java -ea -Xmx8000000000 -jar /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/org.eclipse.equinox.launcher_1.3.100.v20150511-1540.jar -data @noDefault -ultimatedata /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data -tc ../../../trunk/examples/toolchains/AutomizerC.xml -s ../../../trunk/examples/settings/default/automizer/svcomp-Reach-32bit-Automizer_Default.epf -i ../../../trunk/examples/svcomp/ntdrivers-simplified/kbfiltr_simpl2_false-unreach-call_true-valid-memsafety_true-termination.cil.c -------------------------------------------------------------------------------- This is Ultimate 0.1.23-370d6ab [2018-11-14 17:13:11,162 INFO L170 SettingsManager]: Resetting all preferences to default values... [2018-11-14 17:13:11,164 INFO L174 SettingsManager]: Resetting UltimateCore preferences to default values [2018-11-14 17:13:11,176 INFO L177 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2018-11-14 17:13:11,177 INFO L174 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2018-11-14 17:13:11,178 INFO L174 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2018-11-14 17:13:11,179 INFO L174 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2018-11-14 17:13:11,181 INFO L174 SettingsManager]: Resetting LassoRanker preferences to default values [2018-11-14 17:13:11,182 INFO L174 SettingsManager]: Resetting Reaching Definitions preferences to default values [2018-11-14 17:13:11,183 INFO L174 SettingsManager]: Resetting SyntaxChecker preferences to default values [2018-11-14 17:13:11,184 INFO L177 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2018-11-14 17:13:11,184 INFO L174 SettingsManager]: Resetting LTL2Aut preferences to default values [2018-11-14 17:13:11,185 INFO L174 SettingsManager]: Resetting PEA to Boogie preferences to default values [2018-11-14 17:13:11,186 INFO L174 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2018-11-14 17:13:11,187 INFO L174 SettingsManager]: Resetting ChcToBoogie preferences to default values [2018-11-14 17:13:11,188 INFO L174 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2018-11-14 17:13:11,189 INFO L174 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2018-11-14 17:13:11,191 INFO L174 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2018-11-14 17:13:11,193 INFO L174 SettingsManager]: Resetting CodeCheck preferences to default values [2018-11-14 17:13:11,194 INFO L174 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2018-11-14 17:13:11,195 INFO L174 SettingsManager]: Resetting RCFGBuilder preferences to default values [2018-11-14 17:13:11,199 INFO L174 SettingsManager]: Resetting TraceAbstraction preferences to default values [2018-11-14 17:13:11,207 INFO L177 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2018-11-14 17:13:11,207 INFO L177 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2018-11-14 17:13:11,207 INFO L174 SettingsManager]: Resetting TreeAutomizer preferences to default values [2018-11-14 17:13:11,208 INFO L174 SettingsManager]: Resetting IcfgTransformer preferences to default values [2018-11-14 17:13:11,209 INFO L174 SettingsManager]: Resetting Boogie Printer preferences to default values [2018-11-14 17:13:11,210 INFO L174 SettingsManager]: Resetting ReqPrinter preferences to default values [2018-11-14 17:13:11,211 INFO L174 SettingsManager]: Resetting Witness Printer preferences to default values [2018-11-14 17:13:11,211 INFO L177 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2018-11-14 17:13:11,212 INFO L174 SettingsManager]: Resetting CDTParser preferences to default values [2018-11-14 17:13:11,212 INFO L177 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2018-11-14 17:13:11,212 INFO L177 SettingsManager]: ReqParser provides no preferences, ignoring... [2018-11-14 17:13:11,213 INFO L174 SettingsManager]: Resetting SmtParser preferences to default values [2018-11-14 17:13:11,214 INFO L174 SettingsManager]: Resetting Witness Parser preferences to default values [2018-11-14 17:13:11,214 INFO L181 SettingsManager]: Finished resetting all preferences to default values... [2018-11-14 17:13:11,214 INFO L98 SettingsManager]: Beginning loading settings from /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../../../trunk/examples/settings/default/automizer/svcomp-Reach-32bit-Automizer_Default.epf [2018-11-14 17:13:11,229 INFO L110 SettingsManager]: Loading preferences was successful [2018-11-14 17:13:11,229 INFO L112 SettingsManager]: Preferences different from defaults after loading the file: [2018-11-14 17:13:11,230 INFO L131 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2018-11-14 17:13:11,230 INFO L133 SettingsManager]: * to procedures, called more than once=true [2018-11-14 17:13:11,231 INFO L131 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2018-11-14 17:13:11,231 INFO L133 SettingsManager]: * Create parallel compositions if possible=false [2018-11-14 17:13:11,231 INFO L133 SettingsManager]: * Use SBE=true [2018-11-14 17:13:11,231 INFO L131 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2018-11-14 17:13:11,232 INFO L133 SettingsManager]: * sizeof long=4 [2018-11-14 17:13:11,232 INFO L133 SettingsManager]: * Overapproximate operations on floating types=true [2018-11-14 17:13:11,232 INFO L133 SettingsManager]: * sizeof POINTER=4 [2018-11-14 17:13:11,232 INFO L133 SettingsManager]: * Check division by zero=IGNORE [2018-11-14 17:13:11,232 INFO L133 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2018-11-14 17:13:11,233 INFO L133 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2018-11-14 17:13:11,233 INFO L133 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2018-11-14 17:13:11,233 INFO L133 SettingsManager]: * sizeof long double=12 [2018-11-14 17:13:11,233 INFO L133 SettingsManager]: * Check if freed pointer was valid=false [2018-11-14 17:13:11,233 INFO L133 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2018-11-14 17:13:11,234 INFO L131 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2018-11-14 17:13:11,234 INFO L133 SettingsManager]: * Size of a code block=SequenceOfStatements [2018-11-14 17:13:11,234 INFO L133 SettingsManager]: * To the following directory=./dump/ [2018-11-14 17:13:11,234 INFO L133 SettingsManager]: * SMT solver=External_DefaultMode [2018-11-14 17:13:11,234 INFO L133 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2018-11-14 17:13:11,235 INFO L131 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2018-11-14 17:13:11,235 INFO L133 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2018-11-14 17:13:11,235 INFO L133 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2018-11-14 17:13:11,235 INFO L133 SettingsManager]: * Trace refinement strategy=CAMEL [2018-11-14 17:13:11,235 INFO L133 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2018-11-14 17:13:11,235 INFO L133 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2018-11-14 17:13:11,236 INFO L133 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2018-11-14 17:13:11,306 INFO L81 nceAwareModelManager]: Repository-Root is: /tmp [2018-11-14 17:13:11,319 INFO L258 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2018-11-14 17:13:11,323 INFO L214 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2018-11-14 17:13:11,325 INFO L271 PluginConnector]: Initializing CDTParser... [2018-11-14 17:13:11,325 INFO L276 PluginConnector]: CDTParser initialized [2018-11-14 17:13:11,326 INFO L418 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../../../trunk/examples/svcomp/ntdrivers-simplified/kbfiltr_simpl2_false-unreach-call_true-valid-memsafety_true-termination.cil.c [2018-11-14 17:13:11,381 INFO L218 CDTParser]: Created temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/5e40f85a5/25c20f392b4f44aa8de068f34412a5cc/FLAGd64ce4456 [2018-11-14 17:13:11,877 INFO L298 CDTParser]: Found 1 translation units. [2018-11-14 17:13:11,878 INFO L158 CDTParser]: Scanning /storage/repos/ultimate/trunk/examples/svcomp/ntdrivers-simplified/kbfiltr_simpl2_false-unreach-call_true-valid-memsafety_true-termination.cil.c [2018-11-14 17:13:11,892 INFO L346 CDTParser]: About to delete temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/5e40f85a5/25c20f392b4f44aa8de068f34412a5cc/FLAGd64ce4456 [2018-11-14 17:13:11,907 INFO L354 CDTParser]: Successfully deleted /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/5e40f85a5/25c20f392b4f44aa8de068f34412a5cc [2018-11-14 17:13:11,921 INFO L296 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2018-11-14 17:13:11,923 INFO L131 ToolchainWalker]: Walking toolchain with 4 elements. [2018-11-14 17:13:11,924 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2018-11-14 17:13:11,925 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2018-11-14 17:13:11,932 INFO L276 PluginConnector]: CACSL2BoogieTranslator initialized [2018-11-14 17:13:11,934 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 14.11 05:13:11" (1/1) ... [2018-11-14 17:13:11,937 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@1d894e98 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.11 05:13:11, skipping insertion in model container [2018-11-14 17:13:11,937 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 14.11 05:13:11" (1/1) ... [2018-11-14 17:13:11,947 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2018-11-14 17:13:12,019 INFO L176 MainTranslator]: Built tables and reachable declarations [2018-11-14 17:13:12,404 INFO L201 PostProcessor]: Analyzing one entry point: main [2018-11-14 17:13:12,413 INFO L191 MainTranslator]: Completed pre-run [2018-11-14 17:13:12,562 INFO L201 PostProcessor]: Analyzing one entry point: main [2018-11-14 17:13:12,585 INFO L195 MainTranslator]: Completed translation [2018-11-14 17:13:12,585 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.11 05:13:12 WrapperNode [2018-11-14 17:13:12,585 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2018-11-14 17:13:12,586 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2018-11-14 17:13:12,586 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2018-11-14 17:13:12,586 INFO L276 PluginConnector]: Boogie Preprocessor initialized [2018-11-14 17:13:12,668 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.11 05:13:12" (1/1) ... [2018-11-14 17:13:12,670 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.11 05:13:12" (1/1) ... [2018-11-14 17:13:12,696 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.11 05:13:12" (1/1) ... [2018-11-14 17:13:12,697 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.11 05:13:12" (1/1) ... [2018-11-14 17:13:12,745 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.11 05:13:12" (1/1) ... [2018-11-14 17:13:12,762 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.11 05:13:12" (1/1) ... [2018-11-14 17:13:12,766 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.11 05:13:12" (1/1) ... [2018-11-14 17:13:12,771 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2018-11-14 17:13:12,772 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2018-11-14 17:13:12,772 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2018-11-14 17:13:12,772 INFO L276 PluginConnector]: RCFGBuilder initialized [2018-11-14 17:13:12,773 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.11 05:13:12" (1/1) ... No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 Starting monitored process 1 with z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) Waiting until toolchain timeout for monitored process 1 with z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2018-11-14 17:13:12,836 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.init [2018-11-14 17:13:12,836 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2018-11-14 17:13:12,836 INFO L138 BoogieDeclarations]: Found implementation of procedure stub_driver_init [2018-11-14 17:13:12,836 INFO L138 BoogieDeclarations]: Found implementation of procedure _BLAST_init [2018-11-14 17:13:12,836 INFO L138 BoogieDeclarations]: Found implementation of procedure KbFilter_PnP [2018-11-14 17:13:12,837 INFO L138 BoogieDeclarations]: Found implementation of procedure main [2018-11-14 17:13:12,837 INFO L138 BoogieDeclarations]: Found implementation of procedure stubMoreProcessingRequired [2018-11-14 17:13:12,837 INFO L138 BoogieDeclarations]: Found implementation of procedure IofCallDriver [2018-11-14 17:13:12,837 INFO L138 BoogieDeclarations]: Found implementation of procedure IofCompleteRequest [2018-11-14 17:13:12,837 INFO L138 BoogieDeclarations]: Found implementation of procedure KeSetEvent [2018-11-14 17:13:12,837 INFO L138 BoogieDeclarations]: Found implementation of procedure KeWaitForSingleObject [2018-11-14 17:13:12,838 INFO L138 BoogieDeclarations]: Found implementation of procedure KbFilter_Complete [2018-11-14 17:13:12,838 INFO L138 BoogieDeclarations]: Found implementation of procedure KbFilter_CreateClose [2018-11-14 17:13:12,838 INFO L138 BoogieDeclarations]: Found implementation of procedure KbFilter_DispatchPassThrough [2018-11-14 17:13:12,838 INFO L138 BoogieDeclarations]: Found implementation of procedure KbFilter_Power [2018-11-14 17:13:12,838 INFO L138 BoogieDeclarations]: Found implementation of procedure PoCallDriver [2018-11-14 17:13:12,838 INFO L138 BoogieDeclarations]: Found implementation of procedure KbFilter_InternIoCtl [2018-11-14 17:13:12,838 INFO L138 BoogieDeclarations]: Found implementation of procedure errorFn [2018-11-14 17:13:12,839 INFO L130 BoogieDeclarations]: Found specification of procedure __VERIFIER_error [2018-11-14 17:13:12,839 INFO L130 BoogieDeclarations]: Found specification of procedure __VERIFIER_nondet_char [2018-11-14 17:13:12,839 INFO L130 BoogieDeclarations]: Found specification of procedure __VERIFIER_nondet_int [2018-11-14 17:13:12,839 INFO L130 BoogieDeclarations]: Found specification of procedure __VERIFIER_nondet_long [2018-11-14 17:13:12,839 INFO L130 BoogieDeclarations]: Found specification of procedure __VERIFIER_nondet_pointer [2018-11-14 17:13:12,840 INFO L130 BoogieDeclarations]: Found specification of procedure KbFilter_PnP [2018-11-14 17:13:12,840 INFO L130 BoogieDeclarations]: Found specification of procedure IofCallDriver [2018-11-14 17:13:12,840 INFO L130 BoogieDeclarations]: Found specification of procedure KeSetEvent [2018-11-14 17:13:12,840 INFO L130 BoogieDeclarations]: Found specification of procedure KeWaitForSingleObject [2018-11-14 17:13:12,840 INFO L130 BoogieDeclarations]: Found specification of procedure KbFilter_Complete [2018-11-14 17:13:12,840 INFO L130 BoogieDeclarations]: Found specification of procedure KbFilter_CreateClose [2018-11-14 17:13:12,840 INFO L130 BoogieDeclarations]: Found specification of procedure KbFilter_DispatchPassThrough [2018-11-14 17:13:12,841 INFO L130 BoogieDeclarations]: Found specification of procedure KbFilter_Power [2018-11-14 17:13:12,841 INFO L130 BoogieDeclarations]: Found specification of procedure PoCallDriver [2018-11-14 17:13:12,841 INFO L130 BoogieDeclarations]: Found specification of procedure KbFilter_InternIoCtl [2018-11-14 17:13:12,841 INFO L130 BoogieDeclarations]: Found specification of procedure errorFn [2018-11-14 17:13:12,841 INFO L130 BoogieDeclarations]: Found specification of procedure IofCompleteRequest [2018-11-14 17:13:12,841 INFO L130 BoogieDeclarations]: Found specification of procedure stub_driver_init [2018-11-14 17:13:12,842 INFO L130 BoogieDeclarations]: Found specification of procedure _BLAST_init [2018-11-14 17:13:12,842 INFO L130 BoogieDeclarations]: Found specification of procedure main [2018-11-14 17:13:12,842 INFO L130 BoogieDeclarations]: Found specification of procedure stubMoreProcessingRequired [2018-11-14 17:13:12,842 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.init [2018-11-14 17:13:12,842 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2018-11-14 17:13:13,201 WARN L684 $ProcedureCfgBuilder]: Two Gotos in a row! There was dead code [2018-11-14 17:13:13,202 WARN L649 $ProcedureCfgBuilder]: Label in the middle of a codeblock. [2018-11-14 17:13:13,592 WARN L684 $ProcedureCfgBuilder]: Two Gotos in a row! There was dead code [2018-11-14 17:13:13,593 WARN L649 $ProcedureCfgBuilder]: Label in the middle of a codeblock. [2018-11-14 17:13:13,980 WARN L684 $ProcedureCfgBuilder]: Two Gotos in a row! There was dead code [2018-11-14 17:13:13,981 WARN L649 $ProcedureCfgBuilder]: Label in the middle of a codeblock. [2018-11-14 17:13:14,125 WARN L684 $ProcedureCfgBuilder]: Two Gotos in a row! There was dead code [2018-11-14 17:13:14,126 WARN L649 $ProcedureCfgBuilder]: Label in the middle of a codeblock. [2018-11-14 17:13:14,755 WARN L684 $ProcedureCfgBuilder]: Two Gotos in a row! There was dead code [2018-11-14 17:13:14,755 WARN L649 $ProcedureCfgBuilder]: Label in the middle of a codeblock. [2018-11-14 17:13:14,901 WARN L684 $ProcedureCfgBuilder]: Two Gotos in a row! There was dead code [2018-11-14 17:13:14,901 WARN L649 $ProcedureCfgBuilder]: Label in the middle of a codeblock. [2018-11-14 17:13:15,385 INFO L278 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2018-11-14 17:13:15,386 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 14.11 05:13:15 BoogieIcfgContainer [2018-11-14 17:13:15,386 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2018-11-14 17:13:15,387 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2018-11-14 17:13:15,387 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2018-11-14 17:13:15,391 INFO L276 PluginConnector]: TraceAbstraction initialized [2018-11-14 17:13:15,391 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 14.11 05:13:11" (1/3) ... [2018-11-14 17:13:15,392 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@c8118de and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 14.11 05:13:15, skipping insertion in model container [2018-11-14 17:13:15,392 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 14.11 05:13:12" (2/3) ... [2018-11-14 17:13:15,392 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@c8118de and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 14.11 05:13:15, skipping insertion in model container [2018-11-14 17:13:15,393 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 14.11 05:13:15" (3/3) ... [2018-11-14 17:13:15,395 INFO L112 eAbstractionObserver]: Analyzing ICFG kbfiltr_simpl2_false-unreach-call_true-valid-memsafety_true-termination.cil.c [2018-11-14 17:13:15,404 INFO L136 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2018-11-14 17:13:15,412 INFO L148 ceAbstractionStarter]: Appying trace abstraction to program that has 1 error locations. [2018-11-14 17:13:15,425 INFO L257 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2018-11-14 17:13:15,460 INFO L133 ementStrategyFactory]: Using default assertion order modulation [2018-11-14 17:13:15,461 INFO L382 AbstractCegarLoop]: Interprodecural is true [2018-11-14 17:13:15,461 INFO L383 AbstractCegarLoop]: Hoare is true [2018-11-14 17:13:15,462 INFO L384 AbstractCegarLoop]: Compute interpolants for FPandBP [2018-11-14 17:13:15,462 INFO L385 AbstractCegarLoop]: Backedges is STRAIGHT_LINE [2018-11-14 17:13:15,462 INFO L386 AbstractCegarLoop]: Determinization is PREDICATE_ABSTRACTION [2018-11-14 17:13:15,462 INFO L387 AbstractCegarLoop]: Difference is false [2018-11-14 17:13:15,462 INFO L388 AbstractCegarLoop]: Minimize is MINIMIZE_SEVPA [2018-11-14 17:13:15,463 INFO L393 AbstractCegarLoop]: ======== Iteration 0==of CEGAR loop == AllErrorsAtOnce======== [2018-11-14 17:13:15,490 INFO L276 IsEmpty]: Start isEmpty. Operand 240 states. [2018-11-14 17:13:15,497 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 21 [2018-11-14 17:13:15,498 INFO L367 BasicCegarLoop]: Found error trace [2018-11-14 17:13:15,499 INFO L375 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-14 17:13:15,501 INFO L423 AbstractCegarLoop]: === Iteration 1 === [errorFnErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-14 17:13:15,507 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-14 17:13:15,508 INFO L82 PathProgramCache]: Analyzing trace with hash -1129426977, now seen corresponding path program 1 times [2018-11-14 17:13:15,510 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-14 17:13:15,511 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-14 17:13:15,566 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:13:15,566 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-14 17:13:15,567 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:13:15,662 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-14 17:13:15,957 INFO L256 TraceCheckUtils]: 0: Hoare triple {243#true} call ULTIMATE.init(); {243#true} is VALID [2018-11-14 17:13:15,961 INFO L273 TraceCheckUtils]: 1: Hoare triple {243#true} ~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 0;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0; {243#true} is VALID [2018-11-14 17:13:15,962 INFO L273 TraceCheckUtils]: 2: Hoare triple {243#true} assume true; {243#true} is VALID [2018-11-14 17:13:15,962 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {243#true} {243#true} #759#return; {243#true} is VALID [2018-11-14 17:13:15,963 INFO L256 TraceCheckUtils]: 4: Hoare triple {243#true} call #t~ret77 := main(); {243#true} is VALID [2018-11-14 17:13:15,978 INFO L273 TraceCheckUtils]: 5: Hoare triple {243#true} havoc ~status~1;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;~irp~0 := #t~nondet17;havoc #t~nondet17;havoc ~pirp~0;havoc ~pirp__IoStatus__Status~0;assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~irp_choice~0 := #t~nondet18;havoc #t~nondet18;assume -2147483648 <= #t~nondet19 && #t~nondet19 <= 2147483647;~devobj~0 := #t~nondet19;havoc #t~nondet19;havoc ~__cil_tmp8~0;~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 1;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0;~status~1 := 0;~pirp~0 := ~irp~0; {245#(<= 0 main_~status~1)} is VALID [2018-11-14 17:13:15,979 INFO L256 TraceCheckUtils]: 6: Hoare triple {245#(<= 0 main_~status~1)} call _BLAST_init(); {243#true} is VALID [2018-11-14 17:13:15,979 INFO L273 TraceCheckUtils]: 7: Hoare triple {243#true} ~UNLOADED~0 := 0;~NP~0 := 1;~DC~0 := 2;~SKIP1~0 := 3;~SKIP2~0 := 4;~MPR1~0 := 5;~MPR3~0 := 6;~IPC~0 := 7;~s~0 := ~UNLOADED~0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0; {243#true} is VALID [2018-11-14 17:13:15,979 INFO L273 TraceCheckUtils]: 8: Hoare triple {243#true} assume true; {243#true} is VALID [2018-11-14 17:13:15,994 INFO L268 TraceCheckUtils]: 9: Hoare quadruple {243#true} {245#(<= 0 main_~status~1)} #717#return; {245#(<= 0 main_~status~1)} is VALID [2018-11-14 17:13:16,004 INFO L273 TraceCheckUtils]: 10: Hoare triple {245#(<= 0 main_~status~1)} assume !(~status~1 >= 0); {244#false} is VALID [2018-11-14 17:13:16,005 INFO L273 TraceCheckUtils]: 11: Hoare triple {244#false} assume !(~pended~0 == 1); {244#false} is VALID [2018-11-14 17:13:16,005 INFO L273 TraceCheckUtils]: 12: Hoare triple {244#false} assume !(~pended~0 == 1); {244#false} is VALID [2018-11-14 17:13:16,005 INFO L273 TraceCheckUtils]: 13: Hoare triple {244#false} assume ~s~0 != ~UNLOADED~0; {244#false} is VALID [2018-11-14 17:13:16,006 INFO L273 TraceCheckUtils]: 14: Hoare triple {244#false} assume ~status~1 != -1; {244#false} is VALID [2018-11-14 17:13:16,006 INFO L273 TraceCheckUtils]: 15: Hoare triple {244#false} assume !(~s~0 != ~SKIP2~0); {244#false} is VALID [2018-11-14 17:13:16,006 INFO L273 TraceCheckUtils]: 16: Hoare triple {244#false} assume ~pended~0 == 1; {244#false} is VALID [2018-11-14 17:13:16,007 INFO L273 TraceCheckUtils]: 17: Hoare triple {244#false} assume ~status~1 != 259; {244#false} is VALID [2018-11-14 17:13:16,008 INFO L256 TraceCheckUtils]: 18: Hoare triple {244#false} call errorFn(); {244#false} is VALID [2018-11-14 17:13:16,008 INFO L273 TraceCheckUtils]: 19: Hoare triple {244#false} assume !false; {244#false} is VALID [2018-11-14 17:13:16,012 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-11-14 17:13:16,015 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-14 17:13:16,016 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2018-11-14 17:13:16,022 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 20 [2018-11-14 17:13:16,029 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-14 17:13:16,032 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 3 states. [2018-11-14 17:13:16,108 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 20 edges. 20 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:13:16,108 INFO L459 AbstractCegarLoop]: Interpolant automaton has 3 states [2018-11-14 17:13:16,116 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2018-11-14 17:13:16,116 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2018-11-14 17:13:16,118 INFO L87 Difference]: Start difference. First operand 240 states. Second operand 3 states. [2018-11-14 17:13:17,234 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:17,234 INFO L93 Difference]: Finished difference Result 390 states and 586 transitions. [2018-11-14 17:13:17,235 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2018-11-14 17:13:17,235 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 20 [2018-11-14 17:13:17,235 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-14 17:13:17,237 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 3 states. [2018-11-14 17:13:17,279 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 3 states to 3 states and 586 transitions. [2018-11-14 17:13:17,279 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 3 states. [2018-11-14 17:13:17,307 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 3 states to 3 states and 586 transitions. [2018-11-14 17:13:17,307 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 3 states and 586 transitions. [2018-11-14 17:13:18,408 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 586 edges. 