JS/Adware.Subprop.E ads: what it is and how to remove it

JS/Adware.Subprop.E is a heuristic detection name given an adware app that might have accessed your PC without permission. Adware belongs to a category of potentially unwanted programs that use deceptive distribution techniques and install components that would display popups, fleshing windows, in-text links, banners, and other types of ads on Google Chrome, Mozilla Firefox, MS Edge, or another web browser.

Facts checked October 6, 2026. Removal steps tested on Windows 11 (26H2) and checked against Microsoft's and the browser makers' current documentation. Sections marked as our earlier report are the original text: they describe the threat as it was then and have not been reviewed since. The 2026 status, the removal steps and the questions are current.

Automatic

Get a free scan and check if your PC is infected.

Fortect finds malware, unwanted programs and the Windows damage they leave behind, and repairs it in one pass.

If redirects to novirus.uk keep coming back, a free scan can check extensions, programs and browser settings in one pass.

Remove it nowTo use the full-featured product, you have to purchase a license for Fortect. The scan is free.

Do it yourself · free Remove JS/Adware.Subprop.E ads yourself 4 steps, about 12 minutes, no software needed.

Start the steps
JS/Adware.Subprop.E: js adware subprop e potentially unwanted program
JS/Adware.Subprop.E as our 2020 report showed it.

JS/Adware.Subprop.E ads: summary

DistributionSoftware bundles, third-party websites, deceptive ads, fake Flash Player updates
NameJS/Adware.Subprop.E
TypeAdware, potentially unwanted program
SymptomsSymptoms are not universal. If adware managed to get into your device, you might see changed browser settings, increased number of ads, slow browser loading times, etc.
DangersAdware can significantly decrease the performance of the internet and browser speed, redirect to potentially malicious websites, prevent finding relevant information due to ads, result in additional PUP infections and monetary losses
Detection namesNo Microsoft detection name is known
Removal

Scan the PC with security software to find and remove the malware and anything installed with it. Fortect scans Windows for malware and repairs the system files and settings it damaged.

Remove it nowTo use the full-featured product, you have to purchase a license for Fortect. The scan is free.
Show 7 more facts
DamageNot recorded in the old report
Evidence4 write-ups by security sites; details still limited
Domainsnovirus.uk
Ads shown asRedirects through ad pages
BrowsersChrome, Edge and Firefox
First seen11 November 2020
Facts checked6 October 2026

Is JS/Adware.Subprop.E ads dangerous?

From our report of Nov 2020 · not reviewed since

JS/Adware.Subprop.E - a detection name for a potentially unwanted program on a Windows machine

JS/Adware.Subprop.E is a heuristic detection name given an adware app that might have accessed your PC without permission.

Adware belongs to a category of potentially unwanted programs that use deceptive distribution techniques and install components that would display popups, fleshing windows, in-text links, banners, and other types of ads on Google Chrome, Mozilla Firefox, MS Edge, or another web browser.

Since JS/Adware.Subprop.E virus name is generic, it means that many differently-named apps can be detected as such. Antivirus programs provide such names to unwanted apps based on their behavior rather than other factors, such as the signature of the installer.

A "JS" part stands for JavaScript, which means that malicious JS files could be populated on various sites and would otherwise attempt to load an ad or, in some cases, download files to your computer automatically.

Although adware is not considered to be as dangerous as, for example, a Trojan or ransomware, it is still a security threat, so you should immediately proceed with JS/Adware.Subprop.E removal if your security software has flagged it. If you cannot quarantine the malicious file with your currently-installed anti-malware, we suggest you try or .

Adware's operation on the computer may vary, as there are hundreds of thousands of different programs available, and new ones are developed every day. Some might merely change your web browser settings and append a customized search engine, while others might establish persistence by modifying the Windows registry or other Windows components.

There are several ways of how JS/Adware.Subprop.E adware could spread around the internet. Experts claim that the following methods are used most frequently:

In general, there are various scenarios when you could encounter a warning from your security software. If you attempted to download an app from an unsolicited source, you could have received a pop-up from your anti-virus, claiming that JS/Adware.Subprop.E is attempting to penetrate your system.

In other cases, the warning could show up after you got redirected to a malicious website. This could also mean two things: either you clicked on a suspicious link/visited a malicious site, or you already have adware installed on your machine (which is causing these redirects).

The problem with generic detections is that they suffer from a high number of false-positives and JS/Adware.Subprop.E is not an exception. Quite often, users say that they were attempting to download a fully legitimate application from the developer's official website, and they received a warning from their security tool. Mistakes happen because security apps mistakenly detect some patterns that might be considered suspicious, hence the false-positives.

Therefore, you should not immediately remove JS/Adware.Subprop.E if you believe that the file you were downloading is safe. Instead, update your anti-malware, or scan it with an alternative engine. Do not forget that each of the detections should not be ignored and investigated fully.

If it turned out that JS/Adware.Subprop.E virus is not a false positive, get rid of it immediately by sending it to quarantine and then removing it from the system immediately.

  • software bundles;
  • deceptive ads;
  • fake updates.
JS/Adware.Subprop.E: js adware subprop e potentially unwanted program
JS/Adware.Subprop.E in our 2020 report.
JS/Adware.Subprop.E: js adware subprop e heuristic detection
JS/Adware.Subprop.E in our 2020 report.

From our report of Nov 2020 · not reviewed since

More from our earlier report on JS/Adware.Subprop.E

  • Malware or adware infections can diminish the performance of your computer or cause serious stability issues.

How JS/Adware.Subprop.E ads got into your browser

From our report of Nov 2020 · not reviewed since

Adware is a part of the potentially unwanted program category, and it is called so for a reason.

Previously called spyware, adware managed to get itself a name within the software development and distribution business. Since, due to legal reasons, such programs cannot be called "malware," security vendors use this name in order to warn its users about some potentially dangerous or unwanted features that the app can bring after the installation. This is why keeping up-to-date security software on the computer is so important.

All in all, you should avoid adware like a plague, as its functionality is very limited, if not useless. In the meantime, you would get ads, ads everywhere! In the background, such apps are there to spy on your online, so you are risking your privacy as well. Thus, prevent the unintentional installation of adware with the help of these tips from novirus.uk security experts:

  • Try to avoid third-party websites when downloading new software;
  • Never download pirated programs or software cracks - these might result in the installation of malware, such as Agho ransomware;
  • During the installation, always opt for Advanced/Custom settings instead of Recommended/Quick ones;
  • Remove the ticks from pre-ticked checkboxes;
  • Read the fine print;
  • Watch out for misplaced buttons and deceptive offers.

Check your browser and PC

  • Address: novirus.uk

How to remove JS/Adware.Subprop.E ads

How to remove the JS/Adware.Subprop.E extension

Do the browser steps in every browser and profile on the PC, then check Windows for the program that installed the extension.

  1. Step 1: Remove extensions you did not add

    In Chrome open chrome://extensions, in Edge edge://extensions, and in Firefox the menu > Extensions and themes.

    Remove every extension you do not remember adding, especially search, new tab, coupon, PDF, weather or video downloader add-ons. Check every browser and every profile, because each keeps its own list.

    If an extension has no Remove button or comes back, a browser policy holds it (see "Managed by your organization" in the procedure below). The pages are the same on Windows 11 and Windows 10.

    Chrome menu with Extensions and Manage extensions highlighted
    Chrome on Windows 11: More > Extensions > Manage extensions.

    Full procedure with screenshots: Remove a browser extension

  2. Step 2: Uninstall programs you did not mean to install

    JS/Adware.Subprop.E rarely comes alone: it is usually installed by, or together with, a free program. In Windows 11 open Settings > Apps > Installed apps, in Windows 10 Settings > Apps > Apps & features, and sort by install date.

    Uninstall every entry from the day the trouble began that you did not install on purpose, for example a download manager, a converter or a browser you never chose.

    Keep drivers and entries from Microsoft, Intel, AMD, NVIDIA or your PC's maker unless you are sure.

    Full procedure with screenshots: Uninstall a program or app in Windows On uGetFix

  3. Step 3: Reset the browser

    A reset removes what the steps above could miss:

    • changed start pages
    • site permissions
    • hidden settings

    In Chrome open Settings > Reset settings > Restore settings to their original defaults; in Edge Settings > Reset settings; in Firefox Help > More troubleshooting information > Refresh Firefox.

    Tip: Bookmarks and saved passwords stay, while extensions are turned off and the search engine and start page return to the defaults.

