From the article:
“t works by detecting suspicious activity rather than trying to inspect the malware’s execution or contents, primarily through three indicators.”
To find out more about how it works and the results of testing against almost 500 real-world ransomware samples, read more here:
http://www.infosecurity-magazine.com/news/cryptodrop-spots-stops-ransomware/