586 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:13:18,437 INFO L225 Difference]: With dead ends: 390 [2018-11-14 17:13:18,437 INFO L226 Difference]: Without dead ends: 231 [2018-11-14 17:13:18,443 INFO L604 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2018-11-14 17:13:18,463 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 231 states. [2018-11-14 17:13:18,611 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 231 to 231. [2018-11-14 17:13:18,612 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-14 17:13:18,612 INFO L82 GeneralOperation]: Start isEquivalent. First operand 231 states. Second operand 231 states. [2018-11-14 17:13:18,613 INFO L74 IsIncluded]: Start isIncluded. First operand 231 states. Second operand 231 states. [2018-11-14 17:13:18,613 INFO L87 Difference]: Start difference. First operand 231 states. Second operand 231 states. [2018-11-14 17:13:18,632 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:18,632 INFO L93 Difference]: Finished difference Result 231 states and 326 transitions. [2018-11-14 17:13:18,632 INFO L276 IsEmpty]: Start isEmpty. Operand 231 states and 326 transitions. [2018-11-14 17:13:18,637 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:13:18,637 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:13:18,637 INFO L74 IsIncluded]: Start isIncluded. First operand 231 states. Second operand 231 states. [2018-11-14 17:13:18,638 INFO L87 Difference]: Start difference. First operand 231 states. Second operand 231 states. [2018-11-14 17:13:18,654 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:18,654 INFO L93 Difference]: Finished difference Result 231 states and 326 transitions. [2018-11-14 17:13:18,655 INFO L276 IsEmpty]: Start isEmpty. Operand 231 states and 326 transitions. [2018-11-14 17:13:18,658 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:13:18,658 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:13:18,658 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-14 17:13:18,658 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-14 17:13:18,659 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 231 states. [2018-11-14 17:13:18,675 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 231 states to 231 states and 326 transitions. [2018-11-14 17:13:18,677 INFO L78 Accepts]: Start accepts. Automaton has 231 states and 326 transitions. Word has length 20 [2018-11-14 17:13:18,677 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-14 17:13:18,677 INFO L480 AbstractCegarLoop]: Abstraction has 231 states and 326 transitions. [2018-11-14 17:13:18,678 INFO L481 AbstractCegarLoop]: Interpolant automaton has 3 states. [2018-11-14 17:13:18,678 INFO L276 IsEmpty]: Start isEmpty. Operand 231 states and 326 transitions. [2018-11-14 17:13:18,680 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 29 [2018-11-14 17:13:18,680 INFO L367 BasicCegarLoop]: Found error trace [2018-11-14 17:13:18,680 INFO L375 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-14 17:13:18,680 INFO L423 AbstractCegarLoop]: === Iteration 2 === [errorFnErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-14 17:13:18,681 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-14 17:13:18,681 INFO L82 PathProgramCache]: Analyzing trace with hash 1811427322, now seen corresponding path program 1 times [2018-11-14 17:13:18,681 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-14 17:13:18,681 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-14 17:13:18,683 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:13:18,683 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-14 17:13:18,683 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:13:18,777 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-14 17:13:18,995 INFO L256 TraceCheckUtils]: 0: Hoare triple {1553#true} call ULTIMATE.init(); {1553#true} is VALID [2018-11-14 17:13:18,996 INFO L273 TraceCheckUtils]: 1: Hoare triple {1553#true} ~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 0;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0; {1553#true} is VALID [2018-11-14 17:13:18,996 INFO L273 TraceCheckUtils]: 2: Hoare triple {1553#true} assume true; {1553#true} is VALID [2018-11-14 17:13:18,997 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {1553#true} {1553#true} #759#return; {1553#true} is VALID [2018-11-14 17:13:18,997 INFO L256 TraceCheckUtils]: 4: Hoare triple {1553#true} call #t~ret77 := main(); {1553#true} is VALID [2018-11-14 17:13:18,998 INFO L273 TraceCheckUtils]: 5: Hoare triple {1553#true} havoc ~status~1;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;~irp~0 := #t~nondet17;havoc #t~nondet17;havoc ~pirp~0;havoc ~pirp__IoStatus__Status~0;assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~irp_choice~0 := #t~nondet18;havoc #t~nondet18;assume -2147483648 <= #t~nondet19 && #t~nondet19 <= 2147483647;~devobj~0 := #t~nondet19;havoc #t~nondet19;havoc ~__cil_tmp8~0;~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 1;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0;~status~1 := 0;~pirp~0 := ~irp~0; {1553#true} is VALID [2018-11-14 17:13:18,998 INFO L256 TraceCheckUtils]: 6: Hoare triple {1553#true} call _BLAST_init(); {1553#true} is VALID [2018-11-14 17:13:18,998 INFO L273 TraceCheckUtils]: 7: Hoare triple {1553#true} ~UNLOADED~0 := 0;~NP~0 := 1;~DC~0 := 2;~SKIP1~0 := 3;~SKIP2~0 := 4;~MPR1~0 := 5;~MPR3~0 := 6;~IPC~0 := 7;~s~0 := ~UNLOADED~0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0; {1553#true} is VALID [2018-11-14 17:13:18,998 INFO L273 TraceCheckUtils]: 8: Hoare triple {1553#true} assume true; {1553#true} is VALID [2018-11-14 17:13:18,999 INFO L268 TraceCheckUtils]: 9: Hoare quadruple {1553#true} {1553#true} #717#return; {1553#true} is VALID [2018-11-14 17:13:19,000 INFO L273 TraceCheckUtils]: 10: Hoare triple {1553#true} assume ~status~1 >= 0;~s~0 := ~NP~0;~customIrp~0 := 0;~setEventCalled~0 := ~customIrp~0;~lowerDriverReturn~0 := ~setEventCalled~0;~compRegistered~0 := ~lowerDriverReturn~0;~pended~0 := ~compRegistered~0;~pirp__IoStatus__Status~0 := 0;~myStatus~0 := 0; {1555#(= ~s~0 ~NP~0)} is VALID [2018-11-14 17:13:19,001 INFO L273 TraceCheckUtils]: 11: Hoare triple {1555#(= ~s~0 ~NP~0)} assume !(~irp_choice~0 == 0); {1555#(= ~s~0 ~NP~0)} is VALID [2018-11-14 17:13:19,001 INFO L256 TraceCheckUtils]: 12: Hoare triple {1555#(= ~s~0 ~NP~0)} call stub_driver_init(); {1553#true} is VALID [2018-11-14 17:13:19,001 INFO L273 TraceCheckUtils]: 13: Hoare triple {1553#true} ~s~0 := ~NP~0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0; {1555#(= ~s~0 ~NP~0)} is VALID [2018-11-14 17:13:19,002 INFO L273 TraceCheckUtils]: 14: Hoare triple {1555#(= ~s~0 ~NP~0)} assume true; {1555#(= ~s~0 ~NP~0)} is VALID [2018-11-14 17:13:19,003 INFO L268 TraceCheckUtils]: 15: Hoare quadruple {1555#(= ~s~0 ~NP~0)} {1555#(= ~s~0 ~NP~0)} #719#return; {1555#(= ~s~0 ~NP~0)} is VALID [2018-11-14 17:13:19,003 INFO L273 TraceCheckUtils]: 16: Hoare triple {1555#(= ~s~0 ~NP~0)} assume !(~status~1 < 0);havoc ~tmp_ndt_1~0;assume -2147483648 <= #t~nondet20 && #t~nondet20 <= 2147483647;~tmp_ndt_1~0 := #t~nondet20;havoc #t~nondet20; {1555#(= ~s~0 ~NP~0)} is VALID [2018-11-14 17:13:19,004 INFO L273 TraceCheckUtils]: 17: Hoare triple {1555#(= ~s~0 ~NP~0)} assume ~tmp_ndt_1~0 == 0; {1555#(= ~s~0 ~NP~0)} is VALID [2018-11-14 17:13:19,005 INFO L256 TraceCheckUtils]: 18: Hoare triple {1555#(= ~s~0 ~NP~0)} call #t~ret25 := KbFilter_CreateClose(~devobj~0, ~pirp~0); {1555#(= ~s~0 ~NP~0)} is VALID [2018-11-14 17:13:19,006 INFO L273 TraceCheckUtils]: 19: Hoare triple {1555#(= ~s~0 ~NP~0)} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;assume -2147483648 <= #t~nondet37 && #t~nondet37 <= 2147483647;~irpStack__MajorFunction~0 := #t~nondet37;havoc #t~nondet37;assume -2147483648 <= #t~nondet38 && #t~nondet38 <= 2147483647;~devExt__UpperConnectData__ClassService~0 := #t~nondet38;havoc #t~nondet38;havoc ~Irp__IoStatus__Status~1;havoc ~status~2;havoc ~tmp~0;~status~2 := ~myStatus~0; {1555#(= ~s~0 ~NP~0)} is VALID [2018-11-14 17:13:19,007 INFO L273 TraceCheckUtils]: 20: Hoare triple {1555#(= ~s~0 ~NP~0)} assume ~irpStack__MajorFunction~0 == 0; {1555#(= ~s~0 ~NP~0)} is VALID [2018-11-14 17:13:19,007 INFO L273 TraceCheckUtils]: 21: Hoare triple {1555#(= ~s~0 ~NP~0)} assume ~devExt__UpperConnectData__ClassService~0 == 0;~status~2 := -1073741436; {1555#(= ~s~0 ~NP~0)} is VALID [2018-11-14 17:13:19,008 INFO L273 TraceCheckUtils]: 22: Hoare triple {1555#(= ~s~0 ~NP~0)} ~Irp__IoStatus__Status~1 := ~status~2;~myStatus~0 := ~status~2; {1555#(= ~s~0 ~NP~0)} is VALID [2018-11-14 17:13:19,009 INFO L256 TraceCheckUtils]: 23: Hoare triple {1555#(= ~s~0 ~NP~0)} call #t~ret39 := KbFilter_DispatchPassThrough(~DeviceObject, ~Irp); {1555#(= ~s~0 ~NP~0)} is VALID [2018-11-14 17:13:19,010 INFO L273 TraceCheckUtils]: 24: Hoare triple {1555#(= ~s~0 ~NP~0)} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;assume -2147483648 <= #t~nondet40 && #t~nondet40 <= 2147483647;~Irp__Tail__Overlay__CurrentStackLocation~1 := #t~nondet40;havoc #t~nondet40;assume -2147483648 <= #t~nondet41 && #t~nondet41 <= 2147483647;~Irp__CurrentLocation~1 := #t~nondet41;havoc #t~nondet41;assume -2147483648 <= #t~nondet42 && #t~nondet42 <= 2147483647;~DeviceObject__DeviceExtension__TopOfStack~0 := #t~nondet42;havoc #t~nondet42;havoc ~irpStack~1;havoc ~tmp~1;~irpStack~1 := ~Irp__Tail__Overlay__CurrentStackLocation~1; {1555#(= ~s~0 ~NP~0)} is VALID [2018-11-14 17:13:19,011 INFO L273 TraceCheckUtils]: 25: Hoare triple {1555#(= ~s~0 ~NP~0)} assume !(~s~0 == ~NP~0); {1554#false} is VALID [2018-11-14 17:13:19,012 INFO L256 TraceCheckUtils]: 26: Hoare triple {1554#false} call errorFn(); {1554#false} is VALID [2018-11-14 17:13:19,012 INFO L273 TraceCheckUtils]: 27: Hoare triple {1554#false} assume !false; {1554#false} is VALID [2018-11-14 17:13:19,018 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-11-14 17:13:19,018 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-14 17:13:19,019 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2018-11-14 17:13:19,020 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 28 [2018-11-14 17:13:19,021 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-14 17:13:19,021 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 3 states. [2018-11-14 17:13:19,133 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 28 edges. 28 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:13:19,134 INFO L459 AbstractCegarLoop]: Interpolant automaton has 3 states [2018-11-14 17:13:19,134 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2018-11-14 17:13:19,134 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2018-11-14 17:13:19,135 INFO L87 Difference]: Start difference. First operand 231 states and 326 transitions. Second operand 3 states. [2018-11-14 17:13:20,800 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:20,800 INFO L93 Difference]: Finished difference Result 375 states and 514 transitions. [2018-11-14 17:13:20,800 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2018-11-14 17:13:20,801 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 28 [2018-11-14 17:13:20,801 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-14 17:13:20,801 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 3 states. [2018-11-14 17:13:20,810 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 3 states to 3 states and 514 transitions. [2018-11-14 17:13:20,810 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 3 states. [2018-11-14 17:13:20,819 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 3 states to 3 states and 514 transitions. [2018-11-14 17:13:20,819 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 3 states and 514 transitions. [2018-11-14 17:13:21,617 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 514 edges. 514 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:13:21,631 INFO L225 Difference]: With dead ends: 375 [2018-11-14 17:13:21,631 INFO L226 Difference]: Without dead ends: 314 [2018-11-14 17:13:21,634 INFO L604 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 3 SyntacticMatches, 3 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2018-11-14 17:13:21,635 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 314 states. [2018-11-14 17:13:21,779 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 314 to 298. [2018-11-14 17:13:21,779 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-14 17:13:21,779 INFO L82 GeneralOperation]: Start isEquivalent. First operand 314 states. Second operand 298 states. [2018-11-14 17:13:21,780 INFO L74 IsIncluded]: Start isIncluded. First operand 314 states. Second operand 298 states. [2018-11-14 17:13:21,780 INFO L87 Difference]: Start difference. First operand 314 states. Second operand 298 states. [2018-11-14 17:13:21,795 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:21,795 INFO L93 Difference]: Finished difference Result 314 states and 427 transitions. [2018-11-14 17:13:21,795 INFO L276 IsEmpty]: Start isEmpty. Operand 314 states and 427 transitions. [2018-11-14 17:13:21,797 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:13:21,797 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:13:21,797 INFO L74 IsIncluded]: Start isIncluded. First operand 298 states. Second operand 314 states. [2018-11-14 17:13:21,798 INFO L87 Difference]: Start difference. First operand 298 states. Second operand 314 states. [2018-11-14 17:13:21,813 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:21,813 INFO L93 Difference]: Finished difference Result 314 states and 427 transitions. [2018-11-14 17:13:21,813 INFO L276 IsEmpty]: Start isEmpty. Operand 314 states and 427 transitions. [2018-11-14 17:13:21,815 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:13:21,815 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:13:21,815 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-14 17:13:21,815 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-14 17:13:21,815 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 298 states. [2018-11-14 17:13:21,829 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 298 states to 298 states and 408 transitions. [2018-11-14 17:13:21,830 INFO L78 Accepts]: Start accepts. Automaton has 298 states and 408 transitions. Word has length 28 [2018-11-14 17:13:21,830 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-14 17:13:21,830 INFO L480 AbstractCegarLoop]: Abstraction has 298 states and 408 transitions. [2018-11-14 17:13:21,830 INFO L481 AbstractCegarLoop]: Interpolant automaton has 3 states. [2018-11-14 17:13:21,830 INFO L276 IsEmpty]: Start isEmpty. Operand 298 states and 408 transitions. [2018-11-14 17:13:21,831 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 29 [2018-11-14 17:13:21,831 INFO L367 BasicCegarLoop]: Found error trace [2018-11-14 17:13:21,831 INFO L375 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-14 17:13:21,832 INFO L423 AbstractCegarLoop]: === Iteration 3 === [errorFnErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-14 17:13:21,832 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-14 17:13:21,832 INFO L82 PathProgramCache]: Analyzing trace with hash 439620198, now seen corresponding path program 1 times [2018-11-14 17:13:21,832 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-14 17:13:21,832 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-14 17:13:21,833 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:13:21,833 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-14 17:13:21,834 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:13:21,856 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-14 17:13:21,977 INFO L256 TraceCheckUtils]: 0: Hoare triple {3087#true} call ULTIMATE.init(); {3087#true} is VALID [2018-11-14 17:13:21,977 INFO L273 TraceCheckUtils]: 1: Hoare triple {3087#true} ~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 0;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0; {3087#true} is VALID [2018-11-14 17:13:21,978 INFO L273 TraceCheckUtils]: 2: Hoare triple {3087#true} assume true; {3087#true} is VALID [2018-11-14 17:13:21,978 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {3087#true} {3087#true} #759#return; {3087#true} is VALID [2018-11-14 17:13:21,978 INFO L256 TraceCheckUtils]: 4: Hoare triple {3087#true} call #t~ret77 := main(); {3087#true} is VALID [2018-11-14 17:13:21,978 INFO L273 TraceCheckUtils]: 5: Hoare triple {3087#true} havoc ~status~1;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;~irp~0 := #t~nondet17;havoc #t~nondet17;havoc ~pirp~0;havoc ~pirp__IoStatus__Status~0;assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~irp_choice~0 := #t~nondet18;havoc #t~nondet18;assume -2147483648 <= #t~nondet19 && #t~nondet19 <= 2147483647;~devobj~0 := #t~nondet19;havoc #t~nondet19;havoc ~__cil_tmp8~0;~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 1;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0;~status~1 := 0;~pirp~0 := ~irp~0; {3087#true} is VALID [2018-11-14 17:13:21,979 INFO L256 TraceCheckUtils]: 6: Hoare triple {3087#true} call _BLAST_init(); {3087#true} is VALID [2018-11-14 17:13:21,979 INFO L273 TraceCheckUtils]: 7: Hoare triple {3087#true} ~UNLOADED~0 := 0;~NP~0 := 1;~DC~0 := 2;~SKIP1~0 := 3;~SKIP2~0 := 4;~MPR1~0 := 5;~MPR3~0 := 6;~IPC~0 := 7;~s~0 := ~UNLOADED~0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0; {3087#true} is VALID [2018-11-14 17:13:21,979 INFO L273 TraceCheckUtils]: 8: Hoare triple {3087#true} assume true; {3087#true} is VALID [2018-11-14 17:13:21,980 INFO L268 TraceCheckUtils]: 9: Hoare quadruple {3087#true} {3087#true} #717#return; {3087#true} is VALID [2018-11-14 17:13:21,980 INFO L273 TraceCheckUtils]: 10: Hoare triple {3087#true} assume ~status~1 >= 0;~s~0 := ~NP~0;~customIrp~0 := 0;~setEventCalled~0 := ~customIrp~0;~lowerDriverReturn~0 := ~setEventCalled~0;~compRegistered~0 := ~lowerDriverReturn~0;~pended~0 := ~compRegistered~0;~pirp__IoStatus__Status~0 := 0;~myStatus~0 := 0; {3087#true} is VALID [2018-11-14 17:13:21,980 INFO L273 TraceCheckUtils]: 11: Hoare triple {3087#true} assume !(~irp_choice~0 == 0); {3087#true} is VALID [2018-11-14 17:13:21,980 INFO L256 TraceCheckUtils]: 12: Hoare triple {3087#true} call stub_driver_init(); {3087#true} is VALID [2018-11-14 17:13:21,985 INFO L273 TraceCheckUtils]: 13: Hoare triple {3087#true} ~s~0 := ~NP~0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0; {3089#(= 0 ~compRegistered~0)} is VALID [2018-11-14 17:13:21,987 INFO L273 TraceCheckUtils]: 14: Hoare triple {3089#(= 0 ~compRegistered~0)} assume true; {3089#(= 0 ~compRegistered~0)} is VALID [2018-11-14 17:13:21,988 INFO L268 TraceCheckUtils]: 15: Hoare quadruple {3089#(= 0 ~compRegistered~0)} {3087#true} #719#return; {3089#(= 0 ~compRegistered~0)} is VALID [2018-11-14 17:13:21,988 INFO L273 TraceCheckUtils]: 16: Hoare triple {3089#(= 0 ~compRegistered~0)} assume !(~status~1 < 0);havoc ~tmp_ndt_1~0;assume -2147483648 <= #t~nondet20 && #t~nondet20 <= 2147483647;~tmp_ndt_1~0 := #t~nondet20;havoc #t~nondet20; {3089#(= 0 ~compRegistered~0)} is VALID [2018-11-14 17:13:21,989 INFO L273 TraceCheckUtils]: 17: Hoare triple {3089#(= 0 ~compRegistered~0)} assume !(~tmp_ndt_1~0 == 0);havoc ~tmp_ndt_2~0;assume -2147483648 <= #t~nondet21 && #t~nondet21 <= 2147483647;~tmp_ndt_2~0 := #t~nondet21;havoc #t~nondet21; {3089#(= 0 ~compRegistered~0)} is VALID [2018-11-14 17:13:21,992 INFO L273 TraceCheckUtils]: 18: Hoare triple {3089#(= 0 ~compRegistered~0)} assume !(~tmp_ndt_2~0 == 1);havoc ~tmp_ndt_3~0;assume -2147483648 <= #t~nondet22 && #t~nondet22 <= 2147483647;~tmp_ndt_3~0 := #t~nondet22;havoc #t~nondet22; {3089#(= 0 ~compRegistered~0)} is VALID [2018-11-14 17:13:21,992 INFO L273 TraceCheckUtils]: 19: Hoare triple {3089#(= 0 ~compRegistered~0)} assume ~tmp_ndt_3~0 == 3; {3089#(= 0 ~compRegistered~0)} is VALID [2018-11-14 17:13:21,993 INFO L256 TraceCheckUtils]: 20: Hoare triple {3089#(= 0 ~compRegistered~0)} call #t~ret27 := KbFilter_PnP(~devobj~0, ~pirp~0); {3089#(= 0 ~compRegistered~0)} is VALID [2018-11-14 17:13:22,003 INFO L273 TraceCheckUtils]: 21: Hoare triple {3089#(= 0 ~compRegistered~0)} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;havoc ~devExt~0;havoc ~irpStack~0;havoc ~status~0;assume -2147483648 <= #t~nondet0 && #t~nondet0 <= 2147483647;~event~0 := #t~nondet0;havoc #t~nondet0;assume -2147483648 <= #t~nondet1 && #t~nondet1 <= 2147483647;~DeviceObject__DeviceExtension~0 := #t~nondet1;havoc #t~nondet1;assume -2147483648 <= #t~nondet2 && #t~nondet2 <= 2147483647;~Irp__Tail__Overlay__CurrentStackLocation~0 := #t~nondet2;havoc #t~nondet2;assume -2147483648 <= #t~nondet3 && #t~nondet3 <= 2147483647;~irpStack__MinorFunction~0 := #t~nondet3;havoc #t~nondet3;assume -2147483648 <= #t~nondet4 && #t~nondet4 <= 2147483647;~devExt__TopOfStack~0 := #t~nondet4;havoc #t~nondet4;havoc ~devExt__Started~0;havoc ~devExt__Removed~0;havoc ~devExt__SurpriseRemoved~0;havoc ~Irp__IoStatus__Status~0;havoc ~Irp__IoStatus__Information~0;assume -2147483648 <= #t~nondet5 && #t~nondet5 <= 2147483647;~Irp__CurrentLocation~0 := #t~nondet5;havoc #t~nondet5;havoc ~irpSp~0;havoc ~nextIrpSp~0;havoc ~nextIrpSp__Control~0;havoc ~irpSp___0~0;havoc ~irpSp__Context~0;havoc ~irpSp__Control~0;havoc ~__cil_tmp23~0;~status~0 := 0;~devExt~0 := ~DeviceObject__DeviceExtension~0;~irpStack~0 := ~Irp__Tail__Overlay__CurrentStackLocation~0; {3089#(= 0 ~compRegistered~0)} is VALID [2018-11-14 17:13:22,011 INFO L273 TraceCheckUtils]: 22: Hoare triple {3089#(= 0 ~compRegistered~0)} assume ~irpStack__MinorFunction~0 == 0; {3089#(= 0 ~compRegistered~0)} is VALID [2018-11-14 17:13:22,011 INFO L273 TraceCheckUtils]: 23: Hoare triple {3089#(= 0 ~compRegistered~0)} ~irpSp~0 := ~Irp__Tail__Overlay__CurrentStackLocation~0;~nextIrpSp~0 := ~Irp__Tail__Overlay__CurrentStackLocation~0 - 1;~nextIrpSp__Control~0 := 0; {3089#(= 0 ~compRegistered~0)} is VALID [2018-11-14 17:13:22,012 INFO L273 TraceCheckUtils]: 24: Hoare triple {3089#(= 0 ~compRegistered~0)} assume !(~s~0 != ~NP~0); {3089#(= 0 ~compRegistered~0)} is VALID [2018-11-14 17:13:22,012 INFO L273 TraceCheckUtils]: 25: Hoare triple {3089#(= 0 ~compRegistered~0)} assume ~compRegistered~0 != 0; {3088#false} is VALID [2018-11-14 17:13:22,012 INFO L256 TraceCheckUtils]: 26: Hoare triple {3088#false} call errorFn(); {3088#false} is VALID [2018-11-14 17:13:22,013 INFO L273 TraceCheckUtils]: 27: Hoare triple {3088#false} assume !false; {3088#false} is VALID [2018-11-14 17:13:22,014 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-11-14 17:13:22,014 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-14 17:13:22,014 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2018-11-14 17:13:22,015 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 28 [2018-11-14 17:13:22,015 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-14 17:13:22,015 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 3 states. [2018-11-14 17:13:22,141 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 28 edges. 28 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:13:22,141 INFO L459 AbstractCegarLoop]: Interpolant automaton has 3 states [2018-11-14 17:13:22,141 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2018-11-14 17:13:22,142 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2018-11-14 17:13:22,142 INFO L87 Difference]: Start difference. First operand 298 states and 408 transitions. Second operand 3 states. [2018-11-14 17:13:23,235 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:23,235 INFO L93 Difference]: Finished difference Result 481 states and 640 transitions. [2018-11-14 17:13:23,236 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2018-11-14 17:13:23,236 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 28 [2018-11-14 17:13:23,236 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-14 17:13:23,236 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 3 states. [2018-11-14 17:13:23,244 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 3 states to 3 states and 501 transitions. [2018-11-14 17:13:23,244 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 3 states. [2018-11-14 17:13:23,251 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 3 states to 3 states and 501 transitions. [2018-11-14 17:13:23,251 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 3 states and 501 transitions. [2018-11-14 17:13:23,899 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 501 edges. 501 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:13:23,914 INFO L225 Difference]: With dead ends: 481 [2018-11-14 17:13:23,915 INFO L226 Difference]: Without dead ends: 362 [2018-11-14 17:13:23,916 INFO L604 BasicCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2018-11-14 17:13:23,916 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 362 states. [2018-11-14 17:13:24,084 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 362 to 338. [2018-11-14 17:13:24,084 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-14 17:13:24,084 INFO L82 GeneralOperation]: Start isEquivalent. First operand 362 states. Second operand 338 states. [2018-11-14 17:13:24,084 INFO L74 IsIncluded]: Start isIncluded. First operand 362 states. Second operand 338 states. [2018-11-14 17:13:24,085 INFO L87 Difference]: Start difference. First operand 362 states. Second operand 338 states. [2018-11-14 17:13:24,102 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:24,102 INFO L93 Difference]: Finished difference Result 362 states and 487 transitions. [2018-11-14 17:13:24,103 INFO L276 IsEmpty]: Start isEmpty. Operand 362 states and 487 transitions. [2018-11-14 17:13:24,104 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:13:24,104 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:13:24,104 INFO L74 IsIncluded]: Start isIncluded. First operand 338 states. Second operand 362 states. [2018-11-14 17:13:24,105 INFO L87 Difference]: Start difference. First operand 338 states. Second operand 362 states. [2018-11-14 17:13:24,121 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:24,121 INFO L93 Difference]: Finished difference Result 362 states and 487 transitions. [2018-11-14 17:13:24,121 INFO L276 IsEmpty]: Start isEmpty. Operand 362 states and 487 transitions. [2018-11-14 17:13:24,123 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:13:24,123 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:13:24,123 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-14 17:13:24,124 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-14 17:13:24,124 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 338 states. [2018-11-14 17:13:24,139 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 338 states to 338 states and 459 transitions. [2018-11-14 17:13:24,140 INFO L78 Accepts]: Start accepts. Automaton has 338 states and 459 transitions. Word has length 28 [2018-11-14 17:13:24,140 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-14 17:13:24,140 INFO L480 AbstractCegarLoop]: Abstraction has 338 states and 459 transitions. [2018-11-14 17:13:24,140 INFO L481 AbstractCegarLoop]: Interpolant automaton has 3 states. [2018-11-14 17:13:24,141 INFO L276 IsEmpty]: Start isEmpty. Operand 338 states and 459 transitions. [2018-11-14 17:13:24,142 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 39 [2018-11-14 17:13:24,142 INFO L367 BasicCegarLoop]: Found error trace [2018-11-14 17:13:24,142 INFO L375 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-14 17:13:24,142 INFO L423 AbstractCegarLoop]: === Iteration 4 === [errorFnErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-14 17:13:24,143 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-14 17:13:24,143 INFO L82 PathProgramCache]: Analyzing trace with hash -1607848921, now seen corresponding path program 1 times [2018-11-14 17:13:24,143 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-14 17:13:24,143 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-14 17:13:24,144 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:13:24,144 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-14 17:13:24,144 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:13:24,170 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-14 17:13:24,252 INFO L256 TraceCheckUtils]: 0: Hoare triple {4890#true} call ULTIMATE.init(); {4890#true} is VALID [2018-11-14 17:13:24,252 INFO L273 TraceCheckUtils]: 1: Hoare triple {4890#true} ~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 0;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0; {4890#true} is VALID [2018-11-14 17:13:24,253 INFO L273 TraceCheckUtils]: 2: Hoare triple {4890#true} assume true; {4890#true} is VALID [2018-11-14 17:13:24,253 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {4890#true} {4890#true} #759#return; {4890#true} is VALID [2018-11-14 17:13:24,253 INFO L256 TraceCheckUtils]: 4: Hoare triple {4890#true} call #t~ret77 := main(); {4890#true} is VALID [2018-11-14 17:13:24,253 INFO L273 TraceCheckUtils]: 5: Hoare triple {4890#true} havoc ~status~1;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;~irp~0 := #t~nondet17;havoc #t~nondet17;havoc ~pirp~0;havoc ~pirp__IoStatus__Status~0;assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~irp_choice~0 := #t~nondet18;havoc #t~nondet18;assume -2147483648 <= #t~nondet19 && #t~nondet19 <= 2147483647;~devobj~0 := #t~nondet19;havoc #t~nondet19;havoc ~__cil_tmp8~0;~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 1;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0;~status~1 := 0;~pirp~0 := ~irp~0; {4890#true} is VALID [2018-11-14 17:13:24,254 INFO L256 TraceCheckUtils]: 6: Hoare triple {4890#true} call _BLAST_init(); {4890#true} is VALID [2018-11-14 17:13:24,254 INFO L273 TraceCheckUtils]: 7: Hoare triple {4890#true} ~UNLOADED~0 := 0;~NP~0 := 1;~DC~0 := 2;~SKIP1~0 := 3;~SKIP2~0 := 4;~MPR1~0 := 5;~MPR3~0 := 6;~IPC~0 := 7;~s~0 := ~UNLOADED~0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0; {4890#true} is VALID [2018-11-14 17:13:24,254 INFO L273 TraceCheckUtils]: 8: Hoare triple {4890#true} assume true; {4890#true} is VALID [2018-11-14 17:13:24,254 INFO L268 TraceCheckUtils]: 9: Hoare quadruple {4890#true} {4890#true} #717#return; {4890#true} is VALID [2018-11-14 17:13:24,255 INFO L273 TraceCheckUtils]: 10: Hoare triple {4890#true} assume ~status~1 >= 0;~s~0 := ~NP~0;~customIrp~0 := 0;~setEventCalled~0 := ~customIrp~0;~lowerDriverReturn~0 := ~setEventCalled~0;~compRegistered~0 := ~lowerDriverReturn~0;~pended~0 := ~compRegistered~0;~pirp__IoStatus__Status~0 := 0;~myStatus~0 := 0; {4890#true} is VALID [2018-11-14 17:13:24,255 INFO L273 TraceCheckUtils]: 11: Hoare triple {4890#true} assume !(~irp_choice~0 == 0); {4890#true} is VALID [2018-11-14 17:13:24,255 INFO L256 TraceCheckUtils]: 12: Hoare triple {4890#true} call stub_driver_init(); {4890#true} is VALID [2018-11-14 17:13:24,255 INFO L273 TraceCheckUtils]: 13: Hoare triple {4890#true} ~s~0 := ~NP~0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0; {4890#true} is VALID [2018-11-14 17:13:24,256 INFO L273 TraceCheckUtils]: 14: Hoare triple {4890#true} assume true; {4890#true} is VALID [2018-11-14 17:13:24,256 INFO L268 TraceCheckUtils]: 15: Hoare quadruple {4890#true} {4890#true} #719#return; {4890#true} is VALID [2018-11-14 17:13:24,256 INFO L273 TraceCheckUtils]: 16: Hoare triple {4890#true} assume !(~status~1 < 0);havoc ~tmp_ndt_1~0;assume -2147483648 <= #t~nondet20 && #t~nondet20 <= 2147483647;~tmp_ndt_1~0 := #t~nondet20;havoc #t~nondet20; {4890#true} is VALID [2018-11-14 17:13:24,256 INFO L273 TraceCheckUtils]: 17: Hoare triple {4890#true} assume ~tmp_ndt_1~0 == 0; {4890#true} is VALID [2018-11-14 17:13:24,257 INFO L256 TraceCheckUtils]: 18: Hoare triple {4890#true} call #t~ret25 := KbFilter_CreateClose(~devobj~0, ~pirp~0); {4890#true} is VALID [2018-11-14 17:13:24,257 INFO L273 TraceCheckUtils]: 19: Hoare triple {4890#true} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;assume -2147483648 <= #t~nondet37 && #t~nondet37 <= 2147483647;~irpStack__MajorFunction~0 := #t~nondet37;havoc #t~nondet37;assume -2147483648 <= #t~nondet38 && #t~nondet38 <= 2147483647;~devExt__UpperConnectData__ClassService~0 := #t~nondet38;havoc #t~nondet38;havoc ~Irp__IoStatus__Status~1;havoc ~status~2;havoc ~tmp~0;~status~2 := ~myStatus~0; {4890#true} is VALID [2018-11-14 17:13:24,257 INFO L273 TraceCheckUtils]: 20: Hoare triple {4890#true} assume ~irpStack__MajorFunction~0 == 0; {4890#true} is VALID [2018-11-14 17:13:24,257 INFO L273 TraceCheckUtils]: 21: Hoare triple {4890#true} assume ~devExt__UpperConnectData__ClassService~0 == 0;~status~2 := -1073741436; {4890#true} is VALID [2018-11-14 17:13:24,257 INFO L273 TraceCheckUtils]: 22: Hoare triple {4890#true} ~Irp__IoStatus__Status~1 := ~status~2;~myStatus~0 := ~status~2; {4890#true} is VALID [2018-11-14 17:13:24,258 INFO L256 TraceCheckUtils]: 23: Hoare triple {4890#true} call #t~ret39 := KbFilter_DispatchPassThrough(~DeviceObject, ~Irp); {4890#true} is VALID [2018-11-14 17:13:24,258 INFO L273 TraceCheckUtils]: 24: Hoare triple {4890#true} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;assume -2147483648 <= #t~nondet40 && #t~nondet40 <= 2147483647;~Irp__Tail__Overlay__CurrentStackLocation~1 := #t~nondet40;havoc #t~nondet40;assume -2147483648 <= #t~nondet41 && #t~nondet41 <= 2147483647;~Irp__CurrentLocation~1 := #t~nondet41;havoc #t~nondet41;assume -2147483648 <= #t~nondet42 && #t~nondet42 <= 2147483647;~DeviceObject__DeviceExtension__TopOfStack~0 := #t~nondet42;havoc #t~nondet42;havoc ~irpStack~1;havoc ~tmp~1;~irpStack~1 := ~Irp__Tail__Overlay__CurrentStackLocation~1; {4890#true} is VALID [2018-11-14 17:13:24,259 INFO L273 TraceCheckUtils]: 25: Hoare triple {4890#true} assume ~s~0 == ~NP~0;~s~0 := ~SKIP1~0; {4892#(= ~s~0 ~SKIP1~0)} is VALID [2018-11-14 17:13:24,259 INFO L273 TraceCheckUtils]: 26: Hoare triple {4892#(= ~s~0 ~SKIP1~0)} #t~post43 := ~Irp__CurrentLocation~1;~Irp__CurrentLocation~1 := #t~post43 + 1;havoc #t~post43;#t~post44 := ~Irp__Tail__Overlay__CurrentStackLocation~1;~Irp__Tail__Overlay__CurrentStackLocation~1 := #t~post44 + 1;havoc #t~post44; {4892#(= ~s~0 ~SKIP1~0)} is VALID [2018-11-14 17:13:24,261 INFO L256 TraceCheckUtils]: 27: Hoare triple {4892#(= ~s~0 ~SKIP1~0)} call #t~ret45 := IofCallDriver(~DeviceObject__DeviceExtension__TopOfStack~0, ~Irp); {4892#(= ~s~0 ~SKIP1~0)} is VALID [2018-11-14 17:13:24,266 INFO L273 TraceCheckUtils]: 28: Hoare triple {4892#(= ~s~0 ~SKIP1~0)} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;havoc ~returnVal2~0;havoc ~compRetStatus~0;assume -2147483648 <= #t~nondet30 && #t~nondet30 <= 2147483647;~lcontext~0 := #t~nondet30;havoc #t~nondet30;havoc ~__cil_tmp7~0; {4892#(= ~s~0 ~SKIP1~0)} is VALID [2018-11-14 17:13:24,266 INFO L273 TraceCheckUtils]: 29: Hoare triple {4892#(= ~s~0 ~SKIP1~0)} assume !(~compRegistered~0 != 0); {4892#(= ~s~0 ~SKIP1~0)} is VALID [2018-11-14 17:13:24,267 INFO L273 TraceCheckUtils]: 30: Hoare triple {4892#(= ~s~0 ~SKIP1~0)} havoc ~tmp_ndt_6~0;assume -2147483648 <= #t~nondet32 && #t~nondet32 <= 2147483647;~tmp_ndt_6~0 := #t~nondet32;havoc #t~nondet32; {4892#(= ~s~0 ~SKIP1~0)} is VALID [2018-11-14 17:13:24,270 INFO L273 TraceCheckUtils]: 31: Hoare triple {4892#(= ~s~0 ~SKIP1~0)} assume ~tmp_ndt_6~0 == 0; {4892#(= ~s~0 ~SKIP1~0)} is VALID [2018-11-14 17:13:24,272 INFO L273 TraceCheckUtils]: 32: Hoare triple {4892#(= ~s~0 ~SKIP1~0)} ~returnVal2~0 := 0; {4892#(= ~s~0 ~SKIP1~0)} is VALID [2018-11-14 17:13:24,272 INFO L273 TraceCheckUtils]: 33: Hoare triple {4892#(= ~s~0 ~SKIP1~0)} assume !(~s~0 == ~NP~0); {4892#(= ~s~0 ~SKIP1~0)} is VALID [2018-11-14 17:13:24,274 INFO L273 TraceCheckUtils]: 34: Hoare triple {4892#(= ~s~0 ~SKIP1~0)} assume !(~s~0 == ~MPR1~0); {4892#(= ~s~0 ~SKIP1~0)} is VALID [2018-11-14 17:13:24,274 INFO L273 TraceCheckUtils]: 35: Hoare triple {4892#(= ~s~0 ~SKIP1~0)} assume !(~s~0 == ~SKIP1~0); {4891#false} is VALID [2018-11-14 17:13:24,274 INFO L256 TraceCheckUtils]: 36: Hoare triple {4891#false} call errorFn(); {4891#false} is VALID [2018-11-14 17:13:24,274 INFO L273 TraceCheckUtils]: 37: Hoare triple {4891#false} assume !false; {4891#false} is VALID [2018-11-14 17:13:24,276 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-11-14 17:13:24,276 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-14 17:13:24,276 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2018-11-14 17:13:24,276 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 38 [2018-11-14 17:13:24,277 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-14 17:13:24,277 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 3 states. [2018-11-14 17:13:24,319 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 38 edges. 38 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:13:24,319 INFO L459 AbstractCegarLoop]: Interpolant automaton has 3 states [2018-11-14 17:13:24,320 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2018-11-14 17:13:24,320 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2018-11-14 17:13:24,320 INFO L87 Difference]: Start difference. First operand 338 states and 459 transitions. Second operand 3 states. [2018-11-14 17:13:25,510 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:25,510 INFO L93 Difference]: Finished difference Result 341 states and 461 transitions. [2018-11-14 17:13:25,510 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2018-11-14 17:13:25,510 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 38 [2018-11-14 17:13:25,511 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-14 17:13:25,511 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 3 states. [2018-11-14 17:13:25,516 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 3 states to 3 states and 322 transitions. [2018-11-14 17:13:25,517 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 3 states. [2018-11-14 17:13:25,521 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 3 states to 3 states and 322 transitions. [2018-11-14 17:13:25,522 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 3 states and 322 transitions. [2018-11-14 17:13:25,906 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 322 edges. 322 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:13:25,918 INFO L225 Difference]: With dead ends: 341 [2018-11-14 17:13:25,918 INFO L226 Difference]: Without dead ends: 337 [2018-11-14 17:13:25,919 INFO L604 BasicCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2018-11-14 17:13:25,919 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 337 states. [2018-11-14 17:13:26,215 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 337 to 337. [2018-11-14 17:13:26,215 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-14 17:13:26,215 INFO L82 GeneralOperation]: Start isEquivalent. First operand 337 states. Second operand 337 states. [2018-11-14 17:13:26,215 INFO L74 IsIncluded]: Start isIncluded. First operand 337 states. Second operand 337 states. [2018-11-14 17:13:26,215 INFO L87 Difference]: Start difference. First operand 337 states. Second operand 337 states. [2018-11-14 17:13:26,230 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:26,230 INFO L93 Difference]: Finished difference Result 337 states and 456 transitions. [2018-11-14 17:13:26,230 INFO L276 IsEmpty]: Start isEmpty. Operand 337 states and 456 transitions. [2018-11-14 17:13:26,232 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:13:26,232 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:13:26,232 INFO L74 IsIncluded]: Start isIncluded. First operand 337 states. Second operand 337 states. [2018-11-14 17:13:26,232 INFO L87 Difference]: Start difference. First operand 337 states. Second operand 337 states. [2018-11-14 17:13:26,244 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:26,244 INFO L93 Difference]: Finished difference Result 337 states and 456 transitions. [2018-11-14 17:13:26,245 INFO L276 IsEmpty]: Start isEmpty. Operand 337 states and 456 transitions. [2018-11-14 17:13:26,246 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:13:26,246 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:13:26,246 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-14 17:13:26,247 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-14 17:13:26,247 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 337 states. [2018-11-14 17:13:26,258 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 337 states to 337 states and 456 transitions. [2018-11-14 17:13:26,259 INFO L78 Accepts]: Start accepts. Automaton has 337 states and 456 transitions. Word has length 38 [2018-11-14 17:13:26,259 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-14 17:13:26,259 INFO L480 AbstractCegarLoop]: Abstraction has 337 states and 456 transitions. [2018-11-14 17:13:26,259 INFO L481 AbstractCegarLoop]: Interpolant automaton has 3 states. [2018-11-14 17:13:26,260 INFO L276 IsEmpty]: Start isEmpty. Operand 337 states and 456 transitions. [2018-11-14 17:13:26,261 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 47 [2018-11-14 17:13:26,261 INFO L367 BasicCegarLoop]: Found error trace [2018-11-14 17:13:26,262 INFO L375 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-14 17:13:26,262 INFO L423 AbstractCegarLoop]: === Iteration 5 === [errorFnErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-14 17:13:26,262 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-14 17:13:26,262 INFO L82 PathProgramCache]: Analyzing trace with hash 1742109340, now seen corresponding path program 1 times [2018-11-14 17:13:26,262 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-14 17:13:26,263 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-14 17:13:26,263 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:13:26,264 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-14 17:13:26,264 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:13:26,288 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-14 17:13:26,682 INFO L256 TraceCheckUtils]: 0: Hoare triple {6462#true} call ULTIMATE.init(); {6462#true} is VALID [2018-11-14 17:13:26,682 INFO L273 TraceCheckUtils]: 1: Hoare triple {6462#true} ~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 0;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0; {6462#true} is VALID [2018-11-14 17:13:26,683 INFO L273 TraceCheckUtils]: 2: Hoare triple {6462#true} assume true; {6462#true} is VALID [2018-11-14 17:13:26,683 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {6462#true} {6462#true} #759#return; {6462#true} is VALID [2018-11-14 17:13:26,683 INFO L256 TraceCheckUtils]: 4: Hoare triple {6462#true} call #t~ret77 := main(); {6462#true} is VALID [2018-11-14 17:13:26,683 INFO L273 TraceCheckUtils]: 5: Hoare triple {6462#true} havoc ~status~1;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;~irp~0 := #t~nondet17;havoc #t~nondet17;havoc ~pirp~0;havoc ~pirp__IoStatus__Status~0;assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~irp_choice~0 := #t~nondet18;havoc #t~nondet18;assume -2147483648 <= #t~nondet19 && #t~nondet19 <= 2147483647;~devobj~0 := #t~nondet19;havoc #t~nondet19;havoc ~__cil_tmp8~0;~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 1;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0;~status~1 := 0;~pirp~0 := ~irp~0; {6462#true} is VALID [2018-11-14 17:13:26,684 INFO L256 TraceCheckUtils]: 6: Hoare triple {6462#true} call _BLAST_init(); {6462#true} is VALID [2018-11-14 17:13:26,684 INFO L273 TraceCheckUtils]: 7: Hoare triple {6462#true} ~UNLOADED~0 := 0;~NP~0 := 1;~DC~0 := 2;~SKIP1~0 := 3;~SKIP2~0 := 4;~MPR1~0 := 5;~MPR3~0 := 6;~IPC~0 := 7;~s~0 := ~UNLOADED~0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0; {6462#true} is VALID [2018-11-14 17:13:26,684 INFO L273 TraceCheckUtils]: 8: Hoare triple {6462#true} assume true; {6462#true} is VALID [2018-11-14 17:13:26,684 INFO L268 TraceCheckUtils]: 9: Hoare quadruple {6462#true} {6462#true} #717#return; {6462#true} is VALID [2018-11-14 17:13:26,685 INFO L273 TraceCheckUtils]: 10: Hoare triple {6462#true} assume ~status~1 >= 0;~s~0 := ~NP~0;~customIrp~0 := 0;~setEventCalled~0 := ~customIrp~0;~lowerDriverReturn~0 := ~setEventCalled~0;~compRegistered~0 := ~lowerDriverReturn~0;~pended~0 := ~compRegistered~0;~pirp__IoStatus__Status~0 := 0;~myStatus~0 := 0; {6462#true} is VALID [2018-11-14 17:13:26,685 INFO L273 TraceCheckUtils]: 11: Hoare triple {6462#true} assume !(~irp_choice~0 == 0); {6462#true} is VALID [2018-11-14 17:13:26,685 INFO L256 TraceCheckUtils]: 12: Hoare triple {6462#true} call stub_driver_init(); {6462#true} is VALID [2018-11-14 17:13:26,685 INFO L273 TraceCheckUtils]: 13: Hoare triple {6462#true} ~s~0 := ~NP~0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0; {6462#true} is VALID [2018-11-14 17:13:26,686 INFO L273 TraceCheckUtils]: 14: Hoare triple {6462#true} assume true; {6462#true} is VALID [2018-11-14 17:13:26,686 INFO L268 TraceCheckUtils]: 15: Hoare quadruple {6462#true} {6462#true} #719#return; {6462#true} is VALID [2018-11-14 17:13:26,686 INFO L273 TraceCheckUtils]: 16: Hoare triple {6462#true} assume !(~status~1 < 0);havoc ~tmp_ndt_1~0;assume -2147483648 <= #t~nondet20 && #t~nondet20 <= 2147483647;~tmp_ndt_1~0 := #t~nondet20;havoc #t~nondet20; {6462#true} is VALID [2018-11-14 17:13:26,686 INFO L273 TraceCheckUtils]: 17: Hoare triple {6462#true} assume !(~tmp_ndt_1~0 == 0);havoc ~tmp_ndt_2~0;assume -2147483648 <= #t~nondet21 && #t~nondet21 <= 2147483647;~tmp_ndt_2~0 := #t~nondet21;havoc #t~nondet21; {6462#true} is VALID [2018-11-14 17:13:26,687 INFO L273 TraceCheckUtils]: 18: Hoare triple {6462#true} assume !(~tmp_ndt_2~0 == 1);havoc ~tmp_ndt_3~0;assume -2147483648 <= #t~nondet22 && #t~nondet22 <= 2147483647;~tmp_ndt_3~0 := #t~nondet22;havoc #t~nondet22; {6462#true} is VALID [2018-11-14 17:13:26,692 INFO L273 TraceCheckUtils]: 19: Hoare triple {6462#true} assume ~tmp_ndt_3~0 == 3; {6462#true} is VALID [2018-11-14 17:13:26,692 INFO L256 TraceCheckUtils]: 20: Hoare triple {6462#true} call #t~ret27 := KbFilter_PnP(~devobj~0, ~pirp~0); {6462#true} is VALID [2018-11-14 17:13:26,692 INFO L273 TraceCheckUtils]: 21: Hoare triple {6462#true} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;havoc ~devExt~0;havoc ~irpStack~0;havoc ~status~0;assume -2147483648 <= #t~nondet0 && #t~nondet0 <= 2147483647;~event~0 := #t~nondet0;havoc #t~nondet0;assume -2147483648 <= #t~nondet1 && #t~nondet1 <= 2147483647;~DeviceObject__DeviceExtension~0 := #t~nondet1;havoc #t~nondet1;assume -2147483648 <= #t~nondet2 && #t~nondet2 <= 2147483647;~Irp__Tail__Overlay__CurrentStackLocation~0 := #t~nondet2;havoc #t~nondet2;assume -2147483648 <= #t~nondet3 && #t~nondet3 <= 2147483647;~irpStack__MinorFunction~0 := #t~nondet3;havoc #t~nondet3;assume -2147483648 <= #t~nondet4 && #t~nondet4 <= 2147483647;~devExt__TopOfStack~0 := #t~nondet4;havoc #t~nondet4;havoc ~devExt__Started~0;havoc ~devExt__Removed~0;havoc ~devExt__SurpriseRemoved~0;havoc ~Irp__IoStatus__Status~0;havoc ~Irp__IoStatus__Information~0;assume -2147483648 <= #t~nondet5 && #t~nondet5 <= 2147483647;~Irp__CurrentLocation~0 := #t~nondet5;havoc #t~nondet5;havoc ~irpSp~0;havoc ~nextIrpSp~0;havoc ~nextIrpSp__Control~0;havoc ~irpSp___0~0;havoc ~irpSp__Context~0;havoc ~irpSp__Control~0;havoc ~__cil_tmp23~0;~status~0 := 0;~devExt~0 := ~DeviceObject__DeviceExtension~0;~irpStack~0 := ~Irp__Tail__Overlay__CurrentStackLocation~0; {6462#true} is VALID [2018-11-14 17:13:26,693 INFO L273 TraceCheckUtils]: 22: Hoare triple {6462#true} assume ~irpStack__MinorFunction~0 == 0; {6462#true} is VALID [2018-11-14 17:13:26,693 INFO L273 TraceCheckUtils]: 23: Hoare triple {6462#true} ~irpSp~0 := ~Irp__Tail__Overlay__CurrentStackLocation~0;~nextIrpSp~0 := ~Irp__Tail__Overlay__CurrentStackLocation~0 - 1;~nextIrpSp__Control~0 := 0; {6462#true} is VALID [2018-11-14 17:13:26,693 INFO L273 TraceCheckUtils]: 24: Hoare triple {6462#true} assume !(~s~0 != ~NP~0); {6462#true} is VALID [2018-11-14 17:13:26,708 INFO L273 TraceCheckUtils]: 25: Hoare triple {6462#true} assume !(~compRegistered~0 != 0);~compRegistered~0 := 1; {6464#(= ~compRegistered~0 1)} is VALID [2018-11-14 17:13:26,719 INFO L273 TraceCheckUtils]: 26: Hoare triple {6464#(= ~compRegistered~0 1)} ~irpSp___0~0 := ~Irp__Tail__Overlay__CurrentStackLocation~0 - 1;~irpSp__Context~0 := ~event~0;~irpSp__Control~0 := 224; {6464#(= ~compRegistered~0 1)} is VALID [2018-11-14 17:13:26,719 INFO L256 TraceCheckUtils]: 27: Hoare triple {6464#(= ~compRegistered~0 1)} call #t~ret6 := IofCallDriver(~devExt__TopOfStack~0, ~Irp); {6462#true} is VALID [2018-11-14 17:13:26,719 INFO L273 TraceCheckUtils]: 28: Hoare triple {6462#true} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;havoc ~returnVal2~0;havoc ~compRetStatus~0;assume -2147483648 <= #t~nondet30 && #t~nondet30 <= 2147483647;~lcontext~0 := #t~nondet30;havoc #t~nondet30;havoc ~__cil_tmp7~0; {6462#true} is VALID [2018-11-14 17:13:26,720 INFO L273 TraceCheckUtils]: 29: Hoare triple {6462#true} assume !(~compRegistered~0 != 0); {6465#(= 0 ~compRegistered~0)} is VALID [2018-11-14 17:13:26,722 INFO L273 TraceCheckUtils]: 30: Hoare triple {6465#(= 0 ~compRegistered~0)} havoc ~tmp_ndt_6~0;assume -2147483648 <= #t~nondet32 && #t~nondet32 <= 2147483647;~tmp_ndt_6~0 := #t~nondet32;havoc #t~nondet32; {6465#(= 0 ~compRegistered~0)} is VALID [2018-11-14 17:13:26,722 INFO L273 TraceCheckUtils]: 31: Hoare triple {6465#(= 0 ~compRegistered~0)} assume ~tmp_ndt_6~0 == 0; {6465#(= 0 ~compRegistered~0)} is VALID [2018-11-14 17:13:26,724 INFO L273 TraceCheckUtils]: 32: Hoare triple {6465#(= 0 ~compRegistered~0)} ~returnVal2~0 := 0; {6465#(= 0 ~compRegistered~0)} is VALID [2018-11-14 17:13:26,724 INFO L273 TraceCheckUtils]: 33: Hoare triple {6465#(= 0 ~compRegistered~0)} assume ~s~0 == ~NP~0;~s~0 := ~IPC~0;~lowerDriverReturn~0 := ~returnVal2~0; {6465#(= 0 ~compRegistered~0)} is VALID [2018-11-14 17:13:26,726 INFO L273 TraceCheckUtils]: 34: Hoare triple {6465#(= 0 ~compRegistered~0)} #res := ~returnVal2~0; {6465#(= 0 ~compRegistered~0)} is VALID [2018-11-14 17:13:26,726 INFO L273 TraceCheckUtils]: 35: Hoare triple {6465#(= 0 ~compRegistered~0)} assume true; {6465#(= 0 ~compRegistered~0)} is VALID [2018-11-14 17:13:26,727 INFO L268 TraceCheckUtils]: 36: Hoare quadruple {6465#(= 0 ~compRegistered~0)} {6464#(= ~compRegistered~0 1)} #771#return; {6463#false} is VALID [2018-11-14 17:13:26,727 INFO L273 TraceCheckUtils]: 37: Hoare triple {6463#false} assume -2147483648 <= #t~ret6 && #t~ret6 <= 2147483647;~status~0 := #t~ret6;havoc #t~ret6;~__cil_tmp23~0 := ~status~0; {6463#false} is VALID [2018-11-14 17:13:26,728 INFO L273 TraceCheckUtils]: 38: Hoare triple {6463#false} assume ~__cil_tmp23~0 == 259; {6463#false} is VALID [2018-11-14 17:13:26,728 INFO L256 TraceCheckUtils]: 39: Hoare triple {6463#false} call #t~ret7 := KeWaitForSingleObject(~event~0, ~Executive~0, ~KernelMode~0, 0, 0); {6463#false} is VALID [2018-11-14 17:13:26,728 INFO L273 TraceCheckUtils]: 40: Hoare triple {6463#false} ~Object := #in~Object;~WaitReason := #in~WaitReason;~WaitMode := #in~WaitMode;~Alertable := #in~Alertable;~Timeout := #in~Timeout; {6463#false} is VALID [2018-11-14 17:13:26,728 INFO L273 TraceCheckUtils]: 41: Hoare triple {6463#false} assume !