My website, salahuddinayyubi.com, has these ads that when anyone specially new users click on any link in the site, the ad opens and causes a second page to pop up. The second page ads are those fake ads that say you won a prize or your device is compromised. I do not want these ads. I do not know how these ads were added. I use Google Adsense only. I have inserted the Google ad codes in my headers and footers as well as a few select locations on specific pages. I alraedy have updated everything on site and also downloaded all security plugins but still these issue occur. Does anyone know how to remove these ads? When I click a link, I get sent to a site which then gets redirected to the malicious ad.

Check the plugin folder and see if you can find “insert-headers-and-footers” plugin. You won’t find it in your plugin list, only on the server side.
[https://www.reddit.com/r/Wordpress/comments/1elpxin/important_notice_malware_through_invisible_plugin/?utm_source=share&utm_medium=web3x&utm_name=web3xcss&utm_term=1&utm_content=share_button](https://www.reddit.com/r/Wordpress/comments/1elpxin/important_notice_malware_through_invisible_plugin/?utm_source=share&utm_medium=web3x&utm_name=web3xcss&utm_term=1&utm_content=share_button)
I just posted this “tutorial” to remove it. Please check if it’s also on you server and if it solved it.
If not, count the amount of plugins you see on the wordpress side compared to in the plugin folder on the server.
Your site has a vulnerability – something is out of date (or abandoned), likely a plugin. Go through each plugin and check the changelog – delete and replace any that haven’t received an update in more than 9 months. (Just because you’ve run updates doesn’t mean your site is safe)
It could be malware. Check all plugins/theme files for any suspicious files.