top of page

Memory locations

  • SPI-NOR flash ("RETAIL" version)

POI's:

​

  • Offset 0x00000000: Start of the encrypted U-Boot bootloader binary / Start of the SPI-NOR flash area

  • Offset 0x0001C5FF: End of the encrypted U-Boot bootloader binary (v1.01 RETAIL)

  • Offset 0x00040000: Start of the unencrypted WODE bootlogo (0x400 bytes in size / BITMAP)

  • Offset 0x00040400: Start of the unencrypted WODE "flat mode" logo (0x400 bytes in size / BITMAP)

  • Offset 0x00040800: Start of the unencrypted WODE "updating" logo (0x400 bytes in size / BITMAP)

  • Offset 0x00040C00: Start of the unencrypted "updating complete" logo (0x400 bytes in size / BITMAP)

  • Offset 0x00041000: Start of the unencrypted "Update Fail :(" logo (0x400 bytes in size / BITMAP)

  • Offset 0x00080000: Start of the encrypted Linux Kernel binary

  • Offset 0x00750000: Unknown data (0x10 bytes)

  • Offset 0x00760000: Start of Wii Game-ID's being used

  • Offset 0x00770000: Start of the "WODE.GCM" configuration ISO file (located in the CPIO-ROOT filesystem)

  • Offset 0x007E0000: Start of the "WODE.GCM" configuration ISO file (located in the CPIO-ROOT filesystem)

  • Offset 0x007F0000: Start of the unencrypted WODE configuration data *

  • Offset 0x007FFFFF: End of the SPI-NOR flash area

* - Stores data like the installed "internal" U-Boot version (usually v1.01) for the "RETAIL" version, the installed version of the FPGA, Linux Kernel and Hardware version. It also contains the first 0xC0 bytes of the encrypted Linux Kernel image for some reason and holds the encrypted Linux Kernel's CRC there as well.

​

bottom of page