We review products independently, but we may earn commissions if you make a purchase using affiliate links on our website. Also note that we are not antivirus software; we only provide information about some products.

Intego removal guide · checked August 8, 2026

How to Uninstall Intego Completely Without Breaking Your Mac

Intego ONE, X9, the free Scanner and standalone VPN use different removal paths. Preserve billing and security evidence, run the correct uninstaller, restart, then verify extensions, networking and replacement protection.

ONE + X9 separatedNo destructive commandsExtensions verifiedBilling checked separately

Quick answer: For current Intego ONE, open the dashboard and choose Help → Uninstall. For X9, open the latest official installer disk image and run its Uninstall package. Quit and move the free VirusBarrier Scanner to Trash; disconnect standalone Privacy Protection and uninstall it from Settings → Help. Cancel billing separately, restart the Mac and verify extensions, filters, networking and replacement protection.

Choose the route by product, not by the word “Intego”

Intego uninstall routes for ONE, X9, VirusBarrier Scanner and Privacy Protection VPN followed by restart and verification
Editorial product-route diagram, not an Intego or macOS screen. Each install model has its own supported removal control; all routes end with restart and verification.
Installed productSupported first routeDon't start withShared finish
Intego ONEONE dashboard → Help → UninstallDragging the app to TrashRestart; verify extensions and protection
Intego X9 bundleLatest installer DMG → Uninstall packageDeleting VirusBarrier/NetBarrier foldersRestart; verify NetUpdate and filters are gone
VirusBarrier ScannerQuit → Applications → Move to TrashX9 bundle uninstallerEmpty Trash; restart; decide quarantine first
Privacy Protection VPNDisconnect → Settings → Help → UninstallRemoving a network filter by forceRestart; verify normal network access

Current Intego software spans a unified ONE app, separate X9 utilities, a sandboxed App Store scanner and a separately installed VPN. Advice that begins “find everything named Intego and delete it” skips the product identity that macOS needs to unregister services and extensions safely.

Use the route that owns the component. The common finish is just as important: restart, inspect the remaining scope and prove that networking and the intended replacement protection are healthy.

“Completely removed” is a verified scope, not a spotless keyword search

OutcomeWhere it's controlledProofNot the same as
Software removedProduct-specific uninstallerApps/components absent after restartSubscription cancelled
Renewal stoppedAccount, processor or storeExact plan/date confirmationLocal software removed
License seat freedDeauthorize/device controlsOld Mac removed from seat listBilling stopped
Data decision completeQuarantine/backup/support workflowNeeded evidence preserved safelyEvery cache erased
Protection handoff completemacOS/replacement providerHealthy update and status checkAn app icon exists

For this guide, complete means that the products you chose to remove no longer have active apps, menu items, background work, endpoint/network extensions or filters after restart. It doesn't mean erasing every receipt, macOS log entry or intentionally retained Intego utility.

That distinction protects people who keep Personal Backup, ContentBarrier or Privacy Protection. A process or extension belonging to a retained product isn't a leftover; an enabled NetBarrier extension after the entire firewall scope was removed is a reason to investigate.

Preserve the things the uninstaller can't decide for you

Before removalWhy it mattersSafe evidence
Product inventoryChooses ONE/X9/Scanner/VPN routeApplications list and account products
Quarantine reviewRemoval can take away the recovery UIDetection, path, hash, support case
Backup tasksPersonal Backup may remain separatelyDestination, last successful run, restore test
Network stateVPN/filter failures need a baselineConnected interface, DNS and filter state
License transferOld Mac may occupy an X9 seatDevice name and deauthorization result
Billing recordUninstall doesn't stop renewalInvoice and cancellation confirmation
Replacement planAvoids an accidental coverage gapInstaller/source and intended provider

Don't restore a suspicious quarantined item simply because the app is leaving. If a file may be a false positive, use the Intego false-positive and restore workflow while the detection context is still visible. Record only what support needs and keep private paths or samples out of public forums.

If Personal Backup is involved, confirm Time Machine or another recovery path before deleting tasks. Our backup comparison explains why a sync job isn't a backup and why the destination shouldn't be erased just because its utility is removed.

Uninstalling Intego doesn't cancel its subscription

Apple's current Mac app-removal guidance explicitly says that deleting or uninstalling an app doesn't cancel a subscription purchased with it. Stop the correct renewal in the account, processor or store and save the product/date confirmation before local removal makes the account context less convenient.

The Intego cancellation and refund guide separates future renewal, a recent posted charge, third-party seller terms and issuer escalation. Don't call a successful uninstaller a refund, and don't assume a refund request disabled the next renewal.

Deauthorize before removal when the real goal is a license transfer

Intego's current X9 uninstall article tells owners who plan to reinstall later to use VirusBarrier → Deauthorize VirusBarrier before removal. It says the action works across the installed Intego software and doesn't need to be repeated for every X9 utility.

