URLs excluded from ScriptScan appear in the On-Access Scan Debug log.
Enable debug logging for Threat Prevention On-Access Scan in the Common Options settings.
Visit the excluded URL.
For each excluded URL visited, ScriptScan includes an entry in the debug log, indicating the URL was excluded.
In the OnAccessScan_Debug.log file, search for "ExcludedURL".
For example:
ExcludedURLs: corp.mcafee.com