We review products independently, but we may earn commissions if you make a purchase using affiliate links on our website. Also note that we are not antivirus software; we only provide information about some products.

Independent second-opinion review · Current product separated from retired names · Updated August 3, 2026

Trend Micro HouseCall review: a careful second opinion

HouseCall is useful when you want one more scanner to inspect a Windows PC without buying another suite. Its value is the focused second opinion; its limit is equally important: it isn't real-time protection, a clean result isn't a health certificate, and an isolated detection needs evidence before you restore or erase the file.

Windows scope verifiedNo borrowed lab scoreFalse-positive path included

Our verdict: HouseCall is one of the easier free ways to ask a second engine to inspect a Windows computer. Start with Quick Scan, move to Full only when symptoms or the first result justify it, and use Custom for a known file, folder or drive. Keep the installed antivirus running, save the detection name and path before cleanup, and escalate to Microsoft Defender Offline if suspected malware prevents an in-Windows scan. Don't transfer paid Trend Micro lab scores to HouseCall, and don't confuse it with the retired HouseCall for Home Networks.

HouseCall verdict in 60 seconds

HouseCall fills a narrow but useful role. It gives a Windows user an on-demand Trend Micro scan without pretending to become the computer's permanent security system. That makes it a sensible check after a suspicious download, an unexpected browser redirect or a disagreement with the resident antivirus.

The scanner is less useful when the user expects certainty from one green or red screen. No current independent lab result surfaced for HouseCall as a complete product, so we don't borrow scores from Trend Micro Maximum Security. A clean scan narrows the investigation; a detection starts an evidence and remediation process.

QuestionAnswerPractical meaning
Current costFreeDownload from the official US page
Current platformWindowsDon't rely on old Mac tables
Protection typeOn demandNot continuous or scheduled protection
Best roleSecond opinionKeep the resident antivirus active
Best first scanQuickEscalate only when evidence warrants it

What Trend Micro HouseCall is now

The current US HouseCall page presents a free, browser-independent, on-demand scanner for Windows. It offers Quick, Full System and Custom scans, can report threats and is intended to work beside an existing security program. That concise definition is the safest anchor because old articles use the HouseCall name for several different products.

HouseCall doesn't add a resident behavior monitor, scheduled scans or a permanent web-protection layer. If those are the job, compare the full product in our Trend Micro antivirus review or keep Microsoft Defender enabled. HouseCall is closer to a diagnostic visit than a security guard who stays in the building.

HouseCall isn't HouseCall for Home Networks

Search results still mix the current scanner with HouseCall for Home Networks, a separate tool that inspected devices on a local network. Trend Micro's end-of-life notice says support for that product ended July 31, 2024 and its service ended November 30, 2024. References to a Mac build, network maps or device-information handling often belong to that retired product.

This distinction changes more than platform compatibility. A privacy notice written for network discovery shouldn't be pasted onto the current file scanner, and an old Home Networks requirement table shouldn't decide whether today's HouseCall runs. We label historical material when it explains a leftover file or confusing search result, but the live US HouseCall page controls the current recommendation.

How to download the legitimate HouseCall scanner

Begin at Trend Micro's HTTPS product page or its current free-tools catalog, which lists HouseCall as a Windows virus scanner. Avoid software portals that wrap the launcher in their own installer, old version archives and search ads whose destination isn't a Trend Micro domain. The product is free, so there's no reason to accept a third-party download manager.

Before opening the file, inspect the address bar, downloaded filename and Windows publisher prompt. A valid publisher is useful evidence, though it isn't a substitute for checking the domain and file source. If the prompt names an unrelated publisher, the browser rewrote the extension or the download arrived in an archive with extra executables, stop and discard that copy.

Why an “online scanner” downloads a launcher

HouseCall doesn't scan the computer inside a browser tab. Trend Micro's documented scan flow begins with a Windows launcher, a licence acceptance step and component download before scan selection. “Online” describes its Internet-dependent delivery and update model, while “browser-independent” means the scan isn't tied to Chrome, Edge or another browser.

That design explains why a newly downloaded launcher can still fail when DNS, a proxy, a filtered network or an incorrect system clock interferes with component retrieval. It also means an old copied launcher isn't a self-contained rescue environment. Download a current copy from the official page, allow it to retrieve current components and don't assume that a file from years ago contains useful definitions.