If the old Mac is unavailable, current transfer guidance routes the owner through the account device list. Our account, serial and device guide covers ONE activation and X9 seats separately. Deauthorization frees a seat; it doesn't stop recurring billing.

Uninstall current Intego ONE from its Help menu

Open the ONE dashboard, then use the Help menu in the Mac menu bar and choose Uninstall. Intego's current ONE uninstall guide says to review the message that associated files and data will be removed, confirm, and enter the Mac administrator password.

The workflow asks for the administrator password a second time to remove system extensions, described by Intego as including Full Disk Access and network permissions. Complete that supported prompt. Closing it midway can leave an ambiguous state in which the app is gone but its registered security or network component still needs attention.

The official screenshots use ONE 1.2.0 and warn that a newer interface can look different. If Help → Uninstall is absent, record the ONE version and macOS version and open a support ticket. Don't substitute the X9 disk image or a copied Terminal command for an undocumented ONE path.

Uninstall X9 with the latest Intego installer disk image

Download the current installer from the official Intego account/download route, open the disk image and double-click its Uninstall package. The current X9 guidance calls the latest installer important because VirusBarrier, NetBarrier, NetUpdate and shared components weren't designed to be removed by deleting their visible app bundles one by one.

The uninstaller lists installed Intego applications. Select the intended components, choose Uninstall and enter the Mac administrator password. Intego's current X9 getting-started guide documents this list-and-select model.

Restart when it finishes. A current Intego network troubleshooting article likewise tells users who uninstall an entire X9 bundle to select all, run the uninstaller and restart before reinstalling or judging the network state.

Select All is correct only when every listed X9 component should leave

Internet Security X9 normally pairs VirusBarrier with NetBarrier, while Premium Bundle X9 can also include Washing Machine, ContentBarrier and Personal Backup. Select All is appropriate for a complete X9 exit, but it isn't a neutral cleanup button when a backup or parental-control workflow must remain.

Write down the exact selected list before confirming. The ONE versus X9 map shows which functions moved into ONE and which stayed separate. A current ONE migration article says installing ONE removes legacy components except Privacy Protection and Personal Backup, so those two deserve an explicit second check.

Disconnect and uninstall standalone Privacy Protection inside its Settings

Disconnect the VPN first, open the three-dot menu, choose Settings, open Help and select Uninstall Intego Privacy Protection. The current Privacy Protection instructions say the final helper prompt needs the Mac administrator password, not the VPN account password.

This standalone VPN is one of the products that can remain after an X9-to-ONE migration. Don't call it a NetBarrier leftover. If the VPN was the reason networking failed, save the connected/disconnected and Network Filter state first, then restart and verify ordinary DNS and web access. The dedicated VPN guide owns protocol, credentials and connected-but-offline troubleshooting.

Remove the free VirusBarrier Scanner as an App Store app

Quit VirusBarrier Scanner, move it from Applications to Trash, authenticate if macOS asks and empty Trash. Intego documents that exact path in the current Scanner manual. It's different because the free Scanner is sandboxed and doesn't install the paid X9 real-time/firewall stack.

Open quarantine before removal and make a deliberate decision for anything important. Removing the scanner takes away its visible quarantine workflow. Don't use the paid X9 installer against a Scanner-only setup and don't interpret App Store re-download state as proof that a paid daemon or extension remains.

Personal Backup, ContentBarrier and other legacy utilities need their own decision

Intego's July 2026 ONE migration guidance says the ONE installer removes legacy components except Privacy Protection and Personal Backup. ContentBarrier is also outside the current ONE feature set. Inventory what still appears in Applications, account subscriptions and the X9 uninstaller.

Before removing parental controls, confirm that Apple Screen Time or another family workflow is ready and that no monitored user loses access unexpectedly. Before removing Personal Backup, preserve destination knowledge and test the replacement restore path. Separate billing records can remain even after every app is gone.

Quarantine, logs and support evidence can disappear before the problem is resolved

Capture the detection name, exact path, date, product version and any support ticket before uninstalling a broken scanner. If a file is clearly malicious, preserving its name/hash and case context is usually safer than restoring it to a live path. If it may be legitimate, complete the false-positive workflow first.

For a failed removal, a screenshot of the exact prompt and the state of Login Items & Extensions is more useful than a folder full of manually deleted files. Never post a serial number, administrator password, private log archive or unredacted billing record. Send sensitive evidence only through the official private ticket.

