Short bio

This detection was often seen in combination with Crossrider browser hijackers and Multiplug adware. It was named after the registry keys and folders it added on affected systems:

  • C:\Program Files (x86)\globalUpdate


Common infection method

Crossrider, Multiplug, and GlobalUpdate were all installed by bundlers.

Associated families

  • PUP.Optional.Crossrider
  • PUP.Optional.Multiplug


Malwarebytes removes PUP.Optional.GlobalUpdate completely. No further cleanup is required.

Cybersecurity info you can’t do without

Want to stay informed on the latest news in cybersecurity? Sign up for our newsletter and learn how to protect your computer from threats.

Select your language