Comment l'arnaque opère.
my-ethwallet.com se présente comme une interface de wallet Ethereum légitime, en imitant le langage visuel et la structure de domaine d'un service de wallet Ethereum établi et largement reconnu. La substitution délibérée d'un trait d'union et l'abréviation de « ether » en « eth » dans le nom de domaine sont caractéristiques du typosquatting, une technique conçue pour intercepter les utilisateurs qui saisissent ou mémorisent mal une URL de confiance, ainsi que ceux qui sont dirigés vers le site par des liens de phishing ou des publicités frauduleuses.
Une fois sur le site, les visiteurs se voient généralement proposer une interface qui reproduit fidèlement un service de wallet authentique, les invitant à saisir une seed phrase, une clé privée ou un fichier keystore pour « accéder » à leur wallet. Dans les opérations de ce type, tout identifiant soumis est capté par l'opérateur. Le site ne fonctionne pas comme un véritable wallet, il s'agit d'une façade de collecte. Les utilisateurs qui s'authentifient n'obtiennent aucun accès réel à un wallet ; l'opérateur reçoit tout ce qui est nécessaire pour vider les adresses associées.
Le point de défaillance devient manifeste lorsque les victimes tentent d'accéder à leurs actifs et les découvrent transférés vers des adresses qu'elles ne contrôlent pas. À ce stade, le site a parfois déjà été mis hors ligne ou remplacé, et l'opérateur est injoignable. Les transferts de cryptomonnaies sont irréversibles : toute voie de récupération réaliste dépend donc du traçage du mouvement ultérieur des fonds sur la blockchain, et non d'un recours contre la plateforme frauduleuse elle-même.
Drapeaux rouges que nous avons documentés.
- 01Typosquatting domain targeting a recognised wallet brandThe domain my-ethwallet.com approximates the URL of a well-established Ethereum wallet service by abbreviating 'ether' to 'eth' and inserting a hyphen. This is a deliberate construction, not a coincidence, typosquatting domains require active registration and are purpose-built to intercept misdirected or deceived traffic.
- 02Credential-harvesting operation patternWallet impersonation platforms of this type derive their value entirely from capturing authentication credentials at point of entry. Any interface requesting a seed phrase, private key, or keystore file outside of locally-run, auditable open-source software should be treated as a harvesting operation until independently verified.
- 03CryptoScamDB blacklist inclusionThe domain appears on the CryptoScamDB community blacklist, a widely referenced registry of confirmed malicious cryptocurrency sites. Inclusion reflects corroborated reporting and is a recognised signal used by browser security extensions and wallet providers to warn users before credential submission occurs.
- 04No verifiable operator identity or regulatory standingLegitimate wallet services operating at scale maintain verifiable legal identities and, in many jurisdictions, regulatory registrations. This platform presents none of these. The absence of any traceable operator makes post-fraud recourse through conventional legal or financial channels structurally unavailable to victims.
- 05No auditable code or custody transparencyGenuine open-source wallet platforms publish verifiable source repositories and make custody arrangements explicit. A site mimicking this presentation without providing auditable code or independent security attestation offers users no means of confirming that submitted credentials are handled with any integrity.
Ce que vous pouvez faire maintenant.
Open a free 24-hour case assessment with CryptoLeek +
Tell us what happened. A senior analyst reads your file within 24 hours and replies with an honest yes/no/conditional on recovery. The assessment is free. If we cannot recover the funds we say so plainly, including which (free) regulator channel you should use instead. If we accept the case, we open a numbered case file and issue a written quote for a flat investigation retainer before any work begins, scoped to case complexity, the jurisdictions involved, and the on-chain trail.
Trace your funds on-chain with our analysts +
We trace stolen crypto across BTC, ETH, EVM L2s, Solana, Tron, and major stablecoins using the same toolchain as regulators and tier-1 exchange compliance teams. The output is a forensic report anchored to specific transaction hashes and block heights, the evidence that exchanges, payment processors, and counsel actually act on. Recovery starts here.
Recover with counsel where civil action makes sense +
Where the trace lands in a jurisdiction with cooperative banks and courts, we coordinate with bar-licensed counsel in our 40+ jurisdiction network for civil action and asset-freezing orders (Mareva-style). Counsel bill you directly; the CryptoLeek investigation retainer is independent of counsel fees. The outcome is funds released back to your nominated wallet or bank account.