The host at this IP address is running a malware botnet controller which is being used to control infected computers (bots) around the globe using a trojan horse.
Loki botnet controller located at 18.104.22.168 on port 80 (using HTTP POST):
$ dig +short bouquetltd.xyz
Referencing malware binaries (MD5 hash):
67ccc2f495dbb52f7268ace9b43c37bc — AV detection: 7 / 68 (10.29)
Other malicious domain names hosted on this IP address: