I think if you select the install path and add it to the table with the event id and event description might do what you looking for
thanks you for your response.
i have all three fields already in my query but nothing is displayed.
Events like this are effectively "summary" events - they just tell you that the scan found something. You should also have received an event for each of the actual detections: these will contain the extra detail that you need.
So for example if you scanned a machine with five infected files, you would receive six events - one for each detection, and the "scan found infected items" summary event.