./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/loops-crafted-1/in-de61.c --full-output --procedureinliner.inline.calls.to.implemented.procedures NEVER --traceabstraction.positions.where.we.compute.the.hoare.annotation All --witnessprinter.yaml.format.version 2.1 --witnessprinter.generate.graphml.witnesses false --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 27b49876 Calling Ultimate with: /root/.sdkman/candidates/java/current/bin/java -Dosgi.configuration.area=/storage/repos/certificate-witnesses-artifact/automizer/data/config -Xmx15G -Xms4m -jar /storage/repos/certificate-witnesses-artifact/automizer/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/certificate-witnesses-artifact/automizer/data -tc /storage/repos/certificate-witnesses-artifact/automizer/config/AutomizerReach.xml -i ../sv-benchmarks/c/loops-crafted-1/in-de61.c -s /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/certificate-witnesses-artifact/automizer --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 49b7efdcf8f4d6c873493bd370328870547a88b20d287c5de5342268b0966917 --procedureinliner.inline.calls.to.implemented.procedures NEVER --traceabstraction.positions.where.we.compute.the.hoare.annotation All --witnessprinter.yaml.format.version 2.1 --witnessprinter.generate.graphml.witnesses false --- Real Ultimate output --- This is Ultimate 0.2.4-tmp.dk.referee-eval-27b4987-m [2024-09-21 11:30:24,598 INFO L188 SettingsManager]: Resetting all preferences to default values... [2024-09-21 11:30:24,680 INFO L114 SettingsManager]: Loading settings from /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf [2024-09-21 11:30:24,685 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2024-09-21 11:30:24,688 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2024-09-21 11:30:24,718 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2024-09-21 11:30:24,718 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2024-09-21 11:30:24,719 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2024-09-21 11:30:24,719 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2024-09-21 11:30:24,720 INFO L153 SettingsManager]: * Use memory slicer=true [2024-09-21 11:30:24,721 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2024-09-21 11:30:24,721 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2024-09-21 11:30:24,721 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2024-09-21 11:30:24,722 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2024-09-21 11:30:24,723 INFO L153 SettingsManager]: * Use SBE=true [2024-09-21 11:30:24,724 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2024-09-21 11:30:24,724 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2024-09-21 11:30:24,724 INFO L153 SettingsManager]: * sizeof long=4 [2024-09-21 11:30:24,725 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2024-09-21 11:30:24,725 INFO L153 SettingsManager]: * sizeof POINTER=4 [2024-09-21 11:30:24,729 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2024-09-21 11:30:24,729 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2024-09-21 11:30:24,729 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2024-09-21 11:30:24,730 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2024-09-21 11:30:24,730 INFO L153 SettingsManager]: * Allow undefined functions=false [2024-09-21 11:30:24,730 INFO L153 SettingsManager]: * sizeof long double=12 [2024-09-21 11:30:24,730 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2024-09-21 11:30:24,730 INFO L153 SettingsManager]: * Use constant arrays=true [2024-09-21 11:30:24,731 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2024-09-21 11:30:24,731 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2024-09-21 11:30:24,731 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2024-09-21 11:30:24,731 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2024-09-21 11:30:24,731 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-09-21 11:30:24,732 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2024-09-21 11:30:24,732 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2024-09-21 11:30:24,732 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2024-09-21 11:30:24,733 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2024-09-21 11:30:24,733 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2024-09-21 11:30:24,733 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2024-09-21 11:30:24,733 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2024-09-21 11:30:24,734 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2024-09-21 11:30:24,735 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2024-09-21 11:30:24,735 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/certificate-witnesses-artifact/automizer/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/certificate-witnesses-artifact/automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 49b7efdcf8f4d6c873493bd370328870547a88b20d287c5de5342268b0966917 Applying setting for plugin de.uni_freiburg.informatik.ultimate.boogie.procedureinliner: Inline calls to implemented procedures -> NEVER Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: Positions where we compute the Hoare Annotation -> All Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: YAML Format version -> 2.1 Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Generate GraphML witnesses -> false [2024-09-21 11:30:24,968 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2024-09-21 11:30:24,989 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2024-09-21 11:30:24,993 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2024-09-21 11:30:24,995 INFO L270 PluginConnector]: Initializing CDTParser... [2024-09-21 11:30:24,995 INFO L274 PluginConnector]: CDTParser initialized [2024-09-21 11:30:24,996 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/certificate-witnesses-artifact/automizer/../sv-benchmarks/c/loops-crafted-1/in-de61.c [2024-09-21 11:30:26,404 INFO L533 CDTParser]: Created temporary CDT project at NULL [2024-09-21 11:30:26,588 INFO L384 CDTParser]: Found 1 translation units. [2024-09-21 11:30:26,588 INFO L180 CDTParser]: Scanning /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/loops-crafted-1/in-de61.c [2024-09-21 11:30:26,598 INFO L427 CDTParser]: About to delete temporary CDT project at /storage/repos/certificate-witnesses-artifact/automizer/data/46db74850/0c88d1e80b284a2ebd5af1f32b57920e/FLAGc7a5c4e41 [2024-09-21 11:30:26,617 INFO L435 CDTParser]: Successfully deleted /storage/repos/certificate-witnesses-artifact/automizer/data/46db74850/0c88d1e80b284a2ebd5af1f32b57920e [2024-09-21 11:30:26,621 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2024-09-21 11:30:26,623 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2024-09-21 11:30:26,625 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2024-09-21 11:30:26,626 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2024-09-21 11:30:26,631 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2024-09-21 11:30:26,633 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 21.09 11:30:26" (1/1) ... [2024-09-21 11:30:26,634 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@6fd80d5f and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.09 11:30:26, skipping insertion in model container [2024-09-21 11:30:26,634 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 21.09 11:30:26" (1/1) ... [2024-09-21 11:30:26,655 INFO L175 MainTranslator]: Built tables and reachable declarations [2024-09-21 11:30:26,820 WARN L248 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/loops-crafted-1/in-de61.c[368,381] [2024-09-21 11:30:26,843 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-09-21 11:30:26,854 INFO L200 MainTranslator]: Completed pre-run [2024-09-21 11:30:26,866 WARN L248 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/loops-crafted-1/in-de61.c[368,381] [2024-09-21 11:30:26,876 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-09-21 11:30:26,898 INFO L204 MainTranslator]: Completed translation [2024-09-21 11:30:26,899 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.09 11:30:26 WrapperNode [2024-09-21 11:30:26,899 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2024-09-21 11:30:26,900 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2024-09-21 11:30:26,900 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2024-09-21 11:30:26,901 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2024-09-21 11:30:26,908 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.09 11:30:26" (1/1) ... [2024-09-21 11:30:26,914 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.09 11:30:26" (1/1) ... [2024-09-21 11:30:26,922 INFO L138 Inliner]: procedures = 13, calls = 8, calls flagged for inlining = 0, calls inlined = 0, statements flattened = 0 [2024-09-21 11:30:26,922 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2024-09-21 11:30:26,923 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2024-09-21 11:30:26,923 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2024-09-21 11:30:26,923 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2024-09-21 11:30:26,957 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.09 11:30:26" (1/1) ... [2024-09-21 11:30:26,957 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.09 11:30:26" (1/1) ... [2024-09-21 11:30:26,962 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.09 11:30:26" (1/1) ... [2024-09-21 11:30:26,995 INFO L175 MemorySlicer]: Split 2 memory accesses to 1 slices as follows [2]. 100 percent of accesses are in the largest equivalence class. The 2 initializations are split as follows [2]. The 0 writes are split as follows [0]. [2024-09-21 11:30:26,997 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.09 11:30:26" (1/1) ... [2024-09-21 11:30:26,998 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.09 11:30:26" (1/1) ... [2024-09-21 11:30:27,000 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.09 11:30:26" (1/1) ... [2024-09-21 11:30:27,015 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.09 11:30:26" (1/1) ... [2024-09-21 11:30:27,018 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.09 11:30:26" (1/1) ... [2024-09-21 11:30:27,019 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.09 11:30:26" (1/1) ... [2024-09-21 11:30:27,023 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2024-09-21 11:30:27,024 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2024-09-21 11:30:27,025 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2024-09-21 11:30:27,025 INFO L274 PluginConnector]: RCFGBuilder initialized [2024-09-21 11:30:27,026 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.09 11:30:26" (1/1) ... [2024-09-21 11:30:27,031 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-09-21 11:30:27,058 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:30:27,081 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2024-09-21 11:30:27,084 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2024-09-21 11:30:27,129 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2024-09-21 11:30:27,129 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.init [2024-09-21 11:30:27,129 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.init [2024-09-21 11:30:27,129 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2024-09-21 11:30:27,130 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2024-09-21 11:30:27,130 INFO L130 BoogieDeclarations]: Found specification of procedure main [2024-09-21 11:30:27,130 INFO L138 BoogieDeclarations]: Found implementation of procedure main [2024-09-21 11:30:27,130 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2024-09-21 11:30:27,130 INFO L130 BoogieDeclarations]: Found specification of procedure __VERIFIER_assert [2024-09-21 11:30:27,131 INFO L138 BoogieDeclarations]: Found implementation of procedure __VERIFIER_assert [2024-09-21 11:30:27,198 INFO L242 CfgBuilder]: Building ICFG [2024-09-21 11:30:27,202 INFO L268 CfgBuilder]: Building CFG for each procedure with an implementation [2024-09-21 11:30:27,405 INFO L? ?]: Removed 4 outVars from TransFormulas that were not future-live. [2024-09-21 11:30:27,406 INFO L291 CfgBuilder]: Performing block encoding [2024-09-21 11:30:27,426 INFO L313 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2024-09-21 11:30:27,426 INFO L318 CfgBuilder]: Removed 6 assume(true) statements. [2024-09-21 11:30:27,426 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.09 11:30:27 BoogieIcfgContainer [2024-09-21 11:30:27,427 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2024-09-21 11:30:27,429 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2024-09-21 11:30:27,430 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2024-09-21 11:30:27,433 INFO L274 PluginConnector]: TraceAbstraction initialized [2024-09-21 11:30:27,435 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 21.09 11:30:26" (1/3) ... [2024-09-21 11:30:27,435 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@48efffe1 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 21.09 11:30:27, skipping insertion in model container [2024-09-21 11:30:27,435 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.09 11:30:26" (2/3) ... [2024-09-21 11:30:27,436 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@48efffe1 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 21.09 11:30:27, skipping insertion in model container [2024-09-21 11:30:27,436 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.09 11:30:27" (3/3) ... [2024-09-21 11:30:27,437 INFO L112 eAbstractionObserver]: Analyzing ICFG in-de61.c [2024-09-21 11:30:27,454 INFO L209 ceAbstractionStarter]: Automizer settings: Hoare:All NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2024-09-21 11:30:27,455 INFO L149 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2024-09-21 11:30:27,513 INFO L335 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2024-09-21 11:30:27,524 INFO L336 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=All, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@13efedba, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2024-09-21 11:30:27,524 INFO L337 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2024-09-21 11:30:27,529 INFO L276 IsEmpty]: Start isEmpty. Operand has 23 states, 15 states have (on average 1.9333333333333333) internal successors, (29), 16 states have internal predecessors, (29), 3 states have call successors, (3), 3 states have call predecessors, (3), 3 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) [2024-09-21 11:30:27,536 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 17 [2024-09-21 11:30:27,536 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:30:27,537 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:30:27,538 INFO L399 AbstractCegarLoop]: === Iteration 1 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:30:27,543 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:30:27,544 INFO L85 PathProgramCache]: Analyzing trace with hash -294793433, now seen corresponding path program 1 times [2024-09-21 11:30:27,554 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:30:27,554 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1920723425] [2024-09-21 11:30:27,555 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:30:27,555 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:30:27,652 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:27,696 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:30:27,699 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:27,716 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:30:27,717 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:30:27,717 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1920723425] [2024-09-21 11:30:27,718 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1920723425] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-21 11:30:27,718 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-21 11:30:27,718 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2024-09-21 11:30:27,720 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [925805927] [2024-09-21 11:30:27,720 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-21 11:30:27,724 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2024-09-21 11:30:27,724 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:30:27,747 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2024-09-21 11:30:27,748 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-09-21 11:30:27,750 INFO L87 Difference]: Start difference. First operand has 23 states, 15 states have (on average 1.9333333333333333) internal successors, (29), 16 states have internal predecessors, (29), 3 states have call successors, (3), 3 states have call predecessors, (3), 3 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) Second operand has 2 states, 2 states have (on average 6.0) internal successors, (12), 2 states have internal predecessors, (12), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:27,773 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:30:27,773 INFO L93 Difference]: Finished difference Result 40 states and 63 transitions. [2024-09-21 11:30:27,775 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2024-09-21 11:30:27,776 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 6.0) internal successors, (12), 2 states have internal predecessors, (12), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 16 [2024-09-21 11:30:27,776 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:30:27,782 INFO L225 Difference]: With dead ends: 40 [2024-09-21 11:30:27,782 INFO L226 Difference]: Without dead ends: 17 [2024-09-21 11:30:27,785 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-09-21 11:30:27,790 INFO L434 NwaCegarLoop]: 26 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 2 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 26 SdHoareTripleChecker+Invalid, 2 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 2 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-21 11:30:27,793 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 26 Invalid, 2 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 2 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-21 11:30:27,811 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 17 states. [2024-09-21 11:30:27,822 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 17 to 17. [2024-09-21 11:30:27,823 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 17 states, 12 states have (on average 1.5) internal successors, (18), 12 states have internal predecessors, (18), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:27,824 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 17 states to 17 states and 22 transitions. [2024-09-21 11:30:27,826 INFO L78 Accepts]: Start accepts. Automaton has 17 states and 22 transitions. Word has length 16 [2024-09-21 11:30:27,826 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:30:27,826 INFO L474 AbstractCegarLoop]: Abstraction has 17 states and 22 transitions. [2024-09-21 11:30:27,826 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 6.0) internal successors, (12), 2 states have internal predecessors, (12), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:27,827 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:30:27,827 INFO L276 IsEmpty]: Start isEmpty. Operand 17 states and 22 transitions. [2024-09-21 11:30:27,828 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 17 [2024-09-21 11:30:27,828 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:30:27,828 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:30:27,828 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2024-09-21 11:30:27,829 INFO L399 AbstractCegarLoop]: === Iteration 2 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:30:27,829 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:30:27,829 INFO L85 PathProgramCache]: Analyzing trace with hash -951970017, now seen corresponding path program 1 times [2024-09-21 11:30:27,830 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:30:27,830 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1921510357] [2024-09-21 11:30:27,830 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:30:27,830 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:30:27,864 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:28,460 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:30:28,462 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:28,470 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:30:28,471 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:30:28,471 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1921510357] [2024-09-21 11:30:28,471 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1921510357] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-21 11:30:28,471 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-21 11:30:28,471 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2024-09-21 11:30:28,472 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [981091798] [2024-09-21 11:30:28,472 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-21 11:30:28,473 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2024-09-21 11:30:28,473 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:30:28,474 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2024-09-21 11:30:28,474 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=15, Invalid=41, Unknown=0, NotChecked=0, Total=56 [2024-09-21 11:30:28,475 INFO L87 Difference]: Start difference. First operand 17 states and 22 transitions. Second operand has 8 states, 8 states have (on average 1.5) internal successors, (12), 7 states have internal predecessors, (12), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:28,650 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:30:28,650 INFO L93 Difference]: Finished difference Result 37 states and 52 transitions. [2024-09-21 11:30:28,650 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2024-09-21 11:30:28,651 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 1.5) internal successors, (12), 7 states have internal predecessors, (12), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 16 [2024-09-21 11:30:28,651 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:30:28,652 INFO L225 Difference]: With dead ends: 37 [2024-09-21 11:30:28,652 INFO L226 Difference]: Without dead ends: 18 [2024-09-21 11:30:28,652 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 13 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 8 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 8 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=25, Invalid=65, Unknown=0, NotChecked=0, Total=90 [2024-09-21 11:30:28,653 INFO L434 NwaCegarLoop]: 12 mSDtfsCounter, 14 mSDsluCounter, 48 mSDsCounter, 0 mSdLazyCounter, 72 mSolverCounterSat, 5 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 14 SdHoareTripleChecker+Valid, 60 SdHoareTripleChecker+Invalid, 77 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 5 IncrementalHoareTripleChecker+Valid, 72 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-21 11:30:28,654 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [14 Valid, 60 Invalid, 77 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [5 Valid, 72 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-21 11:30:28,655 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 18 states. [2024-09-21 11:30:28,658 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 18 to 18. [2024-09-21 11:30:28,658 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 18 states, 13 states have (on average 1.4615384615384615) internal successors, (19), 13 states have internal predecessors, (19), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:28,659 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 18 states to 18 states and 23 transitions. [2024-09-21 11:30:28,659 INFO L78 Accepts]: Start accepts. Automaton has 18 states and 23 transitions. Word has length 16 [2024-09-21 11:30:28,659 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:30:28,659 INFO L474 AbstractCegarLoop]: Abstraction has 18 states and 23 transitions. [2024-09-21 11:30:28,659 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 1.5) internal successors, (12), 7 states have internal predecessors, (12), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:28,660 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:30:28,660 INFO L276 IsEmpty]: Start isEmpty. Operand 18 states and 23 transitions. [2024-09-21 11:30:28,661 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 18 [2024-09-21 11:30:28,661 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:30:28,661 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:30:28,661 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2024-09-21 11:30:28,661 INFO L399 AbstractCegarLoop]: === Iteration 3 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:30:28,662 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:30:28,662 INFO L85 PathProgramCache]: Analyzing trace with hash -713894869, now seen corresponding path program 1 times [2024-09-21 11:30:28,662 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:30:28,662 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1166576463] [2024-09-21 11:30:28,662 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:30:28,663 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:30:28,671 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:28,741 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:30:28,742 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:28,747 INFO L134 CoverageAnalysis]: Checked inductivity of 1 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:30:28,749 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:30:28,749 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1166576463] [2024-09-21 11:30:28,750 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1166576463] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:30:28,750 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [438165151] [2024-09-21 11:30:28,750 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:30:28,751 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:30:28,751 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:30:28,753 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:30:28,756 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2024-09-21 11:30:28,809 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:28,812 INFO L262 TraceCheckSpWp]: Trace formula consists of 54 conjuncts, 7 conjuncts are in the unsatisfiable core [2024-09-21 11:30:28,818 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:30:28,850 INFO L134 CoverageAnalysis]: Checked inductivity of 1 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:30:28,850 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:30:28,929 INFO L134 CoverageAnalysis]: Checked inductivity of 1 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:30:28,929 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [438165151] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:30:28,930 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:30:28,930 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [5, 5, 5] total 9 [2024-09-21 11:30:28,930 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1179233984] [2024-09-21 11:30:28,930 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:30:28,930 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 9 states [2024-09-21 11:30:28,930 