(~s~0 == ~MPR3~0); {6463#false} is VALID [2018-11-14 17:13:26,728 INFO L273 TraceCheckUtils]: 42: Hoare triple {6463#false} assume !(~customIrp~0 == 1); {6463#false} is VALID [2018-11-14 17:13:26,729 INFO L273 TraceCheckUtils]: 43: Hoare triple {6463#false} assume ~s~0 == ~MPR3~0; {6463#false} is VALID [2018-11-14 17:13:26,729 INFO L256 TraceCheckUtils]: 44: Hoare triple {6463#false} call errorFn(); {6463#false} is VALID [2018-11-14 17:13:26,729 INFO L273 TraceCheckUtils]: 45: Hoare triple {6463#false} assume !false; {6463#false} is VALID [2018-11-14 17:13:26,731 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-11-14 17:13:26,732 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-14 17:13:26,732 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2018-11-14 17:13:26,732 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 46 [2018-11-14 17:13:26,733 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-14 17:13:26,733 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states. [2018-11-14 17:13:26,802 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 46 edges. 46 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:13:26,803 INFO L459 AbstractCegarLoop]: Interpolant automaton has 4 states [2018-11-14 17:13:26,803 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2018-11-14 17:13:26,803 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-14 17:13:26,804 INFO L87 Difference]: Start difference. First operand 337 states and 456 transitions. Second operand 4 states. [2018-11-14 17:13:28,176 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:28,176 INFO L93 Difference]: Finished difference Result 388 states and 513 transitions. [2018-11-14 17:13:28,177 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2018-11-14 17:13:28,177 INFO L78 Accepts]: Start accepts. Automaton has 4 states. Word has length 46 [2018-11-14 17:13:28,177 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-14 17:13:28,177 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-14 17:13:28,182 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 418 transitions. [2018-11-14 17:13:28,183 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 4 states. [2018-11-14 17:13:28,187 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 4 states to 4 states and 418 transitions. [2018-11-14 17:13:28,187 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 4 states and 418 transitions. [2018-11-14 17:13:28,918 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 418 edges. 418 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:13:28,928 INFO L225 Difference]: With dead ends: 388 [2018-11-14 17:13:28,928 INFO L226 Difference]: Without dead ends: 319 [2018-11-14 17:13:28,929 INFO L604 BasicCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2018-11-14 17:13:28,930 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 319 states. [2018-11-14 17:13:29,286 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 319 to 298. [2018-11-14 17:13:29,287 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-14 17:13:29,287 INFO L82 GeneralOperation]: Start isEquivalent. First operand 319 states. Second operand 298 states. [2018-11-14 17:13:29,287 INFO L74 IsIncluded]: Start isIncluded. First operand 319 states. Second operand 298 states. [2018-11-14 17:13:29,288 INFO L87 Difference]: Start difference. First operand 319 states. Second operand 298 states. [2018-11-14 17:13:29,298 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:29,299 INFO L93 Difference]: Finished difference Result 319 states and 424 transitions. [2018-11-14 17:13:29,299 INFO L276 IsEmpty]: Start isEmpty. Operand 319 states and 424 transitions. [2018-11-14 17:13:29,300 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:13:29,300 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:13:29,300 INFO L74 IsIncluded]: Start isIncluded. First operand 298 states. Second operand 319 states. [2018-11-14 17:13:29,300 INFO L87 Difference]: Start difference. First operand 298 states. Second operand 319 states. [2018-11-14 17:13:29,311 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:29,311 INFO L93 Difference]: Finished difference Result 319 states and 424 transitions. [2018-11-14 17:13:29,311 INFO L276 IsEmpty]: Start isEmpty. Operand 319 states and 424 transitions. [2018-11-14 17:13:29,312 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:13:29,313 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:13:29,313 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-14 17:13:29,313 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-14 17:13:29,313 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 298 states. [2018-11-14 17:13:29,323 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 298 states to 298 states and 399 transitions. [2018-11-14 17:13:29,323 INFO L78 Accepts]: Start accepts. Automaton has 298 states and 399 transitions. Word has length 46 [2018-11-14 17:13:29,323 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-14 17:13:29,323 INFO L480 AbstractCegarLoop]: Abstraction has 298 states and 399 transitions. [2018-11-14 17:13:29,323 INFO L481 AbstractCegarLoop]: Interpolant automaton has 4 states. [2018-11-14 17:13:29,324 INFO L276 IsEmpty]: Start isEmpty. Operand 298 states and 399 transitions. [2018-11-14 17:13:29,325 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 46 [2018-11-14 17:13:29,325 INFO L367 BasicCegarLoop]: Found error trace [2018-11-14 17:13:29,325 INFO L375 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-14 17:13:29,326 INFO L423 AbstractCegarLoop]: === Iteration 6 === [errorFnErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-14 17:13:29,326 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-14 17:13:29,326 INFO L82 PathProgramCache]: Analyzing trace with hash 750041855, now seen corresponding path program 1 times [2018-11-14 17:13:29,326 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-14 17:13:29,326 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-14 17:13:29,327 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:13:29,327 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-14 17:13:29,327 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:13:29,345 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-14 17:13:29,588 INFO L256 TraceCheckUtils]: 0: Hoare triple {8009#true} call ULTIMATE.init(); {8009#true} is VALID [2018-11-14 17:13:29,588 INFO L273 TraceCheckUtils]: 1: Hoare triple {8009#true} ~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 0;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0; {8009#true} is VALID [2018-11-14 17:13:29,589 INFO L273 TraceCheckUtils]: 2: Hoare triple {8009#true} assume true; {8009#true} is VALID [2018-11-14 17:13:29,589 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {8009#true} {8009#true} #759#return; {8009#true} is VALID [2018-11-14 17:13:29,589 INFO L256 TraceCheckUtils]: 4: Hoare triple {8009#true} call #t~ret77 := main(); {8009#true} is VALID [2018-11-14 17:13:29,589 INFO L273 TraceCheckUtils]: 5: Hoare triple {8009#true} havoc ~status~1;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;~irp~0 := #t~nondet17;havoc #t~nondet17;havoc ~pirp~0;havoc ~pirp__IoStatus__Status~0;assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~irp_choice~0 := #t~nondet18;havoc #t~nondet18;assume -2147483648 <= #t~nondet19 && #t~nondet19 <= 2147483647;~devobj~0 := #t~nondet19;havoc #t~nondet19;havoc ~__cil_tmp8~0;~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 1;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0;~status~1 := 0;~pirp~0 := ~irp~0; {8009#true} is VALID [2018-11-14 17:13:29,590 INFO L256 TraceCheckUtils]: 6: Hoare triple {8009#true} call _BLAST_init(); {8009#true} is VALID [2018-11-14 17:13:29,590 INFO L273 TraceCheckUtils]: 7: Hoare triple {8009#true} ~UNLOADED~0 := 0;~NP~0 := 1;~DC~0 := 2;~SKIP1~0 := 3;~SKIP2~0 := 4;~MPR1~0 := 5;~MPR3~0 := 6;~IPC~0 := 7;~s~0 := ~UNLOADED~0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0; {8009#true} is VALID [2018-11-14 17:13:29,590 INFO L273 TraceCheckUtils]: 8: Hoare triple {8009#true} assume true; {8009#true} is VALID [2018-11-14 17:13:29,590 INFO L268 TraceCheckUtils]: 9: Hoare quadruple {8009#true} {8009#true} #717#return; {8009#true} is VALID [2018-11-14 17:13:29,591 INFO L273 TraceCheckUtils]: 10: Hoare triple {8009#true} assume ~status~1 >= 0;~s~0 := ~NP~0;~customIrp~0 := 0;~setEventCalled~0 := ~customIrp~0;~lowerDriverReturn~0 := ~setEventCalled~0;~compRegistered~0 := ~lowerDriverReturn~0;~pended~0 := ~compRegistered~0;~pirp__IoStatus__Status~0 := 0;~myStatus~0 := 0; {8009#true} is VALID [2018-11-14 17:13:29,591 INFO L273 TraceCheckUtils]: 11: Hoare triple {8009#true} assume !(~irp_choice~0 == 0); {8009#true} is VALID [2018-11-14 17:13:29,591 INFO L256 TraceCheckUtils]: 12: Hoare triple {8009#true} call stub_driver_init(); {8009#true} is VALID [2018-11-14 17:13:29,591 INFO L273 TraceCheckUtils]: 13: Hoare triple {8009#true} ~s~0 := ~NP~0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0; {8009#true} is VALID [2018-11-14 17:13:29,591 INFO L273 TraceCheckUtils]: 14: Hoare triple {8009#true} assume true; {8009#true} is VALID [2018-11-14 17:13:29,592 INFO L268 TraceCheckUtils]: 15: Hoare quadruple {8009#true} {8009#true} #719#return; {8009#true} is VALID [2018-11-14 17:13:29,592 INFO L273 TraceCheckUtils]: 16: Hoare triple {8009#true} assume !(~status~1 < 0);havoc ~tmp_ndt_1~0;assume -2147483648 <= #t~nondet20 && #t~nondet20 <= 2147483647;~tmp_ndt_1~0 := #t~nondet20;havoc #t~nondet20; {8009#true} is VALID [2018-11-14 17:13:29,592 INFO L273 TraceCheckUtils]: 17: Hoare triple {8009#true} assume !(~tmp_ndt_1~0 == 0);havoc ~tmp_ndt_2~0;assume -2147483648 <= #t~nondet21 && #t~nondet21 <= 2147483647;~tmp_ndt_2~0 := #t~nondet21;havoc #t~nondet21; {8009#true} is VALID [2018-11-14 17:13:29,592 INFO L273 TraceCheckUtils]: 18: Hoare triple {8009#true} assume !(~tmp_ndt_2~0 == 1);havoc ~tmp_ndt_3~0;assume -2147483648 <= #t~nondet22 && #t~nondet22 <= 2147483647;~tmp_ndt_3~0 := #t~nondet22;havoc #t~nondet22; {8009#true} is VALID [2018-11-14 17:13:29,593 INFO L273 TraceCheckUtils]: 19: Hoare triple {8009#true} assume !(~tmp_ndt_3~0 == 3);havoc ~tmp_ndt_4~0;assume -2147483648 <= #t~nondet23 && #t~nondet23 <= 2147483647;~tmp_ndt_4~0 := #t~nondet23;havoc #t~nondet23; {8009#true} is VALID [2018-11-14 17:13:29,593 INFO L273 TraceCheckUtils]: 20: Hoare triple {8009#true} assume !(~tmp_ndt_4~0 == 4);havoc ~tmp_ndt_5~0;assume -2147483648 <= #t~nondet24 && #t~nondet24 <= 2147483647;~tmp_ndt_5~0 := #t~nondet24;havoc #t~nondet24; {8009#true} is VALID [2018-11-14 17:13:29,593 INFO L273 TraceCheckUtils]: 21: Hoare triple {8009#true} assume ~tmp_ndt_5~0 == 8; {8009#true} is VALID [2018-11-14 17:13:29,593 INFO L256 TraceCheckUtils]: 22: Hoare triple {8009#true} call #t~ret29 := KbFilter_InternIoCtl(~devobj~0, ~pirp~0); {8009#true} is VALID [2018-11-14 17:13:29,595 INFO L273 TraceCheckUtils]: 23: Hoare triple {8009#true} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;havoc ~Irp__IoStatus__Information~1;assume -2147483648 <= #t~nondet59 && #t~nondet59 <= 2147483647;~irpStack__Parameters__DeviceIoControl__IoControlCode~0 := #t~nondet59;havoc #t~nondet59;assume -2147483648 <= #t~nondet60 && #t~nondet60 <= 2147483647;~devExt__UpperConnectData__ClassService~1 := #t~nondet60;havoc #t~nondet60;assume -2147483648 <= #t~nondet61 && #t~nondet61 <= 2147483647;~irpStack__Parameters__DeviceIoControl__InputBufferLength~0 := #t~nondet61;havoc #t~nondet61;assume -2147483648 <= #t~nondet62 && #t~nondet62 <= 2147483647;~sizeof__CONNECT_DATA~0 := #t~nondet62;havoc #t~nondet62;assume -2147483648 <= #t~nondet63 && #t~nondet63 <= 2147483647;~irpStack__Parameters__DeviceIoControl__Type3InputBuffer~0 := #t~nondet63;havoc #t~nondet63;assume -2147483648 <= #t~nondet64 && #t~nondet64 <= 2147483647;~sizeof__INTERNAL_I8042_HOOK_KEYBOARD~0 := #t~nondet64;havoc #t~nondet64;assume -2147483648 <= #t~nondet65 && #t~nondet65 <= 2147483647;~hookKeyboard__InitializationRoutine~0 := #t~nondet65;havoc #t~nondet65;assume -2147483648 <= #t~nondet66 && #t~nondet66 <= 2147483647;~hookKeyboard__IsrRoutine~0 := #t~nondet66;havoc #t~nondet66;havoc ~Irp__IoStatus__Status~2;havoc ~hookKeyboard~0;havoc ~connectData~0;havoc ~status~3;havoc ~tmp~3;havoc ~__cil_tmp17~0;havoc ~__cil_tmp18~0;havoc ~__cil_tmp19~0;assume -2147483648 <= #t~nondet67 && #t~nondet67 <= 2147483647;~__cil_tmp20~0 := #t~nondet67;havoc #t~nondet67;havoc ~__cil_tmp21~0;havoc ~__cil_tmp22~0;havoc ~__cil_tmp23~1;assume -2147483648 <= #t~nondet68 && #t~nondet68 <= 2147483647;~__cil_tmp24~0 := #t~nondet68;havoc #t~nondet68;havoc ~__cil_tmp25~0;havoc ~__cil_tmp26~0;havoc ~__cil_tmp27~0;assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~__cil_tmp28~0 := #t~nondet69;havoc #t~nondet69;assume -2147483648 <= #t~nondet70 && #t~nondet70 <= 2147483647;~__cil_tmp29~0 := #t~nondet70;havoc #t~nondet70;havoc ~__cil_tmp30~0;havoc ~__cil_tmp31~0;assume -2147483648 <= #t~nondet71 && #t~nondet71 <= 2147483647;~__cil_tmp32~0 := #t~nondet71;havoc #t~nondet71;havoc ~__cil_tmp33~0;havoc ~__cil_tmp34~0;assume -2147483648 <= #t~nondet72 && #t~nondet72 <= 2147483647;~__cil_tmp35~0 := #t~nondet72;havoc #t~nondet72;havoc ~__cil_tmp36~0;havoc ~__cil_tmp37~0;assume -2147483648 <= #t~nondet73 && #t~nondet73 <= 2147483647;~__cil_tmp38~0 := #t~nondet73;havoc #t~nondet73;havoc ~__cil_tmp39~0;havoc ~__cil_tmp40~0;assume -2147483648 <= #t~nondet74 && #t~nondet74 <= 2147483647;~__cil_tmp41~0 := #t~nondet74;havoc #t~nondet74;havoc ~__cil_tmp42~0;havoc ~__cil_tmp43~0;assume -2147483648 <= #t~nondet75 && #t~nondet75 <= 2147483647;~__cil_tmp44~0 := #t~nondet75;havoc #t~nondet75;havoc ~__cil_tmp45~0;~status~3 := 0;~Irp__IoStatus__Information~1 := 0; {8009#true} is VALID [2018-11-14 17:13:29,595 INFO L273 TraceCheckUtils]: 24: Hoare triple {8009#true} assume ~irpStack__Parameters__DeviceIoControl__IoControlCode~0 == ~__cil_tmp20~0; {8009#true} is VALID [2018-11-14 17:13:29,595 INFO L273 TraceCheckUtils]: 25: Hoare triple {8009#true} assume ~devExt__UpperConnectData__ClassService~1 != 0;~status~3 := -1073741757; {8009#true} is VALID [2018-11-14 17:13:29,596 INFO L273 TraceCheckUtils]: 26: Hoare triple {8009#true} assume ~status~3 < 0;~Irp__IoStatus__Status~2 := ~status~3;~myStatus~0 := ~status~3; {8009#true} is VALID [2018-11-14 17:13:29,596 INFO L256 TraceCheckUtils]: 27: Hoare triple {8009#true} call IofCompleteRequest(~Irp, 0); {8009#true} is VALID [2018-11-14 17:13:29,596 INFO L273 TraceCheckUtils]: 28: Hoare triple {8009#true} ~Irp := #in~Irp;~PriorityBoost := #in~PriorityBoost; {8009#true} is VALID [2018-11-14 17:13:29,596 INFO L273 TraceCheckUtils]: 29: Hoare triple {8009#true} assume ~s~0 == ~NP~0;~s~0 := ~DC~0; {8009#true} is VALID [2018-11-14 17:13:29,597 INFO L273 TraceCheckUtils]: 30: Hoare triple {8009#true} assume true; {8009#true} is VALID [2018-11-14 17:13:29,597 INFO L268 TraceCheckUtils]: 31: Hoare quadruple {8009#true} {8009#true} #751#return; {8009#true} is VALID [2018-11-14 17:13:29,597 INFO L273 TraceCheckUtils]: 32: Hoare triple {8009#true} #res := ~status~3; {8009#true} is VALID [2018-11-14 17:13:29,598 INFO L273 TraceCheckUtils]: 33: Hoare triple {8009#true} assume true; {8009#true} is VALID [2018-11-14 17:13:29,598 INFO L268 TraceCheckUtils]: 34: Hoare quadruple {8009#true} {8009#true} #729#return; {8009#true} is VALID [2018-11-14 17:13:29,598 INFO L273 TraceCheckUtils]: 35: Hoare triple {8009#true} assume -2147483648 <= #t~ret29 && #t~ret29 <= 2147483647;~status~1 := #t~ret29;havoc #t~ret29; {8009#true} is VALID [2018-11-14 17:13:29,615 INFO L273 TraceCheckUtils]: 36: Hoare triple {8009#true} assume !(~pended~0 == 1); {8011#(not (= 1 ~pended~0))} is VALID [2018-11-14 17:13:29,630 INFO L273 TraceCheckUtils]: 37: Hoare triple {8011#(not (= 1 ~pended~0))} assume !(~pended~0 == 1); {8011#(not (= 1 ~pended~0))} is VALID [2018-11-14 17:13:29,639 INFO L273 TraceCheckUtils]: 38: Hoare triple {8011#(not (= 1 ~pended~0))} assume ~s~0 != ~UNLOADED~0; {8011#(not (= 1 ~pended~0))} is VALID [2018-11-14 17:13:29,652 INFO L273 TraceCheckUtils]: 39: Hoare triple {8011#(not (= 1 ~pended~0))} assume ~status~1 != -1; {8011#(not (= 1 ~pended~0))} is VALID [2018-11-14 17:13:29,664 INFO L273 TraceCheckUtils]: 40: Hoare triple {8011#(not (= 1 ~pended~0))} assume !(~s~0 != ~SKIP2~0); {8011#(not (= 1 ~pended~0))} is VALID [2018-11-14 17:13:29,678 INFO L273 TraceCheckUtils]: 41: Hoare triple {8011#(not (= 1 ~pended~0))} assume ~pended~0 == 1; {8010#false} is VALID [2018-11-14 17:13:29,678 INFO L273 TraceCheckUtils]: 42: Hoare triple {8010#false} assume ~status~1 != 259; {8010#false} is VALID [2018-11-14 17:13:29,679 INFO L256 TraceCheckUtils]: 43: Hoare triple {8010#false} call errorFn(); {8010#false} is VALID [2018-11-14 17:13:29,679 INFO L273 TraceCheckUtils]: 44: Hoare triple {8010#false} assume !false; {8010#false} is VALID [2018-11-14 17:13:29,681 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-11-14 17:13:29,682 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-14 17:13:29,682 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2018-11-14 17:13:29,682 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 45 [2018-11-14 17:13:29,682 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-14 17:13:29,683 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 3 states. [2018-11-14 17:13:29,795 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 45 edges. 45 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:13:29,795 INFO L459 AbstractCegarLoop]: Interpolant automaton has 3 states [2018-11-14 17:13:29,796 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2018-11-14 17:13:29,796 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2018-11-14 17:13:29,796 INFO L87 Difference]: Start difference. First operand 298 states and 399 transitions. Second operand 3 states. [2018-11-14 17:13:30,784 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:30,785 INFO L93 Difference]: Finished difference Result 310 states and 414 transitions. [2018-11-14 17:13:30,785 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2018-11-14 17:13:30,785 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 45 [2018-11-14 17:13:30,785 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-14 17:13:30,786 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 3 states. [2018-11-14 17:13:30,789 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 3 states to 3 states and 315 transitions. [2018-11-14 17:13:30,789 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 3 states. [2018-11-14 17:13:30,792 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 3 states to 3 states and 315 transitions. [2018-11-14 17:13:30,792 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 3 states and 315 transitions. [2018-11-14 17:13:31,711 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 315 edges. 315 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:13:31,720 INFO L225 Difference]: With dead ends: 310 [2018-11-14 17:13:31,721 INFO L226 Difference]: Without dead ends: 294 [2018-11-14 17:13:31,721 INFO L604 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2018-11-14 17:13:31,721 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 294 states. [2018-11-14 17:13:31,974 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 294 to 264. [2018-11-14 17:13:31,974 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-14 17:13:31,974 INFO L82 GeneralOperation]: Start isEquivalent. First operand 294 states. Second operand 264 states. [2018-11-14 17:13:31,974 INFO L74 IsIncluded]: Start isIncluded. First operand 294 states. Second operand 264 states. [2018-11-14 17:13:31,975 INFO L87 Difference]: Start difference. First operand 294 states. Second operand 264 states. [2018-11-14 17:13:31,984 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:31,984 INFO L93 Difference]: Finished difference Result 294 states and 392 transitions. [2018-11-14 17:13:31,984 INFO L276 IsEmpty]: Start isEmpty. Operand 294 states and 392 transitions. [2018-11-14 17:13:31,985 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:13:31,986 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:13:31,986 INFO L74 IsIncluded]: Start isIncluded. First operand 264 states. Second operand 294 states. [2018-11-14 17:13:31,986 INFO L87 Difference]: Start difference. First operand 264 states. Second operand 294 states. [2018-11-14 17:13:31,997 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:31,997 INFO L93 Difference]: Finished difference Result 294 states and 392 transitions. [2018-11-14 17:13:31,997 INFO L276 IsEmpty]: Start isEmpty. Operand 294 states and 392 transitions. [2018-11-14 17:13:31,998 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:13:31,998 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:13:31,998 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-14 17:13:31,999 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-14 17:13:31,999 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 264 states. [2018-11-14 17:13:32,007 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 264 states to 264 states and 357 transitions. [2018-11-14 17:13:32,007 INFO L78 Accepts]: Start accepts. Automaton has 264 states and 357 transitions. Word has length 45 [2018-11-14 17:13:32,008 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-14 17:13:32,008 INFO L480 AbstractCegarLoop]: Abstraction has 264 states and 357 transitions. [2018-11-14 17:13:32,008 INFO L481 AbstractCegarLoop]: Interpolant automaton has 3 states. [2018-11-14 17:13:32,008 INFO L276 IsEmpty]: Start isEmpty. Operand 264 states and 357 transitions. [2018-11-14 17:13:32,009 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 47 [2018-11-14 17:13:32,009 INFO L367 BasicCegarLoop]: Found error trace [2018-11-14 17:13:32,009 INFO L375 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-14 17:13:32,010 INFO L423 AbstractCegarLoop]: === Iteration 7 === [errorFnErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-14 17:13:32,010 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-14 17:13:32,010 INFO L82 PathProgramCache]: Analyzing trace with hash 1784783245, now seen corresponding path program 1 times [2018-11-14 17:13:32,010 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-14 17:13:32,010 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-14 17:13:32,011 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:13:32,011 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-14 17:13:32,011 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:13:32,029 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-14 17:13:32,275 INFO L256 TraceCheckUtils]: 0: Hoare triple {9362#true} call ULTIMATE.init(); {9362#true} is VALID [2018-11-14 17:13:32,275 INFO L273 TraceCheckUtils]: 1: Hoare triple {9362#true} ~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 0;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0; {9362#true} is VALID [2018-11-14 17:13:32,276 INFO L273 TraceCheckUtils]: 2: Hoare triple {9362#true} assume true; {9362#true} is VALID [2018-11-14 17:13:32,276 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {9362#true} {9362#true} #759#return; {9362#true} is VALID [2018-11-14 17:13:32,276 INFO L256 TraceCheckUtils]: 4: Hoare triple {9362#true} call #t~ret77 := main(); {9362#true} is VALID [2018-11-14 17:13:32,276 INFO L273 TraceCheckUtils]: 5: Hoare triple {9362#true} havoc ~status~1;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;~irp~0 := #t~nondet17;havoc #t~nondet17;havoc ~pirp~0;havoc ~pirp__IoStatus__Status~0;assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~irp_choice~0 := #t~nondet18;havoc #t~nondet18;assume -2147483648 <= #t~nondet19 && #t~nondet19 <= 2147483647;~devobj~0 := #t~nondet19;havoc #t~nondet19;havoc ~__cil_tmp8~0;~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 1;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0;~status~1 := 0;~pirp~0 := ~irp~0; {9362#true} is VALID [2018-11-14 17:13:32,277 INFO L256 TraceCheckUtils]: 6: Hoare triple {9362#true} call _BLAST_init(); {9362#true} is VALID [2018-11-14 17:13:32,277 INFO L273 TraceCheckUtils]: 7: Hoare triple {9362#true} ~UNLOADED~0 := 0;~NP~0 := 1;~DC~0 := 2;~SKIP1~0 := 3;~SKIP2~0 := 4;~MPR1~0 := 5;~MPR3~0 := 6;~IPC~0 := 7;~s~0 := ~UNLOADED~0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0; {9362#true} is VALID [2018-11-14 17:13:32,277 INFO L273 TraceCheckUtils]: 8: Hoare triple {9362#true} assume true; {9362#true} is VALID [2018-11-14 17:13:32,277 INFO L268 TraceCheckUtils]: 9: Hoare quadruple {9362#true} {9362#true} #717#return; {9362#true} is VALID [2018-11-14 17:13:32,277 INFO L273 TraceCheckUtils]: 10: Hoare triple {9362#true} assume ~status~1 >= 0;~s~0 := ~NP~0;~customIrp~0 := 0;~setEventCalled~0 := ~customIrp~0;~lowerDriverReturn~0 := ~setEventCalled~0;~compRegistered~0 := ~lowerDriverReturn~0;~pended~0 := ~compRegistered~0;~pirp__IoStatus__Status~0 := 0;~myStatus~0 := 0; {9362#true} is VALID [2018-11-14 17:13:32,278 INFO L273 TraceCheckUtils]: 11: Hoare triple {9362#true} assume !