./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/loops-crafted-1/in-de61.c --full-output --procedureinliner.inline.calls.to.implemented.procedures NEVER --traceabstraction.positions.where.we.compute.the.hoare.annotation All --traceabstraction.encode.modifies.clause.in.ensures.clause.of.contracts true --witnessprinter.yaml.format.version 2.1 --witnessprinter.generate.graphml.witnesses false --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version fb1cb0b9 Calling Ultimate with: /root/.sdkman/candidates/java/11.0.12-open/bin/java -Dosgi.configuration.area=/storage/repos/certificate-witnesses-artifact/automizer/data/config -Xmx15G -Xms4m -jar /storage/repos/certificate-witnesses-artifact/automizer/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/certificate-witnesses-artifact/automizer/data -tc /storage/repos/certificate-witnesses-artifact/automizer/config/AutomizerReach.xml -i ../sv-benchmarks/c/loops-crafted-1/in-de61.c -s /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/certificate-witnesses-artifact/automizer --witnessprinter.witness.filename witness --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 49b7efdcf8f4d6c873493bd370328870547a88b20d287c5de5342268b0966917 --procedureinliner.inline.calls.to.implemented.procedures NEVER --traceabstraction.positions.where.we.compute.the.hoare.annotation All --traceabstraction.encode.modifies.clause.in.ensures.clause.of.contracts true --witnessprinter.yaml.format.version 2.1 --witnessprinter.generate.graphml.witnesses false --- Real Ultimate output --- This is Ultimate 0.2.4-tmp.dk.referee-eval-fb1cb0b-m [2024-09-25 10:29:00,960 INFO L188 SettingsManager]: Resetting all preferences to default values... [2024-09-25 10:29:01,033 INFO L114 SettingsManager]: Loading settings from /storage/repos/certificate-witnesses-artifact/automizer/config/svcomp-Reach-32bit-Automizer_Default.epf [2024-09-25 10:29:01,040 WARN L101 SettingsManager]: Preference file contains the following unknown settings: [2024-09-25 10:29:01,040 WARN L103 SettingsManager]: * de.uni_freiburg.informatik.ultimate.core.Log level for class [2024-09-25 10:29:01,071 INFO L130 SettingsManager]: Preferences different from defaults after loading the file: [2024-09-25 10:29:01,074 INFO L151 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2024-09-25 10:29:01,074 INFO L153 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2024-09-25 10:29:01,075 INFO L151 SettingsManager]: Preferences of Boogie Preprocessor differ from their defaults: [2024-09-25 10:29:01,076 INFO L153 SettingsManager]: * Use memory slicer=true [2024-09-25 10:29:01,076 INFO L151 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2024-09-25 10:29:01,076 INFO L153 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2024-09-25 10:29:01,079 INFO L151 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2024-09-25 10:29:01,079 INFO L153 SettingsManager]: * Create parallel compositions if possible=false [2024-09-25 10:29:01,080 INFO L153 SettingsManager]: * Use SBE=true [2024-09-25 10:29:01,080 INFO L151 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2024-09-25 10:29:01,080 INFO L153 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2024-09-25 10:29:01,080 INFO L153 SettingsManager]: * sizeof long=4 [2024-09-25 10:29:01,081 INFO L153 SettingsManager]: * Overapproximate operations on floating types=true [2024-09-25 10:29:01,081 INFO L153 SettingsManager]: * sizeof POINTER=4 [2024-09-25 10:29:01,081 INFO L153 SettingsManager]: * Check division by zero=IGNORE [2024-09-25 10:29:01,085 INFO L153 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2024-09-25 10:29:01,085 INFO L153 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2024-09-25 10:29:01,086 INFO L153 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2024-09-25 10:29:01,086 INFO L153 SettingsManager]: * Allow undefined functions=false [2024-09-25 10:29:01,086 INFO L153 SettingsManager]: * sizeof long double=12 [2024-09-25 10:29:01,086 INFO L153 SettingsManager]: * Check if freed pointer was valid=false [2024-09-25 10:29:01,086 INFO L153 SettingsManager]: * Use constant arrays=true [2024-09-25 10:29:01,087 INFO L151 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2024-09-25 10:29:01,087 INFO L153 SettingsManager]: * Size of a code block=SequenceOfStatements [2024-09-25 10:29:01,087 INFO L153 SettingsManager]: * Only consider context switches at boundaries of atomic blocks=true [2024-09-25 10:29:01,087 INFO L153 SettingsManager]: * SMT solver=External_DefaultMode [2024-09-25 10:29:01,088 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-09-25 10:29:01,088 INFO L151 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2024-09-25 10:29:01,088 INFO L153 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2024-09-25 10:29:01,088 INFO L153 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopHeads [2024-09-25 10:29:01,094 INFO L153 SettingsManager]: * Trace refinement strategy=CAMEL [2024-09-25 10:29:01,095 INFO L153 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2024-09-25 10:29:01,095 INFO L153 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2024-09-25 10:29:01,096 INFO L153 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2024-09-25 10:29:01,096 INFO L153 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2024-09-25 10:29:01,097 INFO L153 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2024-09-25 10:29:01,097 INFO L153 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/certificate-witnesses-artifact/automizer/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/certificate-witnesses-artifact/automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 49b7efdcf8f4d6c873493bd370328870547a88b20d287c5de5342268b0966917 Applying setting for plugin de.uni_freiburg.informatik.ultimate.boogie.procedureinliner: Inline calls to implemented procedures -> NEVER Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: Positions where we compute the Hoare Annotation -> All Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: Encode 'modifies' clause in 'ensures' clause of contracts -> true Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: YAML Format version -> 2.1 Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Generate GraphML witnesses -> false [2024-09-25 10:29:01,400 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2024-09-25 10:29:01,423 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2024-09-25 10:29:01,426 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2024-09-25 10:29:01,427 INFO L270 PluginConnector]: Initializing CDTParser... [2024-09-25 10:29:01,427 INFO L274 PluginConnector]: CDTParser initialized [2024-09-25 10:29:01,428 INFO L431 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/certificate-witnesses-artifact/automizer/../sv-benchmarks/c/loops-crafted-1/in-de61.c [2024-09-25 10:29:02,954 INFO L533 CDTParser]: Created temporary CDT project at NULL [2024-09-25 10:29:03,136 INFO L384 CDTParser]: Found 1 translation units. [2024-09-25 10:29:03,137 INFO L180 CDTParser]: Scanning /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/loops-crafted-1/in-de61.c [2024-09-25 10:29:03,145 INFO L427 CDTParser]: About to delete temporary CDT project at /storage/repos/certificate-witnesses-artifact/automizer/data/4ba0d17f8/a61f4a4bac5f43cc89f3c904160f1aa7/FLAG4962fe951 [2024-09-25 10:29:03,520 INFO L435 CDTParser]: Successfully deleted /storage/repos/certificate-witnesses-artifact/automizer/data/4ba0d17f8/a61f4a4bac5f43cc89f3c904160f1aa7 [2024-09-25 10:29:03,522 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2024-09-25 10:29:03,523 INFO L133 ToolchainWalker]: Walking toolchain with 6 elements. [2024-09-25 10:29:03,524 INFO L112 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2024-09-25 10:29:03,525 INFO L270 PluginConnector]: Initializing CACSL2BoogieTranslator... [2024-09-25 10:29:03,531 INFO L274 PluginConnector]: CACSL2BoogieTranslator initialized [2024-09-25 10:29:03,532 INFO L184 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 25.09 10:29:03" (1/1) ... [2024-09-25 10:29:03,533 INFO L204 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@40b634e7 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 10:29:03, skipping insertion in model container [2024-09-25 10:29:03,533 INFO L184 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 25.09 10:29:03" (1/1) ... [2024-09-25 10:29:03,553 INFO L175 MainTranslator]: Built tables and reachable declarations [2024-09-25 10:29:03,679 WARN L248 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/loops-crafted-1/in-de61.c[368,381] [2024-09-25 10:29:03,694 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-09-25 10:29:03,701 INFO L200 MainTranslator]: Completed pre-run [2024-09-25 10:29:03,716 WARN L248 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/certificate-witnesses-artifact/sv-benchmarks/c/loops-crafted-1/in-de61.c[368,381] [2024-09-25 10:29:03,722 INFO L210 PostProcessor]: Analyzing one entry point: main [2024-09-25 10:29:03,740 INFO L204 MainTranslator]: Completed translation [2024-09-25 10:29:03,741 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 10:29:03 WrapperNode [2024-09-25 10:29:03,741 INFO L131 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2024-09-25 10:29:03,742 INFO L112 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2024-09-25 10:29:03,742 INFO L270 PluginConnector]: Initializing Boogie Procedure Inliner... [2024-09-25 10:29:03,742 INFO L274 PluginConnector]: Boogie Procedure Inliner initialized [2024-09-25 10:29:03,749 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 10:29:03" (1/1) ... [2024-09-25 10:29:03,756 INFO L184 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 10:29:03" (1/1) ... [2024-09-25 10:29:03,763 INFO L138 Inliner]: procedures = 13, calls = 8, calls flagged for inlining = 0, calls inlined = 0, statements flattened = 0 [2024-09-25 10:29:03,763 INFO L131 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2024-09-25 10:29:03,764 INFO L112 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2024-09-25 10:29:03,765 INFO L270 PluginConnector]: Initializing Boogie Preprocessor... [2024-09-25 10:29:03,765 INFO L274 PluginConnector]: Boogie Preprocessor initialized [2024-09-25 10:29:03,773 INFO L184 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 10:29:03" (1/1) ... [2024-09-25 10:29:03,774 INFO L184 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 10:29:03" (1/1) ... [2024-09-25 10:29:03,775 INFO L184 PluginConnector]: Executing the observer MemorySlicer from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 10:29:03" (1/1) ... [2024-09-25 10:29:03,785 INFO L175 MemorySlicer]: Split 2 memory accesses to 1 slices as follows [2]. 100 percent of accesses are in the largest equivalence class. The 2 initializations are split as follows [2]. The 0 writes are split as follows [0]. [2024-09-25 10:29:03,789 INFO L184 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 10:29:03" (1/1) ... [2024-09-25 10:29:03,789 INFO L184 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 10:29:03" (1/1) ... [2024-09-25 10:29:03,792 INFO L184 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 10:29:03" (1/1) ... [2024-09-25 10:29:03,798 INFO L184 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 10:29:03" (1/1) ... [2024-09-25 10:29:03,800 INFO L184 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 10:29:03" (1/1) ... [2024-09-25 10:29:03,801 INFO L184 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 10:29:03" (1/1) ... [2024-09-25 10:29:03,805 INFO L131 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2024-09-25 10:29:03,806 INFO L112 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2024-09-25 10:29:03,806 INFO L270 PluginConnector]: Initializing RCFGBuilder... [2024-09-25 10:29:03,806 INFO L274 PluginConnector]: RCFGBuilder initialized [2024-09-25 10:29:03,807 INFO L184 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 10:29:03" (1/1) ... [2024-09-25 10:29:03,813 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 [2024-09-25 10:29:03,824 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 10:29:03,839 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (exit command is (exit), workingDir is null) [2024-09-25 10:29:03,845 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:4000 (1)] Waiting until timeout for monitored process [2024-09-25 10:29:03,891 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2024-09-25 10:29:03,891 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.init [2024-09-25 10:29:03,891 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.init [2024-09-25 10:29:03,892 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2024-09-25 10:29:03,892 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2024-09-25 10:29:03,892 INFO L130 BoogieDeclarations]: Found specification of procedure main [2024-09-25 10:29:03,892 INFO L138 BoogieDeclarations]: Found implementation of procedure main [2024-09-25 10:29:03,893 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int#0 [2024-09-25 10:29:03,894 INFO L130 BoogieDeclarations]: Found specification of procedure __VERIFIER_assert [2024-09-25 10:29:03,894 INFO L138 BoogieDeclarations]: Found implementation of procedure __VERIFIER_assert [2024-09-25 10:29:03,958 INFO L241 CfgBuilder]: Building ICFG [2024-09-25 10:29:03,961 INFO L267 CfgBuilder]: Building CFG for each procedure with an implementation [2024-09-25 10:29:04,153 INFO L? ?]: Removed 4 outVars from TransFormulas that were not future-live. [2024-09-25 10:29:04,155 INFO L290 CfgBuilder]: Performing block encoding [2024-09-25 10:29:04,178 INFO L312 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2024-09-25 10:29:04,179 INFO L317 CfgBuilder]: Removed 6 assume(true) statements. [2024-09-25 10:29:04,179 INFO L201 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 25.09 10:29:04 BoogieIcfgContainer [2024-09-25 10:29:04,180 INFO L131 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2024-09-25 10:29:04,182 INFO L112 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2024-09-25 10:29:04,182 INFO L270 PluginConnector]: Initializing TraceAbstraction... [2024-09-25 10:29:04,186 INFO L274 PluginConnector]: TraceAbstraction initialized [2024-09-25 10:29:04,186 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 25.09 10:29:03" (1/3) ... [2024-09-25 10:29:04,187 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@4b2ebc59 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 25.09 10:29:04, skipping insertion in model container [2024-09-25 10:29:04,188 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.09 10:29:03" (2/3) ... [2024-09-25 10:29:04,188 INFO L204 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@4b2ebc59 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 25.09 10:29:04, skipping insertion in model container [2024-09-25 10:29:04,189 INFO L184 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 25.09 10:29:04" (3/3) ... [2024-09-25 10:29:04,190 INFO L112 eAbstractionObserver]: Analyzing ICFG in-de61.c [2024-09-25 10:29:04,205 INFO L209 ceAbstractionStarter]: Automizer settings: Hoare:All NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2024-09-25 10:29:04,206 INFO L149 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2024-09-25 10:29:04,277 INFO L335 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2024-09-25 10:29:04,285 INFO L336 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=All, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@1bca79d, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2024-09-25 10:29:04,286 INFO L337 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2024-09-25 10:29:04,290 INFO L276 IsEmpty]: Start isEmpty. Operand has 23 states, 15 states have (on average 1.9333333333333333) internal successors, (29), 16 states have internal predecessors, (29), 3 states have call successors, (3), 3 states have call predecessors, (3), 3 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) [2024-09-25 10:29:04,296 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 17 [2024-09-25 10:29:04,297 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 10:29:04,297 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 10:29:04,301 INFO L399 AbstractCegarLoop]: === Iteration 1 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 10:29:04,306 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:04,306 INFO L85 PathProgramCache]: Analyzing trace with hash -294793433, now seen corresponding path program 1 times [2024-09-25 10:29:04,316 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 10:29:04,316 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1944466802] [2024-09-25 10:29:04,317 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 10:29:04,317 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 10:29:04,405 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:04,455 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 10:29:04,459 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:04,475 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 10:29:04,476 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 10:29:04,476 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1944466802] [2024-09-25 10:29:04,477 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1944466802] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-25 10:29:04,477 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-25 10:29:04,481 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2024-09-25 10:29:04,483 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1840203304] [2024-09-25 10:29:04,483 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-25 10:29:04,487 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2024-09-25 10:29:04,491 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 10:29:04,522 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2024-09-25 10:29:04,523 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-09-25 10:29:04,525 INFO L87 Difference]: Start difference. First operand has 23 states, 15 states have (on average 1.9333333333333333) internal successors, (29), 16 states have internal predecessors, (29), 3 states have call successors, (3), 3 states have call predecessors, (3), 3 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) Second operand has 2 states, 2 states have (on average 6.0) internal successors, (12), 2 states have internal predecessors, (12), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:04,551 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 10:29:04,552 INFO L93 Difference]: Finished difference Result 40 states and 63 transitions. [2024-09-25 10:29:04,553 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2024-09-25 10:29:04,555 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 6.0) internal successors, (12), 2 states have internal predecessors, (12), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 16 [2024-09-25 10:29:04,555 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 10:29:04,560 INFO L225 Difference]: With dead ends: 40 [2024-09-25 10:29:04,561 INFO L226 Difference]: Without dead ends: 17 [2024-09-25 10:29:04,563 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2024-09-25 10:29:04,570 INFO L434 NwaCegarLoop]: 26 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 2 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 26 SdHoareTripleChecker+Invalid, 2 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 2 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-25 10:29:04,570 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 26 Invalid, 2 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 2 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-25 10:29:04,586 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 17 states. [2024-09-25 10:29:04,598 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 17 to 17. [2024-09-25 10:29:04,600 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 17 states, 12 states have (on average 1.5) internal successors, (18), 12 states have internal predecessors, (18), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:04,601 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 17 states to 17 states and 22 transitions. [2024-09-25 10:29:04,603 INFO L78 Accepts]: Start accepts. Automaton has 17 states and 22 transitions. Word has length 16 [2024-09-25 10:29:04,604 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 10:29:04,604 INFO L474 AbstractCegarLoop]: Abstraction has 17 states and 22 transitions. [2024-09-25 10:29:04,604 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 6.0) internal successors, (12), 2 states have internal predecessors, (12), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:04,605 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:04,605 INFO L276 IsEmpty]: Start isEmpty. Operand 17 states and 22 transitions. [2024-09-25 10:29:04,606 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 17 [2024-09-25 10:29:04,606 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 10:29:04,606 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 10:29:04,606 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2024-09-25 10:29:04,607 INFO L399 AbstractCegarLoop]: === Iteration 2 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 10:29:04,607 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:04,608 INFO L85 PathProgramCache]: Analyzing trace with hash -951970017, now seen corresponding path program 1 times [2024-09-25 10:29:04,611 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 10:29:04,611 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [35837959] [2024-09-25 10:29:04,611 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 10:29:04,612 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 10:29:04,653 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:05,199 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 10:29:05,201 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:05,205 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 10:29:05,208 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 10:29:05,208 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [35837959] [2024-09-25 10:29:05,208 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [35837959] provided 1 perfect and 0 imperfect interpolant sequences [2024-09-25 10:29:05,209 INFO L185 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2024-09-25 10:29:05,209 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2024-09-25 10:29:05,209 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1285609425] [2024-09-25 10:29:05,209 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2024-09-25 10:29:05,210 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2024-09-25 10:29:05,211 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 10:29:05,211 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2024-09-25 10:29:05,212 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=15, Invalid=41, Unknown=0, NotChecked=0, Total=56 [2024-09-25 10:29:05,212 INFO L87 Difference]: Start difference. First operand 17 states and 22 transitions. Second operand has 8 states, 8 states have (on average 1.5) internal successors, (12), 7 states have internal predecessors, (12), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:05,326 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 10:29:05,327 INFO L93 Difference]: Finished difference Result 37 states and 52 transitions. [2024-09-25 10:29:05,327 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2024-09-25 10:29:05,327 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 1.5) internal successors, (12), 7 states have internal predecessors, (12), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 16 [2024-09-25 10:29:05,328 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 10:29:05,328 INFO L225 Difference]: With dead ends: 37 [2024-09-25 10:29:05,328 INFO L226 Difference]: Without dead ends: 18 [2024-09-25 10:29:05,329 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 13 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 8 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 8 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=25, Invalid=65, Unknown=0, NotChecked=0, Total=90 [2024-09-25 10:29:05,330 INFO L434 NwaCegarLoop]: 12 mSDtfsCounter, 14 mSDsluCounter, 48 mSDsCounter, 0 mSdLazyCounter, 72 mSolverCounterSat, 5 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 14 SdHoareTripleChecker+Valid, 60 SdHoareTripleChecker+Invalid, 77 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 5 IncrementalHoareTripleChecker+Valid, 72 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-25 10:29:05,331 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [14 Valid, 60 Invalid, 77 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [5 Valid, 72 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-25 10:29:05,331 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 18 states. [2024-09-25 10:29:05,334 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 18 to 18. [2024-09-25 10:29:05,334 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 18 states, 13 states have (on average 1.4615384615384615) internal successors, (19), 13 states have internal predecessors, (19), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:05,335 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 18 states to 18 states and 23 transitions. [2024-09-25 10:29:05,335 INFO L78 Accepts]: Start accepts. Automaton has 18 states and 23 transitions. Word has length 16 [2024-09-25 10:29:05,338 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 10:29:05,338 INFO L474 AbstractCegarLoop]: Abstraction has 18 states and 23 transitions. [2024-09-25 10:29:05,338 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 1.5) internal successors, (12), 7 states have internal predecessors, (12), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:05,339 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:05,339 INFO L276 IsEmpty]: Start isEmpty. Operand 18 states and 23 transitions. [2024-09-25 10:29:05,339 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 18 [2024-09-25 10:29:05,339 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 10:29:05,339 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 10:29:05,345 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2024-09-25 10:29:05,346 INFO L399 AbstractCegarLoop]: === Iteration 3 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 10:29:05,346 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:05,346 INFO L85 PathProgramCache]: Analyzing trace with hash -713894869, now seen corresponding path program 1 times [2024-09-25 10:29:05,347 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 10:29:05,347 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1261561358] [2024-09-25 10:29:05,347 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 10:29:05,347 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 10:29:05,360 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:05,452 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 10:29:05,454 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:05,456 INFO L134 CoverageAnalysis]: Checked inductivity of 1 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 10:29:05,457 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 10:29:05,457 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1261561358] [2024-09-25 10:29:05,457 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1261561358] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 10:29:05,458 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1452294311] [2024-09-25 10:29:05,458 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 10:29:05,458 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:29:05,458 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 10:29:05,464 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 10:29:05,471 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2024-09-25 10:29:05,530 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:05,531 INFO L262 TraceCheckSpWp]: Trace formula consists of 54 conjuncts, 7 conjuncts are in the unsatisfiable core [2024-09-25 10:29:05,537 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 10:29:05,576 INFO L134 CoverageAnalysis]: Checked inductivity of 1 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 10:29:05,576 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 10:29:05,643 INFO L134 CoverageAnalysis]: Checked inductivity of 1 backedges. 