./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/loops-crafted-1/in-de61.c --full-output --procedureinliner.inline.calls.to.implemented.procedures NEVER --traceabstraction.positions.where.we.compute.the.hoare.annotation All --witnessprinter.yaml.format.version 2.1 --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 04d6fb36 Calling Ultimate with: /root/.sdkman/candidates/java/current/bin/java -Dosgi.configuration.area=/storage/repos/certificate-witnesses-artifact/automizer/data/config -Xmx15G -Xms4m -jar /storage/repos/certificate-witnesses-artifact/automizer/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/certificate-witnesses-artifact/automizer/data -tc /storage/repos/certificate-witnesses-artifact/automizer/config/AutomizerReach.xml -i ../sv-benchmarks/c/loops-crafted-1/in-de61.c -s /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/certificate-witnesses-artifact/automizer --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 49b7efdcf8f4d6c873493bd370328870547a88b20d287c5de5342268b0966917 --procedureinliner.inline.calls.to.implemented.procedures NEVER --traceabstraction.positions.where.we.compute.the.hoare.annotation All --witnessprinter.yaml.format.version 2.1 --- Real Ultimate output --- This is Ultimate 0.2.4-tmp.dk.referee-eval-04d6fb3-m [2024-09-15 18:48:45,829 INFO L188 SettingsManager]: Resetting all preferences to default values... [2024-09-15 18:48:45,911 INFO L114 SettingsManager]: Loading settings from /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf [2024-09-15 18:48:45,916 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2024-09-15 18:48:45,918 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2024-09-15 18:48:45,951 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2024-09-15 18:48:45,953 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2024-09-15 18:48:45,954 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2024-09-15 18:48:45,955 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2024-09-15 18:48:45,955 INFO L153 SettingsManager]: * Use memory slicer=true [2024-09-15 18:48:45,955 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2024-09-15 18:48:45,955 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2024-09-15 18:48:45,956 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2024-09-15 18:48:45,956 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2024-09-15 18:48:45,957 INFO L153 SettingsManager]: * Use SBE=true [2024-09-15 18:48:45,957 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2024-09-15 18:48:45,958 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2024-09-15 18:48:45,958 INFO L153 SettingsManager]: * sizeof long=4 [2024-09-15 18:48:45,958 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2024-09-15 18:48:45,959 INFO L153 SettingsManager]: * sizeof POINTER=4 [2024-09-15 18:48:45,959 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2024-09-15 18:48:45,959 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2024-09-15 18:48:45,960 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2024-09-15 18:48:45,960 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2024-09-15 18:48:45,960 INFO L153 SettingsManager]: * Allow undefined functions=false [2024-09-15 18:48:45,961 INFO L153 SettingsManager]: * sizeof long double=12 [2024-09-15 18:48:45,961 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2024-09-15 18:48:45,961 INFO L153 SettingsManager]: * Use constant arrays=true [2024-09-15 18:48:45,962 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2024-09-15 18:48:45,962 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2024-09-15 18:48:45,962 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2024-09-15 18:48:45,963 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2024-09-15 18:48:45,963 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-09-15 18:48:45,963 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2024-09-15 18:48:45,964 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2024-09-15 18:48:45,964 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2024-09-15 18:48:45,964 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2024-09-15 18:48:45,964 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2024-09-15 18:48:45,965 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2024-09-15 18:48:45,965 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2024-09-15 18:48:45,965 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2024-09-15 18:48:45,968 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2024-09-15 18:48:45,968 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/certificate-witnesses-artifact/automizer/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/certificate-witnesses-artifact/automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 49b7efdcf8f4d6c873493bd370328870547a88b20d287c5de5342268b0966917 Applying setting for plugin de.uni_freiburg.informatik.ultimate.boogie.procedureinliner: Inline calls to implemented procedures -> NEVER Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: Positions where we compute the Hoare Annotation -> All Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: YAML Format version -> 2.1 [2024-09-15 18:48:46,316 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2024-09-15 18:48:46,341 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2024-09-15 18:48:46,345 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2024-09-15 18:48:46,346 INFO L270 PluginConnector]: Initializing CDTParser... [2024-09-15 18:48:46,347 INFO L274 PluginConnector]: CDTParser initialized [2024-09-15 18:48:46,348 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/certificate-witnesses-artifact/automizer/../sv-benchmarks/c/loops-crafted-1/in-de61.c [2024-09-15 18:48:47,998 INFO L533 CDTParser]: Created temporary CDT project at NULL [2024-09-15 18:48:48,218 INFO L384 CDTParser]: Found 1 translation units. [2024-09-15 18:48:48,218 INFO L180 CDTParser]: Scanning /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/loops-crafted-1/in-de61.c [2024-09-15 18:48:48,227 INFO L427 CDTParser]: About to delete temporary CDT project at /storage/repos/certificate-witnesses-artifact/automizer/data/09ca40422/0a63ac55daeb4cec9e4e3733412d12ad/FLAGddda6eb99 [2024-09-15 18:48:48,574 INFO L435 CDTParser]: Successfully deleted /storage/repos/certificate-witnesses-artifact/automizer/data/09ca40422/0a63ac55daeb4cec9e4e3733412d12ad [2024-09-15 18:48:48,577 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2024-09-15 18:48:48,578 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2024-09-15 18:48:48,579 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2024-09-15 18:48:48,579 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2024-09-15 18:48:48,585 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2024-09-15 18:48:48,586 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 15.09 06:48:48" (1/1) ... [2024-09-15 18:48:48,587 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@47dd75a2 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.09 06:48:48, skipping insertion in model container [2024-09-15 18:48:48,587 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 15.09 06:48:48" (1/1) ... [2024-09-15 18:48:48,605 INFO L175 MainTranslator]: Built tables and reachable declarations [2024-09-15 18:48:48,740 WARN L248 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/loops-crafted-1/in-de61.c[368,381] [2024-09-15 18:48:48,756 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-09-15 18:48:48,767 INFO L200 MainTranslator]: Completed pre-run [2024-09-15 18:48:48,779 WARN L248 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/loops-crafted-1/in-de61.c[368,381] [2024-09-15 18:48:48,791 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-09-15 18:48:48,816 INFO L204 MainTranslator]: Completed translation [2024-09-15 18:48:48,816 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.09 06:48:48 WrapperNode [2024-09-15 18:48:48,816 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2024-09-15 18:48:48,818 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2024-09-15 18:48:48,818 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2024-09-15 18:48:48,818 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2024-09-15 18:48:48,826 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.09 06:48:48" (1/1) ... [2024-09-15 18:48:48,834 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.09 06:48:48" (1/1) ... [2024-09-15 18:48:48,840 INFO L138 Inliner]: procedures = 13, calls = 8, calls flagged for inlining = 0, calls inlined = 0, statements flattened = 0 [2024-09-15 18:48:48,841 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2024-09-15 18:48:48,842 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2024-09-15 18:48:48,843 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2024-09-15 18:48:48,843 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2024-09-15 18:48:48,853 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.09 06:48:48" (1/1) ... [2024-09-15 18:48:48,854 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.09 06:48:48" (1/1) ... [2024-09-15 18:48:48,855 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.09 06:48:48" (1/1) ... [2024-09-15 18:48:48,874 INFO L175 MemorySlicer]: Split 2 memory accesses to 1 slices as follows [2]. 100 percent of accesses are in the largest equivalence class. The 2 initializations are split as follows [2]. The 0 writes are split as follows [0]. [2024-09-15 18:48:48,877 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.09 06:48:48" (1/1) ... [2024-09-15 18:48:48,877 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.09 06:48:48" (1/1) ... [2024-09-15 18:48:48,880 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.09 06:48:48" (1/1) ... [2024-09-15 18:48:48,886 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.09 06:48:48" (1/1) ... [2024-09-15 18:48:48,889 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.09 06:48:48" (1/1) ... [2024-09-15 18:48:48,894 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.09 06:48:48" (1/1) ... [2024-09-15 18:48:48,896 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2024-09-15 18:48:48,897 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2024-09-15 18:48:48,900 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2024-09-15 18:48:48,900 INFO L274 PluginConnector]: RCFGBuilder initialized [2024-09-15 18:48:48,901 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.09 06:48:48" (1/1) ... [2024-09-15 18:48:48,907 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-09-15 18:48:48,919 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:48:48,934 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2024-09-15 18:48:48,939 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2024-09-15 18:48:48,987 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2024-09-15 18:48:48,987 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.init [2024-09-15 18:48:48,987 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.init [2024-09-15 18:48:48,987 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2024-09-15 18:48:48,988 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2024-09-15 18:48:48,988 INFO L130 BoogieDeclarations]: Found specification of procedure main [2024-09-15 18:48:48,988 INFO L138 BoogieDeclarations]: Found implementation of procedure main [2024-09-15 18:48:48,989 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2024-09-15 18:48:48,989 INFO L130 BoogieDeclarations]: Found specification of procedure __VERIFIER_assert [2024-09-15 18:48:48,990 INFO L138 BoogieDeclarations]: Found implementation of procedure __VERIFIER_assert [2024-09-15 18:48:49,062 INFO L242 CfgBuilder]: Building ICFG [2024-09-15 18:48:49,064 INFO L268 CfgBuilder]: Building CFG for each procedure with an implementation [2024-09-15 18:48:49,267 INFO L? ?]: Removed 4 outVars from TransFormulas that were not future-live. [2024-09-15 18:48:49,267 INFO L291 CfgBuilder]: Performing block encoding [2024-09-15 18:48:49,291 INFO L313 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2024-09-15 18:48:49,292 INFO L318 CfgBuilder]: Removed 6 assume(true) statements. [2024-09-15 18:48:49,292 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 15.09 06:48:49 BoogieIcfgContainer [2024-09-15 18:48:49,292 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2024-09-15 18:48:49,294 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2024-09-15 18:48:49,296 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2024-09-15 18:48:49,299 INFO L274 PluginConnector]: TraceAbstraction initialized [2024-09-15 18:48:49,300 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 15.09 06:48:48" (1/3) ... [2024-09-15 18:48:49,301 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@6ff74b20 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 15.09 06:48:49, skipping insertion in model container [2024-09-15 18:48:49,301 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 15.09 06:48:48" (2/3) ... [2024-09-15 18:48:49,302 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@6ff74b20 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 15.09 06:48:49, skipping insertion in model container [2024-09-15 18:48:49,303 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 15.09 06:48:49" (3/3) ... [2024-09-15 18:48:49,304 INFO L112 eAbstractionObserver]: Analyzing ICFG in-de61.c [2024-09-15 18:48:49,326 INFO L209 ceAbstractionStarter]: Automizer settings: Hoare:All NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2024-09-15 18:48:49,327 INFO L149 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2024-09-15 18:48:49,385 INFO L335 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2024-09-15 18:48:49,391 INFO L336 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=All, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@4e022939, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2024-09-15 18:48:49,391 INFO L337 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2024-09-15 18:48:49,395 INFO L276 IsEmpty]: Start isEmpty. Operand has 23 states, 15 states have (on average 1.9333333333333333) internal successors, (29), 16 states have internal predecessors, (29), 3 states have call successors, (3), 3 states have call predecessors, (3), 3 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) [2024-09-15 18:48:49,401 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 17 [2024-09-15 18:48:49,401 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:48:49,402 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:48:49,402 INFO L399 AbstractCegarLoop]: === Iteration 1 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:48:49,407 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:48:49,407 INFO L85 PathProgramCache]: Analyzing trace with hash -294793433, now seen corresponding path program 1 times [2024-09-15 18:48:49,414 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:48:49,414 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1581999969] [2024-09-15 18:48:49,414 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:48:49,415 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:48:49,493 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:48:49,538 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-15 18:48:49,544 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:48:49,559 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-15 18:48:49,563 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:48:49,564 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1581999969] [2024-09-15 18:48:49,565 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1581999969] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-15 18:48:49,565 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-15 18:48:49,565 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2024-09-15 18:48:49,567 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1620511668] [2024-09-15 18:48:49,567 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-15 18:48:49,577 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2024-09-15 18:48:49,581 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:48:49,626 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2024-09-15 18:48:49,627 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-09-15 18:48:49,629 INFO L87 Difference]: Start difference. First operand has 23 states, 15 states have (on average 1.9333333333333333) internal successors, (29), 16 states have internal predecessors, (29), 3 states have call successors, (3), 3 states have call predecessors, (3), 3 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) Second operand has 2 states, 2 states have (on average 6.0) internal successors, (12), 2 states have internal predecessors, (12), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:48:49,652 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:48:49,652 INFO L93 Difference]: Finished difference Result 40 states and 63 transitions. [2024-09-15 18:48:49,654 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2024-09-15 18:48:49,655 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 6.0) internal successors, (12), 2 states have internal predecessors, (12), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 16 [2024-09-15 18:48:49,656 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:48:49,661 INFO L225 Difference]: With dead ends: 40 [2024-09-15 18:48:49,662 INFO L226 Difference]: Without dead ends: 17 [2024-09-15 18:48:49,665 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-09-15 18:48:49,670 INFO L434 NwaCegarLoop]: 26 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 2 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 26 SdHoareTripleChecker+Invalid, 2 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 2 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-15 18:48:49,672 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 26 Invalid, 2 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 2 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-15 18:48:49,688 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 17 states. [2024-09-15 18:48:49,702 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 17 to 17. [2024-09-15 18:48:49,703 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 17 states, 12 states have (on average 1.5) internal successors, (18), 12 states have internal predecessors, (18), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:48:49,704 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 17 states to 17 states and 22 transitions. [2024-09-15 18:48:49,707 INFO L78 Accepts]: Start accepts. Automaton has 17 states and 22 transitions. Word has length 16 [2024-09-15 18:48:49,708 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:48:49,708 INFO L474 AbstractCegarLoop]: Abstraction has 17 states and 22 transitions. [2024-09-15 18:48:49,709 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 6.0) internal successors, (12), 2 states have internal predecessors, (12), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:48:49,709 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:48:49,709 INFO L276 IsEmpty]: Start isEmpty. Operand 17 states and 22 transitions. [2024-09-15 18:48:49,710 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 17 [2024-09-15 18:48:49,711 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:48:49,711 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:48:49,712 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2024-09-15 18:48:49,712 INFO L399 AbstractCegarLoop]: === Iteration 2 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:48:49,712 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:48:49,713 INFO L85 PathProgramCache]: Analyzing trace with hash -951970017, now seen corresponding path program 1 times [2024-09-15 18:48:49,713 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:48:49,714 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1828004112] [2024-09-15 18:48:49,714 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:48:49,715 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:48:49,755 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:48:50,339 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-15 18:48:50,341 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:48:50,348 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-15 18:48:50,348 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:48:50,348 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1828004112] [2024-09-15 18:48:50,349 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1828004112] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-15 18:48:50,349 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-15 18:48:50,349 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2024-09-15 18:48:50,349 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [366130011] [2024-09-15 18:48:50,354 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-15 18:48:50,355 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2024-09-15 18:48:50,355 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:48:50,360 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2024-09-15 18:48:50,360 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=15, Invalid=41, Unknown=0, NotChecked=0, Total=56 [2024-09-15 18:48:50,360 INFO L87 Difference]: Start difference. First operand 17 states and 22 transitions. Second operand has 8 states, 8 states have (on average 1.5) internal successors, (12), 7 states have internal predecessors, (12), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:48:50,511 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:48:50,511 INFO L93 Difference]: Finished difference Result 37 states and 52 transitions. [2024-09-15 18:48:50,512 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2024-09-15 18:48:50,512 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 1.5) internal successors, (12), 7 states have internal predecessors, (12), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 16 [2024-09-15 18:48:50,512 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:48:50,513 INFO L225 Difference]: With dead ends: 37 [2024-09-15 18:48:50,513 INFO L226 Difference]: Without dead ends: 18 [2024-09-15 18:48:50,514 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 13 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 8 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 8 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=25, Invalid=65, Unknown=0, NotChecked=0, Total=90 [2024-09-15 18:48:50,515 INFO L434 NwaCegarLoop]: 12 mSDtfsCounter, 14 mSDsluCounter, 48 mSDsCounter, 0 mSdLazyCounter, 72 mSolverCounterSat, 5 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 14 SdHoareTripleChecker+Valid, 60 SdHoareTripleChecker+Invalid, 77 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 5 IncrementalHoareTripleChecker+Valid, 72 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-15 18:48:50,517 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [14 Valid, 60 Invalid, 77 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [5 Valid, 72 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-15 18:48:50,520 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 18 states. [2024-09-15 18:48:50,523 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 18 to 18. [2024-09-15 18:48:50,525 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 18 states, 13 states have (on average 1.4615384615384615) internal successors, (19), 13 states have internal predecessors, (19), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:48:50,526 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 18 states to 18 states and 23 transitions. [2024-09-15 18:48:50,526 INFO L78 Accepts]: Start accepts. Automaton has 18 states and 23 transitions. Word has length 16 [2024-09-15 18:48:50,527 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:48:50,527 INFO L474 AbstractCegarLoop]: Abstraction has 18 states and 23 transitions. [2024-09-15 18:48:50,527 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 1.5) internal successors, (12), 7 states have internal predecessors, (12), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:48:50,531 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:48:50,532 INFO L276 IsEmpty]: Start isEmpty. Operand 18 states and 23 transitions. [2024-09-15 18:48:50,533 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 18 [2024-09-15 18:48:50,533 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:48:50,534 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:48:50,534 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2024-09-15 18:48:50,534 INFO L399 AbstractCegarLoop]: === Iteration 3 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:48:50,535 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:48:50,536 INFO L85 PathProgramCache]: Analyzing trace with hash -713894869, now seen corresponding path program 1 times [2024-09-15 18:48:50,536 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:48:50,536 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [271584304] [2024-09-15 18:48:50,537 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:48:50,538 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:48:50,549 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:48:50,661 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-15 18:48:50,663 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:48:50,666 INFO L134 CoverageAnalysis]: Checked inductivity of 1 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-15 18:48:50,666 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:48:50,666 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [271584304] [2024-09-15 18:48:50,667 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [271584304] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 18:48:50,667 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1539215263] [2024-09-15 18:48:50,667 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:48:50,668 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:48:50,668 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:48:50,670 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:48:50,672 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2024-09-15 18:48:50,717 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:48:50,719 INFO L262 TraceCheckSpWp]: Trace formula consists of 54 conjuncts, 7 conjuncts are in the unsatisfiable core [2024-09-15 18:48:50,723 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:48:50,758 INFO L134 CoverageAnalysis]: Checked inductivity of 1 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-15 18:48:50,759 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:48:50,838 INFO L134 CoverageAnalysis]: Checked inductivity of 1 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-15 18:48:50,840 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1539215263] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 18:48:50,841 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-15 18:48:50,841 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [5, 5, 5] total 9 [2024-09-15 18:48:50,841 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [664178] [2024-09-15 18:48:50,842 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-15 18:48:50,843 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 9 states [2024-09-15 18:48:50,843 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:48:50,847 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 9 interpolants. [2024-09-15 18:48:50,847 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=21, Invalid=51, Unknown=0, NotChecked=0, Total=72 [2024-09-15 18:48:50,847 INFO L87 Difference]: Start difference. First operand 18 states and 23 transitions. Second operand has 9 states, 9 states have (on average 2.2222222222222223) internal successors, (20), 9 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:48:51,063 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:48:51,064 INFO L93 Difference]: Finished difference Result 59 states and 96 transitions. [2024-09-15 18:48:51,064 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2024-09-15 18:48:51,065 INFO L78 Accepts]: Start accepts. Automaton has has 9 states, 9 states have (on average 2.2222222222222223) internal successors, (20), 9 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 17 [2024-09-15 18:48:51,065 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:48:51,068 INFO L225 Difference]: With dead ends: 59 [2024-09-15 18:48:51,068 INFO L226 Difference]: Without dead ends: 50 [2024-09-15 18:48:51,069 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 45 GetRequests, 34 SyntacticMatches, 0 SemanticMatches, 11 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 13 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=48, Invalid=108, Unknown=0, NotChecked=0, Total=156 [2024-09-15 18:48:51,070 INFO L434 NwaCegarLoop]: 16 mSDtfsCounter, 48 mSDsluCounter, 62 mSDsCounter, 0 mSdLazyCounter, 77 mSolverCounterSat, 25 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 48 SdHoareTripleChecker+Valid, 78 SdHoareTripleChecker+Invalid, 102 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 25 IncrementalHoareTripleChecker+Valid, 77 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-15 18:48:51,070 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [48 Valid, 78 Invalid, 102 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [25 Valid, 77 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-15 18:48:51,071 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 50 states. [2024-09-15 18:48:51,079 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 50 to 41. [2024-09-15 18:48:51,080 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 41 states, 36 states have (on average 1.5277777777777777) internal successors, (55), 36 states have internal predecessors, (55), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:48:51,081 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 41 states to 41 states and 59 transitions. [2024-09-15 18:48:51,081 INFO L78 Accepts]: Start accepts. Automaton has 41 states and 59 transitions. Word has length 17 [2024-09-15 18:48:51,081 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:48:51,082 INFO L474 AbstractCegarLoop]: Abstraction has 41 states and 59 transitions. [2024-09-15 18:48:51,082 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 9 states, 9 states have (on average 2.2222222222222223) internal successors, (20), 9 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:48:51,082 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:48:51,083 INFO L276 IsEmpty]: Start isEmpty. Operand 41 states and 59 transitions. [2024-09-15 18:48:51,083 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 20 [2024-09-15 18:48:51,083 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:48:51,083 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:48:51,100 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Ended with exit code 0 [2024-09-15 18:48:51,287 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2,2 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:48:51,288 INFO L399 AbstractCegarLoop]: === Iteration 4 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:48:51,288 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:48:51,289 INFO L85 PathProgramCache]: Analyzing trace with hash 49422170, now seen corresponding path program 1 times [2024-09-15 18:48:51,289 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:48:51,289 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [974721023] [2024-09-15 18:48:51,289 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:48:51,289 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:48:51,305 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:48:51,429 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-15 18:48:51,431 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:48:51,434 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 3 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-15 18:48:51,435 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:48:51,436 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [974721023] [2024-09-15 18:48:51,436 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [974721023] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 18:48:51,436 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [204718683] [2024-09-15 18:48:51,439 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:48:51,439 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:48:51,439 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:48:51,441 INFO L229 MonitoredProcess]: Starting monitored process 3 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:48:51,443 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2024-09-15 18:48:51,483 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:48:51,484 INFO L262 TraceCheckSpWp]: Trace formula consists of 64 conjuncts, 11 conjuncts are in the unsatisfiable core [2024-09-15 18:48:51,485 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:48:51,508 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 3 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-15 18:48:51,508 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:48:51,599 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 3 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-15 18:48:51,599 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [204718683] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 18:48:51,601 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-15 18:48:51,602 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [7, 6, 6] total 11 [2024-09-15 18:48:51,602 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [155059536] [2024-09-15 18:48:51,602 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-15 18:48:51,602 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 11 states [2024-09-15 18:48:51,602 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:48:51,603 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 11 interpolants. [2024-09-15 18:48:51,603 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=27, Invalid=83, Unknown=0, NotChecked=0, Total=110 [2024-09-15 18:48:51,603 INFO L87 Difference]: Start difference. First operand 41 states and 59 transitions. Second operand has 11 states, 11 states have (on average 2.6363636363636362) internal successors, (29), 11 states have internal predecessors, (29), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:48:52,201 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:48:52,201 INFO L93 Difference]: Finished difference Result 108 states and 170 transitions. [2024-09-15 18:48:52,202 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 30 states. [2024-09-15 18:48:52,202 INFO L78 Accepts]: Start accepts. Automaton has has 11 states, 11 states have (on average 2.6363636363636362) internal successors, (29), 11 states have internal predecessors, (29), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 19 [2024-09-15 18:48:52,203 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:48:52,205 INFO L225 Difference]: With dead ends: 108 [2024-09-15 18:48:52,206 INFO L226 Difference]: Without dead ends: 87 [2024-09-15 18:48:52,207 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 66 GetRequests, 38 SyntacticMatches, 0 SemanticMatches, 28 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 166 ImplicationChecksByTransitivity, 0.4s TimeCoverageRelationStatistics Valid=205, Invalid=665, Unknown=0, NotChecked=0, Total=870 [2024-09-15 18:48:52,208 INFO L434 NwaCegarLoop]: 13 mSDtfsCounter, 86 mSDsluCounter, 88 mSDsCounter, 0 mSdLazyCounter, 174 mSolverCounterSat, 66 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 86 SdHoareTripleChecker+Valid, 101 SdHoareTripleChecker+Invalid, 240 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 66 IncrementalHoareTripleChecker+Valid, 174 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2024-09-15 18:48:52,208 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [86 Valid, 101 Invalid, 240 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [66 Valid, 174 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2024-09-15 18:48:52,211 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 87 states. [2024-09-15 18:48:52,230 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 87 to 56. [2024-09-15 18:48:52,231 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 56 states, 51 states have (on average 1.4509803921568627) internal successors, (74), 51 states have internal predecessors, (74), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:48:52,233 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 56 states to 56 states and 78 transitions. [2024-09-15 18:48:52,233 INFO L78 Accepts]: Start accepts. Automaton has 56 states and 78 transitions. Word has length 19 [2024-09-15 18:48:52,233 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:48:52,234 INFO L474 AbstractCegarLoop]: Abstraction has 56 states and 78 transitions. [2024-09-15 18:48:52,234 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 11 states, 11 states have (on average 2.6363636363636362) internal successors, (29), 11 states have internal predecessors, (29), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:48:52,234 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:48:52,234 INFO L276 IsEmpty]: Start isEmpty. Operand 56 states and 78 transitions. [2024-09-15 18:48:52,235 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 21 [2024-09-15 18:48:52,235 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:48:52,235 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:48:52,249 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Ended with exit code 0 [2024-09-15 18:48:52,436 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3,3 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:48:52,436 INFO L399 AbstractCegarLoop]: === Iteration 5 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:48:52,436 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:48:52,437 INFO L85 PathProgramCache]: Analyzing trace with hash -1324513826, now seen corresponding path program 1 times [2024-09-15 18:48:52,437 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:48:52,437 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1793909660] [2024-09-15 18:48:52,437 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:48:52,437 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:48:52,465 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:48:52,536 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-15 18:48:52,537 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:48:52,540 INFO L134 CoverageAnalysis]: Checked inductivity of 4 backedges. 1 proven. 1 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2024-09-15 18:48:52,540 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:48:52,541 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1793909660] [2024-09-15 18:48:52,541 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1793909660] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 18:48:52,541 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1212276744] [2024-09-15 18:48:52,542 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:48:52,542 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:48:52,542 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:48:52,544 INFO L229 MonitoredProcess]: Starting monitored process 4 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:48:52,546 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2024-09-15 18:48:52,591 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:48:52,595 INFO L262 TraceCheckSpWp]: Trace formula consists of 69 conjuncts, 14 conjuncts are in the unsatisfiable core [2024-09-15 18:48:52,596 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:48:52,722 INFO L134 CoverageAnalysis]: Checked inductivity of 4 backedges. 0 proven. 2 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2024-09-15 18:48:52,722 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:48:52,884 INFO L134 CoverageAnalysis]: Checked inductivity of 4 backedges. 0 proven. 2 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2024-09-15 18:48:52,885 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1212276744] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 18:48:52,885 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-15 18:48:52,885 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [4, 8, 8] total 15 [2024-09-15 18:48:52,885 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1504647479] [2024-09-15 18:48:52,886 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-15 18:48:52,886 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 15 states [2024-09-15 18:48:52,886 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:48:52,887 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 15 interpolants. [2024-09-15 18:48:52,887 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=39, Invalid=171, Unknown=0, NotChecked=0, Total=210 [2024-09-15 18:48:52,887 INFO L87 Difference]: Start difference. First operand 56 states and 78 transitions. Second operand has 15 states, 15 states have (on average 2.8666666666666667) internal successors, (43), 13 states have internal predecessors, (43), 4 states have call successors, (5), 4 states have call predecessors, (5), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:48:53,045 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:48:53,045 INFO L93 Difference]: Finished difference Result 90 states and 132 transitions. [2024-09-15 18:48:53,046 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2024-09-15 18:48:53,046 INFO L78 Accepts]: Start accepts. Automaton has has 15 states, 15 states have (on average 2.8666666666666667) internal successors, (43), 13 states have internal predecessors, (43), 4 states have call successors, (5), 4 states have call predecessors, (5), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 20 [2024-09-15 18:48:53,046 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:48:53,047 INFO L225 Difference]: With dead ends: 90 [2024-09-15 18:48:53,047 INFO L226 Difference]: Without dead ends: 79 [2024-09-15 18:48:53,048 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 47 GetRequests, 31 SyntacticMatches, 1 SemanticMatches, 15 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 21 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=49, Invalid=223, Unknown=0, NotChecked=0, Total=272 [2024-09-15 18:48:53,048 INFO L434 NwaCegarLoop]: 24 mSDtfsCounter, 24 mSDsluCounter, 173 mSDsCounter, 0 mSdLazyCounter, 132 mSolverCounterSat, 15 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 24 SdHoareTripleChecker+Valid, 197 SdHoareTripleChecker+Invalid, 147 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 15 IncrementalHoareTripleChecker+Valid, 132 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-15 18:48:53,048 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [24 Valid, 197 Invalid, 147 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [15 Valid, 132 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-15 18:48:53,049 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 79 states. [2024-09-15 18:48:53,062 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 79 to 63. [2024-09-15 18:48:53,063 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 63 states, 58 states have (on average 1.4827586206896552) internal successors, (86), 58 states have internal predecessors, (86), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:48:53,063 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 63 states to 63 states and 90 transitions. [2024-09-15 18:48:53,064 INFO L78 Accepts]: Start accepts. Automaton has 63 states and 90 transitions. Word has length 20 [2024-09-15 18:48:53,064 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:48:53,064 INFO L474 AbstractCegarLoop]: Abstraction has 63 states and 90 transitions. [2024-09-15 18:48:53,064 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 15 states, 15 states have (on average 2.8666666666666667) internal successors, (43), 13 states have internal predecessors, (43), 4 states have call successors, (5), 4 states have call predecessors, (5), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:48:53,065 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:48:53,065 INFO L276 IsEmpty]: Start isEmpty. Operand 63 states and 90 transitions. [2024-09-15 18:48:53,065 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 21 [2024-09-15 18:48:53,066 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:48:53,066 INFO L216 NwaCegarLoop]: trace histogram [4, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:48:53,083 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Forceful destruction successful, exit code 0 [2024-09-15 18:48:53,269 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4,4 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:48:53,270 INFO L399 AbstractCegarLoop]: === Iteration 6 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:48:53,270 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:48:53,270 INFO L85 PathProgramCache]: Analyzing trace with hash 739179039, now seen corresponding path program 2 times [2024-09-15 18:48:53,270 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:48:53,270 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1572146897] [2024-09-15 18:48:53,270 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:48:53,270 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:48:53,279 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:48:53,383 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-15 18:48:53,384 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:48:53,387 INFO L134 CoverageAnalysis]: Checked inductivity of 10 backedges. 0 proven. 10 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-15 18:48:53,387 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:48:53,387 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1572146897] [2024-09-15 18:48:53,388 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1572146897] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 18:48:53,388 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [294333852] [2024-09-15 18:48:53,388 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-15 18:48:53,388 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:48:53,388 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:48:53,390 INFO L229 MonitoredProcess]: Starting monitored process 5 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:48:53,391 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2024-09-15 18:48:53,435 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-15 18:48:53,435 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-15 18:48:53,436 INFO L262 TraceCheckSpWp]: Trace formula consists of 69 conjuncts, 13 conjuncts are in the unsatisfiable core [2024-09-15 18:48:53,437 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:48:53,465 INFO L134 CoverageAnalysis]: Checked inductivity of 10 backedges. 0 proven. 10 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-15 18:48:53,466 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:48:53,573 INFO L134 CoverageAnalysis]: Checked inductivity of 10 backedges. 0 proven. 10 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-15 18:48:53,573 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [294333852] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 18:48:53,573 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-15 18:48:53,574 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [8, 8, 8] total 15 [2024-09-15 18:48:53,574 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [43984647] [2024-09-15 18:48:53,574 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-15 18:48:53,575 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 15 states [2024-09-15 18:48:53,575 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:48:53,576 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 15 interpolants. [2024-09-15 18:48:53,577 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=54, Invalid=156, Unknown=0, NotChecked=0, Total=210 [2024-09-15 18:48:53,578 INFO L87 Difference]: Start difference. First operand 63 states and 90 transitions. Second operand has 15 states, 15 states have (on average 1.7333333333333334) internal successors, (26), 15 states have internal predecessors, (26), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:48:54,403 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:48:54,403 INFO L93 Difference]: Finished difference Result 221 states and 363 transitions. [2024-09-15 18:48:54,404 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 26 states. [2024-09-15 18:48:54,404 INFO L78 Accepts]: Start accepts. Automaton has has 15 states, 15 states have (on average 1.7333333333333334) internal successors, (26), 15 states have internal predecessors, (26), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 20 [2024-09-15 18:48:54,406 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:48:54,412 INFO L225 Difference]: With dead ends: 221 [2024-09-15 18:48:54,412 INFO L226 Difference]: Without dead ends: 196 [2024-09-15 18:48:54,413 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 67 GetRequests, 37 SyntacticMatches, 0 SemanticMatches, 30 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 198 ImplicationChecksByTransitivity, 0.5s TimeCoverageRelationStatistics Valid=301, Invalid=691, Unknown=0, NotChecked=0, Total=992 [2024-09-15 18:48:54,413 INFO L434 NwaCegarLoop]: 31 mSDtfsCounter, 282 mSDsluCounter, 170 mSDsCounter, 0 mSdLazyCounter, 227 mSolverCounterSat, 143 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 282 SdHoareTripleChecker+Valid, 201 SdHoareTripleChecker+Invalid, 370 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 143 IncrementalHoareTripleChecker+Valid, 227 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2024-09-15 18:48:54,413 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [282 Valid, 201 Invalid, 370 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [143 Valid, 227 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2024-09-15 18:48:54,419 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 196 states. [2024-09-15 18:48:54,467 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 196 to 123. [2024-09-15 18:48:54,468 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 123 states, 118 states have (on average 1.5254237288135593) internal successors, (180), 118 states have internal predecessors, (180), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:48:54,470 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 123 states to 123 states and 184 transitions. [2024-09-15 18:48:54,472 INFO L78 Accepts]: Start accepts. Automaton has 123 states and 184 transitions. Word has length 20 [2024-09-15 18:48:54,472 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:48:54,472 INFO L474 AbstractCegarLoop]: Abstraction has 123 states and 184 transitions. [2024-09-15 18:48:54,472 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 15 states, 15 states have (on average 1.7333333333333334) internal successors, (26), 15 states have internal predecessors, (26), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:48:54,473 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:48:54,473 INFO L276 IsEmpty]: Start isEmpty. Operand 123 states and 184 transitions. [2024-09-15 18:48:54,474 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 23 [2024-09-15 18:48:54,475 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:48:54,475 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:48:54,493 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Ended with exit code 0 [2024-09-15 18:48:54,679 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5,5 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:48:54,680 INFO L399 AbstractCegarLoop]: === Iteration 7 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:48:54,680 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:48:54,681 INFO L85 PathProgramCache]: Analyzing trace with hash 1756794400, now seen corresponding path program 1 times [2024-09-15 18:48:54,681 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:48:54,681 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1365902848] [2024-09-15 18:48:54,681 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:48:54,681 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:48:54,711 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:48:55,033 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-15 18:48:55,034 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:48:55,036 INFO L134 CoverageAnalysis]: Checked inductivity of 6 backedges. 0 proven. 5 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2024-09-15 18:48:55,036 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:48:55,036 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1365902848] [2024-09-15 18:48:55,036 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1365902848] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 18:48:55,037 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [387217751] [2024-09-15 18:48:55,037 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:48:55,037 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:48:55,037 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:48:55,039 INFO L229 MonitoredProcess]: Starting monitored process 6 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:48:55,040 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Waiting until timeout for monitored process [2024-09-15 18:48:55,086 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:48:55,091 INFO L262 TraceCheckSpWp]: Trace formula consists of 79 conjuncts, 25 conjuncts are in the unsatisfiable core [2024-09-15 18:48:55,093 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:48:55,293 INFO L134 CoverageAnalysis]: Checked inductivity of 6 backedges. 0 proven. 5 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2024-09-15 18:48:55,293 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:48:55,451 INFO L134 CoverageAnalysis]: Checked inductivity of 6 backedges. 0 proven. 