This company has verified ownership of the profile and can respond to reviews.
Verified Safe
Current checks include security-provider warnings. Review the detected warnings and supporting trust evidence before relying on the site.
Trust signal radarNormalized trust signals for sswamn.comDomain Maturity: 1135 daysDomain MaturityWarning Cleanliness: 10 detectionsWarningCleanlinessSafety Level: 0 negative tags, 1 warning signalSafetyLevelPositive Signals: 1 positive signalsPositiveSignalsPopularity: Estimated low traffic without Tranco or social profile dataPopularityTrust Zone: .comTrust ZoneOperational Signals: 1 detected servicesOperationalSignalsLocation Credibility: Hosting country ISLocation Credibility
Figure 1. Trust signal radar for sswamn.com. Larger shaded area indicates stronger trust signals.
How we scored sswamn.com
Tech signals:
Wordpress Platform, Elementor Website Builder
Positive signals:
a long-term domain history (3.1 years)
the domain owner has claimed this profile
an active SSL certificate (3 months)
Negative signals:
security-provider warnings
Last checked September 1, 2026 at 7:52 PM by
Gridinsoft Trust Model v2.5.3
Share this report?
Independent Gridinsoft analysis
What Gridinsoft observed on Sswamn.com
A Gridinsoft threat analyst reviewed the site directly and documented the evidence behind this decision.
Current review
Review ID
GMA-20260901195215-78b4b73e
Reviewed
by Gridinsoft Threat Analyst
Analyst finding
Safe
Evidence basis
First-party site analysisExternal vendor intelligence: Contradictory context โ not used for this decision
The current review supports Safe for the observed sswamn.com public deployment. The exact host is also the registrable parent domain; www redirects to it, and the retired pay hostname is NXDOMAIN. A fresh Gridinsoft rescan and four request profiles reached the expected medical-spa site with HTTP 200. Ninety public URLs were discovered and 24 representative sitemap pages plus core routes were reviewed without reproducing an unrelated redirect, command-execution prompt, external credential receiver, automatic download, executable or archive link, harmful iframe, or another harmful action. Public URLScan records partly corroborate a historical incident because two July exact-domain scans are tagged clickfix, but accessible records do not expose the transaction, destination, sample, or payload hash. Current positive external results are domain blacklist categories rather than exact current objects. The stored Suspicious Website classification is unsupported for the current deployment. Public assets identify WordPress 7.0.3, which includes the July batch fix but is behind a later security release; updating WordPress remains required security maintenance.
Analyst findings
Low1
Info4
Info01
No current harmful behavior was reproduced
The current apex, www redirect, 24 representative sitemap pages, core public routes, and four request profiles served the expected medical-spa site without an unrelated redirect, command-execution instruction, external credential receiver, executable or archive delivery, or another observed harmful action.
Info02
Historical compromise is partially corroborated, but no public sample is available
Two July exact-domain URLScan records are tagged clickfix, with Joe Sandbox or ThreatFox context, which is stronger historical context than a generic domain blacklist. The accessible records and screenshots do not expose the harmful transaction, external destination, downloadable sample, or payload hash, so the exact historical behavior cannot be reconstructed from public evidence alone.
Low03
The visible WordPress core is behind the latest security release
Public assets identify WordPress 7.0.3, which is newer than the 7.0.2 fix for the reported July batch-route issue. WordPress later released 7.0.4 with a separate authenticated Author-plus security fix. Updating to the current supported WordPress release is recommended; the later vulnerability prerequisites were not tested and this observation is not evidence of active compromise.
Info04
The historical payment hostname is retired
Public 2023 records show a payment page on pay.sswamn.com, while the exact hostname now returns NXDOMAIN. It has no current content to assess and does not provide a present harmful object.
Info05
Remaining warnings are domain-level labels, not a current sample
Several providers retain domain blacklist categories, but the reviewed current sources did not identify a present exact malicious URL, file, payload, command, hash, or harmful execution trace. Those labels are contradictory external context and do not establish that the historical compromise remains active.
