Malware
Graphican
According to Symantec, Graphican is an evolution of the known APT15 backdoor Ketrican, which itself was based on a previous malware - BS2005 - also used by APT15.
Graphican is a Windows malware family operated by APT15.
Background
Symantec characterizes Graphican as an advancement of the APT15 backdoor Ketrican, which was itself derived from an earlier APT15 malware named BS2005. Graphican retains essentially the same core functionality as Ketrican, the key distinction being that it uses the Microsoft Graph API and OneDrive to retrieve its command-and-control (C&C) infrastructure.
Source: Malpedia (Fraunhofer FKIE).