./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/nla-digbench/egcd3-ll.c --full-output --procedureinliner.inline.calls.to.implemented.procedures NEVER --traceabstraction.positions.where.we.compute.the.hoare.annotation All --witnessprinter.yaml.format.version 2.1 --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 04d6fb36 Calling Ultimate with: /root/.sdkman/candidates/java/current/bin/java -Dosgi.configuration.area=/storage/repos/certificate-witnesses-artifact/automizer/data/config -Xmx15G -Xms4m -jar /storage/repos/certificate-witnesses-artifact/automizer/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/certificate-witnesses-artifact/automizer/data -tc /storage/repos/certificate-witnesses-artifact/automizer/config/AutomizerReach.xml -i ../sv-benchmarks/c/nla-digbench/egcd3-ll.c -s /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/certificate-witnesses-artifact/automizer --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 4ef08007570a64191e0df13d14d3e8d62a8022f43f46779ea6f6701a621376be --procedureinliner.inline.calls.to.implemented.procedures NEVER --traceabstraction.positions.where.we.compute.the.hoare.annotation All --witnessprinter.yaml.format.version 2.1 --- Real Ultimate output --- This is Ultimate 0.2.4-tmp.dk.referee-eval-04d6fb3-m [2024-09-15 18:58:45,009 INFO L188 SettingsManager]: Resetting all preferences to default values... [2024-09-15 18:58:45,101 INFO L114 SettingsManager]: Loading settings from /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf [2024-09-15 18:58:45,108 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2024-09-15 18:58:45,109 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2024-09-15 18:58:45,144 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2024-09-15 18:58:45,145 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2024-09-15 18:58:45,145 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2024-09-15 18:58:45,145 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2024-09-15 18:58:45,146 INFO L153 SettingsManager]: * Use memory slicer=true [2024-09-15 18:58:45,146 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2024-09-15 18:58:45,146 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2024-09-15 18:58:45,147 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2024-09-15 18:58:45,151 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2024-09-15 18:58:45,151 INFO L153 SettingsManager]: * Use SBE=true [2024-09-15 18:58:45,151 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2024-09-15 18:58:45,154 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2024-09-15 18:58:45,154 INFO L153 SettingsManager]: * sizeof long=4 [2024-09-15 18:58:45,154 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2024-09-15 18:58:45,154 INFO L153 SettingsManager]: * sizeof POINTER=4 [2024-09-15 18:58:45,155 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2024-09-15 18:58:45,155 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2024-09-15 18:58:45,156 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2024-09-15 18:58:45,156 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2024-09-15 18:58:45,159 INFO L153 SettingsManager]: * Allow undefined functions=false [2024-09-15 18:58:45,160 INFO L153 SettingsManager]: * sizeof long double=12 [2024-09-15 18:58:45,160 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2024-09-15 18:58:45,160 INFO L153 SettingsManager]: * Use constant arrays=true [2024-09-15 18:58:45,160 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2024-09-15 18:58:45,161 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2024-09-15 18:58:45,161 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2024-09-15 18:58:45,161 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2024-09-15 18:58:45,161 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-09-15 18:58:45,161 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2024-09-15 18:58:45,162 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2024-09-15 18:58:45,162 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2024-09-15 18:58:45,162 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2024-09-15 18:58:45,163 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2024-09-15 18:58:45,163 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2024-09-15 18:58:45,163 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2024-09-15 18:58:45,164 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2024-09-15 18:58:45,164 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2024-09-15 18:58:45,165 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/certificate-witnesses-artifact/automizer/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/certificate-witnesses-artifact/automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 4ef08007570a64191e0df13d14d3e8d62a8022f43f46779ea6f6701a621376be Applying setting for plugin de.uni_freiburg.informatik.ultimate.boogie.procedureinliner: Inline calls to implemented procedures -> NEVER Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: Positions where we compute the Hoare Annotation -> All Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: YAML Format version -> 2.1 [2024-09-15 18:58:45,507 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2024-09-15 18:58:45,533 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2024-09-15 18:58:45,538 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2024-09-15 18:58:45,540 INFO L270 PluginConnector]: Initializing CDTParser... [2024-09-15 18:58:45,540 INFO L274 PluginConnector]: CDTParser initialized [2024-09-15 18:58:45,542 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/certificate-witnesses-artifact/automizer/../sv-benchmarks/c/nla-digbench/egcd3-ll.c [2024-09-15 18:58:47,155 INFO L533 CDTParser]: Created temporary CDT project at NULL [2024-09-15 18:58:47,349 INFO L384 CDTParser]: Found 1 translation units. [2024-09-15 18:58:47,349 INFO L180 CDTParser]: Scanning /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/nla-digbench/egcd3-ll.c [2024-09-15 18:58:47,360 INFO L427 CDTParser]: About to delete temporary CDT project at /storage/repos/certificate-witnesses-artifact/automizer/data/0066dda91/ef1ae2d0c184487e8dd09166daf5d793/FLAG963d7c6ff [2024-09-15 18:58:47,723 INFO L435 CDTParser]: Successfully deleted /storage/repos/certificate-witnesses-artifact/automizer/data/0066dda91/ef1ae2d0c184487e8dd09166daf5d793 [2024-09-15 18:58:47,725 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2024-09-15 18:58:47,726 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2024-09-15 18:58:47,727 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2024-09-15 18:58:47,727 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2024-09-15 18:58:47,736 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2024-09-15 18:58:47,737 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 15.09 06:58:47" (1/1) ... [2024-09-15 18:58:47,738 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@1b305564 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.09 06:58:47, skipping insertion in model container [2024-09-15 18:58:47,738 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 15.09 06:58:47" (1/1) ... [2024-09-15 18:58:47,757 INFO L175 MainTranslator]: Built tables and reachable declarations [2024-09-15 18:58:47,909 WARN L248 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/nla-digbench/egcd3-ll.c[490,503] [2024-09-15 18:58:47,941 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-09-15 18:58:47,953 INFO L200 MainTranslator]: Completed pre-run [2024-09-15 18:58:47,966 WARN L248 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/nla-digbench/egcd3-ll.c[490,503] [2024-09-15 18:58:47,981 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-09-15 18:58:48,001 INFO L204 MainTranslator]: Completed translation [2024-09-15 18:58:48,001 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.09 06:58:48 WrapperNode [2024-09-15 18:58:48,001 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2024-09-15 18:58:48,002 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2024-09-15 18:58:48,003 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2024-09-15 18:58:48,003 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2024-09-15 18:58:48,010 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.09 06:58:48" (1/1) ... [2024-09-15 18:58:48,015 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.09 06:58:48" (1/1) ... [2024-09-15 18:58:48,023 INFO L138 Inliner]: procedures = 14, calls = 14, calls flagged for inlining = 0, calls inlined = 0, statements flattened = 0 [2024-09-15 18:58:48,023 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2024-09-15 18:58:48,024 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2024-09-15 18:58:48,024 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2024-09-15 18:58:48,024 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2024-09-15 18:58:48,035 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.09 06:58:48" (1/1) ... [2024-09-15 18:58:48,036 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.09 06:58:48" (1/1) ... [2024-09-15 18:58:48,041 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.09 06:58:48" (1/1) ... [2024-09-15 18:58:48,061 INFO L175 MemorySlicer]: Split 2 memory accesses to 1 slices as follows [2]. 100 percent of accesses are in the largest equivalence class. The 2 initializations are split as follows [2]. The 0 writes are split as follows [0]. [2024-09-15 18:58:48,062 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.09 06:58:48" (1/1) ... [2024-09-15 18:58:48,062 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.09 06:58:48" (1/1) ... [2024-09-15 18:58:48,066 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.09 06:58:48" (1/1) ... [2024-09-15 18:58:48,071 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.09 06:58:48" (1/1) ... [2024-09-15 18:58:48,076 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.09 06:58:48" (1/1) ... [2024-09-15 18:58:48,081 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.09 06:58:48" (1/1) ... [2024-09-15 18:58:48,082 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2024-09-15 18:58:48,083 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2024-09-15 18:58:48,085 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2024-09-15 18:58:48,085 INFO L274 PluginConnector]: RCFGBuilder initialized [2024-09-15 18:58:48,086 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.09 06:58:48" (1/1) ... [2024-09-15 18:58:48,091 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-09-15 18:58:48,103 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:58:48,120 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2024-09-15 18:58:48,126 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2024-09-15 18:58:48,170 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2024-09-15 18:58:48,171 INFO L130 BoogieDeclarations]: Found specification of procedure assume_abort_if_not [2024-09-15 18:58:48,171 INFO L138 BoogieDeclarations]: Found implementation of procedure assume_abort_if_not [2024-09-15 18:58:48,171 INFO L130 BoogieDeclarations]: Found specification of procedure main [2024-09-15 18:58:48,172 INFO L138 BoogieDeclarations]: Found implementation of procedure main [2024-09-15 18:58:48,172 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2024-09-15 18:58:48,172 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.init [2024-09-15 18:58:48,172 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.init [2024-09-15 18:58:48,172 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2024-09-15 18:58:48,173 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2024-09-15 18:58:48,173 INFO L130 BoogieDeclarations]: Found specification of procedure __VERIFIER_assert [2024-09-15 18:58:48,173 INFO L138 BoogieDeclarations]: Found implementation of procedure __VERIFIER_assert [2024-09-15 18:58:48,250 INFO L242 CfgBuilder]: Building ICFG [2024-09-15 18:58:48,253 INFO L268 CfgBuilder]: Building CFG for each procedure with an implementation [2024-09-15 18:58:48,458 INFO L? ?]: Removed 5 outVars from TransFormulas that were not future-live. [2024-09-15 18:58:48,461 INFO L291 CfgBuilder]: Performing block encoding [2024-09-15 18:58:48,485 INFO L313 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2024-09-15 18:58:48,485 INFO L318 CfgBuilder]: Removed 3 assume(true) statements. [2024-09-15 18:58:48,486 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 15.09 06:58:48 BoogieIcfgContainer [2024-09-15 18:58:48,486 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2024-09-15 18:58:48,488 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2024-09-15 18:58:48,488 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2024-09-15 18:58:48,493 INFO L274 PluginConnector]: TraceAbstraction initialized [2024-09-15 18:58:48,493 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 15.09 06:58:47" (1/3) ... [2024-09-15 18:58:48,494 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@27a65c71 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 15.09 06:58:48, skipping insertion in model container [2024-09-15 18:58:48,495 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.09 06:58:48" (2/3) ... [2024-09-15 18:58:48,495 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@27a65c71 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 15.09 06:58:48, skipping insertion in model container [2024-09-15 18:58:48,495 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 15.09 06:58:48" (3/3) ... [2024-09-15 18:58:48,497 INFO L112 eAbstractionObserver]: Analyzing ICFG egcd3-ll.c [2024-09-15 18:58:48,514 INFO L209 ceAbstractionStarter]: Automizer settings: Hoare:All NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2024-09-15 18:58:48,514 INFO L149 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2024-09-15 18:58:48,582 INFO L335 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2024-09-15 18:58:48,591 INFO L336 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=All, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@6b93c8aa, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2024-09-15 18:58:48,592 INFO L337 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2024-09-15 18:58:48,596 INFO L276 IsEmpty]: Start isEmpty. Operand has 35 states, 20 states have (on average 1.6) internal successors, (32), 21 states have internal predecessors, (32), 9 states have call successors, (9), 4 states have call predecessors, (9), 4 states have return successors, (9), 9 states have call predecessors, (9), 9 states have call successors, (9) [2024-09-15 18:58:48,604 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 22 [2024-09-15 18:58:48,604 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:58:48,605 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:58:48,606 INFO L399 AbstractCegarLoop]: === Iteration 1 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:58:48,613 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:58:48,614 INFO L85 PathProgramCache]: Analyzing trace with hash 48210315, now seen corresponding path program 1 times [2024-09-15 18:58:48,623 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:58:48,624 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1995895852] [2024-09-15 18:58:48,624 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:58:48,625 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:58:48,726 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:58:48,760 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-15 18:58:48,763 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:58:48,774 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2024-09-15 18:58:48,777 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:58:48,782 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2024-09-15 18:58:48,784 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:58:48,790 INFO L134 CoverageAnalysis]: Checked inductivity of 4 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-15 18:58:48,791 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:58:48,791 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1995895852] [2024-09-15 18:58:48,792 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1995895852] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-15 18:58:48,794 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-15 18:58:48,794 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2024-09-15 18:58:48,796 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1907458746] [2024-09-15 18:58:48,801 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-15 18:58:48,805 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2024-09-15 18:58:48,809 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:58:48,832 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2024-09-15 18:58:48,833 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-09-15 18:58:48,835 INFO L87 Difference]: Start difference. First operand has 35 states, 20 states have (on average 1.6) internal successors, (32), 21 states have internal predecessors, (32), 9 states have call successors, (9), 4 states have call predecessors, (9), 4 states have return successors, (9), 9 states have call predecessors, (9), 9 states have call successors, (9) Second operand has 2 states, 2 states have (on average 5.0) internal successors, (10), 2 states have internal predecessors, (10), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2024-09-15 18:58:48,869 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:58:48,869 INFO L93 Difference]: Finished difference Result 64 states and 100 transitions. [2024-09-15 18:58:48,871 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2024-09-15 18:58:48,872 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 5.0) internal successors, (10), 2 states have internal predecessors, (10), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 21 [2024-09-15 18:58:48,873 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:58:48,879 INFO L225 Difference]: With dead ends: 64 [2024-09-15 18:58:48,879 INFO L226 Difference]: Without dead ends: 31 [2024-09-15 18:58:48,882 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 10 GetRequests, 10 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-09-15 18:58:48,885 INFO L434 NwaCegarLoop]: 40 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 2 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 40 SdHoareTripleChecker+Invalid, 2 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 2 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-15 18:58:48,887 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 40 Invalid, 2 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 2 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-15 18:58:48,900 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 31 states. [2024-09-15 18:58:48,916 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 31 to 31. [2024-09-15 18:58:48,918 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 31 states, 18 states have (on average 1.2222222222222223) internal successors, (22), 19 states have internal predecessors, (22), 9 states have call successors, (9), 4 states have call predecessors, (9), 3 states have return successors, (7), 7 states have call predecessors, (7), 7 states have call successors, (7) [2024-09-15 18:58:48,919 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 31 states to 31 states and 38 transitions. [2024-09-15 18:58:48,921 INFO L78 Accepts]: Start accepts. Automaton has 31 states and 38 transitions. Word has length 21 [2024-09-15 18:58:48,921 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:58:48,922 INFO L474 AbstractCegarLoop]: Abstraction has 31 states and 38 transitions. [2024-09-15 18:58:48,922 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 5.0) internal successors, (10), 2 states have internal predecessors, (10), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2024-09-15 18:58:48,923 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:58:48,923 INFO L276 IsEmpty]: Start isEmpty. Operand 31 states and 38 transitions. [2024-09-15 18:58:48,924 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 23 [2024-09-15 18:58:48,924 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:58:48,925 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:58:48,925 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2024-09-15 18:58:48,925 INFO L399 AbstractCegarLoop]: === Iteration 2 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:58:48,927 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:58:48,928 INFO L85 PathProgramCache]: Analyzing trace with hash -190498723, now seen corresponding path program 1 times [2024-09-15 18:58:48,928 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:58:48,929 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [241054552] [2024-09-15 18:58:48,929 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:58:48,929 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:58:48,968 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:58:49,151 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-15 18:58:49,153 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:58:49,160 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2024-09-15 18:58:49,165 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:58:49,173 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2024-09-15 18:58:49,175 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:58:49,245 INFO L134 CoverageAnalysis]: Checked inductivity of 4 backedges. 3 proven. 0 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2024-09-15 18:58:49,245 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:58:49,246 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [241054552] [2024-09-15 18:58:49,247 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [241054552] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-15 18:58:49,247 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-15 18:58:49,251 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2024-09-15 18:58:49,251 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [231342499] [2024-09-15 18:58:49,252 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-15 18:58:49,254 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2024-09-15 18:58:49,254 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:58:49,255 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2024-09-15 18:58:49,255 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2024-09-15 18:58:49,256 INFO L87 Difference]: Start difference. First operand 31 states and 38 transitions. Second operand has 6 states, 6 states have (on average 2.3333333333333335) internal successors, (14), 5 states have internal predecessors, (14), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (3), 2 states have call predecessors, (3), 1 states have call successors, (3) [2024-09-15 18:58:49,461 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:58:49,462 INFO L93 Difference]: Finished difference Result 50 states and 63 transitions. [2024-09-15 18:58:49,462 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2024-09-15 18:58:49,463 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 2.3333333333333335) internal successors, (14), 5 states have internal predecessors, (14), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (3), 2 states have call predecessors, (3), 1 states have call successors, (3) Word has length 22 [2024-09-15 18:58:49,463 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:58:49,464 INFO L225 Difference]: With dead ends: 50 [2024-09-15 18:58:49,464 INFO L226 Difference]: Without dead ends: 43 [2024-09-15 18:58:49,464 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 12 GetRequests, 7 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=13, Invalid=29, Unknown=0, NotChecked=0, Total=42 [2024-09-15 18:58:49,465 INFO L434 NwaCegarLoop]: 29 mSDtfsCounter, 30 mSDsluCounter, 95 mSDsCounter, 0 mSdLazyCounter, 45 mSolverCounterSat, 8 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 34 SdHoareTripleChecker+Valid, 124 SdHoareTripleChecker+Invalid, 53 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 8 IncrementalHoareTripleChecker+Valid, 45 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-15 18:58:49,466 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [34 Valid, 124 Invalid, 53 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [8 Valid, 45 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-15 18:58:49,470 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 43 states. [2024-09-15 18:58:49,486 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 43 to 33. [2024-09-15 18:58:49,487 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 33 states, 20 states have (on average 1.2) internal successors, (24), 21 states have internal predecessors, (24), 9 states have call successors, (9), 4 states have call predecessors, (9), 3 states have return successors, (7), 7 states have call predecessors, (7), 7 states have call successors, (7) [2024-09-15 18:58:49,488 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 33 states to 33 states and 40 transitions. [2024-09-15 18:58:49,488 INFO L78 Accepts]: Start accepts. Automaton has 33 states and 40 transitions. Word has length 22 [2024-09-15 18:58:49,489 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:58:49,489 INFO L474 AbstractCegarLoop]: Abstraction has 33 states and 40 transitions. [2024-09-15 18:58:49,489 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 2.3333333333333335) internal successors, (14), 5 states have internal predecessors, (14), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (3), 2 states have call predecessors, (3), 1 states have call successors, (3) [2024-09-15 18:58:49,490 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:58:49,490 INFO L276 IsEmpty]: Start isEmpty. Operand 33 states and 40 transitions. [2024-09-15 18:58:49,491 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2024-09-15 18:58:49,492 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:58:49,492 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:58:49,492 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2024-09-15 18:58:49,493 INFO L399 AbstractCegarLoop]: === Iteration 3 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:58:49,494 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:58:49,495 INFO L85 PathProgramCache]: Analyzing trace with hash -832406041, now seen corresponding path program 1 times [2024-09-15 18:58:49,495 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:58:49,495 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [906996683] [2024-09-15 18:58:49,495 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:58:49,497 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:58:49,519 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-15 18:58:49,526 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1406264093] [2024-09-15 18:58:49,528 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:58:49,528 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:58:49,528 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:58:49,531 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:58:49,533 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2024-09-15 18:58:49,603 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:58:49,608 INFO L262 TraceCheckSpWp]: Trace formula consists of 84 conjuncts, 9 conjuncts are in the unsatisfiable core [2024-09-15 18:58:49,617 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:58:49,732 INFO L134 CoverageAnalysis]: Checked inductivity of 4 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-15 18:58:49,734 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2024-09-15 18:58:49,734 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:58:49,735 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [906996683] [2024-09-15 18:58:49,735 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-15 18:58:49,735 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1406264093] [2024-09-15 18:58:49,735 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1406264093] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-15 18:58:49,736 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-15 18:58:49,736 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2024-09-15 18:58:49,736 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [31878302] [2024-09-15 18:58:49,737 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-15 18:58:49,737 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-09-15 18:58:49,738 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:58:49,739 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-09-15 18:58:49,739 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-09-15 18:58:49,739 INFO L87 Difference]: Start difference. First operand 33 states and 40 transitions. Second operand has 5 states, 5 states have (on average 2.8) internal successors, (14), 4 states have internal predecessors, (14), 2 states have call successors, (5), 2 states have call predecessors, (5), 1 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) [2024-09-15 18:58:49,805 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:58:49,805 INFO L93 Difference]: Finished difference Result 49 states and 61 transitions. [2024-09-15 18:58:49,806 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-09-15 18:58:49,806 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 2.8) internal successors, (14), 4 states have internal predecessors, (14), 2 states have call successors, (5), 2 states have call predecessors, (5), 1 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) Word has length 25 [2024-09-15 18:58:49,806 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:58:49,807 INFO L225 Difference]: With dead ends: 49 [2024-09-15 18:58:49,807 INFO L226 Difference]: Without dead ends: 47 [2024-09-15 18:58:49,807 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 25 GetRequests, 21 SyntacticMatches, 0 SemanticMatches, 4 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=11, Invalid=19, Unknown=0, NotChecked=0, Total=30 [2024-09-15 18:58:49,808 INFO L434 NwaCegarLoop]: 32 mSDtfsCounter, 7 mSDsluCounter, 90 mSDsCounter, 0 mSdLazyCounter, 29 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 11 SdHoareTripleChecker+Valid, 122 SdHoareTripleChecker+Invalid, 29 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 29 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-15 18:58:49,809 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [11 Valid, 122 Invalid, 29 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 29 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-15 18:58:49,810 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 47 states. [2024-09-15 18:58:49,821 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 47 to 46. [2024-09-15 18:58:49,821 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 46 states, 28 states have (on average 1.2142857142857142) internal successors, (34), 29 states have internal predecessors, (34), 13 states have call successors, (13), 5 states have call predecessors, (13), 4 states have return successors, (11), 11 states have call predecessors, (11), 11 states have call successors, (11) [2024-09-15 18:58:49,822 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 46 states to 46 states and 58 transitions. [2024-09-15 18:58:49,822 INFO L78 Accepts]: Start accepts. Automaton has 46 states and 58 transitions. Word has length 25 [2024-09-15 18:58:49,823 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:58:49,823 INFO L474 AbstractCegarLoop]: Abstraction has 46 states and 58 transitions. [2024-09-15 18:58:49,823 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 2.8) internal successors, (14), 4 states have internal predecessors, (14), 2 states have call successors, (5), 2 states have call predecessors, (5), 1 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) [2024-09-15 18:58:49,823 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:58:49,824 INFO L276 IsEmpty]: Start isEmpty. Operand 46 states and 58 transitions. [2024-09-15 18:58:49,824 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 28 [2024-09-15 18:58:49,824 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:58:49,824 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:58:49,841 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Ended with exit code 0 [2024-09-15 18:58:50,028 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2,2 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:58:50,029 INFO L399 AbstractCegarLoop]: === Iteration 4 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:58:50,029 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:58:50,030 INFO L85 PathProgramCache]: Analyzing trace with hash -143490539, now seen corresponding path program 1 times [2024-09-15 18:58:50,030 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:58:50,030 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [416015106] [2024-09-15 18:58:50,030 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:58:50,030 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:58:50,049 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:58:50,157 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-15 18:58:50,158 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:58:50,164 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2024-09-15 18:58:50,167 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:58:50,215 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2024-09-15 18:58:50,217 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:58:50,225 INFO L134 CoverageAnalysis]: Checked inductivity of 6 backedges. 