As far as I understand the theory, Avast monitors SSL connections by inserting its own certificate. However, Avast documentation also says that it has many sites excluded from monitoring (“whitelisted”). The problem is that I checked some sites I use, including some pretty unpopular and obscure ones, and could not find any signs of SSL interception at all - they all present genuine certificates. The Enable HTTP Scanning option is, of course, on.
Could anyone please provide an actual example of a site Avast would substitute a certificate for? I just want to see with my own eyes what it looks like.
The fact that it’s Avast’s domain means nothing. It’s a test and it works.
You use the eicar virus to test for a virus even it that’s not really a virus.