The host at this IP address is running a malware botnet controller which is being used to control infected computers (bots) around the globe using a trojan horse.
DCRat botnet controller located at 184.108.40.206 on port 80 (using HTTP GET):
$ nslookup 220.127.116.11
Referencing malware binaries (MD5 hash):
bc43cff296c2977a382f6569ed0db331 — AV detection: 40 / 65 (61.54)
f11f7beeba496e39707fe4bb580c1dd8 — AV detection: 28 / 70 (40.00)