Current platform: Windows, not a hidden Mac edition

The live US page offers a Windows download and the current free-tools catalog labels the product as a Windows scanner. We found no current Mac HouseCall download on those primary pages. That's a stronger signal than a legacy review, localized result or cached system-requirements table whose product identity is unclear.

Mac users should use a current macOS security workflow rather than trying to run an archived HouseCall package. Our Mac antivirus guide separates resident protection from on-demand cleanup, and the Mac malware-removal guide covers browser profiles, login items and suspicious apps. Android and iPhone references in old HouseCall search results don't establish current mobile apps either.

Quick, Full or Custom: choose by the question

Quick Scan checks critical and high-probability areas. Full System Scan extends the inspection across files and folders and may take hours. Custom Scan limits the work to a selected file, folder or drive. The right choice isn't automatically the largest scan; it's the smallest scope that answers the current question without hiding relevant symptoms.

Start Quick when the concern is general and Windows still behaves normally. Choose Custom for one downloaded archive, USB drive or folder with a known incident. Use Full when the first pass finds something, symptoms remain unexplained, persistence is plausible or you need broader coverage before closing the case.

HouseCall Quick Full and Custom scan decision map with scope and escalation guidance
Choose the scan by evidence and scope. Drive size, file density, connection speed and the computer itself make fixed completion-time promises unreliable.

Prepare the PC without weakening its defenses

Save open work, connect a laptop to power and make sure important files have a current backup. Record the symptom that triggered the scan: exact popup text, time, browser, process name, download source or changed setting. That baseline prevents a vague “it still feels wrong” verdict after an hour of scanning.

Leave Microsoft Defender or the installed antivirus active unless Trend Micro provides a specific, current conflict instruction for the exact product. Closing ordinary applications can reduce file churn, but broad exclusions and disabled firewalls create a larger problem than a slow second-opinion scan. If sensitive work can't be interrupted, schedule the scan for a period when a restart and remediation are possible.

When Quick Scan is the right first move

Quick Scan is designed for critical and high-probability areas, so it's the efficient opening move after a suspicious link, a browser warning or a resident-antivirus disagreement when there are no signs of deep persistence. It gives you a fast directional result without reading every archive and media folder.

A clean Quick result doesn't prove that every file and drive is safe. If the symptom points to one location, follow with Custom there. If startup behavior, repeated detections or unexplained account activity suggest a broader compromise, move to Full and pair the file scan with account, browser and recovery checks rather than repeating Quick until it says what you hope to see.

When Full System Scan is worth the wait

Full System Scan is appropriate when Quick found a threat, the suspected path is unknown, symptoms survive the first remediation or the PC has handled an untrusted drive. Trend Micro warns that a full scan may take hours. File count, archive density, storage speed, current load and the network needed for components all matter more than a universal time estimate.

Don't cancel merely because progress appears uneven around a large archive or busy directory, but do note the filename and time if the interface exposes them. A repeatable stop at the same path is a troubleshooting clue. If the computer becomes unresponsive, preserve the evidence, restart safely and narrow the problem with Custom rather than making unsupported claims about a fixed “normal” duration.

Custom Scan is best for a known file or drive

Custom Scan is the precise choice when the concern arrived as one installer, document, compressed archive, download folder or removable drive. It avoids turning a contained question into a whole-computer wait and makes the result easier to connect to the incident. Scan the surrounding folder when companion files or an unpacked payload are plausible.

Precision can also become tunnel vision. A malicious installer may have already created files elsewhere, changed a startup location or opened a browser session. If the file was executed, the Custom result should be followed by Quick or Full based on symptoms, plus the resident product's history and a check of recent account activity.

How to run HouseCall safely, step by step

Download a fresh launcher from Trend Micro, confirm the publisher prompt and allow the current components to arrive. Read the licence screen, choose the scan type based on the incident and let the first pass finish before approving cleanup. If HouseCall displays a detection, pause long enough to capture its exact name, path and proposed action.

After remediation, restart when requested and run a targeted confirmation scan. Then check the resident antivirus history, Windows Security status, browser extensions and the original symptom. Our broader Windows 11 malware-removal guide covers persistence and account steps that an on-demand file scan can't complete by itself.