(~irp_choice~0 == 0); {9362#true} is VALID [2018-11-14 17:13:32,278 INFO L256 TraceCheckUtils]: 12: Hoare triple {9362#true} call stub_driver_init(); {9362#true} is VALID [2018-11-14 17:13:32,278 INFO L273 TraceCheckUtils]: 13: Hoare triple {9362#true} ~s~0 := ~NP~0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0; {9362#true} is VALID [2018-11-14 17:13:32,278 INFO L273 TraceCheckUtils]: 14: Hoare triple {9362#true} assume true; {9362#true} is VALID [2018-11-14 17:13:32,279 INFO L268 TraceCheckUtils]: 15: Hoare quadruple {9362#true} {9362#true} #719#return; {9362#true} is VALID [2018-11-14 17:13:32,279 INFO L273 TraceCheckUtils]: 16: Hoare triple {9362#true} assume !(~status~1 < 0);havoc ~tmp_ndt_1~0;assume -2147483648 <= #t~nondet20 && #t~nondet20 <= 2147483647;~tmp_ndt_1~0 := #t~nondet20;havoc #t~nondet20; {9362#true} is VALID [2018-11-14 17:13:32,279 INFO L273 TraceCheckUtils]: 17: Hoare triple {9362#true} assume !(~tmp_ndt_1~0 == 0);havoc ~tmp_ndt_2~0;assume -2147483648 <= #t~nondet21 && #t~nondet21 <= 2147483647;~tmp_ndt_2~0 := #t~nondet21;havoc #t~nondet21; {9362#true} is VALID [2018-11-14 17:13:32,279 INFO L273 TraceCheckUtils]: 18: Hoare triple {9362#true} assume !(~tmp_ndt_2~0 == 1);havoc ~tmp_ndt_3~0;assume -2147483648 <= #t~nondet22 && #t~nondet22 <= 2147483647;~tmp_ndt_3~0 := #t~nondet22;havoc #t~nondet22; {9362#true} is VALID [2018-11-14 17:13:32,279 INFO L273 TraceCheckUtils]: 19: Hoare triple {9362#true} assume !(~tmp_ndt_3~0 == 3);havoc ~tmp_ndt_4~0;assume -2147483648 <= #t~nondet23 && #t~nondet23 <= 2147483647;~tmp_ndt_4~0 := #t~nondet23;havoc #t~nondet23; {9362#true} is VALID [2018-11-14 17:13:32,280 INFO L273 TraceCheckUtils]: 20: Hoare triple {9362#true} assume !(~tmp_ndt_4~0 == 4);havoc ~tmp_ndt_5~0;assume -2147483648 <= #t~nondet24 && #t~nondet24 <= 2147483647;~tmp_ndt_5~0 := #t~nondet24;havoc #t~nondet24; {9362#true} is VALID [2018-11-14 17:13:32,280 INFO L273 TraceCheckUtils]: 21: Hoare triple {9362#true} assume ~tmp_ndt_5~0 == 8; {9362#true} is VALID [2018-11-14 17:13:32,280 INFO L256 TraceCheckUtils]: 22: Hoare triple {9362#true} call #t~ret29 := KbFilter_InternIoCtl(~devobj~0, ~pirp~0); {9362#true} is VALID [2018-11-14 17:13:32,280 INFO L273 TraceCheckUtils]: 23: Hoare triple {9362#true} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;havoc ~Irp__IoStatus__Information~1;assume -2147483648 <= #t~nondet59 && #t~nondet59 <= 2147483647;~irpStack__Parameters__DeviceIoControl__IoControlCode~0 := #t~nondet59;havoc #t~nondet59;assume -2147483648 <= #t~nondet60 && #t~nondet60 <= 2147483647;~devExt__UpperConnectData__ClassService~1 := #t~nondet60;havoc #t~nondet60;assume -2147483648 <= #t~nondet61 && #t~nondet61 <= 2147483647;~irpStack__Parameters__DeviceIoControl__InputBufferLength~0 := #t~nondet61;havoc #t~nondet61;assume -2147483648 <= #t~nondet62 && #t~nondet62 <= 2147483647;~sizeof__CONNECT_DATA~0 := #t~nondet62;havoc #t~nondet62;assume -2147483648 <= #t~nondet63 && #t~nondet63 <= 2147483647;~irpStack__Parameters__DeviceIoControl__Type3InputBuffer~0 := #t~nondet63;havoc #t~nondet63;assume -2147483648 <= #t~nondet64 && #t~nondet64 <= 2147483647;~sizeof__INTERNAL_I8042_HOOK_KEYBOARD~0 := #t~nondet64;havoc #t~nondet64;assume -2147483648 <= #t~nondet65 && #t~nondet65 <= 2147483647;~hookKeyboard__InitializationRoutine~0 := #t~nondet65;havoc #t~nondet65;assume -2147483648 <= #t~nondet66 && #t~nondet66 <= 2147483647;~hookKeyboard__IsrRoutine~0 := #t~nondet66;havoc #t~nondet66;havoc ~Irp__IoStatus__Status~2;havoc ~hookKeyboard~0;havoc ~connectData~0;havoc ~status~3;havoc ~tmp~3;havoc ~__cil_tmp17~0;havoc ~__cil_tmp18~0;havoc ~__cil_tmp19~0;assume -2147483648 <= #t~nondet67 && #t~nondet67 <= 2147483647;~__cil_tmp20~0 := #t~nondet67;havoc #t~nondet67;havoc ~__cil_tmp21~0;havoc ~__cil_tmp22~0;havoc ~__cil_tmp23~1;assume -2147483648 <= #t~nondet68 && #t~nondet68 <= 2147483647;~__cil_tmp24~0 := #t~nondet68;havoc #t~nondet68;havoc ~__cil_tmp25~0;havoc ~__cil_tmp26~0;havoc ~__cil_tmp27~0;assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~__cil_tmp28~0 := #t~nondet69;havoc #t~nondet69;assume -2147483648 <= #t~nondet70 && #t~nondet70 <= 2147483647;~__cil_tmp29~0 := #t~nondet70;havoc #t~nondet70;havoc ~__cil_tmp30~0;havoc ~__cil_tmp31~0;assume -2147483648 <= #t~nondet71 && #t~nondet71 <= 2147483647;~__cil_tmp32~0 := #t~nondet71;havoc #t~nondet71;havoc ~__cil_tmp33~0;havoc ~__cil_tmp34~0;assume -2147483648 <= #t~nondet72 && #t~nondet72 <= 2147483647;~__cil_tmp35~0 := #t~nondet72;havoc #t~nondet72;havoc ~__cil_tmp36~0;havoc ~__cil_tmp37~0;assume -2147483648 <= #t~nondet73 && #t~nondet73 <= 2147483647;~__cil_tmp38~0 := #t~nondet73;havoc #t~nondet73;havoc ~__cil_tmp39~0;havoc ~__cil_tmp40~0;assume -2147483648 <= #t~nondet74 && #t~nondet74 <= 2147483647;~__cil_tmp41~0 := #t~nondet74;havoc #t~nondet74;havoc ~__cil_tmp42~0;havoc ~__cil_tmp43~0;assume -2147483648 <= #t~nondet75 && #t~nondet75 <= 2147483647;~__cil_tmp44~0 := #t~nondet75;havoc #t~nondet75;havoc ~__cil_tmp45~0;~status~3 := 0;~Irp__IoStatus__Information~1 := 0; {9362#true} is VALID [2018-11-14 17:13:32,281 INFO L273 TraceCheckUtils]: 24: Hoare triple {9362#true} assume ~irpStack__Parameters__DeviceIoControl__IoControlCode~0 == ~__cil_tmp20~0; {9362#true} is VALID [2018-11-14 17:13:32,281 INFO L273 TraceCheckUtils]: 25: Hoare triple {9362#true} assume ~devExt__UpperConnectData__ClassService~1 != 0;~status~3 := -1073741757; {9362#true} is VALID [2018-11-14 17:13:32,281 INFO L273 TraceCheckUtils]: 26: Hoare triple {9362#true} assume ~status~3 < 0;~Irp__IoStatus__Status~2 := ~status~3;~myStatus~0 := ~status~3; {9362#true} is VALID [2018-11-14 17:13:32,281 INFO L256 TraceCheckUtils]: 27: Hoare triple {9362#true} call IofCompleteRequest(~Irp, 0); {9362#true} is VALID [2018-11-14 17:13:32,281 INFO L273 TraceCheckUtils]: 28: Hoare triple {9362#true} ~Irp := #in~Irp;~PriorityBoost := #in~PriorityBoost; {9362#true} is VALID [2018-11-14 17:13:32,294 INFO L273 TraceCheckUtils]: 29: Hoare triple {9362#true} assume ~s~0 == ~NP~0;~s~0 := ~DC~0; {9364#(= ~DC~0 ~s~0)} is VALID [2018-11-14 17:13:32,309 INFO L273 TraceCheckUtils]: 30: Hoare triple {9364#(= ~DC~0 ~s~0)} assume true; {9364#(= ~DC~0 ~s~0)} is VALID [2018-11-14 17:13:32,318 INFO L268 TraceCheckUtils]: 31: Hoare quadruple {9364#(= ~DC~0 ~s~0)} {9362#true} #751#return; {9364#(= ~DC~0 ~s~0)} is VALID [2018-11-14 17:13:32,332 INFO L273 TraceCheckUtils]: 32: Hoare triple {9364#(= ~DC~0 ~s~0)} #res := ~status~3; {9364#(= ~DC~0 ~s~0)} is VALID [2018-11-14 17:13:32,340 INFO L273 TraceCheckUtils]: 33: Hoare triple {9364#(= ~DC~0 ~s~0)} assume true; {9364#(= ~DC~0 ~s~0)} is VALID [2018-11-14 17:13:32,353 INFO L268 TraceCheckUtils]: 34: Hoare quadruple {9364#(= ~DC~0 ~s~0)} {9362#true} #729#return; {9364#(= ~DC~0 ~s~0)} is VALID [2018-11-14 17:13:32,373 INFO L273 TraceCheckUtils]: 35: Hoare triple {9364#(= ~DC~0 ~s~0)} assume -2147483648 <= #t~ret29 && #t~ret29 <= 2147483647;~status~1 := #t~ret29;havoc #t~ret29; {9364#(= ~DC~0 ~s~0)} is VALID [2018-11-14 17:13:32,382 INFO L273 TraceCheckUtils]: 36: Hoare triple {9364#(= ~DC~0 ~s~0)} assume !(~pended~0 == 1); {9364#(= ~DC~0 ~s~0)} is VALID [2018-11-14 17:13:32,394 INFO L273 TraceCheckUtils]: 37: Hoare triple {9364#(= ~DC~0 ~s~0)} assume !(~pended~0 == 1); {9364#(= ~DC~0 ~s~0)} is VALID [2018-11-14 17:13:32,407 INFO L273 TraceCheckUtils]: 38: Hoare triple {9364#(= ~DC~0 ~s~0)} assume ~s~0 != ~UNLOADED~0; {9364#(= ~DC~0 ~s~0)} is VALID [2018-11-14 17:13:32,419 INFO L273 TraceCheckUtils]: 39: Hoare triple {9364#(= ~DC~0 ~s~0)} assume ~status~1 != -1; {9364#(= ~DC~0 ~s~0)} is VALID [2018-11-14 17:13:32,438 INFO L273 TraceCheckUtils]: 40: Hoare triple {9364#(= ~DC~0 ~s~0)} assume !(~s~0 != ~SKIP2~0); {9364#(= ~DC~0 ~s~0)} is VALID [2018-11-14 17:13:32,447 INFO L273 TraceCheckUtils]: 41: Hoare triple {9364#(= ~DC~0 ~s~0)} assume !(~pended~0 == 1); {9364#(= ~DC~0 ~s~0)} is VALID [2018-11-14 17:13:32,456 INFO L273 TraceCheckUtils]: 42: Hoare triple {9364#(= ~DC~0 ~s~0)} assume !(~s~0 == ~DC~0); {9363#false} is VALID [2018-11-14 17:13:32,456 INFO L273 TraceCheckUtils]: 43: Hoare triple {9363#false} assume ~status~1 != ~lowerDriverReturn~0; {9363#false} is VALID [2018-11-14 17:13:32,456 INFO L256 TraceCheckUtils]: 44: Hoare triple {9363#false} call errorFn(); {9363#false} is VALID [2018-11-14 17:13:32,456 INFO L273 TraceCheckUtils]: 45: Hoare triple {9363#false} assume !false; {9363#false} is VALID [2018-11-14 17:13:32,458 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-11-14 17:13:32,458 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-14 17:13:32,458 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2018-11-14 17:13:32,459 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 46 [2018-11-14 17:13:32,459 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-14 17:13:32,459 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 3 states. [2018-11-14 17:13:32,589 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 46 edges. 46 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:13:32,589 INFO L459 AbstractCegarLoop]: Interpolant automaton has 3 states [2018-11-14 17:13:32,589 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2018-11-14 17:13:32,589 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2018-11-14 17:13:32,590 INFO L87 Difference]: Start difference. First operand 264 states and 357 transitions. Second operand 3 states. [2018-11-14 17:13:33,540 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:33,541 INFO L93 Difference]: Finished difference Result 284 states and 378 transitions. [2018-11-14 17:13:33,541 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2018-11-14 17:13:33,541 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 46 [2018-11-14 17:13:33,541 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-14 17:13:33,541 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 3 states. [2018-11-14 17:13:33,544 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 3 states to 3 states and 314 transitions. [2018-11-14 17:13:33,545 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 3 states. [2018-11-14 17:13:33,547 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 3 states to 3 states and 314 transitions. [2018-11-14 17:13:33,547 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 3 states and 314 transitions. [2018-11-14 17:13:34,172 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 314 edges. 314 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:13:34,178 INFO L225 Difference]: With dead ends: 284 [2018-11-14 17:13:34,178 INFO L226 Difference]: Without dead ends: 242 [2018-11-14 17:13:34,178 INFO L604 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2018-11-14 17:13:34,179 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 242 states. [2018-11-14 17:13:34,418 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 242 to 242. [2018-11-14 17:13:34,418 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-14 17:13:34,418 INFO L82 GeneralOperation]: Start isEquivalent. First operand 242 states. Second operand 242 states. [2018-11-14 17:13:34,418 INFO L74 IsIncluded]: Start isIncluded. First operand 242 states. Second operand 242 states. [2018-11-14 17:13:34,419 INFO L87 Difference]: Start difference. First operand 242 states. Second operand 242 states. [2018-11-14 17:13:34,426 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:34,426 INFO L93 Difference]: Finished difference Result 242 states and 321 transitions. [2018-11-14 17:13:34,427 INFO L276 IsEmpty]: Start isEmpty. Operand 242 states and 321 transitions. [2018-11-14 17:13:34,427 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:13:34,428 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:13:34,428 INFO L74 IsIncluded]: Start isIncluded. First operand 242 states. Second operand 242 states. [2018-11-14 17:13:34,428 INFO L87 Difference]: Start difference. First operand 242 states. Second operand 242 states. [2018-11-14 17:13:34,433 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:34,433 INFO L93 Difference]: Finished difference Result 242 states and 321 transitions. [2018-11-14 17:13:34,433 INFO L276 IsEmpty]: Start isEmpty. Operand 242 states and 321 transitions. [2018-11-14 17:13:34,434 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:13:34,434 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:13:34,434 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-14 17:13:34,434 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-14 17:13:34,434 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 242 states. [2018-11-14 17:13:34,440 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 242 states to 242 states and 321 transitions. [2018-11-14 17:13:34,441 INFO L78 Accepts]: Start accepts. Automaton has 242 states and 321 transitions. Word has length 46 [2018-11-14 17:13:34,441 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-14 17:13:34,441 INFO L480 AbstractCegarLoop]: Abstraction has 242 states and 321 transitions. [2018-11-14 17:13:34,441 INFO L481 AbstractCegarLoop]: Interpolant automaton has 3 states. [2018-11-14 17:13:34,441 INFO L276 IsEmpty]: Start isEmpty. Operand 242 states and 321 transitions. [2018-11-14 17:13:34,442 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 54 [2018-11-14 17:13:34,443 INFO L367 BasicCegarLoop]: Found error trace [2018-11-14 17:13:34,443 INFO L375 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-14 17:13:34,443 INFO L423 AbstractCegarLoop]: === Iteration 8 === [errorFnErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-14 17:13:34,443 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-14 17:13:34,443 INFO L82 PathProgramCache]: Analyzing trace with hash 1852297644, now seen corresponding path program 1 times [2018-11-14 17:13:34,443 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-14 17:13:34,444 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-14 17:13:34,444 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:13:34,444 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-14 17:13:34,445 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:13:34,462 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-14 17:13:34,686 INFO L256 TraceCheckUtils]: 0: Hoare triple {10556#true} call ULTIMATE.init(); {10556#true} is VALID [2018-11-14 17:13:34,686 INFO L273 TraceCheckUtils]: 1: Hoare triple {10556#true} ~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 0;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0; {10556#true} is VALID [2018-11-14 17:13:34,686 INFO L273 TraceCheckUtils]: 2: Hoare triple {10556#true} assume true; {10556#true} is VALID [2018-11-14 17:13:34,687 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {10556#true} {10556#true} #759#return; {10556#true} is VALID [2018-11-14 17:13:34,687 INFO L256 TraceCheckUtils]: 4: Hoare triple {10556#true} call #t~ret77 := main(); {10556#true} is VALID [2018-11-14 17:13:34,687 INFO L273 TraceCheckUtils]: 5: Hoare triple {10556#true} havoc ~status~1;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;~irp~0 := #t~nondet17;havoc #t~nondet17;havoc ~pirp~0;havoc ~pirp__IoStatus__Status~0;assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~irp_choice~0 := #t~nondet18;havoc #t~nondet18;assume -2147483648 <= #t~nondet19 && #t~nondet19 <= 2147483647;~devobj~0 := #t~nondet19;havoc #t~nondet19;havoc ~__cil_tmp8~0;~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 1;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0;~status~1 := 0;~pirp~0 := ~irp~0; {10556#true} is VALID [2018-11-14 17:13:34,687 INFO L256 TraceCheckUtils]: 6: Hoare triple {10556#true} call _BLAST_init(); {10556#true} is VALID [2018-11-14 17:13:34,688 INFO L273 TraceCheckUtils]: 7: Hoare triple {10556#true} ~UNLOADED~0 := 0;~NP~0 := 1;~DC~0 := 2;~SKIP1~0 := 3;~SKIP2~0 := 4;~MPR1~0 := 5;~MPR3~0 := 6;~IPC~0 := 7;~s~0 := ~UNLOADED~0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0; {10556#true} is VALID [2018-11-14 17:13:34,688 INFO L273 TraceCheckUtils]: 8: Hoare triple {10556#true} assume true; {10556#true} is VALID [2018-11-14 17:13:34,688 INFO L268 TraceCheckUtils]: 9: Hoare quadruple {10556#true} {10556#true} #717#return; {10556#true} is VALID [2018-11-14 17:13:34,688 INFO L273 TraceCheckUtils]: 10: Hoare triple {10556#true} assume ~status~1 >= 0;~s~0 := ~NP~0;~customIrp~0 := 0;~setEventCalled~0 := ~customIrp~0;~lowerDriverReturn~0 := ~setEventCalled~0;~compRegistered~0 := ~lowerDriverReturn~0;~pended~0 := ~compRegistered~0;~pirp__IoStatus__Status~0 := 0;~myStatus~0 := 0; {10556#true} is VALID [2018-11-14 17:13:34,688 INFO L273 TraceCheckUtils]: 11: Hoare triple {10556#true} assume !(~irp_choice~0 == 0); {10556#true} is VALID [2018-11-14 17:13:34,689 INFO L256 TraceCheckUtils]: 12: Hoare triple {10556#true} call stub_driver_init(); {10556#true} is VALID [2018-11-14 17:13:34,689 INFO L273 TraceCheckUtils]: 13: Hoare triple {10556#true} ~s~0 := ~NP~0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0; {10556#true} is VALID [2018-11-14 17:13:34,689 INFO L273 TraceCheckUtils]: 14: Hoare triple {10556#true} assume true; {10556#true} is VALID [2018-11-14 17:13:34,689 INFO L268 TraceCheckUtils]: 15: Hoare quadruple {10556#true} {10556#true} #719#return; {10556#true} is VALID [2018-11-14 17:13:34,689 INFO L273 TraceCheckUtils]: 16: Hoare triple {10556#true} assume !(~status~1 < 0);havoc ~tmp_ndt_1~0;assume -2147483648 <= #t~nondet20 && #t~nondet20 <= 2147483647;~tmp_ndt_1~0 := #t~nondet20;havoc #t~nondet20; {10556#true} is VALID [2018-11-14 17:13:34,690 INFO L273 TraceCheckUtils]: 17: Hoare triple {10556#true} assume !(~tmp_ndt_1~0 == 0);havoc ~tmp_ndt_2~0;assume -2147483648 <= #t~nondet21 && #t~nondet21 <= 2147483647;~tmp_ndt_2~0 := #t~nondet21;havoc #t~nondet21; {10556#true} is VALID [2018-11-14 17:13:34,690 INFO L273 TraceCheckUtils]: 18: Hoare triple {10556#true} assume !(~tmp_ndt_2~0 == 1);havoc ~tmp_ndt_3~0;assume -2147483648 <= #t~nondet22 && #t~nondet22 <= 2147483647;~tmp_ndt_3~0 := #t~nondet22;havoc #t~nondet22; {10556#true} is VALID [2018-11-14 17:13:34,690 INFO L273 TraceCheckUtils]: 19: Hoare triple {10556#true} assume ~tmp_ndt_3~0 == 3; {10556#true} is VALID [2018-11-14 17:13:34,690 INFO L256 TraceCheckUtils]: 20: Hoare triple {10556#true} call #t~ret27 := KbFilter_PnP(~devobj~0, ~pirp~0); {10556#true} is VALID [2018-11-14 17:13:34,691 INFO L273 TraceCheckUtils]: 21: Hoare triple {10556#true} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;havoc ~devExt~0;havoc ~irpStack~0;havoc ~status~0;assume -2147483648 <= #t~nondet0 && #t~nondet0 <= 2147483647;~event~0 := #t~nondet0;havoc #t~nondet0;assume -2147483648 <= #t~nondet1 && #t~nondet1 <= 2147483647;~DeviceObject__DeviceExtension~0 := #t~nondet1;havoc #t~nondet1;assume -2147483648 <= #t~nondet2 && #t~nondet2 <= 2147483647;~Irp__Tail__Overlay__CurrentStackLocation~0 := #t~nondet2;havoc #t~nondet2;assume -2147483648 <= #t~nondet3 && #t~nondet3 <= 2147483647;~irpStack__MinorFunction~0 := #t~nondet3;havoc #t~nondet3;assume -2147483648 <= #t~nondet4 && #t~nondet4 <= 2147483647;~devExt__TopOfStack~0 := #t~nondet4;havoc #t~nondet4;havoc ~devExt__Started~0;havoc ~devExt__Removed~0;havoc ~devExt__SurpriseRemoved~0;havoc ~Irp__IoStatus__Status~0;havoc ~Irp__IoStatus__Information~0;assume -2147483648 <= #t~nondet5 && #t~nondet5 <= 2147483647;~Irp__CurrentLocation~0 := #t~nondet5;havoc #t~nondet5;havoc ~irpSp~0;havoc ~nextIrpSp~0;havoc ~nextIrpSp__Control~0;havoc ~irpSp___0~0;havoc ~irpSp__Context~0;havoc ~irpSp__Control~0;havoc ~__cil_tmp23~0;~status~0 := 0;~devExt~0 := ~DeviceObject__DeviceExtension~0;~irpStack~0 := ~Irp__Tail__Overlay__CurrentStackLocation~0; {10556#true} is VALID [2018-11-14 17:13:34,691 INFO L273 TraceCheckUtils]: 22: Hoare triple {10556#true} assume ~irpStack__MinorFunction~0 == 0; {10556#true} is VALID [2018-11-14 17:13:34,691 INFO L273 TraceCheckUtils]: 23: Hoare triple {10556#true} ~irpSp~0 := ~Irp__Tail__Overlay__CurrentStackLocation~0;~nextIrpSp~0 := ~Irp__Tail__Overlay__CurrentStackLocation~0 - 1;~nextIrpSp__Control~0 := 0; {10556#true} is VALID [2018-11-14 17:13:34,691 INFO L273 TraceCheckUtils]: 24: Hoare triple {10556#true} assume !(~s~0 != ~NP~0); {10556#true} is VALID [2018-11-14 17:13:34,691 INFO L273 TraceCheckUtils]: 25: Hoare triple {10556#true} assume !(~compRegistered~0 != 0);~compRegistered~0 := 1; {10556#true} is VALID [2018-11-14 17:13:34,692 INFO L273 TraceCheckUtils]: 26: Hoare triple {10556#true} ~irpSp___0~0 := ~Irp__Tail__Overlay__CurrentStackLocation~0 - 1;~irpSp__Context~0 := ~event~0;~irpSp__Control~0 := 224; {10556#true} is VALID [2018-11-14 17:13:34,692 INFO L256 TraceCheckUtils]: 27: Hoare triple {10556#true} call #t~ret6 := IofCallDriver(~devExt__TopOfStack~0, ~Irp); {10556#true} is VALID [2018-11-14 17:13:34,692 INFO L273 TraceCheckUtils]: 28: Hoare triple {10556#true} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;havoc ~returnVal2~0;havoc ~compRetStatus~0;assume -2147483648 <= #t~nondet30 && #t~nondet30 <= 2147483647;~lcontext~0 := #t~nondet30;havoc #t~nondet30;havoc ~__cil_tmp7~0; {10556#true} is VALID [2018-11-14 17:13:34,692 INFO L273 TraceCheckUtils]: 29: Hoare triple {10556#true} assume ~compRegistered~0 != 0; {10556#true} is VALID [2018-11-14 17:13:34,693 INFO L256 TraceCheckUtils]: 30: Hoare triple {10556#true} call #t~ret31 := KbFilter_Complete(~DeviceObject, ~Irp, ~lcontext~0); {10556#true} is VALID [2018-11-14 17:13:34,693 INFO L273 TraceCheckUtils]: 31: Hoare triple {10556#true} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;~Context := #in~Context;havoc ~event~1;~event~1 := ~Context; {10556#true} is VALID [2018-11-14 17:13:34,693 INFO L256 TraceCheckUtils]: 32: Hoare triple {10556#true} call #t~ret36 := KeSetEvent(~event~1, 0, 0); {10556#true} is VALID [2018-11-14 17:13:34,693 INFO L273 TraceCheckUtils]: 33: Hoare triple {10556#true} ~Event := #in~Event;~Increment := #in~Increment;~Wait := #in~Wait;assume -2147483648 <= #t~nondet34 && #t~nondet34 <= 2147483647;~l~0 := #t~nondet34;havoc #t~nondet34;~setEventCalled~0 := 1;#res := ~l~0; {10556#true} is VALID [2018-11-14 17:13:34,694 INFO L273 TraceCheckUtils]: 34: Hoare triple {10556#true} assume true; {10556#true} is VALID [2018-11-14 17:13:34,694 INFO L268 TraceCheckUtils]: 35: Hoare quadruple {10556#true} {10556#true} #711#return; {10556#true} is VALID [2018-11-14 17:13:34,694 INFO L273 TraceCheckUtils]: 36: Hoare triple {10556#true} assume -2147483648 <= #t~ret36 && #t~ret36 <= 2147483647;havoc #t~ret36;#res := -1073741802; {10556#true} is VALID [2018-11-14 17:13:34,694 INFO L273 TraceCheckUtils]: 37: Hoare triple {10556#true} assume true; {10556#true} is VALID [2018-11-14 17:13:34,695 INFO L268 TraceCheckUtils]: 38: Hoare quadruple {10556#true} {10556#true} #735#return; {10556#true} is VALID [2018-11-14 17:13:34,695 INFO L273 TraceCheckUtils]: 39: Hoare triple {10556#true} assume -2147483648 <= #t~ret31 && #t~ret31 <= 2147483647;~compRetStatus~0 := #t~ret31;havoc #t~ret31;~__cil_tmp7~0 := ~compRetStatus~0; {10556#true} is VALID [2018-11-14 17:13:34,695 INFO L273 TraceCheckUtils]: 40: Hoare triple {10556#true} assume ~__cil_tmp7~0 == -1073741802; {10556#true} is VALID [2018-11-14 17:13:34,695 INFO L256 TraceCheckUtils]: 41: Hoare triple {10556#true} call stubMoreProcessingRequired(); {10556#true} is VALID [2018-11-14 17:13:34,708 INFO L273 TraceCheckUtils]: 42: Hoare triple {10556#true} assume ~s~0 == ~NP~0;~s~0 := ~MPR1~0; {10558#(= ~MPR1~0 ~s~0)} is VALID [2018-11-14 17:13:34,721 INFO L273 TraceCheckUtils]: 43: Hoare triple {10558#(= ~MPR1~0 ~s~0)} assume true; {10558#(= ~MPR1~0 ~s~0)} is VALID [2018-11-14 17:13:34,733 INFO L268 TraceCheckUtils]: 44: Hoare quadruple {10558#(= ~MPR1~0 ~s~0)} {10556#true} #737#return; {10558#(= ~MPR1~0 ~s~0)} is VALID [2018-11-14 17:13:34,746 INFO L273 TraceCheckUtils]: 45: Hoare triple {10558#(= ~MPR1~0 ~s~0)} havoc ~tmp_ndt_6~0;assume -2147483648 <= #t~nondet32 && #t~nondet32 <= 2147483647;~tmp_ndt_6~0 := #t~nondet32;havoc #t~nondet32; {10558#(= ~MPR1~0 ~s~0)} is VALID [2018-11-14 17:13:34,759 INFO L273 TraceCheckUtils]: 46: Hoare triple {10558#(= ~MPR1~0 ~s~0)} assume ~tmp_ndt_6~0 == 0; {10558#(= ~MPR1~0 ~s~0)} is VALID [2018-11-14 17:13:34,771 INFO L273 TraceCheckUtils]: 47: Hoare triple {10558#(= ~MPR1~0 ~s~0)} ~returnVal2~0 := 0; {10558#(= ~MPR1~0 ~s~0)} is VALID [2018-11-14 17:13:34,784 INFO L273 TraceCheckUtils]: 48: Hoare triple {10558#(= ~MPR1~0 ~s~0)} assume !(~s~0 == ~NP~0); {10558#(= ~MPR1~0 ~s~0)} is VALID [2018-11-14 17:13:34,796 INFO L273 TraceCheckUtils]: 49: Hoare triple {10558#(= ~MPR1~0 ~s~0)} assume !(~s~0 == ~MPR1~0); {10557#false} is VALID [2018-11-14 17:13:34,797 INFO L273 TraceCheckUtils]: 50: Hoare triple {10557#false} assume !