Indeed there is.
Create a query for threat events
I use Single Group Summary Table
Labels are: Threat Target Host Name
Values are: Number of Threat Events
Whatever columns you deem necessary
Threat name. Contains: Prevent mass mailing worms from sending mail
and Event ID. Equals: 1094
Useful to find servers trying to do SMTP stuff that may need to have a policy applied to allow this.