5 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2024-09-15 18:48:55,452 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [387217751] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 18:48:55,452 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-15 18:48:55,452 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 9, 9] total 20 [2024-09-15 18:48:55,452 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [83234128] [2024-09-15 18:48:55,452 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-15 18:48:55,453 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 20 states [2024-09-15 18:48:55,453 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:48:55,453 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 20 interpolants. [2024-09-15 18:48:55,454 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=58, Invalid=322, Unknown=0, NotChecked=0, Total=380 [2024-09-15 18:48:55,454 INFO L87 Difference]: Start difference. First operand 123 states and 184 transitions. Second operand has 20 states, 20 states have (on average 2.3) internal successors, (46), 18 states have internal predecessors, (46), 3 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:48:56,259 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:48:56,260 INFO L93 Difference]: Finished difference Result 167 states and 242 transitions. [2024-09-15 18:48:56,260 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 26 states. [2024-09-15 18:48:56,260 INFO L78 Accepts]: Start accepts. Automaton has has 20 states, 20 states have (on average 2.3) internal successors, (46), 18 states have internal predecessors, (46), 3 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 22 [2024-09-15 18:48:56,261 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:48:56,262 INFO L225 Difference]: With dead ends: 167 [2024-09-15 18:48:56,262 INFO L226 Difference]: Without dead ends: 158 [2024-09-15 18:48:56,263 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 73 GetRequests, 39 SyntacticMatches, 0 SemanticMatches, 34 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 244 ImplicationChecksByTransitivity, 0.6s TimeCoverageRelationStatistics Valid=213, Invalid=1047, Unknown=0, NotChecked=0, Total=1260 [2024-09-15 18:48:56,263 INFO L434 NwaCegarLoop]: 12 mSDtfsCounter, 35 mSDsluCounter, 122 mSDsCounter, 0 mSdLazyCounter, 336 mSolverCounterSat, 20 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 35 SdHoareTripleChecker+Valid, 134 SdHoareTripleChecker+Invalid, 356 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 20 IncrementalHoareTripleChecker+Valid, 336 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2024-09-15 18:48:56,264 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [35 Valid, 134 Invalid, 356 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [20 Valid, 336 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2024-09-15 18:48:56,264 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 158 states. [2024-09-15 18:48:56,301 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 158 to 123. [2024-09-15 18:48:56,301 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 123 states, 118 states have (on average 1.5254237288135593) internal successors, (180), 118 states have internal predecessors, (180), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:48:56,302 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 123 states to 123 states and 184 transitions. [2024-09-15 18:48:56,303 INFO L78 Accepts]: Start accepts. Automaton has 123 states and 184 transitions. Word has length 22 [2024-09-15 18:48:56,303 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:48:56,303 INFO L474 AbstractCegarLoop]: Abstraction has 123 states and 184 transitions. [2024-09-15 18:48:56,303 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 20 states, 20 states have (on average 2.3) internal successors, (46), 18 states have internal predecessors, (46), 3 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:48:56,303 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:48:56,304 INFO L276 IsEmpty]: Start isEmpty. Operand 123 states and 184 transitions. [2024-09-15 18:48:56,304 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 23 [2024-09-15 18:48:56,305 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:48:56,305 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:48:56,322 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Forceful destruction successful, exit code 0 [2024-09-15 18:48:56,505 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 6 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable6 [2024-09-15 18:48:56,506 INFO L399 AbstractCegarLoop]: === Iteration 8 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:48:56,506 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:48:56,507 INFO L85 PathProgramCache]: Analyzing trace with hash 1941599551, now seen corresponding path program 2 times [2024-09-15 18:48:56,507 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:48:56,507 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1693159522] [2024-09-15 18:48:56,508 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:48:56,508 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:48:56,524 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:48:56,643 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-15 18:48:56,644 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:48:56,646 INFO L134 CoverageAnalysis]: Checked inductivity of 9 backedges. 0 proven. 9 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-15 18:48:56,646 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:48:56,647 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1693159522] [2024-09-15 18:48:56,647 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1693159522] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 18:48:56,647 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [465384725] [2024-09-15 18:48:56,647 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-15 18:48:56,647 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:48:56,647 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:48:56,649 INFO L229 MonitoredProcess]: Starting monitored process 7 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:48:56,651 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Waiting until timeout for monitored process [2024-09-15 18:48:56,691 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-15 18:48:56,691 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-15 18:48:56,692 INFO L262 TraceCheckSpWp]: Trace formula consists of 79 conjuncts, 12 conjuncts are in the unsatisfiable core [2024-09-15 18:48:56,693 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:48:56,756 INFO L134 CoverageAnalysis]: Checked inductivity of 9 backedges. 2 proven. 4 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-09-15 18:48:56,756 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:48:56,831 INFO L134 CoverageAnalysis]: Checked inductivity of 9 backedges. 2 proven. 4 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-09-15 18:48:56,832 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [465384725] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 18:48:56,832 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-15 18:48:56,832 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [9, 5, 5] total 12 [2024-09-15 18:48:56,833 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2142591878] [2024-09-15 18:48:56,833 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-15 18:48:56,833 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 12 states [2024-09-15 18:48:56,833 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:48:56,834 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 12 interpolants. [2024-09-15 18:48:56,834 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=22, Invalid=110, Unknown=0, NotChecked=0, Total=132 [2024-09-15 18:48:56,834 INFO L87 Difference]: Start difference. First operand 123 states and 184 transitions. Second operand has 12 states, 12 states have (on average 2.5) internal successors, (30), 12 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:48:57,668 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:48:57,669 INFO L93 Difference]: Finished difference Result 302 states and 459 transitions. [2024-09-15 18:48:57,669 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 36 states. [2024-09-15 18:48:57,669 INFO L78 Accepts]: Start accepts. Automaton has has 12 states, 12 states have (on average 2.5) internal successors, (30), 12 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 22 [2024-09-15 18:48:57,670 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:48:57,671 INFO L225 Difference]: With dead ends: 302 [2024-09-15 18:48:57,671 INFO L226 Difference]: Without dead ends: 263 [2024-09-15 18:48:57,673 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 87 GetRequests, 42 SyntacticMatches, 4 SemanticMatches, 41 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 454 ImplicationChecksByTransitivity, 0.5s TimeCoverageRelationStatistics Valid=253, Invalid=1553, Unknown=0, NotChecked=0, Total=1806 [2024-09-15 18:48:57,673 INFO L434 NwaCegarLoop]: 18 mSDtfsCounter, 123 mSDsluCounter, 119 mSDsCounter, 0 mSdLazyCounter, 328 mSolverCounterSat, 84 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 123 SdHoareTripleChecker+Valid, 137 SdHoareTripleChecker+Invalid, 412 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 84 IncrementalHoareTripleChecker+Valid, 328 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2024-09-15 18:48:57,674 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [123 Valid, 137 Invalid, 412 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [84 Valid, 328 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2024-09-15 18:48:57,675 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 263 states. [2024-09-15 18:48:57,732 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 263 to 154. [2024-09-15 18:48:57,733 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 154 states, 149 states have (on average 1.4966442953020134) internal successors, (223), 149 states have internal predecessors, (223), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:48:57,735 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 154 states to 154 states and 227 transitions. [2024-09-15 18:48:57,736 INFO L78 Accepts]: Start accepts. Automaton has 154 states and 227 transitions. Word has length 22 [2024-09-15 18:48:57,736 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:48:57,736 INFO L474 AbstractCegarLoop]: Abstraction has 154 states and 227 transitions. [2024-09-15 18:48:57,737 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 12 states, 12 states have (on average 2.5) internal successors, (30), 12 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:48:57,737 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:48:57,737 INFO L276 IsEmpty]: Start isEmpty. Operand 154 states and 227 transitions. [2024-09-15 18:48:57,738 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2024-09-15 18:48:57,738 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:48:57,739 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:48:57,755 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Forceful destruction successful, exit code 0 [2024-09-15 18:48:57,939 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7,7 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:48:57,939 INFO L399 AbstractCegarLoop]: === Iteration 9 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:48:57,940 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:48:57,940 INFO L85 PathProgramCache]: Analyzing trace with hash -46385954, now seen corresponding path program 2 times [2024-09-15 18:48:57,940 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:48:57,940 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1204866972] [2024-09-15 18:48:57,940 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:48:57,940 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:48:57,949 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:48:58,007 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-15 18:48:58,008 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:48:58,010 INFO L134 CoverageAnalysis]: Checked inductivity of 10 backedges. 2 proven. 2 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-15 18:48:58,012 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:48:58,012 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1204866972] [2024-09-15 18:48:58,012 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1204866972] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 18:48:58,013 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1970446428] [2024-09-15 18:48:58,013 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-15 18:48:58,013 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:48:58,013 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:48:58,014 INFO L229 MonitoredProcess]: Starting monitored process 8 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:48:58,016 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Waiting until timeout for monitored process [2024-09-15 18:48:58,056 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-15 18:48:58,057 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-15 18:48:58,057 INFO L262 TraceCheckSpWp]: Trace formula consists of 89 conjuncts, 10 conjuncts are in the unsatisfiable core [2024-09-15 18:48:58,059 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:48:58,078 INFO L134 CoverageAnalysis]: Checked inductivity of 10 backedges. 2 proven. 2 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-15 18:48:58,078 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:48:58,104 INFO L134 CoverageAnalysis]: Checked inductivity of 10 backedges. 2 proven. 2 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-15 18:48:58,104 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1970446428] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 18:48:58,104 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-15 18:48:58,104 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [4, 4, 4] total 4 [2024-09-15 18:48:58,105 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1479284630] [2024-09-15 18:48:58,105 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-15 18:48:58,105 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2024-09-15 18:48:58,105 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:48:58,106 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2024-09-15 18:48:58,106 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-09-15 18:48:58,106 INFO L87 Difference]: Start difference. First operand 154 states and 227 transitions. Second operand has 4 states, 4 states have (on average 4.75) internal successors, (19), 4 states have internal predecessors, (19), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:48:58,203 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:48:58,204 INFO L93 Difference]: Finished difference Result 242 states and 361 transitions. [2024-09-15 18:48:58,204 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2024-09-15 18:48:58,204 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 4.75) internal successors, (19), 4 states have internal predecessors, (19), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 24 [2024-09-15 18:48:58,205 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:48:58,206 INFO L225 Difference]: With dead ends: 242 [2024-09-15 18:48:58,206 INFO L226 Difference]: Without dead ends: 181 [2024-09-15 18:48:58,207 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 54 GetRequests, 50 SyntacticMatches, 2 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-09-15 18:48:58,209 INFO L434 NwaCegarLoop]: 25 mSDtfsCounter, 9 mSDsluCounter, 35 mSDsCounter, 0 mSdLazyCounter, 24 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 9 SdHoareTripleChecker+Valid, 60 SdHoareTripleChecker+Invalid, 26 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 24 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-15 18:48:58,209 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [9 Valid, 60 Invalid, 26 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 24 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-15 18:48:58,210 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 181 states. [2024-09-15 18:48:58,280 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 181 to 151. [2024-09-15 18:48:58,281 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 151 states, 146 states have (on average 1.4726027397260273) internal successors, (215), 146 states have internal predecessors, (215), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:48:58,281 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 151 states to 151 states and 219 transitions. [2024-09-15 18:48:58,282 INFO L78 Accepts]: Start accepts. Automaton has 151 states and 219 transitions. Word has length 24 [2024-09-15 18:48:58,282 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:48:58,282 INFO L474 AbstractCegarLoop]: Abstraction has 151 states and 219 transitions. [2024-09-15 18:48:58,282 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 4.75) internal successors, (19), 4 states have internal predecessors, (19), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:48:58,283 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:48:58,283 INFO L276 IsEmpty]: Start isEmpty. Operand 151 states and 219 transitions. [2024-09-15 18:48:58,284 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2024-09-15 18:48:58,284 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:48:58,284 INFO L216 NwaCegarLoop]: trace histogram [3, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:48:58,302 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Ended with exit code 0 [2024-09-15 18:48:58,484 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8,8 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:48:58,485 INFO L399 AbstractCegarLoop]: === Iteration 10 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:48:58,486 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:48:58,486 INFO L85 PathProgramCache]: Analyzing trace with hash 1697264410, now seen corresponding path program 1 times [2024-09-15 18:48:58,486 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:48:58,486 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1311450553] [2024-09-15 18:48:58,486 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:48:58,486 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:48:58,499 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:48:58,583 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-15 18:48:58,584 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:48:58,586 INFO L134 CoverageAnalysis]: Checked inductivity of 15 backedges. 0 proven. 7 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2024-09-15 18:48:58,586 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:48:58,587 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1311450553] [2024-09-15 18:48:58,587 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1311450553] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 18:48:58,587 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [185305506] [2024-09-15 18:48:58,587 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:48:58,587 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:48:58,587 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:48:58,589 INFO L229 MonitoredProcess]: Starting monitored process 9 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:48:58,590 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Waiting until timeout for monitored process [2024-09-15 18:48:58,628 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:48:58,629 INFO L262 TraceCheckSpWp]: Trace formula consists of 94 conjuncts, 16 conjuncts are in the unsatisfiable core [2024-09-15 18:48:58,630 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:48:58,670 INFO L134 CoverageAnalysis]: Checked inductivity of 15 backedges. 0 proven. 7 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2024-09-15 18:48:58,671 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:48:58,750 INFO L134 CoverageAnalysis]: Checked inductivity of 15 backedges. 4 proven. 2 refuted. 0 times theorem prover too weak. 9 trivial. 0 not checked. [2024-09-15 18:48:58,750 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [185305506] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 18:48:58,751 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-15 18:48:58,751 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [8, 8, 6] total 14 [2024-09-15 18:48:58,751 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [751128726] [2024-09-15 18:48:58,751 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-15 18:48:58,752 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 14 states [2024-09-15 18:48:58,752 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:48:58,752 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 14 interpolants. [2024-09-15 18:48:58,753 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=45, Invalid=137, Unknown=0, NotChecked=0, Total=182 [2024-09-15 18:48:58,753 INFO L87 Difference]: Start difference. First operand 151 states and 219 transitions. Second operand has 14 states, 14 states have (on average 2.142857142857143) internal successors, (30), 14 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:48:59,169 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:48:59,170 INFO L93 Difference]: Finished difference Result 222 states and 323 transitions. [2024-09-15 18:48:59,170 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 20 states. [2024-09-15 18:48:59,170 INFO L78 Accepts]: Start accepts. Automaton has has 14 states, 14 states have (on average 2.142857142857143) internal successors, (30), 14 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 25 [2024-09-15 18:48:59,171 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:48:59,172 INFO L225 Difference]: With dead ends: 222 [2024-09-15 18:48:59,172 INFO L226 Difference]: Without dead ends: 180 [2024-09-15 18:48:59,174 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 68 GetRequests, 48 SyntacticMatches, 0 SemanticMatches, 20 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 64 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=87, Invalid=375, Unknown=0, NotChecked=0, Total=462 [2024-09-15 18:48:59,175 INFO L434 NwaCegarLoop]: 25 mSDtfsCounter, 46 mSDsluCounter, 166 mSDsCounter, 0 mSdLazyCounter, 341 mSolverCounterSat, 48 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 46 SdHoareTripleChecker+Valid, 191 SdHoareTripleChecker+Invalid, 389 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 48 IncrementalHoareTripleChecker+Valid, 341 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-15 18:48:59,175 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [46 Valid, 191 Invalid, 389 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [48 Valid, 341 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-15 18:48:59,176 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 180 states. [2024-09-15 18:48:59,232 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 180 to 147. [2024-09-15 18:48:59,232 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 147 states, 142 states have (on average 1.471830985915493) internal successors, (209), 142 states have internal predecessors, (209), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:48:59,233 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 147 states to 147 states and 213 transitions. [2024-09-15 18:48:59,233 INFO L78 Accepts]: Start accepts. Automaton has 147 states and 213 transitions. Word has length 25 [2024-09-15 18:48:59,233 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:48:59,233 INFO L474 AbstractCegarLoop]: Abstraction has 147 states and 213 transitions. [2024-09-15 18:48:59,234 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 14 states, 14 states have (on average 2.142857142857143) internal successors, (30), 14 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:48:59,234 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:48:59,234 INFO L276 IsEmpty]: Start isEmpty. Operand 147 states and 213 transitions. [2024-09-15 18:48:59,235 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2024-09-15 18:48:59,235 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:48:59,235 INFO L216 NwaCegarLoop]: trace histogram [3, 3, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:48:59,253 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Forceful destruction successful, exit code 0 [2024-09-15 18:48:59,436 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9,9 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:48:59,436 INFO L399 AbstractCegarLoop]: === Iteration 11 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:48:59,437 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:48:59,437 INFO L85 PathProgramCache]: Analyzing trace with hash 1008778426, now seen corresponding path program 3 times [2024-09-15 18:48:59,437 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:48:59,437 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1567165917] [2024-09-15 18:48:59,437 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:48:59,437 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:48:59,449 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:48:59,617 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-15 18:48:59,619 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:48:59,621 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 0 proven. 18 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-15 18:48:59,624 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:48:59,624 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1567165917] [2024-09-15 18:48:59,624 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1567165917] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 18:48:59,624 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [723851533] [2024-09-15 18:48:59,624 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-09-15 18:48:59,624 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:48:59,625 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:48:59,626 INFO L229 MonitoredProcess]: Starting monitored process 10 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:48:59,628 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Waiting until timeout for monitored process [2024-09-15 18:48:59,669 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 3 check-sat command(s) [2024-09-15 18:48:59,670 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-15 18:48:59,670 INFO L262 TraceCheckSpWp]: Trace formula consists of 94 conjuncts, 16 conjuncts are in the unsatisfiable core [2024-09-15 18:48:59,671 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:48:59,761 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 3 proven. 9 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-15 18:48:59,761 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:48:59,877 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 3 proven. 