The host at this IP address is running a malware botnet controller which is being used to control infected computers (bots) around the globe using a trojan horse.
Loki botnet controller located at 3.145.25.98 on port 80 (using HTTP POST):
hXXp://domynuts.ga/accounts/fre.php
$ dig +short domynuts.ga
3.145.25.98
$ nslookup 3.145.25.98
ec2-3-145-25-98.us-east-2.compute.amazonaws.com
Referencing malware binaries (MD5 hash):
c7c2d684884f806bb41bf479d172676c — AV detection: 28 / 67 (41.79)