./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/loops-crafted-1/in-de61.c --full-output --procedureinliner.inline.calls.to.implemented.procedures NEVER --traceabstraction.positions.where.we.compute.the.hoare.annotation All --witnessprinter.yaml.format.version 2.1 --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version a9b967e5 Calling Ultimate with: /root/.sdkman/candidates/java/current/bin/java -Dosgi.configuration.area=/storage/repos/certificate-witnesses-artifact/automizer/data/config -Xmx15G -Xms4m -jar /storage/repos/certificate-witnesses-artifact/automizer/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/certificate-witnesses-artifact/automizer/data -tc /storage/repos/certificate-witnesses-artifact/automizer/config/AutomizerReach.xml -i ../sv-benchmarks/c/loops-crafted-1/in-de61.c -s /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/certificate-witnesses-artifact/automizer --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 49b7efdcf8f4d6c873493bd370328870547a88b20d287c5de5342268b0966917 --procedureinliner.inline.calls.to.implemented.procedures NEVER --traceabstraction.positions.where.we.compute.the.hoare.annotation All --witnessprinter.yaml.format.version 2.1 --- Real Ultimate output --- This is Ultimate 0.2.4-dev-a9b967e-m [2024-09-12 15:31:30,380 INFO L188 SettingsManager]: Resetting all preferences to default values... [2024-09-12 15:31:30,452 INFO L114 SettingsManager]: Loading settings from /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf [2024-09-12 15:31:30,457 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2024-09-12 15:31:30,458 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2024-09-12 15:31:30,496 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2024-09-12 15:31:30,497 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2024-09-12 15:31:30,498 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2024-09-12 15:31:30,499 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2024-09-12 15:31:30,500 INFO L153 SettingsManager]: * Use memory slicer=true [2024-09-12 15:31:30,500 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2024-09-12 15:31:30,501 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2024-09-12 15:31:30,501 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2024-09-12 15:31:30,502 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2024-09-12 15:31:30,502 INFO L153 SettingsManager]: * Use SBE=true [2024-09-12 15:31:30,502 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2024-09-12 15:31:30,503 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2024-09-12 15:31:30,503 INFO L153 SettingsManager]: * sizeof long=4 [2024-09-12 15:31:30,503 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2024-09-12 15:31:30,504 INFO L153 SettingsManager]: * sizeof POINTER=4 [2024-09-12 15:31:30,504 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2024-09-12 15:31:30,508 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2024-09-12 15:31:30,508 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2024-09-12 15:31:30,508 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2024-09-12 15:31:30,509 INFO L153 SettingsManager]: * Allow undefined functions=false [2024-09-12 15:31:30,509 INFO L153 SettingsManager]: * sizeof long double=12 [2024-09-12 15:31:30,509 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2024-09-12 15:31:30,509 INFO L153 SettingsManager]: * Use constant arrays=true [2024-09-12 15:31:30,510 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2024-09-12 15:31:30,510 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2024-09-12 15:31:30,510 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2024-09-12 15:31:30,510 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2024-09-12 15:31:30,511 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-09-12 15:31:30,512 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2024-09-12 15:31:30,513 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2024-09-12 15:31:30,513 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2024-09-12 15:31:30,513 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2024-09-12 15:31:30,514 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2024-09-12 15:31:30,514 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2024-09-12 15:31:30,514 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2024-09-12 15:31:30,515 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2024-09-12 15:31:30,515 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2024-09-12 15:31:30,515 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/certificate-witnesses-artifact/automizer/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/certificate-witnesses-artifact/automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 49b7efdcf8f4d6c873493bd370328870547a88b20d287c5de5342268b0966917 Applying setting for plugin de.uni_freiburg.informatik.ultimate.boogie.procedureinliner: Inline calls to implemented procedures -> NEVER Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: Positions where we compute the Hoare Annotation -> All Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: YAML Format version -> 2.1 [2024-09-12 15:31:30,835 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2024-09-12 15:31:30,858 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2024-09-12 15:31:30,860 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2024-09-12 15:31:30,861 INFO L270 PluginConnector]: Initializing CDTParser... [2024-09-12 15:31:30,862 INFO L274 PluginConnector]: CDTParser initialized [2024-09-12 15:31:30,863 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/certificate-witnesses-artifact/automizer/../sv-benchmarks/c/loops-crafted-1/in-de61.c [2024-09-12 15:31:32,367 INFO L533 CDTParser]: Created temporary CDT project at NULL [2024-09-12 15:31:32,554 INFO L384 CDTParser]: Found 1 translation units. [2024-09-12 15:31:32,555 INFO L180 CDTParser]: Scanning /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/loops-crafted-1/in-de61.c [2024-09-12 15:31:32,561 INFO L427 CDTParser]: About to delete temporary CDT project at /storage/repos/certificate-witnesses-artifact/automizer/data/c935f0556/e787b435aac743c5946840ff211425af/FLAGe429d8133 [2024-09-12 15:31:32,572 INFO L435 CDTParser]: Successfully deleted /storage/repos/certificate-witnesses-artifact/automizer/data/c935f0556/e787b435aac743c5946840ff211425af [2024-09-12 15:31:32,574 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2024-09-12 15:31:32,575 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2024-09-12 15:31:32,578 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2024-09-12 15:31:32,578 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2024-09-12 15:31:32,584 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2024-09-12 15:31:32,584 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 12.09 03:31:32" (1/1) ... [2024-09-12 15:31:32,585 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@7ff0f60a and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 03:31:32, skipping insertion in model container [2024-09-12 15:31:32,585 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 12.09 03:31:32" (1/1) ... [2024-09-12 15:31:32,609 INFO L175 MainTranslator]: Built tables and reachable declarations [2024-09-12 15:31:32,768 WARN L247 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/loops-crafted-1/in-de61.c[368,381] [2024-09-12 15:31:32,791 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-09-12 15:31:32,802 INFO L200 MainTranslator]: Completed pre-run [2024-09-12 15:31:32,815 WARN L247 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/loops-crafted-1/in-de61.c[368,381] [2024-09-12 15:31:32,824 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-09-12 15:31:32,842 INFO L204 MainTranslator]: Completed translation [2024-09-12 15:31:32,842 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 03:31:32 WrapperNode [2024-09-12 15:31:32,843 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2024-09-12 15:31:32,844 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2024-09-12 15:31:32,845 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2024-09-12 15:31:32,845 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2024-09-12 15:31:32,851 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 03:31:32" (1/1) ... [2024-09-12 15:31:32,858 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 03:31:32" (1/1) ... [2024-09-12 15:31:32,864 INFO L138 Inliner]: procedures = 13, calls = 8, calls flagged for inlining = 0, calls inlined = 0, statements flattened = 0 [2024-09-12 15:31:32,865 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2024-09-12 15:31:32,865 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2024-09-12 15:31:32,866 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2024-09-12 15:31:32,866 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2024-09-12 15:31:32,875 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 03:31:32" (1/1) ... [2024-09-12 15:31:32,876 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 03:31:32" (1/1) ... [2024-09-12 15:31:32,881 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 03:31:32" (1/1) ... [2024-09-12 15:31:32,899 INFO L175 MemorySlicer]: Split 2 memory accesses to 1 slices as follows [2]. 100 percent of accesses are in the largest equivalence class. The 2 initializations are split as follows [2]. The 0 writes are split as follows [0]. [2024-09-12 15:31:32,900 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 03:31:32" (1/1) ... [2024-09-12 15:31:32,900 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 03:31:32" (1/1) ... [2024-09-12 15:31:32,907 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 03:31:32" (1/1) ... [2024-09-12 15:31:32,912 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 03:31:32" (1/1) ... [2024-09-12 15:31:32,914 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 03:31:32" (1/1) ... [2024-09-12 15:31:32,919 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 03:31:32" (1/1) ... [2024-09-12 15:31:32,920 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2024-09-12 15:31:32,922 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2024-09-12 15:31:32,922 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2024-09-12 15:31:32,923 INFO L274 PluginConnector]: RCFGBuilder initialized [2024-09-12 15:31:32,923 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 03:31:32" (1/1) ... [2024-09-12 15:31:32,928 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-09-12 15:31:32,939 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 15:31:32,954 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2024-09-12 15:31:32,957 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2024-09-12 15:31:32,998 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2024-09-12 15:31:32,998 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.init [2024-09-12 15:31:32,998 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.init [2024-09-12 15:31:32,999 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2024-09-12 15:31:32,999 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2024-09-12 15:31:32,999 INFO L130 BoogieDeclarations]: Found specification of procedure main [2024-09-12 15:31:32,999 INFO L138 BoogieDeclarations]: Found implementation of procedure main [2024-09-12 15:31:33,000 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2024-09-12 15:31:33,001 INFO L130 BoogieDeclarations]: Found specification of procedure __VERIFIER_assert [2024-09-12 15:31:33,001 INFO L138 BoogieDeclarations]: Found implementation of procedure __VERIFIER_assert [2024-09-12 15:31:33,071 INFO L242 CfgBuilder]: Building ICFG [2024-09-12 15:31:33,075 INFO L268 CfgBuilder]: Building CFG for each procedure with an implementation [2024-09-12 15:31:33,246 INFO L? ?]: Removed 4 outVars from TransFormulas that were not future-live. [2024-09-12 15:31:33,246 INFO L291 CfgBuilder]: Performing block encoding [2024-09-12 15:31:33,273 INFO L313 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2024-09-12 15:31:33,275 INFO L318 CfgBuilder]: Removed 6 assume(true) statements. [2024-09-12 15:31:33,275 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 12.09 03:31:33 BoogieIcfgContainer [2024-09-12 15:31:33,275 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2024-09-12 15:31:33,277 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2024-09-12 15:31:33,279 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2024-09-12 15:31:33,282 INFO L274 PluginConnector]: TraceAbstraction initialized [2024-09-12 15:31:33,283 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 12.09 03:31:32" (1/3) ... [2024-09-12 15:31:33,283 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@51ab8911 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 12.09 03:31:33, skipping insertion in model container [2024-09-12 15:31:33,284 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.09 03:31:32" (2/3) ... [2024-09-12 15:31:33,285 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@51ab8911 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 12.09 03:31:33, skipping insertion in model container [2024-09-12 15:31:33,285 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 12.09 03:31:33" (3/3) ... [2024-09-12 15:31:33,286 INFO L112 eAbstractionObserver]: Analyzing ICFG in-de61.c [2024-09-12 15:31:33,302 INFO L209 ceAbstractionStarter]: Automizer settings: Hoare:All NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2024-09-12 15:31:33,302 INFO L149 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2024-09-12 15:31:33,352 INFO L335 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2024-09-12 15:31:33,360 INFO L336 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=All, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@4b348f8c, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2024-09-12 15:31:33,361 INFO L337 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2024-09-12 15:31:33,365 INFO L276 IsEmpty]: Start isEmpty. Operand has 23 states, 15 states have (on average 1.9333333333333333) internal successors, (29), 16 states have internal predecessors, (29), 3 states have call successors, (3), 3 states have call predecessors, (3), 3 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) [2024-09-12 15:31:33,372 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 17 [2024-09-12 15:31:33,372 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 15:31:33,373 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 15:31:33,374 INFO L399 AbstractCegarLoop]: === Iteration 1 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 15:31:33,378 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:31:33,380 INFO L85 PathProgramCache]: Analyzing trace with hash -294793433, now seen corresponding path program 1 times [2024-09-12 15:31:33,389 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 15:31:33,389 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1566515145] [2024-09-12 15:31:33,390 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 15:31:33,390 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 15:31:33,473 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:31:33,519 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-12 15:31:33,522 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:31:33,529 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-12 15:31:33,530 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 15:31:33,530 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1566515145] [2024-09-12 15:31:33,531 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1566515145] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-12 15:31:33,531 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-12 15:31:33,531 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2024-09-12 15:31:33,533 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [630507955] [2024-09-12 15:31:33,534 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-12 15:31:33,538 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2024-09-12 15:31:33,538 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 15:31:33,555 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2024-09-12 15:31:33,556 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-09-12 15:31:33,557 INFO L87 Difference]: Start difference. First operand has 23 states, 15 states have (on average 1.9333333333333333) internal successors, (29), 16 states have internal predecessors, (29), 3 states have call successors, (3), 3 states have call predecessors, (3), 3 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) Second operand has 2 states, 2 states have (on average 6.0) internal successors, (12), 2 states have internal predecessors, (12), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:33,578 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 15:31:33,579 INFO L93 Difference]: Finished difference Result 40 states and 63 transitions. [2024-09-12 15:31:33,580 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2024-09-12 15:31:33,581 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 6.0) internal successors, (12), 2 states have internal predecessors, (12), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 16 [2024-09-12 15:31:33,582 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 15:31:33,593 INFO L225 Difference]: With dead ends: 40 [2024-09-12 15:31:33,594 INFO L226 Difference]: Without dead ends: 17 [2024-09-12 15:31:33,597 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-09-12 15:31:33,601 INFO L434 NwaCegarLoop]: 26 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 2 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 26 SdHoareTripleChecker+Invalid, 2 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 2 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-12 15:31:33,601 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 26 Invalid, 2 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 2 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-12 15:31:33,618 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 17 states. [2024-09-12 15:31:33,628 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 17 to 17. [2024-09-12 15:31:33,629 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 17 states, 12 states have (on average 1.5) internal successors, (18), 12 states have internal predecessors, (18), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:33,629 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 17 states to 17 states and 22 transitions. [2024-09-12 15:31:33,631 INFO L78 Accepts]: Start accepts. Automaton has 17 states and 22 transitions. Word has length 16 [2024-09-12 15:31:33,631 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 15:31:33,631 INFO L474 AbstractCegarLoop]: Abstraction has 17 states and 22 transitions. [2024-09-12 15:31:33,632 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 6.0) internal successors, (12), 2 states have internal predecessors, (12), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:33,632 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:31:33,633 INFO L276 IsEmpty]: Start isEmpty. Operand 17 states and 22 transitions. [2024-09-12 15:31:33,633 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 17 [2024-09-12 15:31:33,633 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 15:31:33,633 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 15:31:33,633 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2024-09-12 15:31:33,634 INFO L399 AbstractCegarLoop]: === Iteration 2 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 15:31:33,634 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:31:33,634 INFO L85 PathProgramCache]: Analyzing trace with hash -951970017, now seen corresponding path program 1 times [2024-09-12 15:31:33,634 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 15:31:33,635 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [47713796] [2024-09-12 15:31:33,635 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 15:31:33,635 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 15:31:33,672 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:31:34,374 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-12 15:31:34,376 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:31:34,384 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-12 15:31:34,388 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 15:31:34,388 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [47713796] [2024-09-12 15:31:34,389 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [47713796] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-12 15:31:34,389 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-12 15:31:34,389 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2024-09-12 15:31:34,389 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [987505045] [2024-09-12 15:31:34,389 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-12 15:31:34,391 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2024-09-12 15:31:34,392 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 15:31:34,393 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2024-09-12 15:31:34,393 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=15, Invalid=41, Unknown=0, NotChecked=0, Total=56 [2024-09-12 15:31:34,394 INFO L87 Difference]: Start difference. First operand 17 states and 22 transitions. Second operand has 8 states, 8 states have (on average 1.5) internal successors, (12), 7 states have internal predecessors, (12), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:34,523 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 15:31:34,524 INFO L93 Difference]: Finished difference Result 37 states and 52 transitions. [2024-09-12 15:31:34,524 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2024-09-12 15:31:34,525 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 1.5) internal successors, (12), 7 states have internal predecessors, (12), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 16 [2024-09-12 15:31:34,525 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 15:31:34,526 INFO L225 Difference]: With dead ends: 37 [2024-09-12 15:31:34,526 INFO L226 Difference]: Without dead ends: 18 [2024-09-12 15:31:34,527 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 13 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 8 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 8 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=25, Invalid=65, Unknown=0, NotChecked=0, Total=90 [2024-09-12 15:31:34,528 INFO L434 NwaCegarLoop]: 12 mSDtfsCounter, 14 mSDsluCounter, 48 mSDsCounter, 0 mSdLazyCounter, 72 mSolverCounterSat, 5 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 14 SdHoareTripleChecker+Valid, 60 SdHoareTripleChecker+Invalid, 77 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 5 IncrementalHoareTripleChecker+Valid, 72 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-12 15:31:34,529 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [14 Valid, 60 Invalid, 77 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [5 Valid, 72 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-12 15:31:34,531 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 18 states. [2024-09-12 15:31:34,536 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 18 to 18. [2024-09-12 15:31:34,537 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 18 states, 13 states have (on average 1.4615384615384615) internal successors, (19), 13 states have internal predecessors, (19), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:34,538 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 18 states to 18 states and 23 transitions. [2024-09-12 15:31:34,538 INFO L78 Accepts]: Start accepts. Automaton has 18 states and 23 transitions. Word has length 16 [2024-09-12 15:31:34,539 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 15:31:34,539 INFO L474 AbstractCegarLoop]: Abstraction has 18 states and 23 transitions. [2024-09-12 15:31:34,539 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 1.5) internal successors, (12), 7 states have internal predecessors, (12), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:34,540 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:31:34,540 INFO L276 IsEmpty]: Start isEmpty. Operand 18 states and 23 transitions. [2024-09-12 15:31:34,541 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 18 [2024-09-12 15:31:34,542 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 15:31:34,542 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 15:31:34,542 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2024-09-12 15:31:34,543 INFO L399 AbstractCegarLoop]: === Iteration 3 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 15:31:34,543 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:31:34,543 INFO L85 PathProgramCache]: Analyzing trace with hash -713894869, now seen corresponding path program 1 times [2024-09-12 15:31:34,543 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 15:31:34,543 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1808703602] [2024-09-12 15:31:34,543 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 15:31:34,544 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 15:31:34,556 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:31:34,628 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-12 15:31:34,629 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:31:34,632 INFO L134 CoverageAnalysis]: Checked inductivity of 1 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-12 15:31:34,632 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 15:31:34,632 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1808703602] [2024-09-12 15:31:34,633 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1808703602] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 15:31:34,633 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1826305042] [2024-09-12 15:31:34,633 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 15:31:34,633 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:31:34,633 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 15:31:34,635 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 15:31:34,637 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2024-09-12 15:31:34,683 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:31:34,685 INFO L262 TraceCheckSpWp]: Trace formula consists of 54 conjuncts, 7 conjuncts are in the unsatisfiable core [2024-09-12 15:31:34,690 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 15:31:34,717 INFO L134 CoverageAnalysis]: Checked inductivity of 1 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-12 15:31:34,719 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 15:31:34,795 INFO L134 CoverageAnalysis]: Checked inductivity of 1 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-12 