Microsoft has now confirmed signing a malicious driver being distributed within gaming environments. This driver, called "Netfilter," is in fact a rootkit that was observed communicating with Chinese command-and-control (C2) IPs. G Data malware analyst Karsten Hahn first took notice of this event last week and was joined by the wider infosec.

Link: Microsoft admits to signing rootkit malware in supply-chain fiasco
via http://www.bleepingcomputer.com