EDR and Anti-Virus Allow listing

This article describes recommended allowlisting configurations for Endpoint Detection and Response (EDR) and antivirus software when using Softdrive.


Index


Overview

Recommendation

For Softdrive components, we recommend configuring Endpoint Detection and Response (EDR) or antivirus software to verify the digital signatures of Softdrive processes rather than relying solely on process name allowlisting.

Many enterprise EDR platforms support certificate-based allowlisting, which provides a more secure and reliable method of trusting signed applications.

Softdrive Client / Local Computer

If you are running security software on your local computer where the Softdrive Client is installed, please allowlist the following directories and processes.

Directories

%localappdata%\Programs\softdrive-launcher
%appdata%\softdrive-launcher

Processes

CrashHandler.exe
SendMessageToMailSlot.exe
SoftdriveClient.exe
Softdrive.exe

Softdrive Server / Softdrive Cloud Desktop

If you are running security software on your Softdrive Cloud Desktops, please allowlist the following directories and processes.

Directories

Softdrive Server

C:\Softdrive

QEMU Guest Agent

C:\Program Files\Qemu-ga

Processes

Softdrive Server

CrashHandler.exe
SendMessageToMailSlot.exe
SendMessageToServer.exe
SoftdriveServer.exe
SoftdriveServerUser.exe
SoftdriveService.exe

QEMU Guest Agent

Important

Please note that qemu-ga is not currently signed by Softdrive.
qemu-ga.exe

Support

If you continue experiencing issues related to endpoint security software interfering with Softdrive components, please contact Softdrive Support.

Please include:

  • The security software being used (EDR / Antivirus)
  • A description of the behavior observed
  • Any relevant security logs if available

Contact Softdrive Support:
support@softdrive.co