How to read a HouseCall result

A result has more value when it can be reproduced and traced. Capture the detection family or heuristic name, complete path, action HouseCall proposes, scan type and timestamp. A generic label attached to a newly compiled utility is a different investigation from a known credential stealer in a temporary browser directory, even if both screens use the same red color.

“No threats found” means the selected HouseCall scope didn't report a threat under the current components and conditions. It doesn't verify passwords, browser sessions, cloud accounts, router settings or every file outside the chosen Custom target. “Threat found” is evidence to isolate and investigate, not permission to delete the only copy of a business document without preserving context.

What to do before you clean a detection

First, save the detection name and full path. Then check the file's digital signature, publisher and official source, compare the resident antivirus result and preserve an evidence copy only if that can be done without opening or spreading the file. A legitimate signed publisher doesn't guarantee safety, but an unsigned executable from an unrelated mirror raises the risk substantially.

Clean or quarantine when the source is untrusted, the behavior matches the alert or several credible signals agree. Keep a disputed file isolated and use Trend Micro's review path when it belongs to a legitimate application; its separate suspicious or undetected sample route covers the opposite case. If the file handles sensitive work, involve the software vendor or an administrator before restoring it to production.

HouseCall detection response workflow for saving the path checking signatures scanning with resident antivirus and escalating safely
A detection is the start of a decision. Preserve the name and path, keep the file isolated and use independently controlled evidence before restoring or deleting it.

False positives are possible, but disagreement isn't proof

Trend Micro provides an official false-positive collection and submission workflow. Use it when a legitimate application, website or business file is blocked and you can document the source, detection and reason for trust. Keep the disputed object isolated until the vendor or an administrator has enough evidence to decide.

A May 2026 SyncTERM community thread reported generic TrendMicro and TrendMicro-HouseCall detections on a new build. That's useful directional evidence that new or uncommon software can trigger investigation; it isn't independent proof that this file was safe or that every generic HouseCall alert is wrong.

Don't decide from the VirusTotal count alone

VirusTotal aggregates engine results under different names, versions, settings and update timings. One detection may be a false positive, the first sign of an emerging threat or a policy label for riskware. Forty clean engines don't vote a dangerous file safe, and several generic alerts don't automatically prove malicious behavior.

Use the count as one input. Weight provenance, signature, hash, expected behavior, creation date, vendor reputation and whether the file was obtained from the developer's controlled channel. Don't upload confidential documents or proprietary binaries to a public multi-engine service unless the owner and policy allow it.

Keep the resident antivirus active

Trend Micro says HouseCall can work with an existing security program and doesn't substitute for proactive protection. That's the correct architecture: one supported resident antivirus monitors files and behavior continuously, while HouseCall provides an occasional on-demand opinion. A current r/antivirus troubleshooting thread likewise mentions HouseCall among second-opinion tools, but community positioning is directional rather than a performance test.

Running two full real-time antivirus suites can create filter-driver conflicts, duplicate prompts and performance problems. HouseCall avoids most of that issue because its role is on demand, but the boundary still matters. Our two-antivirus guide explains why “more engines” isn't automatically “more protection,” and the free scan doesn't become a reason to let the main subscription expire or disable Defender.

HouseCall versus Microsoft Defender

Microsoft Defender Antivirus is built into current Windows and provides resident protection when another supported provider isn't active. HouseCall is a separate scanner used deliberately. The practical comparison is therefore not which one should permanently win; Defender supplies continuity, while HouseCall can challenge or corroborate a file-level result.

If Defender is the resident product, check Windows Security for current definitions, active protection and protection history before opening HouseCall. A second opinion is most useful when the first product is healthy enough to provide its own independent record. Read our current Defender review before replacing that continuous layer with a scan-only tool.

Use Microsoft Defender Offline when Windows can't be trusted

If suspected malware blocks HouseCall, repeatedly kills scanners or returns after cleanup, an in-Windows second opinion may be the wrong layer. Microsoft's Defender Offline guidance restarts the computer into the Windows Recovery Environment and scans without loading the normal Windows session. Save work first because the process restarts the device.

Offline scanning is an escalation, not a decorative extra scan. Use it when persistence or interference is plausible, then inspect Protection history after Windows returns. If encryption, unauthorized remote access or account theft is suspected, disconnect the affected device as appropriate and handle credential recovery from a separate trusted device.

