HEROIC Analysts Found the Hotmail Fresh B4_Jx Dump With 106 Logins
HEROIC analysts identified a small combolist titled "Hotmail Fresh B4_Jx," uploaded to a Telegram channel on March 31, 2026. The file contains 106 records of email addresses, plaintext passwords, and the login URLs tied to each account.
Why This Is Dangerous
A small record count does not mean small risk to the people on the list. Every entry here pairs a working email address with a plaintext password and a login URL, which means whoever has this file can sign into those 106 accounts immediately, with no extra effort required.
What Was Exposed
- Email addresses
- Plaintext passwords
- Account login URLs
Why This Matters
Smaller combolists like this one are often sold or shared cheaply, which makes them attractive for quick account takeover attempts. If your email and password ever ended up in a file like this, and you reused that password elsewhere, the risk extends well beyond the original account.
How Combolists Work
A combolist is a plain text file pairing emails or usernames with passwords, usually assembled from older leaks or malware infections and then shared on platforms like Telegram. Even short lists like this one are typically curated from a specific source, such as a particular email provider, making the accounts inside easier for an attacker to target.
Check If You Are Affected
HEROIC's breach database contains more than 400 billion records gathered from combolists, stealer logs, and confirmed breaches. Run a free scan to check if your email appears in the Hotmail Fresh B4_Jx dump or elsewhere in HEROIC's records, and see how to secure any exposed account.
Breach Breakdown
106 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds