When you get back the control of your domain via updating the DNS record to point your current IP, the certificate issued by “Eve” could not even be used practically. Clients will not connect to the old IP address, so the malicious certificate will not be presented to them.