15:31:34,795 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1826305042] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-12 15:31:34,795 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-12 15:31:34,795 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [5, 5, 5] total 9 [2024-09-12 15:31:34,795 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [82957159] [2024-09-12 15:31:34,796 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-12 15:31:34,796 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 9 states [2024-09-12 15:31:34,796 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 15:31:34,797 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 9 interpolants. [2024-09-12 15:31:34,797 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=21, Invalid=51, Unknown=0, NotChecked=0, Total=72 [2024-09-12 15:31:34,797 INFO L87 Difference]: Start difference. First operand 18 states and 23 transitions. Second operand has 9 states, 9 states have (on average 2.2222222222222223) internal successors, (20), 9 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:34,989 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 15:31:34,990 INFO L93 Difference]: Finished difference Result 59 states and 96 transitions. [2024-09-12 15:31:34,990 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2024-09-12 15:31:34,990 INFO L78 Accepts]: Start accepts. Automaton has has 9 states, 9 states have (on average 2.2222222222222223) internal successors, (20), 9 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 17 [2024-09-12 15:31:34,991 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 15:31:34,992 INFO L225 Difference]: With dead ends: 59 [2024-09-12 15:31:34,993 INFO L226 Difference]: Without dead ends: 50 [2024-09-12 15:31:34,993 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 45 GetRequests, 34 SyntacticMatches, 0 SemanticMatches, 11 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 13 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=48, Invalid=108, Unknown=0, NotChecked=0, Total=156 [2024-09-12 15:31:34,997 INFO L434 NwaCegarLoop]: 16 mSDtfsCounter, 48 mSDsluCounter, 62 mSDsCounter, 0 mSdLazyCounter, 77 mSolverCounterSat, 25 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 48 SdHoareTripleChecker+Valid, 78 SdHoareTripleChecker+Invalid, 102 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 25 IncrementalHoareTripleChecker+Valid, 77 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-12 15:31:34,997 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [48 Valid, 78 Invalid, 102 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [25 Valid, 77 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-12 15:31:34,998 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 50 states. [2024-09-12 15:31:35,011 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 50 to 41. [2024-09-12 15:31:35,011 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 41 states, 36 states have (on average 1.5277777777777777) internal successors, (55), 36 states have internal predecessors, (55), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:35,012 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 41 states to 41 states and 59 transitions. [2024-09-12 15:31:35,013 INFO L78 Accepts]: Start accepts. Automaton has 41 states and 59 transitions. Word has length 17 [2024-09-12 15:31:35,013 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 15:31:35,013 INFO L474 AbstractCegarLoop]: Abstraction has 41 states and 59 transitions. [2024-09-12 15:31:35,013 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 9 states, 9 states have (on average 2.2222222222222223) internal successors, (20), 9 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:35,014 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:31:35,014 INFO L276 IsEmpty]: Start isEmpty. Operand 41 states and 59 transitions. [2024-09-12 15:31:35,014 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 20 [2024-09-12 15:31:35,015 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 15:31:35,015 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 15:31:35,031 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Ended with exit code 0 [2024-09-12 15:31:35,219 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2,2 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:31:35,220 INFO L399 AbstractCegarLoop]: === Iteration 4 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 15:31:35,220 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:31:35,220 INFO L85 PathProgramCache]: Analyzing trace with hash 49422170, now seen corresponding path program 1 times [2024-09-12 15:31:35,221 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 15:31:35,221 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1102263385] [2024-09-12 15:31:35,221 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 15:31:35,221 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 15:31:35,231 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:31:35,368 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-12 15:31:35,372 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:31:35,375 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 3 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-12 15:31:35,375 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 15:31:35,375 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1102263385] [2024-09-12 15:31:35,375 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1102263385] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 15:31:35,376 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1516777420] [2024-09-12 15:31:35,376 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 15:31:35,376 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:31:35,376 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 15:31:35,382 INFO L229 MonitoredProcess]: Starting monitored process 3 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 15:31:35,385 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2024-09-12 15:31:35,426 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:31:35,427 INFO L262 TraceCheckSpWp]: Trace formula consists of 64 conjuncts, 11 conjuncts are in the unsatisfiable core [2024-09-12 15:31:35,428 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 15:31:35,452 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 3 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-12 15:31:35,455 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 15:31:35,549 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 3 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-12 15:31:35,550 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1516777420] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-12 15:31:35,550 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-12 15:31:35,550 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [7, 6, 6] total 11 [2024-09-12 15:31:35,551 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1037400519] [2024-09-12 15:31:35,551 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-12 15:31:35,553 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 11 states [2024-09-12 15:31:35,554 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 15:31:35,554 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 11 interpolants. [2024-09-12 15:31:35,555 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=27, Invalid=83, Unknown=0, NotChecked=0, Total=110 [2024-09-12 15:31:35,555 INFO L87 Difference]: Start difference. First operand 41 states and 59 transitions. Second operand has 11 states, 11 states have (on average 2.6363636363636362) internal successors, (29), 11 states have internal predecessors, (29), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:36,088 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 15:31:36,088 INFO L93 Difference]: Finished difference Result 108 states and 170 transitions. [2024-09-12 15:31:36,088 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 30 states. [2024-09-12 15:31:36,088 INFO L78 Accepts]: Start accepts. Automaton has has 11 states, 11 states have (on average 2.6363636363636362) internal successors, (29), 11 states have internal predecessors, (29), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 19 [2024-09-12 15:31:36,089 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 15:31:36,090 INFO L225 Difference]: With dead ends: 108 [2024-09-12 15:31:36,090 INFO L226 Difference]: Without dead ends: 87 [2024-09-12 15:31:36,091 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 66 GetRequests, 38 SyntacticMatches, 0 SemanticMatches, 28 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 166 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=205, Invalid=665, Unknown=0, NotChecked=0, Total=870 [2024-09-12 15:31:36,092 INFO L434 NwaCegarLoop]: 13 mSDtfsCounter, 86 mSDsluCounter, 88 mSDsCounter, 0 mSdLazyCounter, 174 mSolverCounterSat, 66 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 86 SdHoareTripleChecker+Valid, 101 SdHoareTripleChecker+Invalid, 240 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 66 IncrementalHoareTripleChecker+Valid, 174 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-12 15:31:36,092 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [86 Valid, 101 Invalid, 240 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [66 Valid, 174 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-12 15:31:36,093 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 87 states. [2024-09-12 15:31:36,105 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 87 to 56. [2024-09-12 15:31:36,106 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 56 states, 51 states have (on average 1.4509803921568627) internal successors, (74), 51 states have internal predecessors, (74), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:36,107 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 56 states to 56 states and 78 transitions. [2024-09-12 15:31:36,107 INFO L78 Accepts]: Start accepts. Automaton has 56 states and 78 transitions. Word has length 19 [2024-09-12 15:31:36,107 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 15:31:36,108 INFO L474 AbstractCegarLoop]: Abstraction has 56 states and 78 transitions. [2024-09-12 15:31:36,108 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 11 states, 11 states have (on average 2.6363636363636362) internal successors, (29), 11 states have internal predecessors, (29), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:36,108 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:31:36,108 INFO L276 IsEmpty]: Start isEmpty. Operand 56 states and 78 transitions. [2024-09-12 15:31:36,109 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 21 [2024-09-12 15:31:36,109 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 15:31:36,109 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 15:31:36,125 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Ended with exit code 0 [2024-09-12 15:31:36,313 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3,3 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:31:36,314 INFO L399 AbstractCegarLoop]: === Iteration 5 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 15:31:36,314 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:31:36,315 INFO L85 PathProgramCache]: Analyzing trace with hash -1324513826, now seen corresponding path program 1 times [2024-09-12 15:31:36,315 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 15:31:36,315 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2124865672] [2024-09-12 15:31:36,316 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 15:31:36,316 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 15:31:36,330 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:31:36,399 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-12 15:31:36,400 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:31:36,402 INFO L134 CoverageAnalysis]: Checked inductivity of 4 backedges. 1 proven. 1 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2024-09-12 15:31:36,403 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 15:31:36,403 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2124865672] [2024-09-12 15:31:36,403 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2124865672] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 15:31:36,403 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1632510681] [2024-09-12 15:31:36,403 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 15:31:36,403 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:31:36,404 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 15:31:36,408 INFO L229 MonitoredProcess]: Starting monitored process 4 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 15:31:36,409 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2024-09-12 15:31:36,458 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:31:36,461 INFO L262 TraceCheckSpWp]: Trace formula consists of 69 conjuncts, 14 conjuncts are in the unsatisfiable core [2024-09-12 15:31:36,463 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 15:31:36,590 INFO L134 CoverageAnalysis]: Checked inductivity of 4 backedges. 0 proven. 2 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2024-09-12 15:31:36,590 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 15:31:36,742 INFO L134 CoverageAnalysis]: Checked inductivity of 4 backedges. 0 proven. 2 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2024-09-12 15:31:36,742 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1632510681] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-12 15:31:36,743 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-12 15:31:36,743 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [4, 8, 8] total 15 [2024-09-12 15:31:36,743 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1932793222] [2024-09-12 15:31:36,743 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-12 15:31:36,743 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 15 states [2024-09-12 15:31:36,743 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 15:31:36,744 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 15 interpolants. [2024-09-12 15:31:36,744 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=39, Invalid=171, Unknown=0, NotChecked=0, Total=210 [2024-09-12 15:31:36,745 INFO L87 Difference]: Start difference. First operand 56 states and 78 transitions. Second operand has 15 states, 15 states have (on average 2.8666666666666667) internal successors, (43), 13 states have internal predecessors, (43), 4 states have call successors, (5), 4 states have call predecessors, (5), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:36,916 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 15:31:36,916 INFO L93 Difference]: Finished difference Result 90 states and 132 transitions. [2024-09-12 15:31:36,917 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2024-09-12 15:31:36,917 INFO L78 Accepts]: Start accepts. Automaton has has 15 states, 15 states have (on average 2.8666666666666667) internal successors, (43), 13 states have internal predecessors, (43), 4 states have call successors, (5), 4 states have call predecessors, (5), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 20 [2024-09-12 15:31:36,917 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 15:31:36,918 INFO L225 Difference]: With dead ends: 90 [2024-09-12 15:31:36,919 INFO L226 Difference]: Without dead ends: 79 [2024-09-12 15:31:36,920 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 47 GetRequests, 31 SyntacticMatches, 1 SemanticMatches, 15 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 21 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=49, Invalid=223, Unknown=0, NotChecked=0, Total=272 [2024-09-12 15:31:36,926 INFO L434 NwaCegarLoop]: 24 mSDtfsCounter, 24 mSDsluCounter, 173 mSDsCounter, 0 mSdLazyCounter, 132 mSolverCounterSat, 15 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 24 SdHoareTripleChecker+Valid, 197 SdHoareTripleChecker+Invalid, 147 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 15 IncrementalHoareTripleChecker+Valid, 132 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-12 15:31:36,926 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [24 Valid, 197 Invalid, 147 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [15 Valid, 132 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-12 15:31:36,927 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 79 states. [2024-09-12 15:31:36,944 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 79 to 63. [2024-09-12 15:31:36,944 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 63 states, 58 states have (on average 1.4827586206896552) internal successors, (86), 58 states have internal predecessors, (86), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:36,945 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 63 states to 63 states and 90 transitions. [2024-09-12 15:31:36,946 INFO L78 Accepts]: Start accepts. Automaton has 63 states and 90 transitions. Word has length 20 [2024-09-12 15:31:36,946 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 15:31:36,946 INFO L474 AbstractCegarLoop]: Abstraction has 63 states and 90 transitions. [2024-09-12 15:31:36,946 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 15 states, 15 states have (on average 2.8666666666666667) internal successors, (43), 13 states have internal predecessors, (43), 4 states have call successors, (5), 4 states have call predecessors, (5), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:36,947 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:31:36,947 INFO L276 IsEmpty]: Start isEmpty. Operand 63 states and 90 transitions. [2024-09-12 15:31:36,947 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 21 [2024-09-12 15:31:36,948 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 15:31:36,948 INFO L216 NwaCegarLoop]: trace histogram [4, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 15:31:36,965 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Ended with exit code 0 [2024-09-12 15:31:37,148 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4,4 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:31:37,149 INFO L399 AbstractCegarLoop]: === Iteration 6 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 15:31:37,149 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:31:37,149 INFO L85 PathProgramCache]: Analyzing trace with hash 739179039, now seen corresponding path program 2 times [2024-09-12 15:31:37,149 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 15:31:37,149 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1208566609] [2024-09-12 15:31:37,149 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 15:31:37,150 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 15:31:37,158 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:31:37,247 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-12 15:31:37,248 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:31:37,250 INFO L134 CoverageAnalysis]: Checked inductivity of 10 backedges. 0 proven. 10 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-12 15:31:37,251 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 15:31:37,251 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1208566609] [2024-09-12 15:31:37,252 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1208566609] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 15:31:37,252 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [74188857] [2024-09-12 15:31:37,252 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-12 15:31:37,253 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:31:37,253 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 15:31:37,255 INFO L229 MonitoredProcess]: Starting monitored process 5 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 15:31:37,256 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2024-09-12 15:31:37,293 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-12 15:31:37,294 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-12 15:31:37,295 INFO L262 TraceCheckSpWp]: Trace formula consists of 69 conjuncts, 13 conjuncts are in the unsatisfiable core [2024-09-12 15:31:37,296 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 15:31:37,315 INFO L134 CoverageAnalysis]: Checked inductivity of 10 backedges. 0 proven. 10 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-12 15:31:37,315 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 15:31:37,408 INFO L134 CoverageAnalysis]: Checked inductivity of 10 backedges. 0 proven. 10 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-12 15:31:37,408 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [74188857] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-12 15:31:37,408 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-12 15:31:37,408 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [8, 8, 8] total 15 [2024-09-12 15:31:37,409 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [947588246] [2024-09-12 15:31:37,409 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-12 15:31:37,409 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 15 states [2024-09-12 15:31:37,409 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 15:31:37,410 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 15 interpolants. [2024-09-12 15:31:37,410 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=54, Invalid=156, Unknown=0, NotChecked=0, Total=210 [2024-09-12 15:31:37,410 INFO L87 Difference]: Start difference. First operand 63 states and 90 transitions. Second operand has 15 states, 15 states have (on average 1.7333333333333334) internal successors, (26), 15 states have internal predecessors, (26), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:38,225 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 15:31:38,226 INFO L93 Difference]: Finished difference Result 221 states and 363 transitions. [2024-09-12 15:31:38,226 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 26 states. [2024-09-12 15:31:38,227 INFO L78 Accepts]: Start accepts. Automaton has has 15 states, 15 states have (on average 1.7333333333333334) internal successors, (26), 15 states have internal predecessors, (26), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 20 [2024-09-12 15:31:38,228 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 15:31:38,230 INFO L225 Difference]: With dead ends: 221 [2024-09-12 15:31:38,230 INFO L226 Difference]: Without dead ends: 196 [2024-09-12 15:31:38,231 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 67 GetRequests, 37 SyntacticMatches, 0 SemanticMatches, 30 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 198 ImplicationChecksByTransitivity, 0.5s TimeCoverageRelationStatistics Valid=301, Invalid=691, Unknown=0, NotChecked=0, Total=992 [2024-09-12 15:31:38,231 INFO L434 NwaCegarLoop]: 31 mSDtfsCounter, 282 mSDsluCounter, 170 mSDsCounter, 0 mSdLazyCounter, 227 mSolverCounterSat, 143 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 282 SdHoareTripleChecker+Valid, 201 SdHoareTripleChecker+Invalid, 370 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 143 IncrementalHoareTripleChecker+Valid, 227 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2024-09-12 15:31:38,232 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [282 Valid, 201 Invalid, 370 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [143 Valid, 227 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2024-09-12 15:31:38,236 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 196 states. [2024-09-12 15:31:38,286 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 196 to 123. [2024-09-12 15:31:38,287 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 123 states, 118 states have (on average 1.5254237288135593) internal successors, (180), 118 states have internal predecessors, (180), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:38,289 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 123 states to 123 states and 184 transitions. [2024-09-12 15:31:38,290 INFO L78 Accepts]: Start accepts. Automaton has 123 states and 184 transitions. Word has length 20 [2024-09-12 15:31:38,291 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 15:31:38,292 INFO L474 AbstractCegarLoop]: Abstraction has 123 states and 184 transitions. [2024-09-12 15:31:38,292 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 15 states, 15 states have (on average 1.7333333333333334) internal successors, (26), 15 states have internal predecessors, (26), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:38,292 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:31:38,292 INFO L276 IsEmpty]: Start isEmpty. Operand 123 states and 184 transitions. [2024-09-12 15:31:38,293 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 23 [2024-09-12 15:31:38,293 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 15:31:38,294 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 15:31:38,311 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Ended with exit code 0 [2024-09-12 15:31:38,494 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5,5 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:31:38,494 INFO L399 AbstractCegarLoop]: === Iteration 7 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 15:31:38,495 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:31:38,495 INFO L85 PathProgramCache]: Analyzing trace with hash 1756794400, now seen corresponding path program 1 times [2024-09-12 15:31:38,495 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 15:31:38,495 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1842096456] [2024-09-12 15:31:38,495 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 15:31:38,495 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 15:31:38,526 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:31:38,868 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-12 15:31:38,869 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:31:38,871 INFO L134 CoverageAnalysis]: Checked inductivity of 6 backedges. 0 proven. 5 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2024-09-12 15:31:38,871 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 15:31:38,871 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1842096456] [2024-09-12 15:31:38,871 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1842096456] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 15:31:38,871 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [775497755] [2024-09-12 15:31:38,871 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 15:31:38,872 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:31:38,872 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 15:31:38,873 INFO L229 MonitoredProcess]: Starting monitored process 6 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 15:31:38,877 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Waiting until timeout for monitored process [2024-09-12 15:31:38,926 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:31:38,927 INFO L262 TraceCheckSpWp]: Trace formula consists of 79 conjuncts, 25 conjuncts are in the unsatisfiable core [2024-09-12 15:31:38,929 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 15:31:39,120 INFO L134 CoverageAnalysis]: Checked inductivity of 6 backedges. 