9 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-15 18:48:59,878 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [723851533] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 18:48:59,878 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-15 18:48:59,878 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [11, 6, 6] total 15 [2024-09-15 18:48:59,878 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [890016363] [2024-09-15 18:48:59,878 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-15 18:48:59,878 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 15 states [2024-09-15 18:48:59,878 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:48:59,879 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 15 interpolants. [2024-09-15 18:48:59,879 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=28, Invalid=182, Unknown=0, NotChecked=0, Total=210 [2024-09-15 18:48:59,879 INFO L87 Difference]: Start difference. First operand 147 states and 213 transitions. Second operand has 15 states, 15 states have (on average 2.3333333333333335) internal successors, (35), 15 states have internal predecessors, (35), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:49:01,512 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:49:01,512 INFO L93 Difference]: Finished difference Result 356 states and 535 transitions. [2024-09-15 18:49:01,512 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 61 states. [2024-09-15 18:49:01,513 INFO L78 Accepts]: Start accepts. Automaton has has 15 states, 15 states have (on average 2.3333333333333335) internal successors, (35), 15 states have internal predecessors, (35), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 25 [2024-09-15 18:49:01,513 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:49:01,515 INFO L225 Difference]: With dead ends: 356 [2024-09-15 18:49:01,515 INFO L226 Difference]: Without dead ends: 319 [2024-09-15 18:49:01,517 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 121 GetRequests, 46 SyntacticMatches, 6 SemanticMatches, 69 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1516 ImplicationChecksByTransitivity, 1.1s TimeCoverageRelationStatistics Valid=524, Invalid=4446, Unknown=0, NotChecked=0, Total=4970 [2024-09-15 18:49:01,517 INFO L434 NwaCegarLoop]: 26 mSDtfsCounter, 164 mSDsluCounter, 219 mSDsCounter, 0 mSdLazyCounter, 736 mSolverCounterSat, 130 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.5s Time, 0 mProtectedPredicate, 0 mProtectedAction, 164 SdHoareTripleChecker+Valid, 245 SdHoareTripleChecker+Invalid, 866 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 130 IncrementalHoareTripleChecker+Valid, 736 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.5s IncrementalHoareTripleChecker+Time [2024-09-15 18:49:01,518 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [164 Valid, 245 Invalid, 866 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [130 Valid, 736 Invalid, 0 Unknown, 0 Unchecked, 0.5s Time] [2024-09-15 18:49:01,518 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 319 states. [2024-09-15 18:49:01,584 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 319 to 171. [2024-09-15 18:49:01,585 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 171 states, 166 states have (on average 1.4759036144578312) internal successors, (245), 166 states have internal predecessors, (245), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:49:01,586 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 171 states to 171 states and 249 transitions. [2024-09-15 18:49:01,587 INFO L78 Accepts]: Start accepts. Automaton has 171 states and 249 transitions. Word has length 25 [2024-09-15 18:49:01,587 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:49:01,587 INFO L474 AbstractCegarLoop]: Abstraction has 171 states and 249 transitions. [2024-09-15 18:49:01,587 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 15 states, 15 states have (on average 2.3333333333333335) internal successors, (35), 15 states have internal predecessors, (35), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:49:01,587 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:49:01,588 INFO L276 IsEmpty]: Start isEmpty. Operand 171 states and 249 transitions. [2024-09-15 18:49:01,588 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2024-09-15 18:49:01,588 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:49:01,588 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:49:01,608 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Forceful destruction successful, exit code 0 [2024-09-15 18:49:01,789 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 10 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable10 [2024-09-15 18:49:01,790 INFO L399 AbstractCegarLoop]: === Iteration 12 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:49:01,790 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:49:01,790 INFO L85 PathProgramCache]: Analyzing trace with hash 1467722815, now seen corresponding path program 3 times [2024-09-15 18:49:01,790 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:49:01,790 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [155812680] [2024-09-15 18:49:01,790 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:49:01,791 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:49:01,804 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:49:01,884 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-15 18:49:01,885 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:49:01,886 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 2 proven. 4 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2024-09-15 18:49:01,887 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:49:01,887 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [155812680] [2024-09-15 18:49:01,887 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [155812680] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 18:49:01,887 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [563117430] [2024-09-15 18:49:01,888 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-09-15 18:49:01,888 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:49:01,888 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:49:01,889 INFO L229 MonitoredProcess]: Starting monitored process 11 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:49:01,891 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (11)] Waiting until timeout for monitored process [2024-09-15 18:49:01,933 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 2 check-sat command(s) [2024-09-15 18:49:01,933 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-15 18:49:01,934 INFO L262 TraceCheckSpWp]: Trace formula consists of 99 conjuncts, 10 conjuncts are in the unsatisfiable core [2024-09-15 18:49:01,940 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:49:01,971 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 2 proven. 4 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2024-09-15 18:49:01,971 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:49:02,019 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 2 proven. 4 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2024-09-15 18:49:02,020 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [563117430] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 18:49:02,020 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-15 18:49:02,020 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [5, 5, 5] total 5 [2024-09-15 18:49:02,020 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [449765563] [2024-09-15 18:49:02,021 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-15 18:49:02,021 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-09-15 18:49:02,021 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:49:02,021 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-09-15 18:49:02,021 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-09-15 18:49:02,022 INFO L87 Difference]: Start difference. First operand 171 states and 249 transitions. Second operand has 5 states, 5 states have (on average 4.0) internal successors, (20), 5 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:49:02,216 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:49:02,217 INFO L93 Difference]: Finished difference Result 259 states and 367 transitions. [2024-09-15 18:49:02,217 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2024-09-15 18:49:02,217 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 4.0) internal successors, (20), 5 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 26 [2024-09-15 18:49:02,218 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:49:02,219 INFO L225 Difference]: With dead ends: 259 [2024-09-15 18:49:02,219 INFO L226 Difference]: Without dead ends: 247 [2024-09-15 18:49:02,221 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 61 GetRequests, 50 SyntacticMatches, 6 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=15, Invalid=27, Unknown=0, NotChecked=0, Total=42 [2024-09-15 18:49:02,221 INFO L434 NwaCegarLoop]: 28 mSDtfsCounter, 18 mSDsluCounter, 56 mSDsCounter, 0 mSdLazyCounter, 37 mSolverCounterSat, 11 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 18 SdHoareTripleChecker+Valid, 84 SdHoareTripleChecker+Invalid, 48 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 11 IncrementalHoareTripleChecker+Valid, 37 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-15 18:49:02,222 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [18 Valid, 84 Invalid, 48 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [11 Valid, 37 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-15 18:49:02,222 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 247 states. [2024-09-15 18:49:02,297 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 247 to 186. [2024-09-15 18:49:02,298 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 186 states, 181 states have (on average 1.4475138121546962) internal successors, (262), 181 states have internal predecessors, (262), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:49:02,300 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 186 states to 186 states and 266 transitions. [2024-09-15 18:49:02,300 INFO L78 Accepts]: Start accepts. Automaton has 186 states and 266 transitions. Word has length 26 [2024-09-15 18:49:02,300 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:49:02,301 INFO L474 AbstractCegarLoop]: Abstraction has 186 states and 266 transitions. [2024-09-15 18:49:02,301 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 4.0) internal successors, (20), 5 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:49:02,301 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:49:02,301 INFO L276 IsEmpty]: Start isEmpty. Operand 186 states and 266 transitions. [2024-09-15 18:49:02,302 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2024-09-15 18:49:02,303 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:49:02,304 INFO L216 NwaCegarLoop]: trace histogram [5, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:49:02,321 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (11)] Forceful destruction successful, exit code 0 [2024-09-15 18:49:02,507 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 11 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable11 [2024-09-15 18:49:02,508 INFO L399 AbstractCegarLoop]: === Iteration 13 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:49:02,508 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:49:02,508 INFO L85 PathProgramCache]: Analyzing trace with hash 722284832, now seen corresponding path program 4 times [2024-09-15 18:49:02,508 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:49:02,508 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [874202716] [2024-09-15 18:49:02,508 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:49:02,508 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:49:02,516 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:49:02,613 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-15 18:49:02,614 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:49:02,615 INFO L134 CoverageAnalysis]: Checked inductivity of 20 backedges. 0 proven. 16 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-15 18:49:02,615 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:49:02,616 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [874202716] [2024-09-15 18:49:02,616 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [874202716] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 18:49:02,616 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [886849352] [2024-09-15 18:49:02,616 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2024-09-15 18:49:02,616 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:49:02,616 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:49:02,618 INFO L229 MonitoredProcess]: Starting monitored process 12 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:49:02,619 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (12)] Waiting until timeout for monitored process [2024-09-15 18:49:02,663 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2024-09-15 18:49:02,663 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-15 18:49:02,664 INFO L262 TraceCheckSpWp]: Trace formula consists of 99 conjuncts, 17 conjuncts are in the unsatisfiable core [2024-09-15 18:49:02,665 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:49:02,694 INFO L134 CoverageAnalysis]: Checked inductivity of 20 backedges. 0 proven. 16 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-15 18:49:02,694 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:49:02,826 INFO L134 CoverageAnalysis]: Checked inductivity of 20 backedges. 0 proven. 16 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-15 18:49:02,826 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [886849352] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 18:49:02,826 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-15 18:49:02,826 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 10, 10] total 19 [2024-09-15 18:49:02,826 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [144561439] [2024-09-15 18:49:02,827 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-15 18:49:02,827 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 19 states [2024-09-15 18:49:02,827 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:49:02,827 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 19 interpolants. [2024-09-15 18:49:02,828 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=77, Invalid=265, Unknown=0, NotChecked=0, Total=342 [2024-09-15 18:49:02,828 INFO L87 Difference]: Start difference. First operand 186 states and 266 transitions. Second operand has 19 states, 19 states have (on average 1.7894736842105263) internal successors, (34), 19 states have internal predecessors, (34), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:49:04,611 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:49:04,611 INFO L93 Difference]: Finished difference Result 454 states and 704 transitions. [2024-09-15 18:49:04,612 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 63 states. [2024-09-15 18:49:04,612 INFO L78 Accepts]: Start accepts. Automaton has has 19 states, 19 states have (on average 1.7894736842105263) internal successors, (34), 19 states have internal predecessors, (34), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 26 [2024-09-15 18:49:04,612 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:49:04,614 INFO L225 Difference]: With dead ends: 454 [2024-09-15 18:49:04,614 INFO L226 Difference]: Without dead ends: 382 [2024-09-15 18:49:04,616 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 115 GetRequests, 47 SyntacticMatches, 0 SemanticMatches, 68 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1552 ImplicationChecksByTransitivity, 1.2s TimeCoverageRelationStatistics Valid=1233, Invalid=3597, Unknown=0, NotChecked=0, Total=4830 [2024-09-15 18:49:04,617 INFO L434 NwaCegarLoop]: 37 mSDtfsCounter, 427 mSDsluCounter, 266 mSDsCounter, 0 mSdLazyCounter, 518 mSolverCounterSat, 262 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 427 SdHoareTripleChecker+Valid, 303 SdHoareTripleChecker+Invalid, 780 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 262 IncrementalHoareTripleChecker+Valid, 518 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.5s IncrementalHoareTripleChecker+Time [2024-09-15 18:49:04,617 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [427 Valid, 303 Invalid, 780 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [262 Valid, 518 Invalid, 0 Unknown, 0 Unchecked, 0.5s Time] [2024-09-15 18:49:04,618 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 382 states. [2024-09-15 18:49:04,711 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 382 to 236. [2024-09-15 18:49:04,712 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 236 states, 231 states have (on average 1.4761904761904763) internal successors, (341), 231 states have internal predecessors, (341), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:49:04,713 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 236 states to 236 states and 345 transitions. [2024-09-15 18:49:04,714 INFO L78 Accepts]: Start accepts. Automaton has 236 states and 345 transitions. Word has length 26 [2024-09-15 18:49:04,714 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:49:04,714 INFO L474 AbstractCegarLoop]: Abstraction has 236 states and 345 transitions. [2024-09-15 18:49:04,714 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 19 states, 19 states have (on average 1.7894736842105263) internal successors, (34), 19 states have internal predecessors, (34), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:49:04,714 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:49:04,715 INFO L276 IsEmpty]: Start isEmpty. Operand 236 states and 345 transitions. [2024-09-15 18:49:04,715 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 28 [2024-09-15 18:49:04,715 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:49:04,715 INFO L216 NwaCegarLoop]: trace histogram [11, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:49:04,732 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (12)] Forceful destruction successful, exit code 0 [2024-09-15 18:49:04,919 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable12,12 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:49:04,920 INFO L399 AbstractCegarLoop]: === Iteration 14 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:49:04,920 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:49:04,920 INFO L85 PathProgramCache]: Analyzing trace with hash -1716429653, now seen corresponding path program 3 times [2024-09-15 18:49:04,920 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:49:04,920 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1815958268] [2024-09-15 18:49:04,920 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:49:04,920 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:49:04,929 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:49:05,127 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-15 18:49:05,128 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:49:05,130 INFO L134 CoverageAnalysis]: Checked inductivity of 66 backedges. 0 proven. 66 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-15 18:49:05,130 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:49:05,130 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1815958268] [2024-09-15 18:49:05,130 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1815958268] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 18:49:05,130 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1210325137] [2024-09-15 18:49:05,130 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-09-15 18:49:05,131 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:49:05,131 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:49:05,132 INFO L229 MonitoredProcess]: Starting monitored process 13 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:49:05,134 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (13)] Waiting until timeout for monitored process [2024-09-15 18:49:05,182 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 7 check-sat command(s) [2024-09-15 18:49:05,183 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-15 18:49:05,184 INFO L262 TraceCheckSpWp]: Trace formula consists of 104 conjuncts, 27 conjuncts are in the unsatisfiable core [2024-09-15 18:49:05,185 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:49:05,221 INFO L134 CoverageAnalysis]: Checked inductivity of 66 backedges. 0 proven. 66 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-15 18:49:05,221 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:49:05,469 INFO L134 CoverageAnalysis]: Checked inductivity of 66 backedges. 0 proven. 66 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-15 18:49:05,470 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1210325137] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 18:49:05,470 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-15 18:49:05,470 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [15, 15, 15] total 29 [2024-09-15 18:49:05,470 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1994996077] [2024-09-15 18:49:05,470 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-15 18:49:05,470 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 29 states [2024-09-15 18:49:05,471 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:49:05,471 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 29 interpolants. [2024-09-15 18:49:05,471 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=201, Invalid=611, Unknown=0, NotChecked=0, Total=812 [2024-09-15 18:49:05,472 INFO L87 Difference]: Start difference. First operand 236 states and 345 transitions. Second operand has 29 states, 29 states have (on average 1.3793103448275863) internal successors, (40), 29 states have internal predecessors, (40), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:49:09,211 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:49:09,211 INFO L93 Difference]: Finished difference Result 821 states and 1318 transitions. [2024-09-15 18:49:09,212 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 60 states. [2024-09-15 18:49:09,212 INFO L78 Accepts]: Start accepts. Automaton has has 29 states, 29 states have (on average 1.3793103448275863) internal successors, (40), 29 states have internal predecessors, (40), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 27 [2024-09-15 18:49:09,212 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:49:09,215 INFO L225 Difference]: With dead ends: 821 [2024-09-15 18:49:09,215 INFO L226 Difference]: Without dead ends: 764 [2024-09-15 18:49:09,216 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 115 GetRequests, 44 SyntacticMatches, 0 SemanticMatches, 71 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1329 ImplicationChecksByTransitivity, 2.4s TimeCoverageRelationStatistics Valid=1624, Invalid=3632, Unknown=0, NotChecked=0, Total=5256 [2024-09-15 18:49:09,217 INFO L434 NwaCegarLoop]: 64 mSDtfsCounter, 1322 mSDsluCounter, 801 mSDsCounter, 0 mSdLazyCounter, 1091 mSolverCounterSat, 684 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1322 SdHoareTripleChecker+Valid, 865 SdHoareTripleChecker+Invalid, 1775 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 684 IncrementalHoareTripleChecker+Valid, 1091 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.3s IncrementalHoareTripleChecker+Time [2024-09-15 18:49:09,217 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [1322 Valid, 865 Invalid, 1775 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [684 Valid, 1091 Invalid, 0 Unknown, 0 Unchecked, 1.3s Time] [2024-09-15 18:49:09,218 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 764 states. [2024-09-15 18:49:09,373 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 764 to 380. [2024-09-15 18:49:09,373 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 380 states, 375 states have (on average 1.5066666666666666) internal successors, (565), 375 states have internal predecessors, (565), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:49:09,374 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 380 states to 380 states and 569 transitions. [2024-09-15 18:49:09,376 INFO L78 Accepts]: Start accepts. Automaton has 380 states and 569 transitions. Word has length 27 [2024-09-15 18:49:09,376 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:49:09,376 INFO L474 AbstractCegarLoop]: Abstraction has 380 states and 569 transitions. [2024-09-15 18:49:09,376 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 29 states, 29 states have (on average 1.3793103448275863) internal successors, (40), 29 states have internal predecessors, (40), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:49:09,376 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:49:09,376 INFO L276 IsEmpty]: Start isEmpty. Operand 380 states and 569 transitions. [2024-09-15 18:49:09,377 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 29 [2024-09-15 18:49:09,377 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:49:09,377 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:49:09,394 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (13)] Ended with exit code 0 [2024-09-15 18:49:09,581 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 13 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable13 [2024-09-15 18:49:09,582 INFO L399 AbstractCegarLoop]: === Iteration 15 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:49:09,582 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:49:09,582 INFO L85 PathProgramCache]: Analyzing trace with hash 216651583, now seen corresponding path program 5 times [2024-09-15 18:49:09,582 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:49:09,582 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [698076189] [2024-09-15 18:49:09,582 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:49:09,582 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:49:09,611 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:49:09,955 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-15 18:49:09,956 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:49:09,957 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 0 proven. 15 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-09-15 18:49:09,957 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:49:09,957 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [698076189] [2024-09-15 18:49:09,957 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [698076189] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 18:49:09,957 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1101289302] [2024-09-15 18:49:09,958 INFO L93 rtionOrderModulation]: Changing assertion order to INSIDE_LOOP_FIRST1 [2024-09-15 18:49:09,958 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:49:09,958 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:49:09,960 INFO L229 MonitoredProcess]: Starting monitored process 14 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:49:09,961 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (14)] Waiting until timeout for monitored process [2024-09-15 18:49:10,013 INFO L228 tOrderPrioritization]: Assert order INSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-15 18:49:10,013 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-15 18:49:10,014 INFO L262 TraceCheckSpWp]: Trace formula consists of 109 conjuncts, 50 conjuncts are in the unsatisfiable core [2024-09-15 18:49:10,015 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:49:10,525 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 0 proven. 18 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-15 18:49:10,525 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:49:10,941 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 0 proven. 