Down the file "Block access to Autorun.inf" and Open your SEPM Console and click on Policies tab .go to application and device control policy.here add a new policy or edit an existing policy.Select application control and right click select import policy and select the dat file you have downloaded. after applying this policy to the groups systems in that group will not allow autorun.inf file to run. This will stop virus spreading using the autorun.inf file.