    Reset every browser on the PC, including Edge, which Windows 11 and Windows 10 always have.

    Chrome Settings page with the Reset settings section open
    Chrome on Windows 11: Settings > Reset settings.

    Full procedure with screenshots: Reset a browser and fix a hijacked search engine

  4. Step 4: Scan the PC, then run the offline scan

    A scan finds the parts of JS/Adware.Subprop.E that the manual steps cannot see. In Windows Security > Virus & threat protection > Scan options, start a Full scan and quarantine what it reports.

    Follow it with Microsoft Defender Antivirus (offline scan) > Scan now, which restarts the PC and checks the disk while Windows and the malware are not running.

    It takes about 15 minutes and works the same in Windows 11 and Windows 10. If either scan finds something, run the full scan again after removal until it comes back clean.

    Windows Security Scan options with Microsoft Defender Antivirus offline scan selected
    Windows 11: Windows Security > Virus & threat protection > Scan options.

    Full procedure with screenshots: Run a Microsoft Defender Offline scan

Instructions for each browser and system

The detailed steps for every browser and system this guide covers. Open the one you use.

Uninstall from Windows

Delete unwanted programs from Windows:

Uninstall from Windows 10/8:

  1. Type Control Panel into the Windows search box and open the result.
  2. Under Programs, select Uninstall a program.Uninstall from Windows 10/8

Uninstall from Windows 7/XP:

  1. Click on Windows Start > Control Panel (Windows XP users should click on Add/Remove Programs).
  2. In Control Panel, select Programs > Uninstall a program.Uninstall from Windows 7/XP

Remove the unwanted program:

  1. In the Programs and Features window, look for any recently installed suspicious entries, select them, and click Uninstall.
  2. If User Account Control appears, click Yes to confirm, then complete the removal.Uninstall the unwanted program from Windows
Remove from Google Chrome

Eliminate all the adware leftovers from Google Chrome:

Delete malicious extensions from Google Chrome:

  1. Open Google Chrome, click on the Menu (three vertical dots at the top-right corner) and select More tools > Extensions.
  2. In the newly opened window, you will see all the installed extensions. Uninstall all suspicious extensions related to the unwanted program by clicking Remove.Remove extensions from Chrome

Clear cache and web data from Chrome:

  1. Click on Menu and pick Settings.
  2. Under Privacy and security, select Clear browsing data.
  3. Select Browsing history, Cookies and other site data, as well as Cached images and files.
  4. Click Clear data.Clear cache and web data from Chrome

Change your homepage:

  1. Click menu and choose Settings.
  2. Look for a suspicious site in the On startup section.
  3. Click on Open a specific or set of pages and click on three dots to find the Remove option.

Reset Google Chrome:

If the previous methods did not help you, reset Google Chrome to eliminate all the unwanted components:

  1. Click on Menu and select Settings.
  2. In the Settings, scroll down and click Advanced.
  3. Scroll down and locate Reset and clean up section.
  4. Now click Restore settings to their original defaults.
  5. Confirm with Reset settings.Reset Chrome 2
Remove from Microsoft Edge

Delete unwanted extensions from MS Edge:

  1. Select Menu (three horizontal dots at the top-right of the browser window) and pick Extensions.
  2. From the list, pick the extension and click on the Gear icon.
  3. Click Remove.Remove extensions from Edge

Clear cookies and other browser data:

  1. Click on the Menu (three horizontal dots at the top-right of the browser window) and select Settings > Privacy, search, and services..
  2. Under Clear browsing data, pick Choose what to clear.
  3. Select Cookies and other site data and Cached images and files. (apart from passwords, although you might want to include Media licenses as well, if applicable) and click on Clear.Clear Edge browsing data

Restore new tab and homepage settings:

  1. Click the menu icon and choose Settings.
  2. Then find On startup section.
  3. Click Remove next to any suspicious startup page.

