My sister's ancient XP rig is a malware riddled mess and has been since I gave it to her five years ago. Her ten year old grandson makes sure of that - even with regular updates. I don't know how much worse it could get.
The 10 year old grandson shouldn't be running in an Admin account nor unsupervised. MS patches fix exploits in the OS but can't stop willful downloads and destruction.