15 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-09-15 18:49:10,941 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1101289302] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 18:49:10,941 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-15 18:49:10,941 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [12, 17, 14] total 31 [2024-09-15 18:49:10,942 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1072963690] [2024-09-15 18:49:10,942 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-15 18:49:10,942 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 31 states [2024-09-15 18:49:10,942 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:49:10,943 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 31 interpolants. [2024-09-15 18:49:10,943 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=138, Invalid=792, Unknown=0, NotChecked=0, Total=930 [2024-09-15 18:49:10,944 INFO L87 Difference]: Start difference. First operand 380 states and 569 transitions. Second operand has 31 states, 31 states have (on average 1.8064516129032258) internal successors, (56), 29 states have internal predecessors, (56), 3 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:49:15,020 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-15 18:49:16,730 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:49:16,730 INFO L93 Difference]: Finished difference Result 528 states and 742 transitions. [2024-09-15 18:49:16,730 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 33 states. [2024-09-15 18:49:16,730 INFO L78 Accepts]: Start accepts. Automaton has has 31 states, 31 states have (on average 1.8064516129032258) internal successors, (56), 29 states have internal predecessors, (56), 3 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 28 [2024-09-15 18:49:16,731 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:49:16,733 INFO L225 Difference]: With dead ends: 528 [2024-09-15 18:49:16,733 INFO L226 Difference]: Without dead ends: 434 [2024-09-15 18:49:16,733 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 89 GetRequests, 41 SyntacticMatches, 4 SemanticMatches, 44 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 508 ImplicationChecksByTransitivity, 1.3s TimeCoverageRelationStatistics Valid=292, Invalid=1778, Unknown=0, NotChecked=0, Total=2070 [2024-09-15 18:49:16,734 INFO L434 NwaCegarLoop]: 13 mSDtfsCounter, 35 mSDsluCounter, 202 mSDsCounter, 0 mSdLazyCounter, 631 mSolverCounterSat, 30 mSolverCounterUnsat, 1 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 4.7s Time, 0 mProtectedPredicate, 0 mProtectedAction, 35 SdHoareTripleChecker+Valid, 215 SdHoareTripleChecker+Invalid, 662 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 30 IncrementalHoareTripleChecker+Valid, 631 IncrementalHoareTripleChecker+Invalid, 1 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 4.8s IncrementalHoareTripleChecker+Time [2024-09-15 18:49:16,734 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [35 Valid, 215 Invalid, 662 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [30 Valid, 631 Invalid, 1 Unknown, 0 Unchecked, 4.8s Time] [2024-09-15 18:49:16,735 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 434 states. [2024-09-15 18:49:16,903 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 434 to 358. [2024-09-15 18:49:16,903 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 358 states, 353 states have (on average 1.4844192634560907) internal successors, (524), 353 states have internal predecessors, (524), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:49:16,905 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 358 states to 358 states and 528 transitions. [2024-09-15 18:49:16,905 INFO L78 Accepts]: Start accepts. Automaton has 358 states and 528 transitions. Word has length 28 [2024-09-15 18:49:16,906 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:49:16,906 INFO L474 AbstractCegarLoop]: Abstraction has 358 states and 528 transitions. [2024-09-15 18:49:16,906 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 31 states, 31 states have (on average 1.8064516129032258) internal successors, (56), 29 states have internal predecessors, (56), 3 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:49:16,906 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:49:16,907 INFO L276 IsEmpty]: Start isEmpty. Operand 358 states and 528 transitions. [2024-09-15 18:49:16,907 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 29 [2024-09-15 18:49:16,907 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:49:16,907 INFO L216 NwaCegarLoop]: trace histogram [4, 4, 4, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:49:16,926 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (14)] Ended with exit code 0 [2024-09-15 18:49:17,108 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 14 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable14 [2024-09-15 18:49:17,108 INFO L399 AbstractCegarLoop]: === Iteration 16 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:49:17,108 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:49:17,109 INFO L85 PathProgramCache]: Analyzing trace with hash 302553951, now seen corresponding path program 4 times [2024-09-15 18:49:17,109 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:49:17,109 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1265770420] [2024-09-15 18:49:17,109 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:49:17,109 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:49:17,121 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:49:17,281 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-15 18:49:17,282 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:49:17,283 INFO L134 CoverageAnalysis]: Checked inductivity of 30 backedges. 0 proven. 30 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-15 18:49:17,283 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:49:17,283 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1265770420] [2024-09-15 18:49:17,284 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1265770420] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 18:49:17,284 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [772549289] [2024-09-15 18:49:17,284 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2024-09-15 18:49:17,284 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:49:17,284 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:49:17,287 INFO L229 MonitoredProcess]: Starting monitored process 15 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:49:17,289 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (15)] Waiting until timeout for monitored process [2024-09-15 18:49:17,332 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2024-09-15 18:49:17,332 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-15 18:49:17,337 INFO L262 TraceCheckSpWp]: Trace formula consists of 109 conjuncts, 20 conjuncts are in the unsatisfiable core [2024-09-15 18:49:17,338 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:49:17,438 INFO L134 CoverageAnalysis]: Checked inductivity of 30 backedges. 4 proven. 16 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2024-09-15 18:49:17,438 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:49:17,571 INFO L134 CoverageAnalysis]: Checked inductivity of 30 backedges. 4 proven. 16 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2024-09-15 18:49:17,571 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [772549289] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 18:49:17,571 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-15 18:49:17,571 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [13, 7, 7] total 18 [2024-09-15 18:49:17,571 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1522886845] [2024-09-15 18:49:17,571 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-15 18:49:17,571 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 18 states [2024-09-15 18:49:17,572 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:49:17,572 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 18 interpolants. [2024-09-15 18:49:17,572 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=34, Invalid=272, Unknown=0, NotChecked=0, Total=306 [2024-09-15 18:49:17,572 INFO L87 Difference]: Start difference. First operand 358 states and 528 transitions. Second operand has 18 states, 18 states have (on average 2.2222222222222223) internal successors, (40), 18 states have internal predecessors, (40), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:49:20,479 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:49:20,479 INFO L93 Difference]: Finished difference Result 865 states and 1290 transitions. [2024-09-15 18:49:20,479 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 92 states. [2024-09-15 18:49:20,479 INFO L78 Accepts]: Start accepts. Automaton has has 18 states, 18 states have (on average 2.2222222222222223) internal successors, (40), 18 states have internal predecessors, (40), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 28 [2024-09-15 18:49:20,479 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:49:20,482 INFO L225 Difference]: With dead ends: 865 [2024-09-15 18:49:20,482 INFO L226 Difference]: Without dead ends: 793 [2024-09-15 18:49:20,484 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 161 GetRequests, 50 SyntacticMatches, 8 SemanticMatches, 103 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3724 ImplicationChecksByTransitivity, 1.7s TimeCoverageRelationStatistics Valid=926, Invalid=9994, Unknown=0, NotChecked=0, Total=10920 [2024-09-15 18:49:20,485 INFO L434 NwaCegarLoop]: 30 mSDtfsCounter, 271 mSDsluCounter, 297 mSDsCounter, 0 mSdLazyCounter, 1241 mSolverCounterSat, 267 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.7s Time, 0 mProtectedPredicate, 0 mProtectedAction, 271 SdHoareTripleChecker+Valid, 327 SdHoareTripleChecker+Invalid, 1508 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 267 IncrementalHoareTripleChecker+Valid, 1241 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.8s IncrementalHoareTripleChecker+Time [2024-09-15 18:49:20,485 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [271 Valid, 327 Invalid, 1508 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [267 Valid, 1241 Invalid, 0 Unknown, 0 Unchecked, 0.8s Time] [2024-09-15 18:49:20,486 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 793 states. [2024-09-15 18:49:20,702 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 793 to 410. [2024-09-15 18:49:20,703 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 410 states, 405 states have (on average 1.4987654320987653) internal successors, (607), 405 states have internal predecessors, (607), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:49:20,704 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 410 states to 410 states and 611 transitions. [2024-09-15 18:49:20,705 INFO L78 Accepts]: Start accepts. Automaton has 410 states and 611 transitions. Word has length 28 [2024-09-15 18:49:20,705 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:49:20,705 INFO L474 AbstractCegarLoop]: Abstraction has 410 states and 611 transitions. [2024-09-15 18:49:20,706 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 18 states, 18 states have (on average 2.2222222222222223) internal successors, (40), 18 states have internal predecessors, (40), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:49:20,706 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:49:20,706 INFO L276 IsEmpty]: Start isEmpty. Operand 410 states and 611 transitions. [2024-09-15 18:49:20,708 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 31 [2024-09-15 18:49:20,708 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:49:20,708 INFO L216 NwaCegarLoop]: trace histogram [3, 3, 3, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:49:20,725 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (15)] Ended with exit code 0 [2024-09-15 18:49:20,912 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 15 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable15 [2024-09-15 18:49:20,913 INFO L399 AbstractCegarLoop]: === Iteration 17 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:49:20,913 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:49:20,913 INFO L85 PathProgramCache]: Analyzing trace with hash 997958656, now seen corresponding path program 6 times [2024-09-15 18:49:20,913 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:49:20,913 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [433410329] [2024-09-15 18:49:20,913 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:49:20,913 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:49:20,926 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:49:21,059 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-15 18:49:21,060 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:49:21,062 INFO L134 CoverageAnalysis]: Checked inductivity of 26 backedges. 6 proven. 7 refuted. 0 times theorem prover too weak. 13 trivial. 0 not checked. [2024-09-15 18:49:21,062 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:49:21,062 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [433410329] [2024-09-15 18:49:21,062 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [433410329] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 18:49:21,063 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1497802591] [2024-09-15 18:49:21,063 INFO L93 rtionOrderModulation]: Changing assertion order to MIX_INSIDE_OUTSIDE [2024-09-15 18:49:21,063 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:49:21,063 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:49:21,065 INFO L229 MonitoredProcess]: Starting monitored process 16 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:49:21,071 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (16)] Waiting until timeout for monitored process [2024-09-15 18:49:21,119 INFO L228 tOrderPrioritization]: Assert order MIX_INSIDE_OUTSIDE issued 3 check-sat command(s) [2024-09-15 18:49:21,119 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-15 18:49:21,120 INFO L262 TraceCheckSpWp]: Trace formula consists of 119 conjuncts, 14 conjuncts are in the unsatisfiable core [2024-09-15 18:49:21,121 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:49:21,186 INFO L134 CoverageAnalysis]: Checked inductivity of 26 backedges. 4 proven. 8 refuted. 0 times theorem prover too weak. 14 trivial. 0 not checked. [2024-09-15 18:49:21,187 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:49:21,268 INFO L134 CoverageAnalysis]: Checked inductivity of 26 backedges. 4 proven. 8 refuted. 0 times theorem prover too weak. 14 trivial. 0 not checked. [2024-09-15 18:49:21,268 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1497802591] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 18:49:21,268 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-15 18:49:21,268 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [9, 6, 6] total 12 [2024-09-15 18:49:21,268 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [966233496] [2024-09-15 18:49:21,269 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-15 18:49:21,269 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 12 states [2024-09-15 18:49:21,269 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:49:21,269 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 12 interpolants. [2024-09-15 18:49:21,269 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=39, Invalid=93, Unknown=0, NotChecked=0, Total=132 [2024-09-15 18:49:21,270 INFO L87 Difference]: Start difference. First operand 410 states and 611 transitions. Second operand has 12 states, 12 states have (on average 2.8333333333333335) internal successors, (34), 12 states have internal predecessors, (34), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:49:21,812 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:49:21,812 INFO L93 Difference]: Finished difference Result 672 states and 978 transitions. [2024-09-15 18:49:21,813 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2024-09-15 18:49:21,813 INFO L78 Accepts]: Start accepts. Automaton has has 12 states, 12 states have (on average 2.8333333333333335) internal successors, (34), 12 states have internal predecessors, (34), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 30 [2024-09-15 18:49:21,813 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:49:21,815 INFO L225 Difference]: With dead ends: 672 [2024-09-15 18:49:21,815 INFO L226 Difference]: Without dead ends: 642 [2024-09-15 18:49:21,816 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 72 GetRequests, 53 SyntacticMatches, 7 SemanticMatches, 12 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 68 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=52, Invalid=130, Unknown=0, NotChecked=0, Total=182 [2024-09-15 18:49:21,816 INFO L434 NwaCegarLoop]: 37 mSDtfsCounter, 61 mSDsluCounter, 128 mSDsCounter, 0 mSdLazyCounter, 84 mSolverCounterSat, 29 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 61 SdHoareTripleChecker+Valid, 165 SdHoareTripleChecker+Invalid, 113 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 29 IncrementalHoareTripleChecker+Valid, 84 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-15 18:49:21,817 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [61 Valid, 165 Invalid, 113 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [29 Valid, 84 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-15 18:49:21,817 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 642 states. [2024-09-15 18:49:22,036 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 642 to 413. [2024-09-15 18:49:22,037 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 413 states, 408 states have (on average 1.4877450980392157) internal successors, (607), 408 states have internal predecessors, (607), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:49:22,038 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 413 states to 413 states and 611 transitions. [2024-09-15 18:49:22,039 INFO L78 Accepts]: Start accepts. Automaton has 413 states and 611 transitions. Word has length 30 [2024-09-15 18:49:22,039 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:49:22,039 INFO L474 AbstractCegarLoop]: Abstraction has 413 states and 611 transitions. [2024-09-15 18:49:22,039 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 12 states, 12 states have (on average 2.8333333333333335) internal successors, (34), 12 states have internal predecessors, (34), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:49:22,039 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:49:22,039 INFO L276 IsEmpty]: Start isEmpty. Operand 413 states and 611 transitions. [2024-09-15 18:49:22,040 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 32 [2024-09-15 18:49:22,040 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:49:22,040 INFO L216 NwaCegarLoop]: trace histogram [5, 5, 5, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:49:22,055 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (16)] Forceful destruction successful, exit code 0 [2024-09-15 18:49:22,244 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 16 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable16 [2024-09-15 18:49:22,245 INFO L399 AbstractCegarLoop]: === Iteration 18 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:49:22,245 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:49:22,245 INFO L85 PathProgramCache]: Analyzing trace with hash -1736256998, now seen corresponding path program 5 times [2024-09-15 18:49:22,245 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:49:22,245 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1088949256] [2024-09-15 18:49:22,245 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:49:22,245 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:49:22,255 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:49:22,466 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-15 18:49:22,467 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:49:22,468 INFO L134 CoverageAnalysis]: Checked inductivity of 45 backedges. 0 proven. 45 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-15 18:49:22,468 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:49:22,468 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1088949256] [2024-09-15 18:49:22,468 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1088949256] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 18:49:22,468 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [151640486] [2024-09-15 18:49:22,468 INFO L93 rtionOrderModulation]: Changing assertion order to INSIDE_LOOP_FIRST1 [2024-09-15 18:49:22,468 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:49:22,469 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:49:22,470 INFO L229 MonitoredProcess]: Starting monitored process 17 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:49:22,472 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (17)] Waiting until timeout for monitored process [2024-09-15 18:49:22,541 INFO L228 tOrderPrioritization]: Assert order INSIDE_LOOP_FIRST1 issued 4 check-sat command(s) [2024-09-15 18:49:22,541 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-15 18:49:22,543 INFO L262 TraceCheckSpWp]: Trace formula consists of 124 conjuncts, 36 conjuncts are in the unsatisfiable core [2024-09-15 18:49:22,544 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:49:22,678 INFO L134 CoverageAnalysis]: Checked inductivity of 45 backedges. 0 proven. 45 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-15 18:49:22,679 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:49:23,021 INFO L134 CoverageAnalysis]: Checked inductivity of 45 backedges. 0 proven. 30 refuted. 0 times theorem prover too weak. 15 trivial. 0 not checked. [2024-09-15 18:49:23,021 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [151640486] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 18:49:23,021 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-15 18:49:23,022 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [15, 19, 13] total 32 [2024-09-15 18:49:23,022 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1071584346] [2024-09-15 18:49:23,022 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-15 18:49:23,022 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 32 states [2024-09-15 18:49:23,023 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:49:23,024 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 32 interpolants. [2024-09-15 18:49:23,025 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=216, Invalid=776, Unknown=0, NotChecked=0, Total=992 [2024-09-15 18:49:23,025 INFO L87 Difference]: Start difference. First operand 413 states and 611 transitions. Second operand has 32 states, 32 states have (on average 1.78125) internal successors, (57), 32 states have internal predecessors, (57), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:49:25,701 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:49:25,701 INFO L93 Difference]: Finished difference Result 1049 states and 1576 transitions. [2024-09-15 18:49:25,701 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 77 states. [2024-09-15 18:49:25,702 INFO L78 Accepts]: Start accepts. Automaton has has 32 states, 32 states have (on average 1.78125) internal successors, (57), 32 states have internal predecessors, (57), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 31 [2024-09-15 18:49:25,702 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:49:25,705 INFO L225 Difference]: With dead ends: 1049 [2024-09-15 18:49:25,705 INFO L226 Difference]: Without dead ends: 975 [2024-09-15 18:49:25,707 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 136 GetRequests, 53 SyntacticMatches, 0 SemanticMatches, 83 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2098 ImplicationChecksByTransitivity, 1.4s TimeCoverageRelationStatistics Valid=1727, Invalid=5413, Unknown=0, NotChecked=0, Total=7140 [2024-09-15 18:49:25,707 INFO L434 NwaCegarLoop]: 32 mSDtfsCounter, 305 mSDsluCounter, 482 mSDsCounter, 0 mSdLazyCounter, 1683 mSolverCounterSat, 327 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.7s Time, 0 mProtectedPredicate, 0 mProtectedAction, 305 SdHoareTripleChecker+Valid, 514 SdHoareTripleChecker+Invalid, 2010 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 327 IncrementalHoareTripleChecker+Valid, 1683 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.8s IncrementalHoareTripleChecker+Time [2024-09-15 18:49:25,707 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [305 Valid, 514 Invalid, 2010 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [327 Valid, 1683 Invalid, 0 Unknown, 0 Unchecked, 0.8s Time] [2024-09-15 18:49:25,708 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 975 states. [2024-09-15 18:49:25,982 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 975 to 484. [2024-09-15 18:49:25,983 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 484 states, 479 states have (on average 1.4968684759916493) internal successors, (717), 479 states have internal predecessors, (717), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:49:25,984 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 484 states to 484 states and 721 transitions. [2024-09-15 18:49:25,986 INFO L78 Accepts]: Start accepts. Automaton has 484 states and 721 transitions. Word has length 31 [2024-09-15 18:49:25,986 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:49:25,986 INFO L474 AbstractCegarLoop]: Abstraction has 484 states and 721 transitions. [2024-09-15 18:49:25,986 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 32 states, 32 states have (on average 1.78125) internal successors, (57), 32 states have internal predecessors, (57), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:49:25,987 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:49:25,987 INFO L276 IsEmpty]: Start isEmpty. Operand 484 states and 721 transitions. [2024-09-15 18:49:25,988 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2024-09-15 18:49:25,988 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:49:25,988 INFO L216 NwaCegarLoop]: trace histogram [6, 6, 5, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:49:26,001 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (17)] Forceful destruction successful, exit code 0 [2024-09-15 18:49:26,188 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable17,17 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:49:26,189 INFO L399 AbstractCegarLoop]: === Iteration 19 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:49:26,189 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:49:26,189 INFO L85 PathProgramCache]: Analyzing trace with hash -1362411958, now seen corresponding path program 6 times [2024-09-15 18:49:26,189 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:49:26,189 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1269425901] [2024-09-15 18:49:26,189 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:49:26,189 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:49:26,201 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:49:26,394 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-15 18:49:26,394 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:49:26,396 INFO L134 CoverageAnalysis]: Checked inductivity of 57 backedges. 0 proven. 36 refuted. 0 times theorem prover too weak. 21 trivial. 0 not checked. [2024-09-15 18:49:26,396 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:49:26,396 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1269425901] [2024-09-15 18:49:26,396 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1269425901] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 18:49:26,396 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2004127173] [2024-09-15 18:49:26,396 INFO L93 rtionOrderModulation]: Changing assertion order to MIX_INSIDE_OUTSIDE [2024-09-15 18:49:26,396 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:49:26,396 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:49:26,398 INFO L229 MonitoredProcess]: Starting monitored process 18 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:49:26,399 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (18)] Waiting until timeout for monitored process [2024-09-15 18:49:26,438 INFO L228 tOrderPrioritization]: Assert order MIX_INSIDE_OUTSIDE issued 4 check-sat command(s) [2024-09-15 18:49:26,438 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-15 18:49:26,438 INFO L262 TraceCheckSpWp]: Trace formula consists of 134 conjuncts, 22 conjuncts are in the unsatisfiable core [2024-09-15 18:49:26,439 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:49:26,572 INFO L134 CoverageAnalysis]: Checked inductivity of 57 backedges. 