Review 8 documented observations
View evidence
01HTTP response
A fresh supported Gridinsoft rescan reached the expected Simply Serene Wellness and Aesthetics site through a same-host HTTP-to-HTTPS redirect and received HTTP 200. The report's current first-party site data contained no positive behavioral signal. Its broad Suspicious Website state was inherited from a July 27 signature and did not describe a current exact URL, file, payload, hash, redirect, or observed harmful action.
Public artifact URLhttps://gridinsoft.com/online-virus-scanner/url/sswamn-com
HTTP status200
Final URLhttps://sswamn.com/
Page elementSimply Serene Wellness and Aesthetics
Analyst observationThe fresh public-site result did not identify a current exact malware file, payload URL, file hash, unrelated redirect, or harmful action.
02Navigation
Desktop, mobile, crawler, and review request profiles all received HTTP 200 from the same HTTPS apex and the expected medical-spa site. The WordPress sitemap exposed 90 current URLs; 24 representative sitemap URLs plus the homepage, contact, about, privacy, login, REST, and ordinary 404 routes were reviewed. They did not expose an unrelated redirect, executable or archive link, command-execution instruction, clipboard instruction, cryptomining script, WebSocket flow, or external credential receiver. The contact form posts to the same host, while appointment links lead to the disclosed Boulevard booking service.
HTTP status200
Final URLhttps://sswamn.com/
Page elementSimply Serene Wellness and Aesthetics
Analyst observationFour representative request profiles converged on the same HTTPS apex and expected business surface.
Analyst observationNinety current URLs were discovered and 24 representative sitemap URLs were sampled without an unrelated redirect, executable or archive link, command-execution instruction, or external credential receiver.
Analyst observationThe public contact form submits to sswamn.com; the disclosed booking destination is blvd.me and www.joinblvd.com.
03Content
Current public assets identify WordPress 7.0.3. The ordinary REST index returned HTTP 200, while an unauthenticated GET to /wp-json/batch/v1 returned the WordPress rest_no_route HTTP 404 response. WordPress documents that the July REST batch-route confusion and SQL-injection chain was fixed in 7.0.2 and backported to 6.9.5, so the visible current core version is newer than that fix. WordPress 7.0.4 was subsequently released with another authenticated Author-plus security fix; the site should update to the current supported release. The prerequisites for that later issue were not tested and this version observation is not evidence that the site is currently compromised.
Public artifact URLhttps://wordpress.org/news/2026/07/wordpress-7-0-2-release/
Public artifact URLhttps://wordpress.org/news/2026/08/wordpress-7-0-4-release/
HTTP status200
Analyst observationThe public wp-emoji asset query identifies WordPress 7.0.3.
Analyst observationAn unauthenticated GET to /wp-json/batch/v1 returned HTTP 404 with rest_no_route; no exploit attempt was made.
04DNS
The retired pay.sswamn.com hostname did not resolve from two independent network vantage points. Certificate-transparency history and two public URLScan records show that the exact host existed in July and August 2023 and served a page titled Online payment at pay.sswamn.com from an Amazon address. Those records support its historical payment-portal role. They do not show a current delegated service, and the NXDOMAIN result means there is no current host content to certify or classify.
DNS factpay.sswamn.com returned NXDOMAIN from two independent network vantage points during the review.
Public artifact URLhttps://urlscan.io/result/aab6b6a7-e012-41d8-98c5-5f299770542c/
Public artifact URLhttps://urlscan.io/result/c5910226-6311-4c1f-bb53-59620da48a60/
Page elementOnline payment @ pay.sswamn.com
05Historical content
Public URLScan search returned five parent-namespace scans: three apex scans from July 24, 27, and 28, 2026, and two historical pay-host scans from 2023. The July 24 and July 27 apex records are tagged clickfix; the first is also tagged joesandbox and the second threatfox. This is exact-domain historical context, not merely an unrelated domain blacklist label. However, the accessible search records and screenshots show the ordinary Simply Serene homepage and did not expose the tagged transaction, external destination, command, downloadable sample, or payload hash. The historical compromise claim is therefore partially corroborated, while its exact public object remains unresolved.