0 proven. 5 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2024-09-15 18:58:50,225 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:58:50,228 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [416015106] [2024-09-15 18:58:50,229 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [416015106] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 18:58:50,229 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [28102270] [2024-09-15 18:58:50,230 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:58:50,232 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:58:50,232 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:58:50,234 INFO L229 MonitoredProcess]: Starting monitored process 3 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:58:50,235 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2024-09-15 18:58:50,290 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:58:50,291 INFO L262 TraceCheckSpWp]: Trace formula consists of 94 conjuncts, 9 conjuncts are in the unsatisfiable core [2024-09-15 18:58:50,293 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:58:50,332 INFO L134 CoverageAnalysis]: Checked inductivity of 6 backedges. 0 proven. 5 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2024-09-15 18:58:50,332 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:58:50,434 INFO L134 CoverageAnalysis]: Checked inductivity of 6 backedges. 0 proven. 5 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2024-09-15 18:58:50,434 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [28102270] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 18:58:50,434 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-15 18:58:50,435 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [8, 8, 8] total 9 [2024-09-15 18:58:50,435 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1109801765] [2024-09-15 18:58:50,435 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-15 18:58:50,435 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 9 states [2024-09-15 18:58:50,435 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:58:50,436 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 9 interpolants. [2024-09-15 18:58:50,436 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=17, Invalid=55, Unknown=0, NotChecked=0, Total=72 [2024-09-15 18:58:50,437 INFO L87 Difference]: Start difference. First operand 46 states and 58 transitions. Second operand has 9 states, 9 states have (on average 2.3333333333333335) internal successors, (21), 8 states have internal predecessors, (21), 3 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2024-09-15 18:58:50,644 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:58:50,644 INFO L93 Difference]: Finished difference Result 99 states and 137 transitions. [2024-09-15 18:58:50,645 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2024-09-15 18:58:50,645 INFO L78 Accepts]: Start accepts. Automaton has has 9 states, 9 states have (on average 2.3333333333333335) internal successors, (21), 8 states have internal predecessors, (21), 3 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 27 [2024-09-15 18:58:50,646 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:58:50,647 INFO L225 Difference]: With dead ends: 99 [2024-09-15 18:58:50,647 INFO L226 Difference]: Without dead ends: 92 [2024-09-15 18:58:50,648 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 70 GetRequests, 55 SyntacticMatches, 4 SemanticMatches, 11 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=42, Invalid=114, Unknown=0, NotChecked=0, Total=156 [2024-09-15 18:58:50,648 INFO L434 NwaCegarLoop]: 39 mSDtfsCounter, 60 mSDsluCounter, 228 mSDsCounter, 0 mSdLazyCounter, 117 mSolverCounterSat, 26 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 64 SdHoareTripleChecker+Valid, 267 SdHoareTripleChecker+Invalid, 143 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 26 IncrementalHoareTripleChecker+Valid, 117 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-15 18:58:50,649 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [64 Valid, 267 Invalid, 143 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [26 Valid, 117 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-15 18:58:50,655 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 92 states. [2024-09-15 18:58:50,671 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 92 to 67. [2024-09-15 18:58:50,671 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 67 states, 45 states have (on average 1.2666666666666666) internal successors, (57), 46 states have internal predecessors, (57), 17 states have call successors, (17), 5 states have call predecessors, (17), 4 states have return successors, (15), 15 states have call predecessors, (15), 15 states have call successors, (15) [2024-09-15 18:58:50,672 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 67 states to 67 states and 89 transitions. [2024-09-15 18:58:50,673 INFO L78 Accepts]: Start accepts. Automaton has 67 states and 89 transitions. Word has length 27 [2024-09-15 18:58:50,673 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:58:50,673 INFO L474 AbstractCegarLoop]: Abstraction has 67 states and 89 transitions. [2024-09-15 18:58:50,674 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 9 states, 9 states have (on average 2.3333333333333335) internal successors, (21), 8 states have internal predecessors, (21), 3 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2024-09-15 18:58:50,674 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:58:50,674 INFO L276 IsEmpty]: Start isEmpty. Operand 67 states and 89 transitions. [2024-09-15 18:58:50,675 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 31 [2024-09-15 18:58:50,675 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:58:50,675 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:58:50,692 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Forceful destruction successful, exit code 0 [2024-09-15 18:58:50,879 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3,3 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:58:50,880 INFO L399 AbstractCegarLoop]: === Iteration 5 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:58:50,880 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:58:50,880 INFO L85 PathProgramCache]: Analyzing trace with hash -849404633, now seen corresponding path program 1 times [2024-09-15 18:58:50,880 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:58:50,881 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1057976536] [2024-09-15 18:58:50,881 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:58:50,881 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:58:50,897 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-15 18:58:50,902 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [510723398] [2024-09-15 18:58:50,902 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:58:50,902 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:58:50,902 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:58:50,905 INFO L229 MonitoredProcess]: Starting monitored process 4 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:58:50,910 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2024-09-15 18:58:50,955 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:58:50,958 INFO L262 TraceCheckSpWp]: Trace formula consists of 93 conjuncts, 9 conjuncts are in the unsatisfiable core [2024-09-15 18:58:50,960 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:58:51,042 INFO L134 CoverageAnalysis]: Checked inductivity of 6 backedges. 2 proven. 0 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-15 18:58:51,042 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2024-09-15 18:58:51,042 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:58:51,043 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1057976536] [2024-09-15 18:58:51,043 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-15 18:58:51,043 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [510723398] [2024-09-15 18:58:51,043 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [510723398] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-15 18:58:51,043 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-15 18:58:51,043 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2024-09-15 18:58:51,043 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [347661274] [2024-09-15 18:58:51,043 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-15 18:58:51,044 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-09-15 18:58:51,044 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:58:51,044 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-09-15 18:58:51,044 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-09-15 18:58:51,045 INFO L87 Difference]: Start difference. First operand 67 states and 89 transitions. Second operand has 5 states, 5 states have (on average 3.4) internal successors, (17), 4 states have internal predecessors, (17), 2 states have call successors, (6), 2 states have call predecessors, (6), 1 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2024-09-15 18:58:51,110 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:58:51,110 INFO L93 Difference]: Finished difference Result 75 states and 96 transitions. [2024-09-15 18:58:51,110 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-09-15 18:58:51,110 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 3.4) internal successors, (17), 4 states have internal predecessors, (17), 2 states have call successors, (6), 2 states have call predecessors, (6), 1 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) Word has length 30 [2024-09-15 18:58:51,111 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:58:51,112 INFO L225 Difference]: With dead ends: 75 [2024-09-15 18:58:51,112 INFO L226 Difference]: Without dead ends: 73 [2024-09-15 18:58:51,112 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 30 GetRequests, 26 SyntacticMatches, 0 SemanticMatches, 4 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=11, Invalid=19, Unknown=0, NotChecked=0, Total=30 [2024-09-15 18:58:51,113 INFO L434 NwaCegarLoop]: 33 mSDtfsCounter, 7 mSDsluCounter, 87 mSDsCounter, 0 mSdLazyCounter, 39 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 10 SdHoareTripleChecker+Valid, 120 SdHoareTripleChecker+Invalid, 39 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 39 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-15 18:58:51,113 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [10 Valid, 120 Invalid, 39 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 39 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-15 18:58:51,114 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 73 states. [2024-09-15 18:58:51,130 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 73 to 71. [2024-09-15 18:58:51,130 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 71 states, 48 states have (on average 1.25) internal successors, (60), 49 states have internal predecessors, (60), 17 states have call successors, (17), 6 states have call predecessors, (17), 5 states have return successors, (15), 15 states have call predecessors, (15), 15 states have call successors, (15) [2024-09-15 18:58:51,131 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 71 states to 71 states and 92 transitions. [2024-09-15 18:58:51,132 INFO L78 Accepts]: Start accepts. Automaton has 71 states and 92 transitions. Word has length 30 [2024-09-15 18:58:51,132 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:58:51,132 INFO L474 AbstractCegarLoop]: Abstraction has 71 states and 92 transitions. [2024-09-15 18:58:51,132 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 3.4) internal successors, (17), 4 states have internal predecessors, (17), 2 states have call successors, (6), 2 states have call predecessors, (6), 1 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2024-09-15 18:58:51,132 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:58:51,133 INFO L276 IsEmpty]: Start isEmpty. Operand 71 states and 92 transitions. [2024-09-15 18:58:51,133 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 31 [2024-09-15 18:58:51,133 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:58:51,133 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:58:51,149 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Ended with exit code 0 [2024-09-15 18:58:51,334 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4,4 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:58:51,334 INFO L399 AbstractCegarLoop]: === Iteration 6 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:58:51,334 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:58:51,335 INFO L85 PathProgramCache]: Analyzing trace with hash -570934993, now seen corresponding path program 1 times [2024-09-15 18:58:51,335 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:58:51,335 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [192383864] [2024-09-15 18:58:51,335 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:58:51,335 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:58:51,346 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-15 18:58:51,347 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [187040837] [2024-09-15 18:58:51,347 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:58:51,347 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:58:51,347 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:58:51,349 INFO L229 MonitoredProcess]: Starting monitored process 5 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:58:51,353 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2024-09-15 18:58:51,401 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:58:51,403 INFO L262 TraceCheckSpWp]: Trace formula consists of 104 conjuncts, 19 conjuncts are in the unsatisfiable core [2024-09-15 18:58:51,404 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:58:51,562 INFO L134 CoverageAnalysis]: Checked inductivity of 8 backedges. 0 proven. 4 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-15 18:58:51,563 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:58:51,672 INFO L134 CoverageAnalysis]: Checked inductivity of 8 backedges. 0 proven. 4 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-15 18:58:51,673 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:58:51,673 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [192383864] [2024-09-15 18:58:51,674 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-15 18:58:51,674 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [187040837] [2024-09-15 18:58:51,674 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [187040837] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 18:58:51,674 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-09-15 18:58:51,674 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [7, 6] total 9 [2024-09-15 18:58:51,675 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1924316605] [2024-09-15 18:58:51,675 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-09-15 18:58:51,675 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 9 states [2024-09-15 18:58:51,675 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:58:51,676 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 9 interpolants. [2024-09-15 18:58:51,677 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=19, Invalid=53, Unknown=0, NotChecked=0, Total=72 [2024-09-15 18:58:51,677 INFO L87 Difference]: Start difference. First operand 71 states and 92 transitions. Second operand has 9 states, 9 states have (on average 3.3333333333333335) internal successors, (30), 8 states have internal predecessors, (30), 3 states have call successors, (6), 2 states have call predecessors, (6), 1 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) [2024-09-15 18:58:51,868 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:58:51,869 INFO L93 Difference]: Finished difference Result 107 states and 141 transitions. [2024-09-15 18:58:51,869 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2024-09-15 18:58:51,870 INFO L78 Accepts]: Start accepts. Automaton has has 9 states, 9 states have (on average 3.3333333333333335) internal successors, (30), 8 states have internal predecessors, (30), 3 states have call successors, (6), 2 states have call predecessors, (6), 1 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) Word has length 30 [2024-09-15 18:58:51,870 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:58:51,871 INFO L225 Difference]: With dead ends: 107 [2024-09-15 18:58:51,874 INFO L226 Difference]: Without dead ends: 105 [2024-09-15 18:58:51,874 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 61 GetRequests, 50 SyntacticMatches, 2 SemanticMatches, 9 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 8 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=29, Invalid=81, Unknown=0, NotChecked=0, Total=110 [2024-09-15 18:58:51,875 INFO L434 NwaCegarLoop]: 44 mSDtfsCounter, 20 mSDsluCounter, 199 mSDsCounter, 0 mSdLazyCounter, 90 mSolverCounterSat, 10 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 24 SdHoareTripleChecker+Valid, 243 SdHoareTripleChecker+Invalid, 100 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 10 IncrementalHoareTripleChecker+Valid, 90 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-15 18:58:51,875 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [24 Valid, 243 Invalid, 100 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [10 Valid, 90 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-15 18:58:51,876 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 105 states. [2024-09-15 18:58:51,912 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 105 to 101. [2024-09-15 18:58:51,913 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 101 states, 69 states have (on average 1.2608695652173914) internal successors, (87), 70 states have internal predecessors, (87), 25 states have call successors, (25), 7 states have call predecessors, (25), 6 states have return successors, (23), 23 states have call predecessors, (23), 23 states have call successors, (23) [2024-09-15 18:58:51,915 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 101 states to 101 states and 135 transitions. [2024-09-15 18:58:51,918 INFO L78 Accepts]: Start accepts. Automaton has 101 states and 135 transitions. Word has length 30 [2024-09-15 18:58:51,918 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:58:51,918 INFO L474 AbstractCegarLoop]: Abstraction has 101 states and 135 transitions. [2024-09-15 18:58:51,918 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 9 states, 9 states have (on average 3.3333333333333335) internal successors, (30), 8 states have internal predecessors, (30), 3 states have call successors, (6), 2 states have call predecessors, (6), 1 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) [2024-09-15 18:58:51,919 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:58:51,919 INFO L276 IsEmpty]: Start isEmpty. Operand 101 states and 135 transitions. [2024-09-15 18:58:51,920 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 36 [2024-09-15 18:58:51,921 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:58:51,921 INFO L216 NwaCegarLoop]: trace histogram [3, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:58:51,940 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Ended with exit code 0 [2024-09-15 18:58:52,125 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5,5 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:58:52,126 INFO L399 AbstractCegarLoop]: === Iteration 7 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:58:52,126 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:58:52,126 INFO L85 PathProgramCache]: Analyzing trace with hash -1950278233, now seen corresponding path program 1 times [2024-09-15 18:58:52,126 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:58:52,126 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1516443075] [2024-09-15 18:58:52,126 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:58:52,126 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:58:52,145 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-15 18:58:52,146 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [42028773] [2024-09-15 18:58:52,146 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:58:52,146 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:58:52,147 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:58:52,151 INFO L229 MonitoredProcess]: Starting monitored process 6 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:58:52,153 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Waiting until timeout for monitored process [2024-09-15 18:58:52,203 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:58:52,204 INFO L262 TraceCheckSpWp]: Trace formula consists of 102 conjuncts, 7 conjuncts are in the unsatisfiable core [2024-09-15 18:58:52,206 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:58:52,265 INFO L134 CoverageAnalysis]: Checked inductivity of 12 backedges. 4 proven. 0 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2024-09-15 18:58:52,266 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2024-09-15 18:58:52,266 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:58:52,266 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1516443075] [2024-09-15 18:58:52,266 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-15 18:58:52,267 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [42028773] [2024-09-15 18:58:52,267 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [42028773] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-15 18:58:52,267 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-15 18:58:52,267 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2024-09-15 18:58:52,267 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1952227723] [2024-09-15 18:58:52,267 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-15 18:58:52,268 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-09-15 18:58:52,268 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:58:52,268 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-09-15 18:58:52,269 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-09-15 18:58:52,269 INFO L87 Difference]: Start difference. First operand 101 states and 135 transitions. Second operand has 5 states, 5 states have (on average 3.4) internal successors, (17), 4 states have internal predecessors, (17), 2 states have call successors, (7), 2 states have call predecessors, (7), 1 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) [2024-09-15 18:58:52,350 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:58:52,351 INFO L93 Difference]: Finished difference Result 147 states and 207 transitions. [2024-09-15 18:58:52,351 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-09-15 18:58:52,351 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 3.4) internal successors, (17), 4 states have internal predecessors, (17), 2 states have call successors, (7), 2 states have call predecessors, (7), 1 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) Word has length 35 [2024-09-15 18:58:52,352 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:58:52,365 INFO L225 Difference]: With dead ends: 147 [2024-09-15 18:58:52,365 INFO L226 Difference]: Without dead ends: 145 [2024-09-15 18:58:52,365 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 35 GetRequests, 31 SyntacticMatches, 0 SemanticMatches, 4 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=11, Invalid=19, Unknown=0, NotChecked=0, Total=30 [2024-09-15 18:58:52,366 INFO L434 NwaCegarLoop]: 31 mSDtfsCounter, 6 mSDsluCounter, 81 mSDsCounter, 0 mSdLazyCounter, 47 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 8 SdHoareTripleChecker+Valid, 112 SdHoareTripleChecker+Invalid, 47 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 47 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-15 18:58:52,366 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [8 Valid, 112 Invalid, 47 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 47 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-15 18:58:52,367 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 145 states. [2024-09-15 18:58:52,419 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 145 to 139. [2024-09-15 18:58:52,419 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 139 states, 86 states have (on average 1.2906976744186047) internal successors, (111), 87 states have internal predecessors, (111), 45 states have call successors, (45), 8 states have call predecessors, (45), 7 states have return successors, (43), 43 states have call predecessors, (43), 43 states have call successors, (43) [2024-09-15 18:58:52,421 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 139 states to 139 states and 199 transitions. [2024-09-15 18:58:52,421 INFO L78 Accepts]: Start accepts. Automaton has 139 states and 199 transitions. Word has length 35 [2024-09-15 18:58:52,422 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:58:52,422 INFO L474 AbstractCegarLoop]: Abstraction has 139 states and 199 transitions. [2024-09-15 18:58:52,422 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 3.4) internal successors, (17), 4 states have internal predecessors, (17), 2 states have call successors, (7), 2 states have call predecessors, (7), 1 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) [2024-09-15 18:58:52,422 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:58:52,422 INFO L276 IsEmpty]: Start isEmpty. Operand 139 states and 199 transitions. [2024-09-15 18:58:52,423 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 36 [2024-09-15 18:58:52,423 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:58:52,424 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:58:52,442 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Forceful destruction successful, exit code 0 [2024-09-15 18:58:52,627 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 6 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable6 [2024-09-15 18:58:52,628 INFO L399 AbstractCegarLoop]: === Iteration 8 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:58:52,628 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:58:52,628 INFO L85 PathProgramCache]: Analyzing trace with hash -939315489, now seen corresponding path program 1 times [2024-09-15 18:58:52,628 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:58:52,628 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1111850875] [2024-09-15 18:58:52,628 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:58:52,629 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:58:52,641 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-15 18:58:52,641 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1792668597] [2024-09-15 18:58:52,642 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:58:52,642 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:58:52,642 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:58:52,644 INFO L229 MonitoredProcess]: Starting monitored process 7 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:58:52,645 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Waiting until timeout for monitored process [2024-09-15 18:58:52,693 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:58:52,696 INFO L262 TraceCheckSpWp]: Trace formula consists of 113 conjuncts, 21 conjuncts are in the unsatisfiable core [2024-09-15 18:58:52,698 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:58:52,839 INFO L134 CoverageAnalysis]: Checked inductivity of 10 backedges. 