10 proven. 25 refuted. 0 times theorem prover too weak. 22 trivial. 0 not checked. [2024-09-15 18:49:26,572 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:49:26,754 INFO L134 CoverageAnalysis]: Checked inductivity of 57 backedges. 10 proven. 25 refuted. 0 times theorem prover too weak. 22 trivial. 0 not checked. [2024-09-15 18:49:26,754 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2004127173] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 18:49:26,754 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-15 18:49:26,754 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [15, 8, 8] total 21 [2024-09-15 18:49:26,754 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [353376336] [2024-09-15 18:49:26,754 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-15 18:49:26,754 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 21 states [2024-09-15 18:49:26,755 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:49:26,755 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 21 interpolants. [2024-09-15 18:49:26,755 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=44, Invalid=376, Unknown=0, NotChecked=0, Total=420 [2024-09-15 18:49:26,755 INFO L87 Difference]: Start difference. First operand 484 states and 721 transitions. Second operand has 21 states, 21 states have (on average 2.0) internal successors, (42), 21 states have internal predecessors, (42), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:49:30,187 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:49:30,188 INFO L93 Difference]: Finished difference Result 1054 states and 1529 transitions. [2024-09-15 18:49:30,188 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 88 states. [2024-09-15 18:49:30,188 INFO L78 Accepts]: Start accepts. Automaton has has 21 states, 21 states have (on average 2.0) internal successors, (42), 21 states have internal predecessors, (42), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 33 [2024-09-15 18:49:30,188 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:49:30,192 INFO L225 Difference]: With dead ends: 1054 [2024-09-15 18:49:30,192 INFO L226 Difference]: Without dead ends: 962 [2024-09-15 18:49:30,195 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 167 GetRequests, 61 SyntacticMatches, 10 SemanticMatches, 96 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2933 ImplicationChecksByTransitivity, 2.0s TimeCoverageRelationStatistics Valid=989, Invalid=8517, Unknown=0, NotChecked=0, Total=9506 [2024-09-15 18:49:30,195 INFO L434 NwaCegarLoop]: 45 mSDtfsCounter, 384 mSDsluCounter, 384 mSDsCounter, 0 mSdLazyCounter, 1105 mSolverCounterSat, 269 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.8s Time, 0 mProtectedPredicate, 0 mProtectedAction, 384 SdHoareTripleChecker+Valid, 429 SdHoareTripleChecker+Invalid, 1374 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 269 IncrementalHoareTripleChecker+Valid, 1105 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.9s IncrementalHoareTripleChecker+Time [2024-09-15 18:49:30,195 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [384 Valid, 429 Invalid, 1374 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [269 Valid, 1105 Invalid, 0 Unknown, 0 Unchecked, 0.9s Time] [2024-09-15 18:49:30,197 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 962 states. [2024-09-15 18:49:30,510 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 962 to 510. [2024-09-15 18:49:30,510 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 510 states, 505 states have (on average 1.491089108910891) internal successors, (753), 505 states have internal predecessors, (753), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:49:30,511 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 510 states to 510 states and 757 transitions. [2024-09-15 18:49:30,513 INFO L78 Accepts]: Start accepts. Automaton has 510 states and 757 transitions. Word has length 33 [2024-09-15 18:49:30,513 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:49:30,513 INFO L474 AbstractCegarLoop]: Abstraction has 510 states and 757 transitions. [2024-09-15 18:49:30,513 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 21 states, 21 states have (on average 2.0) internal successors, (42), 21 states have internal predecessors, (42), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:49:30,513 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:49:30,513 INFO L276 IsEmpty]: Start isEmpty. Operand 510 states and 757 transitions. [2024-09-15 18:49:30,514 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2024-09-15 18:49:30,514 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:49:30,514 INFO L216 NwaCegarLoop]: trace histogram [12, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:49:30,531 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (18)] Ended with exit code 0 [2024-09-15 18:49:30,715 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable18,18 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:49:30,715 INFO L399 AbstractCegarLoop]: === Iteration 20 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:49:30,716 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:49:30,716 INFO L85 PathProgramCache]: Analyzing trace with hash 1741060780, now seen corresponding path program 7 times [2024-09-15 18:49:30,716 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:49:30,716 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [444157485] [2024-09-15 18:49:30,716 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:49:30,716 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:49:30,730 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:49:30,955 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-15 18:49:30,956 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:49:30,958 INFO L134 CoverageAnalysis]: Checked inductivity of 83 backedges. 0 proven. 79 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-15 18:49:30,958 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:49:30,958 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [444157485] [2024-09-15 18:49:30,958 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [444157485] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 18:49:30,959 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [928828044] [2024-09-15 18:49:30,959 INFO L93 rtionOrderModulation]: Changing assertion order to NOT_INCREMENTALLY [2024-09-15 18:49:30,959 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:49:30,960 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:49:30,961 INFO L229 MonitoredProcess]: Starting monitored process 19 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:49:30,963 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (19)] Waiting until timeout for monitored process [2024-09-15 18:49:31,009 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:49:31,015 INFO L262 TraceCheckSpWp]: Trace formula consists of 134 conjuncts, 31 conjuncts are in the unsatisfiable core [2024-09-15 18:49:31,016 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:49:31,051 INFO L134 CoverageAnalysis]: Checked inductivity of 83 backedges. 0 proven. 79 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-15 18:49:31,052 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:49:31,437 INFO L134 CoverageAnalysis]: Checked inductivity of 83 backedges. 0 proven. 79 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-15 18:49:31,438 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [928828044] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 18:49:31,438 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-15 18:49:31,438 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [17, 17, 17] total 33 [2024-09-15 18:49:31,438 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1732766015] [2024-09-15 18:49:31,438 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-15 18:49:31,438 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 33 states [2024-09-15 18:49:31,438 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:49:31,439 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 33 interpolants. [2024-09-15 18:49:31,439 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=238, Invalid=818, Unknown=0, NotChecked=0, Total=1056 [2024-09-15 18:49:31,439 INFO L87 Difference]: Start difference. First operand 510 states and 757 transitions. Second operand has 33 states, 33 states have (on average 1.4545454545454546) internal successors, (48), 33 states have internal predecessors, (48), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:49:43,385 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:49:43,386 INFO L93 Difference]: Finished difference Result 1408 states and 2227 transitions. [2024-09-15 18:49:43,386 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 131 states. [2024-09-15 18:49:43,387 INFO L78 Accepts]: Start accepts. Automaton has has 33 states, 33 states have (on average 1.4545454545454546) internal successors, (48), 33 states have internal predecessors, (48), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 33 [2024-09-15 18:49:43,387 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:49:43,393 INFO L225 Difference]: With dead ends: 1408 [2024-09-15 18:49:43,393 INFO L226 Difference]: Without dead ends: 1236 [2024-09-15 18:49:43,397 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 197 GetRequests, 54 SyntacticMatches, 0 SemanticMatches, 143 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 7998 ImplicationChecksByTransitivity, 8.7s TimeCoverageRelationStatistics Valid=5551, Invalid=15329, Unknown=0, NotChecked=0, Total=20880 [2024-09-15 18:49:43,398 INFO L434 NwaCegarLoop]: 71 mSDtfsCounter, 1663 mSDsluCounter, 972 mSDsCounter, 0 mSdLazyCounter, 1505 mSolverCounterSat, 1110 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 2.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1663 SdHoareTripleChecker+Valid, 1043 SdHoareTripleChecker+Invalid, 2615 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1110 IncrementalHoareTripleChecker+Valid, 1505 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 2.6s IncrementalHoareTripleChecker+Time [2024-09-15 18:49:43,398 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [1663 Valid, 1043 Invalid, 2615 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1110 Valid, 1505 Invalid, 0 Unknown, 0 Unchecked, 2.6s Time] [2024-09-15 18:49:43,403 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1236 states. [2024-09-15 18:49:43,862 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1236 to 561. [2024-09-15 18:49:43,863 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 561 states, 556 states have (on average 1.485611510791367) internal successors, (826), 556 states have internal predecessors, (826), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:49:43,864 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 561 states to 561 states and 830 transitions. [2024-09-15 18:49:43,866 INFO L78 Accepts]: Start accepts. Automaton has 561 states and 830 transitions. Word has length 33 [2024-09-15 18:49:43,866 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:49:43,867 INFO L474 AbstractCegarLoop]: Abstraction has 561 states and 830 transitions. [2024-09-15 18:49:43,867 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 33 states, 33 states have (on average 1.4545454545454546) internal successors, (48), 33 states have internal predecessors, (48), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:49:43,867 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:49:43,867 INFO L276 IsEmpty]: Start isEmpty. Operand 561 states and 830 transitions. [2024-09-15 18:49:43,868 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 35 [2024-09-15 18:49:43,869 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:49:43,869 INFO L216 NwaCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:49:43,887 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (19)] Ended with exit code 0 [2024-09-15 18:49:44,072 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable19,19 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:49:44,073 INFO L399 AbstractCegarLoop]: === Iteration 21 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:49:44,073 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:49:44,073 INFO L85 PathProgramCache]: Analyzing trace with hash -906855808, now seen corresponding path program 8 times [2024-09-15 18:49:44,073 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:49:44,073 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [438538310] [2024-09-15 18:49:44,073 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:49:44,073 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:49:44,099 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:49:44,686 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-15 18:49:44,687 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:49:44,688 INFO L134 CoverageAnalysis]: Checked inductivity of 36 backedges. 0 proven. 30 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-15 18:49:44,688 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:49:44,688 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [438538310] [2024-09-15 18:49:44,688 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [438538310] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 18:49:44,688 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1881219980] [2024-09-15 18:49:44,688 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-15 18:49:44,688 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:49:44,689 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:49:44,689 INFO L229 MonitoredProcess]: Starting monitored process 20 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:49:44,691 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (20)] Waiting until timeout for monitored process [2024-09-15 18:49:44,760 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-15 18:49:44,760 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-15 18:49:44,761 INFO L262 TraceCheckSpWp]: Trace formula consists of 139 conjuncts, 67 conjuncts are in the unsatisfiable core [2024-09-15 18:49:44,763 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:49:45,504 INFO L134 CoverageAnalysis]: Checked inductivity of 36 backedges. 0 proven. 36 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-15 18:49:45,504 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:49:46,051 INFO L134 CoverageAnalysis]: Checked inductivity of 36 backedges. 0 proven. 30 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-15 18:49:46,051 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1881219980] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 18:49:46,051 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-15 18:49:46,051 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [15, 22, 14] total 39 [2024-09-15 18:49:46,051 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1151673919] [2024-09-15 18:49:46,052 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-15 18:49:46,052 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 39 states [2024-09-15 18:49:46,052 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:49:46,052 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 39 interpolants. [2024-09-15 18:49:46,053 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=187, Invalid=1295, Unknown=0, NotChecked=0, Total=1482 [2024-09-15 18:49:46,053 INFO L87 Difference]: Start difference. First operand 561 states and 830 transitions. Second operand has 39 states, 39 states have (on average 1.8974358974358974) internal successors, (74), 37 states have internal predecessors, (74), 4 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:49:49,365 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:49:49,366 INFO L93 Difference]: Finished difference Result 762 states and 1064 transitions. [2024-09-15 18:49:49,366 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 48 states. [2024-09-15 18:49:49,366 INFO L78 Accepts]: Start accepts. Automaton has has 39 states, 39 states have (on average 1.8974358974358974) internal successors, (74), 37 states have internal predecessors, (74), 4 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 34 [2024-09-15 18:49:49,366 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:49:49,370 INFO L225 Difference]: With dead ends: 762 [2024-09-15 18:49:49,370 INFO L226 Difference]: Without dead ends: 644 [2024-09-15 18:49:49,371 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 120 GetRequests, 52 SyntacticMatches, 2 SemanticMatches, 66 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1092 ImplicationChecksByTransitivity, 2.7s TimeCoverageRelationStatistics Valid=535, Invalid=4021, Unknown=0, NotChecked=0, Total=4556 [2024-09-15 18:49:49,371 INFO L434 NwaCegarLoop]: 15 mSDtfsCounter, 74 mSDsluCounter, 207 mSDsCounter, 0 mSdLazyCounter, 834 mSolverCounterSat, 42 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 74 SdHoareTripleChecker+Valid, 222 SdHoareTripleChecker+Invalid, 876 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 42 IncrementalHoareTripleChecker+Valid, 834 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.0s IncrementalHoareTripleChecker+Time [2024-09-15 18:49:49,372 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [74 Valid, 222 Invalid, 876 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [42 Valid, 834 Invalid, 0 Unknown, 0 Unchecked, 1.0s Time] [2024-09-15 18:49:49,372 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 644 states. [2024-09-15 18:49:49,751 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 644 to 532. [2024-09-15 18:49:49,752 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 532 states, 527 states have (on average 1.4743833017077799) internal successors, (777), 527 states have internal predecessors, (777), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:49:49,754 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 532 states to 532 states and 781 transitions. [2024-09-15 18:49:49,755 INFO L78 Accepts]: Start accepts. Automaton has 532 states and 781 transitions. Word has length 34 [2024-09-15 18:49:49,755 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:49:49,755 INFO L474 AbstractCegarLoop]: Abstraction has 532 states and 781 transitions. [2024-09-15 18:49:49,756 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 39 states, 39 states have (on average 1.8974358974358974) internal successors, (74), 37 states have internal predecessors, (74), 4 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:49:49,756 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:49:49,756 INFO L276 IsEmpty]: Start isEmpty. Operand 532 states and 781 transitions. [2024-09-15 18:49:49,757 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 35 [2024-09-15 18:49:49,757 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:49:49,757 INFO L216 NwaCegarLoop]: trace histogram [6, 6, 6, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:49:49,774 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (20)] Forceful destruction successful, exit code 0 [2024-09-15 18:49:49,958 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 20 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable20 [2024-09-15 18:49:49,958 INFO L399 AbstractCegarLoop]: === Iteration 22 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:49:49,958 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:49:49,958 INFO L85 PathProgramCache]: Analyzing trace with hash -1249736321, now seen corresponding path program 7 times [2024-09-15 18:49:49,958 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:49:49,958 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [770717181] [2024-09-15 18:49:49,959 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:49:49,959 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:49:49,972 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:49:50,236 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-15 18:49:50,237 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:49:50,238 INFO L134 CoverageAnalysis]: Checked inductivity of 63 backedges. 0 proven. 63 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-15 18:49:50,238 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:49:50,238 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [770717181] [2024-09-15 18:49:50,238 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [770717181] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 18:49:50,238 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1653984484] [2024-09-15 18:49:50,239 INFO L93 rtionOrderModulation]: Changing assertion order to NOT_INCREMENTALLY [2024-09-15 18:49:50,239 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:49:50,239 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:49:50,241 INFO L229 MonitoredProcess]: Starting monitored process 21 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:49:50,243 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (21)] Waiting until timeout for monitored process [2024-09-15 18:49:50,291 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:49:50,292 INFO L262 TraceCheckSpWp]: Trace formula consists of 139 conjuncts, 14 conjuncts are in the unsatisfiable core [2024-09-15 18:49:50,293 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:49:50,427 INFO L134 CoverageAnalysis]: Checked inductivity of 63 backedges. 0 proven. 21 refuted. 0 times theorem prover too weak. 42 trivial. 0 not checked. [2024-09-15 18:49:50,428 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:49:50,610 INFO L134 CoverageAnalysis]: Checked inductivity of 63 backedges. 0 proven. 21 refuted. 0 times theorem prover too weak. 42 trivial. 0 not checked. [2024-09-15 18:49:50,610 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1653984484] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 18:49:50,610 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-15 18:49:50,610 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [17, 9, 9] total 31 [2024-09-15 18:49:50,610 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [655290265] [2024-09-15 18:49:50,610 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-15 18:49:50,610 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 31 states [2024-09-15 18:49:50,610 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:49:50,611 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 31 interpolants. [2024-09-15 18:49:50,611 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=164, Invalid=766, Unknown=0, NotChecked=0, Total=930 [2024-09-15 18:49:50,611 INFO L87 Difference]: Start difference. First operand 532 states and 781 transitions. Second operand has 31 states, 31 states have (on average 1.7741935483870968) internal successors, (55), 31 states have internal predecessors, (55), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:49:54,944 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:49:54,944 INFO L93 Difference]: Finished difference Result 1793 states and 2748 transitions. [2024-09-15 18:49:54,945 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 92 states. [2024-09-15 18:49:54,945 INFO L78 Accepts]: Start accepts. Automaton has has 31 states, 31 states have (on average 1.7741935483870968) internal successors, (55), 31 states have internal predecessors, (55), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 34 [2024-09-15 18:49:54,945 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:49:54,951 INFO L225 Difference]: With dead ends: 1793 [2024-09-15 18:49:54,951 INFO L226 Difference]: Without dead ends: 1702 [2024-09-15 18:49:54,953 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 181 GetRequests, 86 SyntacticMatches, 0 SemanticMatches, 95 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2284 ImplicationChecksByTransitivity, 1.6s TimeCoverageRelationStatistics Valid=1644, Invalid=7668, Unknown=0, NotChecked=0, Total=9312 [2024-09-15 18:49:54,953 INFO L434 NwaCegarLoop]: 51 mSDtfsCounter, 342 mSDsluCounter, 838 mSDsCounter, 0 mSdLazyCounter, 2729 mSolverCounterSat, 377 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 342 SdHoareTripleChecker+Valid, 889 SdHoareTripleChecker+Invalid, 3106 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 377 IncrementalHoareTripleChecker+Valid, 2729 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.2s IncrementalHoareTripleChecker+Time [2024-09-15 18:49:54,953 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [342 Valid, 889 Invalid, 3106 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [377 Valid, 2729 Invalid, 0 Unknown, 0 Unchecked, 1.2s Time] [2024-09-15 18:49:54,955 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1702 states. [2024-09-15 18:49:55,608 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1702 to 708. [2024-09-15 18:49:55,609 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 708 states, 703 states have (on average 1.496443812233286) internal successors, (1052), 703 states have internal predecessors, (1052), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:49:55,611 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 708 states to 708 states and 1056 transitions. [2024-09-15 18:49:55,612 INFO L78 Accepts]: Start accepts. Automaton has 708 states and 1056 transitions. Word has length 34 [2024-09-15 18:49:55,613 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:49:55,613 INFO L474 AbstractCegarLoop]: Abstraction has 708 states and 1056 transitions. [2024-09-15 18:49:55,613 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 31 states, 31 states have (on average 1.7741935483870968) internal successors, (55), 31 states have internal predecessors, (55), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:49:55,613 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:49:55,613 INFO L276 IsEmpty]: Start isEmpty. Operand 708 states and 1056 transitions. [2024-09-15 18:49:55,614 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 37 [2024-09-15 18:49:55,614 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:49:55,615 INFO L216 NwaCegarLoop]: trace histogram [4, 4, 4, 4, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:49:55,631 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (21)] Forceful destruction successful, exit code 0 [2024-09-15 18:49:55,815 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 21 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable21 [2024-09-15 18:49:55,815 INFO L399 AbstractCegarLoop]: === Iteration 23 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:49:55,815 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:49:55,816 INFO L85 PathProgramCache]: Analyzing trace with hash 572674207, now seen corresponding path program 9 times [2024-09-15 18:49:55,816 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:49:55,816 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [974875087] [2024-09-15 18:49:55,816 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:49:55,816 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:49:55,841 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:49:56,036 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-15 18:49:56,037 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:49:56,038 INFO L134 CoverageAnalysis]: Checked inductivity of 46 backedges. 