How to Uninstall Intego Completely Without Breaking Your Mac
Intego ONE, X9, the free Scanner and standalone VPN use different removal paths. Preserve billing and security evidence, run the correct uninstaller, restart, then verify extensions, networking and replacement protection.

Quick answer: For current Intego ONE, open the dashboard and choose Help → Uninstall. For X9, open the latest official installer disk image and run its Uninstall package. Quit and move the free VirusBarrier Scanner to Trash; disconnect standalone Privacy Protection and uninstall it from Settings → Help. Cancel billing separately, restart the Mac and verify extensions, filters, networking and replacement protection.
Choose the route by product, not by the word “Intego”

| Installed product | Supported first route | Don't start with | Shared finish |
|---|---|---|---|
| Intego ONE | ONE dashboard → Help → Uninstall | Dragging the app to Trash | Restart; verify extensions and protection |
| Intego X9 bundle | Latest installer DMG → Uninstall package | Deleting VirusBarrier/NetBarrier folders | Restart; verify NetUpdate and filters are gone |
| VirusBarrier Scanner | Quit → Applications → Move to Trash | X9 bundle uninstaller | Empty Trash; restart; decide quarantine first |
| Privacy Protection VPN | Disconnect → Settings → Help → Uninstall | Removing a network filter by force | Restart; verify normal network access |
Current Intego software spans a unified ONE app, separate X9 utilities, a sandboxed App Store scanner and a separately installed VPN. Advice that begins “find everything named Intego and delete it” skips the product identity that macOS needs to unregister services and extensions safely.
Use the route that owns the component. The common finish is just as important: restart, inspect the remaining scope and prove that networking and the intended replacement protection are healthy.
“Completely removed” is a verified scope, not a spotless keyword search
| Outcome | Where it's controlled | Proof | Not the same as |
|---|---|---|---|
| Software removed | Product-specific uninstaller | Apps/components absent after restart | Subscription cancelled |
| Renewal stopped | Account, processor or store | Exact plan/date confirmation | Local software removed |
| License seat freed | Deauthorize/device controls | Old Mac removed from seat list | Billing stopped |
| Data decision complete | Quarantine/backup/support workflow | Needed evidence preserved safely | Every cache erased |
| Protection handoff complete | macOS/replacement provider | Healthy update and status check | An app icon exists |
For this guide, complete means that the products you chose to remove no longer have active apps, menu items, background work, endpoint/network extensions or filters after restart. It doesn't mean erasing every receipt, macOS log entry or intentionally retained Intego utility.
That distinction protects people who keep Personal Backup, ContentBarrier or Privacy Protection. A process or extension belonging to a retained product isn't a leftover; an enabled NetBarrier extension after the entire firewall scope was removed is a reason to investigate.
Preserve the things the uninstaller can't decide for you
| Before removal | Why it matters | Safe evidence |
|---|---|---|
| Product inventory | Chooses ONE/X9/Scanner/VPN route | Applications list and account products |
| Quarantine review | Removal can take away the recovery UI | Detection, path, hash, support case |
| Backup tasks | Personal Backup may remain separately | Destination, last successful run, restore test |
| Network state | VPN/filter failures need a baseline | Connected interface, DNS and filter state |
| License transfer | Old Mac may occupy an X9 seat | Device name and deauthorization result |
| Billing record | Uninstall doesn't stop renewal | Invoice and cancellation confirmation |
| Replacement plan | Avoids an accidental coverage gap | Installer/source and intended provider |
Don't restore a suspicious quarantined item simply because the app is leaving. If a file may be a false positive, use the Intego false-positive and restore workflow while the detection context is still visible. Record only what support needs and keep private paths or samples out of public forums.
If Personal Backup is involved, confirm Time Machine or another recovery path before deleting tasks. Our backup comparison explains why a sync job isn't a backup and why the destination shouldn't be erased just because its utility is removed.
Uninstalling Intego doesn't cancel its subscription
Apple's current Mac app-removal guidance explicitly says that deleting or uninstalling an app doesn't cancel a subscription purchased with it. Stop the correct renewal in the account, processor or store and save the product/date confirmation before local removal makes the account context less convenient.
The Intego cancellation and refund guide separates future renewal, a recent posted charge, third-party seller terms and issuer escalation. Don't call a successful uninstaller a refund, and don't assume a refund request disabled the next renewal.
Uninstall current Intego ONE from its Help menu
Open the ONE dashboard, then use the Help menu in the Mac menu bar and choose Uninstall. Intego's current ONE uninstall guide says to review the message that associated files and data will be removed, confirm, and enter the Mac administrator password.