2 proven. 4 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-15 18:58:52,840 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:58:52,896 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:58:52,897 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1111850875] [2024-09-15 18:58:52,897 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-15 18:58:52,897 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1792668597] [2024-09-15 18:58:52,897 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1792668597] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 18:58:52,897 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-15 18:58:52,897 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [7] total 7 [2024-09-15 18:58:52,898 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [725177727] [2024-09-15 18:58:52,898 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-15 18:58:52,898 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2024-09-15 18:58:52,898 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:58:52,899 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2024-09-15 18:58:52,899 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=14, Invalid=42, Unknown=0, NotChecked=0, Total=56 [2024-09-15 18:58:52,899 INFO L87 Difference]: Start difference. First operand 139 states and 199 transitions. Second operand has 7 states, 7 states have (on average 3.142857142857143) internal successors, (22), 6 states have internal predecessors, (22), 2 states have call successors, (6), 2 states have call predecessors, (6), 1 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2024-09-15 18:58:53,073 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:58:53,073 INFO L93 Difference]: Finished difference Result 152 states and 210 transitions. [2024-09-15 18:58:53,073 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2024-09-15 18:58:53,073 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 3.142857142857143) internal successors, (22), 6 states have internal predecessors, (22), 2 states have call successors, (6), 2 states have call predecessors, (6), 1 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) Word has length 35 [2024-09-15 18:58:53,074 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:58:53,076 INFO L225 Difference]: With dead ends: 152 [2024-09-15 18:58:53,076 INFO L226 Difference]: Without dead ends: 150 [2024-09-15 18:58:53,077 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 41 GetRequests, 31 SyntacticMatches, 2 SemanticMatches, 8 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=22, Invalid=68, Unknown=0, NotChecked=0, Total=90 [2024-09-15 18:58:53,077 INFO L434 NwaCegarLoop]: 39 mSDtfsCounter, 26 mSDsluCounter, 152 mSDsCounter, 0 mSdLazyCounter, 115 mSolverCounterSat, 11 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 33 SdHoareTripleChecker+Valid, 191 SdHoareTripleChecker+Invalid, 126 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 11 IncrementalHoareTripleChecker+Valid, 115 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-15 18:58:53,078 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [33 Valid, 191 Invalid, 126 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [11 Valid, 115 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-15 18:58:53,078 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 150 states. [2024-09-15 18:58:53,138 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 150 to 147. [2024-09-15 18:58:53,139 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 147 states, 92 states have (on average 1.2717391304347827) internal successors, (117), 93 states have internal predecessors, (117), 45 states have call successors, (45), 10 states have call predecessors, (45), 9 states have return successors, (43), 43 states have call predecessors, (43), 43 states have call successors, (43) [2024-09-15 18:58:53,141 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 147 states to 147 states and 205 transitions. [2024-09-15 18:58:53,142 INFO L78 Accepts]: Start accepts. Automaton has 147 states and 205 transitions. Word has length 35 [2024-09-15 18:58:53,142 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:58:53,143 INFO L474 AbstractCegarLoop]: Abstraction has 147 states and 205 transitions. [2024-09-15 18:58:53,143 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 3.142857142857143) internal successors, (22), 6 states have internal predecessors, (22), 2 states have call successors, (6), 2 states have call predecessors, (6), 1 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2024-09-15 18:58:53,143 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:58:53,143 INFO L276 IsEmpty]: Start isEmpty. Operand 147 states and 205 transitions. [2024-09-15 18:58:53,145 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 36 [2024-09-15 18:58:53,146 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:58:53,147 INFO L216 NwaCegarLoop]: trace histogram [3, 3, 3, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:58:53,164 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Ended with exit code 0 [2024-09-15 18:58:53,347 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7,7 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:58:53,348 INFO L399 AbstractCegarLoop]: === Iteration 9 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:58:53,348 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:58:53,348 INFO L85 PathProgramCache]: Analyzing trace with hash -660845849, now seen corresponding path program 2 times [2024-09-15 18:58:53,348 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:58:53,348 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1025818253] [2024-09-15 18:58:53,349 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:58:53,349 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:58:53,359 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:58:53,425 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-15 18:58:53,426 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:58:53,427 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2024-09-15 18:58:53,428 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:58:53,433 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2024-09-15 18:58:53,434 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:58:53,435 INFO L134 CoverageAnalysis]: Checked inductivity of 17 backedges. 13 proven. 0 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-15 18:58:53,435 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:58:53,435 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1025818253] [2024-09-15 18:58:53,435 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1025818253] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-15 18:58:53,435 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-15 18:58:53,436 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2024-09-15 18:58:53,436 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1593214157] [2024-09-15 18:58:53,436 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-15 18:58:53,436 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-09-15 18:58:53,436 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:58:53,437 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-09-15 18:58:53,437 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-09-15 18:58:53,437 INFO L87 Difference]: Start difference. First operand 147 states and 205 transitions. Second operand has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 2 states have call successors, (5), 2 states have call predecessors, (5), 1 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) [2024-09-15 18:58:53,561 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:58:53,561 INFO L93 Difference]: Finished difference Result 186 states and 257 transitions. [2024-09-15 18:58:53,561 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2024-09-15 18:58:53,562 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 2 states have call successors, (5), 2 states have call predecessors, (5), 1 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) Word has length 35 [2024-09-15 18:58:53,562 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:58:53,563 INFO L225 Difference]: With dead ends: 186 [2024-09-15 18:58:53,563 INFO L226 Difference]: Without dead ends: 130 [2024-09-15 18:58:53,564 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 14 GetRequests, 9 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=15, Invalid=27, Unknown=0, NotChecked=0, Total=42 [2024-09-15 18:58:53,564 INFO L434 NwaCegarLoop]: 46 mSDtfsCounter, 18 mSDsluCounter, 102 mSDsCounter, 0 mSdLazyCounter, 58 mSolverCounterSat, 8 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 22 SdHoareTripleChecker+Valid, 148 SdHoareTripleChecker+Invalid, 66 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 8 IncrementalHoareTripleChecker+Valid, 58 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-15 18:58:53,565 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [22 Valid, 148 Invalid, 66 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [8 Valid, 58 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-15 18:58:53,565 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 130 states. [2024-09-15 18:58:53,601 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 130 to 122. [2024-09-15 18:58:53,602 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 122 states, 75 states have (on average 1.2133333333333334) internal successors, (91), 76 states have internal predecessors, (91), 37 states have call successors, (37), 10 states have call predecessors, (37), 9 states have return successors, (35), 35 states have call predecessors, (35), 35 states have call successors, (35) [2024-09-15 18:58:53,602 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 122 states to 122 states and 163 transitions. [2024-09-15 18:58:53,603 INFO L78 Accepts]: Start accepts. Automaton has 122 states and 163 transitions. Word has length 35 [2024-09-15 18:58:53,603 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:58:53,603 INFO L474 AbstractCegarLoop]: Abstraction has 122 states and 163 transitions. [2024-09-15 18:58:53,603 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 2 states have call successors, (5), 2 states have call predecessors, (5), 1 states have return successors, (3), 1 states have call predecessors, (3), 1 states have call successors, (3) [2024-09-15 18:58:53,606 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:58:53,606 INFO L276 IsEmpty]: Start isEmpty. Operand 122 states and 163 transitions. [2024-09-15 18:58:53,607 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 41 [2024-09-15 18:58:53,607 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:58:53,608 INFO L216 NwaCegarLoop]: trace histogram [4, 3, 3, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:58:53,608 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2024-09-15 18:58:53,608 INFO L399 AbstractCegarLoop]: === Iteration 10 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:58:53,611 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:58:53,611 INFO L85 PathProgramCache]: Analyzing trace with hash 1428718823, now seen corresponding path program 1 times [2024-09-15 18:58:53,611 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:58:53,611 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1336490317] [2024-09-15 18:58:53,611 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:58:53,612 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:58:53,625 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-15 18:58:53,626 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [348176336] [2024-09-15 18:58:53,627 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:58:53,627 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:58:53,627 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:58:53,629 INFO L229 MonitoredProcess]: Starting monitored process 8 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:58:53,630 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Waiting until timeout for monitored process [2024-09-15 18:58:53,670 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:58:53,671 INFO L262 TraceCheckSpWp]: Trace formula consists of 111 conjuncts, 7 conjuncts are in the unsatisfiable core [2024-09-15 18:58:53,672 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:58:53,706 INFO L134 CoverageAnalysis]: Checked inductivity of 22 backedges. 6 proven. 0 refuted. 0 times theorem prover too weak. 16 trivial. 0 not checked. [2024-09-15 18:58:53,706 INFO L323 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2024-09-15 18:58:53,707 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:58:53,707 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1336490317] [2024-09-15 18:58:53,707 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-15 18:58:53,707 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [348176336] [2024-09-15 18:58:53,707 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [348176336] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-15 18:58:53,707 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-15 18:58:53,707 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2024-09-15 18:58:53,707 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [854899941] [2024-09-15 18:58:53,707 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-15 18:58:53,708 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-09-15 18:58:53,708 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:58:53,708 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-09-15 18:58:53,708 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-09-15 18:58:53,708 INFO L87 Difference]: Start difference. First operand 122 states and 163 transitions. Second operand has 5 states, 5 states have (on average 3.4) internal successors, (17), 4 states have internal predecessors, (17), 2 states have call successors, (8), 2 states have call predecessors, (8), 1 states have return successors, (6), 2 states have call predecessors, (6), 2 states have call successors, (6) [2024-09-15 18:58:53,793 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:58:53,793 INFO L93 Difference]: Finished difference Result 180 states and 260 transitions. [2024-09-15 18:58:53,793 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-09-15 18:58:53,794 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 3.4) internal successors, (17), 4 states have internal predecessors, (17), 2 states have call successors, (8), 2 states have call predecessors, (8), 1 states have return successors, (6), 2 states have call predecessors, (6), 2 states have call successors, (6) Word has length 40 [2024-09-15 18:58:53,794 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:58:53,795 INFO L225 Difference]: With dead ends: 180 [2024-09-15 18:58:53,795 INFO L226 Difference]: Without dead ends: 178 [2024-09-15 18:58:53,796 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 40 GetRequests, 36 SyntacticMatches, 0 SemanticMatches, 4 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=11, Invalid=19, Unknown=0, NotChecked=0, Total=30 [2024-09-15 18:58:53,796 INFO L434 NwaCegarLoop]: 34 mSDtfsCounter, 4 mSDsluCounter, 86 mSDsCounter, 0 mSdLazyCounter, 39 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 5 SdHoareTripleChecker+Valid, 120 SdHoareTripleChecker+Invalid, 39 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 39 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-15 18:58:53,797 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [5 Valid, 120 Invalid, 39 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 39 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-15 18:58:53,797 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 178 states. [2024-09-15 18:58:53,844 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 178 to 166. [2024-09-15 18:58:53,845 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 166 states, 86 states have (on average 1.186046511627907) internal successors, (102), 95 states have internal predecessors, (102), 69 states have call successors, (69), 11 states have call predecessors, (69), 10 states have return successors, (67), 59 states have call predecessors, (67), 67 states have call successors, (67) [2024-09-15 18:58:53,846 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 166 states to 166 states and 238 transitions. [2024-09-15 18:58:53,847 INFO L78 Accepts]: Start accepts. Automaton has 166 states and 238 transitions. Word has length 40 [2024-09-15 18:58:53,847 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:58:53,847 INFO L474 AbstractCegarLoop]: Abstraction has 166 states and 238 transitions. [2024-09-15 18:58:53,847 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 3.4) internal successors, (17), 4 states have internal predecessors, (17), 2 states have call successors, (8), 2 states have call predecessors, (8), 1 states have return successors, (6), 2 states have call predecessors, (6), 2 states have call successors, (6) [2024-09-15 18:58:53,847 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:58:53,847 INFO L276 IsEmpty]: Start isEmpty. Operand 166 states and 238 transitions. [2024-09-15 18:58:53,848 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 53 [2024-09-15 18:58:53,848 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:58:53,849 INFO L216 NwaCegarLoop]: trace histogram [5, 4, 4, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:58:53,866 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Forceful destruction successful, exit code 0 [2024-09-15 18:58:54,049 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9,8 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:58:54,049 INFO L399 AbstractCegarLoop]: === Iteration 11 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:58:54,050 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:58:54,050 INFO L85 PathProgramCache]: Analyzing trace with hash -262492089, now seen corresponding path program 1 times [2024-09-15 18:58:54,050 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:58:54,050 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [179181052] [2024-09-15 18:58:54,050 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:58:54,050 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:58:54,064 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-15 18:58:54,065 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [2016353820] [2024-09-15 18:58:54,065 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:58:54,065 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:58:54,065 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:58:54,067 INFO L229 MonitoredProcess]: Starting monitored process 9 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:58:54,068 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Waiting until timeout for monitored process [2024-09-15 18:58:54,116 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:58:54,117 INFO L262 TraceCheckSpWp]: Trace formula consists of 142 conjuncts, 51 conjuncts are in the unsatisfiable core [2024-09-15 18:58:54,120 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:58:54,834 INFO L134 CoverageAnalysis]: Checked inductivity of 40 backedges. 8 proven. 7 refuted. 0 times theorem prover too weak. 25 trivial. 0 not checked. [2024-09-15 18:58:54,834 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:58:56,328 INFO L134 CoverageAnalysis]: Checked inductivity of 40 backedges. 8 proven. 4 refuted. 0 times theorem prover too weak. 28 trivial. 0 not checked. [2024-09-15 18:58:56,328 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:58:56,328 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [179181052] [2024-09-15 18:58:56,328 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-15 18:58:56,328 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2016353820] [2024-09-15 18:58:56,329 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2016353820] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 18:58:56,329 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-09-15 18:58:56,329 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [14, 11] total 23 [2024-09-15 18:58:56,329 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [984330531] [2024-09-15 18:58:56,329 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-09-15 18:58:56,330 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 23 states [2024-09-15 18:58:56,330 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:58:56,331 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 23 interpolants. [2024-09-15 18:58:56,331 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=77, Invalid=429, Unknown=0, NotChecked=0, Total=506 [2024-09-15 18:58:56,331 INFO L87 Difference]: Start difference. First operand 166 states and 238 transitions. Second operand has 23 states, 21 states have (on average 2.0) internal successors, (42), 20 states have internal predecessors, (42), 6 states have call successors, (15), 3 states have call predecessors, (15), 2 states have return successors, (13), 4 states have call predecessors, (13), 4 states have call successors, (13) [2024-09-15 18:59:00,111 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:59:00,112 INFO L93 Difference]: Finished difference Result 445 states and 663 transitions. [2024-09-15 18:59:00,112 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 32 states. [2024-09-15 18:59:00,112 INFO L78 Accepts]: Start accepts. Automaton has has 23 states, 21 states have (on average 2.0) internal successors, (42), 20 states have internal predecessors, (42), 6 states have call successors, (15), 3 states have call predecessors, (15), 2 states have return successors, (13), 4 states have call predecessors, (13), 4 states have call successors, (13) Word has length 52 [2024-09-15 18:59:00,112 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:59:00,116 INFO L225 Difference]: With dead ends: 445 [2024-09-15 18:59:00,116 INFO L226 Difference]: Without dead ends: 342 [2024-09-15 18:59:00,118 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 126 GetRequests, 82 SyntacticMatches, 0 SemanticMatches, 44 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 429 ImplicationChecksByTransitivity, 2.9s TimeCoverageRelationStatistics Valid=398, Invalid=1672, Unknown=0, NotChecked=0, Total=2070 [2024-09-15 18:59:00,119 INFO L434 NwaCegarLoop]: 29 mSDtfsCounter, 170 mSDsluCounter, 379 mSDsCounter, 0 mSdLazyCounter, 613 mSolverCounterSat, 128 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.9s Time, 0 mProtectedPredicate, 0 mProtectedAction, 178 SdHoareTripleChecker+Valid, 408 SdHoareTripleChecker+Invalid, 741 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 128 IncrementalHoareTripleChecker+Valid, 613 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.9s IncrementalHoareTripleChecker+Time [2024-09-15 18:59:00,119 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [178 Valid, 408 Invalid, 741 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [128 Valid, 613 Invalid, 0 Unknown, 0 Unchecked, 1.9s Time] [2024-09-15 18:59:00,119 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 342 states. [2024-09-15 18:59:00,236 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 342 to 256. [2024-09-15 18:59:00,236 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 256 states, 149 states have (on average 1.2080536912751678) internal successors, (180), 156 states have internal predecessors, (180), 93 states have call successors, (93), 14 states have call predecessors, (93), 13 states have return successors, (91), 85 states have call predecessors, (91), 91 states have call successors, (91) [2024-09-15 18:59:00,238 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 256 states to 256 states and 364 transitions. [2024-09-15 18:59:00,239 INFO L78 Accepts]: Start accepts. Automaton has 256 states and 364 transitions. Word has length 52 [2024-09-15 18:59:00,240 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:59:00,240 INFO L474 AbstractCegarLoop]: Abstraction has 256 states and 364 transitions. [2024-09-15 18:59:00,240 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 23 states, 21 states have (on average 2.0) internal successors, (42), 20 states have internal predecessors, (42), 6 states have call successors, (15), 3 states have call predecessors, (15), 2 states have return successors, (13), 4 states have call predecessors, (13), 4 states have call successors, (13) [2024-09-15 18:59:00,240 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:59:00,240 INFO L276 IsEmpty]: Start isEmpty. Operand 256 states and 364 transitions. [2024-09-15 18:59:00,241 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 63 [2024-09-15 18:59:00,241 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:59:00,241 INFO L216 NwaCegarLoop]: trace histogram [8, 7, 7, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:59:00,262 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Ended with exit code 0 [2024-09-15 18:59:00,442 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10,9 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:59:00,442 INFO L399 AbstractCegarLoop]: === Iteration 12 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:59:00,443 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:59:00,443 INFO L85 PathProgramCache]: Analyzing trace with hash 1924337224, now seen corresponding path program 1 times [2024-09-15 18:59:00,443 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:59:00,443 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1293852806] [2024-09-15 18:59:00,443 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:59:00,443 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:59:00,455 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-15 18:59:00,456 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1246672090] [2024-09-15 18:59:00,456 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:59:00,457 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:59:00,457 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:59:00,459 INFO L229 MonitoredProcess]: Starting monitored process 10 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:59:00,468 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Waiting until timeout for monitored process [2024-09-15 18:59:00,519 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:59:00,520 INFO L262 TraceCheckSpWp]: Trace formula consists of 153 conjuncts, 11 conjuncts are in the unsatisfiable core [2024-09-15 18:59:00,522 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:59:00,596 INFO L134 CoverageAnalysis]: Checked inductivity of 107 backedges. 14 proven. 5 refuted. 0 times theorem prover too weak. 88 trivial. 