Hate to be that guy, but if that's your problem just hand them an iPad or a Chromebook. Unsatisfying, I know, but it's not like my mom is Mrs. Roberts.
A WSL-like for Win9x is mostly just for the lulz.
No one should be running Win9x for anything connected to the internet. Ever, full stop.
The only reason to touch it is for a dedicated retro gaming setup or (completely airgapped) for some industrial tool with drivers/software provided by a company that has been defunct for 25+ years.
There are several videos available on YouTube, of someone connecting a Win9x/2K/XP machine to the modern Internet, waiting just a few minutes, and then observing (through Process Explorer) the silent introduction of various payloads onto the system.
this is a juicy enough target to justify such a virus.
You occasionally still see probes for Win95/98 era vulnerabilities though, presumably because there are a surprising amount of systems still running those versions and the cost of a probe in case one is accidentally open to the public network. Or as an attacker if you've already got into a private subnet, finding such hosts might be worth it as an extra place to put a reverse tunnel to aid getting back in later if your main route is closed off.