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:30:28,931 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 9 interpolants. [2024-09-21 11:30:28,931 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=21, Invalid=51, Unknown=0, NotChecked=0, Total=72 [2024-09-21 11:30:28,932 INFO L87 Difference]: Start difference. First operand 18 states and 23 transitions. Second operand has 9 states, 9 states have (on average 2.2222222222222223) internal successors, (20), 9 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:29,103 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:30:29,104 INFO L93 Difference]: Finished difference Result 59 states and 96 transitions. [2024-09-21 11:30:29,104 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2024-09-21 11:30:29,104 INFO L78 Accepts]: Start accepts. Automaton has has 9 states, 9 states have (on average 2.2222222222222223) internal successors, (20), 9 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 17 [2024-09-21 11:30:29,105 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:30:29,106 INFO L225 Difference]: With dead ends: 59 [2024-09-21 11:30:29,107 INFO L226 Difference]: Without dead ends: 50 [2024-09-21 11:30:29,107 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 45 GetRequests, 34 SyntacticMatches, 0 SemanticMatches, 11 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 13 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=48, Invalid=108, Unknown=0, NotChecked=0, Total=156 [2024-09-21 11:30:29,108 INFO L434 NwaCegarLoop]: 16 mSDtfsCounter, 48 mSDsluCounter, 62 mSDsCounter, 0 mSdLazyCounter, 77 mSolverCounterSat, 25 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 48 SdHoareTripleChecker+Valid, 78 SdHoareTripleChecker+Invalid, 102 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 25 IncrementalHoareTripleChecker+Valid, 77 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-21 11:30:29,109 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [48 Valid, 78 Invalid, 102 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [25 Valid, 77 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-21 11:30:29,110 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 50 states. [2024-09-21 11:30:29,117 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 50 to 41. [2024-09-21 11:30:29,117 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 41 states, 36 states have (on average 1.5277777777777777) internal successors, (55), 36 states have internal predecessors, (55), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:29,118 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 41 states to 41 states and 59 transitions. [2024-09-21 11:30:29,118 INFO L78 Accepts]: Start accepts. Automaton has 41 states and 59 transitions. Word has length 17 [2024-09-21 11:30:29,119 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:30:29,119 INFO L474 AbstractCegarLoop]: Abstraction has 41 states and 59 transitions. [2024-09-21 11:30:29,119 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 9 states, 9 states have (on average 2.2222222222222223) internal successors, (20), 9 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:29,119 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:30:29,120 INFO L276 IsEmpty]: Start isEmpty. Operand 41 states and 59 transitions. [2024-09-21 11:30:29,120 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 20 [2024-09-21 11:30:29,120 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:30:29,120 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:30:29,133 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Ended with exit code 0 [2024-09-21 11:30:29,321 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2,2 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:30:29,321 INFO L399 AbstractCegarLoop]: === Iteration 4 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:30:29,322 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:30:29,322 INFO L85 PathProgramCache]: Analyzing trace with hash 49422170, now seen corresponding path program 1 times [2024-09-21 11:30:29,322 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:30:29,322 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1176267968] [2024-09-21 11:30:29,322 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:30:29,322 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:30:29,332 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:29,455 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:30:29,456 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:29,460 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 3 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:30:29,461 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:30:29,462 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1176267968] [2024-09-21 11:30:29,463 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1176267968] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:30:29,463 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [448241915] [2024-09-21 11:30:29,463 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:30:29,463 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:30:29,464 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:30:29,465 INFO L229 MonitoredProcess]: Starting monitored process 3 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:30:29,467 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2024-09-21 11:30:29,505 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:29,507 INFO L262 TraceCheckSpWp]: Trace formula consists of 64 conjuncts, 11 conjuncts are in the unsatisfiable core [2024-09-21 11:30:29,508 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:30:29,526 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 3 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:30:29,526 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:30:29,604 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 3 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:30:29,605 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [448241915] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:30:29,608 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:30:29,608 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [7, 6, 6] total 11 [2024-09-21 11:30:29,608 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [157245836] [2024-09-21 11:30:29,608 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:30:29,609 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 11 states [2024-09-21 11:30:29,609 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:30:29,609 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 11 interpolants. [2024-09-21 11:30:29,610 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=27, Invalid=83, Unknown=0, NotChecked=0, Total=110 [2024-09-21 11:30:29,610 INFO L87 Difference]: Start difference. First operand 41 states and 59 transitions. Second operand has 11 states, 11 states have (on average 2.6363636363636362) internal successors, (29), 11 states have internal predecessors, (29), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:30,178 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:30:30,178 INFO L93 Difference]: Finished difference Result 108 states and 170 transitions. [2024-09-21 11:30:30,179 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 30 states. [2024-09-21 11:30:30,179 INFO L78 Accepts]: Start accepts. Automaton has has 11 states, 11 states have (on average 2.6363636363636362) internal successors, (29), 11 states have internal predecessors, (29), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 19 [2024-09-21 11:30:30,180 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:30:30,181 INFO L225 Difference]: With dead ends: 108 [2024-09-21 11:30:30,181 INFO L226 Difference]: Without dead ends: 87 [2024-09-21 11:30:30,182 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 66 GetRequests, 38 SyntacticMatches, 0 SemanticMatches, 28 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 166 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=205, Invalid=665, Unknown=0, NotChecked=0, Total=870 [2024-09-21 11:30:30,184 INFO L434 NwaCegarLoop]: 13 mSDtfsCounter, 86 mSDsluCounter, 88 mSDsCounter, 0 mSdLazyCounter, 174 mSolverCounterSat, 66 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 86 SdHoareTripleChecker+Valid, 101 SdHoareTripleChecker+Invalid, 240 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 66 IncrementalHoareTripleChecker+Valid, 174 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-21 11:30:30,185 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [86 Valid, 101 Invalid, 240 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [66 Valid, 174 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-21 11:30:30,186 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 87 states. [2024-09-21 11:30:30,202 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 87 to 56. [2024-09-21 11:30:30,203 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 56 states, 51 states have (on average 1.4509803921568627) internal successors, (74), 51 states have internal predecessors, (74), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:30,204 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 56 states to 56 states and 78 transitions. [2024-09-21 11:30:30,205 INFO L78 Accepts]: Start accepts. Automaton has 56 states and 78 transitions. Word has length 19 [2024-09-21 11:30:30,205 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:30:30,205 INFO L474 AbstractCegarLoop]: Abstraction has 56 states and 78 transitions. [2024-09-21 11:30:30,206 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 11 states, 11 states have (on average 2.6363636363636362) internal successors, (29), 11 states have internal predecessors, (29), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:30,206 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:30:30,206 INFO L276 IsEmpty]: Start isEmpty. Operand 56 states and 78 transitions. [2024-09-21 11:30:30,207 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 21 [2024-09-21 11:30:30,207 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:30:30,208 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:30:30,225 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Forceful destruction successful, exit code 0 [2024-09-21 11:30:30,411 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3,3 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:30:30,412 INFO L399 AbstractCegarLoop]: === Iteration 5 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:30:30,413 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:30:30,413 INFO L85 PathProgramCache]: Analyzing trace with hash -1324513826, now seen corresponding path program 1 times [2024-09-21 11:30:30,413 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:30:30,413 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [404426996] [2024-09-21 11:30:30,413 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:30:30,413 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:30:30,434 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:30,520 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:30:30,522 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:30,526 INFO L134 CoverageAnalysis]: Checked inductivity of 4 backedges. 1 proven. 1 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2024-09-21 11:30:30,526 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:30:30,527 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [404426996] [2024-09-21 11:30:30,527 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [404426996] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:30:30,528 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1883610348] [2024-09-21 11:30:30,528 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:30:30,529 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:30:30,529 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:30:30,530 INFO L229 MonitoredProcess]: Starting monitored process 4 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:30:30,532 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2024-09-21 11:30:30,580 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:30,581 INFO L262 TraceCheckSpWp]: Trace formula consists of 69 conjuncts, 14 conjuncts are in the unsatisfiable core [2024-09-21 11:30:30,583 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:30:30,729 INFO L134 CoverageAnalysis]: Checked inductivity of 4 backedges. 0 proven. 2 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2024-09-21 11:30:30,729 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:30:30,903 INFO L134 CoverageAnalysis]: Checked inductivity of 4 backedges. 0 proven. 2 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2024-09-21 11:30:30,903 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1883610348] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:30:30,904 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:30:30,904 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [4, 8, 8] total 15 [2024-09-21 11:30:30,904 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1753819645] [2024-09-21 11:30:30,904 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:30:30,904 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 15 states [2024-09-21 11:30:30,905 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:30:30,905 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 15 interpolants. [2024-09-21 11:30:30,906 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=39, Invalid=171, Unknown=0, NotChecked=0, Total=210 [2024-09-21 11:30:30,906 INFO L87 Difference]: Start difference. First operand 56 states and 78 transitions. Second operand has 15 states, 15 states have (on average 2.8666666666666667) internal successors, (43), 13 states have internal predecessors, (43), 4 states have call successors, (5), 4 states have call predecessors, (5), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:31,087 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:30:31,087 INFO L93 Difference]: Finished difference Result 90 states and 132 transitions. [2024-09-21 11:30:31,088 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2024-09-21 11:30:31,088 INFO L78 Accepts]: Start accepts. Automaton has has 15 states, 15 states have (on average 2.8666666666666667) internal successors, (43), 13 states have internal predecessors, (43), 4 states have call successors, (5), 4 states have call predecessors, (5), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 20 [2024-09-21 11:30:31,088 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:30:31,089 INFO L225 Difference]: With dead ends: 90 [2024-09-21 11:30:31,089 INFO L226 Difference]: Without dead ends: 79 [2024-09-21 11:30:31,089 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 47 GetRequests, 31 SyntacticMatches, 1 SemanticMatches, 15 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 21 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=49, Invalid=223, Unknown=0, NotChecked=0, Total=272 [2024-09-21 11:30:31,090 INFO L434 NwaCegarLoop]: 24 mSDtfsCounter, 24 mSDsluCounter, 173 mSDsCounter, 0 mSdLazyCounter, 132 mSolverCounterSat, 15 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 24 SdHoareTripleChecker+Valid, 197 SdHoareTripleChecker+Invalid, 147 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 15 IncrementalHoareTripleChecker+Valid, 132 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-21 11:30:31,090 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [24 Valid, 197 Invalid, 147 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [15 Valid, 132 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-21 11:30:31,091 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 79 states. [2024-09-21 11:30:31,115 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 79 to 63. [2024-09-21 11:30:31,115 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 63 states, 58 states have (on average 1.4827586206896552) internal successors, (86), 58 states have internal predecessors, (86), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:31,117 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 63 states to 63 states and 90 transitions. [2024-09-21 11:30:31,119 INFO L78 Accepts]: Start accepts. Automaton has 63 states and 90 transitions. Word has length 20 [2024-09-21 11:30:31,119 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:30:31,119 INFO L474 AbstractCegarLoop]: Abstraction has 63 states and 90 transitions. [2024-09-21 11:30:31,120 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 15 states, 15 states have (on average 2.8666666666666667) internal successors, (43), 13 states have internal predecessors, (43), 4 states have call successors, (5), 4 states have call predecessors, (5), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:31,121 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:30:31,121 INFO L276 IsEmpty]: Start isEmpty. Operand 63 states and 90 transitions. [2024-09-21 11:30:31,122 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 21 [2024-09-21 11:30:31,122 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:30:31,122 INFO L216 NwaCegarLoop]: trace histogram [4, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:30:31,139 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Forceful destruction successful, exit code 0 [2024-09-21 11:30:31,326 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4,4 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:30:31,327 INFO L399 AbstractCegarLoop]: === Iteration 6 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:30:31,327 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:30:31,327 INFO L85 PathProgramCache]: Analyzing trace with hash 739179039, now seen corresponding path program 2 times [2024-09-21 11:30:31,327 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:30:31,327 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [507359638] [2024-09-21 11:30:31,328 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:30:31,328 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:30:31,337 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:31,437 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:30:31,438 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:31,441 INFO L134 CoverageAnalysis]: Checked inductivity of 10 backedges. 0 proven. 10 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:30:31,442 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:30:31,442 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [507359638] [2024-09-21 11:30:31,442 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [507359638] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:30:31,443 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [801275216] [2024-09-21 11:30:31,444 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-21 11:30:31,444 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:30:31,444 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:30:31,446 INFO L229 MonitoredProcess]: Starting monitored process 5 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:30:31,448 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2024-09-21 11:30:31,491 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-21 11:30:31,491 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-21 11:30:31,494 INFO L262 TraceCheckSpWp]: Trace formula consists of 69 conjuncts, 13 conjuncts are in the unsatisfiable core [2024-09-21 11:30:31,496 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:30:31,524 INFO L134 CoverageAnalysis]: Checked inductivity of 10 backedges. 0 proven. 10 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:30:31,524 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:30:31,622 INFO L134 CoverageAnalysis]: Checked inductivity of 10 backedges. 0 proven. 10 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:30:31,622 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [801275216] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:30:31,622 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:30:31,622 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [8, 8, 8] total 15 [2024-09-21 11:30:31,622 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1814903387] [2024-09-21 11:30:31,622 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:30:31,623 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 15 states [2024-09-21 11:30:31,623 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:30:31,623 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 15 interpolants. [2024-09-21 11:30:31,624 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=54, Invalid=156, Unknown=0, NotChecked=0, Total=210 [2024-09-21 11:30:31,624 INFO L87 Difference]: Start difference. First operand 63 states and 90 transitions. Second operand has 15 states, 15 states have (on average 1.7333333333333334) internal successors, (26), 15 states have internal predecessors, (26), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:32,445 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:30:32,446 INFO L93 Difference]: Finished difference Result 221 states and 363 transitions. [2024-09-21 11:30:32,446 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 26 states. [2024-09-21 11:30:32,446 INFO L78 Accepts]: Start accepts. Automaton has has 15 states, 15 states have (on average 1.7333333333333334) internal successors, (26), 15 states have internal predecessors, (26), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 20 [2024-09-21 11:30:32,447 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:30:32,448 INFO L225 Difference]: With dead ends: 221 [2024-09-21 11:30:32,448 INFO L226 Difference]: Without dead ends: 196 [2024-09-21 11:30:32,449 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 67 GetRequests, 37 SyntacticMatches, 0 SemanticMatches, 30 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 198 ImplicationChecksByTransitivity, 0.5s TimeCoverageRelationStatistics Valid=301, Invalid=691, Unknown=0, NotChecked=0, Total=992 [2024-09-21 11:30:32,449 INFO L434 NwaCegarLoop]: 31 mSDtfsCounter, 282 mSDsluCounter, 170 mSDsCounter, 0 mSdLazyCounter, 227 mSolverCounterSat, 143 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 282 SdHoareTripleChecker+Valid, 201 SdHoareTripleChecker+Invalid, 370 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 143 IncrementalHoareTripleChecker+Valid, 227 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2024-09-21 11:30:32,450 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [282 Valid, 201 Invalid, 370 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [143 Valid, 227 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2024-09-21 11:30:32,451 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 196 states. [2024-09-21 11:30:32,483 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 196 to 123. [2024-09-21 11:30:32,484 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 123 states, 118 states have (on average 1.5254237288135593) internal successors, (180), 118 states have internal predecessors, (180), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:32,485 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 123 states to 123 states and 184 transitions. [2024-09-21 11:30:32,485 INFO L78 Accepts]: Start accepts. Automaton has 123 states and 184 transitions. Word has length 20 [2024-09-21 11:30:32,486 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:30:32,486 INFO L474 AbstractCegarLoop]: Abstraction has 123 states and 184 transitions. [2024-09-21 11:30:32,486 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 15 states, 15 states have (on average 1.7333333333333334) internal successors, (26), 15 states have internal predecessors, (26), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:32,486 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:30:32,487 INFO L276 IsEmpty]: Start isEmpty. Operand 123 states and 184 transitions. [2024-09-21 11:30:32,487 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 23 [2024-09-21 11:30:32,488 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:30:32,488 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:30:32,505 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Forceful destruction successful, exit code 0 [2024-09-21 11:30:32,688 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5,5 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:30:32,689 INFO L399 AbstractCegarLoop]: === Iteration 7 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:30:32,689 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:30:32,690 INFO L85 PathProgramCache]: Analyzing trace with hash 1756794400, now seen corresponding path program 1 times [2024-09-21 11:30:32,690 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:30:32,690 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1190706169] [2024-09-21 11:30:32,690 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:30:32,690 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:30:32,706 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:33,053 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:30:33,054 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:33,056 INFO L134 CoverageAnalysis]: Checked inductivity of 6 backedges. 0 proven. 5 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2024-09-21 11:30:33,057 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:30:33,057 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1190706169] [2024-09-21 11:30:33,057 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1190706169] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:30:33,057 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1819946582] [2024-09-21 11:30:33,057 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:30:33,057 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:30:33,057 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:30:33,059 INFO L229 MonitoredProcess]: Starting monitored process 6 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:30:33,061 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Waiting until timeout for monitored process [2024-09-21 11:30:33,107 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:33,108 INFO L262 TraceCheckSpWp]: Trace formula consists of 79 conjuncts, 25 conjuncts are in the unsatisfiable core [2024-09-21 11:30:33,110 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:30:33,302 INFO L134 CoverageAnalysis]: Checked inductivity of 6 backedges. 0 proven. 5 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2024-09-21 11:30:33,304 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:30:33,458 INFO L134 CoverageAnalysis]: Checked inductivity of 6 backedges. 0 proven. 