The workflow asks for the administrator password a second time to remove system extensions, described by Intego as including Full Disk Access and network permissions. Complete that supported prompt. Closing it midway can leave an ambiguous state in which the app is gone but its registered security or network component still needs attention.
The official screenshots use ONE 1.2.0 and warn that a newer interface can look different. If Help → Uninstall is absent, record the ONE version and macOS version and open a support ticket. Don't substitute the X9 disk image or a copied Terminal command for an undocumented ONE path.
Uninstall X9 with the latest Intego installer disk image
Download the current installer from the official Intego account/download route, open the disk image and double-click its Uninstall package. The current X9 guidance calls the latest installer important because VirusBarrier, NetBarrier, NetUpdate and shared components weren't designed to be removed by deleting their visible app bundles one by one.
The uninstaller lists installed Intego applications. Select the intended components, choose Uninstall and enter the Mac administrator password. Intego's current X9 getting-started guide documents this list-and-select model.
Restart when it finishes. A current Intego network troubleshooting article likewise tells users who uninstall an entire X9 bundle to select all, run the uninstaller and restart before reinstalling or judging the network state.
Select All is correct only when every listed X9 component should leave
Internet Security X9 normally pairs VirusBarrier with NetBarrier, while Premium Bundle X9 can also include Washing Machine, ContentBarrier and Personal Backup. Select All is appropriate for a complete X9 exit, but it isn't a neutral cleanup button when a backup or parental-control workflow must remain.
Write down the exact selected list before confirming. The ONE versus X9 map shows which functions moved into ONE and which stayed separate. A current ONE migration article says installing ONE removes legacy components except Privacy Protection and Personal Backup, so those two deserve an explicit second check.
Disconnect and uninstall standalone Privacy Protection inside its Settings
Disconnect the VPN first, open the three-dot menu, choose Settings, open Help and select Uninstall Intego Privacy Protection. The current Privacy Protection instructions say the final helper prompt needs the Mac administrator password, not the VPN account password.
This standalone VPN is one of the products that can remain after an X9-to-ONE migration. Don't call it a NetBarrier leftover. If the VPN was the reason networking failed, save the connected/disconnected and Network Filter state first, then restart and verify ordinary DNS and web access. The dedicated VPN guide owns protocol, credentials and connected-but-offline troubleshooting.
Remove the free VirusBarrier Scanner as an App Store app
Quit VirusBarrier Scanner, move it from Applications to Trash, authenticate if macOS asks and empty Trash. Intego documents that exact path in the current Scanner manual. It's different because the free Scanner is sandboxed and doesn't install the paid X9 real-time/firewall stack.
Open quarantine before removal and make a deliberate decision for anything important. Removing the scanner takes away its visible quarantine workflow. Don't use the paid X9 installer against a Scanner-only setup and don't interpret App Store re-download state as proof that a paid daemon or extension remains.
Personal Backup, ContentBarrier and other legacy utilities need their own decision
Intego's July 2026 ONE migration guidance says the ONE installer removes legacy components except Privacy Protection and Personal Backup. ContentBarrier is also outside the current ONE feature set. Inventory what still appears in Applications, account subscriptions and the X9 uninstaller.
Before removing parental controls, confirm that Apple Screen Time or another family workflow is ready and that no monitored user loses access unexpectedly. Before removing Personal Backup, preserve destination knowledge and test the replacement restore path. Separate billing records can remain even after every app is gone.
Quarantine, logs and support evidence can disappear before the problem is resolved
Capture the detection name, exact path, date, product version and any support ticket before uninstalling a broken scanner. If a file is clearly malicious, preserving its name/hash and case context is usually safer than restoring it to a live path. If it may be legitimate, complete the false-positive workflow first.
For a failed removal, a screenshot of the exact prompt and the state of Login Items & Extensions is more useful than a folder full of manually deleted files. Never post a serial number, administrator password, private log archive or unredacted billing record. Send sensitive evidence only through the official private ticket.
If manual deletion damaged X9, reinstall before uninstalling
| Failure state | Supported next action | Why | Avoid |
|---|---|---|---|
| X9 app/folder was deleted first | Reinstall same components, rerun latest uninstaller | Restores removal metadata/files | Deleting more Library paths |
| ONE has no Uninstall menu | Record version/macOS; official ticket | UI/version path may differ | Using X9 DMG by guess |
| Admin prompt rejects password | Use a Mac administrator account | VPN/Intego password is different | Sharing credentials |
| Extension prompt fails | Restart, capture exact state, support | Registration needs product-aware cleanup | Disabling SIP |
| App reports “in use” | Quit; restart; supported Safe Mode retry | Stops active component cleanly | Force-deleting system files |
| Managed Mac reinstalls component | Contact administrator | MDM may enforce it | Fighting management controls |
Intego's X9 article explicitly says that a partial manual removal should be repaired by reinstalling and then using the official uninstaller. This isn't busywork: antivirus and firewall products register background services and protected extensions that a missing app bundle can't cleanly unregister.
