The Bitdefender SSL intercept/scan proxy should only offer ciphers to the remote website server that the client app offers to the proxy. So if I have configured my web browser app to not support any DES/3DES ciphers, then the Bitdefender proxy should in turn not be offering any DES/3DES ciphers to the website.
Currently the Bitdefender proxy offers the same long list of ciphers to each website regardless of how the client app is configured. Some of these ciphers are weak because they use DES/3DES. I have configured my web browser to not use DES/3DES ciphers, but with Bitdefender installed I cannot ensure the PC/server connection does not use DES/3DES.