0 proven. 5 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2024-09-12 15:31:39,120 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 15:31:39,302 INFO L134 CoverageAnalysis]: Checked inductivity of 6 backedges. 0 proven. 5 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2024-09-12 15:31:39,306 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [775497755] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-12 15:31:39,306 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-12 15:31:39,306 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 9, 9] total 20 [2024-09-12 15:31:39,306 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1147026148] [2024-09-12 15:31:39,306 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-12 15:31:39,307 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 20 states [2024-09-12 15:31:39,307 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 15:31:39,307 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 20 interpolants. [2024-09-12 15:31:39,308 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=58, Invalid=322, Unknown=0, NotChecked=0, Total=380 [2024-09-12 15:31:39,308 INFO L87 Difference]: Start difference. First operand 123 states and 184 transitions. Second operand has 20 states, 20 states have (on average 2.3) internal successors, (46), 18 states have internal predecessors, (46), 3 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:40,082 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 15:31:40,082 INFO L93 Difference]: Finished difference Result 167 states and 242 transitions. [2024-09-12 15:31:40,085 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 26 states. [2024-09-12 15:31:40,086 INFO L78 Accepts]: Start accepts. Automaton has has 20 states, 20 states have (on average 2.3) internal successors, (46), 18 states have internal predecessors, (46), 3 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 22 [2024-09-12 15:31:40,086 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 15:31:40,087 INFO L225 Difference]: With dead ends: 167 [2024-09-12 15:31:40,087 INFO L226 Difference]: Without dead ends: 158 [2024-09-12 15:31:40,088 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 73 GetRequests, 38 SyntacticMatches, 1 SemanticMatches, 34 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 249 ImplicationChecksByTransitivity, 0.7s TimeCoverageRelationStatistics Valid=213, Invalid=1047, Unknown=0, NotChecked=0, Total=1260 [2024-09-12 15:31:40,088 INFO L434 NwaCegarLoop]: 12 mSDtfsCounter, 35 mSDsluCounter, 122 mSDsCounter, 0 mSdLazyCounter, 336 mSolverCounterSat, 20 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 35 SdHoareTripleChecker+Valid, 134 SdHoareTripleChecker+Invalid, 356 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 20 IncrementalHoareTripleChecker+Valid, 336 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2024-09-12 15:31:40,088 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [35 Valid, 134 Invalid, 356 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [20 Valid, 336 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2024-09-12 15:31:40,089 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 158 states. [2024-09-12 15:31:40,142 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 158 to 123. [2024-09-12 15:31:40,143 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 123 states, 118 states have (on average 1.5254237288135593) internal successors, (180), 118 states have internal predecessors, (180), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:40,144 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 123 states to 123 states and 184 transitions. [2024-09-12 15:31:40,144 INFO L78 Accepts]: Start accepts. Automaton has 123 states and 184 transitions. Word has length 22 [2024-09-12 15:31:40,144 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 15:31:40,144 INFO L474 AbstractCegarLoop]: Abstraction has 123 states and 184 transitions. [2024-09-12 15:31:40,144 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 20 states, 20 states have (on average 2.3) internal successors, (46), 18 states have internal predecessors, (46), 3 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:40,144 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:31:40,145 INFO L276 IsEmpty]: Start isEmpty. Operand 123 states and 184 transitions. [2024-09-12 15:31:40,145 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 23 [2024-09-12 15:31:40,145 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 15:31:40,146 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 15:31:40,162 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Ended with exit code 0 [2024-09-12 15:31:40,346 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 6 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable6 [2024-09-12 15:31:40,346 INFO L399 AbstractCegarLoop]: === Iteration 8 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 15:31:40,347 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:31:40,347 INFO L85 PathProgramCache]: Analyzing trace with hash 1941599551, now seen corresponding path program 2 times [2024-09-12 15:31:40,347 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 15:31:40,347 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [905060345] [2024-09-12 15:31:40,347 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 15:31:40,347 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 15:31:40,355 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:31:40,480 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-12 15:31:40,481 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:31:40,483 INFO L134 CoverageAnalysis]: Checked inductivity of 9 backedges. 0 proven. 9 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-12 15:31:40,484 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 15:31:40,484 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [905060345] [2024-09-12 15:31:40,484 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [905060345] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 15:31:40,484 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1907294206] [2024-09-12 15:31:40,484 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-12 15:31:40,484 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:31:40,484 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 15:31:40,486 INFO L229 MonitoredProcess]: Starting monitored process 7 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 15:31:40,488 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Waiting until timeout for monitored process [2024-09-12 15:31:40,526 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-12 15:31:40,526 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-12 15:31:40,527 INFO L262 TraceCheckSpWp]: Trace formula consists of 79 conjuncts, 12 conjuncts are in the unsatisfiable core [2024-09-12 15:31:40,529 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 15:31:40,587 INFO L134 CoverageAnalysis]: Checked inductivity of 9 backedges. 2 proven. 4 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-09-12 15:31:40,588 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 15:31:40,657 INFO L134 CoverageAnalysis]: Checked inductivity of 9 backedges. 2 proven. 4 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-09-12 15:31:40,657 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1907294206] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-12 15:31:40,658 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-12 15:31:40,658 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [9, 5, 5] total 12 [2024-09-12 15:31:40,658 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [463808053] [2024-09-12 15:31:40,658 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-12 15:31:40,658 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 12 states [2024-09-12 15:31:40,659 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 15:31:40,659 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 12 interpolants. [2024-09-12 15:31:40,659 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=22, Invalid=110, Unknown=0, NotChecked=0, Total=132 [2024-09-12 15:31:40,660 INFO L87 Difference]: Start difference. First operand 123 states and 184 transitions. Second operand has 12 states, 12 states have (on average 2.5) internal successors, (30), 12 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:41,465 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 15:31:41,466 INFO L93 Difference]: Finished difference Result 302 states and 459 transitions. [2024-09-12 15:31:41,466 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 36 states. [2024-09-12 15:31:41,466 INFO L78 Accepts]: Start accepts. Automaton has has 12 states, 12 states have (on average 2.5) internal successors, (30), 12 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 22 [2024-09-12 15:31:41,467 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 15:31:41,468 INFO L225 Difference]: With dead ends: 302 [2024-09-12 15:31:41,468 INFO L226 Difference]: Without dead ends: 263 [2024-09-12 15:31:41,469 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 87 GetRequests, 42 SyntacticMatches, 4 SemanticMatches, 41 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 454 ImplicationChecksByTransitivity, 0.5s TimeCoverageRelationStatistics Valid=253, Invalid=1553, Unknown=0, NotChecked=0, Total=1806 [2024-09-12 15:31:41,470 INFO L434 NwaCegarLoop]: 18 mSDtfsCounter, 123 mSDsluCounter, 119 mSDsCounter, 0 mSdLazyCounter, 328 mSolverCounterSat, 84 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 123 SdHoareTripleChecker+Valid, 137 SdHoareTripleChecker+Invalid, 412 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 84 IncrementalHoareTripleChecker+Valid, 328 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2024-09-12 15:31:41,471 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [123 Valid, 137 Invalid, 412 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [84 Valid, 328 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2024-09-12 15:31:41,472 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 263 states. [2024-09-12 15:31:41,532 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 263 to 154. [2024-09-12 15:31:41,533 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 154 states, 149 states have (on average 1.4966442953020134) internal successors, (223), 149 states have internal predecessors, (223), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:41,535 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 154 states to 154 states and 227 transitions. [2024-09-12 15:31:41,536 INFO L78 Accepts]: Start accepts. Automaton has 154 states and 227 transitions. Word has length 22 [2024-09-12 15:31:41,536 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 15:31:41,536 INFO L474 AbstractCegarLoop]: Abstraction has 154 states and 227 transitions. [2024-09-12 15:31:41,536 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 12 states, 12 states have (on average 2.5) internal successors, (30), 12 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:41,537 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:31:41,537 INFO L276 IsEmpty]: Start isEmpty. Operand 154 states and 227 transitions. [2024-09-12 15:31:41,538 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2024-09-12 15:31:41,539 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 15:31:41,539 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 15:31:41,553 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Forceful destruction successful, exit code 0 [2024-09-12 15:31:41,743 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7,7 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:31:41,744 INFO L399 AbstractCegarLoop]: === Iteration 9 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 15:31:41,744 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:31:41,744 INFO L85 PathProgramCache]: Analyzing trace with hash -46385954, now seen corresponding path program 2 times [2024-09-12 15:31:41,744 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 15:31:41,744 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1209251463] [2024-09-12 15:31:41,744 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 15:31:41,744 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 15:31:41,753 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:31:41,851 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-12 15:31:41,852 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:31:41,854 INFO L134 CoverageAnalysis]: Checked inductivity of 10 backedges. 2 proven. 2 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-12 15:31:41,855 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 15:31:41,855 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1209251463] [2024-09-12 15:31:41,856 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1209251463] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 15:31:41,856 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2004748497] [2024-09-12 15:31:41,856 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-12 15:31:41,856 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:31:41,856 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 15:31:41,858 INFO L229 MonitoredProcess]: Starting monitored process 8 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 15:31:41,859 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Waiting until timeout for monitored process [2024-09-12 15:31:41,901 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-12 15:31:41,902 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-12 15:31:41,902 INFO L262 TraceCheckSpWp]: Trace formula consists of 89 conjuncts, 10 conjuncts are in the unsatisfiable core [2024-09-12 15:31:41,903 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 15:31:41,931 INFO L134 CoverageAnalysis]: Checked inductivity of 10 backedges. 2 proven. 2 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-12 15:31:41,931 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 15:31:41,955 INFO L134 CoverageAnalysis]: Checked inductivity of 10 backedges. 2 proven. 2 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-12 15:31:41,955 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2004748497] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-12 15:31:41,955 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-12 15:31:41,955 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [4, 4, 4] total 4 [2024-09-12 15:31:41,955 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [138119307] [2024-09-12 15:31:41,955 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-12 15:31:41,956 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2024-09-12 15:31:41,956 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 15:31:41,956 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2024-09-12 15:31:41,956 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-09-12 15:31:41,956 INFO L87 Difference]: Start difference. First operand 154 states and 227 transitions. Second operand has 4 states, 4 states have (on average 4.75) internal successors, (19), 4 states have internal predecessors, (19), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:42,040 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 15:31:42,040 INFO L93 Difference]: Finished difference Result 242 states and 361 transitions. [2024-09-12 15:31:42,041 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2024-09-12 15:31:42,041 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 4.75) internal successors, (19), 4 states have internal predecessors, (19), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 24 [2024-09-12 15:31:42,041 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 15:31:42,042 INFO L225 Difference]: With dead ends: 242 [2024-09-12 15:31:42,042 INFO L226 Difference]: Without dead ends: 181 [2024-09-12 15:31:42,043 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 54 GetRequests, 45 SyntacticMatches, 7 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-09-12 15:31:42,043 INFO L434 NwaCegarLoop]: 25 mSDtfsCounter, 9 mSDsluCounter, 35 mSDsCounter, 0 mSdLazyCounter, 24 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 9 SdHoareTripleChecker+Valid, 60 SdHoareTripleChecker+Invalid, 26 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 24 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-12 15:31:42,043 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [9 Valid, 60 Invalid, 26 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 24 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-12 15:31:42,044 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 181 states. [2024-09-12 15:31:42,100 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 181 to 151. [2024-09-12 15:31:42,100 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 151 states, 146 states have (on average 1.4726027397260273) internal successors, (215), 146 states have internal predecessors, (215), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:42,101 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 151 states to 151 states and 219 transitions. [2024-09-12 15:31:42,101 INFO L78 Accepts]: Start accepts. Automaton has 151 states and 219 transitions. Word has length 24 [2024-09-12 15:31:42,101 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 15:31:42,101 INFO L474 AbstractCegarLoop]: Abstraction has 151 states and 219 transitions. [2024-09-12 15:31:42,102 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 4.75) internal successors, (19), 4 states have internal predecessors, (19), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:42,102 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:31:42,102 INFO L276 IsEmpty]: Start isEmpty. Operand 151 states and 219 transitions. [2024-09-12 15:31:42,103 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2024-09-12 15:31:42,103 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 15:31:42,103 INFO L216 NwaCegarLoop]: trace histogram [3, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 15:31:42,118 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Ended with exit code 0 [2024-09-12 15:31:42,303 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8,8 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:31:42,304 INFO L399 AbstractCegarLoop]: === Iteration 10 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 15:31:42,304 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:31:42,304 INFO L85 PathProgramCache]: Analyzing trace with hash 1697264410, now seen corresponding path program 1 times [2024-09-12 15:31:42,304 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 15:31:42,304 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [275358981] [2024-09-12 15:31:42,304 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 15:31:42,304 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 15:31:42,311 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:31:42,387 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-12 15:31:42,388 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:31:42,389 INFO L134 CoverageAnalysis]: Checked inductivity of 15 backedges. 0 proven. 7 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2024-09-12 15:31:42,389 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 15:31:42,389 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [275358981] [2024-09-12 15:31:42,389 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [275358981] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 15:31:42,389 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [484124616] [2024-09-12 15:31:42,389 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 15:31:42,390 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:31:42,390 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 15:31:42,391 INFO L229 MonitoredProcess]: Starting monitored process 9 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 15:31:42,392 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Waiting until timeout for monitored process [2024-09-12 15:31:42,437 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:31:42,438 INFO L262 TraceCheckSpWp]: Trace formula consists of 94 conjuncts, 16 conjuncts are in the unsatisfiable core [2024-09-12 15:31:42,439 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 15:31:42,471 INFO L134 CoverageAnalysis]: Checked inductivity of 15 backedges. 0 proven. 7 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2024-09-12 15:31:42,471 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 15:31:42,542 INFO L134 CoverageAnalysis]: Checked inductivity of 15 backedges. 4 proven. 2 refuted. 0 times theorem prover too weak. 9 trivial. 0 not checked. [2024-09-12 15:31:42,543 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [484124616] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-12 15:31:42,543 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-12 15:31:42,543 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [8, 8, 6] total 14 [2024-09-12 15:31:42,543 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1385318383] [2024-09-12 15:31:42,543 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-12 15:31:42,544 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 14 states [2024-09-12 15:31:42,544 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 15:31:42,544 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 14 interpolants. [2024-09-12 15:31:42,544 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=45, Invalid=137, Unknown=0, NotChecked=0, Total=182 [2024-09-12 15:31:42,545 INFO L87 Difference]: Start difference. First operand 151 states and 219 transitions. Second operand has 14 states, 14 states have (on average 2.142857142857143) internal successors, (30), 14 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:42,932 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 15:31:42,932 INFO L93 Difference]: Finished difference Result 222 states and 323 transitions. [2024-09-12 15:31:42,932 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 20 states. [2024-09-12 15:31:42,933 INFO L78 Accepts]: Start accepts. Automaton has has 14 states, 14 states have (on average 2.142857142857143) internal successors, (30), 14 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 25 [2024-09-12 15:31:42,933 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 15:31:42,934 INFO L225 Difference]: With dead ends: 222 [2024-09-12 15:31:42,934 INFO L226 Difference]: Without dead ends: 180 [2024-09-12 15:31:42,934 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 68 GetRequests, 48 SyntacticMatches, 0 SemanticMatches, 20 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 64 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=87, Invalid=375, Unknown=0, NotChecked=0, Total=462 [2024-09-12 15:31:42,935 INFO L434 NwaCegarLoop]: 25 mSDtfsCounter, 46 mSDsluCounter, 166 mSDsCounter, 0 mSdLazyCounter, 341 mSolverCounterSat, 48 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 46 SdHoareTripleChecker+Valid, 191 SdHoareTripleChecker+Invalid, 389 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 48 IncrementalHoareTripleChecker+Valid, 341 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-12 15:31:42,935 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [46 Valid, 191 Invalid, 389 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [48 Valid, 341 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-12 15:31:42,945 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 180 states. [2024-09-12 15:31:43,006 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 180 to 147. [2024-09-12 15:31:43,007 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 147 states, 142 states have (on average 1.471830985915493) internal successors, (209), 142 states have internal predecessors, (209), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:43,007 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 147 states to 147 states and 213 transitions. [2024-09-12 15:31:43,008 INFO L78 Accepts]: Start accepts. Automaton has 147 states and 213 transitions. Word has length 25 [2024-09-12 15:31:43,008 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 15:31:43,008 INFO L474 AbstractCegarLoop]: Abstraction has 147 states and 213 transitions. [2024-09-12 15:31:43,008 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 14 states, 14 states have (on average 2.142857142857143) internal successors, (30), 14 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:43,009 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:31:43,009 INFO L276 IsEmpty]: Start isEmpty. Operand 147 states and 213 transitions. [2024-09-12 15:31:43,011 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2024-09-12 15:31:43,012 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 15:31:43,012 INFO L216 NwaCegarLoop]: trace histogram [3, 3, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 15:31:43,028 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Ended with exit code 0 [2024-09-12 15:31:43,215 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9,9 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:31:43,216 INFO L399 AbstractCegarLoop]: === Iteration 11 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 15:31:43,216 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:31:43,216 INFO L85 PathProgramCache]: Analyzing trace with hash 1008778426, now seen corresponding path program 3 times [2024-09-12 15:31:43,216 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 15:31:43,216 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [825727229] [2024-09-12 15:31:43,216 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 15:31:43,217 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 15:31:43,224 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:31:43,378 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-12 15:31:43,380 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:31:43,382 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 0 proven. 18 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-12 15:31:43,382 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 15:31:43,382 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [825727229] [2024-09-12 15:31:43,382 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [825727229] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 15:31:43,383 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1068624368] [2024-09-12 15:31:43,383 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-09-12 15:31:43,383 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:31:43,383 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 15:31:43,384 INFO L229 MonitoredProcess]: Starting monitored process 10 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 15:31:43,386 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Waiting until timeout for monitored process [2024-09-12 15:31:43,420 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 3 check-sat command(s) [2024-09-12 15:31:43,421 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-12 15:31:43,422 INFO L262 TraceCheckSpWp]: Trace formula consists of 94 conjuncts, 16 conjuncts are in the unsatisfiable core [2024-09-12 15:31:43,423 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 15:31:43,498 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 3 proven. 9 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-12 15:31:43,498 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 15:31:43,605 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 3 proven. 9 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-12 15:31:43,605 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1068624368] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-12 15:31:43,605 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-12 15:31:43,605 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [11, 6, 6] total 15 [2024-09-12 15:31:43,606 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [342498699] [2024-09-12 15:31:43,606 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-12 15:31:43,606 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 15 states [2024-09-12 15:31:43,606 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 15:31:43,606 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 15 interpolants. [2024-09-12 15:31:43,607 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=28, Invalid=182, Unknown=0, NotChecked=0, Total=210 [2024-09-12 15:31:43,607 INFO L87 Difference]: Start difference. First operand 147 states and 213 transitions. Second operand has 15 states, 15 states have (on average 2.3333333333333335) internal successors, (35), 15 states have internal predecessors, (35), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:45,026 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 15:31:45,026 INFO L93 Difference]: Finished difference Result 356 states and 535 transitions. [2024-09-12 15:31:45,026 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 61 states. [2024-09-12 15:31:45,026 INFO L78 Accepts]: Start accepts. Automaton has has 15 states, 15 states have (on average 2.3333333333333335) internal successors, (35), 15 states have internal predecessors, (35), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 25 [2024-09-12 15:31:45,026 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 15:31:45,028 INFO L225 Difference]: With dead ends: 356 [2024-09-12 15:31:45,028 INFO L226 Difference]: Without dead ends: 319 [2024-09-12 15:31:45,030 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 121 GetRequests, 46 SyntacticMatches, 6 SemanticMatches, 69 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1516 ImplicationChecksByTransitivity, 1.0s TimeCoverageRelationStatistics Valid=524, Invalid=4446, Unknown=0, NotChecked=0, Total=4970 [2024-09-12 15:31:45,030 INFO L434 NwaCegarLoop]: 26 mSDtfsCounter, 164 mSDsluCounter, 219 mSDsCounter, 0 mSdLazyCounter, 736 mSolverCounterSat, 130 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 164 SdHoareTripleChecker+Valid, 245 SdHoareTripleChecker+Invalid, 866 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 130 IncrementalHoareTripleChecker+Valid, 736 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2024-09-12 15:31:45,031 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [164 Valid, 245 Invalid, 866 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [130 Valid, 736 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2024-09-12 15:31:45,031 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 319 states. [2024-09-12 15:31:45,109 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 319 to 171. [2024-09-12 15:31:45,109 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 171 states, 166 states have (on average 1.4759036144578312) internal successors, (245), 166 states have internal predecessors, (245), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:45,110 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 171 states to 171 states and 249 transitions. [2024-09-12 15:31:45,111 INFO L78 Accepts]: Start accepts. Automaton has 171 states and 249 transitions. Word has length 25 [2024-09-12 15:31:45,112 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 15:31:45,112 INFO L474 AbstractCegarLoop]: Abstraction has 171 states and 249 transitions. [2024-09-12 15:31:45,112 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 15 states, 15 states have (on average 2.3333333333333335) internal successors, (35), 15 states have internal predecessors, (35), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:45,112 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:31:45,113 INFO L276 IsEmpty]: Start isEmpty. Operand 171 states and 249 transitions. [2024-09-12 15:31:45,113 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2024-09-12 15:31:45,113 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 15:31:45,114 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 15:31:45,131 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Ended with exit code 0 [2024-09-12 15:31:45,317 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 10 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable10 [2024-09-12 15:31:45,318 INFO L399 AbstractCegarLoop]: === Iteration 12 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 15:31:45,318 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:31:45,318 INFO L85 PathProgramCache]: Analyzing trace with hash 1467722815, now seen corresponding path program 3 times [2024-09-12 15:31:45,318 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 15:31:45,318 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [313001118] [2024-09-12 15:31:45,318 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 15:31:45,318 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 15:31:45,330 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:31:45,400 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-12 15:31:45,401 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:31:45,403 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 2 proven. 4 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2024-09-12 15:31:45,403 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 15:31:45,403 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [313001118] [2024-09-12 15:31:45,404 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [313001118] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 15:31:45,404 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [516647061] [2024-09-12 15:31:45,404 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-09-12 15:31:45,404 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:31:45,404 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 15:31:45,406 INFO L229 MonitoredProcess]: Starting monitored process 11 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 15:31:45,408 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (11)] Waiting until timeout for monitored process [2024-09-12 15:31:45,449 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 2 check-sat command(s) [2024-09-12 15:31:45,449 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-12 15:31:45,450 INFO L262 TraceCheckSpWp]: Trace formula consists of 99 conjuncts, 10 conjuncts are in the unsatisfiable core [2024-09-12 15:31:45,451 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 15:31:45,482 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 2 proven. 4 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2024-09-12 15:31:45,482 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 15:31:45,524 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 2 proven. 4 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2024-09-12 15:31:45,524 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [516647061] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-12 15:31:45,524 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-12 15:31:45,524 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [5, 5, 5] total 5 [2024-09-12 15:31:45,524 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1220913888] [2024-09-12 15:31:45,524 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-12 15:31:45,524 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-09-12 15:31:45,525 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 15:31:45,525 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-09-12 15:31:45,525 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-09-12 15:31:45,525 INFO L87 Difference]: Start difference. First operand 171 states and 249 transitions. Second operand has 5 states, 5 states have (on average 4.0) internal successors, (20), 5 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:45,736 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 15:31:45,737 INFO L93 Difference]: Finished difference Result 259 states and 367 transitions. [2024-09-12 15:31:45,737 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2024-09-12 15:31:45,737 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 4.0) internal successors, (20), 5 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 26 [2024-09-12 15:31:45,738 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 15:31:45,739 INFO L225 Difference]: With dead ends: 259 [2024-09-12 15:31:45,739 INFO L226 Difference]: Without dead ends: 247 [2024-09-12 15:31:45,740 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 61 GetRequests, 50 SyntacticMatches, 6 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=15, Invalid=27, Unknown=0, NotChecked=0, Total=42 [2024-09-12 15:31:45,740 INFO L434 NwaCegarLoop]: 28 mSDtfsCounter, 18 mSDsluCounter, 56 mSDsCounter, 0 mSdLazyCounter, 37 mSolverCounterSat, 11 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 18 SdHoareTripleChecker+Valid, 84 SdHoareTripleChecker+Invalid, 48 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 11 IncrementalHoareTripleChecker+Valid, 37 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-12 15:31:45,740 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [18 Valid, 84 Invalid, 48 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [11 Valid, 37 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-12 15:31:45,741 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 247 states. [2024-09-12 15:31:45,810 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 247 to 186. [2024-09-12 15:31:45,810 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 186 states, 181 states have (on average 1.4475138121546962) internal successors, (262), 181 states have internal predecessors, (262), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:45,811 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 186 states to 186 states and 266 transitions. [2024-09-12 15:31:45,812 INFO L78 Accepts]: Start accepts. Automaton has 186 states and 266 transitions. Word has length 26 [2024-09-12 15:31:45,812 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 15:31:45,812 INFO L474 AbstractCegarLoop]: Abstraction has 186 states and 266 transitions. [2024-09-12 15:31:45,812 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 4.0) internal successors, (20), 5 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:45,812 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:31:45,812 INFO L276 IsEmpty]: Start isEmpty. Operand 186 states and 266 transitions. [2024-09-12 15:31:45,813 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2024-09-12 15:31:45,813 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 15:31:45,813 INFO L216 NwaCegarLoop]: trace histogram [5, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 15:31:45,826 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (11)] Forceful destruction successful, exit code 0 [2024-09-12 15:31:46,014 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 11 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable11 [2024-09-12 15:31:46,014 INFO L399 AbstractCegarLoop]: === Iteration 13 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 15:31:46,014 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:31:46,014 INFO L85 PathProgramCache]: Analyzing trace with hash 722284832, now seen corresponding path program 4 times [2024-09-12 15:31:46,014 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 15:31:46,015 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1872196362] [2024-09-12 15:31:46,015 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 15:31:46,015 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 15:31:46,023 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:31:46,130 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-12 15:31:46,131 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:31:46,132 INFO L134 CoverageAnalysis]: Checked inductivity of 20 backedges. 0 proven. 16 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-12 15:31:46,133 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 15:31:46,133 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1872196362] [2024-09-12 15:31:46,133 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1872196362] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 15:31:46,133 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1416318092] [2024-09-12 15:31:46,133 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2024-09-12 15:31:46,133 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:31:46,133 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 15:31:46,135 INFO L229 MonitoredProcess]: Starting monitored process 12 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 15:31:46,136 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (12)] Waiting until timeout for monitored process [2024-09-12 15:31:46,177 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2024-09-12 15:31:46,177 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-12 15:31:46,178 INFO L262 TraceCheckSpWp]: Trace formula consists of 99 conjuncts, 17 conjuncts are in the unsatisfiable core [2024-09-12 15:31:46,179 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 15:31:46,201 INFO L134 CoverageAnalysis]: Checked inductivity of 20 backedges. 0 proven. 16 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-12 15:31:46,201 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 15:31:46,328 INFO L134 CoverageAnalysis]: Checked inductivity of 20 backedges. 0 proven. 16 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-12 15:31:46,328 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1416318092] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-12 15:31:46,328 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-12 15:31:46,328 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 10, 10] total 19 [2024-09-12 15:31:46,328 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1216866047] [2024-09-12 15:31:46,328 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-12 15:31:46,329 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 19 states [2024-09-12 15:31:46,329 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 15:31:46,329 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 19 interpolants. [2024-09-12 15:31:46,329 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=77, Invalid=265, Unknown=0, NotChecked=0, Total=342 [2024-09-12 15:31:46,330 INFO L87 Difference]: Start difference. First operand 186 states and 266 transitions. Second operand has 19 states, 19 states have (on average 1.7894736842105263) internal successors, (34), 19 states have internal predecessors, (34), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:48,152 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 15:31:48,152 INFO L93 Difference]: Finished difference Result 454 states and 704 transitions. [2024-09-12 15:31:48,152 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 63 states. [2024-09-12 15:31:48,153 INFO L78 Accepts]: Start accepts. Automaton has has 19 states, 19 states have (on average 1.7894736842105263) internal successors, (34), 19 states have internal predecessors, (34), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 26 [2024-09-12 15:31:48,153 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 15:31:48,154 INFO L225 Difference]: With dead ends: 454 [2024-09-12 15:31:48,154 INFO L226 Difference]: Without dead ends: 382 [2024-09-12 15:31:48,156 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 115 GetRequests, 47 SyntacticMatches, 0 SemanticMatches, 68 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1552 ImplicationChecksByTransitivity, 1.3s TimeCoverageRelationStatistics Valid=1233, Invalid=3597, Unknown=0, NotChecked=0, Total=4830 [2024-09-12 15:31:48,157 INFO L434 NwaCegarLoop]: 37 mSDtfsCounter, 427 mSDsluCounter, 266 mSDsCounter, 0 mSdLazyCounter, 518 mSolverCounterSat, 262 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 427 SdHoareTripleChecker+Valid, 303 SdHoareTripleChecker+Invalid, 780 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 262 IncrementalHoareTripleChecker+Valid, 518 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.5s IncrementalHoareTripleChecker+Time [2024-09-12 15:31:48,157 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [427 Valid, 303 Invalid, 780 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [262 Valid, 518 Invalid, 0 Unknown, 0 Unchecked, 0.5s Time] [2024-09-12 15:31:48,157 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 382 states. [2024-09-12 15:31:48,265 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 382 to 236. [2024-09-12 15:31:48,266 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 236 states, 231 states have (on average 1.4761904761904763) internal successors, (341), 231 states have internal predecessors, (341), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:48,267 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 236 states to 236 states and 345 transitions. [2024-09-12 15:31:48,268 INFO L78 Accepts]: Start accepts. Automaton has 236 states and 345 transitions. Word has length 26 [2024-09-12 15:31:48,268 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 15:31:48,268 INFO L474 AbstractCegarLoop]: Abstraction has 236 states and 345 transitions. [2024-09-12 15:31:48,268 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 19 states, 19 states have (on average 1.7894736842105263) internal successors, (34), 19 states have internal predecessors, (34), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:48,268 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:31:48,269 INFO L276 IsEmpty]: Start isEmpty. Operand 236 states and 345 transitions. [2024-09-12 15:31:48,269 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 28 [2024-09-12 15:31:48,269 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 15:31:48,270 INFO L216 NwaCegarLoop]: trace histogram [11, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 15:31:48,285 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (12)] Ended with exit code 0 [2024-09-12 15:31:48,470 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable12,12 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:31:48,470 INFO L399 AbstractCegarLoop]: === Iteration 14 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 15:31:48,470 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:31:48,471 INFO L85 PathProgramCache]: Analyzing trace with hash -1716429653, now seen corresponding path program 3 times [2024-09-12 15:31:48,471 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 15:31:48,471 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1353614949] [2024-09-12 15:31:48,471 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 15:31:48,471 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 15:31:48,481 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:31:48,642 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-12 15:31:48,643 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:31:48,644 INFO L134 CoverageAnalysis]: Checked inductivity of 66 backedges. 0 proven. 66 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-12 15:31:48,644 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 15:31:48,644 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1353614949] [2024-09-12 15:31:48,644 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1353614949] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 15:31:48,644 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1011179601] [2024-09-12 15:31:48,644 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-09-12 15:31:48,645 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:31:48,645 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 15:31:48,646 INFO L229 MonitoredProcess]: Starting monitored process 13 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 15:31:48,648 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (13)] Waiting until timeout for monitored process [2024-09-12 15:31:48,690 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 7 check-sat command(s) [2024-09-12 15:31:48,691 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-12 15:31:48,692 INFO L262 TraceCheckSpWp]: Trace formula consists of 104 conjuncts, 27 conjuncts are in the unsatisfiable core [2024-09-12 15:31:48,693 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 15:31:48,730 INFO L134 CoverageAnalysis]: Checked inductivity of 66 backedges. 0 proven. 66 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-12 15:31:48,731 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 15:31:48,986 INFO L134 CoverageAnalysis]: Checked inductivity of 66 backedges. 0 proven. 66 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-12 15:31:48,986 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1011179601] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-12 15:31:48,986 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-12 15:31:48,986 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [15, 15, 15] total 29 [2024-09-12 15:31:48,986 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [93883615] [2024-09-12 15:31:48,986 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-12 15:31:48,987 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 29 states [2024-09-12 15:31:48,987 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 15:31:48,987 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 29 interpolants. [2024-09-12 15:31:48,988 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=201, Invalid=611, Unknown=0, NotChecked=0, Total=812 [2024-09-12 15:31:48,988 INFO L87 Difference]: Start difference. First operand 236 states and 345 transitions. Second operand has 29 states, 29 states have (on average 1.3793103448275863) internal successors, (40), 29 states have internal predecessors, (40), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:52,889 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 15:31:52,890 INFO L93 Difference]: Finished difference Result 821 states and 1318 transitions. [2024-09-12 15:31:52,890 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 60 states. [2024-09-12 15:31:52,890 INFO L78 Accepts]: Start accepts. Automaton has has 29 states, 29 states have (on average 1.3793103448275863) internal successors, (40), 29 states have internal predecessors, (40), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 27 [2024-09-12 15:31:52,890 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 15:31:52,894 INFO L225 Difference]: With dead ends: 821 [2024-09-12 15:31:52,894 INFO L226 Difference]: Without dead ends: 764 [2024-09-12 15:31:52,896 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 115 GetRequests, 44 SyntacticMatches, 0 SemanticMatches, 71 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1329 ImplicationChecksByTransitivity, 2.4s TimeCoverageRelationStatistics Valid=1624, Invalid=3632, Unknown=0, NotChecked=0, Total=5256 [2024-09-12 15:31:52,896 INFO L434 NwaCegarLoop]: 64 mSDtfsCounter, 1322 mSDsluCounter, 801 mSDsCounter, 0 mSdLazyCounter, 1091 mSolverCounterSat, 684 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1322 SdHoareTripleChecker+Valid, 865 SdHoareTripleChecker+Invalid, 1775 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 684 IncrementalHoareTripleChecker+Valid, 1091 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.4s IncrementalHoareTripleChecker+Time [2024-09-12 15:31:52,896 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [1322 Valid, 865 Invalid, 1775 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [684 Valid, 1091 Invalid, 0 Unknown, 0 Unchecked, 1.4s Time] [2024-09-12 15:31:52,897 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 764 states. [2024-09-12 15:31:53,069 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 764 to 380. [2024-09-12 15:31:53,069 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 380 states, 375 states have (on average 1.5066666666666666) internal successors, (565), 375 states have internal predecessors, (565), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:53,071 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 380 states to 380 states and 569 transitions. [2024-09-12 15:31:53,072 INFO L78 Accepts]: Start accepts. Automaton has 380 states and 569 transitions. Word has length 27 [2024-09-12 15:31:53,072 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 15:31:53,072 INFO L474 AbstractCegarLoop]: Abstraction has 380 states and 569 transitions. [2024-09-12 15:31:53,072 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 29 states, 29 states have (on average 1.3793103448275863) internal successors, (40), 29 states have internal predecessors, (40), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:53,073 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:31:53,073 INFO L276 IsEmpty]: Start isEmpty. Operand 380 states and 569 transitions. [2024-09-12 15:31:53,073 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 29 [2024-09-12 15:31:53,073 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 15:31:53,074 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 15:31:53,086 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (13)] Forceful destruction successful, exit code 0 [2024-09-12 15:31:53,274 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 13 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable13 [2024-09-12 15:31:53,274 INFO L399 AbstractCegarLoop]: === Iteration 15 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 15:31:53,274 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:31:53,275 INFO L85 PathProgramCache]: Analyzing trace with hash 216651583, now seen corresponding path program 5 times [2024-09-12 15:31:53,275 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 15:31:53,275 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [50785742] [2024-09-12 15:31:53,275 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 15:31:53,275 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 15:31:53,301 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:31:53,670 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-12 15:31:53,671 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:31:53,673 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 0 proven. 