The X2442 HQ H0TMAIL Dump Exposed 2,277 Email Accounts
On 4 August 2026, HEROIC analysts identified a combolist titled "X2442 HQ H0TMAIL" uploaded to Telegram. The file contains 2,277 records pairing email addresses with plaintext passwords and the URLs of the accounts they unlock.
Why This Is Dangerous
The "HQ," or high quality, label in the file name suggests these credentials were checked and confirmed to work before the list was shared. Every password is stored in plaintext, so an attacker can start testing logins against Hotmail and other services immediately.
What Was Exposed
- Email addresses
- Plaintext passwords
- URLs identifying the account each credential pair belongs to
Why This Matters
Because these 2,277 accounts appear to have been verified as working logins, the risk of unauthorized access is immediate rather than theoretical. Anyone in this file who has not changed their Hotmail password recently should assume it has already been tested by someone else.
How Combolists Work
Combolists like "X2442 HQ H0TMAIL" are compiled and checked email-and-password lists, often run through automated login-checking tools before being sold or shared to prove the data still works. Buyers then use the verified list to access email accounts directly, or to try the same password on other services the victim may use.
Check If You Are Affected
Run a free scan against HEROIC's database of more than 400 billion leaked records to check whether your email address appears in this combolist or any other exposure, and change your password if it does.
Breach Breakdown
2,277 passwords exposed. Is yours one of them?
Enter your email to scan this breach plus 400B+ other leaked records. If you're compromised, we'll show you exactly where and what to change.
Free forever · No account required · Results in seconds