Here's what an alert from SAV reporter looked like, If the SEPM alert can look close to this, that would be great. Including file/path and action taken.
Virus found:
Alert: 77402
Virus name: Downloader
Computer: MY Computer
IP address: MY IP
File/Path: C:/Documents and Settings/username/Local Settings/Temporary Internet Files/Content.IE5/FA34ALR6/E_J[1].JS
User: bhoguedb
Alert date/time in reporting server time: 2009-06-09 16:06:43
Database insert date/time: 2009-06-09 16:14:01
Source: Auto-Protect scan
Description:
Actual action: Partially repaired
Server group: Upstate Offices
Parent server: MY SERVER
Client group: WS Upstate UPG
This alarm was generated at 2009-06-09 16:17:01 (Reporter Host Time).
This alarm was generated by Administrator, with the following filters:
Server group: *
Client group: *
Parent server: *
Computer: A15-*
Virus name: *
Source: