99,457 Accounts Leaked in UHQ Mix Part 2 Telegram Stealer Log
99,457 records surfaced in May 2023 inside a file called "UHQ Mix Part 2," a stealer log uploaded to Telegram by an anonymous user. Each record pairs an email address with a plaintext password and the URL of the account it unlocks, all pulled directly from malware-infected computers.
Why This Is Dangerous
Unlike a breach of a single company's servers, a stealer log like this one is a grab bag of logins collected from thousands of different devices and services at once. The malware behind it doesn't care which site the password belongs to; it just copies whatever the victim's browser has saved. That makes "UHQ Mix Part 2" a cross-section of everyday accounts, email, shopping, streaming, and more, all sitting in plaintext and ready to use.
What Was Exposed
Across the 99,457 records in this file, the following data was found:
- Email addresses
- Plaintext passwords
- URLs identifying the specific site each login belongs to
Why This Matters
With almost 100,000 working email and password pairs in one file, attackers have everything they need to automate credential stuffing attacks, feeding these combinations into scripts that test them against banking, email, and retail sites in bulk. Because so many people reuse the same password everywhere, one exposed login can cascade into account takeover, identity theft, and financial fraud on accounts that were never directly touched by the original infection.
How a Mixed Stealer Log Like This Gets Built
Files labeled "mix" are typically compiled by combining the output of many separate malware infections into a single, larger dump. Info-stealing malware infects a device through sources like cracked software or malicious downloads, then harvests saved browser passwords and login activity before sending it back to the attacker. Operators then merge multiple infections together into one combined file, like this "Part 2" release, and distribute it through Telegram channels for other criminals to buy or trade.
Check If You Are Affected
With a file this size, the odds that your own email address is included are real. HEROIC's free breach scanner checks your email against a database of more than 400 billion leaked records, including stealer logs like "UHQ Mix Part 2," so you can find out in seconds whether your credentials were exposed. Run a free scan now and reset any password that comes back compromised.
Breach Breakdown
99,457 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds