Is this known false positive, or did it just happen that i got some infection at the same time?
Here are logs
Emsisoft Anti-Malware - Version 2017.8
Date PID Application Event Detection
21/09/2017 01:07:57 0 C:\Windows\Installer\MSI8FAE.tmp App rule modified
21/09/2017 01:07:56 1784 C:\Windows\Installer\MSI8FAE.tmp Allowed always by user Behavior.CryptoMalware
21/09/2017 01:07:53 0 C:\Windows\Insta