0 proven. 1 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 10:29:05,643 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1452294311] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 10:29:05,643 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-25 10:29:05,644 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [5, 5, 5] total 9 [2024-09-25 10:29:05,644 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1544318887] [2024-09-25 10:29:05,644 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-25 10:29:05,645 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 9 states [2024-09-25 10:29:05,645 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 10:29:05,646 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 9 interpolants. [2024-09-25 10:29:05,646 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=21, Invalid=51, Unknown=0, NotChecked=0, Total=72 [2024-09-25 10:29:05,646 INFO L87 Difference]: Start difference. First operand 18 states and 23 transitions. Second operand has 9 states, 9 states have (on average 2.2222222222222223) internal successors, (20), 9 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:05,832 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 10:29:05,832 INFO L93 Difference]: Finished difference Result 59 states and 96 transitions. [2024-09-25 10:29:05,833 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2024-09-25 10:29:05,833 INFO L78 Accepts]: Start accepts. Automaton has has 9 states, 9 states have (on average 2.2222222222222223) internal successors, (20), 9 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 17 [2024-09-25 10:29:05,833 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 10:29:05,836 INFO L225 Difference]: With dead ends: 59 [2024-09-25 10:29:05,836 INFO L226 Difference]: Without dead ends: 50 [2024-09-25 10:29:05,837 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 45 GetRequests, 34 SyntacticMatches, 0 SemanticMatches, 11 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 13 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=48, Invalid=108, Unknown=0, NotChecked=0, Total=156 [2024-09-25 10:29:05,838 INFO L434 NwaCegarLoop]: 16 mSDtfsCounter, 48 mSDsluCounter, 62 mSDsCounter, 0 mSdLazyCounter, 77 mSolverCounterSat, 25 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 48 SdHoareTripleChecker+Valid, 78 SdHoareTripleChecker+Invalid, 102 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 25 IncrementalHoareTripleChecker+Valid, 77 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-25 10:29:05,838 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [48 Valid, 78 Invalid, 102 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [25 Valid, 77 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-25 10:29:05,842 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 50 states. [2024-09-25 10:29:05,857 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 50 to 41. [2024-09-25 10:29:05,860 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 41 states, 36 states have (on average 1.5277777777777777) internal successors, (55), 36 states have internal predecessors, (55), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:05,861 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 41 states to 41 states and 59 transitions. [2024-09-25 10:29:05,861 INFO L78 Accepts]: Start accepts. Automaton has 41 states and 59 transitions. Word has length 17 [2024-09-25 10:29:05,861 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 10:29:05,862 INFO L474 AbstractCegarLoop]: Abstraction has 41 states and 59 transitions. [2024-09-25 10:29:05,862 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 9 states, 9 states have (on average 2.2222222222222223) internal successors, (20), 9 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:05,862 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:05,862 INFO L276 IsEmpty]: Start isEmpty. Operand 41 states and 59 transitions. [2024-09-25 10:29:05,863 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 20 [2024-09-25 10:29:05,863 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 10:29:05,863 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 10:29:05,877 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Ended with exit code 0 [2024-09-25 10:29:06,067 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2,2 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:29:06,068 INFO L399 AbstractCegarLoop]: === Iteration 4 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 10:29:06,068 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:06,069 INFO L85 PathProgramCache]: Analyzing trace with hash 49422170, now seen corresponding path program 1 times [2024-09-25 10:29:06,069 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 10:29:06,069 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [741112967] [2024-09-25 10:29:06,069 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 10:29:06,069 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 10:29:06,085 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:06,187 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 10:29:06,188 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:06,190 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 3 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 10:29:06,190 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 10:29:06,191 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [741112967] [2024-09-25 10:29:06,191 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [741112967] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 10:29:06,191 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1675245040] [2024-09-25 10:29:06,191 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 10:29:06,192 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:29:06,192 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 10:29:06,193 INFO L229 MonitoredProcess]: Starting monitored process 3 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 10:29:06,195 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2024-09-25 10:29:06,231 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:06,238 INFO L262 TraceCheckSpWp]: Trace formula consists of 64 conjuncts, 11 conjuncts are in the unsatisfiable core [2024-09-25 10:29:06,239 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 10:29:06,275 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 3 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 10:29:06,278 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 10:29:06,379 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 3 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 10:29:06,379 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1675245040] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 10:29:06,379 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-25 10:29:06,379 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [7, 6, 6] total 11 [2024-09-25 10:29:06,380 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2131750546] [2024-09-25 10:29:06,380 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-25 10:29:06,380 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 11 states [2024-09-25 10:29:06,380 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 10:29:06,381 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 11 interpolants. [2024-09-25 10:29:06,381 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=27, Invalid=83, Unknown=0, NotChecked=0, Total=110 [2024-09-25 10:29:06,381 INFO L87 Difference]: Start difference. First operand 41 states and 59 transitions. Second operand has 11 states, 11 states have (on average 2.6363636363636362) internal successors, (29), 11 states have internal predecessors, (29), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:06,908 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 10:29:06,909 INFO L93 Difference]: Finished difference Result 108 states and 170 transitions. [2024-09-25 10:29:06,909 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 30 states. [2024-09-25 10:29:06,909 INFO L78 Accepts]: Start accepts. Automaton has has 11 states, 11 states have (on average 2.6363636363636362) internal successors, (29), 11 states have internal predecessors, (29), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 19 [2024-09-25 10:29:06,910 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 10:29:06,911 INFO L225 Difference]: With dead ends: 108 [2024-09-25 10:29:06,911 INFO L226 Difference]: Without dead ends: 87 [2024-09-25 10:29:06,912 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 66 GetRequests, 38 SyntacticMatches, 0 SemanticMatches, 28 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 166 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=205, Invalid=665, Unknown=0, NotChecked=0, Total=870 [2024-09-25 10:29:06,913 INFO L434 NwaCegarLoop]: 13 mSDtfsCounter, 86 mSDsluCounter, 88 mSDsCounter, 0 mSdLazyCounter, 174 mSolverCounterSat, 66 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 86 SdHoareTripleChecker+Valid, 101 SdHoareTripleChecker+Invalid, 240 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 66 IncrementalHoareTripleChecker+Valid, 174 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-25 10:29:06,913 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [86 Valid, 101 Invalid, 240 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [66 Valid, 174 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-25 10:29:06,914 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 87 states. [2024-09-25 10:29:06,928 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 87 to 56. [2024-09-25 10:29:06,929 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 56 states, 51 states have (on average 1.4509803921568627) internal successors, (74), 51 states have internal predecessors, (74), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:06,930 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 56 states to 56 states and 78 transitions. [2024-09-25 10:29:06,930 INFO L78 Accepts]: Start accepts. Automaton has 56 states and 78 transitions. Word has length 19 [2024-09-25 10:29:06,931 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 10:29:06,931 INFO L474 AbstractCegarLoop]: Abstraction has 56 states and 78 transitions. [2024-09-25 10:29:06,931 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 11 states, 11 states have (on average 2.6363636363636362) internal successors, (29), 11 states have internal predecessors, (29), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:06,931 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:06,932 INFO L276 IsEmpty]: Start isEmpty. Operand 56 states and 78 transitions. [2024-09-25 10:29:06,932 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 21 [2024-09-25 10:29:06,932 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 10:29:06,933 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 10:29:06,949 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Ended with exit code 0 [2024-09-25 10:29:07,136 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3,3 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:29:07,137 INFO L399 AbstractCegarLoop]: === Iteration 5 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 10:29:07,137 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:07,137 INFO L85 PathProgramCache]: Analyzing trace with hash -1324513826, now seen corresponding path program 1 times [2024-09-25 10:29:07,137 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 10:29:07,138 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [989570549] [2024-09-25 10:29:07,138 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 10:29:07,138 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 10:29:07,148 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:07,224 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 10:29:07,225 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:07,227 INFO L134 CoverageAnalysis]: Checked inductivity of 4 backedges. 1 proven. 1 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2024-09-25 10:29:07,228 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 10:29:07,228 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [989570549] [2024-09-25 10:29:07,229 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [989570549] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 10:29:07,229 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [449997122] [2024-09-25 10:29:07,230 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 10:29:07,230 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:29:07,230 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 10:29:07,232 INFO L229 MonitoredProcess]: Starting monitored process 4 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 10:29:07,236 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2024-09-25 10:29:07,287 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:07,288 INFO L262 TraceCheckSpWp]: Trace formula consists of 69 conjuncts, 14 conjuncts are in the unsatisfiable core [2024-09-25 10:29:07,289 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 10:29:07,420 INFO L134 CoverageAnalysis]: Checked inductivity of 4 backedges. 0 proven. 2 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2024-09-25 10:29:07,420 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 10:29:07,596 INFO L134 CoverageAnalysis]: Checked inductivity of 4 backedges. 0 proven. 2 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2024-09-25 10:29:07,597 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [449997122] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 10:29:07,598 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-25 10:29:07,598 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [4, 8, 8] total 15 [2024-09-25 10:29:07,598 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1273285878] [2024-09-25 10:29:07,598 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-25 10:29:07,599 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 15 states [2024-09-25 10:29:07,599 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 10:29:07,603 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 15 interpolants. [2024-09-25 10:29:07,603 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=39, Invalid=171, Unknown=0, NotChecked=0, Total=210 [2024-09-25 10:29:07,603 INFO L87 Difference]: Start difference. First operand 56 states and 78 transitions. Second operand has 15 states, 15 states have (on average 2.8666666666666667) internal successors, (43), 13 states have internal predecessors, (43), 4 states have call successors, (5), 4 states have call predecessors, (5), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:07,777 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 10:29:07,778 INFO L93 Difference]: Finished difference Result 90 states and 132 transitions. [2024-09-25 10:29:07,778 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2024-09-25 10:29:07,778 INFO L78 Accepts]: Start accepts. Automaton has has 15 states, 15 states have (on average 2.8666666666666667) internal successors, (43), 13 states have internal predecessors, (43), 4 states have call successors, (5), 4 states have call predecessors, (5), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 20 [2024-09-25 10:29:07,779 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 10:29:07,779 INFO L225 Difference]: With dead ends: 90 [2024-09-25 10:29:07,780 INFO L226 Difference]: Without dead ends: 79 [2024-09-25 10:29:07,780 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 47 GetRequests, 31 SyntacticMatches, 1 SemanticMatches, 15 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 21 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=49, Invalid=223, Unknown=0, NotChecked=0, Total=272 [2024-09-25 10:29:07,781 INFO L434 NwaCegarLoop]: 24 mSDtfsCounter, 24 mSDsluCounter, 173 mSDsCounter, 0 mSdLazyCounter, 132 mSolverCounterSat, 15 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 24 SdHoareTripleChecker+Valid, 197 SdHoareTripleChecker+Invalid, 147 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 15 IncrementalHoareTripleChecker+Valid, 132 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-25 10:29:07,781 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [24 Valid, 197 Invalid, 147 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [15 Valid, 132 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-25 10:29:07,782 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 79 states. [2024-09-25 10:29:07,800 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 79 to 63. [2024-09-25 10:29:07,800 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 63 states, 58 states have (on average 1.4827586206896552) internal successors, (86), 58 states have internal predecessors, (86), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:07,801 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 63 states to 63 states and 90 transitions. [2024-09-25 10:29:07,801 INFO L78 Accepts]: Start accepts. Automaton has 63 states and 90 transitions. Word has length 20 [2024-09-25 10:29:07,802 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 10:29:07,802 INFO L474 AbstractCegarLoop]: Abstraction has 63 states and 90 transitions. [2024-09-25 10:29:07,802 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 15 states, 15 states have (on average 2.8666666666666667) internal successors, (43), 13 states have internal predecessors, (43), 4 states have call successors, (5), 4 states have call predecessors, (5), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:07,802 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:07,803 INFO L276 IsEmpty]: Start isEmpty. Operand 63 states and 90 transitions. [2024-09-25 10:29:07,803 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 21 [2024-09-25 10:29:07,803 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 10:29:07,804 INFO L216 NwaCegarLoop]: trace histogram [4, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 10:29:07,820 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Ended with exit code 0 [2024-09-25 10:29:08,004 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4,4 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:29:08,004 INFO L399 AbstractCegarLoop]: === Iteration 6 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 10:29:08,005 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:08,005 INFO L85 PathProgramCache]: Analyzing trace with hash 739179039, now seen corresponding path program 2 times [2024-09-25 10:29:08,005 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 10:29:08,005 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [960669432] [2024-09-25 10:29:08,005 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 10:29:08,005 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 10:29:08,015 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:08,125 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 10:29:08,126 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:08,128 INFO L134 CoverageAnalysis]: Checked inductivity of 10 backedges. 0 proven. 10 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 10:29:08,129 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 10:29:08,129 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [960669432] [2024-09-25 10:29:08,129 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [960669432] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 10:29:08,129 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1472017470] [2024-09-25 10:29:08,129 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-25 10:29:08,130 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:29:08,130 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 10:29:08,132 INFO L229 MonitoredProcess]: Starting monitored process 5 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 10:29:08,133 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2024-09-25 10:29:08,173 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-25 10:29:08,173 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-25 10:29:08,175 INFO L262 TraceCheckSpWp]: Trace formula consists of 69 conjuncts, 13 conjuncts are in the unsatisfiable core [2024-09-25 10:29:08,176 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 10:29:08,203 INFO L134 CoverageAnalysis]: Checked inductivity of 10 backedges. 0 proven. 10 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 10:29:08,203 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 10:29:08,312 INFO L134 CoverageAnalysis]: Checked inductivity of 10 backedges. 0 proven. 10 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 10:29:08,312 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1472017470] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 10:29:08,313 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-25 10:29:08,313 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [8, 8, 8] total 15 [2024-09-25 10:29:08,313 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1758229421] [2024-09-25 10:29:08,314 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-25 10:29:08,314 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 15 states [2024-09-25 10:29:08,314 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 10:29:08,316 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 15 interpolants. [2024-09-25 10:29:08,316 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=54, Invalid=156, Unknown=0, NotChecked=0, Total=210 [2024-09-25 10:29:08,316 INFO L87 Difference]: Start difference. First operand 63 states and 90 transitions. Second operand has 15 states, 15 states have (on average 1.7333333333333334) internal successors, (26), 15 states have internal predecessors, (26), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:09,108 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 10:29:09,108 INFO L93 Difference]: Finished difference Result 221 states and 363 transitions. [2024-09-25 10:29:09,109 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 26 states. [2024-09-25 10:29:09,109 INFO L78 Accepts]: Start accepts. Automaton has has 15 states, 15 states have (on average 1.7333333333333334) internal successors, (26), 15 states have internal predecessors, (26), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 20 [2024-09-25 10:29:09,109 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 10:29:09,111 INFO L225 Difference]: With dead ends: 221 [2024-09-25 10:29:09,111 INFO L226 Difference]: Without dead ends: 196 [2024-09-25 10:29:09,112 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 67 GetRequests, 37 SyntacticMatches, 0 SemanticMatches, 30 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 198 ImplicationChecksByTransitivity, 0.5s TimeCoverageRelationStatistics Valid=301, Invalid=691, Unknown=0, NotChecked=0, Total=992 [2024-09-25 10:29:09,112 INFO L434 NwaCegarLoop]: 31 mSDtfsCounter, 282 mSDsluCounter, 170 mSDsCounter, 0 mSdLazyCounter, 227 mSolverCounterSat, 143 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 282 SdHoareTripleChecker+Valid, 201 SdHoareTripleChecker+Invalid, 370 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 143 IncrementalHoareTripleChecker+Valid, 227 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2024-09-25 10:29:09,113 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [282 Valid, 201 Invalid, 370 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [143 Valid, 227 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2024-09-25 10:29:09,114 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 196 states. [2024-09-25 10:29:09,148 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 196 to 123. [2024-09-25 10:29:09,148 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 123 states, 118 states have (on average 1.5254237288135593) internal successors, (180), 118 states have internal predecessors, (180), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:09,150 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 123 states to 123 states and 184 transitions. [2024-09-25 10:29:09,152 INFO L78 Accepts]: Start accepts. Automaton has 123 states and 184 transitions. Word has length 20 [2024-09-25 10:29:09,153 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 10:29:09,153 INFO L474 AbstractCegarLoop]: Abstraction has 123 states and 184 transitions. [2024-09-25 10:29:09,153 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 15 states, 15 states have (on average 1.7333333333333334) internal successors, (26), 15 states have internal predecessors, (26), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:09,153 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:09,153 INFO L276 IsEmpty]: Start isEmpty. Operand 123 states and 184 transitions. [2024-09-25 10:29:09,154 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 23 [2024-09-25 10:29:09,154 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 10:29:09,155 INFO L216 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 10:29:09,172 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Ended with exit code 0 [2024-09-25 10:29:09,355 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5,5 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:29:09,356 INFO L399 AbstractCegarLoop]: === Iteration 7 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 10:29:09,357 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:09,357 INFO L85 PathProgramCache]: Analyzing trace with hash 1756794400, now seen corresponding path program 1 times [2024-09-25 10:29:09,357 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 10:29:09,357 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [826818595] [2024-09-25 10:29:09,357 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 10:29:09,357 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 10:29:09,375 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:09,700 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 10:29:09,702 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:09,705 INFO L134 CoverageAnalysis]: Checked inductivity of 6 backedges. 0 proven. 5 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2024-09-25 10:29:09,705 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 10:29:09,705 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [826818595] [2024-09-25 10:29:09,706 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [826818595] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 10:29:09,706 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1759224865] [2024-09-25 10:29:09,706 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 10:29:09,706 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:29:09,707 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 10:29:09,708 INFO L229 MonitoredProcess]: Starting monitored process 6 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 10:29:09,710 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Waiting until timeout for monitored process [2024-09-25 10:29:09,776 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:09,777 INFO L262 TraceCheckSpWp]: Trace formula consists of 79 conjuncts, 25 conjuncts are in the unsatisfiable core [2024-09-25 10:29:09,779 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 10:29:09,980 INFO L134 CoverageAnalysis]: Checked inductivity of 6 backedges. 0 proven. 5 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2024-09-25 10:29:09,984 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 10:29:10,138 INFO L134 CoverageAnalysis]: Checked inductivity of 6 backedges. 0 proven. 5 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2024-09-25 10:29:10,138 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1759224865] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 10:29:10,139 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-25 10:29:10,139 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 9, 9] total 20 [2024-09-25 10:29:10,139 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [757613709] [2024-09-25 10:29:10,139 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-25 10:29:10,140 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 20 states [2024-09-25 10:29:10,140 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 10:29:10,141 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 20 interpolants. [2024-09-25 10:29:10,141 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=58, Invalid=322, Unknown=0, NotChecked=0, Total=380 [2024-09-25 10:29:10,141 INFO L87 Difference]: Start difference. First operand 123 states and 184 transitions. Second operand has 20 states, 20 states have (on average 2.3) internal successors, (46), 18 states have internal predecessors, (46), 3 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:10,891 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 10:29:10,891 INFO L93 Difference]: Finished difference Result 167 states and 242 transitions. [2024-09-25 10:29:10,891 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 26 states. [2024-09-25 10:29:10,892 INFO L78 Accepts]: Start accepts. Automaton has has 20 states, 20 states have (on average 2.3) internal successors, (46), 18 states have internal predecessors, (46), 3 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 22 [2024-09-25 10:29:10,892 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 10:29:10,893 INFO L225 Difference]: With dead ends: 167 [2024-09-25 10:29:10,893 INFO L226 Difference]: Without dead ends: 158 [2024-09-25 10:29:10,894 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 73 GetRequests, 39 SyntacticMatches, 0 SemanticMatches, 34 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 244 ImplicationChecksByTransitivity, 0.6s TimeCoverageRelationStatistics Valid=213, Invalid=1047, Unknown=0, NotChecked=0, Total=1260 [2024-09-25 10:29:10,895 INFO L434 NwaCegarLoop]: 12 mSDtfsCounter, 35 mSDsluCounter, 122 mSDsCounter, 0 mSdLazyCounter, 336 mSolverCounterSat, 20 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 35 SdHoareTripleChecker+Valid, 134 SdHoareTripleChecker+Invalid, 356 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 20 IncrementalHoareTripleChecker+Valid, 336 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2024-09-25 10:29:10,895 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [35 Valid, 134 Invalid, 356 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [20 Valid, 336 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2024-09-25 10:29:10,896 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 158 states. [2024-09-25 10:29:10,945 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 158 to 123. [2024-09-25 10:29:10,946 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 123 states, 118 states have (on average 1.5254237288135593) internal successors, (180), 118 states have internal predecessors, (180), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:10,948 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 123 states to 123 states and 184 transitions. [2024-09-25 10:29:10,949 INFO L78 Accepts]: Start accepts. Automaton has 123 states and 184 transitions. Word has length 22 [2024-09-25 10:29:10,949 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 10:29:10,949 INFO L474 AbstractCegarLoop]: Abstraction has 123 states and 184 transitions. [2024-09-25 10:29:10,949 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 20 states, 20 states have (on average 2.3) internal successors, (46), 18 states have internal predecessors, (46), 3 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:10,950 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:10,950 INFO L276 IsEmpty]: Start isEmpty. Operand 123 states and 184 transitions. [2024-09-25 10:29:10,951 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 23 [2024-09-25 10:29:10,953 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 10:29:10,953 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 10:29:10,972 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Ended with exit code 0 [2024-09-25 10:29:11,157 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 6 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable6 [2024-09-25 10:29:11,158 INFO L399 AbstractCegarLoop]: === Iteration 8 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 10:29:11,158 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:11,158 INFO L85 PathProgramCache]: Analyzing trace with hash 1941599551, now seen corresponding path program 2 times [2024-09-25 10:29:11,158 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 10:29:11,158 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2140247374] [2024-09-25 10:29:11,159 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 10:29:11,159 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 10:29:11,170 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:11,292 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 10:29:11,293 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:11,295 INFO L134 CoverageAnalysis]: Checked inductivity of 9 backedges. 0 proven. 9 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 10:29:11,295 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 10:29:11,295 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2140247374] [2024-09-25 10:29:11,295 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2140247374] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 10:29:11,295 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1682897327] [2024-09-25 10:29:11,296 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-25 10:29:11,296 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:29:11,296 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 10:29:11,297 INFO L229 MonitoredProcess]: Starting monitored process 7 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 10:29:11,299 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Waiting until timeout for monitored process [2024-09-25 10:29:11,339 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-25 10:29:11,339 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-25 10:29:11,340 INFO L262 TraceCheckSpWp]: Trace formula consists of 79 conjuncts, 12 conjuncts are in the unsatisfiable core [2024-09-25 10:29:11,341 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 10:29:11,397 INFO L134 CoverageAnalysis]: Checked inductivity of 9 backedges. 2 proven. 4 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-09-25 10:29:11,397 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 10:29:11,466 INFO L134 CoverageAnalysis]: Checked inductivity of 9 backedges. 2 proven. 4 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-09-25 10:29:11,467 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1682897327] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 10:29:11,467 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-25 10:29:11,467 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [9, 5, 5] total 12 [2024-09-25 10:29:11,467 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [865348388] [2024-09-25 10:29:11,467 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-25 10:29:11,467 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 12 states [2024-09-25 10:29:11,468 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 10:29:11,468 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 12 interpolants. [2024-09-25 10:29:11,468 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=22, Invalid=110, Unknown=0, NotChecked=0, Total=132 [2024-09-25 10:29:11,468 INFO L87 Difference]: Start difference. First operand 123 states and 184 transitions. Second operand has 12 states, 12 states have (on average 2.5) internal successors, (30), 12 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:12,240 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 10:29:12,241 INFO L93 Difference]: Finished difference Result 302 states and 459 transitions. [2024-09-25 10:29:12,241 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 36 states. [2024-09-25 10:29:12,241 INFO L78 Accepts]: Start accepts. Automaton has has 12 states, 12 states have (on average 2.5) internal successors, (30), 12 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 22 [2024-09-25 10:29:12,242 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 10:29:12,243 INFO L225 Difference]: With dead ends: 302 [2024-09-25 10:29:12,243 INFO L226 Difference]: Without dead ends: 263 [2024-09-25 10:29:12,244 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 87 GetRequests, 42 SyntacticMatches, 4 SemanticMatches, 41 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 454 ImplicationChecksByTransitivity, 0.5s TimeCoverageRelationStatistics Valid=253, Invalid=1553, Unknown=0, NotChecked=0, Total=1806 [2024-09-25 10:29:12,245 INFO L434 NwaCegarLoop]: 18 mSDtfsCounter, 123 mSDsluCounter, 119 mSDsCounter, 0 mSdLazyCounter, 328 mSolverCounterSat, 84 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 123 SdHoareTripleChecker+Valid, 137 SdHoareTripleChecker+Invalid, 412 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 84 IncrementalHoareTripleChecker+Valid, 328 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2024-09-25 10:29:12,245 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [123 Valid, 137 Invalid, 412 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [84 Valid, 328 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2024-09-25 10:29:12,246 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 263 states. [2024-09-25 10:29:12,293 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 263 to 154. [2024-09-25 10:29:12,294 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 154 states, 149 states have (on average 1.4966442953020134) internal successors, (223), 149 states have internal predecessors, (223), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:12,295 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 154 states to 154 states and 227 transitions. [2024-09-25 10:29:12,295 INFO L78 Accepts]: Start accepts. Automaton has 154 states and 227 transitions. Word has length 22 [2024-09-25 10:29:12,295 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 10:29:12,295 INFO L474 AbstractCegarLoop]: Abstraction has 154 states and 227 transitions. [2024-09-25 10:29:12,295 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 12 states, 12 states have (on average 2.5) internal successors, (30), 12 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:12,296 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:12,296 INFO L276 IsEmpty]: Start isEmpty. Operand 154 states and 227 transitions. [2024-09-25 10:29:12,297 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2024-09-25 10:29:12,297 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 10:29:12,297 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 10:29:12,313 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (7)] Ended with exit code 0 [2024-09-25 10:29:12,501 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7,7 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:29:12,502 INFO L399 AbstractCegarLoop]: === Iteration 9 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 10:29:12,502 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:12,502 INFO L85 PathProgramCache]: Analyzing trace with hash -46385954, now seen corresponding path program 2 times [2024-09-25 10:29:12,502 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 10:29:12,502 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1406175341] [2024-09-25 10:29:12,502 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 10:29:12,503 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 10:29:12,512 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:12,561 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 10:29:12,562 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:12,564 INFO L134 CoverageAnalysis]: Checked inductivity of 10 backedges. 2 proven. 2 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-25 10:29:12,564 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 10:29:12,564 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1406175341] [2024-09-25 10:29:12,564 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1406175341] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 10:29:12,564 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1326340472] [2024-09-25 10:29:12,564 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-25 10:29:12,564 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:29:12,565 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 10:29:12,566 INFO L229 MonitoredProcess]: Starting monitored process 8 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 10:29:12,578 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Waiting until timeout for monitored process [2024-09-25 10:29:12,614 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-25 10:29:12,615 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-25 10:29:12,615 INFO L262 TraceCheckSpWp]: Trace formula consists of 89 conjuncts, 10 conjuncts are in the unsatisfiable core [2024-09-25 10:29:12,617 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 10:29:12,634 INFO L134 CoverageAnalysis]: Checked inductivity of 10 backedges. 2 proven. 2 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-25 10:29:12,635 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 10:29:12,660 INFO L134 CoverageAnalysis]: Checked inductivity of 10 backedges. 2 proven. 2 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-25 10:29:12,660 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1326340472] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 10:29:12,660 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-25 10:29:12,661 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [4, 4, 4] total 4 [2024-09-25 10:29:12,661 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [143432337] [2024-09-25 10:29:12,661 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-25 10:29:12,662 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2024-09-25 10:29:12,662 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 10:29:12,663 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2024-09-25 10:29:12,663 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-09-25 10:29:12,663 INFO L87 Difference]: Start difference. First operand 154 states and 227 transitions. Second operand has 4 states, 4 states have (on average 4.75) internal successors, (19), 4 states have internal predecessors, (19), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:12,747 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 10:29:12,748 INFO L93 Difference]: Finished difference Result 242 states and 361 transitions. [2024-09-25 10:29:12,748 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2024-09-25 10:29:12,748 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 4.75) internal successors, (19), 4 states have internal predecessors, (19), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 24 [2024-09-25 10:29:12,749 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 10:29:12,750 INFO L225 Difference]: With dead ends: 242 [2024-09-25 10:29:12,750 INFO L226 Difference]: Without dead ends: 181 [2024-09-25 10:29:12,750 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 54 GetRequests, 50 SyntacticMatches, 2 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2024-09-25 10:29:12,751 INFO L434 NwaCegarLoop]: 25 mSDtfsCounter, 9 mSDsluCounter, 35 mSDsCounter, 0 mSdLazyCounter, 24 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 9 SdHoareTripleChecker+Valid, 60 SdHoareTripleChecker+Invalid, 26 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 24 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-25 10:29:12,751 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [9 Valid, 60 Invalid, 26 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 24 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-25 10:29:12,752 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 181 states. [2024-09-25 10:29:12,802 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 181 to 151. [2024-09-25 10:29:12,803 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 151 states, 146 states have (on average 1.4726027397260273) internal successors, (215), 146 states have internal predecessors, (215), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:12,803 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 151 states to 151 states and 219 transitions. [2024-09-25 10:29:12,804 INFO L78 Accepts]: Start accepts. Automaton has 151 states and 219 transitions. Word has length 24 [2024-09-25 10:29:12,804 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 10:29:12,804 INFO L474 AbstractCegarLoop]: Abstraction has 151 states and 219 transitions. [2024-09-25 10:29:12,804 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 4.75) internal successors, (19), 4 states have internal predecessors, (19), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:12,805 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:12,805 INFO L276 IsEmpty]: Start isEmpty. Operand 151 states and 219 transitions. [2024-09-25 10:29:12,806 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2024-09-25 10:29:12,806 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 10:29:12,806 INFO L216 NwaCegarLoop]: trace histogram [3, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 10:29:12,822 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (8)] Ended with exit code 0 [2024-09-25 10:29:13,010 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8,8 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:29:13,011 INFO L399 AbstractCegarLoop]: === Iteration 10 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 10:29:13,011 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:13,011 INFO L85 PathProgramCache]: Analyzing trace with hash 1697264410, now seen corresponding path program 1 times [2024-09-25 10:29:13,012 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 10:29:13,012 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [616290249] [2024-09-25 10:29:13,012 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 10:29:13,012 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 10:29:13,024 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:13,122 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 10:29:13,122 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:13,124 INFO L134 CoverageAnalysis]: Checked inductivity of 15 backedges. 0 proven. 7 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2024-09-25 10:29:13,124 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 10:29:13,124 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [616290249] [2024-09-25 10:29:13,125 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [616290249] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 10:29:13,125 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1036582373] [2024-09-25 10:29:13,125 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 10:29:13,125 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:29:13,125 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 10:29:13,127 INFO L229 MonitoredProcess]: Starting monitored process 9 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 10:29:13,128 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Waiting until timeout for monitored process [2024-09-25 10:29:13,167 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:13,168 INFO L262 TraceCheckSpWp]: Trace formula consists of 94 conjuncts, 16 conjuncts are in the unsatisfiable core [2024-09-25 10:29:13,169 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 10:29:13,203 INFO L134 CoverageAnalysis]: Checked inductivity of 15 backedges. 0 proven. 7 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2024-09-25 10:29:13,203 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 10:29:13,265 INFO L134 CoverageAnalysis]: Checked inductivity of 15 backedges. 4 proven. 2 refuted. 0 times theorem prover too weak. 9 trivial. 0 not checked. [2024-09-25 10:29:13,265 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1036582373] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 10:29:13,265 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-25 10:29:13,265 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [8, 8, 6] total 14 [2024-09-25 10:29:13,265 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1271892439] [2024-09-25 10:29:13,265 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-25 10:29:13,266 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 14 states [2024-09-25 10:29:13,266 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 10:29:13,266 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 14 interpolants. [2024-09-25 10:29:13,266 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=45, Invalid=137, Unknown=0, NotChecked=0, Total=182 [2024-09-25 10:29:13,266 INFO L87 Difference]: Start difference. First operand 151 states and 219 transitions. Second operand has 14 states, 14 states have (on average 2.142857142857143) internal successors, (30), 14 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:13,677 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 10:29:13,677 INFO L93 Difference]: Finished difference Result 222 states and 323 transitions. [2024-09-25 10:29:13,677 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 20 states. [2024-09-25 10:29:13,677 INFO L78 Accepts]: Start accepts. Automaton has has 14 states, 14 states have (on average 2.142857142857143) internal successors, (30), 14 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 25 [2024-09-25 10:29:13,678 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 10:29:13,679 INFO L225 Difference]: With dead ends: 222 [2024-09-25 10:29:13,679 INFO L226 Difference]: Without dead ends: 180 [2024-09-25 10:29:13,682 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 68 GetRequests, 48 SyntacticMatches, 0 SemanticMatches, 20 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 64 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=87, Invalid=375, Unknown=0, NotChecked=0, Total=462 [2024-09-25 10:29:13,682 INFO L434 NwaCegarLoop]: 25 mSDtfsCounter, 46 mSDsluCounter, 166 mSDsCounter, 0 mSdLazyCounter, 341 mSolverCounterSat, 48 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 46 SdHoareTripleChecker+Valid, 191 SdHoareTripleChecker+Invalid, 389 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 48 IncrementalHoareTripleChecker+Valid, 341 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2024-09-25 10:29:13,683 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [46 Valid, 191 Invalid, 389 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [48 Valid, 341 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2024-09-25 10:29:13,684 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 180 states. [2024-09-25 10:29:13,749 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 180 to 147. [2024-09-25 10:29:13,750 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 147 states, 142 states have (on average 1.471830985915493) internal successors, (209), 142 states have internal predecessors, (209), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:13,750 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 147 states to 147 states and 213 transitions. [2024-09-25 10:29:13,751 INFO L78 Accepts]: Start accepts. Automaton has 147 states and 213 transitions. Word has length 25 [2024-09-25 10:29:13,751 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 10:29:13,751 INFO L474 AbstractCegarLoop]: Abstraction has 147 states and 213 transitions. [2024-09-25 10:29:13,751 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 14 states, 14 states have (on average 2.142857142857143) internal successors, (30), 14 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:13,752 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:13,752 INFO L276 IsEmpty]: Start isEmpty. Operand 147 states and 213 transitions. [2024-09-25 10:29:13,752 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2024-09-25 10:29:13,752 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 10:29:13,752 INFO L216 NwaCegarLoop]: trace histogram [3, 3, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 10:29:13,769 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (9)] Forceful destruction successful, exit code 0 [2024-09-25 10:29:13,953 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9,9 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:29:13,953 INFO L399 AbstractCegarLoop]: === Iteration 11 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 10:29:13,954 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:13,954 INFO L85 PathProgramCache]: Analyzing trace with hash 1008778426, now seen corresponding path program 3 times [2024-09-25 10:29:13,954 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 10:29:13,954 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [927681631] [2024-09-25 10:29:13,954 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 10:29:13,954 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 10:29:13,962 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:14,090 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 10:29:14,091 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:14,092 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 0 proven. 18 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 10:29:14,093 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 10:29:14,093 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [927681631] [2024-09-25 10:29:14,093 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [927681631] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 10:29:14,093 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1143548892] [2024-09-25 10:29:14,093 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-09-25 10:29:14,093 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:29:14,094 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 10:29:14,096 INFO L229 MonitoredProcess]: Starting monitored process 10 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 10:29:14,099 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Waiting until timeout for monitored process [2024-09-25 10:29:14,136 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 3 check-sat command(s) [2024-09-25 10:29:14,136 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-25 10:29:14,137 INFO L262 TraceCheckSpWp]: Trace formula consists of 94 conjuncts, 16 conjuncts are in the unsatisfiable core [2024-09-25 10:29:14,137 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 10:29:14,221 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 3 proven. 9 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-25 10:29:14,221 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 10:29:14,337 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 3 proven. 9 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-25 10:29:14,338 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1143548892] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 10:29:14,338 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-25 10:29:14,338 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [11, 6, 6] total 15 [2024-09-25 10:29:14,338 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1879607435] [2024-09-25 10:29:14,338 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-25 10:29:14,338 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 15 states [2024-09-25 10:29:14,339 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 10:29:14,339 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 15 interpolants. [2024-09-25 10:29:14,339 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=28, Invalid=182, Unknown=0, NotChecked=0, Total=210 [2024-09-25 10:29:14,339 INFO L87 Difference]: Start difference. First operand 147 states and 213 transitions. Second operand has 15 states, 15 states have (on average 2.3333333333333335) internal successors, (35), 15 states have internal predecessors, (35), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:15,645 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 10:29:15,645 INFO L93 Difference]: Finished difference Result 356 states and 535 transitions. [2024-09-25 10:29:15,645 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 61 states. [2024-09-25 10:29:15,646 INFO L78 Accepts]: Start accepts. Automaton has has 15 states, 15 states have (on average 2.3333333333333335) internal successors, (35), 15 states have internal predecessors, (35), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 25 [2024-09-25 10:29:15,646 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 10:29:15,647 INFO L225 Difference]: With dead ends: 356 [2024-09-25 10:29:15,647 INFO L226 Difference]: Without dead ends: 319 [2024-09-25 10:29:15,649 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 121 GetRequests, 46 SyntacticMatches, 6 SemanticMatches, 69 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1516 ImplicationChecksByTransitivity, 0.9s TimeCoverageRelationStatistics Valid=524, Invalid=4446, Unknown=0, NotChecked=0, Total=4970 [2024-09-25 10:29:15,650 INFO L434 NwaCegarLoop]: 26 mSDtfsCounter, 164 mSDsluCounter, 219 mSDsCounter, 0 mSdLazyCounter, 736 mSolverCounterSat, 130 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 164 SdHoareTripleChecker+Valid, 245 SdHoareTripleChecker+Invalid, 866 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 130 IncrementalHoareTripleChecker+Valid, 736 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2024-09-25 10:29:15,650 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [164 Valid, 245 Invalid, 866 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [130 Valid, 736 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2024-09-25 10:29:15,651 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 319 states. [2024-09-25 10:29:15,704 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 319 to 171. [2024-09-25 10:29:15,705 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 171 states, 166 states have (on average 1.4759036144578312) internal successors, (245), 166 states have internal predecessors, (245), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:15,705 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 171 states to 171 states and 249 transitions. [2024-09-25 10:29:15,706 INFO L78 Accepts]: Start accepts. Automaton has 171 states and 249 transitions. Word has length 25 [2024-09-25 10:29:15,706 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 10:29:15,706 INFO L474 AbstractCegarLoop]: Abstraction has 171 states and 249 transitions. [2024-09-25 10:29:15,706 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 15 states, 15 states have (on average 2.3333333333333335) internal successors, (35), 15 states have internal predecessors, (35), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:15,706 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:15,707 INFO L276 IsEmpty]: Start isEmpty. Operand 171 states and 249 transitions. [2024-09-25 10:29:15,707 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2024-09-25 10:29:15,707 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 10:29:15,707 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 10:29:15,719 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (10)] Ended with exit code 0 [2024-09-25 10:29:15,907 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 10 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable10 [2024-09-25 10:29:15,908 INFO L399 AbstractCegarLoop]: === Iteration 12 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 10:29:15,908 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:15,908 INFO L85 PathProgramCache]: Analyzing trace with hash 1467722815, now seen corresponding path program 3 times [2024-09-25 10:29:15,908 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 10:29:15,908 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2090431997] [2024-09-25 10:29:15,909 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 10:29:15,909 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 10:29:15,918 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:15,985 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 10:29:15,986 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:15,988 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 2 proven. 4 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2024-09-25 10:29:15,988 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 10:29:15,988 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2090431997] [2024-09-25 10:29:15,988 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2090431997] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 10:29:15,989 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1314500269] [2024-09-25 10:29:15,989 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-09-25 10:29:15,989 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:29:15,989 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 10:29:15,991 INFO L229 MonitoredProcess]: Starting monitored process 11 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 10:29:15,992 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (11)] Waiting until timeout for monitored process [2024-09-25 10:29:16,032 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 2 check-sat command(s) [2024-09-25 10:29:16,032 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-25 10:29:16,033 INFO L262 TraceCheckSpWp]: Trace formula consists of 99 conjuncts, 10 conjuncts are in the unsatisfiable core [2024-09-25 10:29:16,034 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 10:29:16,061 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 2 proven. 4 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2024-09-25 10:29:16,061 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 10:29:16,090 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 2 proven. 4 refuted. 0 times theorem prover too weak. 8 trivial. 0 not checked. [2024-09-25 10:29:16,090 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1314500269] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 10:29:16,090 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-25 10:29:16,090 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [5, 5, 5] total 5 [2024-09-25 10:29:16,090 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [112605906] [2024-09-25 10:29:16,090 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-25 10:29:16,091 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2024-09-25 10:29:16,091 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 10:29:16,091 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2024-09-25 10:29:16,091 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2024-09-25 10:29:16,091 INFO L87 Difference]: Start difference. First operand 171 states and 249 transitions. Second operand has 5 states, 5 states have (on average 4.0) internal successors, (20), 5 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:16,235 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 10:29:16,235 INFO L93 Difference]: Finished difference Result 259 states and 367 transitions. [2024-09-25 10:29:16,235 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2024-09-25 10:29:16,236 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 4.0) internal successors, (20), 5 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 26 [2024-09-25 10:29:16,236 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 10:29:16,237 INFO L225 Difference]: With dead ends: 259 [2024-09-25 10:29:16,237 INFO L226 Difference]: Without dead ends: 247 [2024-09-25 10:29:16,237 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 61 GetRequests, 50 SyntacticMatches, 6 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=15, Invalid=27, Unknown=0, NotChecked=0, Total=42 [2024-09-25 10:29:16,238 INFO L434 NwaCegarLoop]: 28 mSDtfsCounter, 18 mSDsluCounter, 56 mSDsCounter, 0 mSdLazyCounter, 37 mSolverCounterSat, 11 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 18 SdHoareTripleChecker+Valid, 84 SdHoareTripleChecker+Invalid, 48 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 11 IncrementalHoareTripleChecker+Valid, 37 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2024-09-25 10:29:16,238 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [18 Valid, 84 Invalid, 48 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [11 Valid, 37 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2024-09-25 10:29:16,239 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 247 states. [2024-09-25 10:29:16,304 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 247 to 186. [2024-09-25 10:29:16,304 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 186 states, 181 states have (on average 1.4475138121546962) internal successors, (262), 181 states have internal predecessors, (262), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:16,305 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 186 states to 186 states and 266 transitions. [2024-09-25 10:29:16,306 INFO L78 Accepts]: Start accepts. Automaton has 186 states and 266 transitions. Word has length 26 [2024-09-25 10:29:16,306 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 10:29:16,306 INFO L474 AbstractCegarLoop]: Abstraction has 186 states and 266 transitions. [2024-09-25 10:29:16,306 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 4.0) internal successors, (20), 5 states have internal predecessors, (20), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:16,306 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:16,306 INFO L276 IsEmpty]: Start isEmpty. Operand 186 states and 266 transitions. [2024-09-25 10:29:16,307 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2024-09-25 10:29:16,307 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 10:29:16,307 INFO L216 NwaCegarLoop]: trace histogram [5, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 10:29:16,319 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (11)] Ended with exit code 0 [2024-09-25 10:29:16,507 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 11 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable11 [2024-09-25 10:29:16,507 INFO L399 AbstractCegarLoop]: === Iteration 13 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 10:29:16,508 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:16,508 INFO L85 PathProgramCache]: Analyzing trace with hash 722284832, now seen corresponding path program 4 times [2024-09-25 10:29:16,508 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 10:29:16,508 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1536616651] [2024-09-25 10:29:16,508 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 10:29:16,508 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 10:29:16,516 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:16,617 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 10:29:16,618 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:16,619 INFO L134 CoverageAnalysis]: Checked inductivity of 20 backedges. 0 proven. 16 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-25 10:29:16,620 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 10:29:16,620 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1536616651] [2024-09-25 10:29:16,620 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1536616651] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 10:29:16,620 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1402634625] [2024-09-25 10:29:16,620 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2024-09-25 10:29:16,620 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:29:16,621 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 10:29:16,622 INFO L229 MonitoredProcess]: Starting monitored process 12 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 10:29:16,624 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (12)] Waiting until timeout for monitored process [2024-09-25 10:29:16,664 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2024-09-25 10:29:16,664 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-25 10:29:16,665 INFO L262 TraceCheckSpWp]: Trace formula consists of 99 conjuncts, 17 conjuncts are in the unsatisfiable core [2024-09-25 10:29:16,667 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 10:29:16,691 INFO L134 CoverageAnalysis]: Checked inductivity of 20 backedges. 0 proven. 16 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-25 10:29:16,692 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 10:29:16,816 INFO L134 CoverageAnalysis]: Checked inductivity of 20 backedges. 0 proven. 16 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-25 10:29:16,816 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1402634625] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 10:29:16,817 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-25 10:29:16,817 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 10, 10] total 19 [2024-09-25 10:29:16,817 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1773445079] [2024-09-25 10:29:16,817 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-25 10:29:16,817 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 19 states [2024-09-25 10:29:16,817 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 10:29:16,818 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 19 interpolants. [2024-09-25 10:29:16,818 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=77, Invalid=265, Unknown=0, NotChecked=0, Total=342 [2024-09-25 10:29:16,818 INFO L87 Difference]: Start difference. First operand 186 states and 266 transitions. Second operand has 19 states, 19 states have (on average 1.7894736842105263) internal successors, (34), 19 states have internal predecessors, (34), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:18,602 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 10:29:18,603 INFO L93 Difference]: Finished difference Result 454 states and 704 transitions. [2024-09-25 10:29:18,603 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 63 states. [2024-09-25 10:29:18,603 INFO L78 Accepts]: Start accepts. Automaton has has 19 states, 19 states have (on average 1.7894736842105263) internal successors, (34), 19 states have internal predecessors, (34), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 26 [2024-09-25 10:29:18,603 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 10:29:18,605 INFO L225 Difference]: With dead ends: 454 [2024-09-25 10:29:18,605 INFO L226 Difference]: Without dead ends: 382 [2024-09-25 10:29:18,608 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 115 GetRequests, 47 SyntacticMatches, 0 SemanticMatches, 68 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1552 ImplicationChecksByTransitivity, 1.2s TimeCoverageRelationStatistics Valid=1233, Invalid=3597, Unknown=0, NotChecked=0, Total=4830 [2024-09-25 10:29:18,609 INFO L434 NwaCegarLoop]: 37 mSDtfsCounter, 427 mSDsluCounter, 266 mSDsCounter, 0 mSdLazyCounter, 518 mSolverCounterSat, 262 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.5s Time, 0 mProtectedPredicate, 0 mProtectedAction, 427 SdHoareTripleChecker+Valid, 303 SdHoareTripleChecker+Invalid, 780 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 262 IncrementalHoareTripleChecker+Valid, 518 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.5s IncrementalHoareTripleChecker+Time [2024-09-25 10:29:18,609 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [427 Valid, 303 Invalid, 780 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [262 Valid, 518 Invalid, 0 Unknown, 0 Unchecked, 0.5s Time] [2024-09-25 10:29:18,610 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 382 states. [2024-09-25 10:29:18,693 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 382 to 236. [2024-09-25 10:29:18,694 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 236 states, 231 states have (on average 1.4761904761904763) internal successors, (341), 231 states have internal predecessors, (341), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:18,695 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 236 states to 236 states and 345 transitions. [2024-09-25 10:29:18,696 INFO L78 Accepts]: Start accepts. Automaton has 236 states and 345 transitions. Word has length 26 [2024-09-25 10:29:18,696 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 10:29:18,696 INFO L474 AbstractCegarLoop]: Abstraction has 236 states and 345 transitions. [2024-09-25 10:29:18,696 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 19 states, 19 states have (on average 1.7894736842105263) internal successors, (34), 19 states have internal predecessors, (34), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:18,696 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:18,696 INFO L276 IsEmpty]: Start isEmpty. Operand 236 states and 345 transitions. [2024-09-25 10:29:18,697 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 28 [2024-09-25 10:29:18,697 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 10:29:18,697 INFO L216 NwaCegarLoop]: trace histogram [11, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 10:29:18,712 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (12)] Ended with exit code 0 [2024-09-25 10:29:18,901 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable12,12 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:29:18,901 INFO L399 AbstractCegarLoop]: === Iteration 14 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 10:29:18,902 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:18,902 INFO L85 PathProgramCache]: Analyzing trace with hash -1716429653, now seen corresponding path program 3 times [2024-09-25 10:29:18,902 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 10:29:18,902 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [710294382] [2024-09-25 10:29:18,902 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 10:29:18,902 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 10:29:18,911 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:19,091 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 10:29:19,092 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:19,093 INFO L134 CoverageAnalysis]: Checked inductivity of 66 backedges. 0 proven. 66 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 10:29:19,093 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 10:29:19,093 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [710294382] [2024-09-25 10:29:19,094 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [710294382] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 10:29:19,094 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [618070796] [2024-09-25 10:29:19,094 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-09-25 10:29:19,094 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:29:19,094 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 10:29:19,096 INFO L229 MonitoredProcess]: Starting monitored process 13 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 10:29:19,097 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (13)] Waiting until timeout for monitored process [2024-09-25 10:29:19,143 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 7 check-sat command(s) [2024-09-25 10:29:19,144 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-25 10:29:19,145 INFO L262 TraceCheckSpWp]: Trace formula consists of 104 conjuncts, 27 conjuncts are in the unsatisfiable core [2024-09-25 10:29:19,146 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 10:29:19,183 INFO L134 CoverageAnalysis]: Checked inductivity of 66 backedges. 0 proven. 66 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 10:29:19,183 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 10:29:19,452 INFO L134 CoverageAnalysis]: Checked inductivity of 66 backedges. 0 proven. 66 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 10:29:19,453 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [618070796] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 10:29:19,453 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-25 10:29:19,453 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [15, 15, 15] total 29 [2024-09-25 10:29:19,453 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [854587819] [2024-09-25 10:29:19,453 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-25 10:29:19,453 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 29 states [2024-09-25 10:29:19,453 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 10:29:19,454 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 29 interpolants. [2024-09-25 10:29:19,454 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=201, Invalid=611, Unknown=0, NotChecked=0, Total=812 [2024-09-25 10:29:19,454 INFO L87 Difference]: Start difference. First operand 236 states and 345 transitions. Second operand has 29 states, 29 states have (on average 1.3793103448275863) internal successors, (40), 29 states have internal predecessors, (40), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:23,272 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 10:29:23,272 INFO L93 Difference]: Finished difference Result 821 states and 1318 transitions. [2024-09-25 10:29:23,272 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 60 states. [2024-09-25 10:29:23,273 INFO L78 Accepts]: Start accepts. Automaton has has 29 states, 29 states have (on average 1.3793103448275863) internal successors, (40), 29 states have internal predecessors, (40), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 27 [2024-09-25 10:29:23,273 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 10:29:23,277 INFO L225 Difference]: With dead ends: 821 [2024-09-25 10:29:23,277 INFO L226 Difference]: Without dead ends: 764 [2024-09-25 10:29:23,278 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 115 GetRequests, 44 SyntacticMatches, 0 SemanticMatches, 71 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1329 ImplicationChecksByTransitivity, 2.5s TimeCoverageRelationStatistics Valid=1624, Invalid=3632, Unknown=0, NotChecked=0, Total=5256 [2024-09-25 10:29:23,279 INFO L434 NwaCegarLoop]: 64 mSDtfsCounter, 1322 mSDsluCounter, 801 mSDsCounter, 0 mSdLazyCounter, 1091 mSolverCounterSat, 684 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1322 SdHoareTripleChecker+Valid, 865 SdHoareTripleChecker+Invalid, 1775 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 684 IncrementalHoareTripleChecker+Valid, 1091 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.4s IncrementalHoareTripleChecker+Time [2024-09-25 10:29:23,279 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [1322 Valid, 865 Invalid, 1775 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [684 Valid, 1091 Invalid, 0 Unknown, 0 Unchecked, 1.4s Time] [2024-09-25 10:29:23,280 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 764 states. [2024-09-25 10:29:23,450 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 764 to 380. [2024-09-25 10:29:23,451 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 380 states, 375 states have (on average 1.5066666666666666) internal successors, (565), 375 states have internal predecessors, (565), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:23,453 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 380 states to 380 states and 569 transitions. [2024-09-25 10:29:23,454 INFO L78 Accepts]: Start accepts. Automaton has 380 states and 569 transitions. Word has length 27 [2024-09-25 10:29:23,454 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 10:29:23,454 INFO L474 AbstractCegarLoop]: Abstraction has 380 states and 569 transitions. [2024-09-25 10:29:23,454 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 29 states, 29 states have (on average 1.3793103448275863) internal successors, (40), 29 states have internal predecessors, (40), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:23,455 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:23,455 INFO L276 IsEmpty]: Start isEmpty. Operand 380 states and 569 transitions. [2024-09-25 10:29:23,455 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 29 [2024-09-25 10:29:23,455 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 10:29:23,455 INFO L216 NwaCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 10:29:23,471 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (13)] Forceful destruction successful, exit code 0 [2024-09-25 10:29:23,656 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 13 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable13 [2024-09-25 10:29:23,656 INFO L399 AbstractCegarLoop]: === Iteration 15 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 10:29:23,656 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:23,656 INFO L85 PathProgramCache]: Analyzing trace with hash 216651583, now seen corresponding path program 5 times [2024-09-25 10:29:23,657 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 10:29:23,657 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1090217] [2024-09-25 10:29:23,657 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 10:29:23,657 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 10:29:23,682 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:24,067 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 10:29:24,068 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:24,069 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 0 proven. 15 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-09-25 10:29:24,070 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 10:29:24,070 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1090217] [2024-09-25 10:29:24,070 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1090217] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 10:29:24,070 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1180834773] [2024-09-25 10:29:24,070 INFO L93 rtionOrderModulation]: Changing assertion order to INSIDE_LOOP_FIRST1 [2024-09-25 10:29:24,070 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:29:24,070 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 10:29:24,072 INFO L229 MonitoredProcess]: Starting monitored process 14 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 10:29:24,073 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (14)] Waiting until timeout for monitored process [2024-09-25 10:29:24,136 INFO L228 tOrderPrioritization]: Assert order INSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-25 10:29:24,137 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-25 10:29:24,138 INFO L262 TraceCheckSpWp]: Trace formula consists of 109 conjuncts, 50 conjuncts are in the unsatisfiable core [2024-09-25 10:29:24,139 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 10:29:24,681 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 0 proven. 18 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 10:29:24,681 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 10:29:25,117 INFO L134 CoverageAnalysis]: Checked inductivity of 18 backedges. 0 proven. 