In case anyone else has been hit by this worm.
It looks like if you block port 1434 it will stop the worm from spreading or infecting the network. Of course, make sure you have no enterprise apps utilizing this standard sql monitoring port 1433 and 1434.
access-list 110 deny udp any any eq 1434
access-list 110 permit ip any any
then apply to the necessary interfaces
ip access-group 110 in
ip access-group 110 out