Go into Organization - Security Center. Depending on when and how frequent it happen the event may show up under 'Most Prevalent Threats' or 'Threats Across Networks' you can click on it and filter for just that event. Alternatively you filter for 'snort_rule: 1-44077'. Once that is filtered you can click on the 'MX Events' tab and that will show you source, destination, network and you can also inspect.download the pcap if you click on event name under the 'Details' column.
... View more