(~s~0 == ~SKIP1~0); {10557#false} is VALID [2018-11-14 17:13:34,797 INFO L256 TraceCheckUtils]: 51: Hoare triple {10557#false} call errorFn(); {10557#false} is VALID [2018-11-14 17:13:34,797 INFO L273 TraceCheckUtils]: 52: Hoare triple {10557#false} assume !false; {10557#false} is VALID [2018-11-14 17:13:34,799 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-11-14 17:13:34,799 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-14 17:13:34,799 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2018-11-14 17:13:34,800 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 53 [2018-11-14 17:13:34,800 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-14 17:13:34,800 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 3 states. [2018-11-14 17:13:34,886 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 53 edges. 53 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:13:34,886 INFO L459 AbstractCegarLoop]: Interpolant automaton has 3 states [2018-11-14 17:13:34,887 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2018-11-14 17:13:34,887 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2018-11-14 17:13:34,887 INFO L87 Difference]: Start difference. First operand 242 states and 321 transitions. Second operand 3 states. [2018-11-14 17:13:36,201 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:36,202 INFO L93 Difference]: Finished difference Result 270 states and 354 transitions. [2018-11-14 17:13:36,202 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2018-11-14 17:13:36,202 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 53 [2018-11-14 17:13:36,202 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-14 17:13:36,202 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 3 states. [2018-11-14 17:13:36,205 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 3 states to 3 states and 328 transitions. [2018-11-14 17:13:36,205 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 3 states. [2018-11-14 17:13:36,208 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 3 states to 3 states and 328 transitions. [2018-11-14 17:13:36,208 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 3 states and 328 transitions. [2018-11-14 17:13:36,498 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 328 edges. 328 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:13:36,505 INFO L225 Difference]: With dead ends: 270 [2018-11-14 17:13:36,505 INFO L226 Difference]: Without dead ends: 240 [2018-11-14 17:13:36,505 INFO L604 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2018-11-14 17:13:36,506 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 240 states. [2018-11-14 17:13:37,102 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 240 to 240. [2018-11-14 17:13:37,102 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-14 17:13:37,102 INFO L82 GeneralOperation]: Start isEquivalent. First operand 240 states. Second operand 240 states. [2018-11-14 17:13:37,102 INFO L74 IsIncluded]: Start isIncluded. First operand 240 states. Second operand 240 states. [2018-11-14 17:13:37,102 INFO L87 Difference]: Start difference. First operand 240 states. Second operand 240 states. [2018-11-14 17:13:37,109 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:37,110 INFO L93 Difference]: Finished difference Result 240 states and 317 transitions. [2018-11-14 17:13:37,110 INFO L276 IsEmpty]: Start isEmpty. Operand 240 states and 317 transitions. [2018-11-14 17:13:37,111 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:13:37,111 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:13:37,111 INFO L74 IsIncluded]: Start isIncluded. First operand 240 states. Second operand 240 states. [2018-11-14 17:13:37,111 INFO L87 Difference]: Start difference. First operand 240 states. Second operand 240 states. [2018-11-14 17:13:37,117 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:37,118 INFO L93 Difference]: Finished difference Result 240 states and 317 transitions. [2018-11-14 17:13:37,118 INFO L276 IsEmpty]: Start isEmpty. Operand 240 states and 317 transitions. [2018-11-14 17:13:37,119 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:13:37,119 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:13:37,119 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-14 17:13:37,119 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-14 17:13:37,119 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 240 states. [2018-11-14 17:13:37,126 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 240 states to 240 states and 317 transitions. [2018-11-14 17:13:37,126 INFO L78 Accepts]: Start accepts. Automaton has 240 states and 317 transitions. Word has length 53 [2018-11-14 17:13:37,126 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-14 17:13:37,127 INFO L480 AbstractCegarLoop]: Abstraction has 240 states and 317 transitions. [2018-11-14 17:13:37,127 INFO L481 AbstractCegarLoop]: Interpolant automaton has 3 states. [2018-11-14 17:13:37,127 INFO L276 IsEmpty]: Start isEmpty. Operand 240 states and 317 transitions. [2018-11-14 17:13:37,128 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 52 [2018-11-14 17:13:37,128 INFO L367 BasicCegarLoop]: Found error trace [2018-11-14 17:13:37,128 INFO L375 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-14 17:13:37,129 INFO L423 AbstractCegarLoop]: === Iteration 9 === [errorFnErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-14 17:13:37,129 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-14 17:13:37,129 INFO L82 PathProgramCache]: Analyzing trace with hash 1745163498, now seen corresponding path program 1 times [2018-11-14 17:13:37,129 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-14 17:13:37,129 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-14 17:13:37,130 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:13:37,130 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-14 17:13:37,130 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:13:37,145 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-14 17:13:37,304 INFO L256 TraceCheckUtils]: 0: Hoare triple {11726#true} call ULTIMATE.init(); {11726#true} is VALID [2018-11-14 17:13:37,304 INFO L273 TraceCheckUtils]: 1: Hoare triple {11726#true} ~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 0;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0; {11726#true} is VALID [2018-11-14 17:13:37,305 INFO L273 TraceCheckUtils]: 2: Hoare triple {11726#true} assume true; {11726#true} is VALID [2018-11-14 17:13:37,305 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {11726#true} {11726#true} #759#return; {11726#true} is VALID [2018-11-14 17:13:37,305 INFO L256 TraceCheckUtils]: 4: Hoare triple {11726#true} call #t~ret77 := main(); {11726#true} is VALID [2018-11-14 17:13:37,305 INFO L273 TraceCheckUtils]: 5: Hoare triple {11726#true} havoc ~status~1;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;~irp~0 := #t~nondet17;havoc #t~nondet17;havoc ~pirp~0;havoc ~pirp__IoStatus__Status~0;assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~irp_choice~0 := #t~nondet18;havoc #t~nondet18;assume -2147483648 <= #t~nondet19 && #t~nondet19 <= 2147483647;~devobj~0 := #t~nondet19;havoc #t~nondet19;havoc ~__cil_tmp8~0;~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 1;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0;~status~1 := 0;~pirp~0 := ~irp~0; {11726#true} is VALID [2018-11-14 17:13:37,306 INFO L256 TraceCheckUtils]: 6: Hoare triple {11726#true} call _BLAST_init(); {11726#true} is VALID [2018-11-14 17:13:37,306 INFO L273 TraceCheckUtils]: 7: Hoare triple {11726#true} ~UNLOADED~0 := 0;~NP~0 := 1;~DC~0 := 2;~SKIP1~0 := 3;~SKIP2~0 := 4;~MPR1~0 := 5;~MPR3~0 := 6;~IPC~0 := 7;~s~0 := ~UNLOADED~0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0; {11726#true} is VALID [2018-11-14 17:13:37,307 INFO L273 TraceCheckUtils]: 8: Hoare triple {11726#true} assume true; {11726#true} is VALID [2018-11-14 17:13:37,307 INFO L268 TraceCheckUtils]: 9: Hoare quadruple {11726#true} {11726#true} #717#return; {11726#true} is VALID [2018-11-14 17:13:37,308 INFO L273 TraceCheckUtils]: 10: Hoare triple {11726#true} assume ~status~1 >= 0;~s~0 := ~NP~0;~customIrp~0 := 0;~setEventCalled~0 := ~customIrp~0;~lowerDriverReturn~0 := ~setEventCalled~0;~compRegistered~0 := ~lowerDriverReturn~0;~pended~0 := ~compRegistered~0;~pirp__IoStatus__Status~0 := 0;~myStatus~0 := 0; {11726#true} is VALID [2018-11-14 17:13:37,308 INFO L273 TraceCheckUtils]: 11: Hoare triple {11726#true} assume !(~irp_choice~0 == 0); {11726#true} is VALID [2018-11-14 17:13:37,308 INFO L256 TraceCheckUtils]: 12: Hoare triple {11726#true} call stub_driver_init(); {11726#true} is VALID [2018-11-14 17:13:37,309 INFO L273 TraceCheckUtils]: 13: Hoare triple {11726#true} ~s~0 := ~NP~0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0; {11726#true} is VALID [2018-11-14 17:13:37,309 INFO L273 TraceCheckUtils]: 14: Hoare triple {11726#true} assume true; {11726#true} is VALID [2018-11-14 17:13:37,309 INFO L268 TraceCheckUtils]: 15: Hoare quadruple {11726#true} {11726#true} #719#return; {11726#true} is VALID [2018-11-14 17:13:37,309 INFO L273 TraceCheckUtils]: 16: Hoare triple {11726#true} assume !(~status~1 < 0);havoc ~tmp_ndt_1~0;assume -2147483648 <= #t~nondet20 && #t~nondet20 <= 2147483647;~tmp_ndt_1~0 := #t~nondet20;havoc #t~nondet20; {11726#true} is VALID [2018-11-14 17:13:37,310 INFO L273 TraceCheckUtils]: 17: Hoare triple {11726#true} assume !(~tmp_ndt_1~0 == 0);havoc ~tmp_ndt_2~0;assume -2147483648 <= #t~nondet21 && #t~nondet21 <= 2147483647;~tmp_ndt_2~0 := #t~nondet21;havoc #t~nondet21; {11726#true} is VALID [2018-11-14 17:13:37,310 INFO L273 TraceCheckUtils]: 18: Hoare triple {11726#true} assume !(~tmp_ndt_2~0 == 1);havoc ~tmp_ndt_3~0;assume -2147483648 <= #t~nondet22 && #t~nondet22 <= 2147483647;~tmp_ndt_3~0 := #t~nondet22;havoc #t~nondet22; {11726#true} is VALID [2018-11-14 17:13:37,310 INFO L273 TraceCheckUtils]: 19: Hoare triple {11726#true} assume !(~tmp_ndt_3~0 == 3);havoc ~tmp_ndt_4~0;assume -2147483648 <= #t~nondet23 && #t~nondet23 <= 2147483647;~tmp_ndt_4~0 := #t~nondet23;havoc #t~nondet23; {11726#true} is VALID [2018-11-14 17:13:37,310 INFO L273 TraceCheckUtils]: 20: Hoare triple {11726#true} assume ~tmp_ndt_4~0 == 4; {11726#true} is VALID [2018-11-14 17:13:37,311 INFO L256 TraceCheckUtils]: 21: Hoare triple {11726#true} call #t~ret28 := KbFilter_Power(~devobj~0, ~pirp~0); {11726#true} is VALID [2018-11-14 17:13:37,311 INFO L273 TraceCheckUtils]: 22: Hoare triple {11726#true} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;assume -2147483648 <= #t~nondet46 && #t~nondet46 <= 2147483647;~irpStack__MinorFunction~1 := #t~nondet46;havoc #t~nondet46;havoc ~devExt__DeviceState~0;assume -2147483648 <= #t~nondet47 && #t~nondet47 <= 2147483647;~powerState__DeviceState~0 := #t~nondet47;havoc #t~nondet47;assume -2147483648 <= #t~nondet48 && #t~nondet48 <= 2147483647;~Irp__CurrentLocation~2 := #t~nondet48;havoc #t~nondet48;assume -2147483648 <= #t~nondet49 && #t~nondet49 <= 2147483647;~Irp__Tail__Overlay__CurrentStackLocation~2 := #t~nondet49;havoc #t~nondet49;assume -2147483648 <= #t~nondet50 && #t~nondet50 <= 2147483647;~devExt__TopOfStack~1 := #t~nondet50;havoc #t~nondet50;assume -2147483648 <= #t~nondet51 && #t~nondet51 <= 2147483647;~powerType~0 := #t~nondet51;havoc #t~nondet51;havoc ~tmp~2; {11726#true} is VALID [2018-11-14 17:13:37,311 INFO L273 TraceCheckUtils]: 23: Hoare triple {11726#true} assume ~irpStack__MinorFunction~1 == 2; {11726#true} is VALID [2018-11-14 17:13:37,312 INFO L273 TraceCheckUtils]: 24: Hoare triple {11726#true} assume !(~powerType~0 == ~DevicePowerState~0); {11726#true} is VALID [2018-11-14 17:13:37,312 INFO L273 TraceCheckUtils]: 25: Hoare triple {11726#true} assume ~s~0 == ~NP~0;~s~0 := ~SKIP1~0; {11726#true} is VALID [2018-11-14 17:13:37,312 INFO L273 TraceCheckUtils]: 26: Hoare triple {11726#true} #t~post52 := ~Irp__CurrentLocation~2;~Irp__CurrentLocation~2 := #t~post52 + 1;havoc #t~post52;#t~post53 := ~Irp__Tail__Overlay__CurrentStackLocation~2;~Irp__Tail__Overlay__CurrentStackLocation~2 := #t~post53 + 1;havoc #t~post53; {11726#true} is VALID [2018-11-14 17:13:37,312 INFO L256 TraceCheckUtils]: 27: Hoare triple {11726#true} call #t~ret54 := PoCallDriver(~devExt__TopOfStack~1, ~Irp); {11726#true} is VALID [2018-11-14 17:13:37,313 INFO L273 TraceCheckUtils]: 28: Hoare triple {11726#true} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;havoc ~compRetStatus~1;havoc ~returnVal~0;assume -2147483648 <= #t~nondet55 && #t~nondet55 <= 2147483647;~lcontext~1 := #t~nondet55;havoc #t~nondet55;havoc ~__cil_tmp7~1;havoc ~__cil_tmp8~1; {11726#true} is VALID [2018-11-14 17:13:37,313 INFO L273 TraceCheckUtils]: 29: Hoare triple {11726#true} assume !(~compRegistered~0 != 0); {11726#true} is VALID [2018-11-14 17:13:37,313 INFO L273 TraceCheckUtils]: 30: Hoare triple {11726#true} havoc ~tmp_ndt_9~0;assume -2147483648 <= #t~nondet57 && #t~nondet57 <= 2147483647;~tmp_ndt_9~0 := #t~nondet57;havoc #t~nondet57; {11726#true} is VALID [2018-11-14 17:13:37,313 INFO L273 TraceCheckUtils]: 31: Hoare triple {11726#true} assume ~tmp_ndt_9~0 == 0; {11726#true} is VALID [2018-11-14 17:13:37,314 INFO L273 TraceCheckUtils]: 32: Hoare triple {11726#true} ~returnVal~0 := 0; {11726#true} is VALID [2018-11-14 17:13:37,329 INFO L273 TraceCheckUtils]: 33: Hoare triple {11726#true} assume ~s~0 == ~NP~0;~s~0 := ~IPC~0;~lowerDriverReturn~0 := ~returnVal~0; {11728#(= ~lowerDriverReturn~0 PoCallDriver_~returnVal~0)} is VALID [2018-11-14 17:13:37,338 INFO L273 TraceCheckUtils]: 34: Hoare triple {11728#(= ~lowerDriverReturn~0 PoCallDriver_~returnVal~0)} #res := ~returnVal~0; {11729#(= ~lowerDriverReturn~0 |PoCallDriver_#res|)} is VALID [2018-11-14 17:13:37,353 INFO L273 TraceCheckUtils]: 35: Hoare triple {11729#(= ~lowerDriverReturn~0 |PoCallDriver_#res|)} assume true; {11729#(= ~lowerDriverReturn~0 |PoCallDriver_#res|)} is VALID [2018-11-14 17:13:37,358 INFO L268 TraceCheckUtils]: 36: Hoare quadruple {11729#(= ~lowerDriverReturn~0 |PoCallDriver_#res|)} {11726#true} #715#return; {11730#(= ~lowerDriverReturn~0 |KbFilter_Power_#t~ret54|)} is VALID [2018-11-14 17:13:37,360 INFO L273 TraceCheckUtils]: 37: Hoare triple {11730#(= ~lowerDriverReturn~0 |KbFilter_Power_#t~ret54|)} assume -2147483648 <= #t~ret54 && #t~ret54 <= 2147483647;~tmp~2 := #t~ret54;havoc #t~ret54;#res := ~tmp~2; {11731#(= ~lowerDriverReturn~0 |KbFilter_Power_#res|)} is VALID [2018-11-14 17:13:37,360 INFO L273 TraceCheckUtils]: 38: Hoare triple {11731#(= ~lowerDriverReturn~0 |KbFilter_Power_#res|)} assume true; {11731#(= ~lowerDriverReturn~0 |KbFilter_Power_#res|)} is VALID [2018-11-14 17:13:37,361 INFO L268 TraceCheckUtils]: 39: Hoare quadruple {11731#(= ~lowerDriverReturn~0 |KbFilter_Power_#res|)} {11726#true} #727#return; {11732#(= ~lowerDriverReturn~0 |main_#t~ret28|)} is VALID [2018-11-14 17:13:37,361 INFO L273 TraceCheckUtils]: 40: Hoare triple {11732#(= ~lowerDriverReturn~0 |main_#t~ret28|)} assume -2147483648 <= #t~ret28 && #t~ret28 <= 2147483647;~status~1 := #t~ret28;havoc #t~ret28; {11733#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:37,362 INFO L273 TraceCheckUtils]: 41: Hoare triple {11733#(= main_~status~1 ~lowerDriverReturn~0)} assume !(~pended~0 == 1); {11733#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:37,362 INFO L273 TraceCheckUtils]: 42: Hoare triple {11733#(= main_~status~1 ~lowerDriverReturn~0)} assume !(~pended~0 == 1); {11733#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:37,363 INFO L273 TraceCheckUtils]: 43: Hoare triple {11733#(= main_~status~1 ~lowerDriverReturn~0)} assume ~s~0 != ~UNLOADED~0; {11733#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:37,363 INFO L273 TraceCheckUtils]: 44: Hoare triple {11733#(= main_~status~1 ~lowerDriverReturn~0)} assume ~status~1 != -1; {11733#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:37,364 INFO L273 TraceCheckUtils]: 45: Hoare triple {11733#(= main_~status~1 ~lowerDriverReturn~0)} assume !(~s~0 != ~SKIP2~0); {11733#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:37,364 INFO L273 TraceCheckUtils]: 46: Hoare triple {11733#(= main_~status~1 ~lowerDriverReturn~0)} assume !(~pended~0 == 1); {11733#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:37,365 INFO L273 TraceCheckUtils]: 47: Hoare triple {11733#(= main_~status~1 ~lowerDriverReturn~0)} assume !(~s~0 == ~DC~0); {11733#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:37,366 INFO L273 TraceCheckUtils]: 48: Hoare triple {11733#(= main_~status~1 ~lowerDriverReturn~0)} assume ~status~1 != ~lowerDriverReturn~0; {11727#false} is VALID [2018-11-14 17:13:37,366 INFO L256 TraceCheckUtils]: 49: Hoare triple {11727#false} call errorFn(); {11727#false} is VALID [2018-11-14 17:13:37,366 INFO L273 TraceCheckUtils]: 50: Hoare triple {11727#false} assume !false; {11727#false} is VALID [2018-11-14 17:13:37,370 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-11-14 17:13:37,370 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-14 17:13:37,370 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2018-11-14 17:13:37,370 INFO L78 Accepts]: Start accepts. Automaton has 8 states. Word has length 51 [2018-11-14 17:13:37,371 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-14 17:13:37,371 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 8 states. [2018-11-14 17:13:37,425 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 51 edges. 51 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:13:37,425 INFO L459 AbstractCegarLoop]: Interpolant automaton has 8 states [2018-11-14 17:13:37,426 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2018-11-14 17:13:37,426 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=43, Unknown=0, NotChecked=0, Total=56 [2018-11-14 17:13:37,426 INFO L87 Difference]: Start difference. First operand 240 states and 317 transitions. Second operand 8 states. [2018-11-14 17:13:39,380 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:39,380 INFO L93 Difference]: Finished difference Result 252 states and 329 transitions. [2018-11-14 17:13:39,380 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2018-11-14 17:13:39,380 INFO L78 Accepts]: Start accepts. Automaton has 8 states. Word has length 51 [2018-11-14 17:13:39,381 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-14 17:13:39,381 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 8 states. [2018-11-14 17:13:39,383 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 8 states to 8 states and 292 transitions. [2018-11-14 17:13:39,383 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 8 states. [2018-11-14 17:13:39,386 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 8 states to 8 states and 292 transitions. [2018-11-14 17:13:39,386 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 8 states and 292 transitions. [2018-11-14 17:13:39,677 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 292 edges. 292 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:13:39,682 INFO L225 Difference]: With dead ends: 252 [2018-11-14 17:13:39,683 INFO L226 Difference]: Without dead ends: 211 [2018-11-14 17:13:39,683 INFO L604 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=55, Unknown=0, NotChecked=0, Total=72 [2018-11-14 17:13:39,684 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 211 states. [2018-11-14 17:13:39,894 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 211 to 211. [2018-11-14 17:13:39,894 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-14 17:13:39,894 INFO L82 GeneralOperation]: Start isEquivalent. First operand 211 states. Second operand 211 states. [2018-11-14 17:13:39,895 INFO L74 IsIncluded]: Start isIncluded. First operand 211 states. Second operand 211 states. [2018-11-14 17:13:39,895 INFO L87 Difference]: Start difference. First operand 211 states. Second operand 211 states. [2018-11-14 17:13:39,900 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:39,901 INFO L93 Difference]: Finished difference Result 211 states and 277 transitions. [2018-11-14 17:13:39,901 INFO L276 IsEmpty]: Start isEmpty. Operand 211 states and 277 transitions. [2018-11-14 17:13:39,901 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:13:39,901 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:13:39,902 INFO L74 IsIncluded]: Start isIncluded. First operand 211 states. Second operand 211 states. [2018-11-14 17:13:39,902 INFO L87 Difference]: Start difference. First operand 211 states. Second operand 211 states. [2018-11-14 17:13:39,907 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:39,907 INFO L93 Difference]: Finished difference Result 211 states and 277 transitions. [2018-11-14 17:13:39,907 INFO L276 IsEmpty]: Start isEmpty. Operand 211 states and 277 transitions. [2018-11-14 17:13:39,907 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:13:39,908 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:13:39,908 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-14 17:13:39,908 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-14 17:13:39,908 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 211 states. [2018-11-14 17:13:39,913 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 211 states to 211 states and 277 transitions. [2018-11-14 17:13:39,913 INFO L78 Accepts]: Start accepts. Automaton has 211 states and 277 transitions. Word has length 51 [2018-11-14 17:13:39,913 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-14 17:13:39,913 INFO L480 AbstractCegarLoop]: Abstraction has 211 states and 277 transitions. [2018-11-14 17:13:39,914 INFO L481 AbstractCegarLoop]: Interpolant automaton has 8 states. [2018-11-14 17:13:39,914 INFO L276 IsEmpty]: Start isEmpty. Operand 211 states and 277 transitions. [2018-11-14 17:13:39,915 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 53 [2018-11-14 17:13:39,915 INFO L367 BasicCegarLoop]: Found error trace [2018-11-14 17:13:39,915 INFO L375 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-14 17:13:39,915 INFO L423 AbstractCegarLoop]: === Iteration 10 === [errorFnErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-14 17:13:39,915 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-14 17:13:39,915 INFO L82 PathProgramCache]: Analyzing trace with hash 143486070, now seen corresponding path program 1 times [2018-11-14 17:13:39,915 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-14 17:13:39,916 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-14 17:13:39,916 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:13:39,916 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-14 17:13:39,917 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:13:39,929 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-14 17:13:40,610 INFO L256 TraceCheckUtils]: 0: Hoare triple {12783#true} call ULTIMATE.init(); {12783#true} is VALID [2018-11-14 17:13:40,610 INFO L273 TraceCheckUtils]: 1: Hoare triple {12783#true} ~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 0;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0; {12783#true} is VALID [2018-11-14 17:13:40,611 INFO L273 TraceCheckUtils]: 2: Hoare triple {12783#true} assume true; {12783#true} is VALID [2018-11-14 17:13:40,611 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {12783#true} {12783#true} #759#return; {12783#true} is VALID [2018-11-14 17:13:40,611 INFO L256 TraceCheckUtils]: 4: Hoare triple {12783#true} call #t~ret77 := main(); {12783#true} is VALID [2018-11-14 17:13:40,612 INFO L273 TraceCheckUtils]: 5: Hoare triple {12783#true} havoc ~status~1;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;~irp~0 := #t~nondet17;havoc #t~nondet17;havoc ~pirp~0;havoc ~pirp__IoStatus__Status~0;assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~irp_choice~0 := #t~nondet18;havoc #t~nondet18;assume -2147483648 <= #t~nondet19 && #t~nondet19 <= 2147483647;~devobj~0 := #t~nondet19;havoc #t~nondet19;havoc ~__cil_tmp8~0;~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 1;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0;~status~1 := 0;~pirp~0 := ~irp~0; {12783#true} is VALID [2018-11-14 17:13:40,612 INFO L256 TraceCheckUtils]: 6: Hoare triple {12783#true} call _BLAST_init(); {12783#true} is VALID [2018-11-14 17:13:40,612 INFO L273 TraceCheckUtils]: 7: Hoare triple {12783#true} ~UNLOADED~0 := 0;~NP~0 := 1;~DC~0 := 2;~SKIP1~0 := 3;~SKIP2~0 := 4;~MPR1~0 := 5;~MPR3~0 := 6;~IPC~0 := 7;~s~0 := ~UNLOADED~0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0; {12783#true} is VALID [2018-11-14 17:13:40,612 INFO L273 TraceCheckUtils]: 8: Hoare triple {12783#true} assume true; {12783#true} is VALID [2018-11-14 17:13:40,613 INFO L268 TraceCheckUtils]: 9: Hoare quadruple {12783#true} {12783#true} #717#return; {12783#true} is VALID [2018-11-14 17:13:40,613 INFO L273 TraceCheckUtils]: 10: Hoare triple {12783#true} assume ~status~1 >= 0;~s~0 := ~NP~0;~customIrp~0 := 0;~setEventCalled~0 := ~customIrp~0;~lowerDriverReturn~0 := ~setEventCalled~0;~compRegistered~0 := ~lowerDriverReturn~0;~pended~0 := ~compRegistered~0;~pirp__IoStatus__Status~0 := 0;~myStatus~0 := 0; {12783#true} is VALID [2018-11-14 17:13:40,613 INFO L273 TraceCheckUtils]: 11: Hoare triple {12783#true} assume !(~irp_choice~0 == 0); {12783#true} is VALID [2018-11-14 17:13:40,613 INFO L256 TraceCheckUtils]: 12: Hoare triple {12783#true} call stub_driver_init(); {12783#true} is VALID [2018-11-14 17:13:40,613 INFO L273 TraceCheckUtils]: 13: Hoare triple {12783#true} ~s~0 := ~NP~0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0; {12783#true} is VALID [2018-11-14 17:13:40,614 INFO L273 TraceCheckUtils]: 14: Hoare triple {12783#true} assume true; {12783#true} is VALID [2018-11-14 17:13:40,614 INFO L268 TraceCheckUtils]: 15: Hoare quadruple {12783#true} {12783#true} #719#return; {12783#true} is VALID [2018-11-14 17:13:40,614 INFO L273 TraceCheckUtils]: 16: Hoare triple {12783#true} assume !(~status~1 < 0);havoc ~tmp_ndt_1~0;assume -2147483648 <= #t~nondet20 && #t~nondet20 <= 2147483647;~tmp_ndt_1~0 := #t~nondet20;havoc #t~nondet20; {12783#true} is VALID [2018-11-14 17:13:40,614 INFO L273 TraceCheckUtils]: 17: Hoare triple {12783#true} assume !(~tmp_ndt_1~0 == 0);havoc ~tmp_ndt_2~0;assume -2147483648 <= #t~nondet21 && #t~nondet21 <= 2147483647;~tmp_ndt_2~0 := #t~nondet21;havoc #t~nondet21; {12783#true} is VALID [2018-11-14 17:13:40,615 INFO L273 TraceCheckUtils]: 18: Hoare triple {12783#true} assume !(~tmp_ndt_2~0 == 1);havoc ~tmp_ndt_3~0;assume -2147483648 <= #t~nondet22 && #t~nondet22 <= 2147483647;~tmp_ndt_3~0 := #t~nondet22;havoc #t~nondet22; {12783#true} is VALID [2018-11-14 17:13:40,615 INFO L273 TraceCheckUtils]: 19: Hoare triple {12783#true} assume ~tmp_ndt_3~0 == 3; {12783#true} is VALID [2018-11-14 17:13:40,615 INFO L256 TraceCheckUtils]: 20: Hoare triple {12783#true} call #t~ret27 := KbFilter_PnP(~devobj~0, ~pirp~0); {12783#true} is VALID [2018-11-14 17:13:40,615 INFO L273 TraceCheckUtils]: 21: Hoare triple {12783#true} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;havoc ~devExt~0;havoc ~irpStack~0;havoc ~status~0;assume -2147483648 <= #t~nondet0 && #t~nondet0 <= 2147483647;~event~0 := #t~nondet0;havoc #t~nondet0;assume -2147483648 <= #t~nondet1 && #t~nondet1 <= 2147483647;~DeviceObject__DeviceExtension~0 := #t~nondet1;havoc #t~nondet1;assume -2147483648 <= #t~nondet2 && #t~nondet2 <= 2147483647;~Irp__Tail__Overlay__CurrentStackLocation~0 := #t~nondet2;havoc #t~nondet2;assume -2147483648 <= #t~nondet3 && #t~nondet3 <= 2147483647;~irpStack__MinorFunction~0 := #t~nondet3;havoc #t~nondet3;assume -2147483648 <= #t~nondet4 && #t~nondet4 <= 2147483647;~devExt__TopOfStack~0 := #t~nondet4;havoc #t~nondet4;havoc ~devExt__Started~0;havoc ~devExt__Removed~0;havoc ~devExt__SurpriseRemoved~0;havoc ~Irp__IoStatus__Status~0;havoc ~Irp__IoStatus__Information~0;assume -2147483648 <= #t~nondet5 && #t~nondet5 <= 2147483647;~Irp__CurrentLocation~0 := #t~nondet5;havoc #t~nondet5;havoc ~irpSp~0;havoc ~nextIrpSp~0;havoc ~nextIrpSp__Control~0;havoc ~irpSp___0~0;havoc ~irpSp__Context~0;havoc ~irpSp__Control~0;havoc ~__cil_tmp23~0;~status~0 := 0;~devExt~0 := ~DeviceObject__DeviceExtension~0;~irpStack~0 := ~Irp__Tail__Overlay__CurrentStackLocation~0; {12783#true} is VALID [2018-11-14 17:13:40,615 INFO L273 TraceCheckUtils]: 22: Hoare triple {12783#true} assume !(~irpStack__MinorFunction~0 == 0); {12783#true} is VALID [2018-11-14 17:13:40,615 INFO L273 TraceCheckUtils]: 23: Hoare triple {12783#true} assume ~irpStack__MinorFunction~0 == 23; {12783#true} is VALID [2018-11-14 17:13:40,616 INFO L273 TraceCheckUtils]: 24: Hoare triple {12783#true} ~devExt__SurpriseRemoved~0 := 1; {12783#true} is VALID [2018-11-14 17:13:40,616 INFO L273 TraceCheckUtils]: 25: Hoare triple {12783#true} assume ~s~0 == ~NP~0;~s~0 := ~SKIP1~0; {12783#true} is VALID [2018-11-14 17:13:40,616 INFO L273 TraceCheckUtils]: 26: Hoare triple {12783#true} #t~post8 := ~Irp__CurrentLocation~0;~Irp__CurrentLocation~0 := #t~post8 + 1;havoc #t~post8;#t~post9 := ~Irp__Tail__Overlay__CurrentStackLocation~0;~Irp__Tail__Overlay__CurrentStackLocation~0 := #t~post9 + 1;havoc #t~post9; {12783#true} is VALID [2018-11-14 17:13:40,616 INFO L256 TraceCheckUtils]: 27: Hoare triple {12783#true} call #t~ret10 := IofCallDriver(~devExt__TopOfStack~0, ~Irp); {12783#true} is VALID [2018-11-14 17:13:40,617 INFO L273 TraceCheckUtils]: 28: Hoare triple {12783#true} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;havoc ~returnVal2~0;havoc ~compRetStatus~0;assume -2147483648 <= #t~nondet30 && #t~nondet30 <= 2147483647;~lcontext~0 := #t~nondet30;havoc #t~nondet30;havoc ~__cil_tmp7~0; {12783#true} is VALID [2018-11-14 17:13:40,617 INFO L273 TraceCheckUtils]: 29: Hoare triple {12783#true} assume !(~compRegistered~0 != 0); {12783#true} is VALID [2018-11-14 17:13:40,617 INFO L273 TraceCheckUtils]: 30: Hoare triple {12783#true} havoc ~tmp_ndt_6~0;assume -2147483648 <= #t~nondet32 && #t~nondet32 <= 2147483647;~tmp_ndt_6~0 := #t~nondet32;havoc #t~nondet32; {12783#true} is VALID [2018-11-14 17:13:40,617 INFO L273 TraceCheckUtils]: 31: Hoare triple {12783#true} assume ~tmp_ndt_6~0 == 0; {12783#true} is VALID [2018-11-14 17:13:40,617 INFO L273 TraceCheckUtils]: 32: Hoare triple {12783#true} ~returnVal2~0 := 0; {12783#true} is VALID [2018-11-14 17:13:40,620 INFO L273 TraceCheckUtils]: 33: Hoare triple {12783#true} assume ~s~0 == ~NP~0;~s~0 := ~IPC~0;~lowerDriverReturn~0 := ~returnVal2~0; {12785#(= ~lowerDriverReturn~0 IofCallDriver_~returnVal2~0)} is VALID [2018-11-14 17:13:40,620 INFO L273 TraceCheckUtils]: 34: Hoare triple {12785#(= ~lowerDriverReturn~0 IofCallDriver_~returnVal2~0)} #res := ~returnVal2~0; {12786#(= ~lowerDriverReturn~0 |IofCallDriver_#res|)} is VALID [2018-11-14 17:13:40,620 INFO L273 TraceCheckUtils]: 35: Hoare triple {12786#(= ~lowerDriverReturn~0 |IofCallDriver_#res|)} assume true; {12786#(= ~lowerDriverReturn~0 |IofCallDriver_#res|)} is VALID [2018-11-14 17:13:40,621 INFO L268 TraceCheckUtils]: 36: Hoare quadruple {12786#(= ~lowerDriverReturn~0 |IofCallDriver_#res|)} {12783#true} #779#return; {12787#(= ~lowerDriverReturn~0 |KbFilter_PnP_#t~ret10|)} is VALID [2018-11-14 17:13:40,623 INFO L273 TraceCheckUtils]: 37: Hoare triple {12787#(= ~lowerDriverReturn~0 |KbFilter_PnP_#t~ret10|)} assume -2147483648 <= #t~ret10 && #t~ret10 <= 2147483647;~status~0 := #t~ret10;havoc #t~ret10; {12788#(= ~lowerDriverReturn~0 KbFilter_PnP_~status~0)} is VALID [2018-11-14 17:13:40,623 INFO L273 TraceCheckUtils]: 38: Hoare triple {12788#(= ~lowerDriverReturn~0 KbFilter_PnP_~status~0)} #res := ~status~0; {12789#(= ~lowerDriverReturn~0 |KbFilter_PnP_#res|)} is VALID [2018-11-14 17:13:40,623 INFO L273 TraceCheckUtils]: 39: Hoare triple {12789#(= ~lowerDriverReturn~0 |KbFilter_PnP_#res|)} assume true; {12789#(= ~lowerDriverReturn~0 |KbFilter_PnP_#res|)} is VALID [2018-11-14 17:13:40,624 INFO L268 TraceCheckUtils]: 40: Hoare quadruple {12789#(= ~lowerDriverReturn~0 |KbFilter_PnP_#res|)} {12783#true} #725#return; {12790#(= ~lowerDriverReturn~0 |main_#t~ret27|)} is VALID [2018-11-14 17:13:40,625 INFO L273 TraceCheckUtils]: 41: Hoare triple {12790#(= ~lowerDriverReturn~0 |main_#t~ret27|)} assume -2147483648 <= #t~ret27 && #t~ret27 <= 2147483647;~status~1 := #t~ret27;havoc #t~ret27; {12791#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:40,625 INFO L273 TraceCheckUtils]: 42: Hoare triple {12791#(= main_~status~1 ~lowerDriverReturn~0)} assume !(~pended~0 == 1); {12791#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:40,625 INFO L273 TraceCheckUtils]: 43: Hoare triple {12791#(= main_~status~1 ~lowerDriverReturn~0)} assume !(~pended~0 == 1); {12791#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:40,626 INFO L273 TraceCheckUtils]: 44: Hoare triple {12791#(= main_~status~1 ~lowerDriverReturn~0)} assume ~s~0 != ~UNLOADED~0; {12791#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:40,626 INFO L273 TraceCheckUtils]: 45: Hoare triple {12791#(= main_~status~1 ~lowerDriverReturn~0)} assume ~status~1 != -1; {12791#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:40,627 INFO L273 TraceCheckUtils]: 46: Hoare triple {12791#(= main_~status~1 ~lowerDriverReturn~0)} assume !(~s~0 != ~SKIP2~0); {12791#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:40,628 INFO L273 TraceCheckUtils]: 47: Hoare triple {12791#(= main_~status~1 ~lowerDriverReturn~0)} assume !(~pended~0 == 1); {12791#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:40,628 INFO L273 TraceCheckUtils]: 48: Hoare triple {12791#(= main_~status~1 ~lowerDriverReturn~0)} assume !(~s~0 == ~DC~0); {12791#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:40,629 INFO L273 TraceCheckUtils]: 49: Hoare triple {12791#(= main_~status~1 ~lowerDriverReturn~0)} assume ~status~1 != ~lowerDriverReturn~0; {12784#false} is VALID [2018-11-14 17:13:40,629 INFO L256 TraceCheckUtils]: 50: Hoare triple {12784#false} call errorFn(); {12784#false} is VALID [2018-11-14 17:13:40,629 INFO L273 TraceCheckUtils]: 51: Hoare triple {12784#false} assume !false; {12784#false} is VALID [2018-11-14 17:13:40,632 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-11-14 17:13:40,632 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-14 17:13:40,632 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [9] imperfect sequences [] total 9 [2018-11-14 17:13:40,633 INFO L78 Accepts]: Start accepts. Automaton has 9 states. Word has length 52 [2018-11-14 17:13:40,633 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-14 17:13:40,633 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 9 states. [2018-11-14 17:13:40,679 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 52 edges. 52 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:13:40,679 INFO L459 AbstractCegarLoop]: Interpolant automaton has 9 states [2018-11-14 17:13:40,680 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 9 interpolants. [2018-11-14 17:13:40,680 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=15, Invalid=57, Unknown=0, NotChecked=0, Total=72 [2018-11-14 17:13:40,680 INFO L87 Difference]: Start difference. First operand 211 states and 277 transitions. Second operand 9 states. [2018-11-14 17:13:42,512 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:42,512 INFO L93 Difference]: Finished difference Result 227 states and 293 transitions. [2018-11-14 17:13:42,513 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2018-11-14 17:13:42,513 INFO L78 Accepts]: Start accepts. Automaton has 9 states. Word has length 52 [2018-11-14 17:13:42,513 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-14 17:13:42,513 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 9 states. [2018-11-14 17:13:42,515 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 9 states to 9 states and 256 transitions. [2018-11-14 17:13:42,515 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 9 states. [2018-11-14 17:13:42,517 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 9 states to 9 states and 256 transitions. [2018-11-14 17:13:42,517 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 9 states and 256 transitions. [2018-11-14 17:13:42,745 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 256 edges. 256 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:13:42,751 INFO L225 Difference]: With dead ends: 227 [2018-11-14 17:13:42,751 INFO L226 Difference]: Without dead ends: 206 [2018-11-14 17:13:42,751 INFO L604 BasicCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 9 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.5s TimeCoverageRelationStatistics Valid=23, Invalid=87, Unknown=0, NotChecked=0, Total=110 [2018-11-14 17:13:42,752 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 206 states. [2018-11-14 17:13:43,137 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 206 to 206. [2018-11-14 17:13:43,138 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-14 17:13:43,138 INFO L82 GeneralOperation]: Start isEquivalent. First operand 206 states. Second operand 206 states. [2018-11-14 17:13:43,138 INFO L74 IsIncluded]: Start isIncluded. First operand 206 states. Second operand 206 states. [2018-11-14 17:13:43,138 INFO L87 Difference]: Start difference. First operand 206 states. Second operand 206 states. [2018-11-14 17:13:43,144 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:43,144 INFO L93 Difference]: Finished difference Result 206 states and 270 transitions. [2018-11-14 17:13:43,144 INFO L276 IsEmpty]: Start isEmpty. Operand 206 states and 270 transitions. [2018-11-14 17:13:43,145 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:13:43,145 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:13:43,145 INFO L74 IsIncluded]: Start isIncluded. First operand 206 states. Second operand 206 states. [2018-11-14 17:13:43,145 INFO L87 Difference]: Start difference. First operand 206 states. Second operand 206 states. [2018-11-14 17:13:43,149 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:43,150 INFO L93 Difference]: Finished difference Result 206 states and 270 transitions. [2018-11-14 17:13:43,150 INFO L276 IsEmpty]: Start isEmpty. Operand 206 states and 270 transitions. [2018-11-14 17:13:43,150 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:13:43,150 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:13:43,151 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-14 17:13:43,151 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-14 17:13:43,151 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 206 states. [2018-11-14 17:13:43,155 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 206 states to 206 states and 270 transitions. [2018-11-14 17:13:43,156 INFO L78 Accepts]: Start accepts. Automaton has 206 states and 270 transitions. Word has length 52 [2018-11-14 17:13:43,156 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-14 17:13:43,156 INFO L480 AbstractCegarLoop]: Abstraction has 206 states and 270 transitions. [2018-11-14 17:13:43,156 INFO L481 AbstractCegarLoop]: Interpolant automaton has 9 states. [2018-11-14 17:13:43,156 INFO L276 IsEmpty]: Start isEmpty. Operand 206 states and 270 transitions. [2018-11-14 17:13:43,157 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 59 [2018-11-14 17:13:43,157 INFO L367 BasicCegarLoop]: Found error trace [2018-11-14 17:13:43,157 INFO L375 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-14 17:13:43,157 INFO L423 AbstractCegarLoop]: === Iteration 11 === [errorFnErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-14 17:13:43,158 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-14 17:13:43,158 INFO L82 PathProgramCache]: Analyzing trace with hash 1278878233, now seen corresponding path program 1 times [2018-11-14 17:13:43,158 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-14 17:13:43,158 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-14 17:13:43,159 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:13:43,159 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-14 17:13:43,159 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:13:43,172 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-14 17:13:43,315 INFO L256 TraceCheckUtils]: 0: Hoare triple {13792#true} call ULTIMATE.init(); {13792#true} is VALID [2018-11-14 17:13:43,315 INFO L273 TraceCheckUtils]: 1: Hoare triple {13792#true} ~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 0;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0; {13792#true} is VALID [2018-11-14 17:13:43,316 INFO L273 TraceCheckUtils]: 2: Hoare triple {13792#true} assume true; {13792#true} is VALID [2018-11-14 17:13:43,316 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {13792#true} {13792#true} #759#return; {13792#true} is VALID [2018-11-14 17:13:43,316 INFO L256 TraceCheckUtils]: 4: Hoare triple {13792#true} call #t~ret77 := main(); {13792#true} is VALID [2018-11-14 17:13:43,316 INFO L273 TraceCheckUtils]: 5: Hoare triple {13792#true} havoc ~status~1;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;~irp~0 := #t~nondet17;havoc #t~nondet17;havoc ~pirp~0;havoc ~pirp__IoStatus__Status~0;assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~irp_choice~0 := #t~nondet18;havoc #t~nondet18;assume -2147483648 <= #t~nondet19 && #t~nondet19 <= 2147483647;~devobj~0 := #t~nondet19;havoc #t~nondet19;havoc ~__cil_tmp8~0;~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 1;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0;~status~1 := 0;~pirp~0 := ~irp~0; {13792#true} is VALID [2018-11-14 17:13:43,317 INFO L256 TraceCheckUtils]: 6: Hoare triple {13792#true} call _BLAST_init(); {13792#true} is VALID [2018-11-14 17:13:43,317 INFO L273 TraceCheckUtils]: 7: Hoare triple {13792#true} ~UNLOADED~0 := 0;~NP~0 := 1;~DC~0 := 2;~SKIP1~0 := 3;~SKIP2~0 := 4;~MPR1~0 := 5;~MPR3~0 := 6;~IPC~0 := 7;~s~0 := ~UNLOADED~0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0; {13792#true} is VALID [2018-11-14 17:13:43,317 INFO L273 TraceCheckUtils]: 8: Hoare triple {13792#true} assume true; {13792#true} is VALID [2018-11-14 17:13:43,317 INFO L268 TraceCheckUtils]: 9: Hoare quadruple {13792#true} {13792#true} #717#return; {13792#true} is VALID [2018-11-14 17:13:43,317 INFO L273 TraceCheckUtils]: 10: Hoare triple {13792#true} assume ~status~1 >= 0;~s~0 := ~NP~0;~customIrp~0 := 0;~setEventCalled~0 := ~customIrp~0;~lowerDriverReturn~0 := ~setEventCalled~0;~compRegistered~0 := ~lowerDriverReturn~0;~pended~0 := ~compRegistered~0;~pirp__IoStatus__Status~0 := 0;~myStatus~0 := 0; {13792#true} is VALID [2018-11-14 17:13:43,317 INFO L273 TraceCheckUtils]: 11: Hoare triple {13792#true} assume !(~irp_choice~0 == 0); {13792#true} is VALID [2018-11-14 17:13:43,318 INFO L256 TraceCheckUtils]: 12: Hoare triple {13792#true} call stub_driver_init(); {13792#true} is VALID [2018-11-14 17:13:43,318 INFO L273 TraceCheckUtils]: 13: Hoare triple {13792#true} ~s~0 := ~NP~0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0; {13792#true} is VALID [2018-11-14 17:13:43,318 INFO L273 TraceCheckUtils]: 14: Hoare triple {13792#true} assume true; {13792#true} is VALID [2018-11-14 17:13:43,318 INFO L268 TraceCheckUtils]: 15: Hoare quadruple {13792#true} {13792#true} #719#return; {13792#true} is VALID [2018-11-14 17:13:43,318 INFO L273 TraceCheckUtils]: 16: Hoare triple {13792#true} assume !(~status~1 < 0);havoc ~tmp_ndt_1~0;assume -2147483648 <= #t~nondet20 && #t~nondet20 <= 2147483647;~tmp_ndt_1~0 := #t~nondet20;havoc #t~nondet20; {13792#true} is VALID [2018-11-14 17:13:43,318 INFO L273 TraceCheckUtils]: 17: Hoare triple {13792#true} assume !(~tmp_ndt_1~0 == 0);havoc ~tmp_ndt_2~0;assume -2147483648 <= #t~nondet21 && #t~nondet21 <= 2147483647;~tmp_ndt_2~0 := #t~nondet21;havoc #t~nondet21; {13792#true} is VALID [2018-11-14 17:13:43,318 INFO L273 TraceCheckUtils]: 18: Hoare triple {13792#true} assume !(~tmp_ndt_2~0 == 1);havoc ~tmp_ndt_3~0;assume -2147483648 <= #t~nondet22 && #t~nondet22 <= 2147483647;~tmp_ndt_3~0 := #t~nondet22;havoc #t~nondet22; {13792#true} is VALID [2018-11-14 17:13:43,319 INFO L273 TraceCheckUtils]: 19: Hoare triple {13792#true} assume !(~tmp_ndt_3~0 == 3);havoc ~tmp_ndt_4~0;assume -2147483648 <= #t~nondet23 && #t~nondet23 <= 2147483647;~tmp_ndt_4~0 := #t~nondet23;havoc #t~nondet23; {13792#true} is VALID [2018-11-14 17:13:43,319 INFO L273 TraceCheckUtils]: 20: Hoare triple {13792#true} assume !(~tmp_ndt_4~0 == 4);havoc ~tmp_ndt_5~0;assume -2147483648 <= #t~nondet24 && #t~nondet24 <= 2147483647;~tmp_ndt_5~0 := #t~nondet24;havoc #t~nondet24; {13792#true} is VALID [2018-11-14 17:13:43,319 INFO L273 TraceCheckUtils]: 21: Hoare triple {13792#true} assume ~tmp_ndt_5~0 == 8; {13792#true} is VALID [2018-11-14 17:13:43,319 INFO L256 TraceCheckUtils]: 22: Hoare triple {13792#true} call #t~ret29 := KbFilter_InternIoCtl(~devobj~0, ~pirp~0); {13792#true} is VALID [2018-11-14 17:13:43,319 INFO L273 TraceCheckUtils]: 23: Hoare triple {13792#true} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;havoc ~Irp__IoStatus__Information~1;assume -2147483648 <= #t~nondet59 && #t~nondet59 <= 2147483647;~irpStack__Parameters__DeviceIoControl__IoControlCode~0 := #t~nondet59;havoc #t~nondet59;assume -2147483648 <= #t~nondet60 && #t~nondet60 <= 2147483647;~devExt__UpperConnectData__ClassService~1 := #t~nondet60;havoc #t~nondet60;assume -2147483648 <= #t~nondet61 && #t~nondet61 <= 2147483647;~irpStack__Parameters__DeviceIoControl__InputBufferLength~0 := #t~nondet61;havoc #t~nondet61;assume -2147483648 <= #t~nondet62 && #t~nondet62 <= 2147483647;~sizeof__CONNECT_DATA~0 := #t~nondet62;havoc #t~nondet62;assume -2147483648 <= #t~nondet63 && #t~nondet63 <= 2147483647;~irpStack__Parameters__DeviceIoControl__Type3InputBuffer~0 := #t~nondet63;havoc #t~nondet63;assume -2147483648 <= #t~nondet64 && #t~nondet64 <= 2147483647;~sizeof__INTERNAL_I8042_HOOK_KEYBOARD~0 := #t~nondet64;havoc #t~nondet64;assume -2147483648 <= #t~nondet65 && #t~nondet65 <= 2147483647;~hookKeyboard__InitializationRoutine~0 := #t~nondet65;havoc #t~nondet65;assume -2147483648 <= #t~nondet66 && #t~nondet66 <= 2147483647;~hookKeyboard__IsrRoutine~0 := #t~nondet66;havoc #t~nondet66;havoc ~Irp__IoStatus__Status~2;havoc ~hookKeyboard~0;havoc ~connectData~0;havoc ~status~3;havoc ~tmp~3;havoc ~__cil_tmp17~0;havoc ~__cil_tmp18~0;havoc ~__cil_tmp19~0;assume -2147483648 <= #t~nondet67 && #t~nondet67 <= 2147483647;~__cil_tmp20~0 := #t~nondet67;havoc #t~nondet67;havoc ~__cil_tmp21~0;havoc ~__cil_tmp22~0;havoc ~__cil_tmp23~1;assume -2147483648 <= #t~nondet68 && #t~nondet68 <= 2147483647;~__cil_tmp24~0 := #t~nondet68;havoc #t~nondet68;havoc ~__cil_tmp25~0;havoc ~__cil_tmp26~0;havoc ~__cil_tmp27~0;assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~__cil_tmp28~0 := #t~nondet69;havoc #t~nondet69;assume -2147483648 <= #t~nondet70 && #t~nondet70 <= 2147483647;~__cil_tmp29~0 := #t~nondet70;havoc #t~nondet70;havoc ~__cil_tmp30~0;havoc ~__cil_tmp31~0;assume -2147483648 <= #t~nondet71 && #t~nondet71 <= 2147483647;~__cil_tmp32~0 := #t~nondet71;havoc #t~nondet71;havoc ~__cil_tmp33~0;havoc ~__cil_tmp34~0;assume -2147483648 <= #t~nondet72 && #t~nondet72 <= 2147483647;~__cil_tmp35~0 := #t~nondet72;havoc #t~nondet72;havoc ~__cil_tmp36~0;havoc ~__cil_tmp37~0;assume -2147483648 <= #t~nondet73 && #t~nondet73 <= 2147483647;~__cil_tmp38~0 := #t~nondet73;havoc #t~nondet73;havoc ~__cil_tmp39~0;havoc ~__cil_tmp40~0;assume -2147483648 <= #t~nondet74 && #t~nondet74 <= 2147483647;~__cil_tmp41~0 := #t~nondet74;havoc #t~nondet74;havoc ~__cil_tmp42~0;havoc ~__cil_tmp43~0;assume -2147483648 <= #t~nondet75 && #t~nondet75 <= 2147483647;~__cil_tmp44~0 := #t~nondet75;havoc #t~nondet75;havoc ~__cil_tmp45~0;~status~3 := 0;~Irp__IoStatus__Information~1 := 0; {13792#true} is VALID [2018-11-14 17:13:43,319 INFO L273 TraceCheckUtils]: 24: Hoare triple {13792#true} assume ~irpStack__Parameters__DeviceIoControl__IoControlCode~0 == ~__cil_tmp20~0; {13792#true} is VALID [2018-11-14 17:13:43,320 INFO L273 TraceCheckUtils]: 25: Hoare triple {13792#true} assume ~devExt__UpperConnectData__ClassService~1 != 0;~status~3 := -1073741757; {13794#(<= (+ KbFilter_InternIoCtl_~status~3 1073741757) 0)} is VALID [2018-11-14 17:13:43,322 INFO L273 TraceCheckUtils]: 26: Hoare triple {13794#(<= (+ KbFilter_InternIoCtl_~status~3 1073741757) 0)} assume !(~status~3 < 0); {13793#false} is VALID [2018-11-14 17:13:43,322 INFO L256 TraceCheckUtils]: 27: Hoare triple {13793#false} call #t~ret76 := KbFilter_DispatchPassThrough(~DeviceObject, ~Irp); {13792#true} is VALID [2018-11-14 17:13:43,322 INFO L273 TraceCheckUtils]: 28: Hoare triple {13792#true} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;assume -2147483648 <= #t~nondet40 && #t~nondet40 <= 2147483647;~Irp__Tail__Overlay__CurrentStackLocation~1 := #t~nondet40;havoc #t~nondet40;assume -2147483648 <= #t~nondet41 && #t~nondet41 <= 2147483647;~Irp__CurrentLocation~1 := #t~nondet41;havoc #t~nondet41;assume -2147483648 <= #t~nondet42 && #t~nondet42 <= 2147483647;~DeviceObject__DeviceExtension__TopOfStack~0 := #t~nondet42;havoc #t~nondet42;havoc ~irpStack~1;havoc ~tmp~1;~irpStack~1 := ~Irp__Tail__Overlay__CurrentStackLocation~1; {13792#true} is VALID [2018-11-14 17:13:43,322 INFO L273 TraceCheckUtils]: 29: Hoare triple {13792#true} assume ~s~0 == ~NP~0;~s~0 := ~SKIP1~0; {13792#true} is VALID [2018-11-14 17:13:43,322 INFO L273 TraceCheckUtils]: 30: Hoare triple {13792#true} #t~post43 := ~Irp__CurrentLocation~1;~Irp__CurrentLocation~1 := #t~post43 + 1;havoc #t~post43;#t~post44 := ~Irp__Tail__Overlay__CurrentStackLocation~1;~Irp__Tail__Overlay__CurrentStackLocation~1 := #t~post44 + 1;havoc #t~post44; {13792#true} is VALID [2018-11-14 17:13:43,322 INFO L256 TraceCheckUtils]: 31: Hoare triple {13792#true} call #t~ret45 := IofCallDriver(~DeviceObject__DeviceExtension__TopOfStack~0, ~Irp); {13792#true} is VALID [2018-11-14 17:13:43,323 INFO L273 TraceCheckUtils]: 32: Hoare triple {13792#true} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;havoc ~returnVal2~0;havoc ~compRetStatus~0;assume -2147483648 <= #t~nondet30 && #t~nondet30 <= 2147483647;~lcontext~0 := #t~nondet30;havoc #t~nondet30;havoc ~__cil_tmp7~0; {13792#true} is VALID [2018-11-14 17:13:43,323 INFO L273 TraceCheckUtils]: 33: Hoare triple {13792#true} assume !