0 proven. 13 refuted. 0 times theorem prover too weak. 33 trivial. 0 not checked. [2024-09-15 18:49:56,038 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:49:56,038 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [974875087] [2024-09-15 18:49:56,039 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [974875087] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 18:49:56,039 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1659635246] [2024-09-15 18:49:56,039 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-09-15 18:49:56,039 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:49:56,039 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:49:56,041 INFO L229 MonitoredProcess]: Starting monitored process 22 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:49:56,042 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (22)] Waiting until timeout for monitored process [2024-09-15 18:49:56,098 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 3 check-sat command(s) [2024-09-15 18:49:56,098 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-15 18:49:56,100 INFO L262 TraceCheckSpWp]: Trace formula consists of 149 conjuncts, 18 conjuncts are in the unsatisfiable core [2024-09-15 18:49:56,100 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:49:56,212 INFO L134 CoverageAnalysis]: Checked inductivity of 46 backedges. 6 proven. 14 refuted. 0 times theorem prover too weak. 26 trivial. 0 not checked. [2024-09-15 18:49:56,212 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:49:56,329 INFO L134 CoverageAnalysis]: Checked inductivity of 46 backedges. 6 proven. 14 refuted. 0 times theorem prover too weak. 26 trivial. 0 not checked. [2024-09-15 18:49:56,329 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1659635246] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 18:49:56,329 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-15 18:49:56,329 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [9, 7, 7] total 14 [2024-09-15 18:49:56,329 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1159303157] [2024-09-15 18:49:56,330 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-15 18:49:56,330 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 14 states [2024-09-15 18:49:56,330 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:49:56,330 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 14 interpolants. [2024-09-15 18:49:56,330 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=58, Invalid=124, Unknown=0, NotChecked=0, Total=182 [2024-09-15 18:49:56,331 INFO L87 Difference]: Start difference. First operand 708 states and 1056 transitions. Second operand has 14 states, 14 states have (on average 2.5714285714285716) internal successors, (36), 14 states have internal predecessors, (36), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:50:01,034 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-15 18:50:02,470 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:50:02,470 INFO L93 Difference]: Finished difference Result 1782 states and 2675 transitions. [2024-09-15 18:50:02,470 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 18 states. [2024-09-15 18:50:02,470 INFO L78 Accepts]: Start accepts. Automaton has has 14 states, 14 states have (on average 2.5714285714285716) internal successors, (36), 14 states have internal predecessors, (36), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 36 [2024-09-15 18:50:02,471 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:50:02,476 INFO L225 Difference]: With dead ends: 1782 [2024-09-15 18:50:02,476 INFO L226 Difference]: Without dead ends: 1518 [2024-09-15 18:50:02,477 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 93 GetRequests, 64 SyntacticMatches, 9 SemanticMatches, 20 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 78 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=148, Invalid=314, Unknown=0, NotChecked=0, Total=462 [2024-09-15 18:50:02,478 INFO L434 NwaCegarLoop]: 44 mSDtfsCounter, 188 mSDsluCounter, 194 mSDsCounter, 0 mSdLazyCounter, 108 mSolverCounterSat, 85 mSolverCounterUnsat, 1 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 4.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 188 SdHoareTripleChecker+Valid, 238 SdHoareTripleChecker+Invalid, 194 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 85 IncrementalHoareTripleChecker+Valid, 108 IncrementalHoareTripleChecker+Invalid, 1 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 4.2s IncrementalHoareTripleChecker+Time [2024-09-15 18:50:02,478 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [188 Valid, 238 Invalid, 194 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [85 Valid, 108 Invalid, 1 Unknown, 0 Unchecked, 4.2s Time] [2024-09-15 18:50:02,479 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1518 states. [2024-09-15 18:50:03,217 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1518 to 875. [2024-09-15 18:50:03,219 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 875 states, 870 states have (on average 1.5114942528735633) internal successors, (1315), 870 states have internal predecessors, (1315), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:50:03,221 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 875 states to 875 states and 1319 transitions. [2024-09-15 18:50:03,226 INFO L78 Accepts]: Start accepts. Automaton has 875 states and 1319 transitions. Word has length 36 [2024-09-15 18:50:03,229 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:50:03,229 INFO L474 AbstractCegarLoop]: Abstraction has 875 states and 1319 transitions. [2024-09-15 18:50:03,229 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 14 states, 14 states have (on average 2.5714285714285716) internal successors, (36), 14 states have internal predecessors, (36), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:50:03,230 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:50:03,230 INFO L276 IsEmpty]: Start isEmpty. Operand 875 states and 1319 transitions. [2024-09-15 18:50:03,231 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 38 [2024-09-15 18:50:03,231 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:50:03,232 INFO L216 NwaCegarLoop]: trace histogram [7, 7, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:50:03,250 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (22)] Ended with exit code 0 [2024-09-15 18:50:03,435 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable22,22 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:50:03,436 INFO L399 AbstractCegarLoop]: === Iteration 24 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:50:03,436 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:50:03,436 INFO L85 PathProgramCache]: Analyzing trace with hash 1567952235, now seen corresponding path program 10 times [2024-09-15 18:50:03,436 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:50:03,436 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [300052553] [2024-09-15 18:50:03,436 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:50:03,436 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:50:03,448 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:50:03,610 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-15 18:50:03,611 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:50:03,613 INFO L134 CoverageAnalysis]: Checked inductivity of 66 backedges. 0 proven. 31 refuted. 0 times theorem prover too weak. 35 trivial. 0 not checked. [2024-09-15 18:50:03,613 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:50:03,613 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [300052553] [2024-09-15 18:50:03,613 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [300052553] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 18:50:03,614 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1807204746] [2024-09-15 18:50:03,614 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2024-09-15 18:50:03,614 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:50:03,614 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:50:03,616 INFO L229 MonitoredProcess]: Starting monitored process 23 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:50:03,618 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (23)] Waiting until timeout for monitored process [2024-09-15 18:50:03,666 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2024-09-15 18:50:03,666 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-15 18:50:03,667 INFO L262 TraceCheckSpWp]: Trace formula consists of 154 conjuncts, 28 conjuncts are in the unsatisfiable core [2024-09-15 18:50:03,668 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:50:03,716 INFO L134 CoverageAnalysis]: Checked inductivity of 66 backedges. 0 proven. 31 refuted. 0 times theorem prover too weak. 35 trivial. 0 not checked. [2024-09-15 18:50:03,716 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:50:03,828 INFO L134 CoverageAnalysis]: Checked inductivity of 66 backedges. 15 proven. 6 refuted. 0 times theorem prover too weak. 45 trivial. 0 not checked. [2024-09-15 18:50:03,828 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1807204746] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 18:50:03,828 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-15 18:50:03,828 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [13, 13, 8] total 22 [2024-09-15 18:50:03,828 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [886390306] [2024-09-15 18:50:03,828 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-15 18:50:03,829 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 22 states [2024-09-15 18:50:03,829 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:50:03,829 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 22 interpolants. [2024-09-15 18:50:03,829 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=78, Invalid=384, Unknown=0, NotChecked=0, Total=462 [2024-09-15 18:50:03,829 INFO L87 Difference]: Start difference. First operand 875 states and 1319 transitions. Second operand has 22 states, 22 states have (on average 1.7727272727272727) internal successors, (39), 22 states have internal predecessors, (39), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:50:05,912 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:50:05,912 INFO L93 Difference]: Finished difference Result 1190 states and 1698 transitions. [2024-09-15 18:50:05,913 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 50 states. [2024-09-15 18:50:05,913 INFO L78 Accepts]: Start accepts. Automaton has has 22 states, 22 states have (on average 1.7727272727272727) internal successors, (39), 22 states have internal predecessors, (39), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 37 [2024-09-15 18:50:05,913 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:50:05,916 INFO L225 Difference]: With dead ends: 1190 [2024-09-15 18:50:05,916 INFO L226 Difference]: Without dead ends: 1017 [2024-09-15 18:50:05,917 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 120 GetRequests, 69 SyntacticMatches, 0 SemanticMatches, 51 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 603 ImplicationChecksByTransitivity, 0.8s TimeCoverageRelationStatistics Valid=317, Invalid=2439, Unknown=0, NotChecked=0, Total=2756 [2024-09-15 18:50:05,917 INFO L434 NwaCegarLoop]: 45 mSDtfsCounter, 81 mSDsluCounter, 369 mSDsCounter, 0 mSdLazyCounter, 721 mSolverCounterSat, 100 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 81 SdHoareTripleChecker+Valid, 414 SdHoareTripleChecker+Invalid, 821 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 100 IncrementalHoareTripleChecker+Valid, 721 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2024-09-15 18:50:05,918 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [81 Valid, 414 Invalid, 821 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [100 Valid, 721 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2024-09-15 18:50:05,918 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1017 states. [2024-09-15 18:50:06,805 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1017 to 859. [2024-09-15 18:50:06,806 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 859 states, 854 states have (on average 1.4976580796252927) internal successors, (1279), 854 states have internal predecessors, (1279), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:50:06,808 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 859 states to 859 states and 1283 transitions. [2024-09-15 18:50:06,810 INFO L78 Accepts]: Start accepts. Automaton has 859 states and 1283 transitions. Word has length 37 [2024-09-15 18:50:06,810 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:50:06,810 INFO L474 AbstractCegarLoop]: Abstraction has 859 states and 1283 transitions. [2024-09-15 18:50:06,810 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 22 states, 22 states have (on average 1.7727272727272727) internal successors, (39), 22 states have internal predecessors, (39), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:50:06,810 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:50:06,811 INFO L276 IsEmpty]: Start isEmpty. Operand 859 states and 1283 transitions. [2024-09-15 18:50:06,812 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 40 [2024-09-15 18:50:06,812 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:50:06,812 INFO L216 NwaCegarLoop]: trace histogram [8, 7, 7, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:50:06,829 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (23)] Ended with exit code 0 [2024-09-15 18:50:07,013 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 23 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable23 [2024-09-15 18:50:07,013 INFO L399 AbstractCegarLoop]: === Iteration 25 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:50:07,013 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:50:07,013 INFO L85 PathProgramCache]: Analyzing trace with hash 1064696843, now seen corresponding path program 2 times [2024-09-15 18:50:07,013 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:50:07,014 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1779916766] [2024-09-15 18:50:07,014 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:50:07,014 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:50:07,029 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:50:07,292 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-15 18:50:07,293 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:50:07,294 INFO L134 CoverageAnalysis]: Checked inductivity of 93 backedges. 8 proven. 56 refuted. 0 times theorem prover too weak. 29 trivial. 0 not checked. [2024-09-15 18:50:07,294 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:50:07,294 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1779916766] [2024-09-15 18:50:07,294 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1779916766] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 18:50:07,294 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [133366416] [2024-09-15 18:50:07,294 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-15 18:50:07,295 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:50:07,295 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:50:07,297 INFO L229 MonitoredProcess]: Starting monitored process 24 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:50:07,298 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (24)] Waiting until timeout for monitored process [2024-09-15 18:50:07,350 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-15 18:50:07,350 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-15 18:50:07,352 INFO L262 TraceCheckSpWp]: Trace formula consists of 164 conjuncts, 52 conjuncts are in the unsatisfiable core [2024-09-15 18:50:07,354 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:50:07,458 INFO L134 CoverageAnalysis]: Checked inductivity of 93 backedges. 0 proven. 93 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-15 18:50:07,459 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:50:07,656 INFO L134 CoverageAnalysis]: Checked inductivity of 93 backedges. 18 proven. 44 refuted. 0 times theorem prover too weak. 31 trivial. 0 not checked. [2024-09-15 18:50:07,657 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [133366416] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 18:50:07,657 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-15 18:50:07,657 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [18, 19, 10] total 27 [2024-09-15 18:50:07,657 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [413350525] [2024-09-15 18:50:07,657 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-15 18:50:07,657 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 27 states [2024-09-15 18:50:07,657 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:50:07,658 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 27 interpolants. [2024-09-15 18:50:07,658 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=120, Invalid=582, Unknown=0, NotChecked=0, Total=702 [2024-09-15 18:50:07,658 INFO L87 Difference]: Start difference. First operand 859 states and 1283 transitions. Second operand has 27 states, 27 states have (on average 2.4074074074074074) internal successors, (65), 27 states have internal predecessors, (65), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:50:12,324 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:50:12,324 INFO L93 Difference]: Finished difference Result 1708 states and 2444 transitions. [2024-09-15 18:50:12,325 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 96 states. [2024-09-15 18:50:12,325 INFO L78 Accepts]: Start accepts. Automaton has has 27 states, 27 states have (on average 2.4074074074074074) internal successors, (65), 27 states have internal predecessors, (65), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 39 [2024-09-15 18:50:12,325 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:50:12,330 INFO L225 Difference]: With dead ends: 1708 [2024-09-15 18:50:12,330 INFO L226 Difference]: Without dead ends: 1586 [2024-09-15 18:50:12,333 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 204 GetRequests, 101 SyntacticMatches, 2 SemanticMatches, 101 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3092 ImplicationChecksByTransitivity, 1.6s TimeCoverageRelationStatistics Valid=2076, Invalid=8430, Unknown=0, NotChecked=0, Total=10506 [2024-09-15 18:50:12,334 INFO L434 NwaCegarLoop]: 40 mSDtfsCounter, 371 mSDsluCounter, 644 mSDsCounter, 0 mSdLazyCounter, 2744 mSolverCounterSat, 283 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 371 SdHoareTripleChecker+Valid, 684 SdHoareTripleChecker+Invalid, 3027 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 283 IncrementalHoareTripleChecker+Valid, 2744 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.2s IncrementalHoareTripleChecker+Time [2024-09-15 18:50:12,334 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [371 Valid, 684 Invalid, 3027 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [283 Valid, 2744 Invalid, 0 Unknown, 0 Unchecked, 1.2s Time] [2024-09-15 18:50:12,336 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1586 states. [2024-09-15 18:50:13,234 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1586 to 936. [2024-09-15 18:50:13,235 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 936 states, 931 states have (on average 1.4951664876476907) internal successors, (1392), 931 states have internal predecessors, (1392), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:50:13,237 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 936 states to 936 states and 1396 transitions. [2024-09-15 18:50:13,239 INFO L78 Accepts]: Start accepts. Automaton has 936 states and 1396 transitions. Word has length 39 [2024-09-15 18:50:13,240 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:50:13,240 INFO L474 AbstractCegarLoop]: Abstraction has 936 states and 1396 transitions. [2024-09-15 18:50:13,240 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 27 states, 27 states have (on average 2.4074074074074074) internal successors, (65), 27 states have internal predecessors, (65), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:50:13,240 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:50:13,240 INFO L276 IsEmpty]: Start isEmpty. Operand 936 states and 1396 transitions. [2024-09-15 18:50:13,242 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 40 [2024-09-15 18:50:13,242 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:50:13,242 INFO L216 NwaCegarLoop]: trace histogram [13, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:50:13,254 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (24)] Ended with exit code 0 [2024-09-15 18:50:13,442 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 24 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable24 [2024-09-15 18:50:13,442 INFO L399 AbstractCegarLoop]: === Iteration 26 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:50:13,443 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:50:13,443 INFO L85 PathProgramCache]: Analyzing trace with hash 1900096203, now seen corresponding path program 11 times [2024-09-15 18:50:13,443 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:50:13,443 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [516839541] [2024-09-15 18:50:13,443 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:50:13,443 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:50:13,456 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:50:13,701 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-15 18:50:13,702 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:50:13,703 INFO L134 CoverageAnalysis]: Checked inductivity of 106 backedges. 0 proven. 94 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2024-09-15 18:50:13,704 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:50:13,704 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [516839541] [2024-09-15 18:50:13,704 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [516839541] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 18:50:13,704 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [16182645] [2024-09-15 18:50:13,704 INFO L93 rtionOrderModulation]: Changing assertion order to INSIDE_LOOP_FIRST1 [2024-09-15 18:50:13,704 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:50:13,704 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:50:13,705 INFO L229 MonitoredProcess]: Starting monitored process 25 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:50:13,706 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (25)] Waiting until timeout for monitored process [2024-09-15 18:50:13,780 INFO L228 tOrderPrioritization]: Assert order INSIDE_LOOP_FIRST1 issued 8 check-sat command(s) [2024-09-15 18:50:13,780 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-15 18:50:13,781 INFO L262 TraceCheckSpWp]: Trace formula consists of 164 conjuncts, 41 conjuncts are in the unsatisfiable core [2024-09-15 18:50:13,782 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:50:13,816 INFO L134 CoverageAnalysis]: Checked inductivity of 106 backedges. 0 proven. 100 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-15 18:50:13,817 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:50:14,174 INFO L134 CoverageAnalysis]: Checked inductivity of 106 backedges. 0 proven. 100 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-15 18:50:14,175 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [16182645] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 18:50:14,175 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-15 18:50:14,175 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [19, 16, 16] total 33 [2024-09-15 18:50:14,175 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1508649216] [2024-09-15 18:50:14,175 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-15 18:50:14,175 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 33 states [2024-09-15 18:50:14,175 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:50:14,176 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 33 interpolants. [2024-09-15 18:50:14,176 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=258, Invalid=798, Unknown=0, NotChecked=0, Total=1056 [2024-09-15 18:50:14,177 INFO L87 Difference]: Start difference. First operand 936 states and 1396 transitions. Second operand has 33 states, 33 states have (on average 2.242424242424242) internal successors, (74), 33 states have internal predecessors, (74), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:50:24,085 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:50:24,085 INFO L93 Difference]: Finished difference Result 2428 states and 3749 transitions. [2024-09-15 18:50:24,086 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 72 states. [2024-09-15 18:50:24,086 INFO L78 Accepts]: Start accepts. Automaton has has 33 states, 33 states have (on average 2.242424242424242) internal successors, (74), 33 states have internal predecessors, (74), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 39 [2024-09-15 18:50:24,086 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:50:24,092 INFO L225 Difference]: With dead ends: 2428 [2024-09-15 18:50:24,092 INFO L226 Difference]: Without dead ends: 2051 [2024-09-15 18:50:24,094 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 153 GetRequests, 68 SyntacticMatches, 0 SemanticMatches, 85 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1744 ImplicationChecksByTransitivity, 5.4s TimeCoverageRelationStatistics Valid=2356, Invalid=5126, Unknown=0, NotChecked=0, Total=7482 [2024-09-15 18:50:24,094 INFO L434 NwaCegarLoop]: 77 mSDtfsCounter, 1263 mSDsluCounter, 1119 mSDsCounter, 0 mSdLazyCounter, 1271 mSolverCounterSat, 864 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 2.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1263 SdHoareTripleChecker+Valid, 1196 SdHoareTripleChecker+Invalid, 2135 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 864 IncrementalHoareTripleChecker+Valid, 1271 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 2.5s IncrementalHoareTripleChecker+Time [2024-09-15 18:50:24,094 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [1263 Valid, 1196 Invalid, 2135 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [864 Valid, 1271 Invalid, 0 Unknown, 0 Unchecked, 2.5s Time] [2024-09-15 18:50:24,096 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 2051 states. [2024-09-15 18:50:25,105 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 2051 to 1033. [2024-09-15 18:50:25,106 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1033 states, 1028 states have (on average 1.4990272373540856) internal successors, (1541), 1028 states have internal predecessors, (1541), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:50:25,108 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1033 states to 1033 states and 1545 transitions. [2024-09-15 18:50:25,110 INFO L78 Accepts]: Start accepts. Automaton has 1033 states and 1545 transitions. Word has length 39 [2024-09-15 18:50:25,110 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:50:25,110 INFO L474 AbstractCegarLoop]: Abstraction has 1033 states and 1545 transitions. [2024-09-15 18:50:25,110 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 33 states, 33 states have (on average 2.242424242424242) internal successors, (74), 33 states have internal predecessors, (74), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:50:25,110 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:50:25,110 INFO L276 IsEmpty]: Start isEmpty. Operand 1033 states and 1545 transitions. [2024-09-15 18:50:25,111 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 41 [2024-09-15 18:50:25,111 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:50:25,111 INFO L216 NwaCegarLoop]: trace histogram [4, 4, 4, 4, 4, 4, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:50:25,124 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (25)] Forceful destruction successful, exit code 0 [2024-09-15 18:50:25,312 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 25 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable25 [2024-09-15 18:50:25,312 INFO L399 AbstractCegarLoop]: === Iteration 27 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:50:25,312 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:50:25,312 INFO L85 PathProgramCache]: Analyzing trace with hash 171159391, now seen corresponding path program 12 times [2024-09-15 18:50:25,312 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:50:25,313 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [371523290] [2024-09-15 18:50:25,313 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:50:25,313 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:50:25,337 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:50:25,981 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-15 18:50:25,982 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:50:25,983 INFO L134 CoverageAnalysis]: Checked inductivity of 60 backedges. 