Came from the chromium repository. I assume this one's a false positive.
C:\Users\*********\git\depot_tools>git remote -v
origin https://chromium.googlesource.com/chromium/tools/depot_tools.git (fetch)
origin https://chromium.googlesource.com/chromium/tools/depot_tools.git (push)
CRC32: C72AB245
MD5: 0679F55F772B44F1FCD35B21E28844A1
SHA-1: F2E675B67EA35FE2FC1C7F9EB279F9C6D0F4B14C
Malwarebytes
www.malwarebytes.com
-Log Details-
Scan Date: 5/22/20
Scan Time: 11:10 PM
Log File: ed9e1c68-9ca2-11ea-ae63-708bcd4e31b5.json
-Software Information-
Version: 4.1.0.56
Components Version: 1.0.875
Update Package Version: 1.0.24284
License: Free
-System Information-
OS: Windows 10 (Build 18362.778)
CPU: x64
File System: NTFS
User: ************
-Scan Summary-
Scan Type: Custom Scan
Scan Initiated By: Manual
Result: Cancelled
Objects Scanned: 914390
Threats Detected: 1
Threats Quarantined: 0
Time Elapsed: 1 hr, 5 min, 15 sec
-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Heuristics: Enabled
PUP: Detect
PUM: Detect
-Scan Details-
Process: 0
(No malicious items detected)
Module: 0
(No malicious items detected)
Registry Key: 0
(No malicious items detected)
Registry Value: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Data Stream: 0
(No malicious items detected)
Folder: 0
(No malicious items detected)
File: 1
Malware.Generic.3442297976, C:\USERS\**********\GIT\DEPOT_TOOLS\WIN_TOOLS-2_7_6_BIN\GIT\USR\BIN\MD5SUM.EXE, No Action By User, 1000000, 0, 1.0.24284, AD68633418C44D9CCD2D4C78, dds, 00731665
Physical Sector: 0
(No malicious items detected)
WMI: 0
(No malicious items detected)
(end)
md5sum.zip