0 not checked. [2024-09-15 18:59:00,596 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:59:00,668 INFO L134 CoverageAnalysis]: Checked inductivity of 107 backedges. 14 proven. 0 refuted. 0 times theorem prover too weak. 93 trivial. 0 not checked. [2024-09-15 18:59:00,669 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:59:00,669 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1293852806] [2024-09-15 18:59:00,669 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-15 18:59:00,669 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1246672090] [2024-09-15 18:59:00,669 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1246672090] provided 1 perfect and 1 imperfect interpolant sequences [2024-09-15 18:59:00,669 INFO L185 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2024-09-15 18:59:00,670 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [6] total 7 [2024-09-15 18:59:00,670 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1042097415] [2024-09-15 18:59:00,670 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-15 18:59:00,670 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-09-15 18:59:00,671 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:59:00,671 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-09-15 18:59:00,671 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=29, Unknown=0, NotChecked=0, Total=42 [2024-09-15 18:59:00,671 INFO L87 Difference]: Start difference. First operand 256 states and 364 transitions. Second operand has 5 states, 5 states have (on average 3.6) internal successors, (18), 4 states have internal predecessors, (18), 2 states have call successors, (9), 2 states have call predecessors, (9), 1 states have return successors, (7), 2 states have call predecessors, (7), 2 states have call successors, (7) [2024-09-15 18:59:00,797 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:59:00,797 INFO L93 Difference]: Finished difference Result 262 states and 369 transitions. [2024-09-15 18:59:00,798 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-09-15 18:59:00,798 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 3.6) internal successors, (18), 4 states have internal predecessors, (18), 2 states have call successors, (9), 2 states have call predecessors, (9), 1 states have return successors, (7), 2 states have call predecessors, (7), 2 states have call successors, (7) Word has length 62 [2024-09-15 18:59:00,798 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:59:00,800 INFO L225 Difference]: With dead ends: 262 [2024-09-15 18:59:00,800 INFO L226 Difference]: Without dead ends: 260 [2024-09-15 18:59:00,801 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 124 GetRequests, 116 SyntacticMatches, 2 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=39, Unknown=0, NotChecked=0, Total=56 [2024-09-15 18:59:00,802 INFO L434 NwaCegarLoop]: 34 mSDtfsCounter, 4 mSDsluCounter, 81 mSDsCounter, 0 mSdLazyCounter, 36 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 4 SdHoareTripleChecker+Valid, 115 SdHoareTripleChecker+Invalid, 36 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 36 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-15 18:59:00,802 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [4 Valid, 115 Invalid, 36 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 36 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-15 18:59:00,803 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 260 states. [2024-09-15 18:59:00,914 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 260 to 260. [2024-09-15 18:59:00,915 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 260 states, 152 states have (on average 1.2039473684210527) internal successors, (183), 159 states have internal predecessors, (183), 93 states have call successors, (93), 15 states have call predecessors, (93), 14 states have return successors, (91), 85 states have call predecessors, (91), 91 states have call successors, (91) [2024-09-15 18:59:00,917 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 260 states to 260 states and 367 transitions. [2024-09-15 18:59:00,918 INFO L78 Accepts]: Start accepts. Automaton has 260 states and 367 transitions. Word has length 62 [2024-09-15 18:59:00,918 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:59:00,918 INFO L474 AbstractCegarLoop]: Abstraction has 260 states and 367 transitions. [2024-09-15 18:59:00,918 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 3.6) internal successors, (18), 4 states have internal predecessors, (18), 2 states have call successors, (9), 2 states have call predecessors, (9), 1 states have return successors, (7), 2 states have call predecessors, (7), 2 states have call successors, (7) [2024-09-15 18:59:00,918 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:59:00,919 INFO L276 IsEmpty]: Start isEmpty. Operand 260 states and 367 transitions. [2024-09-15 18:59:00,919 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 61 [2024-09-15 18:59:00,919 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:59:00,919 INFO L216 NwaCegarLoop]: trace histogram [5, 4, 4, 4, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:59:00,934 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Ended with exit code 0 [2024-09-15 18:59:01,120 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 10 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable11 [2024-09-15 18:59:01,120 INFO L399 AbstractCegarLoop]: === Iteration 13 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:59:01,120 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:59:01,121 INFO L85 PathProgramCache]: Analyzing trace with hash -1180380411, now seen corresponding path program 1 times [2024-09-15 18:59:01,121 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:59:01,121 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1396261756] [2024-09-15 18:59:01,121 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:59:01,121 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:59:01,133 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-15 18:59:01,134 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [817162629] [2024-09-15 18:59:01,134 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:59:01,134 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:59:01,134 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:59:01,138 INFO L229 MonitoredProcess]: Starting monitored process 11 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:59:01,144 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (11)] Waiting until timeout for monitored process [2024-09-15 18:59:01,191 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:59:01,193 INFO L262 TraceCheckSpWp]: Trace formula consists of 172 conjuncts, 43 conjuncts are in the unsatisfiable core [2024-09-15 18:59:01,194 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:59:01,598 INFO L134 CoverageAnalysis]: Checked inductivity of 57 backedges. 8 proven. 24 refuted. 0 times theorem prover too weak. 25 trivial. 0 not checked. [2024-09-15 18:59:01,598 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:59:01,752 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:59:01,752 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1396261756] [2024-09-15 18:59:01,753 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-15 18:59:01,753 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [817162629] [2024-09-15 18:59:01,753 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [817162629] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 18:59:01,753 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-15 18:59:01,753 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [15] total 15 [2024-09-15 18:59:01,753 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [253810944] [2024-09-15 18:59:01,753 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-15 18:59:01,754 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 15 states [2024-09-15 18:59:01,754 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:59:01,754 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 15 interpolants. [2024-09-15 18:59:01,755 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=60, Invalid=320, Unknown=0, NotChecked=0, Total=380 [2024-09-15 18:59:01,755 INFO L87 Difference]: Start difference. First operand 260 states and 367 transitions. Second operand has 15 states, 15 states have (on average 2.3333333333333335) internal successors, (35), 13 states have internal predecessors, (35), 4 states have call successors, (9), 2 states have call predecessors, (9), 2 states have return successors, (7), 3 states have call predecessors, (7), 3 states have call successors, (7) [2024-09-15 18:59:02,511 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:59:02,511 INFO L93 Difference]: Finished difference Result 318 states and 454 transitions. [2024-09-15 18:59:02,512 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 16 states. [2024-09-15 18:59:02,512 INFO L78 Accepts]: Start accepts. Automaton has has 15 states, 15 states have (on average 2.3333333333333335) internal successors, (35), 13 states have internal predecessors, (35), 4 states have call successors, (9), 2 states have call predecessors, (9), 2 states have return successors, (7), 3 states have call predecessors, (7), 3 states have call successors, (7) Word has length 60 [2024-09-15 18:59:02,512 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:59:02,514 INFO L225 Difference]: With dead ends: 318 [2024-09-15 18:59:02,514 INFO L226 Difference]: Without dead ends: 316 [2024-09-15 18:59:02,515 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 81 GetRequests, 56 SyntacticMatches, 0 SemanticMatches, 25 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 106 ImplicationChecksByTransitivity, 0.4s TimeCoverageRelationStatistics Valid=115, Invalid=587, Unknown=0, NotChecked=0, Total=702 [2024-09-15 18:59:02,516 INFO L434 NwaCegarLoop]: 60 mSDtfsCounter, 83 mSDsluCounter, 383 mSDsCounter, 0 mSdLazyCounter, 425 mSolverCounterSat, 39 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 99 SdHoareTripleChecker+Valid, 443 SdHoareTripleChecker+Invalid, 464 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 39 IncrementalHoareTripleChecker+Valid, 425 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2024-09-15 18:59:02,516 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [99 Valid, 443 Invalid, 464 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [39 Valid, 425 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2024-09-15 18:59:02,516 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 316 states. [2024-09-15 18:59:02,657 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 316 to 311. [2024-09-15 18:59:02,658 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 311 states, 178 states have (on average 1.2078651685393258) internal successors, (215), 188 states have internal predecessors, (215), 117 states have call successors, (117), 16 states have call predecessors, (117), 15 states have return successors, (115), 106 states have call predecessors, (115), 115 states have call successors, (115) [2024-09-15 18:59:02,660 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 311 states to 311 states and 447 transitions. [2024-09-15 18:59:02,661 INFO L78 Accepts]: Start accepts. Automaton has 311 states and 447 transitions. Word has length 60 [2024-09-15 18:59:02,661 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:59:02,661 INFO L474 AbstractCegarLoop]: Abstraction has 311 states and 447 transitions. [2024-09-15 18:59:02,661 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 15 states, 15 states have (on average 2.3333333333333335) internal successors, (35), 13 states have internal predecessors, (35), 4 states have call successors, (9), 2 states have call predecessors, (9), 2 states have return successors, (7), 3 states have call predecessors, (7), 3 states have call successors, (7) [2024-09-15 18:59:02,661 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:59:02,661 INFO L276 IsEmpty]: Start isEmpty. Operand 311 states and 447 transitions. [2024-09-15 18:59:02,662 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 66 [2024-09-15 18:59:02,662 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:59:02,662 INFO L216 NwaCegarLoop]: trace histogram [7, 6, 6, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:59:02,676 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (11)] Ended with exit code 0 [2024-09-15 18:59:02,866 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 11 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable12 [2024-09-15 18:59:02,867 INFO L399 AbstractCegarLoop]: === Iteration 14 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:59:02,867 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:59:02,867 INFO L85 PathProgramCache]: Analyzing trace with hash -1640416879, now seen corresponding path program 2 times [2024-09-15 18:59:02,867 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:59:02,867 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1570297764] [2024-09-15 18:59:02,867 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:59:02,867 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:59:02,879 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:59:02,945 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-15 18:59:02,947 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:59:02,949 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2024-09-15 18:59:02,949 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:59:02,951 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2024-09-15 18:59:02,952 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:59:02,953 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 26 [2024-09-15 18:59:02,954 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:59:02,958 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 31 [2024-09-15 18:59:02,960 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:59:02,962 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 36 [2024-09-15 18:59:02,963 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:59:02,965 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 41 [2024-09-15 18:59:02,965 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:59:02,967 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 51 [2024-09-15 18:59:02,968 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:59:02,969 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 56 [2024-09-15 18:59:02,970 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:59:02,971 INFO L134 CoverageAnalysis]: Checked inductivity of 88 backedges. 20 proven. 0 refuted. 0 times theorem prover too weak. 68 trivial. 0 not checked. [2024-09-15 18:59:02,972 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:59:02,972 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1570297764] [2024-09-15 18:59:02,972 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1570297764] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-15 18:59:02,972 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-15 18:59:02,972 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2024-09-15 18:59:02,972 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1659749967] [2024-09-15 18:59:02,972 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-15 18:59:02,972 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-09-15 18:59:02,973 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:59:02,973 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-09-15 18:59:02,973 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-09-15 18:59:02,974 INFO L87 Difference]: Start difference. First operand 311 states and 447 transitions. Second operand has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 3 states have call successors, (11), 2 states have call predecessors, (11), 1 states have return successors, (9), 3 states have call predecessors, (9), 3 states have call successors, (9) [2024-09-15 18:59:03,145 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:59:03,145 INFO L93 Difference]: Finished difference Result 534 states and 771 transitions. [2024-09-15 18:59:03,145 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2024-09-15 18:59:03,146 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 3 states have call successors, (11), 2 states have call predecessors, (11), 1 states have return successors, (9), 3 states have call predecessors, (9), 3 states have call successors, (9) Word has length 65 [2024-09-15 18:59:03,146 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:59:03,148 INFO L225 Difference]: With dead ends: 534 [2024-09-15 18:59:03,148 INFO L226 Difference]: Without dead ends: 320 [2024-09-15 18:59:03,149 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 24 GetRequests, 20 SyntacticMatches, 0 SemanticMatches, 4 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=11, Invalid=19, Unknown=0, NotChecked=0, Total=30 [2024-09-15 18:59:03,150 INFO L434 NwaCegarLoop]: 34 mSDtfsCounter, 1 mSDsluCounter, 75 mSDsCounter, 0 mSdLazyCounter, 47 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1 SdHoareTripleChecker+Valid, 109 SdHoareTripleChecker+Invalid, 48 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 47 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-15 18:59:03,150 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [1 Valid, 109 Invalid, 48 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 47 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-15 18:59:03,151 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 320 states. [2024-09-15 18:59:03,280 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 320 to 308. [2024-09-15 18:59:03,281 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 308 states, 183 states have (on average 1.2076502732240437) internal successors, (221), 184 states have internal predecessors, (221), 109 states have call successors, (109), 16 states have call predecessors, (109), 15 states have return successors, (107), 107 states have call predecessors, (107), 107 states have call successors, (107) [2024-09-15 18:59:03,284 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 308 states to 308 states and 437 transitions. [2024-09-15 18:59:03,285 INFO L78 Accepts]: Start accepts. Automaton has 308 states and 437 transitions. Word has length 65 [2024-09-15 18:59:03,285 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:59:03,285 INFO L474 AbstractCegarLoop]: Abstraction has 308 states and 437 transitions. [2024-09-15 18:59:03,286 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 4.8) internal successors, (24), 5 states have internal predecessors, (24), 3 states have call successors, (11), 2 states have call predecessors, (11), 1 states have return successors, (9), 3 states have call predecessors, (9), 3 states have call successors, (9) [2024-09-15 18:59:03,286 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:59:03,286 INFO L276 IsEmpty]: Start isEmpty. Operand 308 states and 437 transitions. [2024-09-15 18:59:03,287 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 66 [2024-09-15 18:59:03,287 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:59:03,288 INFO L216 NwaCegarLoop]: trace histogram [6, 5, 5, 4, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:59:03,288 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable13 [2024-09-15 18:59:03,288 INFO L399 AbstractCegarLoop]: === Iteration 15 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:59:03,288 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:59:03,288 INFO L85 PathProgramCache]: Analyzing trace with hash -629454135, now seen corresponding path program 3 times [2024-09-15 18:59:03,289 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:59:03,289 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [547597222] [2024-09-15 18:59:03,289 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:59:03,289 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:59:03,304 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-15 18:59:03,306 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [625281777] [2024-09-15 18:59:03,306 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-09-15 18:59:03,306 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:59:03,306 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:59:03,308 INFO L229 MonitoredProcess]: Starting monitored process 12 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:59:03,315 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (12)] Waiting until timeout for monitored process [2024-09-15 18:59:03,373 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 3 check-sat command(s) [2024-09-15 18:59:03,373 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-15 18:59:03,375 INFO L262 TraceCheckSpWp]: Trace formula consists of 154 conjuncts, 64 conjuncts are in the unsatisfiable core [2024-09-15 18:59:03,377 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:59:04,288 INFO L134 CoverageAnalysis]: Checked inductivity of 76 backedges. 21 proven. 26 refuted. 0 times theorem prover too weak. 29 trivial. 0 not checked. [2024-09-15 18:59:04,289 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:59:08,418 WARN L854 $PredicateComparison]: unable to prove that (or (= (+ (* c_main_~p~0 c_main_~x~0) (* c_main_~r~0 c_main_~y~0)) (+ (* c_main_~q~0 c_main_~x~0 c_main_~k~0) c_main_~c~0 (* c_main_~s~0 c_main_~y~0 c_main_~k~0))) (forall ((v_main_~p~0_23 Int) (v_main_~r~0_23 Int)) (or (< (+ (* v_main_~p~0_23 c_main_~x~0) (* v_main_~r~0_23 c_main_~y~0)) c_main_~b~0) (< c_main_~q~0 v_main_~p~0_23) (< c_main_~s~0 v_main_~r~0_23)))) is different from false [2024-09-15 18:59:08,966 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:59:08,966 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [547597222] [2024-09-15 18:59:08,966 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-15 18:59:08,966 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [625281777] [2024-09-15 18:59:08,967 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [625281777] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 18:59:08,967 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-15 18:59:08,967 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [19] total 19 [2024-09-15 18:59:08,967 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2111973384] [2024-09-15 18:59:08,967 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-15 18:59:08,967 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 19 states [2024-09-15 18:59:08,967 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:59:08,968 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 19 interpolants. [2024-09-15 18:59:08,971 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=93, Invalid=462, Unknown=1, NotChecked=44, Total=600 [2024-09-15 18:59:08,971 INFO L87 Difference]: Start difference. First operand 308 states and 437 transitions. Second operand has 19 states, 18 states have (on average 2.111111111111111) internal successors, (38), 16 states have internal predecessors, (38), 5 states have call successors, (10), 2 states have call predecessors, (10), 3 states have return successors, (8), 4 states have call predecessors, (8), 4 states have call successors, (8) [2024-09-15 18:59:09,783 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:59:09,783 INFO L93 Difference]: Finished difference Result 336 states and 461 transitions. [2024-09-15 18:59:09,784 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 18 states. [2024-09-15 18:59:09,784 INFO L78 Accepts]: Start accepts. Automaton has has 19 states, 18 states have (on average 2.111111111111111) internal successors, (38), 16 states have internal predecessors, (38), 5 states have call successors, (10), 2 states have call predecessors, (10), 3 states have return successors, (8), 4 states have call predecessors, (8), 4 states have call successors, (8) Word has length 65 [2024-09-15 18:59:09,784 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:59:09,787 INFO L225 Difference]: With dead ends: 336 [2024-09-15 18:59:09,787 INFO L226 Difference]: Without dead ends: 334 [2024-09-15 18:59:09,788 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 91 GetRequests, 59 SyntacticMatches, 2 SemanticMatches, 30 ConstructedPredicates, 1 IntricatePredicates, 0 DeprecatedPredicates, 200 ImplicationChecksByTransitivity, 4.9s TimeCoverageRelationStatistics Valid=155, Invalid=778, Unknown=1, NotChecked=58, Total=992 [2024-09-15 18:59:09,788 INFO L434 NwaCegarLoop]: 37 mSDtfsCounter, 65 mSDsluCounter, 404 mSDsCounter, 0 mSdLazyCounter, 607 mSolverCounterSat, 34 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 81 SdHoareTripleChecker+Valid, 441 SdHoareTripleChecker+Invalid, 641 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 34 IncrementalHoareTripleChecker+Valid, 607 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2024-09-15 18:59:09,788 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [81 Valid, 441 Invalid, 641 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [34 Valid, 607 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2024-09-15 18:59:09,789 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 334 states. [2024-09-15 18:59:09,962 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 334 to 324. [2024-09-15 18:59:09,963 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 324 states, 195 states have (on average 1.1948717948717948) internal successors, (233), 196 states have internal predecessors, (233), 109 states have call successors, (109), 20 states have call predecessors, (109), 19 states have return successors, (107), 107 states have call predecessors, (107), 107 states have call successors, (107) [2024-09-15 18:59:09,965 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 324 states to 324 states and 449 transitions. [2024-09-15 18:59:09,965 INFO L78 Accepts]: Start accepts. Automaton has 324 states and 449 transitions. Word has length 65 [2024-09-15 18:59:09,966 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:59:09,966 INFO L474 AbstractCegarLoop]: Abstraction has 324 states and 449 transitions. [2024-09-15 18:59:09,966 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 19 states, 18 states have (on average 2.111111111111111) internal successors, (38), 16 states have internal predecessors, (38), 5 states have call successors, (10), 2 states have call predecessors, (10), 3 states have return successors, (8), 4 states have call predecessors, (8), 4 states have call successors, (8) [2024-09-15 18:59:09,966 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:59:09,966 INFO L276 IsEmpty]: Start isEmpty. Operand 324 states and 449 transitions. [2024-09-15 18:59:09,967 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 80 [2024-09-15 18:59:09,967 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:59:09,967 INFO L216 NwaCegarLoop]: trace histogram [9, 8, 8, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:59:09,984 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (12)] Forceful destruction successful, exit code 0 [2024-09-15 18:59:10,168 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 12 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable14 [2024-09-15 18:59:10,168 INFO L399 AbstractCegarLoop]: === Iteration 16 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:59:10,168 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:59:10,169 INFO L85 PathProgramCache]: Analyzing trace with hash -232813088, now seen corresponding path program 1 times [2024-09-15 18:59:10,169 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:59:10,169 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [384634462] [2024-09-15 18:59:10,169 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:59:10,169 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:59:10,183 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-15 18:59:10,184 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [669360569] [2024-09-15 18:59:10,184 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:59:10,184 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:59:10,184 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:59:10,190 INFO L229 MonitoredProcess]: Starting monitored process 13 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:59:10,194 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (13)] Waiting until timeout for monitored process [2024-09-15 18:59:10,247 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:59:10,248 INFO L262 TraceCheckSpWp]: Trace formula consists of 204 conjuncts, 66 conjuncts are in the unsatisfiable core [2024-09-15 18:59:10,251 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:59:11,113 INFO L134 CoverageAnalysis]: Checked inductivity of 151 backedges. 30 proven. 29 refuted. 0 times theorem prover too weak. 92 trivial. 