The host at this IP address is running a malware botnet controller which is being used to control infected computers (bots) around the globe using a trojan horse.
Loki botnet controller located at 172.67.209.118 on port 80 (using HTTP POST):
hXXp://gridnetworks.xyz/five/fre.php
$ dig +short gridnetworks.xyz
172.67.209.118
Referencing malware binaries (MD5 hash):
1d03eee90db5e3881e7111490bd0d76d — AV detection: 16 / 69 (23.19)