If manual deletion damaged X9, reinstall before uninstalling

Failure stateSupported next actionWhyAvoid
X9 app/folder was deleted firstReinstall same components, rerun latest uninstallerRestores removal metadata/filesDeleting more Library paths
ONE has no Uninstall menuRecord version/macOS; official ticketUI/version path may differUsing X9 DMG by guess
Admin prompt rejects passwordUse a Mac administrator accountVPN/Intego password is differentSharing credentials
Extension prompt failsRestart, capture exact state, supportRegistration needs product-aware cleanupDisabling SIP
App reports “in use”Quit; restart; supported Safe Mode retryStops active component cleanlyForce-deleting system files
Managed Mac reinstalls componentContact administratorMDM may enforce itFighting management controls

Intego's X9 article explicitly says that a partial manual removal should be repaired by reinstalling and then using the official uninstaller. This isn't busywork: antivirus and firewall products register background services and protected extensions that a missing app bundle can't cleanly unregister.

If macOS says Intego is in use, stop the app before escalating

Quit ONE, VirusBarrier, NetBarrier, NetUpdate and Privacy Protection through their normal menus, then retry the correct uninstaller. If the message returns, restart and run removal before reopening the applications. Don't force-quit an unfamiliar process and immediately delete its files.

Apple's current guidance permits Safe Mode when an app can't be removed because it remains in use. Use Safe Mode only to run the official Intego or Apple-supported removal path. It isn't permission to disable System Integrity Protection or erase protected extension directories.

A remaining NetBarrier or endpoint extension is evidence, not a deletion target

After restart, open System Settings → General → Login Items & Extensions. Apple's current settings reference identifies App Background Activity, Endpoint Security Extensions and Network Extensions. Also inspect System Settings → Network → Filters for an enabled Intego item.

If the whole firewall/antivirus scope was removed and an enabled Intego extension remains, capture the exact identifier and state. First confirm that Privacy Protection or another Intego product wasn't intentionally retained. Then use Intego Support or the reinstall-then-uninstall ladder; don't run `systemextensionsctl uninstall`, remove `/Library/SystemExtensions`, disable SIP or paste old `launchctl` commands.

If the internet fails after removal, preserve the network state before resetting it

Restart, confirm the active Wi-Fi/Ethernet interface, then test a known hostname and a direct network connection. Inspect Network Filters and VPN configuration for the removed scope. A disabled or stale filter can be more relevant than DNS, while a retained Privacy Protection installation means the VPN route still applies.

Intego's current network troubleshooting guide documents filters, NetBarrier, ContentBarrier, VPN and proxy branches before uninstall/reinstall. Don't reset every network location, delete all VPN profiles and flush unrelated settings at once; one change at a time preserves the cause.

Verify removal after restart from five independent views

ViewPass conditionIf it fails
Applications/menu barRemoved apps and NetUpdate item absentConfirm scope; rerun supported uninstaller
Activity MonitorNo active process for removed product after login settlesRecord process; check retained products
Login Items & ExtensionsNo enabled removed-scope background/endpoint/network itemCapture exact state; support
Network FiltersNo enabled removed firewall/VPN filterCheck retained VPN; support path
ConnectivityDNS/web access works; no repeated promptOne-branch network diagnosis
ProtectionIntended provider is active, updated and healthyFix handoff before risky activity
Billing/accountRenewal/seat state matches intentResolve separately with seller/account

An absent Applications icon is only one view. A complete result combines app state, extension/filter registration, processes, working networking, replacement protection and a separately verified account outcome.

Don't turn a supported uninstall into a manual system-cleaning experiment

Don't run broad `sudo rm -rf` commands, delete `/Library/SystemExtensions`, disable SIP, use `systemextensionsctl uninstall`, reset all TCC permissions or remove every `com.intego.*` item. Those actions can damage shared components, retained products and macOS registration while destroying the evidence needed to repair the uninstaller.

Third-party cleaners can also misclassify shared or separately retained components. The official uninstaller comes first because both Apple and Intego identify it as the route that owns login items, extensions and data outside the visible app bundle. A specific leftover that survives the supported route deserves a specific diagnosis.

