On the Impact of Hard Adversarial Instances on Overfitting in Adversarial Training