15 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-09-12 15:31:53,673 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 15:31:53,673 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [50785742] [2024-09-12 15:31:53,674 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [50785742] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 15:31:53,674 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1928900831] [2024-09-12 15:31:53,674 INFO L93 rtionOrderModulation]: Changing assertion order to INSIDE_LOOP_FIRST1 [2024-09-12 15:31:53,674 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:31:53,674 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 15:31:53,676 INFO L229 MonitoredProcess]: Starting monitored process 14 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 15:31:53,678 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (14)] Waiting until timeout for monitored process [2024-09-12 15:31:53,748 INFO L228 tOrderPrioritization]: Assert order INSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-12 15:31:53,748 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-12 15:31:53,754 INFO L262 TraceCheckSpWp]: Trace formula consists of 109 conjuncts, 50 conjuncts are in the unsatisfiable core [2024-09-12 15:31:53,756 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 15:31:54,313 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 0 proven. 18 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-12 15:31:54,313 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 15:31:54,762 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 0 proven. 15 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-09-12 15:31:54,762 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1928900831] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-12 15:31:54,762 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-12 15:31:54,762 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [12, 17, 14] total 31 [2024-09-12 15:31:54,762 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [391574972] [2024-09-12 15:31:54,762 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-12 15:31:54,763 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 31 states [2024-09-12 15:31:54,763 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 15:31:54,763 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 31 interpolants. [2024-09-12 15:31:54,764 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=138, Invalid=792, Unknown=0, NotChecked=0, Total=930 [2024-09-12 15:31:54,764 INFO L87 Difference]: Start difference. First operand 380 states and 569 transitions. Second operand has 31 states, 31 states have (on average 1.8064516129032258) internal successors, (56), 29 states have internal predecessors, (56), 3 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:31:58,872 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-12 15:32:01,222 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 15:32:01,222 INFO L93 Difference]: Finished difference Result 528 states and 742 transitions. [2024-09-12 15:32:01,222 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 33 states. [2024-09-12 15:32:01,223 INFO L78 Accepts]: Start accepts. Automaton has has 31 states, 31 states have (on average 1.8064516129032258) internal successors, (56), 29 states have internal predecessors, (56), 3 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 28 [2024-09-12 15:32:01,223 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 15:32:01,225 INFO L225 Difference]: With dead ends: 528 [2024-09-12 15:32:01,225 INFO L226 Difference]: Without dead ends: 434 [2024-09-12 15:32:01,226 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 89 GetRequests, 40 SyntacticMatches, 5 SemanticMatches, 44 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 519 ImplicationChecksByTransitivity, 1.6s TimeCoverageRelationStatistics Valid=292, Invalid=1778, Unknown=0, NotChecked=0, Total=2070 [2024-09-12 15:32:01,227 INFO L434 NwaCegarLoop]: 13 mSDtfsCounter, 35 mSDsluCounter, 202 mSDsCounter, 0 mSdLazyCounter, 631 mSolverCounterSat, 30 mSolverCounterUnsat, 1 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 5.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 35 SdHoareTripleChecker+Valid, 215 SdHoareTripleChecker+Invalid, 662 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 30 IncrementalHoareTripleChecker+Valid, 631 IncrementalHoareTripleChecker+Invalid, 1 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 5.1s IncrementalHoareTripleChecker+Time [2024-09-12 15:32:01,227 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [35 Valid, 215 Invalid, 662 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [30 Valid, 631 Invalid, 1 Unknown, 0 Unchecked, 5.1s Time] [2024-09-12 15:32:01,228 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 434 states. [2024-09-12 15:32:01,447 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 434 to 358. [2024-09-12 15:32:01,448 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 358 states, 353 states have (on average 1.4844192634560907) internal successors, (524), 353 states have internal predecessors, (524), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:32:01,449 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 358 states to 358 states and 528 transitions. [2024-09-12 15:32:01,450 INFO L78 Accepts]: Start accepts. Automaton has 358 states and 528 transitions. Word has length 28 [2024-09-12 15:32:01,450 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 15:32:01,450 INFO L474 AbstractCegarLoop]: Abstraction has 358 states and 528 transitions. [2024-09-12 15:32:01,450 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 31 states, 31 states have (on average 1.8064516129032258) internal successors, (56), 29 states have internal predecessors, (56), 3 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:32:01,450 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:32:01,451 INFO L276 IsEmpty]: Start isEmpty. Operand 358 states and 528 transitions. [2024-09-12 15:32:01,451 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 29 [2024-09-12 15:32:01,451 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 15:32:01,451 INFO L216 NwaCegarLoop]: trace histogram [4, 4, 4, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 15:32:01,463 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (14)] Ended with exit code 0 [2024-09-12 15:32:01,651 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 14 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable14 [2024-09-12 15:32:01,652 INFO L399 AbstractCegarLoop]: === Iteration 16 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 15:32:01,652 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:32:01,652 INFO L85 PathProgramCache]: Analyzing trace with hash 302553951, now seen corresponding path program 4 times [2024-09-12 15:32:01,652 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 15:32:01,652 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2032484758] [2024-09-12 15:32:01,652 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 15:32:01,652 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 15:32:01,675 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:32:01,848 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-12 15:32:01,849 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:32:01,850 INFO L134 CoverageAnalysis]: Checked inductivity of 30 backedges. 0 proven. 30 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-12 15:32:01,850 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 15:32:01,850 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2032484758] [2024-09-12 15:32:01,851 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2032484758] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 15:32:01,851 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1430498373] [2024-09-12 15:32:01,851 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2024-09-12 15:32:01,851 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:32:01,851 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 15:32:01,853 INFO L229 MonitoredProcess]: Starting monitored process 15 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 15:32:01,855 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (15)] Waiting until timeout for monitored process [2024-09-12 15:32:01,904 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2024-09-12 15:32:01,904 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-12 15:32:01,905 INFO L262 TraceCheckSpWp]: Trace formula consists of 109 conjuncts, 20 conjuncts are in the unsatisfiable core [2024-09-12 15:32:01,906 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 15:32:02,035 INFO L134 CoverageAnalysis]: Checked inductivity of 30 backedges. 4 proven. 16 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2024-09-12 15:32:02,037 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 15:32:02,199 INFO L134 CoverageAnalysis]: Checked inductivity of 30 backedges. 4 proven. 16 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2024-09-12 15:32:02,199 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1430498373] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-12 15:32:02,199 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-12 15:32:02,199 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [13, 7, 7] total 18 [2024-09-12 15:32:02,200 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [696656746] [2024-09-12 15:32:02,200 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-12 15:32:02,200 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 18 states [2024-09-12 15:32:02,200 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 15:32:02,200 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 18 interpolants. [2024-09-12 15:32:02,200 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=34, Invalid=272, Unknown=0, NotChecked=0, Total=306 [2024-09-12 15:32:02,201 INFO L87 Difference]: Start difference. First operand 358 states and 528 transitions. Second operand has 18 states, 18 states have (on average 2.2222222222222223) internal successors, (40), 18 states have internal predecessors, (40), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:32:05,356 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 15:32:05,356 INFO L93 Difference]: Finished difference Result 865 states and 1290 transitions. [2024-09-12 15:32:05,356 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 92 states. [2024-09-12 15:32:05,357 INFO L78 Accepts]: Start accepts. Automaton has has 18 states, 18 states have (on average 2.2222222222222223) internal successors, (40), 18 states have internal predecessors, (40), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 28 [2024-09-12 15:32:05,357 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 15:32:05,360 INFO L225 Difference]: With dead ends: 865 [2024-09-12 15:32:05,360 INFO L226 Difference]: Without dead ends: 793 [2024-09-12 15:32:05,362 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 161 GetRequests, 50 SyntacticMatches, 8 SemanticMatches, 103 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3724 ImplicationChecksByTransitivity, 1.8s TimeCoverageRelationStatistics Valid=926, Invalid=9994, Unknown=0, NotChecked=0, Total=10920 [2024-09-12 15:32:05,363 INFO L434 NwaCegarLoop]: 30 mSDtfsCounter, 271 mSDsluCounter, 297 mSDsCounter, 0 mSdLazyCounter, 1241 mSolverCounterSat, 267 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.7s Time, 0 mProtectedPredicate, 0 mProtectedAction, 271 SdHoareTripleChecker+Valid, 327 SdHoareTripleChecker+Invalid, 1508 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 267 IncrementalHoareTripleChecker+Valid, 1241 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.8s IncrementalHoareTripleChecker+Time [2024-09-12 15:32:05,363 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [271 Valid, 327 Invalid, 1508 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [267 Valid, 1241 Invalid, 0 Unknown, 0 Unchecked, 0.8s Time] [2024-09-12 15:32:05,364 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 793 states. [2024-09-12 15:32:05,642 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 793 to 410. [2024-09-12 15:32:05,643 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 410 states, 405 states have (on average 1.4987654320987653) internal successors, (607), 405 states have internal predecessors, (607), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:32:05,644 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 410 states to 410 states and 611 transitions. [2024-09-12 15:32:05,645 INFO L78 Accepts]: Start accepts. Automaton has 410 states and 611 transitions. Word has length 28 [2024-09-12 15:32:05,646 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 15:32:05,646 INFO L474 AbstractCegarLoop]: Abstraction has 410 states and 611 transitions. [2024-09-12 15:32:05,646 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 18 states, 18 states have (on average 2.2222222222222223) internal successors, (40), 18 states have internal predecessors, (40), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:32:05,646 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:32:05,646 INFO L276 IsEmpty]: Start isEmpty. Operand 410 states and 611 transitions. [2024-09-12 15:32:05,647 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 31 [2024-09-12 15:32:05,647 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 15:32:05,647 INFO L216 NwaCegarLoop]: trace histogram [3, 3, 3, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 15:32:05,664 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (15)] Ended with exit code 0 [2024-09-12 15:32:05,848 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 15 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable15 [2024-09-12 15:32:05,848 INFO L399 AbstractCegarLoop]: === Iteration 17 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 15:32:05,848 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:32:05,848 INFO L85 PathProgramCache]: Analyzing trace with hash 997958656, now seen corresponding path program 6 times [2024-09-12 15:32:05,849 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 15:32:05,849 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1442481450] [2024-09-12 15:32:05,849 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 15:32:05,849 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 15:32:05,860 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:32:05,997 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-12 15:32:05,998 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:32:06,000 INFO L134 CoverageAnalysis]: Checked inductivity of 26 backedges. 6 proven. 7 refuted. 0 times theorem prover too weak. 13 trivial. 0 not checked. [2024-09-12 15:32:06,000 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 15:32:06,000 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1442481450] [2024-09-12 15:32:06,000 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1442481450] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 15:32:06,000 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1176931645] [2024-09-12 15:32:06,000 INFO L93 rtionOrderModulation]: Changing assertion order to MIX_INSIDE_OUTSIDE [2024-09-12 15:32:06,000 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:32:06,001 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 15:32:06,002 INFO L229 MonitoredProcess]: Starting monitored process 16 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 15:32:06,005 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (16)] Waiting until timeout for monitored process [2024-09-12 15:32:06,053 INFO L228 tOrderPrioritization]: Assert order MIX_INSIDE_OUTSIDE issued 3 check-sat command(s) [2024-09-12 15:32:06,053 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-12 15:32:06,054 INFO L262 TraceCheckSpWp]: Trace formula consists of 119 conjuncts, 14 conjuncts are in the unsatisfiable core [2024-09-12 15:32:06,055 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 15:32:06,119 INFO L134 CoverageAnalysis]: Checked inductivity of 26 backedges. 4 proven. 8 refuted. 0 times theorem prover too weak. 14 trivial. 0 not checked. [2024-09-12 15:32:06,119 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 15:32:06,161 INFO L134 CoverageAnalysis]: Checked inductivity of 26 backedges. 4 proven. 8 refuted. 0 times theorem prover too weak. 14 trivial. 0 not checked. [2024-09-12 15:32:06,161 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1176931645] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-12 15:32:06,161 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-12 15:32:06,162 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [9, 6, 6] total 12 [2024-09-12 15:32:06,162 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [306967656] [2024-09-12 15:32:06,162 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-12 15:32:06,162 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 12 states [2024-09-12 15:32:06,162 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 15:32:06,162 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 12 interpolants. [2024-09-12 15:32:06,163 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=39, Invalid=93, Unknown=0, NotChecked=0, Total=132 [2024-09-12 15:32:06,163 INFO L87 Difference]: Start difference. First operand 410 states and 611 transitions. Second operand has 12 states, 12 states have (on average 2.8333333333333335) internal successors, (34), 12 states have internal predecessors, (34), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:32:06,818 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 15:32:06,818 INFO L93 Difference]: Finished difference Result 672 states and 978 transitions. [2024-09-12 15:32:06,819 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2024-09-12 15:32:06,819 INFO L78 Accepts]: Start accepts. Automaton has has 12 states, 12 states have (on average 2.8333333333333335) internal successors, (34), 12 states have internal predecessors, (34), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 30 [2024-09-12 15:32:06,819 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 15:32:06,821 INFO L225 Difference]: With dead ends: 672 [2024-09-12 15:32:06,822 INFO L226 Difference]: Without dead ends: 642 [2024-09-12 15:32:06,822 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 72 GetRequests, 58 SyntacticMatches, 2 SemanticMatches, 12 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 40 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=52, Invalid=130, Unknown=0, NotChecked=0, Total=182 [2024-09-12 15:32:06,822 INFO L434 NwaCegarLoop]: 37 mSDtfsCounter, 61 mSDsluCounter, 128 mSDsCounter, 0 mSdLazyCounter, 84 mSolverCounterSat, 29 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 61 SdHoareTripleChecker+Valid, 165 SdHoareTripleChecker+Invalid, 113 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 29 IncrementalHoareTripleChecker+Valid, 84 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-12 15:32:06,823 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [61 Valid, 165 Invalid, 113 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [29 Valid, 84 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-12 15:32:06,824 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 642 states. [2024-09-12 15:32:07,145 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 642 to 413. [2024-09-12 15:32:07,145 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 413 states, 408 states have (on average 1.4877450980392157) internal successors, (607), 408 states have internal predecessors, (607), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:32:07,146 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 413 states to 413 states and 611 transitions. [2024-09-12 15:32:07,147 INFO L78 Accepts]: Start accepts. Automaton has 413 states and 611 transitions. Word has length 30 [2024-09-12 15:32:07,147 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 15:32:07,147 INFO L474 AbstractCegarLoop]: Abstraction has 413 states and 611 transitions. [2024-09-12 15:32:07,147 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 12 states, 12 states have (on average 2.8333333333333335) internal successors, (34), 12 states have internal predecessors, (34), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:32:07,148 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:32:07,148 INFO L276 IsEmpty]: Start isEmpty. Operand 413 states and 611 transitions. [2024-09-12 15:32:07,148 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 32 [2024-09-12 15:32:07,148 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 15:32:07,148 INFO L216 NwaCegarLoop]: trace histogram [5, 5, 5, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 15:32:07,160 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (16)] Ended with exit code 0 [2024-09-12 15:32:07,349 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 16 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable16 [2024-09-12 15:32:07,349 INFO L399 AbstractCegarLoop]: === Iteration 18 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 15:32:07,349 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:32:07,349 INFO L85 PathProgramCache]: Analyzing trace with hash -1736256998, now seen corresponding path program 5 times [2024-09-12 15:32:07,349 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 15:32:07,349 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1487943776] [2024-09-12 15:32:07,349 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 15:32:07,350 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 15:32:07,359 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:32:07,546 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-12 15:32:07,547 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:32:07,548 INFO L134 CoverageAnalysis]: Checked inductivity of 45 backedges. 0 proven. 45 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-12 15:32:07,548 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 15:32:07,548 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1487943776] [2024-09-12 15:32:07,549 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1487943776] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 15:32:07,549 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [886627461] [2024-09-12 15:32:07,549 INFO L93 rtionOrderModulation]: Changing assertion order to INSIDE_LOOP_FIRST1 [2024-09-12 15:32:07,549 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:32:07,549 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 15:32:07,551 INFO L229 MonitoredProcess]: Starting monitored process 17 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 15:32:07,552 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (17)] Waiting until timeout for monitored process [2024-09-12 15:32:07,617 INFO L228 tOrderPrioritization]: Assert order INSIDE_LOOP_FIRST1 issued 4 check-sat command(s) [2024-09-12 15:32:07,618 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-12 15:32:07,619 INFO L262 TraceCheckSpWp]: Trace formula consists of 124 conjuncts, 36 conjuncts are in the unsatisfiable core [2024-09-12 15:32:07,620 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 15:32:07,751 INFO L134 CoverageAnalysis]: Checked inductivity of 45 backedges. 0 proven. 45 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-12 15:32:07,751 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 15:32:08,014 INFO L134 CoverageAnalysis]: Checked inductivity of 45 backedges. 0 proven. 30 refuted. 0 times theorem prover too weak. 15 trivial. 