Crypto scams often combine urgency, impersonation and irreversible payment. Stop the conversation, find the service through an independent official channel, never share a recovery phrase and reject guaranteed-return claims.
Legitimate support never needs your recovery phrase.
Verify a request independently.
Domain, identity, network, address, amount and permissions.
Common scenarios
Fake support offers to validate a wallet. A false opportunity promises returns or rewards. Phishing copies a website and requests a connection or signature. Recovery scammers target victims again.
- Fake support
- Guaranteed investment
- Invented airdrop
- Copied site or app
- Recovery scam
Verify before acting
Do not follow the received link. Open a bookmark or type the official domain. Check identity, destination, network and the exact powers granted by a signature. Reject unlimited or unclear approvals.
- Create a deliberate pause
- Compare the full domain
- Check official announcements
- Limit amount and permissions
If a secret was exposed
Stop contact and sign nothing else. From a clean device, change compromised access. If the phrase was revealed, create a new wallet and move remaining assets. Review and revoke affected approvals.
Preserve evidence and report
Save URLs, transaction identifiers, times, profiles and screenshots without exposing secrets. Contact the provider and your competent authority. Reject anyone guaranteeing recovery.
Check an unexpected request
A private message with an official logo proves neither the sender’s identity nor an urgent problem. Find the service using its known address and contact support through that channel instead of following the link supplied by the sender.
- Never disclose a recovery phrase, private key or verification code.
- Keep the URL, message and time if you need to report the attempt.
Practical case: decision and limits
A message promises a refund but first requests a signature or an “unlocking” payment. Stop and reach the service through a previously verified address. Preserve the message, domain and signing request without publishing secrets. Brand impersonation, logos and testimonials prove nothing. A supposed fund recovery service may be a second scam.
A concrete verification
Find the request inside your account opened from a verified bookmark. Logos do not establish origin.
Signal, risk and response
| Signal | Risk | Safe response |
|---|---|---|
| Urgency or secrecy | Prevent verification | Pause and contact the official channel |
| Recovery phrase request | Complete takeover | Share nothing and leave |
| Guaranteed return | False opportunity | Reject and verify the entity |
| Unlimited approval | Future token spending | Reject or limit precisely |
Frequently asked questions
Can support ask for a screenshot?
Redact data and never send a phrase, key, backup QR or 2FA code.
Is disconnecting the wallet enough?
No. On-chain approvals may remain active until revoked.
Can a fraudulent transaction be reversed?
Usually not after confirmation. Notify providers and authorities and avoid recovery scammers.
Verifiable sources
FTC — Cryptocurrency scams
CISA — Recognize and report phishing
Ethereum.org — Security and scam prevention
Independent educational content reviewed against primary documentation. No personalized recommendation or promise of returns. Updated October 6, 2026