If macOS says Intego is in use, stop the app before escalating
Quit ONE, VirusBarrier, NetBarrier, NetUpdate and Privacy Protection through their normal menus, then retry the correct uninstaller. If the message returns, restart and run removal before reopening the applications. Don't force-quit an unfamiliar process and immediately delete its files.
Apple's current guidance permits Safe Mode when an app can't be removed because it remains in use. Use Safe Mode only to run the official Intego or Apple-supported removal path. It isn't permission to disable System Integrity Protection or erase protected extension directories.
A remaining NetBarrier or endpoint extension is evidence, not a deletion target
After restart, open System Settings → General → Login Items & Extensions. Apple's current settings reference identifies App Background Activity, Endpoint Security Extensions and Network Extensions. Also inspect System Settings → Network → Filters for an enabled Intego item.
If the whole firewall/antivirus scope was removed and an enabled Intego extension remains, capture the exact identifier and state. First confirm that Privacy Protection or another Intego product wasn't intentionally retained. Then use Intego Support or the reinstall-then-uninstall ladder; don't run `systemextensionsctl uninstall`, remove `/Library/SystemExtensions`, disable SIP or paste old `launchctl` commands.
If the internet fails after removal, preserve the network state before resetting it
Restart, confirm the active Wi-Fi/Ethernet interface, then test a known hostname and a direct network connection. Inspect Network Filters and VPN configuration for the removed scope. A disabled or stale filter can be more relevant than DNS, while a retained Privacy Protection installation means the VPN route still applies.
Intego's current network troubleshooting guide documents filters, NetBarrier, ContentBarrier, VPN and proxy branches before uninstall/reinstall. Don't reset every network location, delete all VPN profiles and flush unrelated settings at once; one change at a time preserves the cause.
Verify removal after restart from five independent views
| View | Pass condition | If it fails |
|---|---|---|
| Applications/menu bar | Removed apps and NetUpdate item absent | Confirm scope; rerun supported uninstaller |
| Activity Monitor | No active process for removed product after login settles | Record process; check retained products |
| Login Items & Extensions | No enabled removed-scope background/endpoint/network item | Capture exact state; support |
| Network Filters | No enabled removed firewall/VPN filter | Check retained VPN; support path |
| Connectivity | DNS/web access works; no repeated prompt | One-branch network diagnosis |
| Protection | Intended provider is active, updated and healthy | Fix handoff before risky activity |
| Billing/account | Renewal/seat state matches intent | Resolve separately with seller/account |
An absent Applications icon is only one view. A complete result combines app state, extension/filter registration, processes, working networking, replacement protection and a separately verified account outcome.
Don't turn a supported uninstall into a manual system-cleaning experiment
Don't run broad `sudo rm -rf` commands, delete `/Library/SystemExtensions`, disable SIP, use `systemextensionsctl uninstall`, reset all TCC permissions or remove every `com.intego.*` item. Those actions can damage shared components, retained products and macOS registration while destroying the evidence needed to repair the uninstaller.
Third-party cleaners can also misclassify shared or separately retained components. The official uninstaller comes first because both Apple and Intego identify it as the route that owns login items, extensions and data outside the visible app bundle. A specific leftover that survives the supported route deserves a specific diagnosis.
Ten-step supported Intego removal workflow
- Identify the installed Intego products. Open Applications and the Intego account, then distinguish current ONE, an X9 bundle, the Mac App Store VirusBarrier Scanner, standalone Privacy Protection and any Personal Backup or ContentBarrier utility. The removal path and retained components depend on that inventory.
- Separate billing from software removal. Turn off the intended renewal and resolve any eligible refund through the seller before removing account evidence. Uninstalling, deauthorizing a Mac and cancelling a subscription are separate actions and require separate confirmation.
- Preserve security and recovery evidence. Review quarantine, detection history, support tickets, backup tasks and VPN state. Record needed paths, hashes and screenshots without restoring an unverified threat or publishing a serial number, administrator credential or full billing record.
- Prepare the protection handoff. Confirm macOS is updated and decide whether the Mac will use its built-in security layers or a replacement product. Download the intended replacement if needed, but don't run two real-time security suites together.