0 not checked. [2024-09-12 15:32:08,015 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [886627461] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-12 15:32:08,015 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-12 15:32:08,015 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [15, 19, 13] total 32 [2024-09-12 15:32:08,015 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1279114289] [2024-09-12 15:32:08,015 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-12 15:32:08,015 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 32 states [2024-09-12 15:32:08,015 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 15:32:08,016 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 32 interpolants. [2024-09-12 15:32:08,016 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=216, Invalid=776, Unknown=0, NotChecked=0, Total=992 [2024-09-12 15:32:08,016 INFO L87 Difference]: Start difference. First operand 413 states and 611 transitions. Second operand has 32 states, 32 states have (on average 1.78125) internal successors, (57), 32 states have internal predecessors, (57), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:32:10,838 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 15:32:10,838 INFO L93 Difference]: Finished difference Result 1049 states and 1576 transitions. [2024-09-12 15:32:10,839 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 77 states. [2024-09-12 15:32:10,839 INFO L78 Accepts]: Start accepts. Automaton has has 32 states, 32 states have (on average 1.78125) internal successors, (57), 32 states have internal predecessors, (57), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 31 [2024-09-12 15:32:10,839 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 15:32:10,844 INFO L225 Difference]: With dead ends: 1049 [2024-09-12 15:32:10,844 INFO L226 Difference]: Without dead ends: 975 [2024-09-12 15:32:10,846 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 136 GetRequests, 53 SyntacticMatches, 0 SemanticMatches, 83 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2098 ImplicationChecksByTransitivity, 1.4s TimeCoverageRelationStatistics Valid=1727, Invalid=5413, Unknown=0, NotChecked=0, Total=7140 [2024-09-12 15:32:10,847 INFO L434 NwaCegarLoop]: 32 mSDtfsCounter, 305 mSDsluCounter, 482 mSDsCounter, 0 mSdLazyCounter, 1683 mSolverCounterSat, 327 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.7s Time, 0 mProtectedPredicate, 0 mProtectedAction, 305 SdHoareTripleChecker+Valid, 514 SdHoareTripleChecker+Invalid, 2010 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 327 IncrementalHoareTripleChecker+Valid, 1683 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.8s IncrementalHoareTripleChecker+Time [2024-09-12 15:32:10,847 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [305 Valid, 514 Invalid, 2010 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [327 Valid, 1683 Invalid, 0 Unknown, 0 Unchecked, 0.8s Time] [2024-09-12 15:32:10,848 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 975 states. [2024-09-12 15:32:11,237 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 975 to 484. [2024-09-12 15:32:11,238 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 484 states, 479 states have (on average 1.4968684759916493) internal successors, (717), 479 states have internal predecessors, (717), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:32:11,239 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 484 states to 484 states and 721 transitions. [2024-09-12 15:32:11,240 INFO L78 Accepts]: Start accepts. Automaton has 484 states and 721 transitions. Word has length 31 [2024-09-12 15:32:11,240 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 15:32:11,241 INFO L474 AbstractCegarLoop]: Abstraction has 484 states and 721 transitions. [2024-09-12 15:32:11,241 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 32 states, 32 states have (on average 1.78125) internal successors, (57), 32 states have internal predecessors, (57), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:32:11,241 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:32:11,241 INFO L276 IsEmpty]: Start isEmpty. Operand 484 states and 721 transitions. [2024-09-12 15:32:11,242 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2024-09-12 15:32:11,242 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 15:32:11,242 INFO L216 NwaCegarLoop]: trace histogram [6, 6, 5, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 15:32:11,258 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (17)] Ended with exit code 0 [2024-09-12 15:32:11,442 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable17,17 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:32:11,443 INFO L399 AbstractCegarLoop]: === Iteration 19 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 15:32:11,443 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:32:11,443 INFO L85 PathProgramCache]: Analyzing trace with hash -1362411958, now seen corresponding path program 6 times [2024-09-12 15:32:11,443 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 15:32:11,443 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1830872208] [2024-09-12 15:32:11,443 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 15:32:11,443 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 15:32:11,454 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:32:11,630 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-12 15:32:11,631 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:32:11,632 INFO L134 CoverageAnalysis]: Checked inductivity of 57 backedges. 0 proven. 36 refuted. 0 times theorem prover too weak. 21 trivial. 0 not checked. [2024-09-12 15:32:11,632 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 15:32:11,632 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1830872208] [2024-09-12 15:32:11,632 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1830872208] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 15:32:11,632 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1546291356] [2024-09-12 15:32:11,632 INFO L93 rtionOrderModulation]: Changing assertion order to MIX_INSIDE_OUTSIDE [2024-09-12 15:32:11,633 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:32:11,633 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 15:32:11,634 INFO L229 MonitoredProcess]: Starting monitored process 18 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 15:32:11,636 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (18)] Waiting until timeout for monitored process [2024-09-12 15:32:11,684 INFO L228 tOrderPrioritization]: Assert order MIX_INSIDE_OUTSIDE issued 4 check-sat command(s) [2024-09-12 15:32:11,684 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-12 15:32:11,685 INFO L262 TraceCheckSpWp]: Trace formula consists of 134 conjuncts, 22 conjuncts are in the unsatisfiable core [2024-09-12 15:32:11,686 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 15:32:11,873 INFO L134 CoverageAnalysis]: Checked inductivity of 57 backedges. 10 proven. 25 refuted. 0 times theorem prover too weak. 22 trivial. 0 not checked. [2024-09-12 15:32:11,873 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 15:32:12,066 INFO L134 CoverageAnalysis]: Checked inductivity of 57 backedges. 10 proven. 25 refuted. 0 times theorem prover too weak. 22 trivial. 0 not checked. [2024-09-12 15:32:12,066 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1546291356] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-12 15:32:12,066 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-12 15:32:12,066 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [15, 8, 8] total 21 [2024-09-12 15:32:12,066 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [262328437] [2024-09-12 15:32:12,066 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-12 15:32:12,067 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 21 states [2024-09-12 15:32:12,067 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 15:32:12,067 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 21 interpolants. [2024-09-12 15:32:12,067 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=44, Invalid=376, Unknown=0, NotChecked=0, Total=420 [2024-09-12 15:32:12,067 INFO L87 Difference]: Start difference. First operand 484 states and 721 transitions. Second operand has 21 states, 21 states have (on average 2.0) internal successors, (42), 21 states have internal predecessors, (42), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:32:15,530 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 15:32:15,530 INFO L93 Difference]: Finished difference Result 1054 states and 1529 transitions. [2024-09-12 15:32:15,530 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 88 states. [2024-09-12 15:32:15,531 INFO L78 Accepts]: Start accepts. Automaton has has 21 states, 21 states have (on average 2.0) internal successors, (42), 21 states have internal predecessors, (42), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 33 [2024-09-12 15:32:15,531 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 15:32:15,534 INFO L225 Difference]: With dead ends: 1054 [2024-09-12 15:32:15,534 INFO L226 Difference]: Without dead ends: 962 [2024-09-12 15:32:15,537 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 167 GetRequests, 61 SyntacticMatches, 10 SemanticMatches, 96 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2933 ImplicationChecksByTransitivity, 2.0s TimeCoverageRelationStatistics Valid=989, Invalid=8517, Unknown=0, NotChecked=0, Total=9506 [2024-09-12 15:32:15,537 INFO L434 NwaCegarLoop]: 45 mSDtfsCounter, 384 mSDsluCounter, 384 mSDsCounter, 0 mSdLazyCounter, 1105 mSolverCounterSat, 269 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.7s Time, 0 mProtectedPredicate, 0 mProtectedAction, 384 SdHoareTripleChecker+Valid, 429 SdHoareTripleChecker+Invalid, 1374 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 269 IncrementalHoareTripleChecker+Valid, 1105 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.8s IncrementalHoareTripleChecker+Time [2024-09-12 15:32:15,538 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [384 Valid, 429 Invalid, 1374 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [269 Valid, 1105 Invalid, 0 Unknown, 0 Unchecked, 0.8s Time] [2024-09-12 15:32:15,539 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 962 states. [2024-09-12 15:32:15,959 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 962 to 510. [2024-09-12 15:32:15,960 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 510 states, 505 states have (on average 1.491089108910891) internal successors, (753), 505 states have internal predecessors, (753), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:32:15,961 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 510 states to 510 states and 757 transitions. [2024-09-12 15:32:15,962 INFO L78 Accepts]: Start accepts. Automaton has 510 states and 757 transitions. Word has length 33 [2024-09-12 15:32:15,963 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 15:32:15,963 INFO L474 AbstractCegarLoop]: Abstraction has 510 states and 757 transitions. [2024-09-12 15:32:15,963 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 21 states, 21 states have (on average 2.0) internal successors, (42), 21 states have internal predecessors, (42), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:32:15,963 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:32:15,963 INFO L276 IsEmpty]: Start isEmpty. Operand 510 states and 757 transitions. [2024-09-12 15:32:15,964 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2024-09-12 15:32:15,964 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 15:32:15,964 INFO L216 NwaCegarLoop]: trace histogram [12, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 15:32:15,981 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (18)] Ended with exit code 0 [2024-09-12 15:32:16,168 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable18,18 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:32:16,169 INFO L399 AbstractCegarLoop]: === Iteration 20 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 15:32:16,169 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:32:16,169 INFO L85 PathProgramCache]: Analyzing trace with hash 1741060780, now seen corresponding path program 7 times [2024-09-12 15:32:16,169 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 15:32:16,169 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1142909856] [2024-09-12 15:32:16,169 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 15:32:16,169 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 15:32:16,180 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:32:16,362 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-12 15:32:16,362 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:32:16,363 INFO L134 CoverageAnalysis]: Checked inductivity of 83 backedges. 0 proven. 79 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-12 15:32:16,363 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 15:32:16,363 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1142909856] [2024-09-12 15:32:16,364 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1142909856] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 15:32:16,364 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1338480017] [2024-09-12 15:32:16,364 INFO L93 rtionOrderModulation]: Changing assertion order to NOT_INCREMENTALLY [2024-09-12 15:32:16,364 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:32:16,364 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 15:32:16,365 INFO L229 MonitoredProcess]: Starting monitored process 19 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 15:32:16,366 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (19)] Waiting until timeout for monitored process [2024-09-12 15:32:16,407 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:32:16,408 INFO L262 TraceCheckSpWp]: Trace formula consists of 134 conjuncts, 31 conjuncts are in the unsatisfiable core [2024-09-12 15:32:16,409 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 15:32:16,435 INFO L134 CoverageAnalysis]: Checked inductivity of 83 backedges. 0 proven. 79 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-12 15:32:16,435 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 15:32:16,747 INFO L134 CoverageAnalysis]: Checked inductivity of 83 backedges. 0 proven. 79 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-12 15:32:16,747 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1338480017] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-12 15:32:16,747 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-12 15:32:16,747 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [17, 17, 17] total 33 [2024-09-12 15:32:16,747 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1836393908] [2024-09-12 15:32:16,747 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-12 15:32:16,748 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 33 states [2024-09-12 15:32:16,748 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 15:32:16,748 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 33 interpolants. [2024-09-12 15:32:16,749 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=238, Invalid=818, Unknown=0, NotChecked=0, Total=1056 [2024-09-12 15:32:16,749 INFO L87 Difference]: Start difference. First operand 510 states and 757 transitions. Second operand has 33 states, 33 states have (on average 1.4545454545454546) internal successors, (48), 33 states have internal predecessors, (48), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:32:28,221 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 15:32:28,222 INFO L93 Difference]: Finished difference Result 1408 states and 2227 transitions. [2024-09-12 15:32:28,222 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 131 states. [2024-09-12 15:32:28,222 INFO L78 Accepts]: Start accepts. Automaton has has 33 states, 33 states have (on average 1.4545454545454546) internal successors, (48), 33 states have internal predecessors, (48), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 33 [2024-09-12 15:32:28,222 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 15:32:28,226 INFO L225 Difference]: With dead ends: 1408 [2024-09-12 15:32:28,226 INFO L226 Difference]: Without dead ends: 1236 [2024-09-12 15:32:28,228 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 197 GetRequests, 54 SyntacticMatches, 0 SemanticMatches, 143 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 7998 ImplicationChecksByTransitivity, 8.3s TimeCoverageRelationStatistics Valid=5551, Invalid=15329, Unknown=0, NotChecked=0, Total=20880 [2024-09-12 15:32:28,229 INFO L434 NwaCegarLoop]: 71 mSDtfsCounter, 1663 mSDsluCounter, 972 mSDsCounter, 0 mSdLazyCounter, 1505 mSolverCounterSat, 1110 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 2.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1663 SdHoareTripleChecker+Valid, 1043 SdHoareTripleChecker+Invalid, 2615 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1110 IncrementalHoareTripleChecker+Valid, 1505 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 2.4s IncrementalHoareTripleChecker+Time [2024-09-12 15:32:28,229 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [1663 Valid, 1043 Invalid, 2615 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1110 Valid, 1505 Invalid, 0 Unknown, 0 Unchecked, 2.4s Time] [2024-09-12 15:32:28,230 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1236 states. [2024-09-12 15:32:28,702 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1236 to 561. [2024-09-12 15:32:28,703 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 561 states, 556 states have (on average 1.485611510791367) internal successors, (826), 556 states have internal predecessors, (826), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:32:28,704 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 561 states to 561 states and 830 transitions. [2024-09-12 15:32:28,706 INFO L78 Accepts]: Start accepts. Automaton has 561 states and 830 transitions. Word has length 33 [2024-09-12 15:32:28,706 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 15:32:28,706 INFO L474 AbstractCegarLoop]: Abstraction has 561 states and 830 transitions. [2024-09-12 15:32:28,706 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 33 states, 33 states have (on average 1.4545454545454546) internal successors, (48), 33 states have internal predecessors, (48), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:32:28,707 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:32:28,707 INFO L276 IsEmpty]: Start isEmpty. Operand 561 states and 830 transitions. [2024-09-12 15:32:28,708 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 35 [2024-09-12 15:32:28,708 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 15:32:28,708 INFO L216 NwaCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 15:32:28,724 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (19)] Ended with exit code 0 [2024-09-12 15:32:28,908 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable19,19 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:32:28,909 INFO L399 AbstractCegarLoop]: === Iteration 21 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 15:32:28,909 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:32:28,909 INFO L85 PathProgramCache]: Analyzing trace with hash -906855808, now seen corresponding path program 8 times [2024-09-12 15:32:28,909 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 15:32:28,909 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1843960940] [2024-09-12 15:32:28,909 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 15:32:28,909 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 15:32:28,932 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:32:29,468 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-12 15:32:29,468 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:32:29,470 INFO L134 CoverageAnalysis]: Checked inductivity of 36 backedges. 0 proven. 30 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-12 15:32:29,471 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 15:32:29,471 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1843960940] [2024-09-12 15:32:29,471 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1843960940] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 15:32:29,471 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2026500390] [2024-09-12 15:32:29,471 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-12 15:32:29,471 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:32:29,471 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 15:32:29,473 INFO L229 MonitoredProcess]: Starting monitored process 20 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 15:32:29,475 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (20)] Waiting until timeout for monitored process [2024-09-12 15:32:29,550 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-12 15:32:29,550 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-12 15:32:29,552 INFO L262 TraceCheckSpWp]: Trace formula consists of 139 conjuncts, 67 conjuncts are in the unsatisfiable core [2024-09-12 15:32:29,553 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 15:32:30,265 INFO L134 CoverageAnalysis]: Checked inductivity of 36 backedges. 0 proven. 36 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-12 15:32:30,265 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 15:32:30,791 INFO L134 CoverageAnalysis]: Checked inductivity of 36 backedges. 0 proven. 30 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-12 15:32:30,791 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2026500390] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-12 15:32:30,791 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-12 15:32:30,792 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [15, 22, 14] total 39 [2024-09-12 15:32:30,792 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [47706186] [2024-09-12 15:32:30,792 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-12 15:32:30,792 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 39 states [2024-09-12 15:32:30,792 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 15:32:30,792 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 39 interpolants. [2024-09-12 15:32:30,793 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=187, Invalid=1295, Unknown=0, NotChecked=0, Total=1482 [2024-09-12 15:32:30,793 INFO L87 Difference]: Start difference. First operand 561 states and 830 transitions. Second operand has 39 states, 39 states have (on average 1.8974358974358974) internal successors, (74), 37 states have internal predecessors, (74), 4 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:32:39,321 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 15:32:39,321 INFO L93 Difference]: Finished difference Result 762 states and 1064 transitions. [2024-09-12 15:32:39,322 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 48 states. [2024-09-12 15:32:39,322 INFO L78 Accepts]: Start accepts. Automaton has has 39 states, 39 states have (on average 1.8974358974358974) internal successors, (74), 37 states have internal predecessors, (74), 4 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 34 [2024-09-12 15:32:39,322 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 15:32:39,324 INFO L225 Difference]: With dead ends: 762 [2024-09-12 15:32:39,324 INFO L226 Difference]: Without dead ends: 644 [2024-09-12 15:32:39,325 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 120 GetRequests, 52 SyntacticMatches, 2 SemanticMatches, 66 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1092 ImplicationChecksByTransitivity, 6.7s TimeCoverageRelationStatistics Valid=535, Invalid=4020, Unknown=1, NotChecked=0, Total=4556 [2024-09-12 15:32:39,326 INFO L434 NwaCegarLoop]: 15 mSDtfsCounter, 74 mSDsluCounter, 207 mSDsCounter, 0 mSdLazyCounter, 834 mSolverCounterSat, 42 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 2.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 74 SdHoareTripleChecker+Valid, 222 SdHoareTripleChecker+Invalid, 876 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 42 IncrementalHoareTripleChecker+Valid, 834 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 2.2s IncrementalHoareTripleChecker+Time [2024-09-12 15:32:39,326 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [74 Valid, 222 Invalid, 876 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [42 Valid, 834 Invalid, 0 Unknown, 0 Unchecked, 2.2s Time] [2024-09-12 15:32:39,327 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 644 states. [2024-09-12 15:32:39,868 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 644 to 532. [2024-09-12 15:32:39,869 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 532 states, 527 states have (on average 1.4743833017077799) internal successors, (777), 527 states have internal predecessors, (777), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:32:39,870 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 532 states to 532 states and 781 transitions. [2024-09-12 15:32:39,871 INFO L78 Accepts]: Start accepts. Automaton has 532 states and 781 transitions. Word has length 34 [2024-09-12 15:32:39,871 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 15:32:39,871 INFO L474 AbstractCegarLoop]: Abstraction has 532 states and 781 transitions. [2024-09-12 15:32:39,872 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 39 states, 39 states have (on average 1.8974358974358974) internal successors, (74), 37 states have internal predecessors, (74), 4 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:32:39,872 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:32:39,872 INFO L276 IsEmpty]: Start isEmpty. Operand 532 states and 781 transitions. [2024-09-12 15:32:39,873 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 35 [2024-09-12 15:32:39,873 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 15:32:39,873 INFO L216 NwaCegarLoop]: trace histogram [6, 6, 6, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 15:32:39,890 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (20)] Ended with exit code 0 [2024-09-12 15:32:40,073 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 20 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable20 [2024-09-12 15:32:40,074 INFO L399 AbstractCegarLoop]: === Iteration 22 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 15:32:40,074 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:32:40,074 INFO L85 PathProgramCache]: Analyzing trace with hash -1249736321, now seen corresponding path program 7 times [2024-09-12 15:32:40,075 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 15:32:40,075 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1763139074] [2024-09-12 15:32:40,075 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 15:32:40,075 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 15:32:40,086 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:32:40,337 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-12 15:32:40,338 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:32:40,339 INFO L134 CoverageAnalysis]: Checked inductivity of 63 backedges. 0 proven. 63 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-12 15:32:40,339 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 15:32:40,339 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1763139074] [2024-09-12 15:32:40,339 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1763139074] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 15:32:40,339 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1732837171] [2024-09-12 15:32:40,339 INFO L93 rtionOrderModulation]: Changing assertion order to NOT_INCREMENTALLY [2024-09-12 15:32:40,340 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:32:40,340 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 15:32:40,342 INFO L229 MonitoredProcess]: Starting monitored process 21 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 15:32:40,343 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (21)] Waiting until timeout for monitored process [2024-09-12 15:32:40,396 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:32:40,399 INFO L262 TraceCheckSpWp]: Trace formula consists of 139 conjuncts, 14 conjuncts are in the unsatisfiable core [2024-09-12 15:32:40,400 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 15:32:40,552 INFO L134 CoverageAnalysis]: Checked inductivity of 63 backedges. 0 proven. 21 refuted. 0 times theorem prover too weak. 42 trivial. 0 not checked. [2024-09-12 15:32:40,552 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 15:32:40,743 INFO L134 CoverageAnalysis]: Checked inductivity of 63 backedges. 0 proven. 21 refuted. 0 times theorem prover too weak. 42 trivial. 