0 proven. 50 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2024-09-15 18:50:25,983 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:50:25,983 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [371523290] [2024-09-15 18:50:25,983 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [371523290] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 18:50:25,983 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1682439881] [2024-09-15 18:50:25,983 INFO L93 rtionOrderModulation]: Changing assertion order to MIX_INSIDE_OUTSIDE [2024-09-15 18:50:25,983 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:50:25,983 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:50:25,985 INFO L229 MonitoredProcess]: Starting monitored process 26 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:50:25,986 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (26)] Waiting until timeout for monitored process [2024-09-15 18:50:26,075 INFO L228 tOrderPrioritization]: Assert order MIX_INSIDE_OUTSIDE issued 3 check-sat command(s) [2024-09-15 18:50:26,075 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-15 18:50:26,077 INFO L262 TraceCheckSpWp]: Trace formula consists of 169 conjuncts, 80 conjuncts are in the unsatisfiable core [2024-09-15 18:50:26,078 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:50:27,188 INFO L134 CoverageAnalysis]: Checked inductivity of 60 backedges. 0 proven. 60 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-15 18:50:27,188 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:50:28,566 INFO L134 CoverageAnalysis]: Checked inductivity of 60 backedges. 0 proven. 60 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-15 18:50:28,566 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1682439881] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 18:50:28,566 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-15 18:50:28,566 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [17, 28, 27] total 58 [2024-09-15 18:50:28,566 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [241210116] [2024-09-15 18:50:28,566 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-15 18:50:28,567 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 58 states [2024-09-15 18:50:28,567 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:50:28,567 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 58 interpolants. [2024-09-15 18:50:28,568 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=460, Invalid=2846, Unknown=0, NotChecked=0, Total=3306 [2024-09-15 18:50:28,568 INFO L87 Difference]: Start difference. First operand 1033 states and 1545 transitions. Second operand has 58 states, 58 states have (on average 1.5172413793103448) internal successors, (88), 56 states have internal predecessors, (88), 3 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:50:38,273 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:50:38,274 INFO L93 Difference]: Finished difference Result 1535 states and 2128 transitions. [2024-09-15 18:50:38,274 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 66 states. [2024-09-15 18:50:38,274 INFO L78 Accepts]: Start accepts. Automaton has has 58 states, 58 states have (on average 1.5172413793103448) internal successors, (88), 56 states have internal predecessors, (88), 3 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 40 [2024-09-15 18:50:38,274 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:50:38,279 INFO L225 Difference]: With dead ends: 1535 [2024-09-15 18:50:38,279 INFO L226 Difference]: Without dead ends: 1504 [2024-09-15 18:50:38,280 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 146 GetRequests, 50 SyntacticMatches, 2 SemanticMatches, 94 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2303 ImplicationChecksByTransitivity, 8.0s TimeCoverageRelationStatistics Valid=1308, Invalid=7812, Unknown=0, NotChecked=0, Total=9120 [2024-09-15 18:50:38,281 INFO L434 NwaCegarLoop]: 16 mSDtfsCounter, 120 mSDsluCounter, 337 mSDsCounter, 0 mSdLazyCounter, 1355 mSolverCounterSat, 205 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 120 SdHoareTripleChecker+Valid, 353 SdHoareTripleChecker+Invalid, 1560 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 205 IncrementalHoareTripleChecker+Valid, 1355 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.4s IncrementalHoareTripleChecker+Time [2024-09-15 18:50:38,281 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [120 Valid, 353 Invalid, 1560 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [205 Valid, 1355 Invalid, 0 Unknown, 0 Unchecked, 1.4s Time] [2024-09-15 18:50:38,282 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1504 states. [2024-09-15 18:50:39,334 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1504 to 1017. [2024-09-15 18:50:39,335 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1017 states, 1012 states have (on average 1.5059288537549407) internal successors, (1524), 1012 states have internal predecessors, (1524), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:50:39,337 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1017 states to 1017 states and 1528 transitions. [2024-09-15 18:50:39,339 INFO L78 Accepts]: Start accepts. Automaton has 1017 states and 1528 transitions. Word has length 40 [2024-09-15 18:50:39,339 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:50:39,339 INFO L474 AbstractCegarLoop]: Abstraction has 1017 states and 1528 transitions. [2024-09-15 18:50:39,339 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 58 states, 58 states have (on average 1.5172413793103448) internal successors, (88), 56 states have internal predecessors, (88), 3 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:50:39,339 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:50:39,339 INFO L276 IsEmpty]: Start isEmpty. Operand 1017 states and 1528 transitions. [2024-09-15 18:50:39,341 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 42 [2024-09-15 18:50:39,341 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:50:39,341 INFO L216 NwaCegarLoop]: trace histogram [8, 8, 8, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:50:39,360 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (26)] Forceful destruction successful, exit code 0 [2024-09-15 18:50:39,541 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 26 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable26 [2024-09-15 18:50:39,542 INFO L399 AbstractCegarLoop]: === Iteration 28 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:50:39,542 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:50:39,542 INFO L85 PathProgramCache]: Analyzing trace with hash -1585091015, now seen corresponding path program 3 times [2024-09-15 18:50:39,542 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:50:39,542 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [595904363] [2024-09-15 18:50:39,543 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:50:39,543 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:50:39,555 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:50:39,940 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-15 18:50:39,941 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:50:39,943 INFO L134 CoverageAnalysis]: Checked inductivity of 109 backedges. 0 proven. 109 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-15 18:50:39,943 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:50:39,943 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [595904363] [2024-09-15 18:50:39,943 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [595904363] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 18:50:39,943 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1775656275] [2024-09-15 18:50:39,943 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-09-15 18:50:39,943 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:50:39,944 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:50:39,945 INFO L229 MonitoredProcess]: Starting monitored process 27 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:50:39,948 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (27)] Waiting until timeout for monitored process [2024-09-15 18:50:40,048 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 5 check-sat command(s) [2024-09-15 18:50:40,048 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-15 18:50:40,051 INFO L262 TraceCheckSpWp]: Trace formula consists of 174 conjuncts, 34 conjuncts are in the unsatisfiable core [2024-09-15 18:50:40,052 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:50:40,365 INFO L134 CoverageAnalysis]: Checked inductivity of 109 backedges. 8 proven. 64 refuted. 0 times theorem prover too weak. 37 trivial. 0 not checked. [2024-09-15 18:50:40,365 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:50:40,751 INFO L134 CoverageAnalysis]: Checked inductivity of 109 backedges. 8 proven. 64 refuted. 0 times theorem prover too weak. 37 trivial. 0 not checked. [2024-09-15 18:50:40,752 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1775656275] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 18:50:40,752 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-15 18:50:40,752 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [21, 11, 11] total 30 [2024-09-15 18:50:40,752 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [244461844] [2024-09-15 18:50:40,752 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-15 18:50:40,752 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 30 states [2024-09-15 18:50:40,752 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:50:40,753 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 30 interpolants. [2024-09-15 18:50:40,753 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=59, Invalid=811, Unknown=0, NotChecked=0, Total=870 [2024-09-15 18:50:40,753 INFO L87 Difference]: Start difference. First operand 1017 states and 1528 transitions. Second operand has 30 states, 30 states have (on average 2.066666666666667) internal successors, (62), 30 states have internal predecessors, (62), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:51:07,830 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:51:07,831 INFO L93 Difference]: Finished difference Result 2849 states and 3992 transitions. [2024-09-15 18:51:07,831 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 398 states. [2024-09-15 18:51:07,831 INFO L78 Accepts]: Start accepts. Automaton has has 30 states, 30 states have (on average 2.066666666666667) internal successors, (62), 30 states have internal predecessors, (62), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 41 [2024-09-15 18:51:07,832 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:51:07,843 INFO L225 Difference]: With dead ends: 2849 [2024-09-15 18:51:07,843 INFO L226 Difference]: Without dead ends: 2689 [2024-09-15 18:51:07,852 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 506 GetRequests, 69 SyntacticMatches, 16 SemanticMatches, 421 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 77062 ImplicationChecksByTransitivity, 17.1s TimeCoverageRelationStatistics Valid=7170, Invalid=171336, Unknown=0, NotChecked=0, Total=178506 [2024-09-15 18:51:07,853 INFO L434 NwaCegarLoop]: 36 mSDtfsCounter, 1012 mSDsluCounter, 639 mSDsCounter, 0 mSdLazyCounter, 5681 mSolverCounterSat, 1123 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 4.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1012 SdHoareTripleChecker+Valid, 675 SdHoareTripleChecker+Invalid, 6804 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1123 IncrementalHoareTripleChecker+Valid, 5681 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 4.4s IncrementalHoareTripleChecker+Time [2024-09-15 18:51:07,853 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [1012 Valid, 675 Invalid, 6804 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1123 Valid, 5681 Invalid, 0 Unknown, 0 Unchecked, 4.4s Time] [2024-09-15 18:51:07,855 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 2689 states. [2024-09-15 18:51:09,262 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 2689 to 1022. [2024-09-15 18:51:09,263 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1022 states, 1017 states have (on average 1.4926253687315634) internal successors, (1518), 1017 states have internal predecessors, (1518), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:51:09,264 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1022 states to 1022 states and 1522 transitions. [2024-09-15 18:51:09,266 INFO L78 Accepts]: Start accepts. Automaton has 1022 states and 1522 transitions. Word has length 41 [2024-09-15 18:51:09,266 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:51:09,266 INFO L474 AbstractCegarLoop]: Abstraction has 1022 states and 1522 transitions. [2024-09-15 18:51:09,267 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 30 states, 30 states have (on average 2.066666666666667) internal successors, (62), 30 states have internal predecessors, (62), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:51:09,267 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:51:09,267 INFO L276 IsEmpty]: Start isEmpty. Operand 1022 states and 1522 transitions. [2024-09-15 18:51:09,269 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 43 [2024-09-15 18:51:09,269 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:51:09,269 INFO L216 NwaCegarLoop]: trace histogram [5, 5, 5, 5, 3, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:51:09,286 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (27)] Ended with exit code 0 [2024-09-15 18:51:09,469 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable27,27 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:51:09,470 INFO L399 AbstractCegarLoop]: === Iteration 29 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:51:09,470 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:51:09,470 INFO L85 PathProgramCache]: Analyzing trace with hash 1706754144, now seen corresponding path program 13 times [2024-09-15 18:51:09,470 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:51:09,470 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1871776396] [2024-09-15 18:51:09,471 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:51:09,471 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:51:09,498 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:51:09,732 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-15 18:51:09,732 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:51:09,733 INFO L134 CoverageAnalysis]: Checked inductivity of 72 backedges. 15 proven. 21 refuted. 0 times theorem prover too weak. 36 trivial. 0 not checked. [2024-09-15 18:51:09,733 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:51:09,733 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1871776396] [2024-09-15 18:51:09,734 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1871776396] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 18:51:09,734 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1816846030] [2024-09-15 18:51:09,734 INFO L93 rtionOrderModulation]: Changing assertion order to NOT_INCREMENTALLY [2024-09-15 18:51:09,734 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:51:09,734 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:51:09,735 INFO L229 MonitoredProcess]: Starting monitored process 28 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:51:09,736 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (28)] Waiting until timeout for monitored process [2024-09-15 18:51:09,785 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:51:09,786 INFO L262 TraceCheckSpWp]: Trace formula consists of 179 conjuncts, 30 conjuncts are in the unsatisfiable core [2024-09-15 18:51:09,787 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:51:09,947 INFO L134 CoverageAnalysis]: Checked inductivity of 72 backedges. 0 proven. 21 refuted. 0 times theorem prover too weak. 51 trivial. 0 not checked. [2024-09-15 18:51:09,948 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:51:10,035 INFO L134 CoverageAnalysis]: Checked inductivity of 72 backedges. 0 proven. 21 refuted. 0 times theorem prover too weak. 51 trivial. 0 not checked. [2024-09-15 18:51:10,035 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1816846030] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 18:51:10,035 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-15 18:51:10,035 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [13, 8, 8] total 24 [2024-09-15 18:51:10,035 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [413729643] [2024-09-15 18:51:10,036 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-15 18:51:10,036 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 24 states [2024-09-15 18:51:10,036 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:51:10,036 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 24 interpolants. [2024-09-15 18:51:10,036 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=167, Invalid=385, Unknown=0, NotChecked=0, Total=552 [2024-09-15 18:51:10,037 INFO L87 Difference]: Start difference. First operand 1022 states and 1522 transitions. Second operand has 24 states, 24 states have (on average 2.375) internal successors, (57), 24 states have internal predecessors, (57), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:51:26,176 WARN L293 SmtUtils]: Spent 16.04s on a formula simplification that was a NOOP. DAG size: 26 (called from [L 391] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2024-09-15 18:51:38,228 WARN L293 SmtUtils]: Spent 12.02s on a formula simplification that was a NOOP. DAG size: 24 (called from [L 391] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2024-09-15 18:51:46,285 WARN L293 SmtUtils]: Spent 8.02s on a formula simplification that was a NOOP. DAG size: 20 (called from [L 391] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2024-09-15 18:52:02,512 WARN L293 SmtUtils]: Spent 12.03s on a formula simplification that was a NOOP. DAG size: 22 (called from [L 391] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2024-09-15 18:52:10,607 WARN L293 SmtUtils]: Spent 8.01s on a formula simplification that was a NOOP. DAG size: 18 (called from [L 391] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2024-09-15 18:52:23,008 WARN L293 SmtUtils]: Spent 8.02s on a formula simplification that was a NOOP. DAG size: 20 (called from [L 391] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2024-09-15 18:52:35,822 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-15 18:52:40,020 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-15 18:52:44,286 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-15 18:52:47,616 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-15 18:52:47,616 INFO L93 Difference]: Finished difference Result 2885 states and 4277 transitions. [2024-09-15 18:52:47,617 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 42 states. [2024-09-15 18:52:47,617 INFO L78 Accepts]: Start accepts. Automaton has has 24 states, 24 states have (on average 2.375) internal successors, (57), 24 states have internal predecessors, (57), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 42 [2024-09-15 18:52:47,617 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-15 18:52:47,626 INFO L225 Difference]: With dead ends: 2885 [2024-09-15 18:52:47,626 INFO L226 Difference]: Without dead ends: 2585 [2024-09-15 18:52:47,628 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 123 GetRequests, 77 SyntacticMatches, 1 SemanticMatches, 45 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 702 ImplicationChecksByTransitivity, 80.8s TimeCoverageRelationStatistics Valid=657, Invalid=1505, Unknown=0, NotChecked=0, Total=2162 [2024-09-15 18:52:47,628 INFO L434 NwaCegarLoop]: 51 mSDtfsCounter, 296 mSDsluCounter, 295 mSDsCounter, 0 mSdLazyCounter, 183 mSolverCounterSat, 158 mSolverCounterUnsat, 3 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 12.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 296 SdHoareTripleChecker+Valid, 346 SdHoareTripleChecker+Invalid, 344 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 158 IncrementalHoareTripleChecker+Valid, 183 IncrementalHoareTripleChecker+Invalid, 3 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 12.4s IncrementalHoareTripleChecker+Time [2024-09-15 18:52:47,629 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [296 Valid, 346 Invalid, 344 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [158 Valid, 183 Invalid, 3 Unknown, 0 Unchecked, 12.4s Time] [2024-09-15 18:52:47,630 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 2585 states. [2024-09-15 18:52:49,150 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 2585 to 1258. [2024-09-15 18:52:49,151 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1258 states, 1253 states have (on average 1.4980047885075818) internal successors, (1877), 1253 states have internal predecessors, (1877), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:52:49,152 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1258 states to 1258 states and 1881 transitions. [2024-09-15 18:52:49,154 INFO L78 Accepts]: Start accepts. Automaton has 1258 states and 1881 transitions. Word has length 42 [2024-09-15 18:52:49,154 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-15 18:52:49,154 INFO L474 AbstractCegarLoop]: Abstraction has 1258 states and 1881 transitions. [2024-09-15 18:52:49,154 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 24 states, 24 states have (on average 2.375) internal successors, (57), 24 states have internal predecessors, (57), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-15 18:52:49,154 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:52:49,155 INFO L276 IsEmpty]: Start isEmpty. Operand 1258 states and 1881 transitions. [2024-09-15 18:52:49,156 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 43 [2024-09-15 18:52:49,156 INFO L208 NwaCegarLoop]: Found error trace [2024-09-15 18:52:49,156 INFO L216 NwaCegarLoop]: trace histogram [26, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-15 18:52:49,173 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (28)] Ended with exit code 0 [2024-09-15 18:52:49,356 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 28 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable28 [2024-09-15 18:52:49,357 INFO L399 AbstractCegarLoop]: === Iteration 30 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-15 18:52:49,357 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-15 18:52:49,357 INFO L85 PathProgramCache]: Analyzing trace with hash -783545697, now seen corresponding path program 4 times [2024-09-15 18:52:49,357 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-15 18:52:49,357 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1188212669] [2024-09-15 18:52:49,357 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-15 18:52:49,357 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-15 18:52:49,369 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:52:49,857 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-15 18:52:49,858 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-15 18:52:49,859 INFO L134 CoverageAnalysis]: Checked inductivity of 351 backedges. 0 proven. 351 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-15 18:52:49,859 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-15 18:52:49,859 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1188212669] [2024-09-15 18:52:49,859 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1188212669] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-15 18:52:49,859 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1238613665] [2024-09-15 18:52:49,859 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2024-09-15 18:52:49,860 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-15 18:52:49,860 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-15 18:52:49,861 INFO L229 MonitoredProcess]: Starting monitored process 29 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-15 18:52:49,861 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (29)] Waiting until timeout for monitored process [2024-09-15 18:52:49,906 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2024-09-15 18:52:49,906 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-15 18:52:49,907 INFO L262 TraceCheckSpWp]: Trace formula consists of 179 conjuncts, 57 conjuncts are in the unsatisfiable core [2024-09-15 18:52:49,908 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-15 18:52:49,968 INFO L134 CoverageAnalysis]: Checked inductivity of 351 backedges. 0 proven. 351 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-15 18:52:49,968 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-15 18:52:51,074 INFO L134 CoverageAnalysis]: Checked inductivity of 351 backedges. 0 proven. 351 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-15 18:52:51,074 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1238613665] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-15 18:52:51,074 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-15 18:52:51,074 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [30, 30, 30] total 59 [2024-09-15 18:52:51,075 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1999046019] [2024-09-15 18:52:51,075 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-15 18:52:51,075 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 59 states [2024-09-15 18:52:51,075 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-15 18:52:51,075 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 59 interpolants. [2024-09-15 18:52:51,076 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=846, Invalid=2576, Unknown=0, NotChecked=0, Total=3422 [2024-09-15 18:52:51,076 INFO L87 Difference]: Start difference. First operand 1258 states and 1881 transitions. Second operand has 59 states, 59 states have (on average 1.1864406779661016) internal successors, (70), 59 states have internal predecessors, (70), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1)