Sounds like there has been a response by govt and Microsoft earlier this year, and this latest wave of attacks may be in part a retaliation, not even solely profit -driven.
https://www.nytimes.com/...&pgtype=Homepage “Mr. Holden and other cybersecurity experts say that the targets and the timing — just weeks after the United States targeted TrickBot — suggest that one possible motivation could be retaliation.
In late September and October, fearing that cybercriminals could use ransomware to disrupt the election, the Pentagon’s Cyber Command started hacking TrickBot’s systems. Microsoft pursued the systems in federal court, successfully dismantling 94 percent of TrickBot’s servers.
The takedowns relegated TrickBot’s operators to “a wounded animal lashing out,” Mr. Holden said. His firm captured online messages sent among the group, including a list of 400 American hospitals they planned to target, and informed law enforcement.
“We expect panic,” one hacker wrote, in Russian.
U.S. officials warned hospitals about a “credible threat” of attacks on Oct. 23, and then an unusual cluster of attacks on hospitals took place. Several hospitals — including Vermont Medical Center and the
St. Lawrence County health system in New York — have said they received no ransom note.”