5 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2024-09-21 11:30:33,459 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1819946582] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:30:33,459 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:30:33,459 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 9, 9] total 20 [2024-09-21 11:30:33,459 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1708892963] [2024-09-21 11:30:33,460 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:30:33,460 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 20 states [2024-09-21 11:30:33,460 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:30:33,461 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 20 interpolants. [2024-09-21 11:30:33,461 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=58, Invalid=322, Unknown=0, NotChecked=0, Total=380 [2024-09-21 11:30:33,461 INFO L87 Difference]: Start difference. First operand 123 states and 184 transitions. Second operand has 20 states, 20 states have (on average 2.3) internal successors, (46), 18 states have internal predecessors, (46), 3 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:34,207 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:30:34,207 INFO L93 Difference]: Finished difference Result 167 states and 242 transitions. [2024-09-21 11:30:34,210 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 26 states. [2024-09-21 11:30:34,210 INFO L78 Accepts]: Start accepts. Automaton has has 20 states, 20 states have (on average 2.3) internal successors, (46), 18 states have internal predecessors, (46), 3 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 22 [2024-09-21 11:30:34,211 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:30:34,212 INFO L225 Difference]: With dead ends: 167 [2024-09-21 11:30:34,212 INFO L226 Difference]: Without dead ends: 158 [2024-09-21 11:30:34,213 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 73 GetRequests, 39 SyntacticMatches, 0 SemanticMatches, 34 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 244 ImplicationChecksByTransitivity, 0.6s TimeCoverageRelationStatistics Valid=213, Invalid=1047, Unknown=0, NotChecked=0, Total=1260 [2024-09-21 11:30:34,213 INFO L434 NwaCegarLoop]: 12 mSDtfsCounter, 35 mSDsluCounter, 122 mSDsCounter, 0 mSdLazyCounter, 336 mSolverCounterSat, 20 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 35 SdHoareTripleChecker+Valid, 134 SdHoareTripleChecker+Invalid, 356 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 20 IncrementalHoareTripleChecker+Valid, 336 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2024-09-21 11:30:34,214 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [35 Valid, 134 Invalid, 356 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [20 Valid, 336 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2024-09-21 11:30:34,214 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 158 states. [2024-09-21 11:30:34,260 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 158 to 123. [2024-09-21 11:30:34,261 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 123 states, 118 states have (on average 1.5254237288135593) internal successors, (180), 118 states have internal predecessors, (180), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:34,262 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 123 states to 123 states and 184 transitions. [2024-09-21 11:30:34,262 INFO L78 Accepts]: Start accepts. Automaton has 123 states and 184 transitions. Word has length 22 [2024-09-21 11:30:34,263 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:30:34,263 INFO L474 AbstractCegarLoop]: Abstraction has 123 states and 184 transitions. [2024-09-21 11:30:34,263 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 20 states, 20 states have (on average 2.3) internal successors, (46), 18 states have internal predecessors, (46), 3 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:34,263 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:30:34,264 INFO L276 IsEmpty]: Start isEmpty. Operand 123 states and 184 transitions. [2024-09-21 11:30:34,264 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 23 [2024-09-21 11:30:34,264 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:30:34,264 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:30:34,282 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Ended with exit code 0 [2024-09-21 11:30:34,465 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 6 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable6 [2024-09-21 11:30:34,466 INFO L399 AbstractCegarLoop]: === Iteration 8 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:30:34,466 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:30:34,468 INFO L85 PathProgramCache]: Analyzing trace with hash 1941599551, now seen corresponding path program 2 times [2024-09-21 11:30:34,468 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:30:34,468 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1578435525] [2024-09-21 11:30:34,469 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:30:34,469 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:30:34,481 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:34,619 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:30:34,620 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:34,621 INFO L134 CoverageAnalysis]: Checked inductivity of 9 backedges. 0 proven. 9 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:30:34,622 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:30:34,622 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1578435525] [2024-09-21 11:30:34,622 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1578435525] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:30:34,622 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1051652673] [2024-09-21 11:30:34,622 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-21 11:30:34,622 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:30:34,623 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:30:34,624 INFO L229 MonitoredProcess]: Starting monitored process 7 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:30:34,626 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Waiting until timeout for monitored process [2024-09-21 11:30:34,672 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-21 11:30:34,672 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-21 11:30:34,673 INFO L262 TraceCheckSpWp]: Trace formula consists of 79 conjuncts, 12 conjuncts are in the unsatisfiable core [2024-09-21 11:30:34,674 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:30:34,734 INFO L134 CoverageAnalysis]: Checked inductivity of 9 backedges. 2 proven. 4 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-09-21 11:30:34,735 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:30:34,807 INFO L134 CoverageAnalysis]: Checked inductivity of 9 backedges. 2 proven. 4 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-09-21 11:30:34,808 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1051652673] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:30:34,808 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:30:34,808 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [9, 5, 5] total 12 [2024-09-21 11:30:34,808 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [533588960] [2024-09-21 11:30:34,808 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:30:34,809 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 12 states [2024-09-21 11:30:34,809 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:30:34,810 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 12 interpolants. [2024-09-21 11:30:34,810 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=22, Invalid=110, Unknown=0, NotChecked=0, Total=132 [2024-09-21 11:30:34,810 INFO L87 Difference]: Start difference. First operand 123 states and 184 transitions. Second operand has 12 states, 12 states have (on average 2.5) internal successors, (30), 12 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:35,641 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:30:35,641 INFO L93 Difference]: Finished difference Result 302 states and 459 transitions. [2024-09-21 11:30:35,642 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 36 states. [2024-09-21 11:30:35,642 INFO L78 Accepts]: Start accepts. Automaton has has 12 states, 12 states have (on average 2.5) internal successors, (30), 12 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 22 [2024-09-21 11:30:35,643 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:30:35,644 INFO L225 Difference]: With dead ends: 302 [2024-09-21 11:30:35,644 INFO L226 Difference]: Without dead ends: 263 [2024-09-21 11:30:35,645 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 87 GetRequests, 42 SyntacticMatches, 4 SemanticMatches, 41 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 454 ImplicationChecksByTransitivity, 0.5s TimeCoverageRelationStatistics Valid=253, Invalid=1553, Unknown=0, NotChecked=0, Total=1806 [2024-09-21 11:30:35,647 INFO L434 NwaCegarLoop]: 18 mSDtfsCounter, 123 mSDsluCounter, 119 mSDsCounter, 0 mSdLazyCounter, 328 mSolverCounterSat, 84 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 123 SdHoareTripleChecker+Valid, 137 SdHoareTripleChecker+Invalid, 412 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 84 IncrementalHoareTripleChecker+Valid, 328 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2024-09-21 11:30:35,647 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [123 Valid, 137 Invalid, 412 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [84 Valid, 328 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2024-09-21 11:30:35,648 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 263 states. [2024-09-21 11:30:35,703 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 263 to 154. [2024-09-21 11:30:35,704 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 154 states, 149 states have (on average 1.4966442953020134) internal successors, (223), 149 states have internal predecessors, (223), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:35,704 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 154 states to 154 states and 227 transitions. [2024-09-21 11:30:35,706 INFO L78 Accepts]: Start accepts. Automaton has 154 states and 227 transitions. Word has length 22 [2024-09-21 11:30:35,706 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:30:35,706 INFO L474 AbstractCegarLoop]: Abstraction has 154 states and 227 transitions. [2024-09-21 11:30:35,706 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 12 states, 12 states have (on average 2.5) internal successors, (30), 12 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:35,707 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:30:35,707 INFO L276 IsEmpty]: Start isEmpty. Operand 154 states and 227 transitions. [2024-09-21 11:30:35,708 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2024-09-21 11:30:35,708 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:30:35,708 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:30:35,729 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Forceful destruction successful, exit code 0 [2024-09-21 11:30:35,915 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7,7 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:30:35,916 INFO L399 AbstractCegarLoop]: === Iteration 9 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:30:35,916 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:30:35,916 INFO L85 PathProgramCache]: Analyzing trace with hash -46385954, now seen corresponding path program 2 times [2024-09-21 11:30:35,916 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:30:35,916 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1100007843] [2024-09-21 11:30:35,917 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:30:35,917 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:30:35,925 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:35,989 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:30:35,990 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:35,991 INFO L134 CoverageAnalysis]: Checked inductivity of 10 backedges. 2 proven. 2 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-21 11:30:35,991 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:30:35,991 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1100007843] [2024-09-21 11:30:35,991 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1100007843] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:30:35,992 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1308881369] [2024-09-21 11:30:35,992 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-21 11:30:35,992 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:30:35,992 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:30:35,996 INFO L229 MonitoredProcess]: Starting monitored process 8 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:30:35,998 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Waiting until timeout for monitored process [2024-09-21 11:30:36,041 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-21 11:30:36,041 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-21 11:30:36,042 INFO L262 TraceCheckSpWp]: Trace formula consists of 89 conjuncts, 10 conjuncts are in the unsatisfiable core [2024-09-21 11:30:36,043 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:30:36,060 INFO L134 CoverageAnalysis]: Checked inductivity of 10 backedges. 2 proven. 2 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-21 11:30:36,061 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:30:36,087 INFO L134 CoverageAnalysis]: Checked inductivity of 10 backedges. 2 proven. 2 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-21 11:30:36,088 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1308881369] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:30:36,088 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:30:36,088 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [4, 4, 4] total 4 [2024-09-21 11:30:36,088 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1751369718] [2024-09-21 11:30:36,088 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:30:36,089 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2024-09-21 11:30:36,089 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:30:36,089 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2024-09-21 11:30:36,090 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-09-21 11:30:36,090 INFO L87 Difference]: Start difference. First operand 154 states and 227 transitions. Second operand has 4 states, 4 states have (on average 4.75) internal successors, (19), 4 states have internal predecessors, (19), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:36,174 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:30:36,174 INFO L93 Difference]: Finished difference Result 242 states and 361 transitions. [2024-09-21 11:30:36,175 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2024-09-21 11:30:36,175 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 4.75) internal successors, (19), 4 states have internal predecessors, (19), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 24 [2024-09-21 11:30:36,175 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:30:36,177 INFO L225 Difference]: With dead ends: 242 [2024-09-21 11:30:36,179 INFO L226 Difference]: Without dead ends: 181 [2024-09-21 11:30:36,179 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 54 GetRequests, 50 SyntacticMatches, 2 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-09-21 11:30:36,180 INFO L434 NwaCegarLoop]: 25 mSDtfsCounter, 9 mSDsluCounter, 35 mSDsCounter, 0 mSdLazyCounter, 24 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 9 SdHoareTripleChecker+Valid, 60 SdHoareTripleChecker+Invalid, 26 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 24 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-21 11:30:36,180 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [9 Valid, 60 Invalid, 26 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 24 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-21 11:30:36,181 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 181 states. [2024-09-21 11:30:36,243 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 181 to 151. [2024-09-21 11:30:36,244 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 151 states, 146 states have (on average 1.4726027397260273) internal successors, (215), 146 states have internal predecessors, (215), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:36,245 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 151 states to 151 states and 219 transitions. [2024-09-21 11:30:36,245 INFO L78 Accepts]: Start accepts. Automaton has 151 states and 219 transitions. Word has length 24 [2024-09-21 11:30:36,245 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:30:36,245 INFO L474 AbstractCegarLoop]: Abstraction has 151 states and 219 transitions. [2024-09-21 11:30:36,246 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 4.75) internal successors, (19), 4 states have internal predecessors, (19), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:36,246 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:30:36,246 INFO L276 IsEmpty]: Start isEmpty. Operand 151 states and 219 transitions. [2024-09-21 11:30:36,247 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2024-09-21 11:30:36,247 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:30:36,247 INFO L216 NwaCegarLoop]: trace histogram [3, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:30:36,264 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Forceful destruction successful, exit code 0 [2024-09-21 11:30:36,451 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8,8 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:30:36,452 INFO L399 AbstractCegarLoop]: === Iteration 10 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:30:36,452 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:30:36,452 INFO L85 PathProgramCache]: Analyzing trace with hash 1697264410, now seen corresponding path program 1 times [2024-09-21 11:30:36,452 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:30:36,453 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1820756079] [2024-09-21 11:30:36,453 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:30:36,453 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:30:36,462 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:36,556 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:30:36,557 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:36,559 INFO L134 CoverageAnalysis]: Checked inductivity of 15 backedges. 0 proven. 7 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2024-09-21 11:30:36,559 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:30:36,559 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1820756079] [2024-09-21 11:30:36,559 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1820756079] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:30:36,559 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1454984431] [2024-09-21 11:30:36,559 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:30:36,559 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:30:36,560 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:30:36,561 INFO L229 MonitoredProcess]: Starting monitored process 9 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:30:36,563 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Waiting until timeout for monitored process [2024-09-21 11:30:36,606 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:36,607 INFO L262 TraceCheckSpWp]: Trace formula consists of 94 conjuncts, 16 conjuncts are in the unsatisfiable core [2024-09-21 11:30:36,608 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:30:36,639 INFO L134 CoverageAnalysis]: Checked inductivity of 15 backedges. 0 proven. 7 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2024-09-21 11:30:36,639 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:30:36,713 INFO L134 CoverageAnalysis]: Checked inductivity of 15 backedges. 4 proven. 2 refuted. 0 times theorem prover too weak. 9 trivial. 0 not checked. [2024-09-21 11:30:36,713 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1454984431] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:30:36,714 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:30:36,714 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [8, 8, 6] total 14 [2024-09-21 11:30:36,714 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2141981294] [2024-09-21 11:30:36,714 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:30:36,714 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 14 states [2024-09-21 11:30:36,715 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:30:36,715 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 14 interpolants. [2024-09-21 11:30:36,715 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=45, Invalid=137, Unknown=0, NotChecked=0, Total=182 [2024-09-21 11:30:36,716 INFO L87 Difference]: Start difference. First operand 151 states and 219 transitions. Second operand has 14 states, 14 states have (on average 2.142857142857143) internal successors, (30), 14 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:37,132 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:30:37,132 INFO L93 Difference]: Finished difference Result 222 states and 323 transitions. [2024-09-21 11:30:37,133 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 20 states. [2024-09-21 11:30:37,133 INFO L78 Accepts]: Start accepts. Automaton has has 14 states, 14 states have (on average 2.142857142857143) internal successors, (30), 14 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 25 [2024-09-21 11:30:37,133 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:30:37,134 INFO L225 Difference]: With dead ends: 222 [2024-09-21 11:30:37,134 INFO L226 Difference]: Without dead ends: 180 [2024-09-21 11:30:37,135 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 68 GetRequests, 48 SyntacticMatches, 0 SemanticMatches, 20 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 64 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=87, Invalid=375, Unknown=0, NotChecked=0, Total=462 [2024-09-21 11:30:37,136 INFO L434 NwaCegarLoop]: 25 mSDtfsCounter, 46 mSDsluCounter, 166 mSDsCounter, 0 mSdLazyCounter, 341 mSolverCounterSat, 48 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 46 SdHoareTripleChecker+Valid, 191 SdHoareTripleChecker+Invalid, 389 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 48 IncrementalHoareTripleChecker+Valid, 341 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-21 11:30:37,136 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [46 Valid, 191 Invalid, 389 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [48 Valid, 341 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-21 11:30:37,136 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 180 states. [2024-09-21 11:30:37,184 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 180 to 147. [2024-09-21 11:30:37,184 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 147 states, 142 states have (on average 1.471830985915493) internal successors, (209), 142 states have internal predecessors, (209), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:37,185 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 147 states to 147 states and 213 transitions. [2024-09-21 11:30:37,185 INFO L78 Accepts]: Start accepts. Automaton has 147 states and 213 transitions. Word has length 25 [2024-09-21 11:30:37,186 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:30:37,186 INFO L474 AbstractCegarLoop]: Abstraction has 147 states and 213 transitions. [2024-09-21 11:30:37,186 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 14 states, 14 states have (on average 2.142857142857143) internal successors, (30), 14 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:37,186 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:30:37,186 INFO L276 IsEmpty]: Start isEmpty. Operand 147 states and 213 transitions. [2024-09-21 11:30:37,187 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2024-09-21 11:30:37,187 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:30:37,187 INFO L216 NwaCegarLoop]: trace histogram [3, 3, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:30:37,206 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Ended with exit code 0 [2024-09-21 11:30:37,387 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9,9 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:30:37,388 INFO L399 AbstractCegarLoop]: === Iteration 11 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:30:37,389 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:30:37,389 INFO L85 PathProgramCache]: Analyzing trace with hash 1008778426, now seen corresponding path program 3 times [2024-09-21 11:30:37,389 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:30:37,389 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1851454670] [2024-09-21 11:30:37,389 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:30:37,389 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:30:37,399 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:37,546 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:30:37,547 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:37,549 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 0 proven. 18 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:30:37,549 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:30:37,549 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1851454670] [2024-09-21 11:30:37,549 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1851454670] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:30:37,549 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1155947912] [2024-09-21 11:30:37,550 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-09-21 11:30:37,550 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:30:37,550 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:30:37,552 INFO L229 MonitoredProcess]: Starting monitored process 10 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:30:37,554 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Waiting until timeout for monitored process [2024-09-21 11:30:37,598 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 3 check-sat command(s) [2024-09-21 11:30:37,599 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-21 11:30:37,600 INFO L262 TraceCheckSpWp]: Trace formula consists of 94 conjuncts, 16 conjuncts are in the unsatisfiable core [2024-09-21 11:30:37,601 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:30:37,685 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 3 proven. 9 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-21 11:30:37,686 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:30:37,790 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 3 proven. 