0 not checked. [2024-09-12 15:32:40,743 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1732837171] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-12 15:32:40,743 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-12 15:32:40,743 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [17, 9, 9] total 31 [2024-09-12 15:32:40,743 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1147545024] [2024-09-12 15:32:40,743 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-12 15:32:40,744 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 31 states [2024-09-12 15:32:40,744 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 15:32:40,744 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 31 interpolants. [2024-09-12 15:32:40,744 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=164, Invalid=766, Unknown=0, NotChecked=0, Total=930 [2024-09-12 15:32:40,745 INFO L87 Difference]: Start difference. First operand 532 states and 781 transitions. Second operand has 31 states, 31 states have (on average 1.7741935483870968) internal successors, (55), 31 states have internal predecessors, (55), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:32:45,464 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 15:32:45,464 INFO L93 Difference]: Finished difference Result 1793 states and 2748 transitions. [2024-09-12 15:32:45,465 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 92 states. [2024-09-12 15:32:45,465 INFO L78 Accepts]: Start accepts. Automaton has has 31 states, 31 states have (on average 1.7741935483870968) internal successors, (55), 31 states have internal predecessors, (55), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 34 [2024-09-12 15:32:45,465 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 15:32:45,470 INFO L225 Difference]: With dead ends: 1793 [2024-09-12 15:32:45,470 INFO L226 Difference]: Without dead ends: 1702 [2024-09-12 15:32:45,471 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 181 GetRequests, 86 SyntacticMatches, 0 SemanticMatches, 95 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2284 ImplicationChecksByTransitivity, 1.6s TimeCoverageRelationStatistics Valid=1644, Invalid=7668, Unknown=0, NotChecked=0, Total=9312 [2024-09-12 15:32:45,472 INFO L434 NwaCegarLoop]: 51 mSDtfsCounter, 342 mSDsluCounter, 838 mSDsCounter, 0 mSdLazyCounter, 2729 mSolverCounterSat, 377 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 342 SdHoareTripleChecker+Valid, 889 SdHoareTripleChecker+Invalid, 3106 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 377 IncrementalHoareTripleChecker+Valid, 2729 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.3s IncrementalHoareTripleChecker+Time [2024-09-12 15:32:45,472 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [342 Valid, 889 Invalid, 3106 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [377 Valid, 2729 Invalid, 0 Unknown, 0 Unchecked, 1.3s Time] [2024-09-12 15:32:45,473 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1702 states. [2024-09-12 15:32:46,176 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1702 to 708. [2024-09-12 15:32:46,177 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 708 states, 703 states have (on average 1.496443812233286) internal successors, (1052), 703 states have internal predecessors, (1052), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:32:46,179 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 708 states to 708 states and 1056 transitions. [2024-09-12 15:32:46,182 INFO L78 Accepts]: Start accepts. Automaton has 708 states and 1056 transitions. Word has length 34 [2024-09-12 15:32:46,182 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 15:32:46,182 INFO L474 AbstractCegarLoop]: Abstraction has 708 states and 1056 transitions. [2024-09-12 15:32:46,182 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 31 states, 31 states have (on average 1.7741935483870968) internal successors, (55), 31 states have internal predecessors, (55), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:32:46,183 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:32:46,183 INFO L276 IsEmpty]: Start isEmpty. Operand 708 states and 1056 transitions. [2024-09-12 15:32:46,184 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 37 [2024-09-12 15:32:46,184 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 15:32:46,184 INFO L216 NwaCegarLoop]: trace histogram [4, 4, 4, 4, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 15:32:46,201 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (21)] Ended with exit code 0 [2024-09-12 15:32:46,388 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 21 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable21 [2024-09-12 15:32:46,389 INFO L399 AbstractCegarLoop]: === Iteration 23 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 15:32:46,389 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:32:46,389 INFO L85 PathProgramCache]: Analyzing trace with hash 572674207, now seen corresponding path program 9 times [2024-09-12 15:32:46,389 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 15:32:46,389 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [425152276] [2024-09-12 15:32:46,390 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 15:32:46,390 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 15:32:46,425 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:32:46,649 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-12 15:32:46,650 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:32:46,651 INFO L134 CoverageAnalysis]: Checked inductivity of 46 backedges. 0 proven. 13 refuted. 0 times theorem prover too weak. 33 trivial. 0 not checked. [2024-09-12 15:32:46,652 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 15:32:46,652 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [425152276] [2024-09-12 15:32:46,653 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [425152276] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 15:32:46,653 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [40104726] [2024-09-12 15:32:46,653 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-09-12 15:32:46,653 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:32:46,653 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 15:32:46,655 INFO L229 MonitoredProcess]: Starting monitored process 22 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 15:32:46,658 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (22)] Waiting until timeout for monitored process [2024-09-12 15:32:46,715 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 3 check-sat command(s) [2024-09-12 15:32:46,715 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-12 15:32:46,717 INFO L262 TraceCheckSpWp]: Trace formula consists of 149 conjuncts, 18 conjuncts are in the unsatisfiable core [2024-09-12 15:32:46,718 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 15:32:46,836 INFO L134 CoverageAnalysis]: Checked inductivity of 46 backedges. 6 proven. 14 refuted. 0 times theorem prover too weak. 26 trivial. 0 not checked. [2024-09-12 15:32:46,836 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 15:32:46,957 INFO L134 CoverageAnalysis]: Checked inductivity of 46 backedges. 6 proven. 14 refuted. 0 times theorem prover too weak. 26 trivial. 0 not checked. [2024-09-12 15:32:46,957 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [40104726] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-12 15:32:46,958 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-12 15:32:46,958 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [9, 7, 7] total 14 [2024-09-12 15:32:46,958 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [597424323] [2024-09-12 15:32:46,958 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-12 15:32:46,958 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 14 states [2024-09-12 15:32:46,959 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 15:32:46,959 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 14 interpolants. [2024-09-12 15:32:46,959 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=58, Invalid=124, Unknown=0, NotChecked=0, Total=182 [2024-09-12 15:32:46,959 INFO L87 Difference]: Start difference. First operand 708 states and 1056 transitions. Second operand has 14 states, 14 states have (on average 2.5714285714285716) internal successors, (36), 14 states have internal predecessors, (36), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:32:51,614 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-12 15:32:53,416 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 15:32:53,416 INFO L93 Difference]: Finished difference Result 1782 states and 2675 transitions. [2024-09-12 15:32:53,417 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 18 states. [2024-09-12 15:32:53,417 INFO L78 Accepts]: Start accepts. Automaton has has 14 states, 14 states have (on average 2.5714285714285716) internal successors, (36), 14 states have internal predecessors, (36), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 36 [2024-09-12 15:32:53,417 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 15:32:53,422 INFO L225 Difference]: With dead ends: 1782 [2024-09-12 15:32:53,422 INFO L226 Difference]: Without dead ends: 1518 [2024-09-12 15:32:53,423 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 93 GetRequests, 64 SyntacticMatches, 9 SemanticMatches, 20 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 78 ImplicationChecksByTransitivity, 0.4s TimeCoverageRelationStatistics Valid=148, Invalid=314, Unknown=0, NotChecked=0, Total=462 [2024-09-12 15:32:53,423 INFO L434 NwaCegarLoop]: 44 mSDtfsCounter, 188 mSDsluCounter, 194 mSDsCounter, 0 mSdLazyCounter, 108 mSolverCounterSat, 85 mSolverCounterUnsat, 1 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 4.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 188 SdHoareTripleChecker+Valid, 238 SdHoareTripleChecker+Invalid, 194 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 85 IncrementalHoareTripleChecker+Valid, 108 IncrementalHoareTripleChecker+Invalid, 1 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 4.2s IncrementalHoareTripleChecker+Time [2024-09-12 15:32:53,423 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [188 Valid, 238 Invalid, 194 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [85 Valid, 108 Invalid, 1 Unknown, 0 Unchecked, 4.2s Time] [2024-09-12 15:32:53,424 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1518 states. [2024-09-12 15:32:54,391 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1518 to 875. [2024-09-12 15:32:54,392 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 875 states, 870 states have (on average 1.5114942528735633) internal successors, (1315), 870 states have internal predecessors, (1315), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:32:54,395 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 875 states to 875 states and 1319 transitions. [2024-09-12 15:32:54,397 INFO L78 Accepts]: Start accepts. Automaton has 875 states and 1319 transitions. Word has length 36 [2024-09-12 15:32:54,397 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 15:32:54,397 INFO L474 AbstractCegarLoop]: Abstraction has 875 states and 1319 transitions. [2024-09-12 15:32:54,397 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 14 states, 14 states have (on average 2.5714285714285716) internal successors, (36), 14 states have internal predecessors, (36), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:32:54,398 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:32:54,398 INFO L276 IsEmpty]: Start isEmpty. Operand 875 states and 1319 transitions. [2024-09-12 15:32:54,399 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 38 [2024-09-12 15:32:54,399 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 15:32:54,399 INFO L216 NwaCegarLoop]: trace histogram [7, 7, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 15:32:54,416 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (22)] Ended with exit code 0 [2024-09-12 15:32:54,603 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable22,22 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:32:54,604 INFO L399 AbstractCegarLoop]: === Iteration 24 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 15:32:54,604 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:32:54,604 INFO L85 PathProgramCache]: Analyzing trace with hash 1567952235, now seen corresponding path program 10 times [2024-09-12 15:32:54,604 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 15:32:54,604 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [245846995] [2024-09-12 15:32:54,604 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 15:32:54,604 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 15:32:54,617 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:32:54,791 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-12 15:32:54,792 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:32:54,793 INFO L134 CoverageAnalysis]: Checked inductivity of 66 backedges. 0 proven. 31 refuted. 0 times theorem prover too weak. 35 trivial. 0 not checked. [2024-09-12 15:32:54,793 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 15:32:54,793 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [245846995] [2024-09-12 15:32:54,793 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [245846995] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 15:32:54,794 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [528405364] [2024-09-12 15:32:54,794 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2024-09-12 15:32:54,794 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:32:54,794 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 15:32:54,796 INFO L229 MonitoredProcess]: Starting monitored process 23 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 15:32:54,798 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (23)] Waiting until timeout for monitored process [2024-09-12 15:32:54,848 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2024-09-12 15:32:54,848 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-12 15:32:54,849 INFO L262 TraceCheckSpWp]: Trace formula consists of 154 conjuncts, 28 conjuncts are in the unsatisfiable core [2024-09-12 15:32:54,850 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 15:32:54,899 INFO L134 CoverageAnalysis]: Checked inductivity of 66 backedges. 0 proven. 31 refuted. 0 times theorem prover too weak. 35 trivial. 0 not checked. [2024-09-12 15:32:54,899 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 15:32:55,008 INFO L134 CoverageAnalysis]: Checked inductivity of 66 backedges. 15 proven. 6 refuted. 0 times theorem prover too weak. 45 trivial. 0 not checked. [2024-09-12 15:32:55,008 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [528405364] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-12 15:32:55,008 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-12 15:32:55,008 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [13, 13, 8] total 22 [2024-09-12 15:32:55,008 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1125634395] [2024-09-12 15:32:55,008 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-12 15:32:55,008 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 22 states [2024-09-12 15:32:55,009 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 15:32:55,009 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 22 interpolants. [2024-09-12 15:32:55,009 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=78, Invalid=384, Unknown=0, NotChecked=0, Total=462 [2024-09-12 15:32:55,009 INFO L87 Difference]: Start difference. First operand 875 states and 1319 transitions. Second operand has 22 states, 22 states have (on average 1.7727272727272727) internal successors, (39), 22 states have internal predecessors, (39), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:32:57,052 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 15:32:57,052 INFO L93 Difference]: Finished difference Result 1190 states and 1698 transitions. [2024-09-12 15:32:57,052 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 50 states. [2024-09-12 15:32:57,052 INFO L78 Accepts]: Start accepts. Automaton has has 22 states, 22 states have (on average 1.7727272727272727) internal successors, (39), 22 states have internal predecessors, (39), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 37 [2024-09-12 15:32:57,052 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 15:32:57,056 INFO L225 Difference]: With dead ends: 1190 [2024-09-12 15:32:57,056 INFO L226 Difference]: Without dead ends: 1017 [2024-09-12 15:32:57,057 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 120 GetRequests, 69 SyntacticMatches, 0 SemanticMatches, 51 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 603 ImplicationChecksByTransitivity, 0.7s TimeCoverageRelationStatistics Valid=317, Invalid=2439, Unknown=0, NotChecked=0, Total=2756 [2024-09-12 15:32:57,057 INFO L434 NwaCegarLoop]: 45 mSDtfsCounter, 81 mSDsluCounter, 369 mSDsCounter, 0 mSdLazyCounter, 721 mSolverCounterSat, 100 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 81 SdHoareTripleChecker+Valid, 414 SdHoareTripleChecker+Invalid, 821 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 100 IncrementalHoareTripleChecker+Valid, 721 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2024-09-12 15:32:57,057 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [81 Valid, 414 Invalid, 821 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [100 Valid, 721 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2024-09-12 15:32:57,058 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1017 states. [2024-09-12 15:32:57,993 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1017 to 859. [2024-09-12 15:32:57,994 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 859 states, 854 states have (on average 1.4976580796252927) internal successors, (1279), 854 states have internal predecessors, (1279), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:32:57,995 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 859 states to 859 states and 1283 transitions. [2024-09-12 15:32:57,996 INFO L78 Accepts]: Start accepts. Automaton has 859 states and 1283 transitions. Word has length 37 [2024-09-12 15:32:57,996 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 15:32:57,996 INFO L474 AbstractCegarLoop]: Abstraction has 859 states and 1283 transitions. [2024-09-12 15:32:57,996 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 22 states, 22 states have (on average 1.7727272727272727) internal successors, (39), 22 states have internal predecessors, (39), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:32:57,997 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:32:57,997 INFO L276 IsEmpty]: Start isEmpty. Operand 859 states and 1283 transitions. [2024-09-12 15:32:57,998 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 40 [2024-09-12 15:32:57,998 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 15:32:57,998 INFO L216 NwaCegarLoop]: trace histogram [8, 7, 7, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 15:32:58,014 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (23)] Ended with exit code 0 [2024-09-12 15:32:58,198 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 23 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable23 [2024-09-12 15:32:58,198 INFO L399 AbstractCegarLoop]: === Iteration 25 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 15:32:58,199 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:32:58,199 INFO L85 PathProgramCache]: Analyzing trace with hash 1064696843, now seen corresponding path program 2 times [2024-09-12 15:32:58,199 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 15:32:58,199 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2143745142] [2024-09-12 15:32:58,199 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 15:32:58,199 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 15:32:58,211 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:32:58,466 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-12 15:32:58,466 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:32:58,467 INFO L134 CoverageAnalysis]: Checked inductivity of 93 backedges. 8 proven. 56 refuted. 0 times theorem prover too weak. 29 trivial. 0 not checked. [2024-09-12 15:32:58,468 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 15:32:58,468 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2143745142] [2024-09-12 15:32:58,468 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2143745142] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 15:32:58,468 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1056159688] [2024-09-12 15:32:58,468 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-12 15:32:58,468 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:32:58,468 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 15:32:58,470 INFO L229 MonitoredProcess]: Starting monitored process 24 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 15:32:58,471 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (24)] Waiting until timeout for monitored process [2024-09-12 15:32:58,524 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-12 15:32:58,524 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-12 15:32:58,526 INFO L262 TraceCheckSpWp]: Trace formula consists of 164 conjuncts, 52 conjuncts are in the unsatisfiable core [2024-09-12 15:32:58,527 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 15:32:58,634 INFO L134 CoverageAnalysis]: Checked inductivity of 93 backedges. 0 proven. 93 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-12 15:32:58,634 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 15:32:58,860 INFO L134 CoverageAnalysis]: Checked inductivity of 93 backedges. 18 proven. 44 refuted. 0 times theorem prover too weak. 31 trivial. 0 not checked. [2024-09-12 15:32:58,861 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1056159688] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-12 15:32:58,861 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-12 15:32:58,861 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [18, 19, 10] total 27 [2024-09-12 15:32:58,861 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [523861073] [2024-09-12 15:32:58,861 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-12 15:32:58,861 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 27 states [2024-09-12 15:32:58,861 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 15:32:58,862 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 27 interpolants. [2024-09-12 15:32:58,862 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=120, Invalid=582, Unknown=0, NotChecked=0, Total=702 [2024-09-12 15:32:58,862 INFO L87 Difference]: Start difference. First operand 859 states and 1283 transitions. Second operand has 27 states, 27 states have (on average 2.4074074074074074) internal successors, (65), 27 states have internal predecessors, (65), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:33:03,789 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 15:33:03,789 INFO L93 Difference]: Finished difference Result 1708 states and 2444 transitions. [2024-09-12 15:33:03,789 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 96 states. [2024-09-12 15:33:03,789 INFO L78 Accepts]: Start accepts. Automaton has has 27 states, 27 states have (on average 2.4074074074074074) internal successors, (65), 27 states have internal predecessors, (65), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 39 [2024-09-12 15:33:03,790 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 15:33:03,794 INFO L225 Difference]: With dead ends: 1708 [2024-09-12 15:33:03,794 INFO L226 Difference]: Without dead ends: 1586 [2024-09-12 15:33:03,795 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 204 GetRequests, 101 SyntacticMatches, 2 SemanticMatches, 101 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3092 ImplicationChecksByTransitivity, 1.6s TimeCoverageRelationStatistics Valid=2076, Invalid=8430, Unknown=0, NotChecked=0, Total=10506 [2024-09-12 15:33:03,796 INFO L434 NwaCegarLoop]: 40 mSDtfsCounter, 371 mSDsluCounter, 644 mSDsCounter, 0 mSdLazyCounter, 2744 mSolverCounterSat, 283 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 371 SdHoareTripleChecker+Valid, 684 SdHoareTripleChecker+Invalid, 3027 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 283 IncrementalHoareTripleChecker+Valid, 2744 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.2s IncrementalHoareTripleChecker+Time [2024-09-12 15:33:03,796 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [371 Valid, 684 Invalid, 3027 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [283 Valid, 2744 Invalid, 0 Unknown, 0 Unchecked, 1.2s Time] [2024-09-12 15:33:03,797 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1586 states. [2024-09-12 15:33:04,806 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1586 to 936. [2024-09-12 15:33:04,807 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 936 states, 931 states have (on average 1.4951664876476907) internal successors, (1392), 931 states have internal predecessors, (1392), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:33:04,809 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 936 states to 936 states and 1396 transitions. [2024-09-12 15:33:04,811 INFO L78 Accepts]: Start accepts. Automaton has 936 states and 1396 transitions. Word has length 39 [2024-09-12 15:33:04,811 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 15:33:04,811 INFO L474 AbstractCegarLoop]: Abstraction has 936 states and 1396 transitions. [2024-09-12 15:33:04,811 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 27 states, 27 states have (on average 2.4074074074074074) internal successors, (65), 27 states have internal predecessors, (65), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:33:04,812 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:33:04,812 INFO L276 IsEmpty]: Start isEmpty. Operand 936 states and 1396 transitions. [2024-09-12 15:33:04,813 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 40 [2024-09-12 15:33:04,813 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 15:33:04,813 INFO L216 NwaCegarLoop]: trace histogram [13, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 15:33:04,827 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (24)] Ended with exit code 0 [2024-09-12 15:33:05,017 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 24 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable24 [2024-09-12 15:33:05,018 INFO L399 AbstractCegarLoop]: === Iteration 26 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 15:33:05,018 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:33:05,018 INFO L85 PathProgramCache]: Analyzing trace with hash 1900096203, now seen corresponding path program 11 times [2024-09-12 15:33:05,018 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 15:33:05,018 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1479510562] [2024-09-12 15:33:05,018 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 15:33:05,018 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 15:33:05,031 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:33:05,266 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-12 15:33:05,267 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:33:05,268 INFO L134 CoverageAnalysis]: Checked inductivity of 106 backedges. 