Reset MS Edge if the above steps did not work:

  1. Press on Ctrl + Shift + Esc to open Task Manager.
  2. Click on More details arrow at the bottom of the window.
  3. Select Details tab.
  4. Now scroll down and locate every entry with Microsoft Edge name in it. Right-click on each of them and select End Task to stop MS Edge from running.Reset MS Edge
Instructions for Chromium-based Edge

Delete extensions from MS Edge (Chromium):

  1. Open Edge and click select Settings > Extensions.
  2. Delete unwanted extensions by clicking Remove.Remove extensions from Chromium Edge

Clear cache and site data:

  1. Click on Menu and go to Settings.
  2. Select Privacy, search and services.
  3. Under Clear browsing data, pick Choose what to clear.
  4. Under Time range, pick All time.
  5. Select Clear now.Clear browser data from Chroum Edge

Reset Chromium-based MS Edge:

  1. Click on Menu and select Settings.
  2. On the left side, pick Reset settings.
  3. Select Restore settings to their default values.
  4. Confirm with Reset.
  5. This will disable extensions and reset startup pages but will not delete bookmarks, saved passwords, or browsing history.Reset Chromium Edge
Remove from Mozilla Firefox (FF)

Remove dangerous extensions:

  1. Open Mozilla Firefox browser and click on the Menu (three horizontal lines at the top-right of the window).
  2. Select Add-ons.
  3. In here, select the unwanted extension and click Remove.Remove extensions from Firefox

Reset the homepage:

  1. Click three horizontal lines at the top right corner to open the menu.
  2. Choose Settings.
  3. Under Home, set your preferred homepage and new tab settings.

Clear cookies and site data:

  1. Click Menu and pick Settings.
  2. Go to Privacy & Security section.
  3. Scroll down to locate Cookies and Site Data.
  4. Click on Clear Data...
  5. Select Cookies and Site Data and Temporary cached files and pages, then click Clear.Clear cookies and site data from Firefox

Reset Mozilla Firefox

If clearing the browser as explained above did not help, reset Mozilla Firefox:

  1. Open Mozilla Firefox browser and click the Menu.
  2. Go to Help and then choose Troubleshooting Information.Reset Firefox 1
  3. Under Give Firefox a tune up section, click on Refresh Firefox...
  4. Once the pop-up shows up, confirm the action by pressing on Refresh Firefox.Reset Firefox 2
Delete from Safari

Remove dangerous extensions:

  1. Open Safari, click Safari in the menu at the top-left of the screen, and select Preferences.
  2. Go to the Extensions tab, look for any suspicious entries, and click Uninstall to remove them.Remove extensions from Safari

Clear history and website data:

  1. Click Safari in the menu and pick Clear History.
  2. Set Clear to all history and confirm with Clear History.Clear history from Safari

Reset Safari:

  1. Click Safari in the menu and select Preferences > Advanced.
  2. Enable Show Develop menu in menu bar.
  3. From the menu bar, click Develop and select Empty Caches.Reset Safari
Delete from macOS

Remove the unwanted application:

  1. From the menu bar, select Go > Applications.
  2. In the Applications folder, look for any suspicious entries, then drag them to Trash (or right-click and pick Move to Trash).Uninstall from Mac

Delete leftover files and folders:

  1. Select Go > Go to Folder.
  2. Enter /Library/Application Support and remove any suspicious folders related to the unwanted program.
  3. Repeat the same check in the /Library/LaunchAgents and /Library/LaunchDaemons folders, deleting any suspicious entries.Delete leftover files from Mac
  4. Finally, empty the Trash to permanently remove the leftovers.
Reset Internet Explorer

Remove dangerous add-ons:

  1. Open Internet Explorer, click on the Gear icon (IE menu) on the top-right corner of the browser
  2. Pick Manage Add-ons.
  3. You will see a Manage Add-ons window. Here, look for suspicious plugins. Click on these entries and select Disable.Remove add-ons from Internet Explorer

Change your homepage if it was altered:

  1. Open IE and click on the Gear icon.
  2. Select Internet Options.
  3. In the General tab, delete the Home page address and replace it by your preferred one (for example, Google.com).
  4. Click Apply and then select OK.Reset IE homepage

Delete temporary files:

  1. Press on the Gear icon and select Internet Options.
  2. Under Browsing history, click Delete...
  3. Select relevant fields and press Delete.Clear temporary files from Internet Explorer

Reset Internet Explorer:

  1. Click on Gear icon > Internet options and select Advanced tab.
  2. Select Reset.
  3. In the new window, check Delete personal settings and select Reset.Reset Internet Explorer

Stream videos without limitations, no matter where you are

There are multiple parties that could find out almost anything about you by checking your online activity.