9 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-21 11:30:37,791 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1155947912] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:30:37,791 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:30:37,791 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [11, 6, 6] total 15 [2024-09-21 11:30:37,791 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [190234459] [2024-09-21 11:30:37,791 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:30:37,791 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 15 states [2024-09-21 11:30:37,792 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:30:37,792 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 15 interpolants. [2024-09-21 11:30:37,792 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=28, Invalid=182, Unknown=0, NotChecked=0, Total=210 [2024-09-21 11:30:37,792 INFO L87 Difference]: Start difference. First operand 147 states and 213 transitions. Second operand has 15 states, 15 states have (on average 2.3333333333333335) internal successors, (35), 15 states have internal predecessors, (35), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:39,331 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:30:39,331 INFO L93 Difference]: Finished difference Result 356 states and 535 transitions. [2024-09-21 11:30:39,331 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 61 states. [2024-09-21 11:30:39,331 INFO L78 Accepts]: Start accepts. Automaton has has 15 states, 15 states have (on average 2.3333333333333335) internal successors, (35), 15 states have internal predecessors, (35), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 25 [2024-09-21 11:30:39,331 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:30:39,333 INFO L225 Difference]: With dead ends: 356 [2024-09-21 11:30:39,333 INFO L226 Difference]: Without dead ends: 319 [2024-09-21 11:30:39,335 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 121 GetRequests, 46 SyntacticMatches, 6 SemanticMatches, 69 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1516 ImplicationChecksByTransitivity, 1.0s TimeCoverageRelationStatistics Valid=524, Invalid=4446, Unknown=0, NotChecked=0, Total=4970 [2024-09-21 11:30:39,336 INFO L434 NwaCegarLoop]: 26 mSDtfsCounter, 164 mSDsluCounter, 219 mSDsCounter, 0 mSdLazyCounter, 736 mSolverCounterSat, 130 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 164 SdHoareTripleChecker+Valid, 245 SdHoareTripleChecker+Invalid, 866 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 130 IncrementalHoareTripleChecker+Valid, 736 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.5s IncrementalHoareTripleChecker+Time [2024-09-21 11:30:39,336 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [164 Valid, 245 Invalid, 866 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [130 Valid, 736 Invalid, 0 Unknown, 0 Unchecked, 0.5s Time] [2024-09-21 11:30:39,337 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 319 states. [2024-09-21 11:30:39,387 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 319 to 171. [2024-09-21 11:30:39,387 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 171 states, 166 states have (on average 1.4759036144578312) internal successors, (245), 166 states have internal predecessors, (245), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:39,388 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 171 states to 171 states and 249 transitions. [2024-09-21 11:30:39,389 INFO L78 Accepts]: Start accepts. Automaton has 171 states and 249 transitions. Word has length 25 [2024-09-21 11:30:39,389 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:30:39,389 INFO L474 AbstractCegarLoop]: Abstraction has 171 states and 249 transitions. [2024-09-21 11:30:39,389 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 15 states, 15 states have (on average 2.3333333333333335) internal successors, (35), 15 states have internal predecessors, (35), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:39,389 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:30:39,390 INFO L276 IsEmpty]: Start isEmpty. Operand 171 states and 249 transitions. [2024-09-21 11:30:39,390 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2024-09-21 11:30:39,390 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:30:39,390 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:30:39,404 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Ended with exit code 0 [2024-09-21 11:30:39,591 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 10 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable10 [2024-09-21 11:30:39,591 INFO L399 AbstractCegarLoop]: === Iteration 12 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:30:39,591 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:30:39,591 INFO L85 PathProgramCache]: Analyzing trace with hash 1467722815, now seen corresponding path program 3 times [2024-09-21 11:30:39,591 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:30:39,591 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [683081040] [2024-09-21 11:30:39,592 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:30:39,592 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:30:39,601 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:39,672 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:30:39,673 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:39,674 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 2 proven. 4 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2024-09-21 11:30:39,674 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:30:39,674 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [683081040] [2024-09-21 11:30:39,675 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [683081040] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:30:39,675 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [269438487] [2024-09-21 11:30:39,675 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-09-21 11:30:39,675 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:30:39,675 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:30:39,677 INFO L229 MonitoredProcess]: Starting monitored process 11 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:30:39,679 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (11)] Waiting until timeout for monitored process [2024-09-21 11:30:39,722 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 2 check-sat command(s) [2024-09-21 11:30:39,722 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-21 11:30:39,723 INFO L262 TraceCheckSpWp]: Trace formula consists of 99 conjuncts, 10 conjuncts are in the unsatisfiable core [2024-09-21 11:30:39,724 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:30:39,759 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 2 proven. 4 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2024-09-21 11:30:39,760 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:30:39,816 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 2 proven. 4 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2024-09-21 11:30:39,817 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [269438487] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:30:39,817 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:30:39,817 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [5, 5, 5] total 5 [2024-09-21 11:30:39,818 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [349973599] [2024-09-21 11:30:39,818 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:30:39,818 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-09-21 11:30:39,818 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:30:39,819 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-09-21 11:30:39,819 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-09-21 11:30:39,819 INFO L87 Difference]: Start difference. First operand 171 states and 249 transitions. Second operand has 5 states, 5 states have (on average 4.0) internal successors, (20), 5 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:39,987 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:30:39,988 INFO L93 Difference]: Finished difference Result 259 states and 367 transitions. [2024-09-21 11:30:39,988 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2024-09-21 11:30:39,988 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 4.0) internal successors, (20), 5 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 26 [2024-09-21 11:30:39,988 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:30:39,990 INFO L225 Difference]: With dead ends: 259 [2024-09-21 11:30:39,990 INFO L226 Difference]: Without dead ends: 247 [2024-09-21 11:30:39,990 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 61 GetRequests, 50 SyntacticMatches, 6 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=15, Invalid=27, Unknown=0, NotChecked=0, Total=42 [2024-09-21 11:30:39,990 INFO L434 NwaCegarLoop]: 28 mSDtfsCounter, 18 mSDsluCounter, 56 mSDsCounter, 0 mSdLazyCounter, 37 mSolverCounterSat, 11 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 18 SdHoareTripleChecker+Valid, 84 SdHoareTripleChecker+Invalid, 48 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 11 IncrementalHoareTripleChecker+Valid, 37 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-21 11:30:39,991 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [18 Valid, 84 Invalid, 48 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [11 Valid, 37 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-21 11:30:39,991 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 247 states. [2024-09-21 11:30:40,072 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 247 to 186. [2024-09-21 11:30:40,072 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 186 states, 181 states have (on average 1.4475138121546962) internal successors, (262), 181 states have internal predecessors, (262), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:40,073 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 186 states to 186 states and 266 transitions. [2024-09-21 11:30:40,074 INFO L78 Accepts]: Start accepts. Automaton has 186 states and 266 transitions. Word has length 26 [2024-09-21 11:30:40,074 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:30:40,074 INFO L474 AbstractCegarLoop]: Abstraction has 186 states and 266 transitions. [2024-09-21 11:30:40,074 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 4.0) internal successors, (20), 5 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:40,074 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:30:40,075 INFO L276 IsEmpty]: Start isEmpty. Operand 186 states and 266 transitions. [2024-09-21 11:30:40,075 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2024-09-21 11:30:40,075 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:30:40,075 INFO L216 NwaCegarLoop]: trace histogram [5, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:30:40,087 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (11)] Forceful destruction successful, exit code 0 [2024-09-21 11:30:40,276 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 11 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable11 [2024-09-21 11:30:40,276 INFO L399 AbstractCegarLoop]: === Iteration 13 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:30:40,276 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:30:40,277 INFO L85 PathProgramCache]: Analyzing trace with hash 722284832, now seen corresponding path program 4 times [2024-09-21 11:30:40,277 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:30:40,277 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1283631184] [2024-09-21 11:30:40,277 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:30:40,277 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:30:40,288 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:40,406 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:30:40,408 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:40,409 INFO L134 CoverageAnalysis]: Checked inductivity of 20 backedges. 0 proven. 16 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-21 11:30:40,409 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:30:40,410 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1283631184] [2024-09-21 11:30:40,410 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1283631184] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:30:40,410 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [612396273] [2024-09-21 11:30:40,410 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2024-09-21 11:30:40,410 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:30:40,411 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:30:40,412 INFO L229 MonitoredProcess]: Starting monitored process 12 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:30:40,414 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (12)] Waiting until timeout for monitored process [2024-09-21 11:30:40,456 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2024-09-21 11:30:40,456 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-21 11:30:40,457 INFO L262 TraceCheckSpWp]: Trace formula consists of 99 conjuncts, 17 conjuncts are in the unsatisfiable core [2024-09-21 11:30:40,458 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:30:40,491 INFO L134 CoverageAnalysis]: Checked inductivity of 20 backedges. 0 proven. 16 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-21 11:30:40,492 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:30:40,604 INFO L134 CoverageAnalysis]: Checked inductivity of 20 backedges. 0 proven. 16 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-21 11:30:40,605 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [612396273] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:30:40,605 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:30:40,605 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 10, 10] total 19 [2024-09-21 11:30:40,605 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1660949550] [2024-09-21 11:30:40,605 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:30:40,605 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 19 states [2024-09-21 11:30:40,605 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:30:40,606 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 19 interpolants. [2024-09-21 11:30:40,606 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=77, Invalid=265, Unknown=0, NotChecked=0, Total=342 [2024-09-21 11:30:40,606 INFO L87 Difference]: Start difference. First operand 186 states and 266 transitions. Second operand has 19 states, 19 states have (on average 1.7894736842105263) internal successors, (34), 19 states have internal predecessors, (34), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:42,359 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:30:42,359 INFO L93 Difference]: Finished difference Result 454 states and 704 transitions. [2024-09-21 11:30:42,360 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 63 states. [2024-09-21 11:30:42,360 INFO L78 Accepts]: Start accepts. Automaton has has 19 states, 19 states have (on average 1.7894736842105263) internal successors, (34), 19 states have internal predecessors, (34), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 26 [2024-09-21 11:30:42,360 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:30:42,362 INFO L225 Difference]: With dead ends: 454 [2024-09-21 11:30:42,362 INFO L226 Difference]: Without dead ends: 382 [2024-09-21 11:30:42,364 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 115 GetRequests, 47 SyntacticMatches, 0 SemanticMatches, 68 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1552 ImplicationChecksByTransitivity, 1.2s TimeCoverageRelationStatistics Valid=1233, Invalid=3597, Unknown=0, NotChecked=0, Total=4830 [2024-09-21 11:30:42,364 INFO L434 NwaCegarLoop]: 37 mSDtfsCounter, 427 mSDsluCounter, 266 mSDsCounter, 0 mSdLazyCounter, 518 mSolverCounterSat, 262 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 427 SdHoareTripleChecker+Valid, 303 SdHoareTripleChecker+Invalid, 780 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 262 IncrementalHoareTripleChecker+Valid, 518 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.5s IncrementalHoareTripleChecker+Time [2024-09-21 11:30:42,365 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [427 Valid, 303 Invalid, 780 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [262 Valid, 518 Invalid, 0 Unknown, 0 Unchecked, 0.5s Time] [2024-09-21 11:30:42,365 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 382 states. [2024-09-21 11:30:42,439 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 382 to 236. [2024-09-21 11:30:42,439 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 236 states, 231 states have (on average 1.4761904761904763) internal successors, (341), 231 states have internal predecessors, (341), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:42,440 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 236 states to 236 states and 345 transitions. [2024-09-21 11:30:42,441 INFO L78 Accepts]: Start accepts. Automaton has 236 states and 345 transitions. Word has length 26 [2024-09-21 11:30:42,441 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:30:42,441 INFO L474 AbstractCegarLoop]: Abstraction has 236 states and 345 transitions. [2024-09-21 11:30:42,442 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 19 states, 19 states have (on average 1.7894736842105263) internal successors, (34), 19 states have internal predecessors, (34), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:42,442 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:30:42,442 INFO L276 IsEmpty]: Start isEmpty. Operand 236 states and 345 transitions. [2024-09-21 11:30:42,443 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 28 [2024-09-21 11:30:42,443 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:30:42,443 INFO L216 NwaCegarLoop]: trace histogram [11, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:30:42,457 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (12)] Forceful destruction successful, exit code 0 [2024-09-21 11:30:42,647 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable12,12 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:30:42,647 INFO L399 AbstractCegarLoop]: === Iteration 14 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:30:42,648 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:30:42,648 INFO L85 PathProgramCache]: Analyzing trace with hash -1716429653, now seen corresponding path program 3 times [2024-09-21 11:30:42,648 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:30:42,648 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1997574930] [2024-09-21 11:30:42,648 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:30:42,648 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:30:42,661 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:42,845 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:30:42,846 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:42,847 INFO L134 CoverageAnalysis]: Checked inductivity of 66 backedges. 0 proven. 66 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:30:42,847 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:30:42,847 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1997574930] [2024-09-21 11:30:42,848 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1997574930] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:30:42,848 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [753763434] [2024-09-21 11:30:42,848 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-09-21 11:30:42,848 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:30:42,848 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:30:42,850 INFO L229 MonitoredProcess]: Starting monitored process 13 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:30:42,851 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (13)] Waiting until timeout for monitored process [2024-09-21 11:30:42,895 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 7 check-sat command(s) [2024-09-21 11:30:42,895 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-21 11:30:42,896 INFO L262 TraceCheckSpWp]: Trace formula consists of 104 conjuncts, 27 conjuncts are in the unsatisfiable core [2024-09-21 11:30:42,896 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:30:42,933 INFO L134 CoverageAnalysis]: Checked inductivity of 66 backedges. 0 proven. 66 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:30:42,933 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:30:43,192 INFO L134 CoverageAnalysis]: Checked inductivity of 66 backedges. 0 proven. 66 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:30:43,192 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [753763434] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:30:43,192 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:30:43,192 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [15, 15, 15] total 29 [2024-09-21 11:30:43,192 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [382480597] [2024-09-21 11:30:43,193 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:30:43,193 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 29 states [2024-09-21 11:30:43,193 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:30:43,193 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 29 interpolants. [2024-09-21 11:30:43,194 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=201, Invalid=611, Unknown=0, NotChecked=0, Total=812 [2024-09-21 11:30:43,194 INFO L87 Difference]: Start difference. First operand 236 states and 345 transitions. Second operand has 29 states, 29 states have (on average 1.3793103448275863) internal successors, (40), 29 states have internal predecessors, (40), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:47,044 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:30:47,044 INFO L93 Difference]: Finished difference Result 821 states and 1318 transitions. [2024-09-21 11:30:47,045 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 60 states. [2024-09-21 11:30:47,045 INFO L78 Accepts]: Start accepts. Automaton has has 29 states, 29 states have (on average 1.3793103448275863) internal successors, (40), 29 states have internal predecessors, (40), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 27 [2024-09-21 11:30:47,045 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:30:47,049 INFO L225 Difference]: With dead ends: 821 [2024-09-21 11:30:47,049 INFO L226 Difference]: Without dead ends: 764 [2024-09-21 11:30:47,051 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 115 GetRequests, 44 SyntacticMatches, 0 SemanticMatches, 71 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1329 ImplicationChecksByTransitivity, 2.5s TimeCoverageRelationStatistics Valid=1624, Invalid=3632, Unknown=0, NotChecked=0, Total=5256 [2024-09-21 11:30:47,051 INFO L434 NwaCegarLoop]: 64 mSDtfsCounter, 1322 mSDsluCounter, 801 mSDsCounter, 0 mSdLazyCounter, 1091 mSolverCounterSat, 684 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1322 SdHoareTripleChecker+Valid, 865 SdHoareTripleChecker+Invalid, 1775 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 684 IncrementalHoareTripleChecker+Valid, 1091 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.4s IncrementalHoareTripleChecker+Time [2024-09-21 11:30:47,052 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [1322 Valid, 865 Invalid, 1775 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [684 Valid, 1091 Invalid, 0 Unknown, 0 Unchecked, 1.4s Time] [2024-09-21 11:30:47,053 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 764 states. [2024-09-21 11:30:47,209 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 764 to 380. [2024-09-21 11:30:47,210 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 380 states, 375 states have (on average 1.5066666666666666) internal successors, (565), 375 states have internal predecessors, (565), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:47,211 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 380 states to 380 states and 569 transitions. [2024-09-21 11:30:47,212 INFO L78 Accepts]: Start accepts. Automaton has 380 states and 569 transitions. Word has length 27 [2024-09-21 11:30:47,213 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:30:47,213 INFO L474 AbstractCegarLoop]: Abstraction has 380 states and 569 transitions. [2024-09-21 11:30:47,213 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 29 states, 29 states have (on average 1.3793103448275863) internal successors, (40), 29 states have internal predecessors, (40), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:47,214 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:30:47,214 INFO L276 IsEmpty]: Start isEmpty. Operand 380 states and 569 transitions. [2024-09-21 11:30:47,214 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 29 [2024-09-21 11:30:47,215 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:30:47,215 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:30:47,227 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (13)] Forceful destruction successful, exit code 0 [2024-09-21 11:30:47,415 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 13 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable13 [2024-09-21 11:30:47,415 INFO L399 AbstractCegarLoop]: === Iteration 15 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:30:47,416 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:30:47,416 INFO L85 PathProgramCache]: Analyzing trace with hash 216651583, now seen corresponding path program 5 times [2024-09-21 11:30:47,416 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:30:47,416 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [211521364] [2024-09-21 11:30:47,416 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:30:47,416 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:30:47,437 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:47,829 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:30:47,830 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:47,831 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 0 proven. 15 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-09-21 11:30:47,831 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:30:47,831 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [211521364] [2024-09-21 11:30:47,831 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [211521364] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:30:47,832 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2111772870] [2024-09-21 11:30:47,832 INFO L93 rtionOrderModulation]: Changing assertion order to INSIDE_LOOP_FIRST1 [2024-09-21 11:30:47,832 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:30:47,832 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:30:47,834 INFO L229 MonitoredProcess]: Starting monitored process 14 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:30:47,836 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (14)] Waiting until timeout for monitored process [2024-09-21 11:30:47,893 INFO L228 tOrderPrioritization]: Assert order INSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-21 11:30:47,894 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-21 11:30:47,895 INFO L262 TraceCheckSpWp]: Trace formula consists of 109 conjuncts, 50 conjuncts are in the unsatisfiable core [2024-09-21 11:30:47,896 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:30:48,380 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 0 proven. 18 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:30:48,380 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:30:48,721 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 0 proven. 15 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-09-21 11:30:48,721 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2111772870] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:30:48,721 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:30:48,721 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [12, 17, 14] total 31 [2024-09-21 11:30:48,721 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2052981085] [2024-09-21 11:30:48,721 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:30:48,722 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 31 states [2024-09-21 11:30:48,722 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:30:48,722 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 31 interpolants. [2024-09-21 11:30:48,723 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=138, Invalid=792, Unknown=0, NotChecked=0, Total=930 [2024-09-21 11:30:48,723 INFO L87 Difference]: Start difference. First operand 380 states and 569 transitions. Second operand has 31 states, 31 states have (on average 1.8064516129032258) internal successors, (56), 29 states have internal predecessors, (56), 3 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:52,798 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-21 11:30:54,509 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:30:54,509 INFO L93 Difference]: Finished difference Result 528 states and 742 transitions. [2024-09-21 11:30:54,509 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 33 states. [2024-09-21 11:30:54,509 INFO L78 Accepts]: Start accepts. Automaton has has 31 states, 31 states have (on average 1.8064516129032258) internal successors, (56), 29 states have internal predecessors, (56), 3 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 28 [2024-09-21 11:30:54,510 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:30:54,512 INFO L225 Difference]: With dead ends: 528 [2024-09-21 11:30:54,512 INFO L226 Difference]: Without dead ends: 434 [2024-09-21 11:30:54,513 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 89 GetRequests, 41 SyntacticMatches, 4 SemanticMatches, 44 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 508 ImplicationChecksByTransitivity, 1.3s TimeCoverageRelationStatistics Valid=292, Invalid=1778, Unknown=0, NotChecked=0, Total=2070 [2024-09-21 11:30:54,515 INFO L434 NwaCegarLoop]: 13 mSDtfsCounter, 35 mSDsluCounter, 202 mSDsCounter, 0 mSdLazyCounter, 631 mSolverCounterSat, 30 mSolverCounterUnsat, 1 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 4.7s Time, 0 mProtectedPredicate, 0 mProtectedAction, 35 SdHoareTripleChecker+Valid, 215 SdHoareTripleChecker+Invalid, 662 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 30 IncrementalHoareTripleChecker+Valid, 631 IncrementalHoareTripleChecker+Invalid, 1 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 4.8s IncrementalHoareTripleChecker+Time [2024-09-21 11:30:54,515 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [35 Valid, 215 Invalid, 662 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [30 Valid, 631 Invalid, 1 Unknown, 0 Unchecked, 4.8s Time] [2024-09-21 11:30:54,516 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 434 states. [2024-09-21 11:30:54,676 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 434 to 358. [2024-09-21 11:30:54,676 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 358 states, 353 states have (on average 1.4844192634560907) internal successors, (524), 353 states have internal predecessors, (524), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:54,677 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 358 states to 358 states and 528 transitions. [2024-09-21 11:30:54,678 INFO L78 Accepts]: Start accepts. Automaton has 358 states and 528 transitions. Word has length 28 [2024-09-21 11:30:54,678 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:30:54,678 INFO L474 AbstractCegarLoop]: Abstraction has 358 states and 528 transitions. [2024-09-21 11:30:54,679 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 31 states, 31 states have (on average 1.8064516129032258) internal successors, (56), 29 states have internal predecessors, (56), 3 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:54,679 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:30:54,679 INFO L276 IsEmpty]: Start isEmpty. Operand 358 states and 528 transitions. [2024-09-21 11:30:54,680 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 29 [2024-09-21 11:30:54,680 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:30:54,680 INFO L216 NwaCegarLoop]: trace histogram [4, 4, 4, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:30:54,698 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (14)] Ended with exit code 0 [2024-09-21 11:30:54,880 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 14 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable14 [2024-09-21 11:30:54,880 INFO L399 AbstractCegarLoop]: === Iteration 16 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:30:54,881 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:30:54,881 INFO L85 PathProgramCache]: Analyzing trace with hash 302553951, now seen corresponding path program 4 times [2024-09-21 11:30:54,881 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:30:54,881 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2142692852] [2024-09-21 11:30:54,881 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:30:54,881 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:30:54,892 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:55,064 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:30:55,065 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:55,066 INFO L134 CoverageAnalysis]: Checked inductivity of 30 backedges. 0 proven. 30 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:30:55,066 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:30:55,066 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2142692852] [2024-09-21 11:30:55,067 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2142692852] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:30:55,067 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [750767831] [2024-09-21 11:30:55,067 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2024-09-21 11:30:55,067 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:30:55,067 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:30:55,069 INFO L229 MonitoredProcess]: Starting monitored process 15 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:30:55,071 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (15)] Waiting until timeout for monitored process [2024-09-21 11:30:55,117 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2024-09-21 11:30:55,117 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-21 11:30:55,120 INFO L262 TraceCheckSpWp]: Trace formula consists of 109 conjuncts, 20 conjuncts are in the unsatisfiable core [2024-09-21 11:30:55,122 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:30:55,238 INFO L134 CoverageAnalysis]: Checked inductivity of 30 backedges. 4 proven. 16 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2024-09-21 11:30:55,239 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:30:55,364 INFO L134 CoverageAnalysis]: Checked inductivity of 30 backedges. 4 proven. 16 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2024-09-21 11:30:55,364 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [750767831] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:30:55,365 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:30:55,365 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [13, 7, 7] total 18 [2024-09-21 11:30:55,365 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [812077958] [2024-09-21 11:30:55,365 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:30:55,365 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 18 states [2024-09-21 11:30:55,365 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:30:55,366 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 18 interpolants. [2024-09-21 11:30:55,366 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=34, Invalid=272, Unknown=0, NotChecked=0, Total=306 [2024-09-21 11:30:55,366 INFO L87 Difference]: Start difference. First operand 358 states and 528 transitions. Second operand has 18 states, 18 states have (on average 2.2222222222222223) internal successors, (40), 18 states have internal predecessors, (40), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:58,374 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:30:58,375 INFO L93 Difference]: Finished difference Result 865 states and 1290 transitions. [2024-09-21 11:30:58,375 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 92 states. [2024-09-21 11:30:58,375 INFO L78 Accepts]: Start accepts. Automaton has has 18 states, 18 states have (on average 2.2222222222222223) internal successors, (40), 18 states have internal predecessors, (40), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 28 [2024-09-21 11:30:58,375 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:30:58,379 INFO L225 Difference]: With dead ends: 865 [2024-09-21 11:30:58,379 INFO L226 Difference]: Without dead ends: 793 [2024-09-21 11:30:58,382 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 161 GetRequests, 50 SyntacticMatches, 8 SemanticMatches, 103 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3724 ImplicationChecksByTransitivity, 1.8s TimeCoverageRelationStatistics Valid=926, Invalid=9994, Unknown=0, NotChecked=0, Total=10920 [2024-09-21 11:30:58,382 INFO L434 NwaCegarLoop]: 30 mSDtfsCounter, 271 mSDsluCounter, 297 mSDsCounter, 0 mSdLazyCounter, 1241 mSolverCounterSat, 267 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.7s Time, 0 mProtectedPredicate, 0 mProtectedAction, 271 SdHoareTripleChecker+Valid, 327 SdHoareTripleChecker+Invalid, 1508 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 267 IncrementalHoareTripleChecker+Valid, 1241 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.8s IncrementalHoareTripleChecker+Time [2024-09-21 11:30:58,382 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [271 Valid, 327 Invalid, 1508 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [267 Valid, 1241 Invalid, 0 Unknown, 0 Unchecked, 0.8s Time] [2024-09-21 11:30:58,383 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 793 states. [2024-09-21 11:30:58,590 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 793 to 410. [2024-09-21 11:30:58,591 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 410 states, 405 states have (on average 1.4987654320987653) internal successors, (607), 405 states have internal predecessors, (607), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:58,592 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 410 states to 410 states and 611 transitions. [2024-09-21 11:30:58,593 INFO L78 Accepts]: Start accepts. Automaton has 410 states and 611 transitions. Word has length 28 [2024-09-21 11:30:58,593 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:30:58,593 INFO L474 AbstractCegarLoop]: Abstraction has 410 states and 611 transitions. [2024-09-21 11:30:58,593 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 18 states, 18 states have (on average 2.2222222222222223) internal successors, (40), 18 states have internal predecessors, (40), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:58,593 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:30:58,593 INFO L276 IsEmpty]: Start isEmpty. Operand 410 states and 611 transitions. [2024-09-21 11:30:58,594 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 31 [2024-09-21 11:30:58,594 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:30:58,594 INFO L216 NwaCegarLoop]: trace histogram [3, 3, 3, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:30:58,608 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (15)] Ended with exit code 0 [2024-09-21 11:30:58,798 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 15 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable15 [2024-09-21 11:30:58,799 INFO L399 AbstractCegarLoop]: === Iteration 17 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:30:58,799 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:30:58,799 INFO L85 PathProgramCache]: Analyzing trace with hash 997958656, now seen corresponding path program 6 times [2024-09-21 11:30:58,799 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:30:58,799 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [803432579] [2024-09-21 11:30:58,799 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:30:58,799 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:30:58,811 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:58,942 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:30:58,943 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:30:58,945 INFO L134 CoverageAnalysis]: Checked inductivity of 26 backedges. 6 proven. 7 refuted. 0 times theorem prover too weak. 13 trivial. 0 not checked. [2024-09-21 11:30:58,945 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:30:58,945 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [803432579] [2024-09-21 11:30:58,945 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [803432579] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:30:58,945 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1453544898] [2024-09-21 11:30:58,945 INFO L93 rtionOrderModulation]: Changing assertion order to MIX_INSIDE_OUTSIDE [2024-09-21 11:30:58,946 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:30:58,946 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:30:58,947 INFO L229 MonitoredProcess]: Starting monitored process 16 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:30:58,949 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (16)] Waiting until timeout for monitored process [2024-09-21 11:30:58,995 INFO L228 tOrderPrioritization]: Assert order MIX_INSIDE_OUTSIDE issued 3 check-sat command(s) [2024-09-21 11:30:58,995 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-21 11:30:58,996 INFO L262 TraceCheckSpWp]: Trace formula consists of 119 conjuncts, 14 conjuncts are in the unsatisfiable core [2024-09-21 11:30:58,997 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:30:59,055 INFO L134 CoverageAnalysis]: Checked inductivity of 26 backedges. 4 proven. 8 refuted. 0 times theorem prover too weak. 14 trivial. 0 not checked. [2024-09-21 11:30:59,056 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:30:59,114 INFO L134 CoverageAnalysis]: Checked inductivity of 26 backedges. 4 proven. 8 refuted. 0 times theorem prover too weak. 14 trivial. 0 not checked. [2024-09-21 11:30:59,115 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1453544898] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:30:59,115 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:30:59,115 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [9, 6, 6] total 12 [2024-09-21 11:30:59,115 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1028290260] [2024-09-21 11:30:59,115 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:30:59,116 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 12 states [2024-09-21 11:30:59,116 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:30:59,116 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 12 interpolants. [2024-09-21 11:30:59,116 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=39, Invalid=93, Unknown=0, NotChecked=0, Total=132 [2024-09-21 11:30:59,116 INFO L87 Difference]: Start difference. First operand 410 states and 611 transitions. Second operand has 12 states, 12 states have (on average 2.8333333333333335) internal successors, (34), 12 states have internal predecessors, (34), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:59,616 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:30:59,616 INFO L93 Difference]: Finished difference Result 672 states and 978 transitions. [2024-09-21 11:30:59,616 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2024-09-21 11:30:59,616 INFO L78 Accepts]: Start accepts. Automaton has has 12 states, 12 states have (on average 2.8333333333333335) internal successors, (34), 12 states have internal predecessors, (34), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 30 [2024-09-21 11:30:59,617 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:30:59,619 INFO L225 Difference]: With dead ends: 672 [2024-09-21 11:30:59,620 INFO L226 Difference]: Without dead ends: 642 [2024-09-21 11:30:59,620 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 72 GetRequests, 53 SyntacticMatches, 7 SemanticMatches, 12 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 68 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=52, Invalid=130, Unknown=0, NotChecked=0, Total=182 [2024-09-21 11:30:59,620 INFO L434 NwaCegarLoop]: 37 mSDtfsCounter, 61 mSDsluCounter, 128 mSDsCounter, 0 mSdLazyCounter, 84 mSolverCounterSat, 29 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 61 SdHoareTripleChecker+Valid, 165 SdHoareTripleChecker+Invalid, 113 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 29 IncrementalHoareTripleChecker+Valid, 84 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-21 11:30:59,621 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [61 Valid, 165 Invalid, 113 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [29 Valid, 84 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-21 11:30:59,621 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 642 states. [2024-09-21 11:30:59,866 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 642 to 413. [2024-09-21 11:30:59,867 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 413 states, 408 states have (on average 1.4877450980392157) internal successors, (607), 408 states have internal predecessors, (607), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:59,868 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 413 states to 413 states and 611 transitions. [2024-09-21 11:30:59,868 INFO L78 Accepts]: Start accepts. Automaton has 413 states and 611 transitions. Word has length 30 [2024-09-21 11:30:59,869 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:30:59,869 INFO L474 AbstractCegarLoop]: Abstraction has 413 states and 611 transitions. [2024-09-21 11:30:59,869 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 12 states, 12 states have (on average 2.8333333333333335) internal successors, (34), 12 states have internal predecessors, (34), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:30:59,869 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:30:59,869 INFO L276 IsEmpty]: Start isEmpty. Operand 413 states and 611 transitions. [2024-09-21 11:30:59,870 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 32 [2024-09-21 11:30:59,870 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:30:59,870 INFO L216 NwaCegarLoop]: trace histogram [5, 5, 5, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:30:59,885 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (16)] Ended with exit code 0 [2024-09-21 11:31:00,074 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 16 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable16 [2024-09-21 11:31:00,075 INFO L399 AbstractCegarLoop]: === Iteration 18 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:31:00,075 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:31:00,075 INFO L85 PathProgramCache]: Analyzing trace with hash -1736256998, now seen corresponding path program 5 times [2024-09-21 11:31:00,075 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:31:00,075 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1297991587] [2024-09-21 11:31:00,075 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:31:00,075 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:31:00,086 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:31:00,289 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:31:00,290 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:31:00,291 INFO L134 CoverageAnalysis]: Checked inductivity of 45 backedges. 0 proven. 45 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:31:00,291 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:31:00,291 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1297991587] [2024-09-21 11:31:00,291 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1297991587] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:31:00,291 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [539778825] [2024-09-21 11:31:00,292 INFO L93 rtionOrderModulation]: Changing assertion order to INSIDE_LOOP_FIRST1 [2024-09-21 11:31:00,292 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:31:00,292 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:31:00,294 INFO L229 MonitoredProcess]: Starting monitored process 17 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:31:00,295 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (17)] Waiting until timeout for monitored process [2024-09-21 11:31:00,360 INFO L228 tOrderPrioritization]: Assert order INSIDE_LOOP_FIRST1 issued 4 check-sat command(s) [2024-09-21 11:31:00,360 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-21 11:31:00,361 INFO L262 TraceCheckSpWp]: Trace formula consists of 124 conjuncts, 36 conjuncts are in the unsatisfiable core [2024-09-21 11:31:00,363 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:31:00,497 INFO L134 CoverageAnalysis]: Checked inductivity of 45 backedges. 0 proven. 45 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:31:00,497 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:31:00,821 INFO L134 CoverageAnalysis]: Checked inductivity of 45 backedges. 0 proven. 30 refuted. 0 times theorem prover too weak. 15 trivial. 0 not checked. [2024-09-21 11:31:00,821 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [539778825] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:31:00,821 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:31:00,822 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [15, 19, 13] total 32 [2024-09-21 11:31:00,822 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1941225735] [2024-09-21 11:31:00,822 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:31:00,822 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 32 states [2024-09-21 11:31:00,822 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:31:00,823 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 32 interpolants. [2024-09-21 11:31:00,823 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=216, Invalid=776, Unknown=0, NotChecked=0, Total=992 [2024-09-21 11:31:00,823 INFO L87 Difference]: Start difference. First operand 413 states and 611 transitions. Second operand has 32 states, 32 states have (on average 1.78125) internal successors, (57), 32 states have internal predecessors, (57), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:31:03,525 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:31:03,525 INFO L93 Difference]: Finished difference Result 1049 states and 1576 transitions. [2024-09-21 11:31:03,526 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 77 states. [2024-09-21 11:31:03,526 INFO L78 Accepts]: Start accepts. Automaton has has 32 states, 32 states have (on average 1.78125) internal successors, (57), 32 states have internal predecessors, (57), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 31 [2024-09-21 11:31:03,526 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:31:03,530 INFO L225 Difference]: With dead ends: 1049 [2024-09-21 11:31:03,530 INFO L226 Difference]: Without dead ends: 975 [2024-09-21 11:31:03,532 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 136 GetRequests, 53 SyntacticMatches, 0 SemanticMatches, 83 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2098 ImplicationChecksByTransitivity, 1.4s TimeCoverageRelationStatistics Valid=1727, Invalid=5413, Unknown=0, NotChecked=0, Total=7140 [2024-09-21 11:31:03,533 INFO L434 NwaCegarLoop]: 32 mSDtfsCounter, 305 mSDsluCounter, 482 mSDsCounter, 0 mSdLazyCounter, 1683 mSolverCounterSat, 327 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.7s Time, 0 mProtectedPredicate, 0 mProtectedAction, 305 SdHoareTripleChecker+Valid, 514 SdHoareTripleChecker+Invalid, 2010 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 327 IncrementalHoareTripleChecker+Valid, 1683 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.9s IncrementalHoareTripleChecker+Time [2024-09-21 11:31:03,533 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [305 Valid, 514 Invalid, 2010 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [327 Valid, 1683 Invalid, 0 Unknown, 0 Unchecked, 0.9s Time] [2024-09-21 11:31:03,534 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 975 states. [2024-09-21 11:31:03,828 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 975 to 484. [2024-09-21 11:31:03,829 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 484 states, 479 states have (on average 1.4968684759916493) internal successors, (717), 479 states have internal predecessors, (717), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:31:03,830 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 484 states to 484 states and 721 transitions. [2024-09-21 11:31:03,831 INFO L78 Accepts]: Start accepts. Automaton has 484 states and 721 transitions. Word has length 31 [2024-09-21 11:31:03,831 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:31:03,832 INFO L474 AbstractCegarLoop]: Abstraction has 484 states and 721 transitions. [2024-09-21 11:31:03,832 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 32 states, 32 states have (on average 1.78125) internal successors, (57), 32 states have internal predecessors, (57), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:31:03,832 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:31:03,832 INFO L276 IsEmpty]: Start isEmpty. Operand 484 states and 721 transitions. [2024-09-21 11:31:03,833 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2024-09-21 11:31:03,833 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:31:03,833 INFO L216 NwaCegarLoop]: trace histogram [6, 6, 5, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:31:03,847 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (17)] Forceful destruction successful, exit code 0 [2024-09-21 11:31:04,037 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable17,17 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:31:04,038 INFO L399 AbstractCegarLoop]: === Iteration 19 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:31:04,038 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:31:04,038 INFO L85 PathProgramCache]: Analyzing trace with hash -1362411958, now seen corresponding path program 6 times [2024-09-21 11:31:04,038 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:31:04,038 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1819095858] [2024-09-21 11:31:04,038 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:31:04,038 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:31:04,047 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:31:04,231 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:31:04,232 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:31:04,234 INFO L134 CoverageAnalysis]: Checked inductivity of 57 backedges. 0 proven. 36 refuted. 0 times theorem prover too weak. 21 trivial. 0 not checked. [2024-09-21 11:31:04,234 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:31:04,234 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1819095858] [2024-09-21 11:31:04,234 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1819095858] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:31:04,234 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1564365855] [2024-09-21 11:31:04,234 INFO L93 rtionOrderModulation]: Changing assertion order to MIX_INSIDE_OUTSIDE [2024-09-21 11:31:04,234 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:31:04,234 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:31:04,236 INFO L229 MonitoredProcess]: Starting monitored process 18 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:31:04,250 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (18)] Waiting until timeout for monitored process [2024-09-21 11:31:04,307 INFO L228 tOrderPrioritization]: Assert order MIX_INSIDE_OUTSIDE issued 4 check-sat command(s) [2024-09-21 11:31:04,307 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-21 11:31:04,311 INFO L262 TraceCheckSpWp]: Trace formula consists of 134 conjuncts, 22 conjuncts are in the unsatisfiable core [2024-09-21 11:31:04,312 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:31:04,502 INFO L134 CoverageAnalysis]: Checked inductivity of 57 backedges. 