0 proven. 94 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2024-09-12 15:33:05,268 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 15:33:05,268 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1479510562] [2024-09-12 15:33:05,268 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1479510562] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 15:33:05,268 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [851143940] [2024-09-12 15:33:05,268 INFO L93 rtionOrderModulation]: Changing assertion order to INSIDE_LOOP_FIRST1 [2024-09-12 15:33:05,268 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:33:05,268 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 15:33:05,270 INFO L229 MonitoredProcess]: Starting monitored process 25 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 15:33:05,271 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (25)] Waiting until timeout for monitored process [2024-09-12 15:33:05,341 INFO L228 tOrderPrioritization]: Assert order INSIDE_LOOP_FIRST1 issued 8 check-sat command(s) [2024-09-12 15:33:05,341 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-12 15:33:05,342 INFO L262 TraceCheckSpWp]: Trace formula consists of 164 conjuncts, 41 conjuncts are in the unsatisfiable core [2024-09-12 15:33:05,343 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 15:33:05,373 INFO L134 CoverageAnalysis]: Checked inductivity of 106 backedges. 0 proven. 100 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-12 15:33:05,373 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 15:33:05,725 INFO L134 CoverageAnalysis]: Checked inductivity of 106 backedges. 0 proven. 100 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-12 15:33:05,725 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [851143940] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-12 15:33:05,725 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-12 15:33:05,725 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [19, 16, 16] total 33 [2024-09-12 15:33:05,725 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1102087494] [2024-09-12 15:33:05,725 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-12 15:33:05,726 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 33 states [2024-09-12 15:33:05,726 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 15:33:05,726 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 33 interpolants. [2024-09-12 15:33:05,727 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=258, Invalid=798, Unknown=0, NotChecked=0, Total=1056 [2024-09-12 15:33:05,727 INFO L87 Difference]: Start difference. First operand 936 states and 1396 transitions. Second operand has 33 states, 33 states have (on average 2.242424242424242) internal successors, (74), 33 states have internal predecessors, (74), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:33:15,411 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 15:33:15,411 INFO L93 Difference]: Finished difference Result 2428 states and 3749 transitions. [2024-09-12 15:33:15,412 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 72 states. [2024-09-12 15:33:15,412 INFO L78 Accepts]: Start accepts. Automaton has has 33 states, 33 states have (on average 2.242424242424242) internal successors, (74), 33 states have internal predecessors, (74), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 39 [2024-09-12 15:33:15,412 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 15:33:15,419 INFO L225 Difference]: With dead ends: 2428 [2024-09-12 15:33:15,419 INFO L226 Difference]: Without dead ends: 2051 [2024-09-12 15:33:15,421 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 153 GetRequests, 68 SyntacticMatches, 0 SemanticMatches, 85 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1744 ImplicationChecksByTransitivity, 5.2s TimeCoverageRelationStatistics Valid=2356, Invalid=5126, Unknown=0, NotChecked=0, Total=7482 [2024-09-12 15:33:15,421 INFO L434 NwaCegarLoop]: 77 mSDtfsCounter, 1263 mSDsluCounter, 1119 mSDsCounter, 0 mSdLazyCounter, 1271 mSolverCounterSat, 864 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 2.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1263 SdHoareTripleChecker+Valid, 1196 SdHoareTripleChecker+Invalid, 2135 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 864 IncrementalHoareTripleChecker+Valid, 1271 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 2.2s IncrementalHoareTripleChecker+Time [2024-09-12 15:33:15,421 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [1263 Valid, 1196 Invalid, 2135 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [864 Valid, 1271 Invalid, 0 Unknown, 0 Unchecked, 2.2s Time] [2024-09-12 15:33:15,423 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 2051 states. [2024-09-12 15:33:16,657 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 2051 to 1033. [2024-09-12 15:33:16,658 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1033 states, 1028 states have (on average 1.4990272373540856) internal successors, (1541), 1028 states have internal predecessors, (1541), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:33:16,660 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1033 states to 1033 states and 1545 transitions. [2024-09-12 15:33:16,661 INFO L78 Accepts]: Start accepts. Automaton has 1033 states and 1545 transitions. Word has length 39 [2024-09-12 15:33:16,661 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 15:33:16,661 INFO L474 AbstractCegarLoop]: Abstraction has 1033 states and 1545 transitions. [2024-09-12 15:33:16,661 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 33 states, 33 states have (on average 2.242424242424242) internal successors, (74), 33 states have internal predecessors, (74), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:33:16,662 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:33:16,662 INFO L276 IsEmpty]: Start isEmpty. Operand 1033 states and 1545 transitions. [2024-09-12 15:33:16,663 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 41 [2024-09-12 15:33:16,663 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 15:33:16,663 INFO L216 NwaCegarLoop]: trace histogram [4, 4, 4, 4, 4, 4, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 15:33:16,680 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (25)] Forceful destruction successful, exit code 0 [2024-09-12 15:33:16,863 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 25 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable25 [2024-09-12 15:33:16,863 INFO L399 AbstractCegarLoop]: === Iteration 27 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 15:33:16,864 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:33:16,864 INFO L85 PathProgramCache]: Analyzing trace with hash 171159391, now seen corresponding path program 12 times [2024-09-12 15:33:16,864 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 15:33:16,864 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1242080422] [2024-09-12 15:33:16,864 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 15:33:16,864 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 15:33:16,885 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:33:17,519 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-12 15:33:17,519 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:33:17,520 INFO L134 CoverageAnalysis]: Checked inductivity of 60 backedges. 0 proven. 50 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2024-09-12 15:33:17,521 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 15:33:17,521 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1242080422] [2024-09-12 15:33:17,521 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1242080422] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 15:33:17,521 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [580211614] [2024-09-12 15:33:17,521 INFO L93 rtionOrderModulation]: Changing assertion order to MIX_INSIDE_OUTSIDE [2024-09-12 15:33:17,521 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:33:17,521 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 15:33:17,523 INFO L229 MonitoredProcess]: Starting monitored process 26 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 15:33:17,524 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (26)] Waiting until timeout for monitored process [2024-09-12 15:33:17,611 INFO L228 tOrderPrioritization]: Assert order MIX_INSIDE_OUTSIDE issued 3 check-sat command(s) [2024-09-12 15:33:17,611 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-12 15:33:17,613 INFO L262 TraceCheckSpWp]: Trace formula consists of 169 conjuncts, 80 conjuncts are in the unsatisfiable core [2024-09-12 15:33:17,614 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 15:33:18,651 INFO L134 CoverageAnalysis]: Checked inductivity of 60 backedges. 0 proven. 60 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-12 15:33:18,651 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 15:33:19,976 INFO L134 CoverageAnalysis]: Checked inductivity of 60 backedges. 0 proven. 60 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-12 15:33:19,976 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [580211614] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-12 15:33:19,976 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-12 15:33:19,976 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [17, 28, 27] total 58 [2024-09-12 15:33:19,976 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [992077818] [2024-09-12 15:33:19,976 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-12 15:33:19,976 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 58 states [2024-09-12 15:33:19,976 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 15:33:19,977 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 58 interpolants. [2024-09-12 15:33:19,978 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=460, Invalid=2846, Unknown=0, NotChecked=0, Total=3306 [2024-09-12 15:33:19,978 INFO L87 Difference]: Start difference. First operand 1033 states and 1545 transitions. Second operand has 58 states, 58 states have (on average 1.5172413793103448) internal successors, (88), 56 states have internal predecessors, (88), 3 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:33:29,626 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 15:33:29,626 INFO L93 Difference]: Finished difference Result 1535 states and 2128 transitions. [2024-09-12 15:33:29,627 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 66 states. [2024-09-12 15:33:29,627 INFO L78 Accepts]: Start accepts. Automaton has has 58 states, 58 states have (on average 1.5172413793103448) internal successors, (88), 56 states have internal predecessors, (88), 3 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 40 [2024-09-12 15:33:29,627 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 15:33:29,631 INFO L225 Difference]: With dead ends: 1535 [2024-09-12 15:33:29,631 INFO L226 Difference]: Without dead ends: 1504 [2024-09-12 15:33:29,632 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 146 GetRequests, 49 SyntacticMatches, 3 SemanticMatches, 94 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2326 ImplicationChecksByTransitivity, 7.5s TimeCoverageRelationStatistics Valid=1308, Invalid=7812, Unknown=0, NotChecked=0, Total=9120 [2024-09-12 15:33:29,633 INFO L434 NwaCegarLoop]: 16 mSDtfsCounter, 120 mSDsluCounter, 337 mSDsCounter, 0 mSdLazyCounter, 1355 mSolverCounterSat, 205 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 120 SdHoareTripleChecker+Valid, 353 SdHoareTripleChecker+Invalid, 1560 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 205 IncrementalHoareTripleChecker+Valid, 1355 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.5s IncrementalHoareTripleChecker+Time [2024-09-12 15:33:29,633 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [120 Valid, 353 Invalid, 1560 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [205 Valid, 1355 Invalid, 0 Unknown, 0 Unchecked, 1.5s Time] [2024-09-12 15:33:29,634 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1504 states. [2024-09-12 15:33:30,895 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1504 to 1017. [2024-09-12 15:33:30,896 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1017 states, 1012 states have (on average 1.5059288537549407) internal successors, (1524), 1012 states have internal predecessors, (1524), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:33:30,898 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1017 states to 1017 states and 1528 transitions. [2024-09-12 15:33:30,900 INFO L78 Accepts]: Start accepts. Automaton has 1017 states and 1528 transitions. Word has length 40 [2024-09-12 15:33:30,900 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 15:33:30,900 INFO L474 AbstractCegarLoop]: Abstraction has 1017 states and 1528 transitions. [2024-09-12 15:33:30,900 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 58 states, 58 states have (on average 1.5172413793103448) internal successors, (88), 56 states have internal predecessors, (88), 3 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:33:30,900 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:33:30,900 INFO L276 IsEmpty]: Start isEmpty. Operand 1017 states and 1528 transitions. [2024-09-12 15:33:30,902 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 42 [2024-09-12 15:33:30,902 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 15:33:30,902 INFO L216 NwaCegarLoop]: trace histogram [8, 8, 8, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 15:33:30,919 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (26)] Ended with exit code 0 [2024-09-12 15:33:31,102 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 26 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable26 [2024-09-12 15:33:31,102 INFO L399 AbstractCegarLoop]: === Iteration 28 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 15:33:31,103 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:33:31,103 INFO L85 PathProgramCache]: Analyzing trace with hash -1585091015, now seen corresponding path program 3 times [2024-09-12 15:33:31,103 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 15:33:31,103 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1295341211] [2024-09-12 15:33:31,103 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 15:33:31,103 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 15:33:31,116 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:33:31,479 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-12 15:33:31,480 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:33:31,481 INFO L134 CoverageAnalysis]: Checked inductivity of 109 backedges. 0 proven. 109 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-12 15:33:31,481 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 15:33:31,481 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1295341211] [2024-09-12 15:33:31,481 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1295341211] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 15:33:31,481 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [696404100] [2024-09-12 15:33:31,481 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-09-12 15:33:31,481 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:33:31,481 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 15:33:31,483 INFO L229 MonitoredProcess]: Starting monitored process 27 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 15:33:31,485 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (27)] Waiting until timeout for monitored process [2024-09-12 15:33:31,576 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 5 check-sat command(s) [2024-09-12 15:33:31,576 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-12 15:33:31,577 INFO L262 TraceCheckSpWp]: Trace formula consists of 174 conjuncts, 34 conjuncts are in the unsatisfiable core [2024-09-12 15:33:31,578 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 15:33:31,840 INFO L134 CoverageAnalysis]: Checked inductivity of 109 backedges. 8 proven. 64 refuted. 0 times theorem prover too weak. 37 trivial. 0 not checked. [2024-09-12 15:33:31,840 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 15:33:32,245 INFO L134 CoverageAnalysis]: Checked inductivity of 109 backedges. 8 proven. 64 refuted. 0 times theorem prover too weak. 37 trivial. 0 not checked. [2024-09-12 15:33:32,245 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [696404100] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-12 15:33:32,245 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-12 15:33:32,245 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [21, 11, 11] total 30 [2024-09-12 15:33:32,246 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [301893674] [2024-09-12 15:33:32,246 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-12 15:33:32,246 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 30 states [2024-09-12 15:33:32,246 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 15:33:32,246 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 30 interpolants. [2024-09-12 15:33:32,246 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=59, Invalid=811, Unknown=0, NotChecked=0, Total=870 [2024-09-12 15:33:32,247 INFO L87 Difference]: Start difference. First operand 1017 states and 1528 transitions. Second operand has 30 states, 30 states have (on average 2.066666666666667) internal successors, (62), 30 states have internal predecessors, (62), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:33:59,186 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-12 15:33:59,187 INFO L93 Difference]: Finished difference Result 2849 states and 3992 transitions. [2024-09-12 15:33:59,188 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 398 states. [2024-09-12 15:33:59,188 INFO L78 Accepts]: Start accepts. Automaton has has 30 states, 30 states have (on average 2.066666666666667) internal successors, (62), 30 states have internal predecessors, (62), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 41 [2024-09-12 15:33:59,188 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-12 15:33:59,197 INFO L225 Difference]: With dead ends: 2849 [2024-09-12 15:33:59,198 INFO L226 Difference]: Without dead ends: 2689 [2024-09-12 15:33:59,208 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 506 GetRequests, 69 SyntacticMatches, 16 SemanticMatches, 421 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 77062 ImplicationChecksByTransitivity, 16.4s TimeCoverageRelationStatistics Valid=7170, Invalid=171336, Unknown=0, NotChecked=0, Total=178506 [2024-09-12 15:33:59,208 INFO L434 NwaCegarLoop]: 36 mSDtfsCounter, 1012 mSDsluCounter, 639 mSDsCounter, 0 mSdLazyCounter, 5681 mSolverCounterSat, 1123 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 3.7s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1012 SdHoareTripleChecker+Valid, 675 SdHoareTripleChecker+Invalid, 6804 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1123 IncrementalHoareTripleChecker+Valid, 5681 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 4.1s IncrementalHoareTripleChecker+Time [2024-09-12 15:33:59,208 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [1012 Valid, 675 Invalid, 6804 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1123 Valid, 5681 Invalid, 0 Unknown, 0 Unchecked, 4.1s Time] [2024-09-12 15:33:59,210 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 2689 states. [2024-09-12 15:34:00,859 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 2689 to 1022. [2024-09-12 15:34:00,860 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1022 states, 1017 states have (on average 1.4926253687315634) internal successors, (1518), 1017 states have internal predecessors, (1518), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:34:00,861 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1022 states to 1022 states and 1522 transitions. [2024-09-12 15:34:00,864 INFO L78 Accepts]: Start accepts. Automaton has 1022 states and 1522 transitions. Word has length 41 [2024-09-12 15:34:00,864 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-12 15:34:00,864 INFO L474 AbstractCegarLoop]: Abstraction has 1022 states and 1522 transitions. [2024-09-12 15:34:00,864 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 30 states, 30 states have (on average 2.066666666666667) internal successors, (62), 30 states have internal predecessors, (62), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:34:00,864 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:34:00,864 INFO L276 IsEmpty]: Start isEmpty. Operand 1022 states and 1522 transitions. [2024-09-12 15:34:00,866 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 43 [2024-09-12 15:34:00,866 INFO L208 NwaCegarLoop]: Found error trace [2024-09-12 15:34:00,866 INFO L216 NwaCegarLoop]: trace histogram [5, 5, 5, 5, 3, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-12 15:34:00,891 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (27)] Ended with exit code 0 [2024-09-12 15:34:01,066 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable27,27 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:34:01,067 INFO L399 AbstractCegarLoop]: === Iteration 29 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-12 15:34:01,067 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-12 15:34:01,067 INFO L85 PathProgramCache]: Analyzing trace with hash 1706754144, now seen corresponding path program 13 times [2024-09-12 15:34:01,067 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-12 15:34:01,067 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [839430579] [2024-09-12 15:34:01,067 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-12 15:34:01,067 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-12 15:34:01,087 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:34:01,336 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-12 15:34:01,337 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:34:01,338 INFO L134 CoverageAnalysis]: Checked inductivity of 72 backedges. 15 proven. 21 refuted. 0 times theorem prover too weak. 36 trivial. 0 not checked. [2024-09-12 15:34:01,338 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-12 15:34:01,338 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [839430579] [2024-09-12 15:34:01,338 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [839430579] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-12 15:34:01,338 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1910147949] [2024-09-12 15:34:01,338 INFO L93 rtionOrderModulation]: Changing assertion order to NOT_INCREMENTALLY [2024-09-12 15:34:01,338 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-12 15:34:01,339 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-12 15:34:01,340 INFO L229 MonitoredProcess]: Starting monitored process 28 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-12 15:34:01,341 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (28)] Waiting until timeout for monitored process [2024-09-12 15:34:01,395 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-12 15:34:01,397 INFO L262 TraceCheckSpWp]: Trace formula consists of 179 conjuncts, 30 conjuncts are in the unsatisfiable core [2024-09-12 15:34:01,398 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-12 15:34:01,579 INFO L134 CoverageAnalysis]: Checked inductivity of 72 backedges. 0 proven. 21 refuted. 0 times theorem prover too weak. 51 trivial. 0 not checked. [2024-09-12 15:34:01,579 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-12 15:34:01,703 INFO L134 CoverageAnalysis]: Checked inductivity of 72 backedges. 0 proven. 21 refuted. 0 times theorem prover too weak. 51 trivial. 0 not checked. [2024-09-12 15:34:01,703 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1910147949] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-12 15:34:01,703 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-12 15:34:01,704 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [13, 8, 8] total 24 [2024-09-12 15:34:01,705 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1182606283] [2024-09-12 15:34:01,705 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-12 15:34:01,706 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 24 states [2024-09-12 15:34:01,706 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-12 15:34:01,706 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 24 interpolants. [2024-09-12 15:34:01,706 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=167, Invalid=385, Unknown=0, NotChecked=0, Total=552 [2024-09-12 15:34:01,706 INFO L87 Difference]: Start difference. First operand 1022 states and 1522 transitions. Second operand has 24 states, 24 states have (on average 2.375) internal successors, (57), 24 states have internal predecessors, (57), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-12 15:34:09,936 WARN L293 SmtUtils]: Spent 8.09s on a formula simplification. DAG size of input: 43 DAG size of output: 29 (called from [L 391] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2024-09-12 15:34:18,119 WARN L293 SmtUtils]: Spent 8.03s on a formula simplification. DAG size of input: 38 DAG size of output: 31 (called from [L 391] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2024-09-12 15:34:26,249 WARN L293 SmtUtils]: Spent 8.02s on a formula simplification that was a NOOP. DAG size: 31 (called from [L 391] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2024-09-12 15:34:34,435 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-12 15:34:42,522 WARN L293 SmtUtils]: Spent 8.01s on a formula simplification that was a NOOP. DAG size: 29 (called from [L 391] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2024-09-12 15:34:50,670 WARN L293 SmtUtils]: Spent 8.01s on a formula simplification that was a NOOP. DAG size: 29 (called from [L 391] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2024-09-12 15:34:59,087 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-12 15:35:07,411 WARN L293 SmtUtils]: Spent 8.02s on a formula simplification that was a NOOP. DAG size: 31 (called from [L 391] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2024-09-12 15:35:20,739 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-12 15:35:25,023 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-12 15:35:29,242 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-12 15:35:33,260 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-12 15:35:49,531 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-12 15:35:53,689 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers []