Offer Kella

41 papers Journal 41
YearRankTypeTitle / Venue / Authors
2025 J jnl
Perform. Evaluation
Onno J. Boxma, Offer Kella, Jacques Resing
2025 J jnl
Oper. Res. Lett.
Onno J. Boxma, Offer Kella, Michel Mandjes
2023 J jnl
J. Appl. Probab.
Offer Kella, Michel Mandjes
2023 J jnl
J. Appl. Probab.
Stella Kapodistria, Mayank Saxena, Onno J. Boxma, Offer Kella
2022 J jnl
Queueing Syst. Theory Appl.
Offer Kella
2021 J jnl
Queueing Syst. Theory Appl.
Onno J. Boxma, Offer Kella, Uri Yechiali
2020 J jnl
Queueing Syst. Theory Appl.
Ivo J. B. F. Adan, Bernardo D'Auria, Offer Kella
2020 J jnl
J. Appl. Probab.
Offer Kella, Onno J. Boxma
2019 J jnl
Queueing Syst. Theory Appl.
Royi Jacobovic, Offer Kella
2019 J jnl
Oper. Res. Lett.
Onno J. Boxma, Offer Kella, Liron Ravner
2019 J jnl
Queueing Syst. Theory Appl.
Onno J. Boxma, Offer Kella, Michel Mandjes
2019 J jnl
Queueing Syst. Theory Appl.
Ivo J. B. F. Adan, Bernardo D'Auria, Offer Kella
2018 J jnl
SIAM J. Appl. Math.
Ivo Adan, Onno J. Boxma, Dieter Claeys, Offer Kella
2017 J jnl
Oper. Res. Lett.
Offer Kella, Liron Ravner
2017 J jnl
Queueing Syst. Theory Appl.
Marko A. A. Boon, Onno J. Boxma, Offer Kella, Masakiyo Miyazawa
2017 J jnl
J. Appl. Probab.
Offer Kella, Marc Yor
2016 J jnl
J. Appl. Probab.
Patrick Buckingham, Brian H. Fralix, Offer Kella
2016 J jnl
Queueing Syst. Theory Appl.
Onno J. Boxma, Offer Kella, Uri Yechiali
2015 J jnl
Queueing Syst. Theory Appl.
Offer Kella, Wolfgang Stadje
2014 J jnl
Queueing Syst. Theory Appl.
Onno J. Boxma, Offer Kella
2014 J jnl
Queueing Syst. Theory Appl.
Joke G. Blom, Offer Kella, Michel Mandjes, H. Thorsdottir
2014 J jnl
Queueing Syst. Theory Appl.
Joke G. Blom, Koen De Turck, Offer Kella, Michel Mandjes
2013 J jnl
Queueing Syst. Theory Appl.
Jevgenijs Ivanovs, Offer Kella
2013 J jnl
J. Appl. Probab.
Offer Kella, Wolfgang Stadje
2013 J jnl
J. Appl. Probab.
Offer Kella, Onno J. Boxma
2012 J jnl
Math. Oper. Res.
Offer Kella, S. Ramasubramanian
2012 J jnl
J. Appl. Probab.
Offer Kella
2011 J jnl
Oper. Res. Lett.
Onno J. Boxma, Offer Kella, K. M. Kosinski
2010 J jnl
Queueing Syst. Theory Appl.
Offer Kella, Onno J. Boxma, Michel Mandjes
2004 J jnl
Queueing Syst. Theory Appl.
René Bekker, Sem C. Borst, Onno J. Boxma, Offer Kella
2002 J jnl
Queueing Syst. Theory Appl.
Eugene A. Feinberg, Offer Kella
2001 J jnl
Queueing Syst. Theory Appl.
Offer Kella, Masakiyo Miyazawa
2001 J jnl
Queueing Syst. Theory Appl.
Offer Kella
1997 J jnl
Queueing Syst. Theory Appl.
H. Kaspi, Offer Kella, David Perry
1997 J jnl
Queueing Syst. Theory Appl.
Hong Chen, Offer Kella, Gideon Weiss
1996 J jnl
Queueing Syst. Theory Appl.
A. K. Jayawardene, Offer Kella
1995 J jnl
Oper. Res.
Sid Browne, Offer Kella
1994 J jnl
Math. Oper. Res.
Offer Kella, Michael I. Taksar
1992 J jnl
Oper. Res.
Offer Kella, Ward Whitt
1991 J jnl
Oper. Res.
Offer Kella
1990 J jnl
Oper. Res.
Offer Kella
redb/extractors/pe_extractor.py
← Index redb/extractors/pe_extractor.py python
import logging
from abc import ABCMeta, abstractmethod
import inspect

import magic
import pefile
from dotnetfile import DotNetPE

from redb.extractors.extractor import Extractor

logger = logging.getLogger(__name__)


@abstractmethod
class PEExtractor(Extractor, metaclass=ABCMeta):

    def __init__(
        self,
        filepath,
        log,
        exporters=None,
        index_prefix=None,
        elastic_index=None,
        known_benign=False,
        known_malicious=False,
        pe=None,
    ):
        super().__init__(
            filepath,
            log,
            exporters,
            index_prefix,
            elastic_index,
            known_benign,
            known_malicious
        )
        self.pe = pe if pe else self._generate_pefile_object()
        self.dotnet = None

    def _generate_pefile_object(self):
        pe = None
        try:
            pe = pefile.PE(self.filepath)
            if not pe:
                raise pefile.PEFormatError("Empty file?")
        except pefile.PEFormatError as e:
            self.log.error(f"Format error {self.hash.sha256} Full error : {e}")
        return pe

    def _generate_dotnetfile_object(self):
        self.log.debug(inspect.currentframe().f_code.co_name)
        dotnet = None
        error = None
        try:
            dotnet = DotNetPE(self.filepath)
            if not dotnet:
                raise Exception("Empty file?")
        except Exception as e:
            self.log.error(
                f"Format error dotnet file {self.hash.sha256} Full error : {e}"
            )
            error = e
        return dotnet, error

    def _check_dotnet(self):
        try:
            file_type = magic.from_buffer(self.binary)
            if ".Net" in file_type:
                return True
            for entry in self.pe.OPTIONAL_HEADER.DATA_DIRECTORY:
                # IMAGE_DIRECTORY_ENTRY_COM_DESCRIPTOR is typically 14
                if (
                    entry.name == "IMAGE_DIRECTORY_ENTRY_COM_DESCRIPTOR"
                    and entry.Size > 0
                ):
                    return True
            return False
        except AttributeError as e:
            self.log.error(
                f"AttributeError error dotnet file {self.hash.sha256} Full error : {e}"
            )
            return False

    def _is_signed(self):
        address = self.pe.OPTIONAL_HEADER.DATA_DIRECTORY[
            pefile.DIRECTORY_ENTRY["IMAGE_DIRECTORY_ENTRY_SECURITY"]
        ].VirtualAddress
        if address == 0:
            return False
        return True

    def _has_overlay(self):
        return bool(self.pe.get_overlay())