10 proven. 25 refuted. 0 times theorem prover too weak. 22 trivial. 0 not checked. [2024-09-21 11:31:04,502 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:31:04,723 INFO L134 CoverageAnalysis]: Checked inductivity of 57 backedges. 10 proven. 25 refuted. 0 times theorem prover too weak. 22 trivial. 0 not checked. [2024-09-21 11:31:04,723 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1564365855] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:31:04,723 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:31:04,723 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [15, 8, 8] total 21 [2024-09-21 11:31:04,724 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1651044512] [2024-09-21 11:31:04,724 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:31:04,724 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 21 states [2024-09-21 11:31:04,724 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:31:04,725 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 21 interpolants. [2024-09-21 11:31:04,725 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=44, Invalid=376, Unknown=0, NotChecked=0, Total=420 [2024-09-21 11:31:04,725 INFO L87 Difference]: Start difference. First operand 484 states and 721 transitions. Second operand has 21 states, 21 states have (on average 2.0) internal successors, (42), 21 states have internal predecessors, (42), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:31:08,222 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:31:08,223 INFO L93 Difference]: Finished difference Result 1054 states and 1529 transitions. [2024-09-21 11:31:08,223 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 88 states. [2024-09-21 11:31:08,223 INFO L78 Accepts]: Start accepts. Automaton has has 21 states, 21 states have (on average 2.0) internal successors, (42), 21 states have internal predecessors, (42), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 33 [2024-09-21 11:31:08,223 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:31:08,227 INFO L225 Difference]: With dead ends: 1054 [2024-09-21 11:31:08,227 INFO L226 Difference]: Without dead ends: 962 [2024-09-21 11:31:08,229 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 167 GetRequests, 61 SyntacticMatches, 10 SemanticMatches, 96 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2933 ImplicationChecksByTransitivity, 2.1s TimeCoverageRelationStatistics Valid=989, Invalid=8517, Unknown=0, NotChecked=0, Total=9506 [2024-09-21 11:31:08,230 INFO L434 NwaCegarLoop]: 45 mSDtfsCounter, 384 mSDsluCounter, 384 mSDsCounter, 0 mSdLazyCounter, 1105 mSolverCounterSat, 269 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.8s Time, 0 mProtectedPredicate, 0 mProtectedAction, 384 SdHoareTripleChecker+Valid, 429 SdHoareTripleChecker+Invalid, 1374 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 269 IncrementalHoareTripleChecker+Valid, 1105 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.9s IncrementalHoareTripleChecker+Time [2024-09-21 11:31:08,230 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [384 Valid, 429 Invalid, 1374 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [269 Valid, 1105 Invalid, 0 Unknown, 0 Unchecked, 0.9s Time] [2024-09-21 11:31:08,231 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 962 states. [2024-09-21 11:31:08,553 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 962 to 510. [2024-09-21 11:31:08,554 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 510 states, 505 states have (on average 1.491089108910891) internal successors, (753), 505 states have internal predecessors, (753), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:31:08,555 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 510 states to 510 states and 757 transitions. [2024-09-21 11:31:08,556 INFO L78 Accepts]: Start accepts. Automaton has 510 states and 757 transitions. Word has length 33 [2024-09-21 11:31:08,556 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:31:08,557 INFO L474 AbstractCegarLoop]: Abstraction has 510 states and 757 transitions. [2024-09-21 11:31:08,557 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 21 states, 21 states have (on average 2.0) internal successors, (42), 21 states have internal predecessors, (42), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:31:08,557 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:31:08,557 INFO L276 IsEmpty]: Start isEmpty. Operand 510 states and 757 transitions. [2024-09-21 11:31:08,558 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2024-09-21 11:31:08,558 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:31:08,558 INFO L216 NwaCegarLoop]: trace histogram [12, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:31:08,572 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (18)] Forceful destruction successful, exit code 0 [2024-09-21 11:31:08,758 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable18,18 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:31:08,759 INFO L399 AbstractCegarLoop]: === Iteration 20 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:31:08,760 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:31:08,760 INFO L85 PathProgramCache]: Analyzing trace with hash 1741060780, now seen corresponding path program 7 times [2024-09-21 11:31:08,760 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:31:08,760 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1084471309] [2024-09-21 11:31:08,760 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:31:08,760 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:31:08,772 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:31:08,990 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:31:08,992 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:31:08,993 INFO L134 CoverageAnalysis]: Checked inductivity of 83 backedges. 0 proven. 79 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-21 11:31:08,994 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:31:08,994 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1084471309] [2024-09-21 11:31:08,994 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1084471309] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:31:08,994 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1556923638] [2024-09-21 11:31:08,994 INFO L93 rtionOrderModulation]: Changing assertion order to NOT_INCREMENTALLY [2024-09-21 11:31:08,994 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:31:08,995 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:31:08,997 INFO L229 MonitoredProcess]: Starting monitored process 19 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:31:08,999 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (19)] Waiting until timeout for monitored process [2024-09-21 11:31:09,047 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:31:09,048 INFO L262 TraceCheckSpWp]: Trace formula consists of 134 conjuncts, 31 conjuncts are in the unsatisfiable core [2024-09-21 11:31:09,049 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:31:09,086 INFO L134 CoverageAnalysis]: Checked inductivity of 83 backedges. 0 proven. 79 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-21 11:31:09,086 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:31:09,506 INFO L134 CoverageAnalysis]: Checked inductivity of 83 backedges. 0 proven. 79 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-21 11:31:09,506 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1556923638] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:31:09,506 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:31:09,506 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [17, 17, 17] total 33 [2024-09-21 11:31:09,506 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1821259618] [2024-09-21 11:31:09,506 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:31:09,507 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 33 states [2024-09-21 11:31:09,507 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:31:09,507 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 33 interpolants. [2024-09-21 11:31:09,508 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=238, Invalid=818, Unknown=0, NotChecked=0, Total=1056 [2024-09-21 11:31:09,508 INFO L87 Difference]: Start difference. First operand 510 states and 757 transitions. Second operand has 33 states, 33 states have (on average 1.4545454545454546) internal successors, (48), 33 states have internal predecessors, (48), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:31:21,426 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:31:21,427 INFO L93 Difference]: Finished difference Result 1408 states and 2227 transitions. [2024-09-21 11:31:21,427 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 131 states. [2024-09-21 11:31:21,427 INFO L78 Accepts]: Start accepts. Automaton has has 33 states, 33 states have (on average 1.4545454545454546) internal successors, (48), 33 states have internal predecessors, (48), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 33 [2024-09-21 11:31:21,427 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:31:21,432 INFO L225 Difference]: With dead ends: 1408 [2024-09-21 11:31:21,432 INFO L226 Difference]: Without dead ends: 1236 [2024-09-21 11:31:21,435 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 197 GetRequests, 54 SyntacticMatches, 0 SemanticMatches, 143 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 7998 ImplicationChecksByTransitivity, 8.5s TimeCoverageRelationStatistics Valid=5551, Invalid=15329, Unknown=0, NotChecked=0, Total=20880 [2024-09-21 11:31:21,436 INFO L434 NwaCegarLoop]: 71 mSDtfsCounter, 1663 mSDsluCounter, 972 mSDsCounter, 0 mSdLazyCounter, 1505 mSolverCounterSat, 1110 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 2.6s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1663 SdHoareTripleChecker+Valid, 1043 SdHoareTripleChecker+Invalid, 2615 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1110 IncrementalHoareTripleChecker+Valid, 1505 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 2.8s IncrementalHoareTripleChecker+Time [2024-09-21 11:31:21,436 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [1663 Valid, 1043 Invalid, 2615 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1110 Valid, 1505 Invalid, 0 Unknown, 0 Unchecked, 2.8s Time] [2024-09-21 11:31:21,438 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1236 states. [2024-09-21 11:31:21,905 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1236 to 561. [2024-09-21 11:31:21,906 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 561 states, 556 states have (on average 1.485611510791367) internal successors, (826), 556 states have internal predecessors, (826), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:31:21,908 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 561 states to 561 states and 830 transitions. [2024-09-21 11:31:21,909 INFO L78 Accepts]: Start accepts. Automaton has 561 states and 830 transitions. Word has length 33 [2024-09-21 11:31:21,910 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:31:21,910 INFO L474 AbstractCegarLoop]: Abstraction has 561 states and 830 transitions. [2024-09-21 11:31:21,910 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 33 states, 33 states have (on average 1.4545454545454546) internal successors, (48), 33 states have internal predecessors, (48), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:31:21,910 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:31:21,910 INFO L276 IsEmpty]: Start isEmpty. Operand 561 states and 830 transitions. [2024-09-21 11:31:21,912 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 35 [2024-09-21 11:31:21,912 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:31:21,912 INFO L216 NwaCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:31:21,929 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (19)] Ended with exit code 0 [2024-09-21 11:31:22,112 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable19,19 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:31:22,113 INFO L399 AbstractCegarLoop]: === Iteration 21 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:31:22,113 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:31:22,113 INFO L85 PathProgramCache]: Analyzing trace with hash -906855808, now seen corresponding path program 8 times [2024-09-21 11:31:22,113 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:31:22,113 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [236047897] [2024-09-21 11:31:22,113 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:31:22,113 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:31:22,132 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:31:22,677 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:31:22,678 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:31:22,680 INFO L134 CoverageAnalysis]: Checked inductivity of 36 backedges. 0 proven. 30 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-21 11:31:22,680 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:31:22,680 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [236047897] [2024-09-21 11:31:22,680 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [236047897] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:31:22,680 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [698769272] [2024-09-21 11:31:22,680 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-21 11:31:22,680 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:31:22,680 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:31:22,682 INFO L229 MonitoredProcess]: Starting monitored process 20 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:31:22,684 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (20)] Waiting until timeout for monitored process [2024-09-21 11:31:22,752 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-21 11:31:22,752 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-21 11:31:22,754 INFO L262 TraceCheckSpWp]: Trace formula consists of 139 conjuncts, 67 conjuncts are in the unsatisfiable core [2024-09-21 11:31:22,755 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:31:23,537 INFO L134 CoverageAnalysis]: Checked inductivity of 36 backedges. 0 proven. 36 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:31:23,537 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:31:24,053 INFO L134 CoverageAnalysis]: Checked inductivity of 36 backedges. 0 proven. 30 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-21 11:31:24,054 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [698769272] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:31:24,054 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:31:24,054 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [15, 22, 14] total 39 [2024-09-21 11:31:24,054 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1017252055] [2024-09-21 11:31:24,054 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:31:24,054 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 39 states [2024-09-21 11:31:24,054 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:31:24,055 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 39 interpolants. [2024-09-21 11:31:24,055 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=187, Invalid=1295, Unknown=0, NotChecked=0, Total=1482 [2024-09-21 11:31:24,055 INFO L87 Difference]: Start difference. First operand 561 states and 830 transitions. Second operand has 39 states, 39 states have (on average 1.8974358974358974) internal successors, (74), 37 states have internal predecessors, (74), 4 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:31:27,499 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:31:27,499 INFO L93 Difference]: Finished difference Result 762 states and 1064 transitions. [2024-09-21 11:31:27,500 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 48 states. [2024-09-21 11:31:27,500 INFO L78 Accepts]: Start accepts. Automaton has has 39 states, 39 states have (on average 1.8974358974358974) internal successors, (74), 37 states have internal predecessors, (74), 4 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 34 [2024-09-21 11:31:27,500 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:31:27,503 INFO L225 Difference]: With dead ends: 762 [2024-09-21 11:31:27,503 INFO L226 Difference]: Without dead ends: 644 [2024-09-21 11:31:27,504 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 120 GetRequests, 52 SyntacticMatches, 2 SemanticMatches, 66 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1092 ImplicationChecksByTransitivity, 2.7s TimeCoverageRelationStatistics Valid=535, Invalid=4021, Unknown=0, NotChecked=0, Total=4556 [2024-09-21 11:31:27,504 INFO L434 NwaCegarLoop]: 15 mSDtfsCounter, 74 mSDsluCounter, 207 mSDsCounter, 0 mSdLazyCounter, 834 mSolverCounterSat, 42 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 74 SdHoareTripleChecker+Valid, 222 SdHoareTripleChecker+Invalid, 876 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 42 IncrementalHoareTripleChecker+Valid, 834 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.2s IncrementalHoareTripleChecker+Time [2024-09-21 11:31:27,505 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [74 Valid, 222 Invalid, 876 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [42 Valid, 834 Invalid, 0 Unknown, 0 Unchecked, 1.2s Time] [2024-09-21 11:31:27,505 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 644 states. [2024-09-21 11:31:27,901 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 644 to 532. [2024-09-21 11:31:27,902 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 532 states, 527 states have (on average 1.4743833017077799) internal successors, (777), 527 states have internal predecessors, (777), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:31:27,903 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 532 states to 532 states and 781 transitions. [2024-09-21 11:31:27,904 INFO L78 Accepts]: Start accepts. Automaton has 532 states and 781 transitions. Word has length 34 [2024-09-21 11:31:27,904 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:31:27,904 INFO L474 AbstractCegarLoop]: Abstraction has 532 states and 781 transitions. [2024-09-21 11:31:27,904 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 39 states, 39 states have (on average 1.8974358974358974) internal successors, (74), 37 states have internal predecessors, (74), 4 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:31:27,905 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:31:27,905 INFO L276 IsEmpty]: Start isEmpty. Operand 532 states and 781 transitions. [2024-09-21 11:31:27,906 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 35 [2024-09-21 11:31:27,906 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:31:27,906 INFO L216 NwaCegarLoop]: trace histogram [6, 6, 6, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:31:27,921 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (20)] Forceful destruction successful, exit code 0 [2024-09-21 11:31:28,106 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 20 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable20 [2024-09-21 11:31:28,107 INFO L399 AbstractCegarLoop]: === Iteration 22 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:31:28,107 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:31:28,107 INFO L85 PathProgramCache]: Analyzing trace with hash -1249736321, now seen corresponding path program 7 times [2024-09-21 11:31:28,107 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:31:28,107 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [663081409] [2024-09-21 11:31:28,107 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:31:28,107 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:31:28,118 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:31:28,354 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:31:28,356 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:31:28,357 INFO L134 CoverageAnalysis]: Checked inductivity of 63 backedges. 0 proven. 63 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:31:28,357 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:31:28,357 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [663081409] [2024-09-21 11:31:28,358 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [663081409] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:31:28,358 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1071754093] [2024-09-21 11:31:28,358 INFO L93 rtionOrderModulation]: Changing assertion order to NOT_INCREMENTALLY [2024-09-21 11:31:28,358 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:31:28,358 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:31:28,360 INFO L229 MonitoredProcess]: Starting monitored process 21 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:31:28,363 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (21)] Waiting until timeout for monitored process [2024-09-21 11:31:28,402 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:31:28,403 INFO L262 TraceCheckSpWp]: Trace formula consists of 139 conjuncts, 14 conjuncts are in the unsatisfiable core [2024-09-21 11:31:28,404 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:31:28,529 INFO L134 CoverageAnalysis]: Checked inductivity of 63 backedges. 0 proven. 21 refuted. 0 times theorem prover too weak. 42 trivial. 0 not checked. [2024-09-21 11:31:28,529 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:31:28,709 INFO L134 CoverageAnalysis]: Checked inductivity of 63 backedges. 0 proven. 21 refuted. 0 times theorem prover too weak. 42 trivial. 0 not checked. [2024-09-21 11:31:28,710 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1071754093] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:31:28,710 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:31:28,710 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [17, 9, 9] total 31 [2024-09-21 11:31:28,710 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1009942609] [2024-09-21 11:31:28,710 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:31:28,710 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 31 states [2024-09-21 11:31:28,710 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:31:28,711 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 31 interpolants. [2024-09-21 11:31:28,711 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=164, Invalid=766, Unknown=0, NotChecked=0, Total=930 [2024-09-21 11:31:28,711 INFO L87 Difference]: Start difference. First operand 532 states and 781 transitions. Second operand has 31 states, 31 states have (on average 1.7741935483870968) internal successors, (55), 31 states have internal predecessors, (55), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:31:33,074 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:31:33,074 INFO L93 Difference]: Finished difference Result 1793 states and 2748 transitions. [2024-09-21 11:31:33,075 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 92 states. [2024-09-21 11:31:33,075 INFO L78 Accepts]: Start accepts. Automaton has has 31 states, 31 states have (on average 1.7741935483870968) internal successors, (55), 31 states have internal predecessors, (55), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 34 [2024-09-21 11:31:33,075 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:31:33,080 INFO L225 Difference]: With dead ends: 1793 [2024-09-21 11:31:33,080 INFO L226 Difference]: Without dead ends: 1702 [2024-09-21 11:31:33,081 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 181 GetRequests, 86 SyntacticMatches, 0 SemanticMatches, 95 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2284 ImplicationChecksByTransitivity, 1.6s TimeCoverageRelationStatistics Valid=1644, Invalid=7668, Unknown=0, NotChecked=0, Total=9312 [2024-09-21 11:31:33,082 INFO L434 NwaCegarLoop]: 51 mSDtfsCounter, 342 mSDsluCounter, 838 mSDsCounter, 0 mSdLazyCounter, 2729 mSolverCounterSat, 377 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 342 SdHoareTripleChecker+Valid, 889 SdHoareTripleChecker+Invalid, 3106 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 377 IncrementalHoareTripleChecker+Valid, 2729 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.3s IncrementalHoareTripleChecker+Time [2024-09-21 11:31:33,082 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [342 Valid, 889 Invalid, 3106 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [377 Valid, 2729 Invalid, 0 Unknown, 0 Unchecked, 1.3s Time] [2024-09-21 11:31:33,083 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1702 states. [2024-09-21 11:31:33,724 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1702 to 708. [2024-09-21 11:31:33,726 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 708 states, 703 states have (on average 1.496443812233286) internal successors, (1052), 703 states have internal predecessors, (1052), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:31:33,728 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 708 states to 708 states and 1056 transitions. [2024-09-21 11:31:33,730 INFO L78 Accepts]: Start accepts. Automaton has 708 states and 1056 transitions. Word has length 34 [2024-09-21 11:31:33,730 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:31:33,731 INFO L474 AbstractCegarLoop]: Abstraction has 708 states and 1056 transitions. [2024-09-21 11:31:33,731 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 31 states, 31 states have (on average 1.7741935483870968) internal successors, (55), 31 states have internal predecessors, (55), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:31:33,731 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:31:33,731 INFO L276 IsEmpty]: Start isEmpty. Operand 708 states and 1056 transitions. [2024-09-21 11:31:33,732 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 37 [2024-09-21 11:31:33,732 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:31:33,733 INFO L216 NwaCegarLoop]: trace histogram [4, 4, 4, 4, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:31:33,750 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (21)] Ended with exit code 0 [2024-09-21 11:31:33,933 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 21 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable21 [2024-09-21 11:31:33,933 INFO L399 AbstractCegarLoop]: === Iteration 23 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:31:33,934 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:31:33,934 INFO L85 PathProgramCache]: Analyzing trace with hash 572674207, now seen corresponding path program 9 times [2024-09-21 11:31:33,934 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:31:33,934 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [598787310] [2024-09-21 11:31:33,934 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:31:33,934 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:31:33,961 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:31:34,159 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:31:34,160 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:31:34,162 INFO L134 CoverageAnalysis]: Checked inductivity of 46 backedges. 0 proven. 13 refuted. 0 times theorem prover too weak. 33 trivial. 0 not checked. [2024-09-21 11:31:34,162 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:31:34,162 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [598787310] [2024-09-21 11:31:34,162 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [598787310] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:31:34,162 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1643169784] [2024-09-21 11:31:34,162 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-09-21 11:31:34,163 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:31:34,163 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:31:34,164 INFO L229 MonitoredProcess]: Starting monitored process 22 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:31:34,166 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (22)] Waiting until timeout for monitored process [2024-09-21 11:31:34,216 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 3 check-sat command(s) [2024-09-21 11:31:34,217 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-21 11:31:34,218 INFO L262 TraceCheckSpWp]: Trace formula consists of 149 conjuncts, 18 conjuncts are in the unsatisfiable core [2024-09-21 11:31:34,219 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:31:34,324 INFO L134 CoverageAnalysis]: Checked inductivity of 46 backedges. 6 proven. 14 refuted. 0 times theorem prover too weak. 26 trivial. 0 not checked. [2024-09-21 11:31:34,325 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:31:34,445 INFO L134 CoverageAnalysis]: Checked inductivity of 46 backedges. 6 proven. 14 refuted. 0 times theorem prover too weak. 26 trivial. 0 not checked. [2024-09-21 11:31:34,445 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1643169784] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:31:34,445 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:31:34,445 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [9, 7, 7] total 14 [2024-09-21 11:31:34,446 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1031653294] [2024-09-21 11:31:34,446 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:31:34,446 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 14 states [2024-09-21 11:31:34,446 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:31:34,447 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 14 interpolants. [2024-09-21 11:31:34,447 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=58, Invalid=124, Unknown=0, NotChecked=0, Total=182 [2024-09-21 11:31:34,447 INFO L87 Difference]: Start difference. First operand 708 states and 1056 transitions. Second operand has 14 states, 14 states have (on average 2.5714285714285716) internal successors, (36), 14 states have internal predecessors, (36), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:31:39,148 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-21 11:31:40,675 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:31:40,675 INFO L93 Difference]: Finished difference Result 1782 states and 2675 transitions. [2024-09-21 11:31:40,675 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 18 states. [2024-09-21 11:31:40,675 INFO L78 Accepts]: Start accepts. Automaton has has 14 states, 14 states have (on average 2.5714285714285716) internal successors, (36), 14 states have internal predecessors, (36), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 36 [2024-09-21 11:31:40,676 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:31:40,681 INFO L225 Difference]: With dead ends: 1782 [2024-09-21 11:31:40,681 INFO L226 Difference]: Without dead ends: 1518 [2024-09-21 11:31:40,682 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 93 GetRequests, 64 SyntacticMatches, 9 SemanticMatches, 20 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 78 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=148, Invalid=314, Unknown=0, NotChecked=0, Total=462 [2024-09-21 11:31:40,682 INFO L434 NwaCegarLoop]: 44 mSDtfsCounter, 188 mSDsluCounter, 194 mSDsCounter, 0 mSdLazyCounter, 108 mSolverCounterSat, 85 mSolverCounterUnsat, 1 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 4.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 188 SdHoareTripleChecker+Valid, 238 SdHoareTripleChecker+Invalid, 194 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 85 IncrementalHoareTripleChecker+Valid, 108 IncrementalHoareTripleChecker+Invalid, 1 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 4.3s IncrementalHoareTripleChecker+Time [2024-09-21 11:31:40,682 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [188 Valid, 238 Invalid, 194 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [85 Valid, 108 Invalid, 1 Unknown, 0 Unchecked, 4.3s Time] [2024-09-21 11:31:40,683 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1518 states. [2024-09-21 11:31:41,567 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1518 to 875. [2024-09-21 11:31:41,568 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 875 states, 870 states have (on average 1.5114942528735633) internal successors, (1315), 870 states have internal predecessors, (1315), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:31:41,571 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 875 states to 875 states and 1319 transitions. [2024-09-21 11:31:41,573 INFO L78 Accepts]: Start accepts. Automaton has 875 states and 1319 transitions. Word has length 36 [2024-09-21 11:31:41,573 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:31:41,573 INFO L474 AbstractCegarLoop]: Abstraction has 875 states and 1319 transitions. [2024-09-21 11:31:41,573 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 14 states, 14 states have (on average 2.5714285714285716) internal successors, (36), 14 states have internal predecessors, (36), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:31:41,574 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:31:41,574 INFO L276 IsEmpty]: Start isEmpty. Operand 875 states and 1319 transitions. [2024-09-21 11:31:41,575 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 38 [2024-09-21 11:31:41,575 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:31:41,575 INFO L216 NwaCegarLoop]: trace histogram [7, 7, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:31:41,590 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (22)] Ended with exit code 0 [2024-09-21 11:31:41,776 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable22,22 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:31:41,776 INFO L399 AbstractCegarLoop]: === Iteration 24 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:31:41,776 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:31:41,776 INFO L85 PathProgramCache]: Analyzing trace with hash 1567952235, now seen corresponding path program 10 times [2024-09-21 11:31:41,776 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:31:41,776 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [556624388] [2024-09-21 11:31:41,777 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:31:41,777 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:31:41,789 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:31:41,951 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:31:41,952 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:31:41,953 INFO L134 CoverageAnalysis]: Checked inductivity of 66 backedges. 0 proven. 31 refuted. 0 times theorem prover too weak. 35 trivial. 0 not checked. [2024-09-21 11:31:41,954 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:31:41,954 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [556624388] [2024-09-21 11:31:41,954 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [556624388] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:31:41,954 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1830154220] [2024-09-21 11:31:41,954 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2024-09-21 11:31:41,954 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:31:41,954 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:31:41,956 INFO L229 MonitoredProcess]: Starting monitored process 23 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:31:41,957 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (23)] Waiting until timeout for monitored process [2024-09-21 11:31:42,007 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2024-09-21 11:31:42,008 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-21 11:31:42,009 INFO L262 TraceCheckSpWp]: Trace formula consists of 154 conjuncts, 28 conjuncts are in the unsatisfiable core [2024-09-21 11:31:42,010 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:31:42,072 INFO L134 CoverageAnalysis]: Checked inductivity of 66 backedges. 0 proven. 31 refuted. 0 times theorem prover too weak. 35 trivial. 0 not checked. [2024-09-21 11:31:42,072 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:31:42,230 INFO L134 CoverageAnalysis]: Checked inductivity of 66 backedges. 15 proven. 6 refuted. 0 times theorem prover too weak. 45 trivial. 0 not checked. [2024-09-21 11:31:42,230 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1830154220] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:31:42,230 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:31:42,230 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [13, 13, 8] total 22 [2024-09-21 11:31:42,231 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [48969420] [2024-09-21 11:31:42,231 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:31:42,231 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 22 states [2024-09-21 11:31:42,231 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:31:42,231 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 22 interpolants. [2024-09-21 11:31:42,232 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=78, Invalid=384, Unknown=0, NotChecked=0, Total=462 [2024-09-21 11:31:42,232 INFO L87 Difference]: Start difference. First operand 875 states and 1319 transitions. Second operand has 22 states, 22 states have (on average 1.7727272727272727) internal successors, (39), 22 states have internal predecessors, (39), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:31:44,136 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:31:44,136 INFO L93 Difference]: Finished difference Result 1190 states and 1698 transitions. [2024-09-21 11:31:44,137 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 50 states. [2024-09-21 11:31:44,137 INFO L78 Accepts]: Start accepts. Automaton has has 22 states, 22 states have (on average 1.7727272727272727) internal successors, (39), 22 states have internal predecessors, (39), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 37 [2024-09-21 11:31:44,137 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:31:44,141 INFO L225 Difference]: With dead ends: 1190 [2024-09-21 11:31:44,141 INFO L226 Difference]: Without dead ends: 1017 [2024-09-21 11:31:44,142 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 120 GetRequests, 69 SyntacticMatches, 0 SemanticMatches, 51 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 603 ImplicationChecksByTransitivity, 0.7s TimeCoverageRelationStatistics Valid=317, Invalid=2439, Unknown=0, NotChecked=0, Total=2756 [2024-09-21 11:31:44,142 INFO L434 NwaCegarLoop]: 45 mSDtfsCounter, 81 mSDsluCounter, 369 mSDsCounter, 0 mSdLazyCounter, 721 mSolverCounterSat, 100 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 81 SdHoareTripleChecker+Valid, 414 SdHoareTripleChecker+Invalid, 821 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 100 IncrementalHoareTripleChecker+Valid, 721 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2024-09-21 11:31:44,142 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [81 Valid, 414 Invalid, 821 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [100 Valid, 721 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2024-09-21 11:31:44,143 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1017 states. [2024-09-21 11:31:44,910 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1017 to 859. [2024-09-21 11:31:44,911 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 859 states, 854 states have (on average 1.4976580796252927) internal successors, (1279), 854 states have internal predecessors, (1279), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:31:44,913 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 859 states to 859 states and 1283 transitions. [2024-09-21 11:31:44,915 INFO L78 Accepts]: Start accepts. Automaton has 859 states and 1283 transitions. Word has length 37 [2024-09-21 11:31:44,915 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:31:44,915 INFO L474 AbstractCegarLoop]: Abstraction has 859 states and 1283 transitions. [2024-09-21 11:31:44,916 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 22 states, 22 states have (on average 1.7727272727272727) internal successors, (39), 22 states have internal predecessors, (39), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:31:44,916 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:31:44,917 INFO L276 IsEmpty]: Start isEmpty. Operand 859 states and 1283 transitions. [2024-09-21 11:31:44,918 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 40 [2024-09-21 11:31:44,918 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:31:44,918 INFO L216 NwaCegarLoop]: trace histogram [8, 7, 7, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:31:44,933 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (23)] Forceful destruction successful, exit code 0 [2024-09-21 11:31:45,119 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 23 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable23 [2024-09-21 11:31:45,119 INFO L399 AbstractCegarLoop]: === Iteration 25 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:31:45,119 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:31:45,119 INFO L85 PathProgramCache]: Analyzing trace with hash 1064696843, now seen corresponding path program 2 times [2024-09-21 11:31:45,119 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:31:45,119 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [224204530] [2024-09-21 11:31:45,119 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:31:45,120 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:31:45,135 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:31:45,401 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:31:45,402 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:31:45,403 INFO L134 CoverageAnalysis]: Checked inductivity of 93 backedges. 8 proven. 56 refuted. 0 times theorem prover too weak. 29 trivial. 0 not checked. [2024-09-21 11:31:45,403 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:31:45,404 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [224204530] [2024-09-21 11:31:45,404 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [224204530] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:31:45,404 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [549350563] [2024-09-21 11:31:45,404 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-21 11:31:45,404 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:31:45,404 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:31:45,406 INFO L229 MonitoredProcess]: Starting monitored process 24 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:31:45,407 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (24)] Waiting until timeout for monitored process [2024-09-21 11:31:45,458 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-21 11:31:45,459 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-21 11:31:45,465 INFO L262 TraceCheckSpWp]: Trace formula consists of 164 conjuncts, 52 conjuncts are in the unsatisfiable core [2024-09-21 11:31:45,466 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:31:45,565 INFO L134 CoverageAnalysis]: Checked inductivity of 93 backedges. 0 proven. 93 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:31:45,566 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:31:45,756 INFO L134 CoverageAnalysis]: Checked inductivity of 93 backedges. 18 proven. 44 refuted. 0 times theorem prover too weak. 31 trivial. 0 not checked. [2024-09-21 11:31:45,756 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [549350563] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:31:45,756 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:31:45,756 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [18, 19, 10] total 27 [2024-09-21 11:31:45,756 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1801851678] [2024-09-21 11:31:45,757 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:31:45,757 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 27 states [2024-09-21 11:31:45,757 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:31:45,757 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 27 interpolants. [2024-09-21 11:31:45,757 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=120, Invalid=582, Unknown=0, NotChecked=0, Total=702 [2024-09-21 11:31:45,758 INFO L87 Difference]: Start difference. First operand 859 states and 1283 transitions. Second operand has 27 states, 27 states have (on average 2.4074074074074074) internal successors, (65), 27 states have internal predecessors, (65), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:31:50,311 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:31:50,311 INFO L93 Difference]: Finished difference Result 1708 states and 2444 transitions. [2024-09-21 11:31:50,311 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 96 states. [2024-09-21 11:31:50,311 INFO L78 Accepts]: Start accepts. Automaton has has 27 states, 27 states have (on average 2.4074074074074074) internal successors, (65), 27 states have internal predecessors, (65), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 39 [2024-09-21 11:31:50,312 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:31:50,316 INFO L225 Difference]: With dead ends: 1708 [2024-09-21 11:31:50,317 INFO L226 Difference]: Without dead ends: 1586 [2024-09-21 11:31:50,327 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 204 GetRequests, 101 SyntacticMatches, 2 SemanticMatches, 101 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3092 ImplicationChecksByTransitivity, 1.6s TimeCoverageRelationStatistics Valid=2076, Invalid=8430, Unknown=0, NotChecked=0, Total=10506 [2024-09-21 11:31:50,328 INFO L434 NwaCegarLoop]: 40 mSDtfsCounter, 371 mSDsluCounter, 644 mSDsCounter, 0 mSdLazyCounter, 2744 mSolverCounterSat, 283 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 371 SdHoareTripleChecker+Valid, 684 SdHoareTripleChecker+Invalid, 3027 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 283 IncrementalHoareTripleChecker+Valid, 2744 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.2s IncrementalHoareTripleChecker+Time [2024-09-21 11:31:50,328 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [371 Valid, 684 Invalid, 3027 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [283 Valid, 2744 Invalid, 0 Unknown, 0 Unchecked, 1.2s Time] [2024-09-21 11:31:50,330 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1586 states. [2024-09-21 11:31:51,236 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1586 to 936. [2024-09-21 11:31:51,237 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 936 states, 931 states have (on average 1.4951664876476907) internal successors, (1392), 931 states have internal predecessors, (1392), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:31:51,240 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 936 states to 936 states and 1396 transitions. [2024-09-21 11:31:51,241 INFO L78 Accepts]: Start accepts. Automaton has 936 states and 1396 transitions. Word has length 39 [2024-09-21 11:31:51,242 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:31:51,242 INFO L474 AbstractCegarLoop]: Abstraction has 936 states and 1396 transitions. [2024-09-21 11:31:51,242 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 27 states, 27 states have (on average 2.4074074074074074) internal successors, (65), 27 states have internal predecessors, (65), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:31:51,242 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:31:51,242 INFO L276 IsEmpty]: Start isEmpty. Operand 936 states and 1396 transitions. [2024-09-21 11:31:51,244 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 40 [2024-09-21 11:31:51,244 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:31:51,244 INFO L216 NwaCegarLoop]: trace histogram [13, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:31:51,257 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (24)] Forceful destruction successful, exit code 0 [2024-09-21 11:31:51,445 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 24 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable24 [2024-09-21 11:31:51,446 INFO L399 AbstractCegarLoop]: === Iteration 26 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:31:51,446 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:31:51,446 INFO L85 PathProgramCache]: Analyzing trace with hash 1900096203, now seen corresponding path program 11 times [2024-09-21 11:31:51,446 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:31:51,446 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1366504532] [2024-09-21 11:31:51,446 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:31:51,446 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:31:51,459 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:31:51,705 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:31:51,705 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:31:51,707 INFO L134 CoverageAnalysis]: Checked inductivity of 106 backedges. 0 proven. 94 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2024-09-21 11:31:51,707 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:31:51,707 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1366504532] [2024-09-21 11:31:51,707 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1366504532] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:31:51,707 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [81261252] [2024-09-21 11:31:51,707 INFO L93 rtionOrderModulation]: Changing assertion order to INSIDE_LOOP_FIRST1 [2024-09-21 11:31:51,707 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:31:51,707 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:31:51,711 INFO L229 MonitoredProcess]: Starting monitored process 25 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:31:51,712 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (25)] Waiting until timeout for monitored process [2024-09-21 11:31:51,785 INFO L228 tOrderPrioritization]: Assert order INSIDE_LOOP_FIRST1 issued 8 check-sat command(s) [2024-09-21 11:31:51,786 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-21 11:31:51,787 INFO L262 TraceCheckSpWp]: Trace formula consists of 164 conjuncts, 41 conjuncts are in the unsatisfiable core [2024-09-21 11:31:51,788 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:31:51,818 INFO L134 CoverageAnalysis]: Checked inductivity of 106 backedges. 0 proven. 100 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-21 11:31:51,818 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:31:52,172 INFO L134 CoverageAnalysis]: Checked inductivity of 106 backedges. 0 proven. 100 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-21 11:31:52,172 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [81261252] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:31:52,172 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:31:52,172 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [19, 16, 16] total 33 [2024-09-21 11:31:52,172 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [628202287] [2024-09-21 11:31:52,172 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:31:52,173 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 33 states [2024-09-21 11:31:52,173 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:31:52,173 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 33 interpolants. [2024-09-21 11:31:52,173 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=258, Invalid=798, Unknown=0, NotChecked=0, Total=1056 [2024-09-21 11:31:52,174 INFO L87 Difference]: Start difference. First operand 936 states and 1396 transitions. Second operand has 33 states, 33 states have (on average 2.242424242424242) internal successors, (74), 33 states have internal predecessors, (74), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:32:01,759 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:32:01,759 INFO L93 Difference]: Finished difference Result 2428 states and 3749 transitions. [2024-09-21 11:32:01,760 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 72 states. [2024-09-21 11:32:01,760 INFO L78 Accepts]: Start accepts. Automaton has has 33 states, 33 states have (on average 2.242424242424242) internal successors, (74), 33 states have internal predecessors, (74), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 39 [2024-09-21 11:32:01,760 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:32:01,766 INFO L225 Difference]: With dead ends: 2428 [2024-09-21 11:32:01,766 INFO L226 Difference]: Without dead ends: 2051 [2024-09-21 11:32:01,767 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 153 GetRequests, 68 SyntacticMatches, 0 SemanticMatches, 85 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1744 ImplicationChecksByTransitivity, 5.2s TimeCoverageRelationStatistics Valid=2356, Invalid=5126, Unknown=0, NotChecked=0, Total=7482 [2024-09-21 11:32:01,767 INFO L434 NwaCegarLoop]: 77 mSDtfsCounter, 1263 mSDsluCounter, 1119 mSDsCounter, 0 mSdLazyCounter, 1271 mSolverCounterSat, 864 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 2.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1263 SdHoareTripleChecker+Valid, 1196 SdHoareTripleChecker+Invalid, 2135 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 864 IncrementalHoareTripleChecker+Valid, 1271 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 2.4s IncrementalHoareTripleChecker+Time [2024-09-21 11:32:01,767 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [1263 Valid, 1196 Invalid, 2135 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [864 Valid, 1271 Invalid, 0 Unknown, 0 Unchecked, 2.4s Time] [2024-09-21 11:32:01,769 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 2051 states. [2024-09-21 11:32:02,779 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 2051 to 1033. [2024-09-21 11:32:02,780 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1033 states, 1028 states have (on average 1.4990272373540856) internal successors, (1541), 1028 states have internal predecessors, (1541), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:32:02,782 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1033 states to 1033 states and 1545 transitions. [2024-09-21 11:32:02,783 INFO L78 Accepts]: Start accepts. Automaton has 1033 states and 1545 transitions. Word has length 39 [2024-09-21 11:32:02,783 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:32:02,783 INFO L474 AbstractCegarLoop]: Abstraction has 1033 states and 1545 transitions. [2024-09-21 11:32:02,783 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 33 states, 33 states have (on average 2.242424242424242) internal successors, (74), 33 states have internal predecessors, (74), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:32:02,784 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:32:02,784 INFO L276 IsEmpty]: Start isEmpty. Operand 1033 states and 1545 transitions. [2024-09-21 11:32:02,785 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 41 [2024-09-21 11:32:02,785 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:32:02,785 INFO L216 NwaCegarLoop]: trace histogram [4, 4, 4, 4, 4, 4, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:32:02,797 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (25)] Forceful destruction successful, exit code 0 [2024-09-21 11:32:02,985 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 25 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable25 [2024-09-21 11:32:02,985 INFO L399 AbstractCegarLoop]: === Iteration 27 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:32:02,986 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:32:02,986 INFO L85 PathProgramCache]: Analyzing trace with hash 171159391, now seen corresponding path program 12 times [2024-09-21 11:32:02,986 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:32:02,986 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2086730511] [2024-09-21 11:32:02,986 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:32:02,986 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:32:03,007 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:32:03,722 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:32:03,723 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:32:03,724 INFO L134 CoverageAnalysis]: Checked inductivity of 60 backedges. 