You are welcome.
(1) If not a virtual machine, I really can't think why the Registry would be in use in the recovery environment. So, I guess 0x80070020 has to mean something other than what I suspected. But what?
(2) Well, I want to know whether you can access HKLM\system in the recovery environment. That's what defender seems to want to do. Which five sub-keys are you missing? I suppose Defender is going after a sub-key to that, but msssWrapper.log doesn't precisely say which one. It needs information to do the following (I suspect)...
SetRecoveryEnvironmentKey returned 0x00000000
INFO 2021/03/09 02:55:58:364 TID:1412 PID:1380
Mapping target OS C drive to WinPE C drive
INFO 2021/03/09 02:55:58:364 TID:1412 PID:1380
Mapping target OS D drive to WinPE E drive
INFO 2021/03/09 02:55:58:395 TID:1412 PID:1380
BuildTargetOSDriveMapping returned 0x00000000
Your crash came just before that. It wants to know which drive was C: in Windows, I think. Then the other would be the Recovery partition (which normally doesn't have a letter when booted to Windows).