One way is to create an access list to match the WINS traffic:
access-list 101 permit udp any any eq 137 log-input
and apply to the lan interface. This will generate a syslog message for each "nebios-ns" (WINS, UDP port 137) packet that passes thru the interface.
HTH
Regards,
Mustafa