0 proven. 50 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2024-09-21 11:32:03,725 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:32:03,725 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2086730511] [2024-09-21 11:32:03,725 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2086730511] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:32:03,725 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [656991673] [2024-09-21 11:32:03,725 INFO L93 rtionOrderModulation]: Changing assertion order to MIX_INSIDE_OUTSIDE [2024-09-21 11:32:03,725 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:32:03,725 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:32:03,728 INFO L229 MonitoredProcess]: Starting monitored process 26 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:32:03,729 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (26)] Waiting until timeout for monitored process [2024-09-21 11:32:03,849 INFO L228 tOrderPrioritization]: Assert order MIX_INSIDE_OUTSIDE issued 3 check-sat command(s) [2024-09-21 11:32:03,849 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-21 11:32:03,855 INFO L262 TraceCheckSpWp]: Trace formula consists of 169 conjuncts, 80 conjuncts are in the unsatisfiable core [2024-09-21 11:32:03,856 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:32:05,050 INFO L134 CoverageAnalysis]: Checked inductivity of 60 backedges. 0 proven. 60 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:32:05,050 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:32:06,390 INFO L134 CoverageAnalysis]: Checked inductivity of 60 backedges. 0 proven. 60 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:32:06,390 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [656991673] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:32:06,391 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:32:06,391 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [17, 28, 27] total 58 [2024-09-21 11:32:06,391 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1377164908] [2024-09-21 11:32:06,391 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:32:06,391 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 58 states [2024-09-21 11:32:06,391 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:32:06,392 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 58 interpolants. [2024-09-21 11:32:06,392 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=460, Invalid=2846, Unknown=0, NotChecked=0, Total=3306 [2024-09-21 11:32:06,392 INFO L87 Difference]: Start difference. First operand 1033 states and 1545 transitions. Second operand has 58 states, 58 states have (on average 1.5172413793103448) internal successors, (88), 56 states have internal predecessors, (88), 3 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:32:15,522 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:32:15,522 INFO L93 Difference]: Finished difference Result 1535 states and 2128 transitions. [2024-09-21 11:32:15,522 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 66 states. [2024-09-21 11:32:15,522 INFO L78 Accepts]: Start accepts. Automaton has has 58 states, 58 states have (on average 1.5172413793103448) internal successors, (88), 56 states have internal predecessors, (88), 3 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 40 [2024-09-21 11:32:15,523 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:32:15,527 INFO L225 Difference]: With dead ends: 1535 [2024-09-21 11:32:15,527 INFO L226 Difference]: Without dead ends: 1504 [2024-09-21 11:32:15,528 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 146 GetRequests, 50 SyntacticMatches, 2 SemanticMatches, 94 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2303 ImplicationChecksByTransitivity, 7.5s TimeCoverageRelationStatistics Valid=1308, Invalid=7812, Unknown=0, NotChecked=0, Total=9120 [2024-09-21 11:32:15,528 INFO L434 NwaCegarLoop]: 16 mSDtfsCounter, 120 mSDsluCounter, 337 mSDsCounter, 0 mSdLazyCounter, 1355 mSolverCounterSat, 205 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 120 SdHoareTripleChecker+Valid, 353 SdHoareTripleChecker+Invalid, 1560 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 205 IncrementalHoareTripleChecker+Valid, 1355 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.5s IncrementalHoareTripleChecker+Time [2024-09-21 11:32:15,528 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [120 Valid, 353 Invalid, 1560 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [205 Valid, 1355 Invalid, 0 Unknown, 0 Unchecked, 1.5s Time] [2024-09-21 11:32:15,529 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1504 states. [2024-09-21 11:32:16,577 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1504 to 1017. [2024-09-21 11:32:16,578 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1017 states, 1012 states have (on average 1.5059288537549407) internal successors, (1524), 1012 states have internal predecessors, (1524), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:32:16,580 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1017 states to 1017 states and 1528 transitions. [2024-09-21 11:32:16,581 INFO L78 Accepts]: Start accepts. Automaton has 1017 states and 1528 transitions. Word has length 40 [2024-09-21 11:32:16,582 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:32:16,582 INFO L474 AbstractCegarLoop]: Abstraction has 1017 states and 1528 transitions. [2024-09-21 11:32:16,582 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 58 states, 58 states have (on average 1.5172413793103448) internal successors, (88), 56 states have internal predecessors, (88), 3 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:32:16,582 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:32:16,582 INFO L276 IsEmpty]: Start isEmpty. Operand 1017 states and 1528 transitions. [2024-09-21 11:32:16,584 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 42 [2024-09-21 11:32:16,584 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:32:16,584 INFO L216 NwaCegarLoop]: trace histogram [8, 8, 8, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:32:16,600 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (26)] Ended with exit code 0 [2024-09-21 11:32:16,784 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 26 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable26 [2024-09-21 11:32:16,785 INFO L399 AbstractCegarLoop]: === Iteration 28 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:32:16,785 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:32:16,785 INFO L85 PathProgramCache]: Analyzing trace with hash -1585091015, now seen corresponding path program 3 times [2024-09-21 11:32:16,785 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:32:16,785 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1300365413] [2024-09-21 11:32:16,785 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:32:16,785 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:32:16,798 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:32:17,111 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:32:17,112 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:32:17,113 INFO L134 CoverageAnalysis]: Checked inductivity of 109 backedges. 0 proven. 109 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:32:17,113 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:32:17,113 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1300365413] [2024-09-21 11:32:17,113 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1300365413] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:32:17,113 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1334482383] [2024-09-21 11:32:17,114 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-09-21 11:32:17,114 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:32:17,114 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:32:17,115 INFO L229 MonitoredProcess]: Starting monitored process 27 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:32:17,115 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (27)] Waiting until timeout for monitored process [2024-09-21 11:32:17,188 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 5 check-sat command(s) [2024-09-21 11:32:17,188 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-21 11:32:17,189 INFO L262 TraceCheckSpWp]: Trace formula consists of 174 conjuncts, 34 conjuncts are in the unsatisfiable core [2024-09-21 11:32:17,190 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:32:17,433 INFO L134 CoverageAnalysis]: Checked inductivity of 109 backedges. 8 proven. 64 refuted. 0 times theorem prover too weak. 37 trivial. 0 not checked. [2024-09-21 11:32:17,433 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:32:17,817 INFO L134 CoverageAnalysis]: Checked inductivity of 109 backedges. 8 proven. 64 refuted. 0 times theorem prover too weak. 37 trivial. 0 not checked. [2024-09-21 11:32:17,818 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1334482383] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:32:17,818 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:32:17,818 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [21, 11, 11] total 30 [2024-09-21 11:32:17,818 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1237990734] [2024-09-21 11:32:17,818 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:32:17,818 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 30 states [2024-09-21 11:32:17,818 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:32:17,819 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 30 interpolants. [2024-09-21 11:32:17,819 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=59, Invalid=811, Unknown=0, NotChecked=0, Total=870 [2024-09-21 11:32:17,819 INFO L87 Difference]: Start difference. First operand 1017 states and 1528 transitions. Second operand has 30 states, 30 states have (on average 2.066666666666667) internal successors, (62), 30 states have internal predecessors, (62), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:32:44,241 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:32:44,241 INFO L93 Difference]: Finished difference Result 2849 states and 3992 transitions. [2024-09-21 11:32:44,242 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 398 states. [2024-09-21 11:32:44,242 INFO L78 Accepts]: Start accepts. Automaton has has 30 states, 30 states have (on average 2.066666666666667) internal successors, (62), 30 states have internal predecessors, (62), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 41 [2024-09-21 11:32:44,242 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:32:44,252 INFO L225 Difference]: With dead ends: 2849 [2024-09-21 11:32:44,252 INFO L226 Difference]: Without dead ends: 2689 [2024-09-21 11:32:44,260 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 506 GetRequests, 69 SyntacticMatches, 16 SemanticMatches, 421 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 77062 ImplicationChecksByTransitivity, 16.3s TimeCoverageRelationStatistics Valid=7170, Invalid=171336, Unknown=0, NotChecked=0, Total=178506 [2024-09-21 11:32:44,261 INFO L434 NwaCegarLoop]: 36 mSDtfsCounter, 1012 mSDsluCounter, 639 mSDsCounter, 0 mSdLazyCounter, 5681 mSolverCounterSat, 1123 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 3.8s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1012 SdHoareTripleChecker+Valid, 675 SdHoareTripleChecker+Invalid, 6804 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1123 IncrementalHoareTripleChecker+Valid, 5681 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 4.2s IncrementalHoareTripleChecker+Time [2024-09-21 11:32:44,261 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [1012 Valid, 675 Invalid, 6804 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1123 Valid, 5681 Invalid, 0 Unknown, 0 Unchecked, 4.2s Time] [2024-09-21 11:32:44,263 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 2689 states. [2024-09-21 11:32:45,700 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 2689 to 1022. [2024-09-21 11:32:45,701 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1022 states, 1017 states have (on average 1.4926253687315634) internal successors, (1518), 1017 states have internal predecessors, (1518), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:32:45,702 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1022 states to 1022 states and 1522 transitions. [2024-09-21 11:32:45,704 INFO L78 Accepts]: Start accepts. Automaton has 1022 states and 1522 transitions. Word has length 41 [2024-09-21 11:32:45,705 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:32:45,705 INFO L474 AbstractCegarLoop]: Abstraction has 1022 states and 1522 transitions. [2024-09-21 11:32:45,705 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 30 states, 30 states have (on average 2.066666666666667) internal successors, (62), 30 states have internal predecessors, (62), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:32:45,705 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:32:45,705 INFO L276 IsEmpty]: Start isEmpty. Operand 1022 states and 1522 transitions. [2024-09-21 11:32:45,707 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 43 [2024-09-21 11:32:45,707 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:32:45,707 INFO L216 NwaCegarLoop]: trace histogram [5, 5, 5, 5, 3, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:32:45,724 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (27)] Forceful destruction successful, exit code 0 [2024-09-21 11:32:45,908 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable27,27 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:32:45,908 INFO L399 AbstractCegarLoop]: === Iteration 29 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:32:45,908 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:32:45,908 INFO L85 PathProgramCache]: Analyzing trace with hash 1706754144, now seen corresponding path program 13 times [2024-09-21 11:32:45,909 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:32:45,909 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [455643411] [2024-09-21 11:32:45,909 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:32:45,909 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:32:45,931 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:32:46,178 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:32:46,179 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:32:46,180 INFO L134 CoverageAnalysis]: Checked inductivity of 72 backedges. 15 proven. 21 refuted. 0 times theorem prover too weak. 36 trivial. 0 not checked. [2024-09-21 11:32:46,180 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:32:46,180 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [455643411] [2024-09-21 11:32:46,180 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [455643411] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:32:46,181 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [749753614] [2024-09-21 11:32:46,181 INFO L93 rtionOrderModulation]: Changing assertion order to NOT_INCREMENTALLY [2024-09-21 11:32:46,181 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:32:46,181 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:32:46,183 INFO L229 MonitoredProcess]: Starting monitored process 28 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:32:46,184 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (28)] Waiting until timeout for monitored process [2024-09-21 11:32:46,240 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:32:46,242 INFO L262 TraceCheckSpWp]: Trace formula consists of 179 conjuncts, 30 conjuncts are in the unsatisfiable core [2024-09-21 11:32:46,243 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:32:46,416 INFO L134 CoverageAnalysis]: Checked inductivity of 72 backedges. 0 proven. 21 refuted. 0 times theorem prover too weak. 51 trivial. 0 not checked. [2024-09-21 11:32:46,417 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:32:46,503 INFO L134 CoverageAnalysis]: Checked inductivity of 72 backedges. 0 proven. 21 refuted. 0 times theorem prover too weak. 51 trivial. 0 not checked. [2024-09-21 11:32:46,504 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [749753614] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:32:46,504 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:32:46,504 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [13, 8, 8] total 24 [2024-09-21 11:32:46,504 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [195661961] [2024-09-21 11:32:46,504 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:32:46,504 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 24 states [2024-09-21 11:32:46,504 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:32:46,505 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 24 interpolants. [2024-09-21 11:32:46,505 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=167, Invalid=385, Unknown=0, NotChecked=0, Total=552 [2024-09-21 11:32:46,505 INFO L87 Difference]: Start difference. First operand 1022 states and 1522 transitions. Second operand has 24 states, 24 states have (on average 2.375) internal successors, (57), 24 states have internal predecessors, (57), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:33:02,632 WARN L293 SmtUtils]: Spent 16.03s on a formula simplification that was a NOOP. DAG size: 26 (called from [L 391] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2024-09-21 11:33:14,683 WARN L293 SmtUtils]: Spent 12.03s on a formula simplification that was a NOOP. DAG size: 24 (called from [L 391] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2024-09-21 11:33:22,742 WARN L293 SmtUtils]: Spent 8.02s on a formula simplification that was a NOOP. DAG size: 20 (called from [L 391] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2024-09-21 11:33:39,011 WARN L293 SmtUtils]: Spent 12.02s on a formula simplification that was a NOOP. DAG size: 22 (called from [L 391] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2024-09-21 11:33:47,109 WARN L293 SmtUtils]: Spent 8.01s on a formula simplification that was a NOOP. DAG size: 18 (called from [L 391] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2024-09-21 11:33:59,528 WARN L293 SmtUtils]: Spent 8.02s on a formula simplification that was a NOOP. DAG size: 20 (called from [L 391] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2024-09-21 11:34:12,346 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-21 11:34:16,581 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-21 11:34:20,904 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-21 11:34:24,381 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-21 11:34:24,381 INFO L93 Difference]: Finished difference Result 2885 states and 4277 transitions. [2024-09-21 11:34:24,382 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 42 states. [2024-09-21 11:34:24,382 INFO L78 Accepts]: Start accepts. Automaton has has 24 states, 24 states have (on average 2.375) internal successors, (57), 24 states have internal predecessors, (57), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 42 [2024-09-21 11:34:24,382 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-21 11:34:24,391 INFO L225 Difference]: With dead ends: 2885 [2024-09-21 11:34:24,391 INFO L226 Difference]: Without dead ends: 2585 [2024-09-21 11:34:24,392 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 123 GetRequests, 77 SyntacticMatches, 1 SemanticMatches, 45 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 702 ImplicationChecksByTransitivity, 80.8s TimeCoverageRelationStatistics Valid=657, Invalid=1505, Unknown=0, NotChecked=0, Total=2162 [2024-09-21 11:34:24,393 INFO L434 NwaCegarLoop]: 51 mSDtfsCounter, 296 mSDsluCounter, 295 mSDsCounter, 0 mSdLazyCounter, 183 mSolverCounterSat, 158 mSolverCounterUnsat, 3 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 12.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 296 SdHoareTripleChecker+Valid, 346 SdHoareTripleChecker+Invalid, 344 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 158 IncrementalHoareTripleChecker+Valid, 183 IncrementalHoareTripleChecker+Invalid, 3 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 12.4s IncrementalHoareTripleChecker+Time [2024-09-21 11:34:24,393 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [296 Valid, 346 Invalid, 344 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [158 Valid, 183 Invalid, 3 Unknown, 0 Unchecked, 12.4s Time] [2024-09-21 11:34:24,394 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 2585 states. [2024-09-21 11:34:25,922 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 2585 to 1258. [2024-09-21 11:34:25,924 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1258 states, 1253 states have (on average 1.4980047885075818) internal successors, (1877), 1253 states have internal predecessors, (1877), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:34:25,925 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1258 states to 1258 states and 1881 transitions. [2024-09-21 11:34:25,926 INFO L78 Accepts]: Start accepts. Automaton has 1258 states and 1881 transitions. Word has length 42 [2024-09-21 11:34:25,927 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-21 11:34:25,927 INFO L474 AbstractCegarLoop]: Abstraction has 1258 states and 1881 transitions. [2024-09-21 11:34:25,927 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 24 states, 24 states have (on average 2.375) internal successors, (57), 24 states have internal predecessors, (57), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-21 11:34:25,927 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:34:25,927 INFO L276 IsEmpty]: Start isEmpty. Operand 1258 states and 1881 transitions. [2024-09-21 11:34:25,928 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 43 [2024-09-21 11:34:25,929 INFO L208 NwaCegarLoop]: Found error trace [2024-09-21 11:34:25,929 INFO L216 NwaCegarLoop]: trace histogram [26, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-21 11:34:25,945 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (28)] Ended with exit code 0 [2024-09-21 11:34:26,129 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 28 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable28 [2024-09-21 11:34:26,129 INFO L399 AbstractCegarLoop]: === Iteration 30 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-21 11:34:26,130 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-21 11:34:26,130 INFO L85 PathProgramCache]: Analyzing trace with hash -783545697, now seen corresponding path program 4 times [2024-09-21 11:34:26,130 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-21 11:34:26,130 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [79425227] [2024-09-21 11:34:26,130 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-21 11:34:26,130 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-21 11:34:26,145 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:34:26,643 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-21 11:34:26,644 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-21 11:34:26,645 INFO L134 CoverageAnalysis]: Checked inductivity of 351 backedges. 0 proven. 351 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:34:26,645 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-21 11:34:26,645 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [79425227] [2024-09-21 11:34:26,645 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [79425227] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-21 11:34:26,645 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [205835657] [2024-09-21 11:34:26,645 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2024-09-21 11:34:26,645 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-21 11:34:26,645 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-21 11:34:26,646 INFO L229 MonitoredProcess]: Starting monitored process 29 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-21 11:34:26,647 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (29)] Waiting until timeout for monitored process [2024-09-21 11:34:26,691 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2024-09-21 11:34:26,692 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-21 11:34:26,693 INFO L262 TraceCheckSpWp]: Trace formula consists of 179 conjuncts, 57 conjuncts are in the unsatisfiable core [2024-09-21 11:34:26,694 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-21 11:34:26,755 INFO L134 CoverageAnalysis]: Checked inductivity of 351 backedges. 0 proven. 351 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:34:26,755 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-21 11:34:27,950 INFO L134 CoverageAnalysis]: Checked inductivity of 351 backedges. 0 proven. 351 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-21 11:34:27,950 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [205835657] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-21 11:34:27,950 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-21 11:34:27,950 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [30, 30, 30] total 59 [2024-09-21 11:34:27,950 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1817324641] [2024-09-21 11:34:27,950 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-21 11:34:27,951 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 59 states [2024-09-21 11:34:27,951 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-21 11:34:27,951 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 59 interpolants. [2024-09-21 11:34:27,952 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=846, Invalid=2576, Unknown=0, NotChecked=0, Total=3422 [2024-09-21 11:34:27,952 INFO L87 Difference]: Start difference. First operand 1258 states and 1881 transitions. Second operand has 59 states, 59 states have (on average 1.1864406779661016) internal successors, (70), 59 states have internal predecessors, (70), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1)