15 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2024-09-25 10:29:25,117 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1180834773] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 10:29:25,117 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-25 10:29:25,117 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [12, 17, 14] total 31 [2024-09-25 10:29:25,117 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [468674158] [2024-09-25 10:29:25,117 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-25 10:29:25,118 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 31 states [2024-09-25 10:29:25,118 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 10:29:25,118 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 31 interpolants. [2024-09-25 10:29:25,119 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=138, Invalid=792, Unknown=0, NotChecked=0, Total=930 [2024-09-25 10:29:25,119 INFO L87 Difference]: Start difference. First operand 380 states and 569 transitions. Second operand has 31 states, 31 states have (on average 1.8064516129032258) internal successors, (56), 29 states have internal predecessors, (56), 3 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:29,220 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-25 10:29:31,118 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 10:29:31,118 INFO L93 Difference]: Finished difference Result 528 states and 742 transitions. [2024-09-25 10:29:31,118 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 33 states. [2024-09-25 10:29:31,118 INFO L78 Accepts]: Start accepts. Automaton has has 31 states, 31 states have (on average 1.8064516129032258) internal successors, (56), 29 states have internal predecessors, (56), 3 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 28 [2024-09-25 10:29:31,119 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 10:29:31,121 INFO L225 Difference]: With dead ends: 528 [2024-09-25 10:29:31,121 INFO L226 Difference]: Without dead ends: 434 [2024-09-25 10:29:31,121 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 89 GetRequests, 41 SyntacticMatches, 4 SemanticMatches, 44 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 508 ImplicationChecksByTransitivity, 1.6s TimeCoverageRelationStatistics Valid=292, Invalid=1778, Unknown=0, NotChecked=0, Total=2070 [2024-09-25 10:29:31,122 INFO L434 NwaCegarLoop]: 13 mSDtfsCounter, 35 mSDsluCounter, 202 mSDsCounter, 0 mSdLazyCounter, 631 mSolverCounterSat, 30 mSolverCounterUnsat, 1 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 4.8s Time, 0 mProtectedPredicate, 0 mProtectedAction, 35 SdHoareTripleChecker+Valid, 215 SdHoareTripleChecker+Invalid, 662 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 30 IncrementalHoareTripleChecker+Valid, 631 IncrementalHoareTripleChecker+Invalid, 1 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 4.8s IncrementalHoareTripleChecker+Time [2024-09-25 10:29:31,122 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [35 Valid, 215 Invalid, 662 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [30 Valid, 631 Invalid, 1 Unknown, 0 Unchecked, 4.8s Time] [2024-09-25 10:29:31,123 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 434 states. [2024-09-25 10:29:31,288 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 434 to 358. [2024-09-25 10:29:31,289 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 358 states, 353 states have (on average 1.4844192634560907) internal successors, (524), 353 states have internal predecessors, (524), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:31,290 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 358 states to 358 states and 528 transitions. [2024-09-25 10:29:31,291 INFO L78 Accepts]: Start accepts. Automaton has 358 states and 528 transitions. Word has length 28 [2024-09-25 10:29:31,291 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 10:29:31,291 INFO L474 AbstractCegarLoop]: Abstraction has 358 states and 528 transitions. [2024-09-25 10:29:31,291 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 31 states, 31 states have (on average 1.8064516129032258) internal successors, (56), 29 states have internal predecessors, (56), 3 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:31,291 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:31,291 INFO L276 IsEmpty]: Start isEmpty. Operand 358 states and 528 transitions. [2024-09-25 10:29:31,292 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 29 [2024-09-25 10:29:31,292 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 10:29:31,292 INFO L216 NwaCegarLoop]: trace histogram [4, 4, 4, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 10:29:31,306 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (14)] Ended with exit code 0 [2024-09-25 10:29:31,496 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 14 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable14 [2024-09-25 10:29:31,497 INFO L399 AbstractCegarLoop]: === Iteration 16 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 10:29:31,497 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:31,497 INFO L85 PathProgramCache]: Analyzing trace with hash 302553951, now seen corresponding path program 4 times [2024-09-25 10:29:31,497 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 10:29:31,497 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [206109931] [2024-09-25 10:29:31,497 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 10:29:31,497 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 10:29:31,506 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:31,668 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 10:29:31,669 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:31,670 INFO L134 CoverageAnalysis]: Checked inductivity of 30 backedges. 0 proven. 30 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 10:29:31,670 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 10:29:31,671 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [206109931] [2024-09-25 10:29:31,671 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [206109931] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 10:29:31,671 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1944717857] [2024-09-25 10:29:31,671 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2024-09-25 10:29:31,671 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:29:31,671 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 10:29:31,673 INFO L229 MonitoredProcess]: Starting monitored process 15 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 10:29:31,675 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (15)] Waiting until timeout for monitored process [2024-09-25 10:29:31,718 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2024-09-25 10:29:31,718 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-25 10:29:31,719 INFO L262 TraceCheckSpWp]: Trace formula consists of 109 conjuncts, 20 conjuncts are in the unsatisfiable core [2024-09-25 10:29:31,720 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 10:29:31,837 INFO L134 CoverageAnalysis]: Checked inductivity of 30 backedges. 4 proven. 16 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2024-09-25 10:29:31,838 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 10:29:31,960 INFO L134 CoverageAnalysis]: Checked inductivity of 30 backedges. 4 proven. 16 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2024-09-25 10:29:31,960 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1944717857] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 10:29:31,960 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-25 10:29:31,960 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [13, 7, 7] total 18 [2024-09-25 10:29:31,961 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [919381405] [2024-09-25 10:29:31,961 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-25 10:29:31,961 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 18 states [2024-09-25 10:29:31,961 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 10:29:31,961 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 18 interpolants. [2024-09-25 10:29:31,962 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=34, Invalid=272, Unknown=0, NotChecked=0, Total=306 [2024-09-25 10:29:31,962 INFO L87 Difference]: Start difference. First operand 358 states and 528 transitions. Second operand has 18 states, 18 states have (on average 2.2222222222222223) internal successors, (40), 18 states have internal predecessors, (40), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:34,951 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 10:29:34,951 INFO L93 Difference]: Finished difference Result 865 states and 1290 transitions. [2024-09-25 10:29:34,951 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 92 states. [2024-09-25 10:29:34,952 INFO L78 Accepts]: Start accepts. Automaton has has 18 states, 18 states have (on average 2.2222222222222223) internal successors, (40), 18 states have internal predecessors, (40), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 28 [2024-09-25 10:29:34,952 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 10:29:34,956 INFO L225 Difference]: With dead ends: 865 [2024-09-25 10:29:34,956 INFO L226 Difference]: Without dead ends: 793 [2024-09-25 10:29:34,959 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 161 GetRequests, 50 SyntacticMatches, 8 SemanticMatches, 103 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3724 ImplicationChecksByTransitivity, 1.7s TimeCoverageRelationStatistics Valid=926, Invalid=9994, Unknown=0, NotChecked=0, Total=10920 [2024-09-25 10:29:34,959 INFO L434 NwaCegarLoop]: 30 mSDtfsCounter, 271 mSDsluCounter, 297 mSDsCounter, 0 mSdLazyCounter, 1241 mSolverCounterSat, 267 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.6s Time, 0 mProtectedPredicate, 0 mProtectedAction, 271 SdHoareTripleChecker+Valid, 327 SdHoareTripleChecker+Invalid, 1508 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 267 IncrementalHoareTripleChecker+Valid, 1241 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.7s IncrementalHoareTripleChecker+Time [2024-09-25 10:29:34,960 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [271 Valid, 327 Invalid, 1508 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [267 Valid, 1241 Invalid, 0 Unknown, 0 Unchecked, 0.7s Time] [2024-09-25 10:29:34,961 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 793 states. [2024-09-25 10:29:35,156 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 793 to 410. [2024-09-25 10:29:35,156 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 410 states, 405 states have (on average 1.4987654320987653) internal successors, (607), 405 states have internal predecessors, (607), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:35,158 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 410 states to 410 states and 611 transitions. [2024-09-25 10:29:35,159 INFO L78 Accepts]: Start accepts. Automaton has 410 states and 611 transitions. Word has length 28 [2024-09-25 10:29:35,159 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 10:29:35,159 INFO L474 AbstractCegarLoop]: Abstraction has 410 states and 611 transitions. [2024-09-25 10:29:35,159 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 18 states, 18 states have (on average 2.2222222222222223) internal successors, (40), 18 states have internal predecessors, (40), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:35,160 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:35,160 INFO L276 IsEmpty]: Start isEmpty. Operand 410 states and 611 transitions. [2024-09-25 10:29:35,160 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 31 [2024-09-25 10:29:35,160 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 10:29:35,161 INFO L216 NwaCegarLoop]: trace histogram [3, 3, 3, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 10:29:35,181 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (15)] Ended with exit code 0 [2024-09-25 10:29:35,361 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 15 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable15 [2024-09-25 10:29:35,361 INFO L399 AbstractCegarLoop]: === Iteration 17 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 10:29:35,362 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:35,362 INFO L85 PathProgramCache]: Analyzing trace with hash 997958656, now seen corresponding path program 6 times [2024-09-25 10:29:35,362 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 10:29:35,362 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [125544760] [2024-09-25 10:29:35,362 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 10:29:35,362 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 10:29:35,380 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:35,528 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 10:29:35,529 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:35,531 INFO L134 CoverageAnalysis]: Checked inductivity of 26 backedges. 6 proven. 7 refuted. 0 times theorem prover too weak. 13 trivial. 0 not checked. [2024-09-25 10:29:35,531 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 10:29:35,531 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [125544760] [2024-09-25 10:29:35,531 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [125544760] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 10:29:35,531 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [351831185] [2024-09-25 10:29:35,532 INFO L93 rtionOrderModulation]: Changing assertion order to MIX_INSIDE_OUTSIDE [2024-09-25 10:29:35,532 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:29:35,532 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 10:29:35,534 INFO L229 MonitoredProcess]: Starting monitored process 16 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 10:29:35,537 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (16)] Waiting until timeout for monitored process [2024-09-25 10:29:35,586 INFO L228 tOrderPrioritization]: Assert order MIX_INSIDE_OUTSIDE issued 3 check-sat command(s) [2024-09-25 10:29:35,586 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-25 10:29:35,587 INFO L262 TraceCheckSpWp]: Trace formula consists of 119 conjuncts, 14 conjuncts are in the unsatisfiable core [2024-09-25 10:29:35,588 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 10:29:35,656 INFO L134 CoverageAnalysis]: Checked inductivity of 26 backedges. 4 proven. 8 refuted. 0 times theorem prover too weak. 14 trivial. 0 not checked. [2024-09-25 10:29:35,656 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 10:29:35,738 INFO L134 CoverageAnalysis]: Checked inductivity of 26 backedges. 4 proven. 8 refuted. 0 times theorem prover too weak. 14 trivial. 0 not checked. [2024-09-25 10:29:35,739 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [351831185] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 10:29:35,739 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-25 10:29:35,739 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [9, 6, 6] total 12 [2024-09-25 10:29:35,739 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [851476424] [2024-09-25 10:29:35,739 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-25 10:29:35,740 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 12 states [2024-09-25 10:29:35,740 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 10:29:35,740 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 12 interpolants. [2024-09-25 10:29:35,741 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=39, Invalid=93, Unknown=0, NotChecked=0, Total=132 [2024-09-25 10:29:35,741 INFO L87 Difference]: Start difference. First operand 410 states and 611 transitions. Second operand has 12 states, 12 states have (on average 2.8333333333333335) internal successors, (34), 12 states have internal predecessors, (34), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:36,429 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 10:29:36,429 INFO L93 Difference]: Finished difference Result 672 states and 978 transitions. [2024-09-25 10:29:36,430 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2024-09-25 10:29:36,430 INFO L78 Accepts]: Start accepts. Automaton has has 12 states, 12 states have (on average 2.8333333333333335) internal successors, (34), 12 states have internal predecessors, (34), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 30 [2024-09-25 10:29:36,430 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 10:29:36,433 INFO L225 Difference]: With dead ends: 672 [2024-09-25 10:29:36,433 INFO L226 Difference]: Without dead ends: 642 [2024-09-25 10:29:36,433 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 72 GetRequests, 53 SyntacticMatches, 7 SemanticMatches, 12 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 68 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=52, Invalid=130, Unknown=0, NotChecked=0, Total=182 [2024-09-25 10:29:36,434 INFO L434 NwaCegarLoop]: 37 mSDtfsCounter, 61 mSDsluCounter, 128 mSDsCounter, 0 mSdLazyCounter, 84 mSolverCounterSat, 29 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 61 SdHoareTripleChecker+Valid, 165 SdHoareTripleChecker+Invalid, 113 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 29 IncrementalHoareTripleChecker+Valid, 84 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2024-09-25 10:29:36,434 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [61 Valid, 165 Invalid, 113 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [29 Valid, 84 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2024-09-25 10:29:36,435 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 642 states. [2024-09-25 10:29:36,692 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 642 to 413. [2024-09-25 10:29:36,693 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 413 states, 408 states have (on average 1.4877450980392157) internal successors, (607), 408 states have internal predecessors, (607), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:36,694 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 413 states to 413 states and 611 transitions. [2024-09-25 10:29:36,696 INFO L78 Accepts]: Start accepts. Automaton has 413 states and 611 transitions. Word has length 30 [2024-09-25 10:29:36,696 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 10:29:36,696 INFO L474 AbstractCegarLoop]: Abstraction has 413 states and 611 transitions. [2024-09-25 10:29:36,696 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 12 states, 12 states have (on average 2.8333333333333335) internal successors, (34), 12 states have internal predecessors, (34), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:36,696 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:36,696 INFO L276 IsEmpty]: Start isEmpty. Operand 413 states and 611 transitions. [2024-09-25 10:29:36,697 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 32 [2024-09-25 10:29:36,698 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 10:29:36,698 INFO L216 NwaCegarLoop]: trace histogram [5, 5, 5, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 10:29:36,710 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (16)] Forceful destruction successful, exit code 0 [2024-09-25 10:29:36,898 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 16 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable16 [2024-09-25 10:29:36,898 INFO L399 AbstractCegarLoop]: === Iteration 18 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 10:29:36,899 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:36,899 INFO L85 PathProgramCache]: Analyzing trace with hash -1736256998, now seen corresponding path program 5 times [2024-09-25 10:29:36,899 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 10:29:36,899 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1046413218] [2024-09-25 10:29:36,900 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 10:29:36,900 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 10:29:36,908 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:37,100 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 10:29:37,100 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:37,102 INFO L134 CoverageAnalysis]: Checked inductivity of 45 backedges. 0 proven. 45 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 10:29:37,102 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 10:29:37,102 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1046413218] [2024-09-25 10:29:37,102 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1046413218] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 10:29:37,102 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1349752959] [2024-09-25 10:29:37,102 INFO L93 rtionOrderModulation]: Changing assertion order to INSIDE_LOOP_FIRST1 [2024-09-25 10:29:37,102 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:29:37,102 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 10:29:37,104 INFO L229 MonitoredProcess]: Starting monitored process 17 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 10:29:37,106 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (17)] Waiting until timeout for monitored process [2024-09-25 10:29:37,172 INFO L228 tOrderPrioritization]: Assert order INSIDE_LOOP_FIRST1 issued 4 check-sat command(s) [2024-09-25 10:29:37,172 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-25 10:29:37,173 INFO L262 TraceCheckSpWp]: Trace formula consists of 124 conjuncts, 36 conjuncts are in the unsatisfiable core [2024-09-25 10:29:37,184 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 10:29:37,319 INFO L134 CoverageAnalysis]: Checked inductivity of 45 backedges. 0 proven. 45 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 10:29:37,319 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 10:29:37,567 INFO L134 CoverageAnalysis]: Checked inductivity of 45 backedges. 0 proven. 30 refuted. 0 times theorem prover too weak. 15 trivial. 0 not checked. [2024-09-25 10:29:37,567 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1349752959] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 10:29:37,567 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-25 10:29:37,567 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [15, 19, 13] total 32 [2024-09-25 10:29:37,567 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [732765535] [2024-09-25 10:29:37,567 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-25 10:29:37,568 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 32 states [2024-09-25 10:29:37,568 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 10:29:37,568 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 32 interpolants. [2024-09-25 10:29:37,569 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=216, Invalid=776, Unknown=0, NotChecked=0, Total=992 [2024-09-25 10:29:37,569 INFO L87 Difference]: Start difference. First operand 413 states and 611 transitions. Second operand has 32 states, 32 states have (on average 1.78125) internal successors, (57), 32 states have internal predecessors, (57), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:40,384 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 10:29:40,384 INFO L93 Difference]: Finished difference Result 1049 states and 1576 transitions. [2024-09-25 10:29:40,384 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 77 states. [2024-09-25 10:29:40,385 INFO L78 Accepts]: Start accepts. Automaton has has 32 states, 32 states have (on average 1.78125) internal successors, (57), 32 states have internal predecessors, (57), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 31 [2024-09-25 10:29:40,385 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 10:29:40,389 INFO L225 Difference]: With dead ends: 1049 [2024-09-25 10:29:40,389 INFO L226 Difference]: Without dead ends: 975 [2024-09-25 10:29:40,391 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 136 GetRequests, 53 SyntacticMatches, 0 SemanticMatches, 83 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2098 ImplicationChecksByTransitivity, 1.4s TimeCoverageRelationStatistics Valid=1727, Invalid=5413, Unknown=0, NotChecked=0, Total=7140 [2024-09-25 10:29:40,391 INFO L434 NwaCegarLoop]: 32 mSDtfsCounter, 305 mSDsluCounter, 482 mSDsCounter, 0 mSdLazyCounter, 1683 mSolverCounterSat, 327 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.7s Time, 0 mProtectedPredicate, 0 mProtectedAction, 305 SdHoareTripleChecker+Valid, 514 SdHoareTripleChecker+Invalid, 2010 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 327 IncrementalHoareTripleChecker+Valid, 1683 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.9s IncrementalHoareTripleChecker+Time [2024-09-25 10:29:40,391 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [305 Valid, 514 Invalid, 2010 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [327 Valid, 1683 Invalid, 0 Unknown, 0 Unchecked, 0.9s Time] [2024-09-25 10:29:40,392 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 975 states. [2024-09-25 10:29:40,719 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 975 to 484. [2024-09-25 10:29:40,719 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 484 states, 479 states have (on average 1.4968684759916493) internal successors, (717), 479 states have internal predecessors, (717), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:40,721 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 484 states to 484 states and 721 transitions. [2024-09-25 10:29:40,722 INFO L78 Accepts]: Start accepts. Automaton has 484 states and 721 transitions. Word has length 31 [2024-09-25 10:29:40,722 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 10:29:40,722 INFO L474 AbstractCegarLoop]: Abstraction has 484 states and 721 transitions. [2024-09-25 10:29:40,722 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 32 states, 32 states have (on average 1.78125) internal successors, (57), 32 states have internal predecessors, (57), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:40,723 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:40,723 INFO L276 IsEmpty]: Start isEmpty. Operand 484 states and 721 transitions. [2024-09-25 10:29:40,724 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2024-09-25 10:29:40,724 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 10:29:40,724 INFO L216 NwaCegarLoop]: trace histogram [6, 6, 5, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 10:29:40,738 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (17)] Forceful destruction successful, exit code 0 [2024-09-25 10:29:40,924 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable17,17 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:29:40,925 INFO L399 AbstractCegarLoop]: === Iteration 19 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 10:29:40,925 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:40,925 INFO L85 PathProgramCache]: Analyzing trace with hash -1362411958, now seen corresponding path program 6 times [2024-09-25 10:29:40,925 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 10:29:40,925 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1948235142] [2024-09-25 10:29:40,925 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 10:29:40,926 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 10:29:40,944 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:41,199 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 10:29:41,200 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:41,201 INFO L134 CoverageAnalysis]: Checked inductivity of 57 backedges. 0 proven. 36 refuted. 0 times theorem prover too weak. 21 trivial. 0 not checked. [2024-09-25 10:29:41,201 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 10:29:41,201 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1948235142] [2024-09-25 10:29:41,201 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1948235142] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 10:29:41,202 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [290851906] [2024-09-25 10:29:41,202 INFO L93 rtionOrderModulation]: Changing assertion order to MIX_INSIDE_OUTSIDE [2024-09-25 10:29:41,202 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:29:41,202 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 10:29:41,204 INFO L229 MonitoredProcess]: Starting monitored process 18 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 10:29:41,205 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (18)] Waiting until timeout for monitored process [2024-09-25 10:29:41,253 INFO L228 tOrderPrioritization]: Assert order MIX_INSIDE_OUTSIDE issued 4 check-sat command(s) [2024-09-25 10:29:41,253 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-25 10:29:41,254 INFO L262 TraceCheckSpWp]: Trace formula consists of 134 conjuncts, 22 conjuncts are in the unsatisfiable core [2024-09-25 10:29:41,257 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 10:29:41,416 INFO L134 CoverageAnalysis]: Checked inductivity of 57 backedges. 