Public artifact URLhttps://urlscan.io/result/019f95b0-6140-7385-bd6e-c7c0ffdd4169/
Public artifact URLhttps://urlscan.io/result/019fa2ca-242a-759b-b89d-ec1061510267/
Public artifact URLhttps://urlscan.io/result/019faa8c-ba75-73bf-94d1-f08f36a5e833/
Analyst observationThe July 24 and July 27 exact-domain records are tagged clickfix; one is also tagged joesandbox and one threatfox.
Analyst observationThe three accessible screenshots show the ordinary Simply Serene homepage and do not reveal the tagged harmful transaction or a payload.
06Historical content
OTX associates the apex with one large ThreatFix pulse, but the pulse contains only repeated domain indicators for sswamn.com and supplies no exact related URL, malware file, payload hash, or behavior description for this host. OTX also exposes three apex URL observations returning HTTP 200 with no Google Safe Browsing match. The fresh aggregate matrix contains 49 harmless, eight malicious, two suspicious, and 31 undetected results. The positive BitDefender, CRDF, Fortinet, G-Data, Lionic, Lumu, SOCRadar, Sophos, alphaMountain, and Certego entries are current domain-blacklist categories; they do not name a current exact malicious object.
Public artifact URLhttps://otx.alienvault.com/indicator/domain/sswamn.com
Analyst observationThe OTX ThreatFix pulse contains repeated sswamn.com domain indicators but no exact related URL, file, payload hash, or behavior description for this host.
Analyst observationThree OTX apex URL observations returned HTTP 200 with no Google Safe Browsing match.
Analyst observationThe fresh aggregate matrix is 49 harmless, eight malicious, two suspicious, and 31 undetected; all listed positives are domain-blacklist classifications.
07Historical content
The Internet Archive index preserves ordinary root and public-page snapshots through June 14, 2026, before the reported July compromise. It returned no successful root, www, or wildcard capture for the July 1 through September 1 incident and recovery interval. The archive therefore provides pre-incident continuity but cannot confirm the compromised content or the August cleanup. No successful pay-host snapshot was available during this review.
Public artifact URLhttps://web.archive.org/web/*/https://sswamn.com/
Analyst observationSuccessful ordinary-site snapshots exist through June 14, 2026, before the reported incident.
Analyst observationThe archive index returned no successful root, www, or wildcard capture for July 1 through September 1, 2026.
08Limitation
The review found exact-domain public records consistent with a historical ClickFix investigation, but no accessible record supplied the harmful transaction, external destination, malicious file, payload URL, command, or hash. The current live review did not reproduce a malicious redirect, command-execution prompt, automatic download, external credential receiver, harmful iframe, or other harmful action. Historical exact-domain context and current broad blacklist categories were therefore recorded as different evidence classes.
Analyst observationNo current exact malicious URL, file, payload, command, hash, credential receiver, harmful iframe, or unrelated redirect was identified.
Analyst observationHistorical exact-domain scanner tags were separated from present domain-level blacklist labels and from current observed behavior.
Scope and limitations
The result applies to the public deployment and exact hosts and URLs reviewed at the recorded time; it does not certify future content, undisclosed paths, or private server state.
The review did not access hosting files, WordPress administrator data, server logs, mail logs, backups, cron state, or removed artifacts, so the customer's private remediation steps and the initial intrusion vector were not independently verified.
The public WordPress version observation comes from a versioned core asset and may reflect cached public content; no authenticated administrator check was performed.
Public URLScan transaction detail for the tagged July records was unavailable without authentication; screenshots and search metadata were reviewed, and unavailable detail was treated as unknown rather than clean.
The Internet Archive has no successful root, www, or wildcard capture for the July through August incident and recovery interval, so it cannot verify the compromised page or cleanup timeline.
No form was submitted, account was used, exploit was attempted, file was executed, or private booking or payment workflow was tested.
We reviewed sswamn.com and found mostly positive signals. Current checks lean toward a legitimate, lower-risk profile, although a few caution points still keep it short of a fully verified standing. The current trust score is 85/100. Key signals include security-provider warnings and a domain age of 3.1 years. Verify key details before sharing personal information or relying on the site for important actions.
Figure 2.
Website screenshot for Sswamn.com.
2026-09-01 22:52:05
FAQ
Is sswamn.com safe?
Based on current analysis, sswamn.com appears to be generally safe. The final verdict also reflects manual expert review. Basic verification is still reasonable before relying on the site.
Why does sswamn.com look trustworthy?
Key factors include registrar information (NameCheap, Inc.) and hosting in US. The trust score blends security detections, domain and infrastructure signals, and on-page behavior patterns. Taken together, these factors support a mostly positive trust assessment, although routine verification is still reasonable.
Sswamn Digital Footprints
A structured view of the site's detected themes, page signals, and related online footprint elements.
Registration Form
Automated page analysis detected form or data-entry functionality on sswamn.com. Forms can involve user-submitted information, so verify ownership and privacy terms before entering data.
Wordpress Platform
Our analyzer determines that this website is using WordPress CMS. WordPress is the most popular content management system, powering over 43% of websites globally.
Google Tag Manager
The sswamn.com website uses Google Tag Manager to add and update tracking tags on its website.
jQuery Library
Elementor Website Builder
Webpack Module Bundler
Social Media Links
The presence of social media links on the website indicates that it references social media accounts. This signal alone does not confirm ownership or authenticity of those profiles.
Claimed Company Profile
The company behind this site has claimed its profile in the Gridinsoft portal and provided verified ownership details.
External provider warnings: 10/30
This section shows what independent external security sources say about this site.
A warning appears when one or more sources report malware, phishing, abuse, or other safety concerns. Each row shows the source and its verdict.
If no source reports a warning, the site is shown as clear in this section.
CRDF
Malicious
Fortinet
Malware
G-Data
Phishing
Lionic
Malicious
Lumu
Malware
SOCRadar
Malicious
Sophos
Malware
BitDefender
Warned
alphaMountain.ai
Suspicious
Certego
Suspicious
External provider results for Sswamn.com, last checked September 1, 2026.
โ VirusTotal
Domain Information
CreatedJuly 24, 2023 at 7:19 PMUpdated: May 4, 2026 at 5:31 AM ยท Expires: July 24, 2027 at 7:19 PM
Domain Age3.1 years
RegistrantGridinsoft privacy protected
IS (Iceland)
Detection SignaturesThese signatures are used to generate the security fingerprint below.
Registration FormWordpress PlatformjQuery LibraryWebpack Module BundlerSocial Media Links
Verified ServicesThis domain has been verified by the following legitimate services and organizations, confirming authentic ownership and proper email security configuration.
Google Verification
Domain ownership verified by Google.
Security FingerprintUnique identifier based on site analysis
If you own Sswamn.com and want to challenge the trust score, please submit a review request via portal.gridinsoft.com. There you can claim your profile and add verified company/contact details. If you cannot access the portal, email legal(at)gridinsoft.com with proof of legitimacy and contact details. We never charge website owners for reviews or reconsideration requests. For more information, please review our Disclaimer.
A website report warns you. A PC scan protects you.
Unsafe sites can leave adware, unwanted apps, or hidden malware in downloads and browser settings. Run Gridinsoft Anti-Malware to check what may already be on this Windows PC.
Checks active threats, startup items, and suspicious downloads
Finds adware and unwanted apps linked to unsafe websites
Shows scan results before you decide what to remove
Your comment is currently undergoing moderation and will be published shortly.
Help protect others by sharing this page on social media! The more people who know about sswamn.com, the fewer chances they have to deceive someone else.Help others evaluate sswamn.com by sharing this page on social media!
Help protect others by sharing this page on social media! The more people who know about sswamn.com, the fewer chances they have to deceive someone else. Help others evaluate sswamn.com by sharing this page on social media!