0 not checked. [2024-09-15 18:59:11,113 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:59:13,271 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:59:13,271 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [384634462] [2024-09-15 18:59:13,271 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-15 18:59:13,271 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [669360569] [2024-09-15 18:59:13,271 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [669360569] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 18:59:13,271 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-15 18:59:13,271 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [21] total 21 [2024-09-15 18:59:13,271 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [213996429] [2024-09-15 18:59:13,271 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-15 18:59:13,272 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 21 states [2024-09-15 18:59:13,272 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:59:13,272 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 21 interpolants. [2024-09-15 18:59:13,273 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=92, Invalid=664, Unknown=0, NotChecked=0, Total=756 [2024-09-15 18:59:13,273 INFO L87 Difference]: Start difference. First operand 324 states and 449 transitions. Second operand has 21 states, 20 states have (on average 1.85) internal successors, (37), 19 states have internal predecessors, (37), 6 states have call successors, (13), 2 states have call predecessors, (13), 3 states have return successors, (11), 5 states have call predecessors, (11), 5 states have call successors, (11) [2024-09-15 18:59:14,421 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:59:14,422 INFO L93 Difference]: Finished difference Result 400 states and 561 transitions. [2024-09-15 18:59:14,422 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 21 states. [2024-09-15 18:59:14,422 INFO L78 Accepts]: Start accepts. Automaton has has 21 states, 20 states have (on average 1.85) internal successors, (37), 19 states have internal predecessors, (37), 6 states have call successors, (13), 2 states have call predecessors, (13), 3 states have return successors, (11), 5 states have call predecessors, (11), 5 states have call successors, (11) Word has length 79 [2024-09-15 18:59:14,423 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:59:14,425 INFO L225 Difference]: With dead ends: 400 [2024-09-15 18:59:14,426 INFO L226 Difference]: Without dead ends: 397 [2024-09-15 18:59:14,426 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 109 GetRequests, 74 SyntacticMatches, 0 SemanticMatches, 35 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 253 ImplicationChecksByTransitivity, 2.5s TimeCoverageRelationStatistics Valid=165, Invalid=1167, Unknown=0, NotChecked=0, Total=1332 [2024-09-15 18:59:14,427 INFO L434 NwaCegarLoop]: 50 mSDtfsCounter, 90 mSDsluCounter, 487 mSDsCounter, 0 mSdLazyCounter, 932 mSolverCounterSat, 62 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.5s Time, 0 mProtectedPredicate, 0 mProtectedAction, 106 SdHoareTripleChecker+Valid, 537 SdHoareTripleChecker+Invalid, 994 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 62 IncrementalHoareTripleChecker+Valid, 932 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.6s IncrementalHoareTripleChecker+Time [2024-09-15 18:59:14,427 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [106 Valid, 537 Invalid, 994 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [62 Valid, 932 Invalid, 0 Unknown, 0 Unchecked, 0.6s Time] [2024-09-15 18:59:14,428 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 397 states. [2024-09-15 18:59:14,584 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 397 to 385. [2024-09-15 18:59:14,585 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 385 states, 226 states have (on average 1.2079646017699115) internal successors, (273), 227 states have internal predecessors, (273), 137 states have call successors, (137), 22 states have call predecessors, (137), 21 states have return successors, (135), 135 states have call predecessors, (135), 135 states have call successors, (135) [2024-09-15 18:59:14,587 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 385 states to 385 states and 545 transitions. [2024-09-15 18:59:14,588 INFO L78 Accepts]: Start accepts. Automaton has 385 states and 545 transitions. Word has length 79 [2024-09-15 18:59:14,588 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:59:14,588 INFO L474 AbstractCegarLoop]: Abstraction has 385 states and 545 transitions. [2024-09-15 18:59:14,588 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 21 states, 20 states have (on average 1.85) internal successors, (37), 19 states have internal predecessors, (37), 6 states have call successors, (13), 2 states have call predecessors, (13), 3 states have return successors, (11), 5 states have call predecessors, (11), 5 states have call successors, (11) [2024-09-15 18:59:14,589 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:59:14,589 INFO L276 IsEmpty]: Start isEmpty. Operand 385 states and 545 transitions. [2024-09-15 18:59:14,590 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 83 [2024-09-15 18:59:14,590 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:59:14,590 INFO L216 NwaCegarLoop]: trace histogram [11, 10, 10, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:59:14,605 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (13)] Forceful destruction successful, exit code 0 [2024-09-15 18:59:14,790 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 13 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable15 [2024-09-15 18:59:14,790 INFO L399 AbstractCegarLoop]: === Iteration 17 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:59:14,791 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:59:14,791 INFO L85 PathProgramCache]: Analyzing trace with hash -203814726, now seen corresponding path program 1 times [2024-09-15 18:59:14,791 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:59:14,791 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [883253289] [2024-09-15 18:59:14,791 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:59:14,791 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:59:14,803 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-15 18:59:14,804 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1531726895] [2024-09-15 18:59:14,804 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:59:14,804 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:59:14,804 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:59:14,808 INFO L229 MonitoredProcess]: Starting monitored process 14 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:59:14,810 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (14)] Waiting until timeout for monitored process [2024-09-15 18:59:14,854 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:59:14,855 INFO L262 TraceCheckSpWp]: Trace formula consists of 192 conjuncts, 31 conjuncts are in the unsatisfiable core [2024-09-15 18:59:14,857 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:59:15,085 INFO L134 CoverageAnalysis]: Checked inductivity of 220 backedges. 20 proven. 19 refuted. 0 times theorem prover too weak. 181 trivial. 0 not checked. [2024-09-15 18:59:15,085 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:59:15,498 INFO L134 CoverageAnalysis]: Checked inductivity of 220 backedges. 22 proven. 14 refuted. 0 times theorem prover too weak. 184 trivial. 0 not checked. [2024-09-15 18:59:15,498 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:59:15,499 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [883253289] [2024-09-15 18:59:15,499 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-15 18:59:15,499 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1531726895] [2024-09-15 18:59:15,499 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1531726895] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 18:59:15,499 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-09-15 18:59:15,499 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [13, 10] total 21 [2024-09-15 18:59:15,499 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1027866356] [2024-09-15 18:59:15,499 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-09-15 18:59:15,499 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 21 states [2024-09-15 18:59:15,500 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:59:15,500 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 21 interpolants. [2024-09-15 18:59:15,500 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=81, Invalid=339, Unknown=0, NotChecked=0, Total=420 [2024-09-15 18:59:15,501 INFO L87 Difference]: Start difference. First operand 385 states and 545 transitions. Second operand has 21 states, 21 states have (on average 1.9523809523809523) internal successors, (41), 18 states have internal predecessors, (41), 8 states have call successors, (27), 3 states have call predecessors, (27), 2 states have return successors, (25), 8 states have call predecessors, (25), 8 states have call successors, (25) [2024-09-15 18:59:17,116 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:59:17,116 INFO L93 Difference]: Finished difference Result 885 states and 1384 transitions. [2024-09-15 18:59:17,117 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 25 states. [2024-09-15 18:59:17,117 INFO L78 Accepts]: Start accepts. Automaton has has 21 states, 21 states have (on average 1.9523809523809523) internal successors, (41), 18 states have internal predecessors, (41), 8 states have call successors, (27), 3 states have call predecessors, (27), 2 states have return successors, (25), 8 states have call predecessors, (25), 8 states have call successors, (25) Word has length 82 [2024-09-15 18:59:17,117 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:59:17,123 INFO L225 Difference]: With dead ends: 885 [2024-09-15 18:59:17,124 INFO L226 Difference]: Without dead ends: 883 [2024-09-15 18:59:17,125 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 182 GetRequests, 144 SyntacticMatches, 0 SemanticMatches, 38 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 317 ImplicationChecksByTransitivity, 0.8s TimeCoverageRelationStatistics Valid=345, Invalid=1215, Unknown=0, NotChecked=0, Total=1560 [2024-09-15 18:59:17,125 INFO L434 NwaCegarLoop]: 42 mSDtfsCounter, 148 mSDsluCounter, 394 mSDsCounter, 0 mSdLazyCounter, 394 mSolverCounterSat, 137 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.6s Time, 0 mProtectedPredicate, 0 mProtectedAction, 152 SdHoareTripleChecker+Valid, 436 SdHoareTripleChecker+Invalid, 531 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 137 IncrementalHoareTripleChecker+Valid, 394 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.6s IncrementalHoareTripleChecker+Time [2024-09-15 18:59:17,125 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [152 Valid, 436 Invalid, 531 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [137 Valid, 394 Invalid, 0 Unknown, 0 Unchecked, 0.6s Time] [2024-09-15 18:59:17,126 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 883 states. [2024-09-15 18:59:17,582 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 883 to 829. [2024-09-15 18:59:17,584 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 829 states, 403 states have (on average 1.3101736972704714) internal successors, (528), 404 states have internal predecessors, (528), 401 states have call successors, (401), 25 states have call predecessors, (401), 24 states have return successors, (399), 399 states have call predecessors, (399), 399 states have call successors, (399) [2024-09-15 18:59:17,588 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 829 states to 829 states and 1328 transitions. [2024-09-15 18:59:17,591 INFO L78 Accepts]: Start accepts. Automaton has 829 states and 1328 transitions. Word has length 82 [2024-09-15 18:59:17,591 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:59:17,591 INFO L474 AbstractCegarLoop]: Abstraction has 829 states and 1328 transitions. [2024-09-15 18:59:17,591 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 21 states, 21 states have (on average 1.9523809523809523) internal successors, (41), 18 states have internal predecessors, (41), 8 states have call successors, (27), 3 states have call predecessors, (27), 2 states have return successors, (25), 8 states have call predecessors, (25), 8 states have call successors, (25) [2024-09-15 18:59:17,592 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:59:17,592 INFO L276 IsEmpty]: Start isEmpty. Operand 829 states and 1328 transitions. [2024-09-15 18:59:17,593 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 83 [2024-09-15 18:59:17,593 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:59:17,593 INFO L216 NwaCegarLoop]: trace histogram [10, 9, 9, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:59:17,610 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (14)] Forceful destruction successful, exit code 0 [2024-09-15 18:59:17,793 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 14 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable16 [2024-09-15 18:59:17,794 INFO L399 AbstractCegarLoop]: === Iteration 18 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:59:17,794 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:59:17,794 INFO L85 PathProgramCache]: Analyzing trace with hash 807148018, now seen corresponding path program 1 times [2024-09-15 18:59:17,794 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:59:17,794 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [703165484] [2024-09-15 18:59:17,794 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:59:17,794 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:59:17,823 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-15 18:59:17,827 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [646180412] [2024-09-15 18:59:17,827 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:59:17,827 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:59:17,828 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:59:17,829 INFO L229 MonitoredProcess]: Starting monitored process 15 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:59:17,832 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (15)] Waiting until timeout for monitored process [2024-09-15 18:59:17,887 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:59:17,889 INFO L262 TraceCheckSpWp]: Trace formula consists of 203 conjuncts, 47 conjuncts are in the unsatisfiable core [2024-09-15 18:59:17,906 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:59:18,523 INFO L134 CoverageAnalysis]: Checked inductivity of 186 backedges. 18 proven. 23 refuted. 0 times theorem prover too weak. 145 trivial. 0 not checked. [2024-09-15 18:59:18,523 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:59:19,911 INFO L134 CoverageAnalysis]: Checked inductivity of 186 backedges. 18 proven. 20 refuted. 0 times theorem prover too weak. 148 trivial. 0 not checked. [2024-09-15 18:59:19,911 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:59:19,911 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [703165484] [2024-09-15 18:59:19,911 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-15 18:59:19,911 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [646180412] [2024-09-15 18:59:19,912 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [646180412] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 18:59:19,912 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-09-15 18:59:19,912 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [14, 11] total 23 [2024-09-15 18:59:19,912 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1279509799] [2024-09-15 18:59:19,912 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-09-15 18:59:19,912 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 23 states [2024-09-15 18:59:19,912 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:59:19,913 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 23 interpolants. [2024-09-15 18:59:19,913 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=80, Invalid=426, Unknown=0, NotChecked=0, Total=506 [2024-09-15 18:59:19,913 INFO L87 Difference]: Start difference. First operand 829 states and 1328 transitions. Second operand has 23 states, 23 states have (on average 2.260869565217391) internal successors, (52), 20 states have internal predecessors, (52), 8 states have call successors, (25), 3 states have call predecessors, (25), 2 states have return successors, (23), 8 states have call predecessors, (23), 8 states have call successors, (23) [2024-09-15 18:59:28,270 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:59:28,270 INFO L93 Difference]: Finished difference Result 1191 states and 1920 transitions. [2024-09-15 18:59:28,271 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 44 states. [2024-09-15 18:59:28,271 INFO L78 Accepts]: Start accepts. Automaton has has 23 states, 23 states have (on average 2.260869565217391) internal successors, (52), 20 states have internal predecessors, (52), 8 states have call successors, (25), 3 states have call predecessors, (25), 2 states have return successors, (23), 8 states have call predecessors, (23), 8 states have call successors, (23) Word has length 82 [2024-09-15 18:59:28,271 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:59:28,279 INFO L225 Difference]: With dead ends: 1191 [2024-09-15 18:59:28,279 INFO L226 Difference]: Without dead ends: 1189 [2024-09-15 18:59:28,281 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 200 GetRequests, 142 SyntacticMatches, 0 SemanticMatches, 58 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 782 ImplicationChecksByTransitivity, 4.9s TimeCoverageRelationStatistics Valid=711, Invalid=2829, Unknown=0, NotChecked=0, Total=3540 [2024-09-15 18:59:28,281 INFO L434 NwaCegarLoop]: 51 mSDtfsCounter, 160 mSDsluCounter, 668 mSDsCounter, 0 mSdLazyCounter, 926 mSolverCounterSat, 144 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 3.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 160 SdHoareTripleChecker+Valid, 719 SdHoareTripleChecker+Invalid, 1070 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 144 IncrementalHoareTripleChecker+Valid, 926 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 3.2s IncrementalHoareTripleChecker+Time [2024-09-15 18:59:28,281 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [160 Valid, 719 Invalid, 1070 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [144 Valid, 926 Invalid, 0 Unknown, 0 Unchecked, 3.2s Time] [2024-09-15 18:59:28,283 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1189 states. [2024-09-15 18:59:29,113 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1189 to 1060. [2024-09-15 18:59:29,115 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1060 states, 511 states have (on average 1.3228962818003913) internal successors, (676), 512 states have internal predecessors, (676), 521 states have call successors, (521), 28 states have call predecessors, (521), 27 states have return successors, (519), 519 states have call predecessors, (519), 519 states have call successors, (519) [2024-09-15 18:59:29,120 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1060 states to 1060 states and 1716 transitions. [2024-09-15 18:59:29,123 INFO L78 Accepts]: Start accepts. Automaton has 1060 states and 1716 transitions. Word has length 82 [2024-09-15 18:59:29,123 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:59:29,124 INFO L474 AbstractCegarLoop]: Abstraction has 1060 states and 1716 transitions. [2024-09-15 18:59:29,124 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 23 states, 23 states have (on average 2.260869565217391) internal successors, (52), 20 states have internal predecessors, (52), 8 states have call successors, (25), 3 states have call predecessors, (25), 2 states have return successors, (23), 8 states have call predecessors, (23), 8 states have call successors, (23) [2024-09-15 18:59:29,124 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:59:29,124 INFO L276 IsEmpty]: Start isEmpty. Operand 1060 states and 1716 transitions. [2024-09-15 18:59:29,126 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 86 [2024-09-15 18:59:29,126 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:59:29,126 INFO L216 NwaCegarLoop]: trace histogram [9, 8, 8, 5, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:59:29,139 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (15)] Forceful destruction successful, exit code 0 [2024-09-15 18:59:29,327 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 15 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable17 [2024-09-15 18:59:29,327 INFO L399 AbstractCegarLoop]: === Iteration 19 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:59:29,328 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:59:29,328 INFO L85 PathProgramCache]: Analyzing trace with hash 590263059, now seen corresponding path program 4 times [2024-09-15 18:59:29,328 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:59:29,328 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1645255528] [2024-09-15 18:59:29,328 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:59:29,328 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:59:29,356 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-15 18:59:29,357 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [592368428] [2024-09-15 18:59:29,358 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2024-09-15 18:59:29,358 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:59:29,358 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:59:29,362 INFO L229 MonitoredProcess]: Starting monitored process 16 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:59:29,366 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (16)] Waiting until timeout for monitored process [2024-09-15 18:59:29,416 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2024-09-15 18:59:29,416 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-15 18:59:29,417 INFO L262 TraceCheckSpWp]: Trace formula consists of 197 conjuncts, 28 conjuncts are in the unsatisfiable core [2024-09-15 18:59:29,418 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:59:30,970 INFO L134 CoverageAnalysis]: Checked inductivity of 170 backedges. 30 proven. 45 refuted. 0 times theorem prover too weak. 95 trivial. 0 not checked. [2024-09-15 18:59:30,970 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:59:31,561 INFO L134 CoverageAnalysis]: Checked inductivity of 170 backedges. 55 proven. 9 refuted. 0 times theorem prover too weak. 106 trivial. 0 not checked. [2024-09-15 18:59:31,561 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:59:31,561 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1645255528] [2024-09-15 18:59:31,561 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-15 18:59:31,561 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [592368428] [2024-09-15 18:59:31,561 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [592368428] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 18:59:31,561 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-09-15 18:59:31,561 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [17, 9] total 21 [2024-09-15 18:59:31,562 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1615732366] [2024-09-15 18:59:31,562 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-09-15 18:59:31,562 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 21 states [2024-09-15 18:59:31,562 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:59:31,563 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 21 interpolants. [2024-09-15 18:59:31,563 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=55, Invalid=365, Unknown=0, NotChecked=0, Total=420 [2024-09-15 18:59:31,563 INFO L87 Difference]: Start difference. First operand 1060 states and 1716 transitions. Second operand has 21 states, 21 states have (on average 2.9523809523809526) internal successors, (62), 18 states have internal predecessors, (62), 7 states have call successors, (20), 2 states have call predecessors, (20), 2 states have return successors, (18), 5 states have call predecessors, (18), 5 states have call successors, (18) [2024-09-15 18:59:36,725 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:59:36,725 INFO L93 Difference]: Finished difference Result 1190 states and 1914 transitions. [2024-09-15 18:59:36,725 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 23 states. [2024-09-15 18:59:36,726 INFO L78 Accepts]: Start accepts. Automaton has has 21 states, 21 states have (on average 2.9523809523809526) internal successors, (62), 18 states have internal predecessors, (62), 7 states have call successors, (20), 2 states have call predecessors, (20), 2 states have return successors, (18), 5 states have call predecessors, (18), 5 states have call successors, (18) Word has length 85 [2024-09-15 18:59:36,726 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:59:36,733 INFO L225 Difference]: With dead ends: 1190 [2024-09-15 18:59:36,733 INFO L226 Difference]: Without dead ends: 1188 [2024-09-15 18:59:36,734 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 191 GetRequests, 154 SyntacticMatches, 2 SemanticMatches, 35 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 231 ImplicationChecksByTransitivity, 3.6s TimeCoverageRelationStatistics Valid=203, Invalid=1129, Unknown=0, NotChecked=0, Total=1332 [2024-09-15 18:59:36,734 INFO L434 NwaCegarLoop]: 50 mSDtfsCounter, 80 mSDsluCounter, 534 mSDsCounter, 0 mSdLazyCounter, 603 mSolverCounterSat, 57 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.9s Time, 0 mProtectedPredicate, 0 mProtectedAction, 84 SdHoareTripleChecker+Valid, 584 SdHoareTripleChecker+Invalid, 660 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 57 IncrementalHoareTripleChecker+Valid, 603 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 2.0s IncrementalHoareTripleChecker+Time [2024-09-15 18:59:36,735 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [84 Valid, 584 Invalid, 660 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [57 Valid, 603 Invalid, 0 Unknown, 0 Unchecked, 2.0s Time] [2024-09-15 18:59:36,736 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1188 states. [2024-09-15 18:59:37,741 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1188 to 1080. [2024-09-15 18:59:37,744 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1080 states, 526 states have (on average 1.3136882129277567) internal successors, (691), 527 states have internal predecessors, (691), 521 states have call successors, (521), 33 states have call predecessors, (521), 32 states have return successors, (519), 519 states have call predecessors, (519), 519 states have call successors, (519) [2024-09-15 18:59:37,749 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1080 states to 1080 states and 1731 transitions. [2024-09-15 18:59:37,751 INFO L78 Accepts]: Start accepts. Automaton has 1080 states and 1731 transitions. Word has length 85 [2024-09-15 18:59:37,752 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:59:37,752 INFO L474 AbstractCegarLoop]: Abstraction has 1080 states and 1731 transitions. [2024-09-15 18:59:37,752 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 21 states, 21 states have (on average 2.9523809523809526) internal successors, (62), 18 states have internal predecessors, (62), 7 states have call successors, (20), 2 states have call predecessors, (20), 2 states have return successors, (18), 5 states have call predecessors, (18), 5 states have call successors, (18) [2024-09-15 18:59:37,752 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:59:37,752 INFO L276 IsEmpty]: Start isEmpty. Operand 1080 states and 1731 transitions. [2024-09-15 18:59:37,754 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 88 [2024-09-15 18:59:37,754 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:59:37,754 INFO L216 NwaCegarLoop]: trace histogram [9, 8, 8, 5, 4, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:59:37,771 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (16)] Ended with exit code 0 [2024-09-15 18:59:37,954 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable18,16 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:59:37,955 INFO L399 AbstractCegarLoop]: === Iteration 20 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:59:37,955 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:59:37,955 INFO L85 PathProgramCache]: Analyzing trace with hash -1412818839, now seen corresponding path program 2 times [2024-09-15 18:59:37,955 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:59:37,955 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [642613580] [2024-09-15 18:59:37,955 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:59:37,956 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:59:37,965 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:59:38,102 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-15 18:59:38,103 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:59:38,105 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 5 [2024-09-15 18:59:38,105 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:59:38,106 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2024-09-15 18:59:38,107 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:59:38,108 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 26 [2024-09-15 18:59:38,109 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:59:38,111 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 31 [2024-09-15 18:59:38,111 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:59:38,113 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 36 [2024-09-15 18:59:38,114 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:59:38,116 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 41 [2024-09-15 18:59:38,117 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:59:38,119 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 56 [2024-09-15 18:59:38,120 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:59:38,121 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 61 [2024-09-15 18:59:38,122 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:59:38,124 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 66 [2024-09-15 18:59:38,125 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:59:38,127 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 71 [2024-09-15 18:59:38,128 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:59:38,130 INFO L134 CoverageAnalysis]: Checked inductivity of 174 backedges. 