to contact my bank.
Later, on September 15, my Steam profile had been changed to a different name, image, and QR code. I changed my Steam password again, reset Steam Guard, signed out all devices, and ran several deep scans with Malwarebytes as well as another security tool. Since then, I have not seen further suspicious logins or account activity, and nothing appears to have been stolen.
Is there anything else I should do to make sure my accounts and computer are safe? The whole experience has made me anxious about using the PC again.
3 Answers
The most important account steps are to change passwords from a device you trust, use a different password for every account, enable two-factor authentication, and revoke existing sessions or trusted devices. Prioritize email, password managers, banking, gaming accounts, and any account that could be used to reset another password. Check recovery email addresses, phone numbers, forwarding rules, API keys, and app authorizations too. Keep monitoring your bank and email for unfamiliar activity.
The later Steam profile change suggests that the attacker may have retained an active session or obtained credentials before the reset. Signing out every device, changing the password, and resetting Steam Guard was the right response. If there have been no new login alerts since those actions and the computer was genuinely clean-installed, the risk is much lower. Keep 2FA enabled and do not reuse any password that was present on the old system.
A factory reset is not always the same as completely wiping the drive. Since you suspect an information stealer, the safest approach is a clean Windows installation from official installation media: delete the existing partitions during setup and install fresh. Afterward, fully update Windows and your drivers, then reinstall applications only from their official websites. Avoid cracked software entirely, since it is a common way for credential-stealing malware to spread.

I did reinstall Windows and the computer came back with no files or OneDrive data, but I’ll make sure the drive was actually wiped rather than just reset.