- Run the product-specific official uninstaller. Use Help and Uninstall inside current ONE; the latest installer disk image for X9; Settings, Help and Uninstall for Privacy Protection; or quit and move the App Store Scanner to Trash. Enter only the Mac administrator password requested by the supported workflow.
- Remove only the intended components. For X9, select the apps that should leave or Select All only when the whole legacy bundle is going. Don't misclassify separately retained Privacy Protection, Personal Backup or ContentBarrier as leftovers.
- Restart the Mac. Restart after the uninstaller finishes so background services, endpoint and network extensions, NetUpdate and network-filter registration can settle. Don't use a missing app icon as the final proof.
- Verify extensions, processes and networking. Check Applications, the menu bar, Activity Monitor, Login Items & Extensions and Network Filters for the removed scope. Confirm ordinary DNS and web access work and no removed-product prompt returns.
- Use the supported recovery ladder if needed. If removal failed, capture the exact step and message, restart and retry. Reinstall the same official X9 components before rerunning its uninstaller; for an unavailable ONE menu or extension-removal failure, send the evidence to Intego Support instead of deleting protected directories.
- Verify replacement protection and billing separately. Confirm the intended protection provider updates and reports a healthy state, then recheck the Intego account or processor for the renewal outcome. Each final state needs its own evidence.
Intego uninstall FAQ
What is the correct way to uninstall Intego ONE?
Open the Intego ONE dashboard, use the Help menu in the Mac menu bar and choose Uninstall. Confirm the data-removal message, enter the Mac administrator password and complete the second authorization that removes system extensions. The current official guide is written for ONE 1.2.0, so labels can move in a newer interface.
How do I completely remove Intego X9?
Download the latest official Intego installer disk image, open its Uninstall package, select the intended installed X9 applications and authorize the removal. Use Select All only when every X9 component should leave, then restart. If files were deleted manually first, Intego says to reinstall the product and use the official uninstaller.
Why is the NetBarrier extension still visible after uninstalling?
First restart and confirm that no other Intego product requiring a network component remains. Check General, Login Items & Extensions and Network Filters. If an enabled Intego extension still belongs to the removed scope, capture its exact name and state and contact Intego Support; don't delete /Library/SystemExtensions, disable SIP or run copied systemextensionsctl commands.
Does uninstalling Intego cancel my subscription?
No. Apple and Intego treat app removal and recurring billing as separate. Turn off renewal in the Intego account or the processor/store that sold the plan, save the confirmation and submit any eligible refund request separately. Deauthorizing a device also doesn't cancel billing.
Do I need to deauthorize Intego before uninstalling?
Deauthorization matters when transferring or freeing an X9 license seat. Intego's X9 guidance uses Deauthorize VirusBarrier before removing a working installation, and the account can remove an unavailable old Mac. A permanent uninstall that isn't a transfer still needs its billing state checked separately.
How do I uninstall the free VirusBarrier Scanner?
Quit VirusBarrier Scanner, move it from Applications to Trash, authenticate if macOS asks and empty Trash. That's the current App Store Scanner route. Don't use the paid X9 bundle uninstaller for a Scanner-only installation, and decide what to do with quarantine before deleting its recovery interface.
How do I uninstall Intego Privacy Protection VPN?
Disconnect the VPN, open its three-dot menu, choose Settings, open Help and select Uninstall Intego Privacy Protection. Complete the macOS helper prompt with the Mac administrator password, not the VPN account password, then restart and verify normal network access.
What should I do if Intego won't uninstall?
Record the product, macOS version, exact message and failed step. Quit the apps, restart and retry the correct official path. For a damaged X9 install, reinstall the same official components and rerun the bundled uninstaller. If ONE lacks the Help command or can't remove extensions, use official support rather than manual system-file deletion.
Can I delete every com.intego file manually?
No. Broad name searches can mix shared components, intentionally retained products, preferences, logs and protected system extensions. Deleting the files that make the uninstaller work can leave registration behind. Run the supported removal and restart first; investigate a specific remaining item with Intego Support instead of deleting every matching path.
How do I know Intego is completely removed?
After restart, the intended apps and menu items should be absent, no enabled Intego background, endpoint or network component should remain for the removed scope, no related process should stay active, and normal networking should work. Separately verify the replacement protection and the subscription state. Retained Intego VPN, backup or parental-control products aren't leftovers.
Bottom line: use the owner of each component, then prove the handoff
ONE leaves through its Help menu, X9 through the latest installer disk image, the free Scanner through the App Store-style Trash route and standalone Privacy Protection through its own Settings. Preserve evidence, remove only the intended scope, restart and verify extensions, processes, networking and replacement protection. Billing and device seats remain separate jobs.