38 proven. 16 refuted. 0 times theorem prover too weak. 120 trivial. 0 not checked. [2024-09-15 18:59:38,130 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:59:38,130 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [642613580] [2024-09-15 18:59:38,130 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [642613580] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 18:59:38,130 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [563513231] [2024-09-15 18:59:38,131 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-15 18:59:38,131 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:59:38,131 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:59:38,132 INFO L229 MonitoredProcess]: Starting monitored process 17 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:59:38,134 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (17)] Waiting until timeout for monitored process [2024-09-15 18:59:38,195 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-15 18:59:38,195 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-15 18:59:38,196 INFO L262 TraceCheckSpWp]: Trace formula consists of 230 conjuncts, 10 conjuncts are in the unsatisfiable core [2024-09-15 18:59:38,198 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:59:38,246 INFO L134 CoverageAnalysis]: Checked inductivity of 174 backedges. 38 proven. 16 refuted. 0 times theorem prover too weak. 120 trivial. 0 not checked. [2024-09-15 18:59:38,247 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:59:38,352 INFO L134 CoverageAnalysis]: Checked inductivity of 174 backedges. 38 proven. 16 refuted. 0 times theorem prover too weak. 120 trivial. 0 not checked. [2024-09-15 18:59:38,352 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [563513231] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 18:59:38,352 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-15 18:59:38,352 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 10, 10] total 11 [2024-09-15 18:59:38,353 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [42788838] [2024-09-15 18:59:38,353 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-15 18:59:38,353 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 11 states [2024-09-15 18:59:38,353 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:59:38,354 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 11 interpolants. [2024-09-15 18:59:38,354 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=21, Invalid=89, Unknown=0, NotChecked=0, Total=110 [2024-09-15 18:59:38,354 INFO L87 Difference]: Start difference. First operand 1080 states and 1731 transitions. Second operand has 11 states, 11 states have (on average 3.4545454545454546) internal successors, (38), 11 states have internal predecessors, (38), 4 states have call successors, (13), 2 states have call predecessors, (13), 1 states have return successors, (11), 3 states have call predecessors, (11), 3 states have call successors, (11) [2024-09-15 18:59:39,718 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:59:39,718 INFO L93 Difference]: Finished difference Result 1218 states and 1947 transitions. [2024-09-15 18:59:39,719 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 20 states. [2024-09-15 18:59:39,719 INFO L78 Accepts]: Start accepts. Automaton has has 11 states, 11 states have (on average 3.4545454545454546) internal successors, (38), 11 states have internal predecessors, (38), 4 states have call successors, (13), 2 states have call predecessors, (13), 1 states have return successors, (11), 3 states have call predecessors, (11), 3 states have call successors, (11) Word has length 87 [2024-09-15 18:59:39,719 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:59:39,727 INFO L225 Difference]: With dead ends: 1218 [2024-09-15 18:59:39,727 INFO L226 Difference]: Without dead ends: 1211 [2024-09-15 18:59:39,728 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 225 GetRequests, 194 SyntacticMatches, 8 SemanticMatches, 23 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 96 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=141, Invalid=459, Unknown=0, NotChecked=0, Total=600 [2024-09-15 18:59:39,728 INFO L434 NwaCegarLoop]: 56 mSDtfsCounter, 66 mSDsluCounter, 348 mSDsCounter, 0 mSdLazyCounter, 295 mSolverCounterSat, 57 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 70 SdHoareTripleChecker+Valid, 404 SdHoareTripleChecker+Invalid, 352 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 57 IncrementalHoareTripleChecker+Valid, 295 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-15 18:59:39,729 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [70 Valid, 404 Invalid, 352 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [57 Valid, 295 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-15 18:59:39,730 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1211 states. [2024-09-15 18:59:40,697 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1211 to 1049. [2024-09-15 18:59:40,699 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1049 states, 503 states have (on average 1.320079522862823) internal successors, (664), 504 states have internal predecessors, (664), 513 states have call successors, (513), 33 states have call predecessors, (513), 32 states have return successors, (511), 511 states have call predecessors, (511), 511 states have call successors, (511) [2024-09-15 18:59:40,704 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1049 states to 1049 states and 1688 transitions. [2024-09-15 18:59:40,707 INFO L78 Accepts]: Start accepts. Automaton has 1049 states and 1688 transitions. Word has length 87 [2024-09-15 18:59:40,707 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:59:40,707 INFO L474 AbstractCegarLoop]: Abstraction has 1049 states and 1688 transitions. [2024-09-15 18:59:40,707 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 11 states, 11 states have (on average 3.4545454545454546) internal successors, (38), 11 states have internal predecessors, (38), 4 states have call successors, (13), 2 states have call predecessors, (13), 1 states have return successors, (11), 3 states have call predecessors, (11), 3 states have call successors, (11) [2024-09-15 18:59:40,708 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:59:40,708 INFO L276 IsEmpty]: Start isEmpty. Operand 1049 states and 1688 transitions. [2024-09-15 18:59:40,711 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 91 [2024-09-15 18:59:40,712 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:59:40,712 INFO L216 NwaCegarLoop]: trace histogram [10, 9, 9, 5, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:59:40,729 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (17)] Ended with exit code 0 [2024-09-15 18:59:40,912 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable19,17 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:59:40,913 INFO L399 AbstractCegarLoop]: === Iteration 21 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:59:40,913 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:59:40,913 INFO L85 PathProgramCache]: Analyzing trace with hash 1409368955, now seen corresponding path program 5 times [2024-09-15 18:59:40,913 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:59:40,913 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [124324694] [2024-09-15 18:59:40,913 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:59:40,913 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:59:40,928 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-15 18:59:40,929 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [2743384] [2024-09-15 18:59:40,929 INFO L93 rtionOrderModulation]: Changing assertion order to INSIDE_LOOP_FIRST1 [2024-09-15 18:59:40,929 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:59:40,929 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:59:40,933 INFO L229 MonitoredProcess]: Starting monitored process 18 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:59:40,935 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (18)] Waiting until timeout for monitored process [2024-09-15 18:59:41,334 INFO L228 tOrderPrioritization]: Assert order INSIDE_LOOP_FIRST1 issued 7 check-sat command(s) [2024-09-15 18:59:41,334 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-15 18:59:41,335 INFO L262 TraceCheckSpWp]: Trace formula consists of 229 conjuncts, 62 conjuncts are in the unsatisfiable core [2024-09-15 18:59:41,337 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:59:42,510 INFO L134 CoverageAnalysis]: Checked inductivity of 206 backedges. 46 proven. 54 refuted. 0 times theorem prover too weak. 106 trivial. 0 not checked. [2024-09-15 18:59:42,510 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:59:43,567 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:59:43,567 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [124324694] [2024-09-15 18:59:43,567 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-15 18:59:43,568 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2743384] [2024-09-15 18:59:43,568 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2743384] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 18:59:43,568 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-15 18:59:43,568 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [19] total 19 [2024-09-15 18:59:43,568 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1867486160] [2024-09-15 18:59:43,568 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-15 18:59:43,568 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 19 states [2024-09-15 18:59:43,568 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:59:43,569 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 19 interpolants. [2024-09-15 18:59:43,569 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=94, Invalid=608, Unknown=0, NotChecked=0, Total=702 [2024-09-15 18:59:43,569 INFO L87 Difference]: Start difference. First operand 1049 states and 1688 transitions. Second operand has 19 states, 18 states have (on average 2.2222222222222223) internal successors, (40), 16 states have internal predecessors, (40), 6 states have call successors, (14), 2 states have call predecessors, (14), 2 states have return successors, (12), 6 states have call predecessors, (12), 6 states have call successors, (12) [2024-09-15 18:59:45,494 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:59:45,494 INFO L93 Difference]: Finished difference Result 1186 states and 1894 transitions. [2024-09-15 18:59:45,495 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 18 states. [2024-09-15 18:59:45,495 INFO L78 Accepts]: Start accepts. Automaton has has 19 states, 18 states have (on average 2.2222222222222223) internal successors, (40), 16 states have internal predecessors, (40), 6 states have call successors, (14), 2 states have call predecessors, (14), 2 states have return successors, (12), 6 states have call predecessors, (12), 6 states have call successors, (12) Word has length 90 [2024-09-15 18:59:45,495 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:59:45,503 INFO L225 Difference]: With dead ends: 1186 [2024-09-15 18:59:45,503 INFO L226 Difference]: Without dead ends: 1184 [2024-09-15 18:59:45,504 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 126 GetRequests, 94 SyntacticMatches, 0 SemanticMatches, 32 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 207 ImplicationChecksByTransitivity, 1.9s TimeCoverageRelationStatistics Valid=147, Invalid=975, Unknown=0, NotChecked=0, Total=1122 [2024-09-15 18:59:45,504 INFO L434 NwaCegarLoop]: 44 mSDtfsCounter, 55 mSDsluCounter, 415 mSDsCounter, 0 mSdLazyCounter, 516 mSolverCounterSat, 36 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 72 SdHoareTripleChecker+Valid, 459 SdHoareTripleChecker+Invalid, 552 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 36 IncrementalHoareTripleChecker+Valid, 516 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2024-09-15 18:59:45,505 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [72 Valid, 459 Invalid, 552 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [36 Valid, 516 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2024-09-15 18:59:45,506 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1184 states. [2024-09-15 18:59:46,558 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1184 to 1166. [2024-09-15 18:59:46,560 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1166 states, 560 states have (on average 1.3178571428571428) internal successors, (738), 561 states have internal predecessors, (738), 569 states have call successors, (569), 37 states have call predecessors, (569), 36 states have return successors, (567), 567 states have call predecessors, (567), 567 states have call successors, (567) [2024-09-15 18:59:46,565 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1166 states to 1166 states and 1874 transitions. [2024-09-15 18:59:46,568 INFO L78 Accepts]: Start accepts. Automaton has 1166 states and 1874 transitions. Word has length 90 [2024-09-15 18:59:46,568 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:59:46,568 INFO L474 AbstractCegarLoop]: Abstraction has 1166 states and 1874 transitions. [2024-09-15 18:59:46,569 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 19 states, 18 states have (on average 2.2222222222222223) internal successors, (40), 16 states have internal predecessors, (40), 6 states have call successors, (14), 2 states have call predecessors, (14), 2 states have return successors, (12), 6 states have call predecessors, (12), 6 states have call successors, (12) [2024-09-15 18:59:46,569 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:59:46,569 INFO L276 IsEmpty]: Start isEmpty. Operand 1166 states and 1874 transitions. [2024-09-15 18:59:46,571 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 97 [2024-09-15 18:59:46,571 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:59:46,571 INFO L216 NwaCegarLoop]: trace histogram [13, 12, 12, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:59:46,579 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (18)] Forceful destruction successful, exit code 0 [2024-09-15 18:59:46,771 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable20,18 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:59:46,772 INFO L399 AbstractCegarLoop]: === Iteration 22 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:59:46,772 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:59:46,772 INFO L85 PathProgramCache]: Analyzing trace with hash -1093787319, now seen corresponding path program 2 times [2024-09-15 18:59:46,772 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:59:46,772 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1185022224] [2024-09-15 18:59:46,773 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:59:46,773 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:59:46,798 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-15 18:59:46,799 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1780144268] [2024-09-15 18:59:46,802 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-15 18:59:46,802 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:59:46,802 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:59:46,804 INFO L229 MonitoredProcess]: Starting monitored process 19 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:59:46,805 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (19)] Waiting until timeout for monitored process [2024-09-15 18:59:46,865 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-15 18:59:46,865 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-15 18:59:46,866 INFO L262 TraceCheckSpWp]: Trace formula consists of 226 conjuncts, 59 conjuncts are in the unsatisfiable core [2024-09-15 18:59:46,868 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:59:47,592 INFO L134 CoverageAnalysis]: Checked inductivity of 314 backedges. 24 proven. 25 refuted. 0 times theorem prover too weak. 265 trivial. 0 not checked. [2024-09-15 18:59:47,592 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:59:50,206 INFO L134 CoverageAnalysis]: Checked inductivity of 314 backedges. 24 proven. 22 refuted. 0 times theorem prover too weak. 268 trivial. 0 not checked. [2024-09-15 18:59:50,206 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:59:50,206 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1185022224] [2024-09-15 18:59:50,206 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-15 18:59:50,206 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1780144268] [2024-09-15 18:59:50,206 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1780144268] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 18:59:50,206 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-09-15 18:59:50,207 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [16, 13] total 27 [2024-09-15 18:59:50,207 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1096434965] [2024-09-15 18:59:50,207 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-09-15 18:59:50,207 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 27 states [2024-09-15 18:59:50,207 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:59:50,208 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 27 interpolants. [2024-09-15 18:59:50,208 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=102, Invalid=600, Unknown=0, NotChecked=0, Total=702 [2024-09-15 18:59:50,208 INFO L87 Difference]: Start difference. First operand 1166 states and 1874 transitions. Second operand has 27 states, 25 states have (on average 2.0) internal successors, (50), 24 states have internal predecessors, (50), 10 states have call successors, (31), 3 states have call predecessors, (31), 2 states have return successors, (29), 8 states have call predecessors, (29), 8 states have call successors, (29) [2024-09-15 19:00:00,599 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 19:00:00,600 INFO L93 Difference]: Finished difference Result 1381 states and 2196 transitions. [2024-09-15 19:00:00,600 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 58 states. [2024-09-15 19:00:00,601 INFO L78 Accepts]: Start accepts. Automaton has has 27 states, 25 states have (on average 2.0) internal successors, (50), 24 states have internal predecessors, (50), 10 states have call successors, (31), 3 states have call predecessors, (31), 2 states have return successors, (29), 8 states have call predecessors, (29), 8 states have call successors, (29) Word has length 96 [2024-09-15 19:00:00,601 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 19:00:00,608 INFO L225 Difference]: With dead ends: 1381 [2024-09-15 19:00:00,608 INFO L226 Difference]: Without dead ends: 1373 [2024-09-15 19:00:00,610 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 240 GetRequests, 166 SyntacticMatches, 0 SemanticMatches, 74 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1377 ImplicationChecksByTransitivity, 8.1s TimeCoverageRelationStatistics Valid=1128, Invalid=4572, Unknown=0, NotChecked=0, Total=5700 [2024-09-15 19:00:00,610 INFO L434 NwaCegarLoop]: 62 mSDtfsCounter, 232 mSDsluCounter, 703 mSDsCounter, 0 mSdLazyCounter, 1041 mSolverCounterSat, 253 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 2.7s Time, 0 mProtectedPredicate, 0 mProtectedAction, 232 SdHoareTripleChecker+Valid, 765 SdHoareTripleChecker+Invalid, 1294 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 253 IncrementalHoareTripleChecker+Valid, 1041 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 2.8s IncrementalHoareTripleChecker+Time [2024-09-15 19:00:00,610 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [232 Valid, 765 Invalid, 1294 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [253 Valid, 1041 Invalid, 0 Unknown, 0 Unchecked, 2.8s Time] [2024-09-15 19:00:00,614 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1373 states. [2024-09-15 19:00:01,972 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1373 to 1344. [2024-09-15 19:00:01,974 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1344 states, 653 states have (on average 1.3169984686064318) internal successors, (860), 654 states have internal predecessors, (860), 649 states have call successors, (649), 42 states have call predecessors, (649), 41 states have return successors, (647), 647 states have call predecessors, (647), 647 states have call successors, (647) [2024-09-15 19:00:01,979 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1344 states to 1344 states and 2156 transitions. [2024-09-15 19:00:01,982 INFO L78 Accepts]: Start accepts. Automaton has 1344 states and 2156 transitions. Word has length 96 [2024-09-15 19:00:01,983 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 19:00:01,983 INFO L474 AbstractCegarLoop]: Abstraction has 1344 states and 2156 transitions. [2024-09-15 19:00:01,983 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 27 states, 25 states have (on average 2.0) internal successors, (50), 24 states have internal predecessors, (50), 10 states have call successors, (31), 3 states have call predecessors, (31), 2 states have return successors, (29), 8 states have call predecessors, (29), 8 states have call successors, (29) [2024-09-15 19:00:01,983 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 19:00:01,983 INFO L276 IsEmpty]: Start isEmpty. Operand 1344 states and 2156 transitions. [2024-09-15 19:00:01,985 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 96 [2024-09-15 19:00:01,985 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 19:00:01,985 INFO L216 NwaCegarLoop]: trace histogram [10, 9, 9, 6, 4, 4, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 19:00:02,000 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (19)] Forceful destruction successful, exit code 0 [2024-09-15 19:00:02,186 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 19 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable21 [2024-09-15 19:00:02,186 INFO L399 AbstractCegarLoop]: === Iteration 23 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 19:00:02,186 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 19:00:02,186 INFO L85 PathProgramCache]: Analyzing trace with hash -187092685, now seen corresponding path program 6 times [2024-09-15 19:00:02,186 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 19:00:02,186 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [972289909] [2024-09-15 19:00:02,186 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 19:00:02,187 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 19:00:02,206 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-15 19:00:02,208 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [497476833] [2024-09-15 19:00:02,208 INFO L93 rtionOrderModulation]: Changing assertion order to MIX_INSIDE_OUTSIDE [2024-09-15 19:00:02,208 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 19:00:02,208 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 19:00:02,212 INFO L229 MonitoredProcess]: Starting monitored process 20 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 19:00:02,214 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (20)] Waiting until timeout for monitored process [2024-09-15 19:00:02,384 INFO L228 tOrderPrioritization]: Assert order MIX_INSIDE_OUTSIDE issued 5 check-sat command(s) [2024-09-15 19:00:02,384 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-15 19:00:02,385 INFO L262 TraceCheckSpWp]: Trace formula consists of 181 conjuncts, 69 conjuncts are in the unsatisfiable core [2024-09-15 19:00:02,387 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 19:00:03,812 INFO L134 CoverageAnalysis]: Checked inductivity of 224 backedges. 91 proven. 35 refuted. 0 times theorem prover too weak. 98 trivial. 0 not checked. [2024-09-15 19:00:03,812 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 19:00:09,398 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 19:00:09,398 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [972289909] [2024-09-15 19:00:09,398 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-15 19:00:09,398 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [497476833] [2024-09-15 19:00:09,399 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [497476833] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 19:00:09,399 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-15 19:00:09,399 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [22] total 22 [2024-09-15 19:00:09,399 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1260047203] [2024-09-15 19:00:09,399 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-15 19:00:09,399 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 22 states [2024-09-15 19:00:09,399 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 19:00:09,400 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 22 interpolants. [2024-09-15 19:00:09,400 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=172, Invalid=819, Unknown=1, NotChecked=0, Total=992 [2024-09-15 19:00:09,400 INFO L87 Difference]: Start difference. First operand 1344 states and 2156 transitions. Second operand has 22 states, 19 states have (on average 2.210526315789474) internal successors, (42), 19 states have internal predecessors, (42), 9 states have call successors, (14), 2 states have call predecessors, (14), 3 states have return successors, (12), 7 states have call predecessors, (12), 8 states have call successors, (12) [2024-09-15 19:00:12,221 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 19:00:12,222 INFO L93 Difference]: Finished difference Result 1474 states and 2358 transitions. [2024-09-15 19:00:12,222 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 26 states. [2024-09-15 19:00:12,222 INFO L78 Accepts]: Start accepts. Automaton has has 22 states, 19 states have (on average 2.210526315789474) internal successors, (42), 19 states have internal predecessors, (42), 9 states have call successors, (14), 2 states have call predecessors, (14), 3 states have return successors, (12), 7 states have call predecessors, (12), 8 states have call successors, (12) Word has length 95 [2024-09-15 19:00:12,222 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 19:00:12,230 INFO L225 Difference]: With dead ends: 1474 [2024-09-15 19:00:12,230 INFO L226 Difference]: Without dead ends: 1472 [2024-09-15 19:00:12,231 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 137 GetRequests, 94 SyntacticMatches, 0 SemanticMatches, 43 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 409 ImplicationChecksByTransitivity, 6.7s TimeCoverageRelationStatistics Valid=386, Invalid=1593, Unknown=1, NotChecked=0, Total=1980 [2024-09-15 19:00:12,231 INFO L434 NwaCegarLoop]: 40 mSDtfsCounter, 68 mSDsluCounter, 323 mSDsCounter, 0 mSdLazyCounter, 510 mSolverCounterSat, 51 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.5s Time, 0 mProtectedPredicate, 0 mProtectedAction, 76 SdHoareTripleChecker+Valid, 363 SdHoareTripleChecker+Invalid, 561 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 51 IncrementalHoareTripleChecker+Valid, 510 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.5s IncrementalHoareTripleChecker+Time [2024-09-15 19:00:12,231 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [76 Valid, 363 Invalid, 561 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [51 Valid, 510 Invalid, 0 Unknown, 0 Unchecked, 0.5s Time] [2024-09-15 19:00:12,232 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1472 states. [2024-09-15 19:00:13,592 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1472 to 1356. [2024-09-15 19:00:13,594 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1356 states, 662 states have (on average 1.3126888217522659) internal successors, (869), 664 states have internal predecessors, (869), 651 states have call successors, (651), 43 states have call predecessors, (651), 42 states have return successors, (649), 648 states have call predecessors, (649), 649 states have call successors, (649) [2024-09-15 19:00:13,597 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1356 states to 1356 states and 2169 transitions. [2024-09-15 19:00:13,600 INFO L78 Accepts]: Start accepts. Automaton has 1356 states and 2169 transitions. Word has length 95 [2024-09-15 19:00:13,600 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 19:00:13,600 INFO L474 AbstractCegarLoop]: Abstraction has 1356 states and 2169 transitions. [2024-09-15 19:00:13,601 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 22 states, 19 states have (on average 2.210526315789474) internal successors, (42), 19 states have internal predecessors, (42), 9 states have call successors, (14), 2 states have call predecessors, (14), 3 states have return successors, (12), 7 states have call predecessors, (12), 8 states have call successors, (12) [2024-09-15 19:00:13,601 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 19:00:13,601 INFO L276 IsEmpty]: Start isEmpty. Operand 1356 states and 2169 transitions. [2024-09-15 19:00:13,603 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 100 [2024-09-15 19:00:13,603 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 19:00:13,603 INFO L216 NwaCegarLoop]: trace histogram [13, 12, 12, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 19:00:13,611 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (20)] Ended with exit code 0 [2024-09-15 19:00:13,803 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 20 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable22 [2024-09-15 19:00:13,804 INFO L399 AbstractCegarLoop]: === Iteration 24 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 19:00:13,804 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 19:00:13,804 INFO L85 PathProgramCache]: Analyzing trace with hash 1017703828, now seen corresponding path program 3 times [2024-09-15 19:00:13,804 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 19:00:13,804 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1817762805] [2024-09-15 19:00:13,804 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 19:00:13,805 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 19:00:13,819 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-15 19:00:13,820 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1528257931] [2024-09-15 19:00:13,820 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-09-15 19:00:13,821 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 19:00:13,821 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 19:00:13,822 INFO L229 MonitoredProcess]: Starting monitored process 21 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 19:00:13,825 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (21)] Waiting until timeout for monitored process [2024-09-15 19:00:13,920 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 5 check-sat command(s) [2024-09-15 19:00:13,920 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-15 19:00:13,921 INFO L262 TraceCheckSpWp]: Trace formula consists of 178 conjuncts, 64 conjuncts are in the unsatisfiable core [2024-09-15 19:00:13,923 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 19:00:14,727 INFO L134 CoverageAnalysis]: Checked inductivity of 319 backedges. 24 proven. 30 refuted. 0 times theorem prover too weak. 265 trivial. 0 not checked. [2024-09-15 19:00:14,728 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 19:00:18,250 INFO L134 CoverageAnalysis]: Checked inductivity of 319 backedges. 24 proven. 27 refuted. 0 times theorem prover too weak. 268 trivial. 0 not checked. [2024-09-15 19:00:18,250 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 19:00:18,251 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1817762805] [2024-09-15 19:00:18,251 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-15 19:00:18,251 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1528257931] [2024-09-15 19:00:18,251 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1528257931] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 19:00:18,251 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-09-15 19:00:18,251 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [17, 15] total 30 [2024-09-15 19:00:18,251 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1540745112] [2024-09-15 19:00:18,251 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-09-15 19:00:18,252 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 30 states [2024-09-15 19:00:18,252 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 19:00:18,252 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 30 interpolants. [2024-09-15 19:00:18,252 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=135, Invalid=735, Unknown=0, NotChecked=0, Total=870 [2024-09-15 19:00:18,253 INFO L87 Difference]: Start difference. First operand 1356 states and 2169 transitions. Second operand has 30 states, 28 states have (on average 2.0) internal successors, (56), 27 states have internal predecessors, (56), 10 states have call successors, (31), 3 states have call predecessors, (31), 2 states have return successors, (29), 8 states have call predecessors, (29), 8 states have call successors, (29) [2024-09-15 19:00:36,423 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 19:00:36,423 INFO L93 Difference]: Finished difference Result 2168 states and 3461 transitions. [2024-09-15 19:00:36,423 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 77 states. [2024-09-15 19:00:36,423 INFO L78 Accepts]: Start accepts. Automaton has has 30 states, 28 states have (on average 2.0) internal successors, (56), 27 states have internal predecessors, (56), 10 states have call successors, (31), 3 states have call predecessors, (31), 2 states have return successors, (29), 8 states have call predecessors, (29), 8 states have call successors, (29) Word has length 99 [2024-09-15 19:00:36,424 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 19:00:36,433 INFO L225 Difference]: With dead ends: 2168 [2024-09-15 19:00:36,433 INFO L226 Difference]: Without dead ends: 1621 [2024-09-15 19:00:36,439 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 265 GetRequests, 169 SyntacticMatches, 0 SemanticMatches, 96 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2737 ImplicationChecksByTransitivity, 14.8s TimeCoverageRelationStatistics Valid=1791, Invalid=7715, Unknown=0, NotChecked=0, Total=9506 [2024-09-15 19:00:36,439 INFO L434 NwaCegarLoop]: 41 mSDtfsCounter, 255 mSDsluCounter, 720 mSDsCounter, 0 mSdLazyCounter, 1038 mSolverCounterSat, 295 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 3.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 255 SdHoareTripleChecker+Valid, 761 SdHoareTripleChecker+Invalid, 1333 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 295 IncrementalHoareTripleChecker+Valid, 1038 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 3.5s IncrementalHoareTripleChecker+Time [2024-09-15 19:00:36,440 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [255 Valid, 761 Invalid, 1333 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [295 Valid, 1038 Invalid, 0 Unknown, 0 Unchecked, 3.5s Time] [2024-09-15 19:00:36,441 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1621 states. [2024-09-15 19:00:38,150 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1621 to 1481. [2024-09-15 19:00:38,152 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1481 states, 723 states have (on average 1.3084370677731674) internal successors, (946), 725 states have internal predecessors, (946), 711 states have call successors, (711), 47 states have call predecessors, (711), 46 states have return successors, (709), 708 states have call predecessors, (709), 709 states have call successors, (709) [2024-09-15 19:00:38,156 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1481 states to 1481 states and 2366 transitions. [2024-09-15 19:00:38,160 INFO L78 Accepts]: Start accepts. Automaton has 1481 states and 2366 transitions. Word has length 99 [2024-09-15 19:00:38,160 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 19:00:38,160 INFO L474 AbstractCegarLoop]: Abstraction has 1481 states and 2366 transitions. [2024-09-15 19:00:38,160 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 30 states, 28 states have (on average 2.0) internal successors, (56), 27 states have internal predecessors, (56), 10 states have call successors, (31), 3 states have call predecessors, (31), 2 states have return successors, (29), 8 states have call predecessors, (29), 8 states have call successors, (29) [2024-09-15 19:00:38,161 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 19:00:38,161 INFO L276 IsEmpty]: Start isEmpty. Operand 1481 states and 2366 transitions. [2024-09-15 19:00:38,163 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 105 [2024-09-15 19:00:38,163 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 19:00:38,163 INFO L216 NwaCegarLoop]: trace histogram [13, 12, 12, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 19:00:38,170 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (21)] Forceful destruction successful, exit code 0 [2024-09-15 19:00:38,363 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 21 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable23 [2024-09-15 19:00:38,363 INFO L399 AbstractCegarLoop]: === Iteration 25 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 19:00:38,364 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 19:00:38,364 INFO L85 PathProgramCache]: Analyzing trace with hash -396138734, now seen corresponding path program 4 times [2024-09-15 19:00:38,364 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 19:00:38,364 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1976933394] [2024-09-15 19:00:38,364 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 19:00:38,364 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 19:00:38,378 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-15 19:00:38,383 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [314709294] [2024-09-15 19:00:38,383 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2024-09-15 19:00:38,383 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 19:00:38,383 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 19:00:38,386 INFO L229 MonitoredProcess]: Starting monitored process 22 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 19:00:38,389 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (22)] Waiting until timeout for monitored process [2024-09-15 19:00:38,448 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2024-09-15 19:00:38,448 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-15 19:00:38,450 INFO L262 TraceCheckSpWp]: Trace formula consists of 229 conjuncts, 70 conjuncts are in the unsatisfiable core [2024-09-15 19:00:38,452 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 19:00:40,706 INFO L134 CoverageAnalysis]: Checked inductivity of 330 backedges. 52 proven. 46 refuted. 0 times theorem prover too weak. 232 trivial. 0 not checked. [2024-09-15 19:00:40,706 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 19:00:49,946 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 19:00:49,946 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1976933394] [2024-09-15 19:00:49,946 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-15 19:00:49,946 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [314709294] [2024-09-15 19:00:49,946 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [314709294] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 19:00:49,946 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-15 19:00:49,946 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [23] total 23 [2024-09-15 19:00:49,946 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [553431213] [2024-09-15 19:00:49,946 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-15 19:00:49,947 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 23 states [2024-09-15 19:00:49,947 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 19:00:49,948 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 23 interpolants. [2024-09-15 19:00:49,948 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=159, Invalid=1173, Unknown=0, NotChecked=0, Total=1332 [2024-09-15 19:00:49,948 INFO L87 Difference]: Start difference. First operand 1481 states and 2366 transitions. Second operand has 23 states, 22 states have (on average 1.9090909090909092) internal successors, (42), 21 states have internal predecessors, (42), 7 states have call successors, (17), 2 states have call predecessors, (17), 3 states have return successors, (15), 6 states have call predecessors, (15), 6 states have call successors, (15) [2024-09-15 19:00:53,810 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 19:00:53,810 INFO L93 Difference]: Finished difference Result 1613 states and 2569 transitions. [2024-09-15 19:00:53,811 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 23 states. [2024-09-15 19:00:53,811 INFO L78 Accepts]: Start accepts. Automaton has has 23 states, 22 states have (on average 1.9090909090909092) internal successors, (42), 21 states have internal predecessors, (42), 7 states have call successors, (17), 2 states have call predecessors, (17), 3 states have return successors, (15), 6 states have call predecessors, (15), 6 states have call successors, (15) Word has length 104 [2024-09-15 19:00:53,811 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 19:00:53,818 INFO L225 Difference]: With dead ends: 1613 [2024-09-15 19:00:53,818 INFO L226 Difference]: Without dead ends: 1606 [2024-09-15 19:00:53,819 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 178 GetRequests, 132 SyntacticMatches, 0 SemanticMatches, 46 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 516 ImplicationChecksByTransitivity, 9.7s TimeCoverageRelationStatistics Valid=286, Invalid=1970, Unknown=0, NotChecked=0, Total=2256 [2024-09-15 19:00:53,819 INFO L434 NwaCegarLoop]: 49 mSDtfsCounter, 84 mSDsluCounter, 662 mSDsCounter, 0 mSdLazyCounter, 1003 mSolverCounterSat, 50 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.8s Time, 0 mProtectedPredicate, 0 mProtectedAction, 100 SdHoareTripleChecker+Valid, 711 SdHoareTripleChecker+Invalid, 1053 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 50 IncrementalHoareTripleChecker+Valid, 1003 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.9s IncrementalHoareTripleChecker+Time [2024-09-15 19:00:53,820 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [100 Valid, 711 Invalid, 1053 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [50 Valid, 1003 Invalid, 0 Unknown, 0 Unchecked, 0.9s Time] [2024-09-15 19:00:53,821 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1606 states. [2024-09-15 19:00:55,630 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1606 to 1485. [2024-09-15 19:00:55,632 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1485 states, 726 states have (on average 1.3071625344352618) internal successors, (949), 728 states have internal predecessors, (949), 711 states have call successors, (711), 48 states have call predecessors, (711), 47 states have return successors, (709), 708 states have call predecessors, (709), 709 states have call successors, (709) [2024-09-15 19:00:55,637 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1485 states to 1485 states and 2369 transitions. [2024-09-15 19:00:55,639 INFO L78 Accepts]: Start accepts. Automaton has 1485 states and 2369 transitions. Word has length 104 [2024-09-15 19:00:55,640 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 19:00:55,640 INFO L474 AbstractCegarLoop]: Abstraction has 1485 states and 2369 transitions. [2024-09-15 19:00:55,640 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 23 states, 22 states have (on average 1.9090909090909092) internal successors, (42), 21 states have internal predecessors, (42), 7 states have call successors, (17), 2 states have call predecessors, (17), 3 states have return successors, (15), 6 states have call predecessors, (15), 6 states have call successors, (15) [2024-09-15 19:00:55,640 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 19:00:55,640 INFO L276 IsEmpty]: Start isEmpty. Operand 1485 states and 2369 transitions. [2024-09-15 19:00:55,642 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 110 [2024-09-15 19:00:55,643 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 19:00:55,643 INFO L216 NwaCegarLoop]: trace histogram [14, 13, 13, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 19:00:55,660 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (22)] Ended with exit code 0 [2024-09-15 19:00:55,843 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 22 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable24 [2024-09-15 19:00:55,843 INFO L399 AbstractCegarLoop]: === Iteration 26 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 19:00:55,844 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 19:00:55,844 INFO L85 PathProgramCache]: Analyzing trace with hash 920643019, now seen corresponding path program 2 times [2024-09-15 19:00:55,844 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 19:00:55,844 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [180179266] [2024-09-15 19:00:55,844 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 19:00:55,844 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 19:00:55,859 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-15 19:00:55,860 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [42409282] [2024-09-15 19:00:55,860 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-15 19:00:55,860 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 19:00:55,860 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 19:00:55,862 INFO L229 MonitoredProcess]: Starting monitored process 23 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 19:00:55,864 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (23)] Waiting until timeout for monitored process [2024-09-15 19:00:55,925 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-15 19:00:55,925 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-15 19:00:55,927 INFO L262 TraceCheckSpWp]: Trace formula consists of 265 conjuncts, 65 conjuncts are in the unsatisfiable core [2024-09-15 19:00:55,929 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 19:00:56,668 INFO L134 CoverageAnalysis]: Checked inductivity of 388 backedges. 52 proven. 56 refuted. 0 times theorem prover too weak. 280 trivial. 0 not checked. [2024-09-15 19:00:56,668 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 19:01:01,993 INFO L134 CoverageAnalysis]: Checked inductivity of 388 backedges. 56 proven. 52 refuted. 0 times theorem prover too weak. 280 trivial. 0 not checked. [2024-09-15 19:01:01,994 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 19:01:01,994 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [180179266] [2024-09-15 19:01:01,994 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-15 19:01:01,994 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [42409282] [2024-09-15 19:01:01,994 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [42409282] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 19:01:01,994 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-09-15 19:01:01,994 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [17, 18] total 30 [2024-09-15 19:01:01,994 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [737321957] [2024-09-15 19:01:01,994 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-09-15 19:01:01,995 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 30 states [2024-09-15 19:01:01,995 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 19:01:01,995 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 30 interpolants. [2024-09-15 19:01:01,996 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=148, Invalid=722, Unknown=0, NotChecked=0, Total=870 [2024-09-15 19:01:01,996 INFO L87 Difference]: Start difference. First operand 1485 states and 2369 transitions. Second operand has 30 states, 30 states have (on average 2.2) internal successors, (66), 29 states have internal predecessors, (66), 10 states have call successors, (32), 2 states have call predecessors, (32), 2 states have return successors, (29), 10 states have call predecessors, (29), 10 states have call successors, (29) [2024-09-15 19:01:21,517 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 19:01:21,517 INFO L93 Difference]: Finished difference Result 1742 states and 2731 transitions. [2024-09-15 19:01:21,518 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 60 states. [2024-09-15 19:01:21,518 INFO L78 Accepts]: Start accepts. Automaton has has 30 states, 30 states have (on average 2.2) internal successors, (66), 29 states have internal predecessors, (66), 10 states have call successors, (32), 2 states have call predecessors, (32), 2 states have return successors, (29), 10 states have call predecessors, (29), 10 states have call successors, (29) Word has length 109 [2024-09-15 19:01:21,518 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 19:01:21,529 INFO L225 Difference]: With dead ends: 1742 [2024-09-15 19:01:21,529 INFO L226 Difference]: Without dead ends: 1740 [2024-09-15 19:01:21,532 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 270 GetRequests, 187 SyntacticMatches, 2 SemanticMatches, 81 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1709 ImplicationChecksByTransitivity, 13.0s TimeCoverageRelationStatistics Valid=1349, Invalid=5457, Unknown=0, NotChecked=0, Total=6806 [2024-09-15 19:01:21,532 INFO L434 NwaCegarLoop]: 63 mSDtfsCounter, 180 mSDsluCounter, 749 mSDsCounter, 0 mSdLazyCounter, 1184 mSolverCounterSat, 217 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 5.5s Time, 0 mProtectedPredicate, 0 mProtectedAction, 180 SdHoareTripleChecker+Valid, 812 SdHoareTripleChecker+Invalid, 1401 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 217 IncrementalHoareTripleChecker+Valid, 1184 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 5.6s IncrementalHoareTripleChecker+Time [2024-09-15 19:01:21,532 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [180 Valid, 812 Invalid, 1401 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [217 Valid, 1184 Invalid, 0 Unknown, 0 Unchecked, 5.6s Time] [2024-09-15 19:01:21,534 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1740 states. [2024-09-15 19:01:24,002 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1740 to 1596. [2024-09-15 19:01:24,004 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1596 states, 809 states have (on average 1.2941903584672436) internal successors, (1047), 814 states have internal predecessors, (1047), 733 states have call successors, (733), 54 states have call predecessors, (733), 53 states have return successors, (731), 727 states have call predecessors, (731), 731 states have call successors, (731) [2024-09-15 19:01:24,011 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1596 states to 1596 states and 2511 transitions. [2024-09-15 19:01:24,014 INFO L78 Accepts]: Start accepts. Automaton has 1596 states and 2511 transitions. Word has length 109 [2024-09-15 19:01:24,014 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 19:01:24,014 INFO L474 AbstractCegarLoop]: Abstraction has 1596 states and 2511 transitions. [2024-09-15 19:01:24,014 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 30 states, 30 states have (on average 2.2) internal successors, (66), 29 states have internal predecessors, (66), 10 states have call successors, (32), 2 states have call predecessors, (32), 2 states have return successors, (29), 10 states have call predecessors, (29), 10 states have call successors, (29) [2024-09-15 19:01:24,015 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 19:01:24,015 INFO L276 IsEmpty]: Start isEmpty. Operand 1596 states and 2511 transitions. [2024-09-15 19:01:24,017 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 110 [2024-09-15 19:01:24,017 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 19:01:24,018 INFO L216 NwaCegarLoop]: trace histogram [13, 12, 12, 5, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 19:01:24,037 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (23)] Ended with exit code 0 [2024-09-15 19:01:24,218 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 23 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable25 [2024-09-15 19:01:24,218 INFO L399 AbstractCegarLoop]: === Iteration 27 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 19:01:24,219 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 19:01:24,219 INFO L85 PathProgramCache]: Analyzing trace with hash 2081223370, now seen corresponding path program 5 times [2024-09-15 19:01:24,219 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 19:01:24,219 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1614694384] [2024-09-15 19:01:24,219 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 19:01:24,219 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 19:01:24,251 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-15 19:01:24,252 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [2112983590] [2024-09-15 19:01:24,252 INFO L93 rtionOrderModulation]: Changing assertion order to INSIDE_LOOP_FIRST1 [2024-09-15 19:01:24,252 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 19:01:24,253 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 19:01:24,255 INFO L229 MonitoredProcess]: Starting monitored process 24 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 19:01:24,256 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (24)] Waiting until timeout for monitored process [2024-09-15 19:01:24,375 INFO L228 tOrderPrioritization]: Assert order INSIDE_LOOP_FIRST1 issued 7 check-sat command(s) [2024-09-15 19:01:24,375 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-15 19:01:24,377 INFO L262 TraceCheckSpWp]: Trace formula consists of 272 conjuncts, 105 conjuncts are in the unsatisfiable core [2024-09-15 19:01:24,380 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 19:01:25,334 INFO L134 CoverageAnalysis]: Checked inductivity of 346 backedges. 63 proven. 96 refuted. 0 times theorem prover too weak. 187 trivial. 0 not checked. [2024-09-15 19:01:25,334 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 19:01:28,883 INFO L134 CoverageAnalysis]: Checked inductivity of 346 backedges. 91 proven. 64 refuted. 0 times theorem prover too weak. 191 trivial. 0 not checked. [2024-09-15 19:01:28,883 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 19:01:28,883 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1614694384] [2024-09-15 19:01:28,883 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-15 19:01:28,883 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2112983590] [2024-09-15 19:01:28,883 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2112983590] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 19:01:28,883 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-09-15 19:01:28,883 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [20, 17] total 34 [2024-09-15 19:01:28,883 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [699395580] [2024-09-15 19:01:28,883 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-09-15 19:01:28,884 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 34 states [2024-09-15 19:01:28,884 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 19:01:28,884 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 34 interpolants. [2024-09-15 19:01:28,885 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=175, Invalid=947, Unknown=0, NotChecked=0, Total=1122 [2024-09-15 19:01:28,885 INFO L87 Difference]: Start difference. First operand 1596 states and 2511 transitions. Second operand has 34 states, 32 states have (on average 2.34375) internal successors, (75), 32 states have internal predecessors, (75), 10 states have call successors, (30), 3 states have call predecessors, (30), 2 states have return successors, (27), 9 states have call predecessors, (27), 8 states have call successors, (27) [2024-09-15 19:01:42,168 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 1.56s for a HTC check with result INVALID. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=true, quantifiers [] [2024-09-15 19:01:52,119 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=true, quantifiers [] [2024-09-15 19:01:56,207 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 19:01:56,207 INFO L93 Difference]: Finished difference Result 1788 states and 2773 transitions. [2024-09-15 19:01:56,208 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 63 states. [2024-09-15 19:01:56,208 INFO L78 Accepts]: Start accepts. Automaton has has 34 states, 32 states have (on average 2.34375) internal successors, (75), 32 states have internal predecessors, (75), 10 states have call successors, (30), 3 states have call predecessors, (30), 2 states have return successors, (27), 9 states have call predecessors, (27), 8 states have call successors, (27) Word has length 109 [2024-09-15 19:01:56,208 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 19:01:56,217 INFO L225 Difference]: With dead ends: 1788 [2024-09-15 19:01:56,217 INFO L226 Difference]: Without dead ends: 1784 [2024-09-15 19:01:56,219 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 295 GetRequests, 212 SyntacticMatches, 0 SemanticMatches, 83 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1639 ImplicationChecksByTransitivity, 16.7s TimeCoverageRelationStatistics Valid=1369, Invalid=5771, Unknown=0, NotChecked=0, Total=7140 [2024-09-15 19:01:56,220 INFO L434 NwaCegarLoop]: 59 mSDtfsCounter, 287 mSDsluCounter, 903 mSDsCounter, 0 mSdLazyCounter, 1425 mSolverCounterSat, 338 mSolverCounterUnsat, 1 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 9.