This paper addresses the challenge of limiting self-propagating malware by focusing on the connection failure behavior of infected hosts. It proposes efficient measurement solutions, utilizing novel data structures such as a double-bitmap and shared register array, to accurately determine the connection failure rates of individual hosts, thus enabling effective rate-limiting algorithms. The study critiques existing methods and offers new approaches to improve detection and containment of malware spread across networks.