The host at this IP address is running a malware botnet controller which is being used to control infected computers (bots) around the globe using a trojan horse.
DCRat botnet controller located at 184.108.40.206 on port 80 (using HTTP GET):
$ nslookup 220.127.116.11
Referencing malware binaries (MD5 hash):
191f7b31782f54fc168021567d37bd79 — AV detection: 52 / 68 (76.47)
8ec4e097f5f5ccf81400c7ad330c2fd5 — AV detection: 46 / 67 (68.66)