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 287 SdHoareTripleChecker+Valid, 962 SdHoareTripleChecker+Invalid, 1764 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 338 IncrementalHoareTripleChecker+Valid, 1425 IncrementalHoareTripleChecker+Invalid, 1 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 9.2s IncrementalHoareTripleChecker+Time [2024-09-15 19:01:56,220 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [287 Valid, 962 Invalid, 1764 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [338 Valid, 1425 Invalid, 1 Unknown, 0 Unchecked, 9.2s Time] [2024-09-15 19:01:56,222 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1784 states. [2024-09-15 19:01:59,409 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1784 to 1695. [2024-09-15 19:01:59,411 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1695 states, 853 states have (on average 1.2919109026963658) internal successors, (1102), 858 states have internal predecessors, (1102), 781 states have call successors, (781), 61 states have call predecessors, (781), 60 states have return successors, (779), 775 states have call predecessors, (779), 779 states have call successors, (779) [2024-09-15 19:01:59,432 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1695 states to 1695 states and 2662 transitions. [2024-09-15 19:01:59,435 INFO L78 Accepts]: Start accepts. Automaton has 1695 states and 2662 transitions. Word has length 109 [2024-09-15 19:01:59,436 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 19:01:59,436 INFO L474 AbstractCegarLoop]: Abstraction has 1695 states and 2662 transitions. [2024-09-15 19:01:59,436 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 34 states, 32 states have (on average 2.34375) internal successors, (75), 32 states have internal predecessors, (75), 10 states have call successors, (30), 3 states have call predecessors, (30), 2 states have return successors, (27), 9 states have call predecessors, (27), 8 states have call successors, (27) [2024-09-15 19:01:59,437 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 19:01:59,437 INFO L276 IsEmpty]: Start isEmpty. Operand 1695 states and 2662 transitions. [2024-09-15 19:01:59,439 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 127 [2024-09-15 19:01:59,440 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 19:01:59,440 INFO L216 NwaCegarLoop]: trace histogram [17, 16, 16, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 19:01:59,449 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (24)] Ended with exit code 0 [2024-09-15 19:01:59,640 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 24 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable26 [2024-09-15 19:01:59,641 INFO L399 AbstractCegarLoop]: === Iteration 28 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 19:01:59,641 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 19:01:59,642 INFO L85 PathProgramCache]: Analyzing trace with hash 1733684403, now seen corresponding path program 6 times [2024-09-15 19:01:59,642 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 19:01:59,642 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1040655087] [2024-09-15 19:01:59,642 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 19:01:59,643 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 19:01:59,667 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-15 19:01:59,668 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [1067712804] [2024-09-15 19:01:59,668 INFO L93 rtionOrderModulation]: Changing assertion order to MIX_INSIDE_OUTSIDE [2024-09-15 19:01:59,668 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 19:01:59,668 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 19:01:59,670 INFO L229 MonitoredProcess]: Starting monitored process 25 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 19:01:59,670 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (25)] Waiting until timeout for monitored process [2024-09-15 19:01:59,801 INFO L228 tOrderPrioritization]: Assert order MIX_INSIDE_OUTSIDE issued 7 check-sat command(s) [2024-09-15 19:01:59,801 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-15 19:01:59,803 INFO L262 TraceCheckSpWp]: Trace formula consists of 252 conjuncts, 72 conjuncts are in the unsatisfiable core [2024-09-15 19:01:59,806 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 19:02:01,030 INFO L134 CoverageAnalysis]: Checked inductivity of 572 backedges. 95 proven. 67 refuted. 0 times theorem prover too weak. 410 trivial. 0 not checked. [2024-09-15 19:02:01,030 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 19:02:02,984 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 19:02:02,984 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1040655087] [2024-09-15 19:02:02,984 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-15 19:02:02,984 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1067712804] [2024-09-15 19:02:02,984 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1067712804] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 19:02:02,984 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-15 19:02:02,984 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [20] total 20 [2024-09-15 19:02:02,984 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1954574816] [2024-09-15 19:02:02,984 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-15 19:02:02,985 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 20 states [2024-09-15 19:02:02,985 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 19:02:02,985 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 20 interpolants. [2024-09-15 19:02:02,985 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=94, Invalid=662, Unknown=0, NotChecked=0, Total=756 [2024-09-15 19:02:02,985 INFO L87 Difference]: Start difference. First operand 1695 states and 2662 transitions. Second operand has 20 states, 19 states have (on average 2.0526315789473686) internal successors, (39), 18 states have internal predecessors, (39), 5 states have call successors, (15), 2 states have call predecessors, (15), 2 states have return successors, (14), 5 states have call predecessors, (14), 4 states have call successors, (14) [2024-09-15 19:02:08,221 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 19:02:08,221 INFO L93 Difference]: Finished difference Result 2006 states and 3144 transitions. [2024-09-15 19:02:08,222 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 20 states. [2024-09-15 19:02:08,222 INFO L78 Accepts]: Start accepts. Automaton has has 20 states, 19 states have (on average 2.0526315789473686) internal successors, (39), 18 states have internal predecessors, (39), 5 states have call successors, (15), 2 states have call predecessors, (15), 2 states have return successors, (14), 5 states have call predecessors, (14), 4 states have call successors, (14) Word has length 126 [2024-09-15 19:02:08,222 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 19:02:08,235 INFO L225 Difference]: With dead ends: 2006 [2024-09-15 19:02:08,235 INFO L226 Difference]: Without dead ends: 2003 [2024-09-15 19:02:08,236 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 148 GetRequests, 111 SyntacticMatches, 0 SemanticMatches, 37 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 250 ImplicationChecksByTransitivity, 2.4s TimeCoverageRelationStatistics Valid=185, Invalid=1297, Unknown=0, NotChecked=0, Total=1482 [2024-09-15 19:02:08,237 INFO L434 NwaCegarLoop]: 55 mSDtfsCounter, 64 mSDsluCounter, 611 mSDsCounter, 0 mSdLazyCounter, 745 mSolverCounterSat, 54 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.7s Time, 0 mProtectedPredicate, 0 mProtectedAction, 76 SdHoareTripleChecker+Valid, 666 SdHoareTripleChecker+Invalid, 799 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 54 IncrementalHoareTripleChecker+Valid, 745 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.8s IncrementalHoareTripleChecker+Time [2024-09-15 19:02:08,238 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [76 Valid, 666 Invalid, 799 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [54 Valid, 745 Invalid, 0 Unknown, 0 Unchecked, 0.8s Time] [2024-09-15 19:02:08,240 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 2003 states. [2024-09-15 19:02:11,936 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 2003 to 1874. [2024-09-15 19:02:11,938 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1874 states, 943 states have (on average 1.2916224814422057) internal successors, (1218), 948 states have internal predecessors, (1218), 861 states have call successors, (861), 70 states have call predecessors, (861), 69 states have return successors, (859), 855 states have call predecessors, (859), 859 states have call successors, (859) [2024-09-15 19:02:11,945 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1874 states to 1874 states and 2938 transitions. [2024-09-15 19:02:11,948 INFO L78 Accepts]: Start accepts. Automaton has 1874 states and 2938 transitions. Word has length 126 [2024-09-15 19:02:11,948 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 19:02:11,948 INFO L474 AbstractCegarLoop]: Abstraction has 1874 states and 2938 transitions. [2024-09-15 19:02:11,948 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 20 states, 19 states have (on average 2.0526315789473686) internal successors, (39), 18 states have internal predecessors, (39), 5 states have call successors, (15), 2 states have call predecessors, (15), 2 states have return successors, (14), 5 states have call predecessors, (14), 4 states have call successors, (14) [2024-09-15 19:02:11,949 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 19:02:11,949 INFO L276 IsEmpty]: Start isEmpty. Operand 1874 states and 2938 transitions. [2024-09-15 19:02:11,952 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 130 [2024-09-15 19:02:11,952 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 19:02:11,952 INFO L216 NwaCegarLoop]: trace histogram [18, 17, 17, 5, 5, 5, 5, 4, 4, 4, 4, 4, 4, 3, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 19:02:11,960 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (25)] Ended with exit code 0 [2024-09-15 19:02:12,156 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 25 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable27 [2024-09-15 19:02:12,157 INFO L399 AbstractCegarLoop]: === Iteration 29 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 19:02:12,157 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 19:02:12,157 INFO L85 PathProgramCache]: Analyzing trace with hash -1887231395, now seen corresponding path program 3 times [2024-09-15 19:02:12,157 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 19:02:12,157 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [550737310] [2024-09-15 19:02:12,157 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 19:02:12,157 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 19:02:12,173 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-15 19:02:12,174 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [276631246] [2024-09-15 19:02:12,175 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-09-15 19:02:12,175 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 19:02:12,175 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 19:02:12,177 INFO L229 MonitoredProcess]: Starting monitored process 26 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 19:02:12,179 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (26)] Waiting until timeout for monitored process [2024-09-15 19:02:12,245 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 5 check-sat command(s) [2024-09-15 19:02:12,245 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-15 19:02:12,247 INFO L262 TraceCheckSpWp]: Trace formula consists of 197 conjuncts, 53 conjuncts are in the unsatisfiable core [2024-09-15 19:02:12,249 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 19:02:13,662 INFO L134 CoverageAnalysis]: Checked inductivity of 645 backedges. 106 proven. 65 refuted. 0 times theorem prover too weak. 474 trivial. 0 not checked. [2024-09-15 19:02:13,662 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 19:02:16,869 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 19:02:16,869 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [550737310] [2024-09-15 19:02:16,869 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-15 19:02:16,869 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [276631246] [2024-09-15 19:02:16,869 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [276631246] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 19:02:16,869 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-15 19:02:16,870 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [18] total 18 [2024-09-15 19:02:16,870 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1763180666] [2024-09-15 19:02:16,870 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-15 19:02:16,870 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 18 states [2024-09-15 19:02:16,870 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 19:02:16,871 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 18 interpolants. [2024-09-15 19:02:16,871 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=170, Invalid=700, Unknown=0, NotChecked=0, Total=870 [2024-09-15 19:02:16,871 INFO L87 Difference]: Start difference. First operand 1874 states and 2938 transitions. Second operand has 18 states, 18 states have (on average 2.0) internal successors, (36), 15 states have internal predecessors, (36), 5 states have call successors, (14), 2 states have call predecessors, (14), 2 states have return successors, (13), 6 states have call predecessors, (13), 5 states have call successors, (13) [2024-09-15 19:02:21,297 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 19:02:21,297 INFO L93 Difference]: Finished difference Result 2059 states and 3224 transitions. [2024-09-15 19:02:21,298 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 16 states. [2024-09-15 19:02:21,298 INFO L78 Accepts]: Start accepts. Automaton has has 18 states, 18 states have (on average 2.0) internal successors, (36), 15 states have internal predecessors, (36), 5 states have call successors, (14), 2 states have call predecessors, (14), 2 states have return successors, (13), 6 states have call predecessors, (13), 5 states have call successors, (13) Word has length 129 [2024-09-15 19:02:21,298 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 19:02:21,308 INFO L225 Difference]: With dead ends: 2059 [2024-09-15 19:02:21,308 INFO L226 Difference]: Without dead ends: 2057 [2024-09-15 19:02:21,309 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 176 GetRequests, 143 SyntacticMatches, 2 SemanticMatches, 31 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 312 ImplicationChecksByTransitivity, 2.9s TimeCoverageRelationStatistics Valid=209, Invalid=847, Unknown=0, NotChecked=0, Total=1056 [2024-09-15 19:02:21,310 INFO L434 NwaCegarLoop]: 40 mSDtfsCounter, 37 mSDsluCounter, 342 mSDsCounter, 0 mSdLazyCounter, 478 mSolverCounterSat, 27 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 53 SdHoareTripleChecker+Valid, 382 SdHoareTripleChecker+Invalid, 505 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 27 IncrementalHoareTripleChecker+Valid, 478 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2024-09-15 19:02:21,310 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [53 Valid, 382 Invalid, 505 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [27 Valid, 478 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2024-09-15 19:02:21,311 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 2057 states. [2024-09-15 19:02:24,991 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 2057 to 2012. [2024-09-15 19:02:24,993 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 2012 states, 1013 states have (on average 1.293188548864758) internal successors, (1310), 1018 states have internal predecessors, (1310), 925 states have call successors, (925), 74 states have call predecessors, (925), 73 states have return successors, (923), 919 states have call predecessors, (923), 923 states have call successors, (923) [2024-09-15 19:02:24,997 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 2012 states to 2012 states and 3158 transitions. [2024-09-15 19:02:24,999 INFO L78 Accepts]: Start accepts. Automaton has 2012 states and 3158 transitions. Word has length 129 [2024-09-15 19:02:24,999 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 19:02:25,000 INFO L474 AbstractCegarLoop]: Abstraction has 2012 states and 3158 transitions. [2024-09-15 19:02:25,000 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 18 states, 18 states have (on average 2.0) internal successors, (36), 15 states have internal predecessors, (36), 5 states have call successors, (14), 2 states have call predecessors, (14), 2 states have return successors, (13), 6 states have call predecessors, (13), 5 states have call successors, (13) [2024-09-15 19:02:25,000 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 19:02:25,000 INFO L276 IsEmpty]: Start isEmpty. Operand 2012 states and 3158 transitions. [2024-09-15 19:02:25,003 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 130 [2024-09-15 19:02:25,003 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 19:02:25,003 INFO L216 NwaCegarLoop]: trace histogram [17, 16, 16, 5, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 19:02:25,021 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (26)] Forceful destruction successful, exit code 0 [2024-09-15 19:02:25,203 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 26 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable28 [2024-09-15 19:02:25,204 INFO L399 AbstractCegarLoop]: === Iteration 30 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 19:02:25,204 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 19:02:25,204 INFO L85 PathProgramCache]: Analyzing trace with hash 1329164778, now seen corresponding path program 7 times [2024-09-15 19:02:25,204 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 19:02:25,204 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1648635295] [2024-09-15 19:02:25,204 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 19:02:25,204 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 19:02:25,222 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-15 19:02:25,227 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [158898602] [2024-09-15 19:02:25,227 INFO L93 rtionOrderModulation]: Changing assertion order to NOT_INCREMENTALLY [2024-09-15 19:02:25,227 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 19:02:25,227 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 19:02:25,229 INFO L229 MonitoredProcess]: Starting monitored process 27 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 19:02:25,231 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (27)] Waiting until timeout for monitored process [2024-09-15 19:02:25,306 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 19:02:25,308 INFO L262 TraceCheckSpWp]: Trace formula consists of 300 conjuncts, 79 conjuncts are in the unsatisfiable core [2024-09-15 19:02:25,311 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 19:02:26,859 INFO L134 CoverageAnalysis]: Checked inductivity of 582 backedges. 70 proven. 76 refuted. 0 times theorem prover too weak. 436 trivial. 0 not checked. [2024-09-15 19:02:26,859 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 19:02:27,539 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 19:02:27,539 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1648635295] [2024-09-15 19:02:27,539 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-15 19:02:27,539 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [158898602] [2024-09-15 19:02:27,539 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [158898602] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 19:02:27,539 INFO L185 FreeRefinementEngine]: Found 0 perfect and 1 imperfect interpolant sequences. [2024-09-15 19:02:27,539 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [24] total 24 [2024-09-15 19:02:27,540 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [186309992] [2024-09-15 19:02:27,540 INFO L85 oduleStraightlineAll]: Using 1 imperfect interpolants to construct interpolant automaton [2024-09-15 19:02:27,540 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 24 states [2024-09-15 19:02:27,540 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 19:02:27,540 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 24 interpolants. [2024-09-15 19:02:27,540 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=95, Invalid=775, Unknown=0, NotChecked=0, Total=870 [2024-09-15 19:02:27,541 INFO L87 Difference]: Start difference. First operand 2012 states and 3158 transitions. Second operand has 24 states, 23 states have (on average 2.0434782608695654) internal successors, (47), 22 states have internal predecessors, (47), 8 states have call successors, (21), 2 states have call predecessors, (21), 3 states have return successors, (19), 7 states have call predecessors, (19), 7 states have call successors, (19) [2024-09-15 19:02:32,833 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 19:02:32,833 INFO L93 Difference]: Finished difference Result 2146 states and 3364 transitions. [2024-09-15 19:02:32,834 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 24 states. [2024-09-15 19:02:32,834 INFO L78 Accepts]: Start accepts. Automaton has has 24 states, 23 states have (on average 2.0434782608695654) internal successors, (47), 22 states have internal predecessors, (47), 8 states have call successors, (21), 2 states have call predecessors, (21), 3 states have return successors, (19), 7 states have call predecessors, (19), 7 states have call successors, (19) Word has length 129 [2024-09-15 19:02:32,834 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 19:02:32,843 INFO L225 Difference]: With dead ends: 2146 [2024-09-15 19:02:32,843 INFO L226 Difference]: Without dead ends: 2139 [2024-09-15 19:02:32,844 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 162 GetRequests, 122 SyntacticMatches, 0 SemanticMatches, 40 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 334 ImplicationChecksByTransitivity, 1.5s TimeCoverageRelationStatistics Valid=182, Invalid=1540, Unknown=0, NotChecked=0, Total=1722 [2024-09-15 19:02:32,845 INFO L434 NwaCegarLoop]: 50 mSDtfsCounter, 89 mSDsluCounter, 613 mSDsCounter, 0 mSdLazyCounter, 1061 mSolverCounterSat, 72 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.6s Time, 0 mProtectedPredicate, 0 mProtectedAction, 105 SdHoareTripleChecker+Valid, 663 SdHoareTripleChecker+Invalid, 1133 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 72 IncrementalHoareTripleChecker+Valid, 1061 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.7s IncrementalHoareTripleChecker+Time [2024-09-15 19:02:32,845 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [105 Valid, 663 Invalid, 1133 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [72 Valid, 1061 Invalid, 0 Unknown, 0 Unchecked, 0.7s Time] [2024-09-15 19:02:32,846 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 2139 states. [2024-09-15 19:02:37,026 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 2139 to 2124. [2024-09-15 19:02:37,028 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 2124 states, 1067 states have (on average 1.295220243673852) internal successors, (1382), 1072 states have internal predecessors, (1382), 981 states have call successors, (981), 76 states have call predecessors, (981), 75 states have return successors, (979), 975 states have call predecessors, (979), 979 states have call successors, (979) [2024-09-15 19:02:37,033 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 2124 states to 2124 states and 3342 transitions. [2024-09-15 19:02:37,034 INFO L78 Accepts]: Start accepts. Automaton has 2124 states and 3342 transitions. Word has length 129 [2024-09-15 19:02:37,035 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 19:02:37,035 INFO L474 AbstractCegarLoop]: Abstraction has 2124 states and 3342 transitions. [2024-09-15 19:02:37,035 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 24 states, 23 states have (on average 2.0434782608695654) internal successors, (47), 22 states have internal predecessors, (47), 8 states have call successors, (21), 2 states have call predecessors, (21), 3 states have return successors, (19), 7 states have call predecessors, (19), 7 states have call successors, (19) [2024-09-15 19:02:37,035 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 19:02:37,035 INFO L276 IsEmpty]: Start isEmpty. Operand 2124 states and 3342 transitions. [2024-09-15 19:02:37,038 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 138 [2024-09-15 19:02:37,038 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 19:02:37,038 INFO L216 NwaCegarLoop]: trace histogram [18, 17, 17, 6, 5, 5, 5, 5, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 19:02:37,055 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (27)] Ended with exit code 0 [2024-09-15 19:02:37,239 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable29,27 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 19:02:37,239 INFO L399 AbstractCegarLoop]: === Iteration 31 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 19:02:37,239 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 19:02:37,239 INFO L85 PathProgramCache]: Analyzing trace with hash 979073460, now seen corresponding path program 4 times [2024-09-15 19:02:37,239 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 19:02:37,239 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [474359416] [2024-09-15 19:02:37,240 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 19:02:37,240 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 19:02:37,260 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unknown [2024-09-15 19:02:37,261 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleZ3 [764929474] [2024-09-15 19:02:37,261 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2024-09-15 19:02:37,261 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 19:02:37,261 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 19:02:37,263 INFO L229 MonitoredProcess]: Starting monitored process 28 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 19:02:37,264 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (28)] Waiting until timeout for monitored process [2024-09-15 19:02:37,328 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2024-09-15 19:02:37,328 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-15 19:02:37,330 INFO L262 TraceCheckSpWp]: Trace formula consists of 296 conjuncts, 85 conjuncts are in the unsatisfiable core [2024-09-15 19:02:37,332 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 19:02:38,584 INFO L134 CoverageAnalysis]: Checked inductivity of 670 backedges. 48 proven. 125 refuted. 0 times theorem prover too weak. 497 trivial. 0 not checked. [2024-09-15 19:02:38,584 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 19:02:44,383 INFO L134 CoverageAnalysis]: Checked inductivity of 670 backedges. 63 proven. 107 refuted. 0 times theorem prover too weak. 500 trivial. 0 not checked. [2024-09-15 19:02:44,383 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 19:02:44,383 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [474359416] [2024-09-15 19:02:44,383 WARN L311 FreeRefinementEngine]: Interpolation failed due to KNOWN_IGNORE: SMT_SOLVER_CANNOT_INTERPOLATE_INPUT [2024-09-15 19:02:44,383 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [764929474] [2024-09-15 19:02:44,383 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [764929474] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 19:02:44,383 INFO L185 FreeRefinementEngine]: Found 0 perfect and 2 imperfect interpolant sequences. [2024-09-15 19:02:44,384 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [23, 20] total 40 [2024-09-15 19:02:44,384 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2073507244] [2024-09-15 19:02:44,384 INFO L85 oduleStraightlineAll]: Using 2 imperfect interpolants to construct interpolant automaton [2024-09-15 19:02:44,384 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 40 states [2024-09-15 19:02:44,384 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 19:02:44,385 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 40 interpolants. [2024-09-15 19:02:44,385 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=246, Invalid=1314, Unknown=0, NotChecked=0, Total=1560 [2024-09-15 19:02:44,385 INFO L87 Difference]: Start difference. First operand 2124 states and 3342 transitions. Second operand has 40 states, 40 states have (on average 2.175) internal successors, (87), 37 states have internal predecessors, (87), 13 states have call successors, (41), 3 states have call predecessors, (41), 3 states have return successors, (39), 13 states have call predecessors, (39), 13 states have call successors, (39) [2024-09-15 19:02:50,385 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 3.57s for a HTC check with result INVALID. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=true, quantifiers [] [2024-09-15 19:03:10,137 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=true, quantifiers []