42,000 sites used to trap users in brand impersonation scheme

A malicious for-profit group named 'Fangxiao' has created a massive network of over 42,000 web domains that impersonate well-known brands to redirect users to sites promoting adware apps, dating sites, or 'free' giveaways. The imposter domains are used as part of what appears to be a massive traffic generation scheme that creates ad revenue for Fangxiao's own sites or more visitors for 'customers' who purchase traffic from the group. To generate massive traffic for its customers and its own sites, Fangxiao registers approximately 300 new brand impersonation domains daily. Since the start of March 2022, the malicious operators have used at least 24,000 landing and survey domains to promote their fake prizes to victims.