While this is highly unlikely, advertisers and tech companies are constantly tracking you online. The first step to privacy should be a secure browser that focuses on tracker reduction to a minimum.

Even if you employ a secure browser, you will not be able to access websites that are restricted due to local government laws or other reasons. In other words, you may not be able to stream Disney+ or US-based Netflix in some countries. To bypass these restrictions, you can employ a powerful VPN, which provides dedicated servers for torrenting and streaming, not slowing you down in the process.

Data backups are important - recover your lost files

Ransomware is one of the biggest threats to personal data.

Once it is executed on a machine, it launches a sophisticated encryption algorithm that locks all your files, although it does not destroy them. The most common misconception is that anti-malware software can return files to their previous states. This is not true, however, and data remains locked after the malicious payload is deleted.

While regular data backups are the only secure method to recover your files after a ransomware attack, tools such as can also be effective and restore at least some of your lost data.

From our report of Nov 2020 · not reviewed since

Remove JS/Adware.Subprop.E if it is not a false positive

JS/Adware.Subprop.E removal can sometimes be perfumed manually - especially if you know which program is responsible for unwanted behavior.

If you are unaware of how to uninstall programs from your computer, please follow the instructions we provide below. Also, after you get rid of adware, it is advised you also clean your web browsers by deleting cookies and other web data. You can also reset Chrome or other affected browsers if necessary.

If you received a popup from your security software seemingly out of nowhere, you should remove JS/Adware.Subprop.E virus immediately, as it might mean that a malicious script is trying to break in. Alternatively, if you are unable to delete the infection with your current anti-malware software, we suggest you rely on alternatives.

Finally, if you suspect that JS/Adware.Subprop.E is a false positive, you should update definitions of your security software and the app in question (if it is already installed). If nothing works, add the app as exclusion or contact the security vendor to fix the issue for you.

Questions about JS/Adware.Subprop.E ads

How do I stop novirus.uk from opening?

Find and remove whatever opens it. Start with the browser's extensions page and remove anything you do not remember adding. Next, open the notification settings and take away permission from sites you do not recognise.

Then check Settings > Apps > Installed apps for programs added around the day the redirects began, and uninstall those. Restart the browser and test a few links after each step.

If novirus.uk still appears, reset the browser, which restores the default search engine, start page and permissions without deleting bookmarks or saved passwords. Redirects that survive a reset in every browser point to a program in Windows, and a full scan is the next step.

Did novirus.uk install a virus on my PC?

Very unlikely, unless you downloaded and opened something from the pages it led to. Redirect domains such as novirus.uk sell your visit to advertisers; they do not need to install anything to make money.

What can be installed is the thing that causes the redirects in the first place, such as an extension or an ad-supported program that came with free software. That is why the checks in this guide look at extensions, notification permissions and Installed apps.

A full scan with Microsoft Defender afterwards gives you a clear answer about the rest of the PC. If the scan is clean and the redirects stop after removing the cause, you are done.

Why does JS/Adware.Subprop.E show me ads?

Because that is its whole purpose. JS/Adware.Subprop.E is an adware extension, and its operators are paid for every ad it displays and every click it gets. In this case the ads take the form of redirects through ad pages.

They are chosen by ad networks that accept almost any advertiser, which is why so many look like warnings or prizes. The ads are not a sign that your PC is broken or infected with something worse; they are a sign that something on it, or in the browser, has permission to advertise. Removing that permission or program stops them.

Do I have to clean every browser?

Yes, if you use more than one. We saw JS/Adware.Subprop.E in Chrome, Edge and Firefox, and each browser keeps its own extensions, notification permissions and settings. Chrome and Edge share the same extension format, so one installer can add the same adware to both, while Firefox has its own add-ons.

Check every browser on the PC, including ones you rarely open. If you sync a browser with an account, clean it while signed in, so that the removal reaches your other computers rather than the adware returning from them.

How do I know the ads come from JS/Adware.Subprop.E?

Look for redirects to novirus.uk. That is the trace JS/Adware.Subprop.E leaves, and it shows up as redirects through ad pages. Ads that appear on every site, including ones that never carried ads before, point to something on your PC or in the browser rather than to the sites themselves.