10 proven. 25 refuted. 0 times theorem prover too weak. 22 trivial. 0 not checked. [2024-09-25 10:29:41,417 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 10:29:41,592 INFO L134 CoverageAnalysis]: Checked inductivity of 57 backedges. 10 proven. 25 refuted. 0 times theorem prover too weak. 22 trivial. 0 not checked. [2024-09-25 10:29:41,592 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [290851906] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 10:29:41,592 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-25 10:29:41,592 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [15, 8, 8] total 21 [2024-09-25 10:29:41,592 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1826124480] [2024-09-25 10:29:41,592 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-25 10:29:41,593 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 21 states [2024-09-25 10:29:41,593 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 10:29:41,593 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 21 interpolants. [2024-09-25 10:29:41,594 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=44, Invalid=376, Unknown=0, NotChecked=0, Total=420 [2024-09-25 10:29:41,594 INFO L87 Difference]: Start difference. First operand 484 states and 721 transitions. Second operand has 21 states, 21 states have (on average 2.0) internal successors, (42), 21 states have internal predecessors, (42), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:44,917 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 10:29:44,917 INFO L93 Difference]: Finished difference Result 1054 states and 1529 transitions. [2024-09-25 10:29:44,918 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 88 states. [2024-09-25 10:29:44,918 INFO L78 Accepts]: Start accepts. Automaton has has 21 states, 21 states have (on average 2.0) internal successors, (42), 21 states have internal predecessors, (42), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 33 [2024-09-25 10:29:44,918 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 10:29:44,922 INFO L225 Difference]: With dead ends: 1054 [2024-09-25 10:29:44,922 INFO L226 Difference]: Without dead ends: 962 [2024-09-25 10:29:44,925 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 167 GetRequests, 61 SyntacticMatches, 10 SemanticMatches, 96 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2933 ImplicationChecksByTransitivity, 2.0s TimeCoverageRelationStatistics Valid=989, Invalid=8517, Unknown=0, NotChecked=0, Total=9506 [2024-09-25 10:29:44,925 INFO L434 NwaCegarLoop]: 45 mSDtfsCounter, 384 mSDsluCounter, 384 mSDsCounter, 0 mSdLazyCounter, 1105 mSolverCounterSat, 269 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.7s Time, 0 mProtectedPredicate, 0 mProtectedAction, 384 SdHoareTripleChecker+Valid, 429 SdHoareTripleChecker+Invalid, 1374 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 269 IncrementalHoareTripleChecker+Valid, 1105 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.8s IncrementalHoareTripleChecker+Time [2024-09-25 10:29:44,925 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [384 Valid, 429 Invalid, 1374 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [269 Valid, 1105 Invalid, 0 Unknown, 0 Unchecked, 0.8s Time] [2024-09-25 10:29:44,927 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 962 states. [2024-09-25 10:29:45,240 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 962 to 510. [2024-09-25 10:29:45,241 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 510 states, 505 states have (on average 1.491089108910891) internal successors, (753), 505 states have internal predecessors, (753), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:45,242 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 510 states to 510 states and 757 transitions. [2024-09-25 10:29:45,243 INFO L78 Accepts]: Start accepts. Automaton has 510 states and 757 transitions. Word has length 33 [2024-09-25 10:29:45,243 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 10:29:45,244 INFO L474 AbstractCegarLoop]: Abstraction has 510 states and 757 transitions. [2024-09-25 10:29:45,244 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 21 states, 21 states have (on average 2.0) internal successors, (42), 21 states have internal predecessors, (42), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:45,244 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:45,244 INFO L276 IsEmpty]: Start isEmpty. Operand 510 states and 757 transitions. [2024-09-25 10:29:45,245 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 34 [2024-09-25 10:29:45,245 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 10:29:45,245 INFO L216 NwaCegarLoop]: trace histogram [12, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 10:29:45,261 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (18)] Ended with exit code 0 [2024-09-25 10:29:45,445 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable18,18 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:29:45,446 INFO L399 AbstractCegarLoop]: === Iteration 20 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 10:29:45,446 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:45,446 INFO L85 PathProgramCache]: Analyzing trace with hash 1741060780, now seen corresponding path program 7 times [2024-09-25 10:29:45,446 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 10:29:45,446 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [393730403] [2024-09-25 10:29:45,447 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 10:29:45,447 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 10:29:45,457 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:45,676 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 10:29:45,677 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:45,678 INFO L134 CoverageAnalysis]: Checked inductivity of 83 backedges. 0 proven. 79 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-25 10:29:45,679 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 10:29:45,679 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [393730403] [2024-09-25 10:29:45,679 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [393730403] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 10:29:45,680 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1562777809] [2024-09-25 10:29:45,680 INFO L93 rtionOrderModulation]: Changing assertion order to NOT_INCREMENTALLY [2024-09-25 10:29:45,680 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:29:45,680 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 10:29:45,682 INFO L229 MonitoredProcess]: Starting monitored process 19 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 10:29:45,684 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (19)] Waiting until timeout for monitored process [2024-09-25 10:29:45,734 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:45,739 INFO L262 TraceCheckSpWp]: Trace formula consists of 134 conjuncts, 31 conjuncts are in the unsatisfiable core [2024-09-25 10:29:45,740 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 10:29:45,775 INFO L134 CoverageAnalysis]: Checked inductivity of 83 backedges. 0 proven. 79 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-25 10:29:45,775 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 10:29:46,210 INFO L134 CoverageAnalysis]: Checked inductivity of 83 backedges. 0 proven. 79 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2024-09-25 10:29:46,210 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1562777809] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 10:29:46,210 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-25 10:29:46,210 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [17, 17, 17] total 33 [2024-09-25 10:29:46,210 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [519225188] [2024-09-25 10:29:46,211 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-25 10:29:46,211 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 33 states [2024-09-25 10:29:46,211 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 10:29:46,212 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 33 interpolants. [2024-09-25 10:29:46,212 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=238, Invalid=818, Unknown=0, NotChecked=0, Total=1056 [2024-09-25 10:29:46,212 INFO L87 Difference]: Start difference. First operand 510 states and 757 transitions. Second operand has 33 states, 33 states have (on average 1.4545454545454546) internal successors, (48), 33 states have internal predecessors, (48), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:57,724 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 10:29:57,725 INFO L93 Difference]: Finished difference Result 1408 states and 2227 transitions. [2024-09-25 10:29:57,725 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 131 states. [2024-09-25 10:29:57,726 INFO L78 Accepts]: Start accepts. Automaton has has 33 states, 33 states have (on average 1.4545454545454546) internal successors, (48), 33 states have internal predecessors, (48), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 33 [2024-09-25 10:29:57,726 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 10:29:57,731 INFO L225 Difference]: With dead ends: 1408 [2024-09-25 10:29:57,731 INFO L226 Difference]: Without dead ends: 1236 [2024-09-25 10:29:57,734 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 197 GetRequests, 54 SyntacticMatches, 0 SemanticMatches, 143 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 7998 ImplicationChecksByTransitivity, 8.4s TimeCoverageRelationStatistics Valid=5551, Invalid=15329, Unknown=0, NotChecked=0, Total=20880 [2024-09-25 10:29:57,734 INFO L434 NwaCegarLoop]: 71 mSDtfsCounter, 1663 mSDsluCounter, 972 mSDsCounter, 0 mSdLazyCounter, 1505 mSolverCounterSat, 1110 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 2.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1663 SdHoareTripleChecker+Valid, 1043 SdHoareTripleChecker+Invalid, 2615 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1110 IncrementalHoareTripleChecker+Valid, 1505 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 2.5s IncrementalHoareTripleChecker+Time [2024-09-25 10:29:57,735 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [1663 Valid, 1043 Invalid, 2615 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1110 Valid, 1505 Invalid, 0 Unknown, 0 Unchecked, 2.5s Time] [2024-09-25 10:29:57,736 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1236 states. [2024-09-25 10:29:58,207 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1236 to 561. [2024-09-25 10:29:58,208 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 561 states, 556 states have (on average 1.485611510791367) internal successors, (826), 556 states have internal predecessors, (826), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:58,209 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 561 states to 561 states and 830 transitions. [2024-09-25 10:29:58,210 INFO L78 Accepts]: Start accepts. Automaton has 561 states and 830 transitions. Word has length 33 [2024-09-25 10:29:58,210 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 10:29:58,211 INFO L474 AbstractCegarLoop]: Abstraction has 561 states and 830 transitions. [2024-09-25 10:29:58,211 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 33 states, 33 states have (on average 1.4545454545454546) internal successors, (48), 33 states have internal predecessors, (48), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:29:58,211 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:58,211 INFO L276 IsEmpty]: Start isEmpty. Operand 561 states and 830 transitions. [2024-09-25 10:29:58,212 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 35 [2024-09-25 10:29:58,212 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 10:29:58,212 INFO L216 NwaCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 10:29:58,224 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (19)] Forceful destruction successful, exit code 0 [2024-09-25 10:29:58,412 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable19,19 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:29:58,413 INFO L399 AbstractCegarLoop]: === Iteration 21 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 10:29:58,413 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:29:58,413 INFO L85 PathProgramCache]: Analyzing trace with hash -906855808, now seen corresponding path program 8 times [2024-09-25 10:29:58,413 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 10:29:58,413 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [293524157] [2024-09-25 10:29:58,413 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 10:29:58,413 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 10:29:58,443 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:59,040 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 10:29:59,041 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:29:59,043 INFO L134 CoverageAnalysis]: Checked inductivity of 36 backedges. 0 proven. 30 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-25 10:29:59,043 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 10:29:59,043 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [293524157] [2024-09-25 10:29:59,043 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [293524157] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 10:29:59,043 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [542731468] [2024-09-25 10:29:59,043 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-25 10:29:59,043 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:29:59,043 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 10:29:59,045 INFO L229 MonitoredProcess]: Starting monitored process 20 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 10:29:59,047 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (20)] Waiting until timeout for monitored process [2024-09-25 10:29:59,140 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-25 10:29:59,140 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-25 10:29:59,141 INFO L262 TraceCheckSpWp]: Trace formula consists of 139 conjuncts, 67 conjuncts are in the unsatisfiable core [2024-09-25 10:29:59,143 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 10:29:59,903 INFO L134 CoverageAnalysis]: Checked inductivity of 36 backedges. 0 proven. 36 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 10:29:59,903 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 10:30:00,395 INFO L134 CoverageAnalysis]: Checked inductivity of 36 backedges. 0 proven. 30 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-25 10:30:00,395 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [542731468] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 10:30:00,395 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-25 10:30:00,395 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [15, 22, 14] total 39 [2024-09-25 10:30:00,395 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [517358818] [2024-09-25 10:30:00,395 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-25 10:30:00,396 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 39 states [2024-09-25 10:30:00,396 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 10:30:00,396 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 39 interpolants. [2024-09-25 10:30:00,397 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=187, Invalid=1295, Unknown=0, NotChecked=0, Total=1482 [2024-09-25 10:30:00,397 INFO L87 Difference]: Start difference. First operand 561 states and 830 transitions. Second operand has 39 states, 39 states have (on average 1.8974358974358974) internal successors, (74), 37 states have internal predecessors, (74), 4 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:30:03,815 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 10:30:03,816 INFO L93 Difference]: Finished difference Result 762 states and 1064 transitions. [2024-09-25 10:30:03,816 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 48 states. [2024-09-25 10:30:03,816 INFO L78 Accepts]: Start accepts. Automaton has has 39 states, 39 states have (on average 1.8974358974358974) internal successors, (74), 37 states have internal predecessors, (74), 4 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 34 [2024-09-25 10:30:03,816 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 10:30:03,819 INFO L225 Difference]: With dead ends: 762 [2024-09-25 10:30:03,819 INFO L226 Difference]: Without dead ends: 644 [2024-09-25 10:30:03,819 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 120 GetRequests, 52 SyntacticMatches, 2 SemanticMatches, 66 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1092 ImplicationChecksByTransitivity, 2.7s TimeCoverageRelationStatistics Valid=535, Invalid=4021, Unknown=0, NotChecked=0, Total=4556 [2024-09-25 10:30:03,820 INFO L434 NwaCegarLoop]: 15 mSDtfsCounter, 74 mSDsluCounter, 207 mSDsCounter, 0 mSdLazyCounter, 834 mSolverCounterSat, 42 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 74 SdHoareTripleChecker+Valid, 222 SdHoareTripleChecker+Invalid, 876 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 42 IncrementalHoareTripleChecker+Valid, 834 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.1s IncrementalHoareTripleChecker+Time [2024-09-25 10:30:03,820 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [74 Valid, 222 Invalid, 876 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [42 Valid, 834 Invalid, 0 Unknown, 0 Unchecked, 1.1s Time] [2024-09-25 10:30:03,821 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 644 states. [2024-09-25 10:30:04,224 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 644 to 532. [2024-09-25 10:30:04,225 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 532 states, 527 states have (on average 1.4743833017077799) internal successors, (777), 527 states have internal predecessors, (777), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:30:04,226 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 532 states to 532 states and 781 transitions. [2024-09-25 10:30:04,227 INFO L78 Accepts]: Start accepts. Automaton has 532 states and 781 transitions. Word has length 34 [2024-09-25 10:30:04,227 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 10:30:04,227 INFO L474 AbstractCegarLoop]: Abstraction has 532 states and 781 transitions. [2024-09-25 10:30:04,227 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 39 states, 39 states have (on average 1.8974358974358974) internal successors, (74), 37 states have internal predecessors, (74), 4 states have call successors, (5), 3 states have call predecessors, (5), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:30:04,227 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:30:04,228 INFO L276 IsEmpty]: Start isEmpty. Operand 532 states and 781 transitions. [2024-09-25 10:30:04,228 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 35 [2024-09-25 10:30:04,228 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 10:30:04,228 INFO L216 NwaCegarLoop]: trace histogram [6, 6, 6, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 10:30:04,242 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (20)] Forceful destruction successful, exit code 0 [2024-09-25 10:30:04,429 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 20 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable20 [2024-09-25 10:30:04,429 INFO L399 AbstractCegarLoop]: === Iteration 22 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 10:30:04,429 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:30:04,429 INFO L85 PathProgramCache]: Analyzing trace with hash -1249736321, now seen corresponding path program 7 times [2024-09-25 10:30:04,430 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 10:30:04,430 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2007183721] [2024-09-25 10:30:04,430 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 10:30:04,430 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 10:30:04,440 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:30:04,671 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 10:30:04,672 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:30:04,674 INFO L134 CoverageAnalysis]: Checked inductivity of 63 backedges. 0 proven. 63 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 10:30:04,674 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 10:30:04,674 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2007183721] [2024-09-25 10:30:04,674 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2007183721] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 10:30:04,674 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [460326080] [2024-09-25 10:30:04,674 INFO L93 rtionOrderModulation]: Changing assertion order to NOT_INCREMENTALLY [2024-09-25 10:30:04,675 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:30:04,675 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 10:30:04,677 INFO L229 MonitoredProcess]: Starting monitored process 21 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 10:30:04,680 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (21)] Waiting until timeout for monitored process [2024-09-25 10:30:04,725 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:30:04,725 INFO L262 TraceCheckSpWp]: Trace formula consists of 139 conjuncts, 14 conjuncts are in the unsatisfiable core [2024-09-25 10:30:04,726 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 10:30:04,849 INFO L134 CoverageAnalysis]: Checked inductivity of 63 backedges. 0 proven. 21 refuted. 0 times theorem prover too weak. 42 trivial. 0 not checked. [2024-09-25 10:30:04,850 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 10:30:05,027 INFO L134 CoverageAnalysis]: Checked inductivity of 63 backedges. 0 proven. 21 refuted. 0 times theorem prover too weak. 42 trivial. 0 not checked. [2024-09-25 10:30:05,028 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [460326080] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 10:30:05,028 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-25 10:30:05,028 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [17, 9, 9] total 31 [2024-09-25 10:30:05,028 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [557996766] [2024-09-25 10:30:05,028 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-25 10:30:05,028 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 31 states [2024-09-25 10:30:05,028 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 10:30:05,029 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 31 interpolants. [2024-09-25 10:30:05,029 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=164, Invalid=766, Unknown=0, NotChecked=0, Total=930 [2024-09-25 10:30:05,029 INFO L87 Difference]: Start difference. First operand 532 states and 781 transitions. Second operand has 31 states, 31 states have (on average 1.7741935483870968) internal successors, (55), 31 states have internal predecessors, (55), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:30:09,173 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 10:30:09,173 INFO L93 Difference]: Finished difference Result 1793 states and 2748 transitions. [2024-09-25 10:30:09,173 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 92 states. [2024-09-25 10:30:09,174 INFO L78 Accepts]: Start accepts. Automaton has has 31 states, 31 states have (on average 1.7741935483870968) internal successors, (55), 31 states have internal predecessors, (55), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 34 [2024-09-25 10:30:09,174 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 10:30:09,180 INFO L225 Difference]: With dead ends: 1793 [2024-09-25 10:30:09,180 INFO L226 Difference]: Without dead ends: 1702 [2024-09-25 10:30:09,181 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 181 GetRequests, 86 SyntacticMatches, 0 SemanticMatches, 95 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2284 ImplicationChecksByTransitivity, 1.5s TimeCoverageRelationStatistics Valid=1644, Invalid=7668, Unknown=0, NotChecked=0, Total=9312 [2024-09-25 10:30:09,182 INFO L434 NwaCegarLoop]: 51 mSDtfsCounter, 342 mSDsluCounter, 838 mSDsCounter, 0 mSdLazyCounter, 2729 mSolverCounterSat, 377 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 342 SdHoareTripleChecker+Valid, 889 SdHoareTripleChecker+Invalid, 3106 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 377 IncrementalHoareTripleChecker+Valid, 2729 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.2s IncrementalHoareTripleChecker+Time [2024-09-25 10:30:09,182 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [342 Valid, 889 Invalid, 3106 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [377 Valid, 2729 Invalid, 0 Unknown, 0 Unchecked, 1.2s Time] [2024-09-25 10:30:09,183 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1702 states. [2024-09-25 10:30:09,756 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1702 to 708. [2024-09-25 10:30:09,757 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 708 states, 703 states have (on average 1.496443812233286) internal successors, (1052), 703 states have internal predecessors, (1052), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:30:09,759 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 708 states to 708 states and 1056 transitions. [2024-09-25 10:30:09,761 INFO L78 Accepts]: Start accepts. Automaton has 708 states and 1056 transitions. Word has length 34 [2024-09-25 10:30:09,761 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 10:30:09,761 INFO L474 AbstractCegarLoop]: Abstraction has 708 states and 1056 transitions. [2024-09-25 10:30:09,761 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 31 states, 31 states have (on average 1.7741935483870968) internal successors, (55), 31 states have internal predecessors, (55), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:30:09,762 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:30:09,762 INFO L276 IsEmpty]: Start isEmpty. Operand 708 states and 1056 transitions. [2024-09-25 10:30:09,763 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 37 [2024-09-25 10:30:09,763 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 10:30:09,763 INFO L216 NwaCegarLoop]: trace histogram [4, 4, 4, 4, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 10:30:09,779 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (21)] Ended with exit code 0 [2024-09-25 10:30:09,963 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 21 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable21 [2024-09-25 10:30:09,964 INFO L399 AbstractCegarLoop]: === Iteration 23 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 10:30:09,964 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:30:09,964 INFO L85 PathProgramCache]: Analyzing trace with hash 572674207, now seen corresponding path program 9 times [2024-09-25 10:30:09,964 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 10:30:09,964 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1944628540] [2024-09-25 10:30:09,964 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 10:30:09,965 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 10:30:09,990 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:30:10,167 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 10:30:10,168 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:30:10,169 INFO L134 CoverageAnalysis]: Checked inductivity of 46 backedges. 0 proven. 13 refuted. 0 times theorem prover too weak. 33 trivial. 