if I read word to word, I understand you hope to save space in the shared folder.
if this is true, I have no idea.
But if idea is to avoid running untrusted exe, just remove execution right on these folder. By this way, saved exe becomes useless, and users will not put the exe in the shared because they are unrunnable.
this suppose that trusted exe are in a readonly folder