A quick test is a private window, where extensions are off by default: if the ads disappear there, an extension is responsible. If they appear even with the browser closed, the source is a notification permission or a program in Windows.

Why didn't my antivirus catch JS/Adware.Subprop.E?

Many security products do not block adware or notification sites by default, because users often agreed to them, even through a misleading prompt. Notification spam installs nothing at all, so there is no file to detect.

In Windows 11 you can make Microsoft Defender block potentially unwanted apps: open Windows Security > App & browser control > Reputation-based protection settings and turn on Potentially unwanted app blocking. If notifications caused the pop-ups, no scanner will report them; the fix is in the browser's site settings.

Can adware slow down my PC?

Yes. Adware runs in the background, loads ad scripts, opens extra tabs and contacts its servers, all of which use processor time, memory and bandwidth. Ad-heavy extensions also slow down every page, because they inspect and change it before you see it.

The effect is strongest on older PCs and when several adware programs arrived together. After removal, restart the PC and check Task Manager for anything still using a lot of resources that you do not recognise. Speed usually returns to normal once the ads stop.

Does adware steal passwords?

Ordinary adware is built to show ads, not to steal logins, and most of it never touches saved passwords. The line is blurry, though. Extensions that can read every page could capture what you type, and adware ads sometimes lead to phishing pages that ask for passwords directly.

If you entered credentials on a page reached through an ad, change that password from a clean device and turn on two-step verification. Otherwise, removing adware extension and clearing cookies is usually enough.

I clicked on one of the ads. Am I infected?

Probably not. Clicking an ad usually only opens a page, and a page cannot install programs on an up-to-date Windows PC without your help.

You are at risk only if you then downloaded and ran a file, allowed notifications, entered card or login details, or called a phone number shown on the page. Delete any download and run a full and offline scan.

Change passwords you typed, from a clean device. Call your bank if you gave card details. If you called a number or allowed remote access, see the next question.

Will Fortect remove JS/Adware.Subprop.E?

Fortect scans Windows for malware and unwanted programs and repairs the system files and settings they change, and its free scan shows what it finds on your PC before you decide anything.

For JS/Adware.Subprop.E, follow the plan above as well: the browser steps take back permissions and settings that no scanner treats as a threat, and uninstalling the program that brought it removes the source.

Run Microsoft Defender's full scan and, if anything was found, its offline scan as a second opinion. If the symptoms are gone after the plan and both scans are clean, there is nothing more to do.

Sources

  1. Wikipedia: Heuristic analysis (read October 6, 2026)
  2. Heimdal Security: JavaScript Malware – a Growing Trend Explained for Everyday Users (read October 6, 2026)
  3. Google Chrome Help: Use notifications to get alerts (no longer online) (read October 6, 2026)
  4. FTC: How to recognize, remove and avoid malware (read October 6, 2026)
  5. Microsoft Learn: Microsoft Defender Offline (read October 6, 2026)

More removal guides

Remove Immediate Action Required

Immediate Action Required is a fake notification that might pop-up out of nowhere and prompt users to download useless bogus software Immediate Action Required is a scam that users mightAdwareMedium riskUgnius Kiguolis ·

Remove ReceiverHelper Mac virus

ReceiverHelper virus is a high threat to your personal safety and Mac security ReceiverHelper is a harmful application targeting Mac devices, classified under the Adload malware family. It is notoriousAdwareMedium riskJake Doevan ·

Remove Casalemedia

Casalemedia is a legal advertising service but is sometimes abused by crooks to gain personal income Casalemedia is a legitimate advertising service that provides assistance in monetizing on online contentAdwareMedium riskJake Doevan ·

Remove D1ue3yi0hkdsdl.cloudfront.net ads

D1ue3yi0hkdsdl.cloudfront.net ads is the content related to scam campaigns and fake errors or warnings D1ue3yi0hkdsdl.cloudfront.net is the program that causes notifications and advertisements that may appear unexpectedly, preventing you fromAdwareMedium riskJulie Splinters ·

Questions and experiences: JS/Adware.Subprop.E ads

Still seeing it, or found something we did not cover? Ask here: members and our editors answer. Reading is open; writing needs a free account.

0 comments

…

5,441 members already hereReading, writing, commenting and voting. 0 verified · 166 joined this year