Ten-step supported Intego removal workflow

  1. Identify the installed Intego products. Open Applications and the Intego account, then distinguish current ONE, an X9 bundle, the Mac App Store VirusBarrier Scanner, standalone Privacy Protection and any Personal Backup or ContentBarrier utility. The removal path and retained components depend on that inventory.
  2. Separate billing from software removal. Turn off the intended renewal and resolve any eligible refund through the seller before removing account evidence. Uninstalling, deauthorizing a Mac and cancelling a subscription are separate actions and require separate confirmation.
  3. Preserve security and recovery evidence. Review quarantine, detection history, support tickets, backup tasks and VPN state. Record needed paths, hashes and screenshots without restoring an unverified threat or publishing a serial number, administrator credential or full billing record.
  4. Prepare the protection handoff. Confirm macOS is updated and decide whether the Mac will use its built-in security layers or a replacement product. Download the intended replacement if needed, but don't run two real-time security suites together.
  5. Run the product-specific official uninstaller. Use Help and Uninstall inside current ONE; the latest installer disk image for X9; Settings, Help and Uninstall for Privacy Protection; or quit and move the App Store Scanner to Trash. Enter only the Mac administrator password requested by the supported workflow.
  6. Remove only the intended components. For X9, select the apps that should leave or Select All only when the whole legacy bundle is going. Don't misclassify separately retained Privacy Protection, Personal Backup or ContentBarrier as leftovers.
  7. Restart the Mac. Restart after the uninstaller finishes so background services, endpoint and network extensions, NetUpdate and network-filter registration can settle. Don't use a missing app icon as the final proof.
  8. Verify extensions, processes and networking. Check Applications, the menu bar, Activity Monitor, Login Items & Extensions and Network Filters for the removed scope. Confirm ordinary DNS and web access work and no removed-product prompt returns.
  9. Use the supported recovery ladder if needed. If removal failed, capture the exact step and message, restart and retry. Reinstall the same official X9 components before rerunning its uninstaller; for an unavailable ONE menu or extension-removal failure, send the evidence to Intego Support instead of deleting protected directories.
  10. Verify replacement protection and billing separately. Confirm the intended protection provider updates and reports a healthy state, then recheck the Intego account or processor for the renewal outcome. Each final state needs its own evidence.

Intego uninstall FAQ

What is the correct way to uninstall Intego ONE?

Open the Intego ONE dashboard, use the Help menu in the Mac menu bar and choose Uninstall. Confirm the data-removal message, enter the Mac administrator password and complete the second authorization that removes system extensions. The current official guide is written for ONE 1.2.0, so labels can move in a newer interface.

How do I completely remove Intego X9?

Download the latest official Intego installer disk image, open its Uninstall package, select the intended installed X9 applications and authorize the removal. Use Select All only when every X9 component should leave, then restart. If files were deleted manually first, Intego says to reinstall the product and use the official uninstaller.

Why is the NetBarrier extension still visible after uninstalling?

First restart and confirm that no other Intego product requiring a network component remains. Check General, Login Items & Extensions and Network Filters. If an enabled Intego extension still belongs to the removed scope, capture its exact name and state and contact Intego Support; don't delete /Library/SystemExtensions, disable SIP or run copied systemextensionsctl commands.

Does uninstalling Intego cancel my subscription?

No. Apple and Intego treat app removal and recurring billing as separate. Turn off renewal in the Intego account or the processor/store that sold the plan, save the confirmation and submit any eligible refund request separately. Deauthorizing a device also doesn't cancel billing.

Do I need to deauthorize Intego before uninstalling?

Deauthorization matters when transferring or freeing an X9 license seat. Intego's X9 guidance uses Deauthorize VirusBarrier before removing a working installation, and the account can remove an unavailable old Mac. A permanent uninstall that isn't a transfer still needs its billing state checked separately.

How do I uninstall the free VirusBarrier Scanner?

Quit VirusBarrier Scanner, move it from Applications to Trash, authenticate if macOS asks and empty Trash. That's the current App Store Scanner route. Don't use the paid X9 bundle uninstaller for a Scanner-only installation, and decide what to do with quarantine before deleting its recovery interface.

How do I uninstall Intego Privacy Protection VPN?

Disconnect the VPN, open its three-dot menu, choose Settings, open Help and select Uninstall Intego Privacy Protection. Complete the macOS helper prompt with the Mac administrator password, not the VPN account password, then restart and verify normal network access.

What should I do if Intego won't uninstall?

Record the product, macOS version, exact message and failed step. Quit the apps, restart and retry the correct official path. For a damaged X9 install, reinstall the same official components and rerun the bundled uninstaller. If ONE lacks the Help command or can't remove extensions, use official support rather than manual system-file deletion.

Can I delete every com.intego file manually?

No. Broad name searches can mix shared components, intentionally retained products, preferences, logs and protected system extensions. Deleting the files that make the uninstaller work can leave registration behind. Run the supported removal and restart first; investigate a specific remaining item with Intego Support instead of deleting every matching path.

How do I know Intego is completely removed?

After restart, the intended apps and menu items should be absent, no enabled Intego background, endpoint or network component should remain for the removed scope, no related process should stay active, and normal networking should work. Separately verify the replacement protection and the subscription state. Retained Intego VPN, backup or parental-control products aren't leftovers.

Bottom line: use the owner of each component, then prove the handoff

ONE leaves through its Help menu, X9 through the latest installer disk image, the free Scanner through the App Store-style Trash route and standalone Privacy Protection through its own Settings. Preserve evidence, remove only the intended scope, restart and verify extensions, processes, networking and replacement protection. Billing and device seats remain separate jobs.