The host at this IP address is running a malware botnet controller which is being used to control infected computers (bots) around the globe using a trojan horse.
RaccoonStealer botnet controller located at 138.68.162.128 on port 80 (using HTTP POST):
hXXp://138.68.162.128/
Referencing malware binaries (MD5 hash):
2889e88bc0bdf81e9c5968ad2cc99609 — AV detection: 36 / 65 (55.38)
2c2257bcd86b6a26dafead1c5da4c9f6 — AV detection: 35 / 68 (51.47)
2d9f411233f0024958153f6093ac5a0f — AV detection: 37 / 65 (56.92)
3b3067d6d584be83600e53b9c3dab34a — AV detection: 41 / 66 (62.12)
5866cb2e91f79585ac02ed16c4704baf — AV detection: 36 / 67 (53.73)
7332546153d54127aec74614216c91e3 — AV detection: 39 / 67 (58.21)
a2d17b48424b31a495c7a25e77802bad — AV detection: 30 / 66 (45.45)
b321222fdf3c98a7fc8c013edb5bbec2 — AV detection: 21 / 67 (31.34)
bb52aabcc9701a518540e8565eeb9574 — AV detection: 22 / 67 (32.84)