0 not checked. [2024-09-25 10:30:10,170 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 10:30:10,170 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1944628540] [2024-09-25 10:30:10,170 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1944628540] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 10:30:10,170 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [855405224] [2024-09-25 10:30:10,170 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-09-25 10:30:10,170 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:30:10,171 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 10:30:10,172 INFO L229 MonitoredProcess]: Starting monitored process 22 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 10:30:10,173 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (22)] Waiting until timeout for monitored process [2024-09-25 10:30:10,224 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 3 check-sat command(s) [2024-09-25 10:30:10,224 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-25 10:30:10,225 INFO L262 TraceCheckSpWp]: Trace formula consists of 149 conjuncts, 18 conjuncts are in the unsatisfiable core [2024-09-25 10:30:10,226 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 10:30:10,325 INFO L134 CoverageAnalysis]: Checked inductivity of 46 backedges. 6 proven. 14 refuted. 0 times theorem prover too weak. 26 trivial. 0 not checked. [2024-09-25 10:30:10,325 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 10:30:10,435 INFO L134 CoverageAnalysis]: Checked inductivity of 46 backedges. 6 proven. 14 refuted. 0 times theorem prover too weak. 26 trivial. 0 not checked. [2024-09-25 10:30:10,435 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [855405224] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 10:30:10,435 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-25 10:30:10,435 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [9, 7, 7] total 14 [2024-09-25 10:30:10,436 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [805915320] [2024-09-25 10:30:10,436 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-25 10:30:10,436 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 14 states [2024-09-25 10:30:10,436 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 10:30:10,437 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 14 interpolants. [2024-09-25 10:30:10,437 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=58, Invalid=124, Unknown=0, NotChecked=0, Total=182 [2024-09-25 10:30:10,437 INFO L87 Difference]: Start difference. First operand 708 states and 1056 transitions. Second operand has 14 states, 14 states have (on average 2.5714285714285716) internal successors, (36), 14 states have internal predecessors, (36), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:30:15,114 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-25 10:30:16,620 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 10:30:16,620 INFO L93 Difference]: Finished difference Result 1782 states and 2675 transitions. [2024-09-25 10:30:16,621 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 18 states. [2024-09-25 10:30:16,621 INFO L78 Accepts]: Start accepts. Automaton has has 14 states, 14 states have (on average 2.5714285714285716) internal successors, (36), 14 states have internal predecessors, (36), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 36 [2024-09-25 10:30:16,621 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 10:30:16,626 INFO L225 Difference]: With dead ends: 1782 [2024-09-25 10:30:16,626 INFO L226 Difference]: Without dead ends: 1518 [2024-09-25 10:30:16,627 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 93 GetRequests, 64 SyntacticMatches, 9 SemanticMatches, 20 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 78 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=148, Invalid=314, Unknown=0, NotChecked=0, Total=462 [2024-09-25 10:30:16,627 INFO L434 NwaCegarLoop]: 44 mSDtfsCounter, 188 mSDsluCounter, 194 mSDsCounter, 0 mSdLazyCounter, 108 mSolverCounterSat, 85 mSolverCounterUnsat, 1 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 4.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 188 SdHoareTripleChecker+Valid, 238 SdHoareTripleChecker+Invalid, 194 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 85 IncrementalHoareTripleChecker+Valid, 108 IncrementalHoareTripleChecker+Invalid, 1 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 4.3s IncrementalHoareTripleChecker+Time [2024-09-25 10:30:16,628 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [188 Valid, 238 Invalid, 194 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [85 Valid, 108 Invalid, 1 Unknown, 0 Unchecked, 4.3s Time] [2024-09-25 10:30:16,629 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1518 states. [2024-09-25 10:30:17,431 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1518 to 875. [2024-09-25 10:30:17,432 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 875 states, 870 states have (on average 1.5114942528735633) internal successors, (1315), 870 states have internal predecessors, (1315), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:30:17,434 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 875 states to 875 states and 1319 transitions. [2024-09-25 10:30:17,437 INFO L78 Accepts]: Start accepts. Automaton has 875 states and 1319 transitions. Word has length 36 [2024-09-25 10:30:17,437 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 10:30:17,437 INFO L474 AbstractCegarLoop]: Abstraction has 875 states and 1319 transitions. [2024-09-25 10:30:17,437 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 14 states, 14 states have (on average 2.5714285714285716) internal successors, (36), 14 states have internal predecessors, (36), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:30:17,438 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:30:17,438 INFO L276 IsEmpty]: Start isEmpty. Operand 875 states and 1319 transitions. [2024-09-25 10:30:17,439 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 38 [2024-09-25 10:30:17,439 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 10:30:17,439 INFO L216 NwaCegarLoop]: trace histogram [7, 7, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 10:30:17,456 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (22)] Ended with exit code 0 [2024-09-25 10:30:17,643 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable22,22 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:30:17,644 INFO L399 AbstractCegarLoop]: === Iteration 24 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 10:30:17,644 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:30:17,644 INFO L85 PathProgramCache]: Analyzing trace with hash 1567952235, now seen corresponding path program 10 times [2024-09-25 10:30:17,644 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 10:30:17,644 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1911398498] [2024-09-25 10:30:17,644 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 10:30:17,644 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 10:30:17,655 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:30:17,836 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 10:30:17,837 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:30:17,839 INFO L134 CoverageAnalysis]: Checked inductivity of 66 backedges. 0 proven. 31 refuted. 0 times theorem prover too weak. 35 trivial. 0 not checked. [2024-09-25 10:30:17,839 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 10:30:17,839 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1911398498] [2024-09-25 10:30:17,840 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1911398498] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 10:30:17,840 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1173241824] [2024-09-25 10:30:17,840 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2024-09-25 10:30:17,840 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:30:17,840 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 10:30:17,842 INFO L229 MonitoredProcess]: Starting monitored process 23 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 10:30:17,844 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (23)] Waiting until timeout for monitored process [2024-09-25 10:30:17,892 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2024-09-25 10:30:17,893 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-25 10:30:17,894 INFO L262 TraceCheckSpWp]: Trace formula consists of 154 conjuncts, 28 conjuncts are in the unsatisfiable core [2024-09-25 10:30:17,895 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 10:30:17,957 INFO L134 CoverageAnalysis]: Checked inductivity of 66 backedges. 0 proven. 31 refuted. 0 times theorem prover too weak. 35 trivial. 0 not checked. [2024-09-25 10:30:17,958 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 10:30:18,087 INFO L134 CoverageAnalysis]: Checked inductivity of 66 backedges. 15 proven. 6 refuted. 0 times theorem prover too weak. 45 trivial. 0 not checked. [2024-09-25 10:30:18,087 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1173241824] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 10:30:18,087 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-25 10:30:18,087 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [13, 13, 8] total 22 [2024-09-25 10:30:18,087 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [316250181] [2024-09-25 10:30:18,087 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-25 10:30:18,088 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 22 states [2024-09-25 10:30:18,088 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 10:30:18,088 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 22 interpolants. [2024-09-25 10:30:18,088 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=78, Invalid=384, Unknown=0, NotChecked=0, Total=462 [2024-09-25 10:30:18,088 INFO L87 Difference]: Start difference. First operand 875 states and 1319 transitions. Second operand has 22 states, 22 states have (on average 1.7727272727272727) internal successors, (39), 22 states have internal predecessors, (39), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:30:19,988 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 10:30:19,988 INFO L93 Difference]: Finished difference Result 1190 states and 1698 transitions. [2024-09-25 10:30:19,989 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 50 states. [2024-09-25 10:30:19,989 INFO L78 Accepts]: Start accepts. Automaton has has 22 states, 22 states have (on average 1.7727272727272727) internal successors, (39), 22 states have internal predecessors, (39), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 37 [2024-09-25 10:30:19,989 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 10:30:19,992 INFO L225 Difference]: With dead ends: 1190 [2024-09-25 10:30:19,992 INFO L226 Difference]: Without dead ends: 1017 [2024-09-25 10:30:19,993 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 120 GetRequests, 69 SyntacticMatches, 0 SemanticMatches, 51 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 603 ImplicationChecksByTransitivity, 0.7s TimeCoverageRelationStatistics Valid=317, Invalid=2439, Unknown=0, NotChecked=0, Total=2756 [2024-09-25 10:30:19,993 INFO L434 NwaCegarLoop]: 45 mSDtfsCounter, 81 mSDsluCounter, 369 mSDsCounter, 0 mSdLazyCounter, 721 mSolverCounterSat, 100 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 81 SdHoareTripleChecker+Valid, 414 SdHoareTripleChecker+Invalid, 821 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 100 IncrementalHoareTripleChecker+Valid, 721 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2024-09-25 10:30:19,994 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [81 Valid, 414 Invalid, 821 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [100 Valid, 721 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2024-09-25 10:30:19,994 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1017 states. [2024-09-25 10:30:20,757 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1017 to 859. [2024-09-25 10:30:20,758 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 859 states, 854 states have (on average 1.4976580796252927) internal successors, (1279), 854 states have internal predecessors, (1279), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:30:20,759 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 859 states to 859 states and 1283 transitions. [2024-09-25 10:30:20,760 INFO L78 Accepts]: Start accepts. Automaton has 859 states and 1283 transitions. Word has length 37 [2024-09-25 10:30:20,760 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 10:30:20,760 INFO L474 AbstractCegarLoop]: Abstraction has 859 states and 1283 transitions. [2024-09-25 10:30:20,760 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 22 states, 22 states have (on average 1.7727272727272727) internal successors, (39), 22 states have internal predecessors, (39), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:30:20,761 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:30:20,761 INFO L276 IsEmpty]: Start isEmpty. Operand 859 states and 1283 transitions. [2024-09-25 10:30:20,762 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 40 [2024-09-25 10:30:20,762 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 10:30:20,762 INFO L216 NwaCegarLoop]: trace histogram [8, 7, 7, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 10:30:20,775 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (23)] Forceful destruction successful, exit code 0 [2024-09-25 10:30:20,962 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 23 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable23 [2024-09-25 10:30:20,962 INFO L399 AbstractCegarLoop]: === Iteration 25 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 10:30:20,963 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:30:20,963 INFO L85 PathProgramCache]: Analyzing trace with hash 1064696843, now seen corresponding path program 2 times [2024-09-25 10:30:20,963 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 10:30:20,963 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1786303973] [2024-09-25 10:30:20,963 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 10:30:20,963 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 10:30:20,980 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:30:21,234 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 10:30:21,235 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:30:21,236 INFO L134 CoverageAnalysis]: Checked inductivity of 93 backedges. 8 proven. 56 refuted. 0 times theorem prover too weak. 29 trivial. 0 not checked. [2024-09-25 10:30:21,236 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 10:30:21,237 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1786303973] [2024-09-25 10:30:21,237 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1786303973] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 10:30:21,237 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1912035932] [2024-09-25 10:30:21,237 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2024-09-25 10:30:21,237 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:30:21,237 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 10:30:21,239 INFO L229 MonitoredProcess]: Starting monitored process 24 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 10:30:21,241 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (24)] Waiting until timeout for monitored process [2024-09-25 10:30:21,291 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2024-09-25 10:30:21,292 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-25 10:30:21,293 INFO L262 TraceCheckSpWp]: Trace formula consists of 164 conjuncts, 52 conjuncts are in the unsatisfiable core [2024-09-25 10:30:21,295 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 10:30:21,397 INFO L134 CoverageAnalysis]: Checked inductivity of 93 backedges. 0 proven. 93 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 10:30:21,397 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 10:30:21,586 INFO L134 CoverageAnalysis]: Checked inductivity of 93 backedges. 18 proven. 44 refuted. 0 times theorem prover too weak. 31 trivial. 0 not checked. [2024-09-25 10:30:21,586 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1912035932] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 10:30:21,586 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-25 10:30:21,587 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [18, 19, 10] total 27 [2024-09-25 10:30:21,587 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1547186268] [2024-09-25 10:30:21,587 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-25 10:30:21,587 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 27 states [2024-09-25 10:30:21,587 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 10:30:21,587 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 27 interpolants. [2024-09-25 10:30:21,588 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=120, Invalid=582, Unknown=0, NotChecked=0, Total=702 [2024-09-25 10:30:21,588 INFO L87 Difference]: Start difference. First operand 859 states and 1283 transitions. Second operand has 27 states, 27 states have (on average 2.4074074074074074) internal successors, (65), 27 states have internal predecessors, (65), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:30:26,032 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 10:30:26,032 INFO L93 Difference]: Finished difference Result 1708 states and 2444 transitions. [2024-09-25 10:30:26,032 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 96 states. [2024-09-25 10:30:26,032 INFO L78 Accepts]: Start accepts. Automaton has has 27 states, 27 states have (on average 2.4074074074074074) internal successors, (65), 27 states have internal predecessors, (65), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 39 [2024-09-25 10:30:26,032 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 10:30:26,037 INFO L225 Difference]: With dead ends: 1708 [2024-09-25 10:30:26,037 INFO L226 Difference]: Without dead ends: 1586 [2024-09-25 10:30:26,038 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 204 GetRequests, 101 SyntacticMatches, 2 SemanticMatches, 101 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3092 ImplicationChecksByTransitivity, 1.5s TimeCoverageRelationStatistics Valid=2076, Invalid=8430, Unknown=0, NotChecked=0, Total=10506 [2024-09-25 10:30:26,038 INFO L434 NwaCegarLoop]: 40 mSDtfsCounter, 371 mSDsluCounter, 644 mSDsCounter, 0 mSdLazyCounter, 2744 mSolverCounterSat, 283 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 371 SdHoareTripleChecker+Valid, 684 SdHoareTripleChecker+Invalid, 3027 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 283 IncrementalHoareTripleChecker+Valid, 2744 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.1s IncrementalHoareTripleChecker+Time [2024-09-25 10:30:26,039 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [371 Valid, 684 Invalid, 3027 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [283 Valid, 2744 Invalid, 0 Unknown, 0 Unchecked, 1.1s Time] [2024-09-25 10:30:26,039 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1586 states. [2024-09-25 10:30:26,988 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1586 to 936. [2024-09-25 10:30:26,989 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 936 states, 931 states have (on average 1.4951664876476907) internal successors, (1392), 931 states have internal predecessors, (1392), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:30:26,991 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 936 states to 936 states and 1396 transitions. [2024-09-25 10:30:26,993 INFO L78 Accepts]: Start accepts. Automaton has 936 states and 1396 transitions. Word has length 39 [2024-09-25 10:30:26,993 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 10:30:26,993 INFO L474 AbstractCegarLoop]: Abstraction has 936 states and 1396 transitions. [2024-09-25 10:30:26,993 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 27 states, 27 states have (on average 2.4074074074074074) internal successors, (65), 27 states have internal predecessors, (65), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:30:26,993 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:30:26,993 INFO L276 IsEmpty]: Start isEmpty. Operand 936 states and 1396 transitions. [2024-09-25 10:30:26,994 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 40 [2024-09-25 10:30:26,994 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 10:30:26,995 INFO L216 NwaCegarLoop]: trace histogram [13, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 10:30:27,007 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (24)] Forceful destruction successful, exit code 0 [2024-09-25 10:30:27,195 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 24 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable24 [2024-09-25 10:30:27,195 INFO L399 AbstractCegarLoop]: === Iteration 26 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 10:30:27,195 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:30:27,195 INFO L85 PathProgramCache]: Analyzing trace with hash 1900096203, now seen corresponding path program 11 times [2024-09-25 10:30:27,196 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 10:30:27,196 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [223067215] [2024-09-25 10:30:27,196 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 10:30:27,196 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 10:30:27,209 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:30:27,450 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 10:30:27,450 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:30:27,452 INFO L134 CoverageAnalysis]: Checked inductivity of 106 backedges. 0 proven. 94 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2024-09-25 10:30:27,452 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 10:30:27,452 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [223067215] [2024-09-25 10:30:27,452 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [223067215] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 10:30:27,452 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1388842418] [2024-09-25 10:30:27,452 INFO L93 rtionOrderModulation]: Changing assertion order to INSIDE_LOOP_FIRST1 [2024-09-25 10:30:27,452 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:30:27,453 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 10:30:27,454 INFO L229 MonitoredProcess]: Starting monitored process 25 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 10:30:27,454 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (25)] Waiting until timeout for monitored process [2024-09-25 10:30:27,546 INFO L228 tOrderPrioritization]: Assert order INSIDE_LOOP_FIRST1 issued 8 check-sat command(s) [2024-09-25 10:30:27,546 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-25 10:30:27,548 INFO L262 TraceCheckSpWp]: Trace formula consists of 164 conjuncts, 41 conjuncts are in the unsatisfiable core [2024-09-25 10:30:27,549 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 10:30:27,590 INFO L134 CoverageAnalysis]: Checked inductivity of 106 backedges. 0 proven. 100 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-25 10:30:27,591 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 10:30:27,957 INFO L134 CoverageAnalysis]: Checked inductivity of 106 backedges. 0 proven. 100 refuted. 0 times theorem prover too weak. 6 trivial. 0 not checked. [2024-09-25 10:30:27,957 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1388842418] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 10:30:27,958 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-25 10:30:27,958 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [19, 16, 16] total 33 [2024-09-25 10:30:27,958 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [258720787] [2024-09-25 10:30:27,958 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-25 10:30:27,958 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 33 states [2024-09-25 10:30:27,958 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 10:30:27,959 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 33 interpolants. [2024-09-25 10:30:27,959 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=258, Invalid=798, Unknown=0, NotChecked=0, Total=1056 [2024-09-25 10:30:27,960 INFO L87 Difference]: Start difference. First operand 936 states and 1396 transitions. Second operand has 33 states, 33 states have (on average 2.242424242424242) internal successors, (74), 33 states have internal predecessors, (74), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:30:37,135 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 10:30:37,135 INFO L93 Difference]: Finished difference Result 2428 states and 3749 transitions. [2024-09-25 10:30:37,136 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 72 states. [2024-09-25 10:30:37,136 INFO L78 Accepts]: Start accepts. Automaton has has 33 states, 33 states have (on average 2.242424242424242) internal successors, (74), 33 states have internal predecessors, (74), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 39 [2024-09-25 10:30:37,136 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 10:30:37,143 INFO L225 Difference]: With dead ends: 2428 [2024-09-25 10:30:37,143 INFO L226 Difference]: Without dead ends: 2051 [2024-09-25 10:30:37,144 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 153 GetRequests, 68 SyntacticMatches, 0 SemanticMatches, 85 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1744 ImplicationChecksByTransitivity, 5.2s TimeCoverageRelationStatistics Valid=2356, Invalid=5126, Unknown=0, NotChecked=0, Total=7482 [2024-09-25 10:30:37,145 INFO L434 NwaCegarLoop]: 77 mSDtfsCounter, 1263 mSDsluCounter, 1119 mSDsCounter, 0 mSdLazyCounter, 1271 mSolverCounterSat, 864 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 2.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1263 SdHoareTripleChecker+Valid, 1196 SdHoareTripleChecker+Invalid, 2135 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 864 IncrementalHoareTripleChecker+Valid, 1271 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 2.2s IncrementalHoareTripleChecker+Time [2024-09-25 10:30:37,145 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [1263 Valid, 1196 Invalid, 2135 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [864 Valid, 1271 Invalid, 0 Unknown, 0 Unchecked, 2.2s Time] [2024-09-25 10:30:37,146 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 2051 states. [2024-09-25 10:30:38,170 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 2051 to 1033. [2024-09-25 10:30:38,171 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1033 states, 1028 states have (on average 1.4990272373540856) internal successors, (1541), 1028 states have internal predecessors, (1541), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:30:38,173 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1033 states to 1033 states and 1545 transitions. [2024-09-25 10:30:38,174 INFO L78 Accepts]: Start accepts. Automaton has 1033 states and 1545 transitions. Word has length 39 [2024-09-25 10:30:38,174 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 10:30:38,174 INFO L474 AbstractCegarLoop]: Abstraction has 1033 states and 1545 transitions. [2024-09-25 10:30:38,175 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 33 states, 33 states have (on average 2.242424242424242) internal successors, (74), 33 states have internal predecessors, (74), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:30:38,175 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:30:38,175 INFO L276 IsEmpty]: Start isEmpty. Operand 1033 states and 1545 transitions. [2024-09-25 10:30:38,176 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 41 [2024-09-25 10:30:38,176 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 10:30:38,176 INFO L216 NwaCegarLoop]: trace histogram [4, 4, 4, 4, 4, 4, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 10:30:38,188 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (25)] Ended with exit code 0 [2024-09-25 10:30:38,376 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 25 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable25 [2024-09-25 10:30:38,376 INFO L399 AbstractCegarLoop]: === Iteration 27 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 10:30:38,377 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:30:38,377 INFO L85 PathProgramCache]: Analyzing trace with hash 171159391, now seen corresponding path program 12 times [2024-09-25 10:30:38,377 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 10:30:38,377 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1741162997] [2024-09-25 10:30:38,377 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 10:30:38,377 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 10:30:38,400 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:30:39,146 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 10:30:39,147 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:30:39,148 INFO L134 CoverageAnalysis]: Checked inductivity of 60 backedges. 