HouseCall won't start, download components or update

Start with the delivery path: download a fresh copy from Trend Micro, verify Internet access and system date/time, then test without an unusual proxy, captive portal or VPN route. Check the resident antivirus log before assuming it silently blocked HouseCall. Don't create a permanent broad exclusion for Downloads or turn off every Windows security control.

Next, confirm free storage, restart Windows and try from an administrator-capable account if policy permits. A corporate device may block unsigned or unapproved tools by design; use the administrator's approved scanner instead of bypassing policy. If multiple security tools fail or close immediately while other network access works, treat that as possible active interference and move to Defender Offline.

HouseCall scan looks stuck or takes too long

Trend Micro says Full System Scan can take hours, and no honest guide can promise a fixed finish time. Large archives, virtual-machine disks, mail stores, many small files, slow storage and concurrent activity can make the progress bar uneven. Keep the laptop powered and watch whether CPU, disk activity or the displayed path still changes.

If the scan repeatedly stops at the same file or folder, record that path and test it with Custom after a safe restart. If the entire interface is unresponsive and system activity has stopped for an extended period, preserve the details and end the attempt safely. Repeating the identical full scan without changing a condition provides little new evidence.

What to do when the same detection returns

A returning detection can mean the original file was restored by sync, recreated by another process, left inside an archive or launched through persistence. Compare the new path and timestamp with the first record rather than assuming HouseCall failed. Search the resident antivirus history and check startup entries, scheduled tasks, browser extensions and the application that owns the directory.

If the file returns after reboot or scanners are being disabled, escalate beyond repeated in-session cleaning. Defender Offline, a trusted administrator and account remediation may be appropriate. Our malware-signs guide separates file detections from browser, account and performance symptoms that require different evidence.

Potentially unwanted apps and riskware need context

A potentially unwanted application may be legitimate software installed with poor consent, intrusive advertising, browser changes or a risky business model. Riskware can be an administration or remote-access tool that's useful when authorized and dangerous when it isn't. The label describes risk and policy, not always a classic self-replicating virus.

Ask who installed it, what access it has and whether the organization approves it. Remove an unwanted bundle through its documented uninstaller when safe, then reset changed browser or network settings and rescan. Don't restore remote-control software merely because its publisher is real if nobody authorized that access.

What we can and can't say about privacy

The current launcher retrieves components and the product can report scan results, but the evidence reviewed here doesn't justify a sweeping promise that every file stays local or a claim that current HouseCall maps the home network. Those broader statements often come from other Trend Micro products or retired HouseCall for Home Networks documentation.

Read the licence and privacy links shown by the current launcher before scanning confidential systems. Avoid submitting proprietary samples without permission, and use the organization's incident process on managed devices. We don't transfer the retired network product's device-data notice to this scanner just because both names contain “HouseCall.”

Mac, Android and iPhone users need a different tool

The current US HouseCall download is for Windows. Mac claims in old results commonly lead to the retired Home Networks product, while mobile mentions may refer to unrelated Trend Micro apps. Don't install an archived binary or change operating-system protections in pursuit of a name that no longer maps to a supported current download.

Choose a current product designed for the platform and incident. For phones, suspicious links, account compromise and malicious profiles often matter more than a traditional whole-device file scan. Our Android and iPhone security hubs explain those platform differences.

Trend Micro Rescue Disk is discontinued

Trend Micro's Rescue Disk notice says the free tool was discontinued on April 25, 2025 and is no longer updated. An old ISO may still appear in search results or downloads, but an unmaintained recovery scanner isn't a current recommendation for a live incident.

Use Microsoft Defender Offline when the goal is to scan outside the ordinary Windows session. If the device can't boot, important data is at risk or an organization has evidence-handling requirements, stop experimenting with old rescue media and use its supported recovery or incident-response path.

Who should use HouseCall—and who shouldn't

Use HouseCall when Windows runs normally and you want a free second opinion on a suspicious file, folder or general symptom. It's also useful when the resident antivirus produced an ambiguous result and you want another vendor's on-demand view without installing a second real-time suite.

Skip it as the only protection, as a Mac scanner or as proof that a computer and its accounts are clean. Move beyond HouseCall when malware appears to resist scanning, detections return, the device contains regulated data or remote access and credential theft are plausible. The scanner is a tool inside the investigation, not the investigation itself.

HouseCall scan and cleanup checklist

Before scanning, use the official Trend Micro page, verify the publisher, save work and back up important files. Keep the resident antivirus active, note the symptom and choose Quick, Full or Custom by scope. Don't promise yourself that the longest scan will necessarily answer an account or browser problem.

After a detection, capture the name, full path, scan type and proposed action. Check provenance, signature and the resident antivirus result; keep a disputed file isolated; submit a suspected false positive through Trend Micro. Restart and confirm remediation, then inspect protection history and the original symptom.

If HouseCall won't run, verify connectivity, time, proxy or VPN behavior, storage and security logs. When active interference is plausible, save work and use Defender Offline rather than disabling layers. Don't use the discontinued Rescue Disk or an old Home Networks build as a workaround.

How we reviewed HouseCall

We checked the live US HouseCall page, Trend Micro's current free-tools catalog, the documented launcher and scan flow, the Home Networks end-of-life notice, the Rescue Disk discontinuation notice, official false-positive and sample-submission paths, and Microsoft's Defender Offline guidance. We also checked current community evidence for how the scanner is positioned and how a generic detection dispute can unfold.

We didn't invent scan times, detection rates, Mac support, scheduled protection or privacy guarantees. We didn't transfer Maximum Security lab results to HouseCall, and we treated Reddit as directional evidence rather than proof. The article's Review and SoftwareApplication schema intentionally omit reviewRating, AggregateRating and Offer.

Need a different Trend Micro task? Return to the Trend Micro guide hub for current plans, setup, platform, feature, troubleshooting, billing and removal routes.

Trend Micro HouseCall FAQ

Is Trend Micro HouseCall safe and legitimate?

Yes, when downloaded from Trend Micro's current HouseCall page. It's a legitimate free Windows on-demand scanner. Verify the HTTPS domain and publisher, avoid third-party download mirrors, and remember that a legitimate scanner can still produce a false positive.

Is HouseCall a full antivirus?

No. HouseCall scans on demand and can investigate or clean detections, but it doesn't replace continuously running real-time protection. Keep Microsoft Defender or another supported antivirus active before, during and after the scan.

Does HouseCall work with another antivirus installed?

Trend Micro says HouseCall can work alongside an existing security program. Treat it as a second opinion, not a second always-on antivirus. If either product reports a conflict, preserve the detection details and avoid weakening both products at once.

Which HouseCall scan should I use?

Use Quick Scan for a fast first check of critical and high-probability areas, Full System Scan when the first pass or symptoms justify broad file-and-folder coverage, and Custom Scan when one download, folder or drive is the concern. None of those choices has a reliable fixed completion time.

Why does HouseCall need an Internet connection?

The downloaded Windows launcher retrieves current scanning components before it runs. That is why HouseCall is called an online scanner even though the actual scan doesn't happen inside a browser tab.

Is Trend Micro HouseCall available for Mac?

The current US HouseCall page offers a Windows download. Old references to Mac often describe the separate HouseCall for Home Networks product, whose support ended July 31, 2024 and service ended November 30, 2024.

What should I do when HouseCall finds a threat?

Before cleaning, save the detection name, full path and proposed action. Check the file's publisher, digital signature, download source and your resident antivirus result, preserve a safe evidence copy when appropriate, then clean, quarantine or submit the sample based on the combined evidence.

Can HouseCall report a false positive?

Yes. A generic or heuristic detection can be wrong, especially around new or uncommon files, but disagreement isn't proof that the file is safe. Keep it isolated and use Trend Micro's official false-positive submission process rather than restoring it on the strength of one VirusTotal count.

What if HouseCall won't run?

Confirm that the download came from Trend Micro, then check Internet access, system date and time, proxy or VPN interference, free space and the resident antivirus log. If active malware may be blocking an in-Windows scanner, save your work and run Microsoft Defender Offline from Windows Security.

Is Trend Micro Rescue Disk still an alternative?

No. Trend Micro says Rescue Disk was discontinued on April 25, 2025 and is no longer updated. Don't use an old copy as a current recovery scanner; Microsoft Defender Offline is the supported primary-source escalation covered in this guide.

Bottom line

HouseCall is a worthwhile free second opinion for Windows when its boundaries stay visible. Download it from Trend Micro, choose the smallest scan that answers the question, keep real-time antivirus active and preserve detection evidence before cleanup. When malware blocks the scan or returns after remediation, stop repeating the same in-Windows check and move to Defender Offline or qualified incident help.