When you add those files, you can exclude them only for read and execute operations and leave them scanned when writing. So you will still get alerted if somehow they are being tampered with and written back to disk.