0 proven. 50 refuted. 0 times theorem prover too weak. 10 trivial. 0 not checked. [2024-09-25 10:30:39,148 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 10:30:39,149 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1741162997] [2024-09-25 10:30:39,149 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1741162997] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 10:30:39,149 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1891294304] [2024-09-25 10:30:39,149 INFO L93 rtionOrderModulation]: Changing assertion order to MIX_INSIDE_OUTSIDE [2024-09-25 10:30:39,149 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:30:39,149 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 10:30:39,151 INFO L229 MonitoredProcess]: Starting monitored process 26 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 10:30:39,152 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (26)] Waiting until timeout for monitored process [2024-09-25 10:30:39,257 INFO L228 tOrderPrioritization]: Assert order MIX_INSIDE_OUTSIDE issued 3 check-sat command(s) [2024-09-25 10:30:39,258 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-25 10:30:39,259 INFO L262 TraceCheckSpWp]: Trace formula consists of 169 conjuncts, 80 conjuncts are in the unsatisfiable core [2024-09-25 10:30:39,260 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 10:30:40,315 INFO L134 CoverageAnalysis]: Checked inductivity of 60 backedges. 0 proven. 60 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 10:30:40,316 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 10:30:41,583 INFO L134 CoverageAnalysis]: Checked inductivity of 60 backedges. 0 proven. 60 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 10:30:41,584 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1891294304] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 10:30:41,584 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-25 10:30:41,584 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [17, 28, 27] total 58 [2024-09-25 10:30:41,584 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2091694626] [2024-09-25 10:30:41,584 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-25 10:30:41,584 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 58 states [2024-09-25 10:30:41,584 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 10:30:41,585 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 58 interpolants. [2024-09-25 10:30:41,585 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=460, Invalid=2846, Unknown=0, NotChecked=0, Total=3306 [2024-09-25 10:30:41,585 INFO L87 Difference]: Start difference. First operand 1033 states and 1545 transitions. Second operand has 58 states, 58 states have (on average 1.5172413793103448) internal successors, (88), 56 states have internal predecessors, (88), 3 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:30:50,484 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 10:30:50,484 INFO L93 Difference]: Finished difference Result 1535 states and 2128 transitions. [2024-09-25 10:30:50,484 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 66 states. [2024-09-25 10:30:50,484 INFO L78 Accepts]: Start accepts. Automaton has has 58 states, 58 states have (on average 1.5172413793103448) internal successors, (88), 56 states have internal predecessors, (88), 3 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 40 [2024-09-25 10:30:50,485 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 10:30:50,489 INFO L225 Difference]: With dead ends: 1535 [2024-09-25 10:30:50,489 INFO L226 Difference]: Without dead ends: 1504 [2024-09-25 10:30:50,490 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 146 GetRequests, 50 SyntacticMatches, 2 SemanticMatches, 94 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2303 ImplicationChecksByTransitivity, 7.4s TimeCoverageRelationStatistics Valid=1308, Invalid=7812, Unknown=0, NotChecked=0, Total=9120 [2024-09-25 10:30:50,490 INFO L434 NwaCegarLoop]: 16 mSDtfsCounter, 120 mSDsluCounter, 337 mSDsCounter, 0 mSdLazyCounter, 1355 mSolverCounterSat, 205 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 1.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 120 SdHoareTripleChecker+Valid, 353 SdHoareTripleChecker+Invalid, 1560 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 205 IncrementalHoareTripleChecker+Valid, 1355 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.3s IncrementalHoareTripleChecker+Time [2024-09-25 10:30:50,490 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [120 Valid, 353 Invalid, 1560 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [205 Valid, 1355 Invalid, 0 Unknown, 0 Unchecked, 1.3s Time] [2024-09-25 10:30:50,491 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1504 states. [2024-09-25 10:30:51,545 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1504 to 1017. [2024-09-25 10:30:51,545 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1017 states, 1012 states have (on average 1.5059288537549407) internal successors, (1524), 1012 states have internal predecessors, (1524), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:30:51,547 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1017 states to 1017 states and 1528 transitions. [2024-09-25 10:30:51,549 INFO L78 Accepts]: Start accepts. Automaton has 1017 states and 1528 transitions. Word has length 40 [2024-09-25 10:30:51,549 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 10:30:51,549 INFO L474 AbstractCegarLoop]: Abstraction has 1017 states and 1528 transitions. [2024-09-25 10:30:51,549 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 58 states, 58 states have (on average 1.5172413793103448) internal successors, (88), 56 states have internal predecessors, (88), 3 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:30:51,549 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:30:51,550 INFO L276 IsEmpty]: Start isEmpty. Operand 1017 states and 1528 transitions. [2024-09-25 10:30:51,551 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 42 [2024-09-25 10:30:51,551 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 10:30:51,551 INFO L216 NwaCegarLoop]: trace histogram [8, 8, 8, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 10:30:51,568 INFO L540 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (26)] Forceful destruction successful, exit code 0 [2024-09-25 10:30:51,752 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 26 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable26 [2024-09-25 10:30:51,752 INFO L399 AbstractCegarLoop]: === Iteration 28 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 10:30:51,752 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:30:51,752 INFO L85 PathProgramCache]: Analyzing trace with hash -1585091015, now seen corresponding path program 3 times [2024-09-25 10:30:51,752 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 10:30:51,752 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1832109726] [2024-09-25 10:30:51,752 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 10:30:51,753 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 10:30:51,765 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:30:52,124 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 10:30:52,125 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:30:52,126 INFO L134 CoverageAnalysis]: Checked inductivity of 109 backedges. 0 proven. 109 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 10:30:52,126 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 10:30:52,127 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1832109726] [2024-09-25 10:30:52,127 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1832109726] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 10:30:52,127 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [369263971] [2024-09-25 10:30:52,127 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST2 [2024-09-25 10:30:52,127 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:30:52,127 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 10:30:52,129 INFO L229 MonitoredProcess]: Starting monitored process 27 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 10:30:52,130 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (27)] Waiting until timeout for monitored process [2024-09-25 10:30:52,229 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST2 issued 5 check-sat command(s) [2024-09-25 10:30:52,229 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-25 10:30:52,231 INFO L262 TraceCheckSpWp]: Trace formula consists of 174 conjuncts, 34 conjuncts are in the unsatisfiable core [2024-09-25 10:30:52,232 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 10:30:52,552 INFO L134 CoverageAnalysis]: Checked inductivity of 109 backedges. 8 proven. 64 refuted. 0 times theorem prover too weak. 37 trivial. 0 not checked. [2024-09-25 10:30:52,552 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 10:30:52,930 INFO L134 CoverageAnalysis]: Checked inductivity of 109 backedges. 8 proven. 64 refuted. 0 times theorem prover too weak. 37 trivial. 0 not checked. [2024-09-25 10:30:52,930 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [369263971] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 10:30:52,930 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-25 10:30:52,930 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [21, 11, 11] total 30 [2024-09-25 10:30:52,930 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [793801254] [2024-09-25 10:30:52,930 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-25 10:30:52,931 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 30 states [2024-09-25 10:30:52,931 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 10:30:52,931 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 30 interpolants. [2024-09-25 10:30:52,931 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=59, Invalid=811, Unknown=0, NotChecked=0, Total=870 [2024-09-25 10:30:52,932 INFO L87 Difference]: Start difference. First operand 1017 states and 1528 transitions. Second operand has 30 states, 30 states have (on average 2.066666666666667) internal successors, (62), 30 states have internal predecessors, (62), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:31:18,409 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 10:31:18,410 INFO L93 Difference]: Finished difference Result 2849 states and 3992 transitions. [2024-09-25 10:31:18,410 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 398 states. [2024-09-25 10:31:18,411 INFO L78 Accepts]: Start accepts. Automaton has has 30 states, 30 states have (on average 2.066666666666667) internal successors, (62), 30 states have internal predecessors, (62), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 41 [2024-09-25 10:31:18,411 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 10:31:18,420 INFO L225 Difference]: With dead ends: 2849 [2024-09-25 10:31:18,421 INFO L226 Difference]: Without dead ends: 2689 [2024-09-25 10:31:18,429 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 506 GetRequests, 69 SyntacticMatches, 16 SemanticMatches, 421 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 77062 ImplicationChecksByTransitivity, 16.1s TimeCoverageRelationStatistics Valid=7170, Invalid=171336, Unknown=0, NotChecked=0, Total=178506 [2024-09-25 10:31:18,429 INFO L434 NwaCegarLoop]: 36 mSDtfsCounter, 1012 mSDsluCounter, 639 mSDsCounter, 0 mSdLazyCounter, 5681 mSolverCounterSat, 1123 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 3.6s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1012 SdHoareTripleChecker+Valid, 675 SdHoareTripleChecker+Invalid, 6804 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1123 IncrementalHoareTripleChecker+Valid, 5681 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 4.0s IncrementalHoareTripleChecker+Time [2024-09-25 10:31:18,430 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [1012 Valid, 675 Invalid, 6804 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1123 Valid, 5681 Invalid, 0 Unknown, 0 Unchecked, 4.0s Time] [2024-09-25 10:31:18,432 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 2689 states. [2024-09-25 10:31:19,700 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 2689 to 1022. [2024-09-25 10:31:19,701 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1022 states, 1017 states have (on average 1.4926253687315634) internal successors, (1518), 1017 states have internal predecessors, (1518), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:31:19,703 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1022 states to 1022 states and 1522 transitions. [2024-09-25 10:31:19,705 INFO L78 Accepts]: Start accepts. Automaton has 1022 states and 1522 transitions. Word has length 41 [2024-09-25 10:31:19,705 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 10:31:19,705 INFO L474 AbstractCegarLoop]: Abstraction has 1022 states and 1522 transitions. [2024-09-25 10:31:19,705 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 30 states, 30 states have (on average 2.066666666666667) internal successors, (62), 30 states have internal predecessors, (62), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:31:19,705 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:31:19,706 INFO L276 IsEmpty]: Start isEmpty. Operand 1022 states and 1522 transitions. [2024-09-25 10:31:19,707 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 43 [2024-09-25 10:31:19,707 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 10:31:19,708 INFO L216 NwaCegarLoop]: trace histogram [5, 5, 5, 5, 3, 3, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 10:31:19,725 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (27)] Ended with exit code 0 [2024-09-25 10:31:19,911 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable27,27 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:31:19,912 INFO L399 AbstractCegarLoop]: === Iteration 29 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 10:31:19,912 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:31:19,912 INFO L85 PathProgramCache]: Analyzing trace with hash 1706754144, now seen corresponding path program 13 times [2024-09-25 10:31:19,912 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 10:31:19,912 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1288914791] [2024-09-25 10:31:19,912 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 10:31:19,912 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 10:31:19,937 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:31:20,259 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 10:31:20,260 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:31:20,262 INFO L134 CoverageAnalysis]: Checked inductivity of 72 backedges. 15 proven. 21 refuted. 0 times theorem prover too weak. 36 trivial. 0 not checked. [2024-09-25 10:31:20,262 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 10:31:20,262 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1288914791] [2024-09-25 10:31:20,262 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1288914791] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 10:31:20,262 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [538299780] [2024-09-25 10:31:20,263 INFO L93 rtionOrderModulation]: Changing assertion order to NOT_INCREMENTALLY [2024-09-25 10:31:20,263 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:31:20,263 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 10:31:20,265 INFO L229 MonitoredProcess]: Starting monitored process 28 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 10:31:20,266 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (28)] Waiting until timeout for monitored process [2024-09-25 10:31:20,324 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:31:20,326 INFO L262 TraceCheckSpWp]: Trace formula consists of 179 conjuncts, 30 conjuncts are in the unsatisfiable core [2024-09-25 10:31:20,327 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 10:31:20,512 INFO L134 CoverageAnalysis]: Checked inductivity of 72 backedges. 0 proven. 21 refuted. 0 times theorem prover too weak. 51 trivial. 0 not checked. [2024-09-25 10:31:20,512 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 10:31:20,637 INFO L134 CoverageAnalysis]: Checked inductivity of 72 backedges. 0 proven. 21 refuted. 0 times theorem prover too weak. 51 trivial. 0 not checked. [2024-09-25 10:31:20,637 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [538299780] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 10:31:20,637 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-25 10:31:20,638 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [13, 8, 8] total 24 [2024-09-25 10:31:20,638 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1465719994] [2024-09-25 10:31:20,638 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-25 10:31:20,638 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 24 states [2024-09-25 10:31:20,638 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 10:31:20,639 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 24 interpolants. [2024-09-25 10:31:20,639 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=167, Invalid=385, Unknown=0, NotChecked=0, Total=552 [2024-09-25 10:31:20,639 INFO L87 Difference]: Start difference. First operand 1022 states and 1522 transitions. Second operand has 24 states, 24 states have (on average 2.375) internal successors, (57), 24 states have internal predecessors, (57), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:31:36,780 WARN L293 SmtUtils]: Spent 16.03s on a formula simplification that was a NOOP. DAG size: 26 (called from [L 391] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2024-09-25 10:31:48,860 WARN L293 SmtUtils]: Spent 12.04s on a formula simplification that was a NOOP. DAG size: 24 (called from [L 391] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2024-09-25 10:31:56,940 WARN L293 SmtUtils]: Spent 8.02s on a formula simplification that was a NOOP. DAG size: 20 (called from [L 391] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2024-09-25 10:32:13,223 WARN L293 SmtUtils]: Spent 12.05s on a formula simplification that was a NOOP. DAG size: 22 (called from [L 391] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2024-09-25 10:32:21,323 WARN L293 SmtUtils]: Spent 8.02s on a formula simplification that was a NOOP. DAG size: 18 (called from [L 391] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2024-09-25 10:32:33,705 WARN L293 SmtUtils]: Spent 8.02s on a formula simplification that was a NOOP. DAG size: 20 (called from [L 391] de.uni_freiburg.informatik.ultimate.lib.modelcheckerutils.smt.predicates.PredicateUnifier.getOrConstructPredicate) [2024-09-25 10:32:46,501 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-25 10:32:50,739 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-25 10:32:55,035 WARN L539 Checker$ProtectedHtc]: IncrementalHoareTripleChecker took 4.00s for a HTC check with result UNKNOWN. Formula has sorts [Bool, Int], hasArrays=false, hasNonlinArith=false, quantifiers [] [2024-09-25 10:32:58,421 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2024-09-25 10:32:58,421 INFO L93 Difference]: Finished difference Result 2885 states and 4277 transitions. [2024-09-25 10:32:58,422 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 42 states. [2024-09-25 10:32:58,422 INFO L78 Accepts]: Start accepts. Automaton has has 24 states, 24 states have (on average 2.375) internal successors, (57), 24 states have internal predecessors, (57), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 42 [2024-09-25 10:32:58,422 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2024-09-25 10:32:58,429 INFO L225 Difference]: With dead ends: 2885 [2024-09-25 10:32:58,429 INFO L226 Difference]: Without dead ends: 2585 [2024-09-25 10:32:58,430 INFO L433 NwaCegarLoop]: 0 DeclaredPredicates, 123 GetRequests, 77 SyntacticMatches, 1 SemanticMatches, 45 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 702 ImplicationChecksByTransitivity, 80.8s TimeCoverageRelationStatistics Valid=657, Invalid=1505, Unknown=0, NotChecked=0, Total=2162 [2024-09-25 10:32:58,430 INFO L434 NwaCegarLoop]: 51 mSDtfsCounter, 296 mSDsluCounter, 295 mSDsCounter, 0 mSdLazyCounter, 183 mSolverCounterSat, 158 mSolverCounterUnsat, 3 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 12.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 296 SdHoareTripleChecker+Valid, 346 SdHoareTripleChecker+Invalid, 344 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 158 IncrementalHoareTripleChecker+Valid, 183 IncrementalHoareTripleChecker+Invalid, 3 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 12.4s IncrementalHoareTripleChecker+Time [2024-09-25 10:32:58,430 INFO L435 NwaCegarLoop]: SdHoareTripleChecker [296 Valid, 346 Invalid, 344 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [158 Valid, 183 Invalid, 3 Unknown, 0 Unchecked, 12.4s Time] [2024-09-25 10:32:58,431 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 2585 states. [2024-09-25 10:32:59,903 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 2585 to 1258. [2024-09-25 10:32:59,904 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1258 states, 1253 states have (on average 1.4980047885075818) internal successors, (1877), 1253 states have internal predecessors, (1877), 3 states have call successors, (3), 3 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:32:59,906 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1258 states to 1258 states and 1881 transitions. [2024-09-25 10:32:59,907 INFO L78 Accepts]: Start accepts. Automaton has 1258 states and 1881 transitions. Word has length 42 [2024-09-25 10:32:59,908 INFO L84 Accepts]: Finished accepts. word is rejected. [2024-09-25 10:32:59,908 INFO L474 AbstractCegarLoop]: Abstraction has 1258 states and 1881 transitions. [2024-09-25 10:32:59,908 INFO L475 AbstractCegarLoop]: INTERPOLANT automaton has has 24 states, 24 states have (on average 2.375) internal successors, (57), 24 states have internal predecessors, (57), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2024-09-25 10:32:59,908 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:32:59,908 INFO L276 IsEmpty]: Start isEmpty. Operand 1258 states and 1881 transitions. [2024-09-25 10:32:59,910 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 43 [2024-09-25 10:32:59,910 INFO L208 NwaCegarLoop]: Found error trace [2024-09-25 10:32:59,910 INFO L216 NwaCegarLoop]: trace histogram [26, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2024-09-25 10:32:59,928 INFO L552 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (28)] Ended with exit code 0 [2024-09-25 10:33:00,110 WARN L456 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 28 /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable28 [2024-09-25 10:33:00,111 INFO L399 AbstractCegarLoop]: === Iteration 30 === Targeting __VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION === [__VERIFIER_assertErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2024-09-25 10:33:00,111 INFO L160 PredicateUnifier]: Initialized classic predicate unifier [2024-09-25 10:33:00,111 INFO L85 PathProgramCache]: Analyzing trace with hash -783545697, now seen corresponding path program 4 times [2024-09-25 10:33:00,111 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2024-09-25 10:33:00,111 INFO L334 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1404782589] [2024-09-25 10:33:00,111 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2024-09-25 10:33:00,112 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2024-09-25 10:33:00,129 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:33:00,657 INFO L381 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 0 [2024-09-25 10:33:00,658 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2024-09-25 10:33:00,660 INFO L134 CoverageAnalysis]: Checked inductivity of 351 backedges. 0 proven. 351 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 10:33:00,660 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2024-09-25 10:33:00,660 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1404782589] [2024-09-25 10:33:00,660 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1404782589] provided 0 perfect and 1 imperfect interpolant sequences [2024-09-25 10:33:00,660 INFO L334 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [636927653] [2024-09-25 10:33:00,660 INFO L93 rtionOrderModulation]: Changing assertion order to TERMS_WITH_SMALL_CONSTANTS_FIRST [2024-09-25 10:33:00,660 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2024-09-25 10:33:00,660 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/certificate-witnesses-artifact/automizer/z3 [2024-09-25 10:33:00,662 INFO L229 MonitoredProcess]: Starting monitored process 29 with /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2024-09-25 10:33:00,663 INFO L327 MonitoredProcess]: [MP /storage/repos/certificate-witnesses-artifact/automizer/z3 -smt2 -in SMTLIB2_COMPLIANT=true (29)] Waiting until timeout for monitored process [2024-09-25 10:33:00,711 INFO L228 tOrderPrioritization]: Assert order TERMS_WITH_SMALL_CONSTANTS_FIRST issued 0 check-sat command(s) [2024-09-25 10:33:00,711 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2024-09-25 10:33:00,712 INFO L262 TraceCheckSpWp]: Trace formula consists of 179 conjuncts, 57 conjuncts are in the unsatisfiable core [2024-09-25 10:33:00,713 INFO L285 TraceCheckSpWp]: Computing forward predicates... [2024-09-25 10:33:00,769 INFO L134 CoverageAnalysis]: Checked inductivity of 351 backedges. 0 proven. 351 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 10:33:00,769 INFO L327 TraceCheckSpWp]: Computing backward predicates... [2024-09-25 10:33:01,974 INFO L134 CoverageAnalysis]: Checked inductivity of 351 backedges. 0 proven. 351 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2024-09-25 10:33:01,974 INFO L158 FreeRefinementEngine]: IpTcStrategyModuleZ3 [636927653] provided 0 perfect and 2 imperfect interpolant sequences [2024-09-25 10:33:01,975 INFO L185 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2024-09-25 10:33:01,975 INFO L198 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [30, 30, 30] total 59 [2024-09-25 10:33:01,975 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2043726890] [2024-09-25 10:33:01,975 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2024-09-25 10:33:01,975 INFO L551 AbstractCegarLoop]: INTERPOLANT automaton has 59 states [2024-09-25 10:33:01,975 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2024-09-25 10:33:01,976 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 59 interpolants. [2024-09-25 10:33:01,976 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=846, Invalid=2576, Unknown=0, NotChecked=0, Total=3422 [2024-09-25 10:33:01,976 INFO L87 Difference]: Start difference. First operand 1258 states and 1881 transitions. Second operand has 59 states, 59 states have (on average 1.1864406779661016) internal successors, (70), 59 states have internal predecessors, (70), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1)