The host at this IP address is running a malware botnet controller which is being used to control infected computers (bots) around the globe using a trojan horse.
RaccoonStealer botnet controller located at 104.21.31.246 on port 80 (using HTTP GET):
hXXp://telemirror.top/teneleven11pro
$ dig +short telemirror.top
104.21.31.246
Other malicious domain names hosted on this IP address:
awalb.com 104.21.31.246
lovelymall2.com 104.21.31.246
telemirror.top 104.21.31.246