MedusaLocker is a ransomware family that has been observed being deployed since its discovery in 2019. The most notable differences are changes to the file extension used for encrypted files and the look and feel of the ransom note that is left on systems following the encryption process. The malware uses ICMP sweeping to profile the network to identify other systems that can be used to maximize the likelihood of a ransom payment. The amount of damage that a single infected system could do inside of a corporate environment is high.”]
Source: https://blog.talosintelligence.com/2020/04/medusalocker.html