(~compRegistered~0 != 0); {13792#true} is VALID [2018-11-14 17:13:43,323 INFO L273 TraceCheckUtils]: 34: Hoare triple {13792#true} havoc ~tmp_ndt_6~0;assume -2147483648 <= #t~nondet32 && #t~nondet32 <= 2147483647;~tmp_ndt_6~0 := #t~nondet32;havoc #t~nondet32; {13792#true} is VALID [2018-11-14 17:13:43,323 INFO L273 TraceCheckUtils]: 35: Hoare triple {13792#true} assume ~tmp_ndt_6~0 == 0; {13792#true} is VALID [2018-11-14 17:13:43,323 INFO L273 TraceCheckUtils]: 36: Hoare triple {13792#true} ~returnVal2~0 := 0; {13792#true} is VALID [2018-11-14 17:13:43,323 INFO L273 TraceCheckUtils]: 37: Hoare triple {13792#true} assume ~s~0 == ~NP~0;~s~0 := ~IPC~0;~lowerDriverReturn~0 := ~returnVal2~0; {13792#true} is VALID [2018-11-14 17:13:43,323 INFO L273 TraceCheckUtils]: 38: Hoare triple {13792#true} #res := ~returnVal2~0; {13792#true} is VALID [2018-11-14 17:13:43,324 INFO L273 TraceCheckUtils]: 39: Hoare triple {13792#true} assume true; {13792#true} is VALID [2018-11-14 17:13:43,324 INFO L268 TraceCheckUtils]: 40: Hoare quadruple {13792#true} {13792#true} #765#return; {13792#true} is VALID [2018-11-14 17:13:43,324 INFO L273 TraceCheckUtils]: 41: Hoare triple {13792#true} assume -2147483648 <= #t~ret45 && #t~ret45 <= 2147483647;~tmp~1 := #t~ret45;havoc #t~ret45;#res := ~tmp~1; {13792#true} is VALID [2018-11-14 17:13:43,324 INFO L273 TraceCheckUtils]: 42: Hoare triple {13792#true} assume true; {13792#true} is VALID [2018-11-14 17:13:43,324 INFO L268 TraceCheckUtils]: 43: Hoare quadruple {13792#true} {13793#false} #753#return; {13793#false} is VALID [2018-11-14 17:13:43,324 INFO L273 TraceCheckUtils]: 44: Hoare triple {13793#false} assume -2147483648 <= #t~ret76 && #t~ret76 <= 2147483647;~tmp~3 := #t~ret76;havoc #t~ret76;#res := ~tmp~3; {13793#false} is VALID [2018-11-14 17:13:43,325 INFO L273 TraceCheckUtils]: 45: Hoare triple {13793#false} assume true; {13793#false} is VALID [2018-11-14 17:13:43,325 INFO L268 TraceCheckUtils]: 46: Hoare quadruple {13793#false} {13792#true} #729#return; {13793#false} is VALID [2018-11-14 17:13:43,325 INFO L273 TraceCheckUtils]: 47: Hoare triple {13793#false} assume -2147483648 <= #t~ret29 && #t~ret29 <= 2147483647;~status~1 := #t~ret29;havoc #t~ret29; {13793#false} is VALID [2018-11-14 17:13:43,325 INFO L273 TraceCheckUtils]: 48: Hoare triple {13793#false} assume !(~pended~0 == 1); {13793#false} is VALID [2018-11-14 17:13:43,325 INFO L273 TraceCheckUtils]: 49: Hoare triple {13793#false} assume !(~pended~0 == 1); {13793#false} is VALID [2018-11-14 17:13:43,326 INFO L273 TraceCheckUtils]: 50: Hoare triple {13793#false} assume ~s~0 != ~UNLOADED~0; {13793#false} is VALID [2018-11-14 17:13:43,326 INFO L273 TraceCheckUtils]: 51: Hoare triple {13793#false} assume ~status~1 != -1; {13793#false} is VALID [2018-11-14 17:13:43,326 INFO L273 TraceCheckUtils]: 52: Hoare triple {13793#false} assume !(~s~0 != ~SKIP2~0); {13793#false} is VALID [2018-11-14 17:13:43,326 INFO L273 TraceCheckUtils]: 53: Hoare triple {13793#false} assume !(~pended~0 == 1); {13793#false} is VALID [2018-11-14 17:13:43,326 INFO L273 TraceCheckUtils]: 54: Hoare triple {13793#false} assume !(~s~0 == ~DC~0); {13793#false} is VALID [2018-11-14 17:13:43,327 INFO L273 TraceCheckUtils]: 55: Hoare triple {13793#false} assume ~status~1 != ~lowerDriverReturn~0; {13793#false} is VALID [2018-11-14 17:13:43,327 INFO L256 TraceCheckUtils]: 56: Hoare triple {13793#false} call errorFn(); {13793#false} is VALID [2018-11-14 17:13:43,327 INFO L273 TraceCheckUtils]: 57: Hoare triple {13793#false} assume !false; {13793#false} is VALID [2018-11-14 17:13:43,328 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-11-14 17:13:43,329 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-14 17:13:43,329 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2018-11-14 17:13:43,329 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 58 [2018-11-14 17:13:43,329 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-14 17:13:43,329 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 3 states. [2018-11-14 17:13:43,394 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 58 edges. 58 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:13:43,394 INFO L459 AbstractCegarLoop]: Interpolant automaton has 3 states [2018-11-14 17:13:43,394 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2018-11-14 17:13:43,394 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2018-11-14 17:13:43,395 INFO L87 Difference]: Start difference. First operand 206 states and 270 transitions. Second operand 3 states. [2018-11-14 17:13:43,892 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:43,892 INFO L93 Difference]: Finished difference Result 246 states and 315 transitions. [2018-11-14 17:13:43,892 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2018-11-14 17:13:43,892 INFO L78 Accepts]: Start accepts. Automaton has 3 states. Word has length 58 [2018-11-14 17:13:43,893 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-14 17:13:43,893 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 3 states. [2018-11-14 17:13:43,895 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 3 states to 3 states and 278 transitions. [2018-11-14 17:13:43,895 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 3 states. [2018-11-14 17:13:43,897 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 3 states to 3 states and 278 transitions. [2018-11-14 17:13:43,897 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 3 states and 278 transitions. [2018-11-14 17:13:44,135 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 278 edges. 278 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:13:44,140 INFO L225 Difference]: With dead ends: 246 [2018-11-14 17:13:44,140 INFO L226 Difference]: Without dead ends: 205 [2018-11-14 17:13:44,141 INFO L604 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2018-11-14 17:13:44,141 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 205 states. [2018-11-14 17:13:44,762 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 205 to 205. [2018-11-14 17:13:44,762 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-14 17:13:44,762 INFO L82 GeneralOperation]: Start isEquivalent. First operand 205 states. Second operand 205 states. [2018-11-14 17:13:44,762 INFO L74 IsIncluded]: Start isIncluded. First operand 205 states. Second operand 205 states. [2018-11-14 17:13:44,762 INFO L87 Difference]: Start difference. First operand 205 states. Second operand 205 states. [2018-11-14 17:13:44,767 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:44,767 INFO L93 Difference]: Finished difference Result 205 states and 265 transitions. [2018-11-14 17:13:44,767 INFO L276 IsEmpty]: Start isEmpty. Operand 205 states and 265 transitions. [2018-11-14 17:13:44,767 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:13:44,768 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:13:44,768 INFO L74 IsIncluded]: Start isIncluded. First operand 205 states. Second operand 205 states. [2018-11-14 17:13:44,768 INFO L87 Difference]: Start difference. First operand 205 states. Second operand 205 states. [2018-11-14 17:13:44,772 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:44,772 INFO L93 Difference]: Finished difference Result 205 states and 265 transitions. [2018-11-14 17:13:44,773 INFO L276 IsEmpty]: Start isEmpty. Operand 205 states and 265 transitions. [2018-11-14 17:13:44,773 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:13:44,773 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:13:44,773 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-14 17:13:44,774 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-14 17:13:44,774 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 205 states. [2018-11-14 17:13:44,778 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 205 states to 205 states and 265 transitions. [2018-11-14 17:13:44,778 INFO L78 Accepts]: Start accepts. Automaton has 205 states and 265 transitions. Word has length 58 [2018-11-14 17:13:44,778 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-14 17:13:44,779 INFO L480 AbstractCegarLoop]: Abstraction has 205 states and 265 transitions. [2018-11-14 17:13:44,779 INFO L481 AbstractCegarLoop]: Interpolant automaton has 3 states. [2018-11-14 17:13:44,779 INFO L276 IsEmpty]: Start isEmpty. Operand 205 states and 265 transitions. [2018-11-14 17:13:44,780 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 60 [2018-11-14 17:13:44,780 INFO L367 BasicCegarLoop]: Found error trace [2018-11-14 17:13:44,780 INFO L375 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-14 17:13:44,780 INFO L423 AbstractCegarLoop]: === Iteration 12 === [errorFnErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-14 17:13:44,780 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-14 17:13:44,780 INFO L82 PathProgramCache]: Analyzing trace with hash 85703434, now seen corresponding path program 1 times [2018-11-14 17:13:44,780 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-14 17:13:44,780 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-14 17:13:44,781 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:13:44,781 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-14 17:13:44,781 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:13:44,795 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-14 17:13:45,028 INFO L256 TraceCheckUtils]: 0: Hoare triple {14812#true} call ULTIMATE.init(); {14812#true} is VALID [2018-11-14 17:13:45,028 INFO L273 TraceCheckUtils]: 1: Hoare triple {14812#true} ~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 0;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0; {14812#true} is VALID [2018-11-14 17:13:45,029 INFO L273 TraceCheckUtils]: 2: Hoare triple {14812#true} assume true; {14812#true} is VALID [2018-11-14 17:13:45,029 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {14812#true} {14812#true} #759#return; {14812#true} is VALID [2018-11-14 17:13:45,029 INFO L256 TraceCheckUtils]: 4: Hoare triple {14812#true} call #t~ret77 := main(); {14812#true} is VALID [2018-11-14 17:13:45,029 INFO L273 TraceCheckUtils]: 5: Hoare triple {14812#true} havoc ~status~1;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;~irp~0 := #t~nondet17;havoc #t~nondet17;havoc ~pirp~0;havoc ~pirp__IoStatus__Status~0;assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~irp_choice~0 := #t~nondet18;havoc #t~nondet18;assume -2147483648 <= #t~nondet19 && #t~nondet19 <= 2147483647;~devobj~0 := #t~nondet19;havoc #t~nondet19;havoc ~__cil_tmp8~0;~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 1;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0;~status~1 := 0;~pirp~0 := ~irp~0; {14812#true} is VALID [2018-11-14 17:13:45,029 INFO L256 TraceCheckUtils]: 6: Hoare triple {14812#true} call _BLAST_init(); {14812#true} is VALID [2018-11-14 17:13:45,029 INFO L273 TraceCheckUtils]: 7: Hoare triple {14812#true} ~UNLOADED~0 := 0;~NP~0 := 1;~DC~0 := 2;~SKIP1~0 := 3;~SKIP2~0 := 4;~MPR1~0 := 5;~MPR3~0 := 6;~IPC~0 := 7;~s~0 := ~UNLOADED~0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0; {14812#true} is VALID [2018-11-14 17:13:45,029 INFO L273 TraceCheckUtils]: 8: Hoare triple {14812#true} assume true; {14812#true} is VALID [2018-11-14 17:13:45,029 INFO L268 TraceCheckUtils]: 9: Hoare quadruple {14812#true} {14812#true} #717#return; {14812#true} is VALID [2018-11-14 17:13:45,030 INFO L273 TraceCheckUtils]: 10: Hoare triple {14812#true} assume ~status~1 >= 0;~s~0 := ~NP~0;~customIrp~0 := 0;~setEventCalled~0 := ~customIrp~0;~lowerDriverReturn~0 := ~setEventCalled~0;~compRegistered~0 := ~lowerDriverReturn~0;~pended~0 := ~compRegistered~0;~pirp__IoStatus__Status~0 := 0;~myStatus~0 := 0; {14812#true} is VALID [2018-11-14 17:13:45,030 INFO L273 TraceCheckUtils]: 11: Hoare triple {14812#true} assume !(~irp_choice~0 == 0); {14812#true} is VALID [2018-11-14 17:13:45,030 INFO L256 TraceCheckUtils]: 12: Hoare triple {14812#true} call stub_driver_init(); {14812#true} is VALID [2018-11-14 17:13:45,030 INFO L273 TraceCheckUtils]: 13: Hoare triple {14812#true} ~s~0 := ~NP~0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0; {14812#true} is VALID [2018-11-14 17:13:45,030 INFO L273 TraceCheckUtils]: 14: Hoare triple {14812#true} assume true; {14812#true} is VALID [2018-11-14 17:13:45,030 INFO L268 TraceCheckUtils]: 15: Hoare quadruple {14812#true} {14812#true} #719#return; {14812#true} is VALID [2018-11-14 17:13:45,030 INFO L273 TraceCheckUtils]: 16: Hoare triple {14812#true} assume !(~status~1 < 0);havoc ~tmp_ndt_1~0;assume -2147483648 <= #t~nondet20 && #t~nondet20 <= 2147483647;~tmp_ndt_1~0 := #t~nondet20;havoc #t~nondet20; {14812#true} is VALID [2018-11-14 17:13:45,031 INFO L273 TraceCheckUtils]: 17: Hoare triple {14812#true} assume !(~tmp_ndt_1~0 == 0);havoc ~tmp_ndt_2~0;assume -2147483648 <= #t~nondet21 && #t~nondet21 <= 2147483647;~tmp_ndt_2~0 := #t~nondet21;havoc #t~nondet21; {14812#true} is VALID [2018-11-14 17:13:45,031 INFO L273 TraceCheckUtils]: 18: Hoare triple {14812#true} assume !(~tmp_ndt_2~0 == 1);havoc ~tmp_ndt_3~0;assume -2147483648 <= #t~nondet22 && #t~nondet22 <= 2147483647;~tmp_ndt_3~0 := #t~nondet22;havoc #t~nondet22; {14812#true} is VALID [2018-11-14 17:13:45,031 INFO L273 TraceCheckUtils]: 19: Hoare triple {14812#true} assume !(~tmp_ndt_3~0 == 3);havoc ~tmp_ndt_4~0;assume -2147483648 <= #t~nondet23 && #t~nondet23 <= 2147483647;~tmp_ndt_4~0 := #t~nondet23;havoc #t~nondet23; {14812#true} is VALID [2018-11-14 17:13:45,031 INFO L273 TraceCheckUtils]: 20: Hoare triple {14812#true} assume !(~tmp_ndt_4~0 == 4);havoc ~tmp_ndt_5~0;assume -2147483648 <= #t~nondet24 && #t~nondet24 <= 2147483647;~tmp_ndt_5~0 := #t~nondet24;havoc #t~nondet24; {14812#true} is VALID [2018-11-14 17:13:45,031 INFO L273 TraceCheckUtils]: 21: Hoare triple {14812#true} assume ~tmp_ndt_5~0 == 8; {14812#true} is VALID [2018-11-14 17:13:45,031 INFO L256 TraceCheckUtils]: 22: Hoare triple {14812#true} call #t~ret29 := KbFilter_InternIoCtl(~devobj~0, ~pirp~0); {14812#true} is VALID [2018-11-14 17:13:45,031 INFO L273 TraceCheckUtils]: 23: Hoare triple {14812#true} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;havoc ~Irp__IoStatus__Information~1;assume -2147483648 <= #t~nondet59 && #t~nondet59 <= 2147483647;~irpStack__Parameters__DeviceIoControl__IoControlCode~0 := #t~nondet59;havoc #t~nondet59;assume -2147483648 <= #t~nondet60 && #t~nondet60 <= 2147483647;~devExt__UpperConnectData__ClassService~1 := #t~nondet60;havoc #t~nondet60;assume -2147483648 <= #t~nondet61 && #t~nondet61 <= 2147483647;~irpStack__Parameters__DeviceIoControl__InputBufferLength~0 := #t~nondet61;havoc #t~nondet61;assume -2147483648 <= #t~nondet62 && #t~nondet62 <= 2147483647;~sizeof__CONNECT_DATA~0 := #t~nondet62;havoc #t~nondet62;assume -2147483648 <= #t~nondet63 && #t~nondet63 <= 2147483647;~irpStack__Parameters__DeviceIoControl__Type3InputBuffer~0 := #t~nondet63;havoc #t~nondet63;assume -2147483648 <= #t~nondet64 && #t~nondet64 <= 2147483647;~sizeof__INTERNAL_I8042_HOOK_KEYBOARD~0 := #t~nondet64;havoc #t~nondet64;assume -2147483648 <= #t~nondet65 && #t~nondet65 <= 2147483647;~hookKeyboard__InitializationRoutine~0 := #t~nondet65;havoc #t~nondet65;assume -2147483648 <= #t~nondet66 && #t~nondet66 <= 2147483647;~hookKeyboard__IsrRoutine~0 := #t~nondet66;havoc #t~nondet66;havoc ~Irp__IoStatus__Status~2;havoc ~hookKeyboard~0;havoc ~connectData~0;havoc ~status~3;havoc ~tmp~3;havoc ~__cil_tmp17~0;havoc ~__cil_tmp18~0;havoc ~__cil_tmp19~0;assume -2147483648 <= #t~nondet67 && #t~nondet67 <= 2147483647;~__cil_tmp20~0 := #t~nondet67;havoc #t~nondet67;havoc ~__cil_tmp21~0;havoc ~__cil_tmp22~0;havoc ~__cil_tmp23~1;assume -2147483648 <= #t~nondet68 && #t~nondet68 <= 2147483647;~__cil_tmp24~0 := #t~nondet68;havoc #t~nondet68;havoc ~__cil_tmp25~0;havoc ~__cil_tmp26~0;havoc ~__cil_tmp27~0;assume -2147483648 <= #t~nondet69 && #t~nondet69 <= 2147483647;~__cil_tmp28~0 := #t~nondet69;havoc #t~nondet69;assume -2147483648 <= #t~nondet70 && #t~nondet70 <= 2147483647;~__cil_tmp29~0 := #t~nondet70;havoc #t~nondet70;havoc ~__cil_tmp30~0;havoc ~__cil_tmp31~0;assume -2147483648 <= #t~nondet71 && #t~nondet71 <= 2147483647;~__cil_tmp32~0 := #t~nondet71;havoc #t~nondet71;havoc ~__cil_tmp33~0;havoc ~__cil_tmp34~0;assume -2147483648 <= #t~nondet72 && #t~nondet72 <= 2147483647;~__cil_tmp35~0 := #t~nondet72;havoc #t~nondet72;havoc ~__cil_tmp36~0;havoc ~__cil_tmp37~0;assume -2147483648 <= #t~nondet73 && #t~nondet73 <= 2147483647;~__cil_tmp38~0 := #t~nondet73;havoc #t~nondet73;havoc ~__cil_tmp39~0;havoc ~__cil_tmp40~0;assume -2147483648 <= #t~nondet74 && #t~nondet74 <= 2147483647;~__cil_tmp41~0 := #t~nondet74;havoc #t~nondet74;havoc ~__cil_tmp42~0;havoc ~__cil_tmp43~0;assume -2147483648 <= #t~nondet75 && #t~nondet75 <= 2147483647;~__cil_tmp44~0 := #t~nondet75;havoc #t~nondet75;havoc ~__cil_tmp45~0;~status~3 := 0;~Irp__IoStatus__Information~1 := 0; {14812#true} is VALID [2018-11-14 17:13:45,032 INFO L273 TraceCheckUtils]: 24: Hoare triple {14812#true} assume ~irpStack__Parameters__DeviceIoControl__IoControlCode~0 == ~__cil_tmp20~0; {14812#true} is VALID [2018-11-14 17:13:45,032 INFO L273 TraceCheckUtils]: 25: Hoare triple {14812#true} assume !(~devExt__UpperConnectData__ClassService~1 != 0); {14812#true} is VALID [2018-11-14 17:13:45,032 INFO L273 TraceCheckUtils]: 26: Hoare triple {14812#true} assume !(~irpStack__Parameters__DeviceIoControl__InputBufferLength~0 < ~sizeof__CONNECT_DATA~0);~connectData~0 := ~irpStack__Parameters__DeviceIoControl__Type3InputBuffer~0; {14812#true} is VALID [2018-11-14 17:13:45,032 INFO L273 TraceCheckUtils]: 27: Hoare triple {14812#true} assume !(~status~3 < 0); {14812#true} is VALID [2018-11-14 17:13:45,032 INFO L256 TraceCheckUtils]: 28: Hoare triple {14812#true} call #t~ret76 := KbFilter_DispatchPassThrough(~DeviceObject, ~Irp); {14812#true} is VALID [2018-11-14 17:13:45,032 INFO L273 TraceCheckUtils]: 29: Hoare triple {14812#true} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;assume -2147483648 <= #t~nondet40 && #t~nondet40 <= 2147483647;~Irp__Tail__Overlay__CurrentStackLocation~1 := #t~nondet40;havoc #t~nondet40;assume -2147483648 <= #t~nondet41 && #t~nondet41 <= 2147483647;~Irp__CurrentLocation~1 := #t~nondet41;havoc #t~nondet41;assume -2147483648 <= #t~nondet42 && #t~nondet42 <= 2147483647;~DeviceObject__DeviceExtension__TopOfStack~0 := #t~nondet42;havoc #t~nondet42;havoc ~irpStack~1;havoc ~tmp~1;~irpStack~1 := ~Irp__Tail__Overlay__CurrentStackLocation~1; {14812#true} is VALID [2018-11-14 17:13:45,032 INFO L273 TraceCheckUtils]: 30: Hoare triple {14812#true} assume ~s~0 == ~NP~0;~s~0 := ~SKIP1~0; {14812#true} is VALID [2018-11-14 17:13:45,033 INFO L273 TraceCheckUtils]: 31: Hoare triple {14812#true} #t~post43 := ~Irp__CurrentLocation~1;~Irp__CurrentLocation~1 := #t~post43 + 1;havoc #t~post43;#t~post44 := ~Irp__Tail__Overlay__CurrentStackLocation~1;~Irp__Tail__Overlay__CurrentStackLocation~1 := #t~post44 + 1;havoc #t~post44; {14812#true} is VALID [2018-11-14 17:13:45,033 INFO L256 TraceCheckUtils]: 32: Hoare triple {14812#true} call #t~ret45 := IofCallDriver(~DeviceObject__DeviceExtension__TopOfStack~0, ~Irp); {14812#true} is VALID [2018-11-14 17:13:45,033 INFO L273 TraceCheckUtils]: 33: Hoare triple {14812#true} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;havoc ~returnVal2~0;havoc ~compRetStatus~0;assume -2147483648 <= #t~nondet30 && #t~nondet30 <= 2147483647;~lcontext~0 := #t~nondet30;havoc #t~nondet30;havoc ~__cil_tmp7~0; {14812#true} is VALID [2018-11-14 17:13:45,033 INFO L273 TraceCheckUtils]: 34: Hoare triple {14812#true} assume !(~compRegistered~0 != 0); {14812#true} is VALID [2018-11-14 17:13:45,033 INFO L273 TraceCheckUtils]: 35: Hoare triple {14812#true} havoc ~tmp_ndt_6~0;assume -2147483648 <= #t~nondet32 && #t~nondet32 <= 2147483647;~tmp_ndt_6~0 := #t~nondet32;havoc #t~nondet32; {14812#true} is VALID [2018-11-14 17:13:45,033 INFO L273 TraceCheckUtils]: 36: Hoare triple {14812#true} assume ~tmp_ndt_6~0 == 0; {14812#true} is VALID [2018-11-14 17:13:45,033 INFO L273 TraceCheckUtils]: 37: Hoare triple {14812#true} ~returnVal2~0 := 0; {14812#true} is VALID [2018-11-14 17:13:45,034 INFO L273 TraceCheckUtils]: 38: Hoare triple {14812#true} assume ~s~0 == ~NP~0;~s~0 := ~IPC~0;~lowerDriverReturn~0 := ~returnVal2~0; {14814#(= ~lowerDriverReturn~0 IofCallDriver_~returnVal2~0)} is VALID [2018-11-14 17:13:45,034 INFO L273 TraceCheckUtils]: 39: Hoare triple {14814#(= ~lowerDriverReturn~0 IofCallDriver_~returnVal2~0)} #res := ~returnVal2~0; {14815#(= ~lowerDriverReturn~0 |IofCallDriver_#res|)} is VALID [2018-11-14 17:13:45,034 INFO L273 TraceCheckUtils]: 40: Hoare triple {14815#(= ~lowerDriverReturn~0 |IofCallDriver_#res|)} assume true; {14815#(= ~lowerDriverReturn~0 |IofCallDriver_#res|)} is VALID [2018-11-14 17:13:45,035 INFO L268 TraceCheckUtils]: 41: Hoare quadruple {14815#(= ~lowerDriverReturn~0 |IofCallDriver_#res|)} {14812#true} #765#return; {14816#(= ~lowerDriverReturn~0 |KbFilter_DispatchPassThrough_#t~ret45|)} is VALID [2018-11-14 17:13:45,036 INFO L273 TraceCheckUtils]: 42: Hoare triple {14816#(= ~lowerDriverReturn~0 |KbFilter_DispatchPassThrough_#t~ret45|)} assume -2147483648 <= #t~ret45 && #t~ret45 <= 2147483647;~tmp~1 := #t~ret45;havoc #t~ret45;#res := ~tmp~1; {14817#(= ~lowerDriverReturn~0 |KbFilter_DispatchPassThrough_#res|)} is VALID [2018-11-14 17:13:45,036 INFO L273 TraceCheckUtils]: 43: Hoare triple {14817#(= ~lowerDriverReturn~0 |KbFilter_DispatchPassThrough_#res|)} assume true; {14817#(= ~lowerDriverReturn~0 |KbFilter_DispatchPassThrough_#res|)} is VALID [2018-11-14 17:13:45,036 INFO L268 TraceCheckUtils]: 44: Hoare quadruple {14817#(= ~lowerDriverReturn~0 |KbFilter_DispatchPassThrough_#res|)} {14812#true} #753#return; {14818#(= ~lowerDriverReturn~0 |KbFilter_InternIoCtl_#t~ret76|)} is VALID [2018-11-14 17:13:45,038 INFO L273 TraceCheckUtils]: 45: Hoare triple {14818#(= ~lowerDriverReturn~0 |KbFilter_InternIoCtl_#t~ret76|)} assume -2147483648 <= #t~ret76 && #t~ret76 <= 2147483647;~tmp~3 := #t~ret76;havoc #t~ret76;#res := ~tmp~3; {14819#(= ~lowerDriverReturn~0 |KbFilter_InternIoCtl_#res|)} is VALID [2018-11-14 17:13:45,041 INFO L273 TraceCheckUtils]: 46: Hoare triple {14819#(= ~lowerDriverReturn~0 |KbFilter_InternIoCtl_#res|)} assume true; {14819#(= ~lowerDriverReturn~0 |KbFilter_InternIoCtl_#res|)} is VALID [2018-11-14 17:13:45,057 INFO L268 TraceCheckUtils]: 47: Hoare quadruple {14819#(= ~lowerDriverReturn~0 |KbFilter_InternIoCtl_#res|)} {14812#true} #729#return; {14820#(= ~lowerDriverReturn~0 |main_#t~ret29|)} is VALID [2018-11-14 17:13:45,058 INFO L273 TraceCheckUtils]: 48: Hoare triple {14820#(= ~lowerDriverReturn~0 |main_#t~ret29|)} assume -2147483648 <= #t~ret29 && #t~ret29 <= 2147483647;~status~1 := #t~ret29;havoc #t~ret29; {14821#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:45,058 INFO L273 TraceCheckUtils]: 49: Hoare triple {14821#(= main_~status~1 ~lowerDriverReturn~0)} assume !(~pended~0 == 1); {14821#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:45,059 INFO L273 TraceCheckUtils]: 50: Hoare triple {14821#(= main_~status~1 ~lowerDriverReturn~0)} assume !(~pended~0 == 1); {14821#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:45,061 INFO L273 TraceCheckUtils]: 51: Hoare triple {14821#(= main_~status~1 ~lowerDriverReturn~0)} assume ~s~0 != ~UNLOADED~0; {14821#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:45,061 INFO L273 TraceCheckUtils]: 52: Hoare triple {14821#(= main_~status~1 ~lowerDriverReturn~0)} assume ~status~1 != -1; {14821#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:45,062 INFO L273 TraceCheckUtils]: 53: Hoare triple {14821#(= main_~status~1 ~lowerDriverReturn~0)} assume !(~s~0 != ~SKIP2~0); {14821#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:45,062 INFO L273 TraceCheckUtils]: 54: Hoare triple {14821#(= main_~status~1 ~lowerDriverReturn~0)} assume !(~pended~0 == 1); {14821#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:45,062 INFO L273 TraceCheckUtils]: 55: Hoare triple {14821#(= main_~status~1 ~lowerDriverReturn~0)} assume !(~s~0 == ~DC~0); {14821#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:45,063 INFO L273 TraceCheckUtils]: 56: Hoare triple {14821#(= main_~status~1 ~lowerDriverReturn~0)} assume ~status~1 != ~lowerDriverReturn~0; {14813#false} is VALID [2018-11-14 17:13:45,063 INFO L256 TraceCheckUtils]: 57: Hoare triple {14813#false} call errorFn(); {14813#false} is VALID [2018-11-14 17:13:45,063 INFO L273 TraceCheckUtils]: 58: Hoare triple {14813#false} assume !false; {14813#false} is VALID [2018-11-14 17:13:45,065 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-11-14 17:13:45,066 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-14 17:13:45,066 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [10] imperfect sequences [] total 10 [2018-11-14 17:13:45,066 INFO L78 Accepts]: Start accepts. Automaton has 10 states. Word has length 59 [2018-11-14 17:13:45,067 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-14 17:13:45,067 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 10 states. [2018-11-14 17:13:45,122 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 59 edges. 59 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:13:45,122 INFO L459 AbstractCegarLoop]: Interpolant automaton has 10 states [2018-11-14 17:13:45,123 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 10 interpolants. [2018-11-14 17:13:45,123 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=17, Invalid=73, Unknown=0, NotChecked=0, Total=90 [2018-11-14 17:13:45,123 INFO L87 Difference]: Start difference. First operand 205 states and 265 transitions. Second operand 10 states. [2018-11-14 17:13:49,160 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:49,160 INFO L93 Difference]: Finished difference Result 217 states and 277 transitions. [2018-11-14 17:13:49,160 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2018-11-14 17:13:49,160 INFO L78 Accepts]: Start accepts. Automaton has 10 states. Word has length 59 [2018-11-14 17:13:49,160 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-14 17:13:49,161 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 10 states. [2018-11-14 17:13:49,162 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 10 states to 10 states and 240 transitions. [2018-11-14 17:13:49,162 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 10 states. [2018-11-14 17:13:49,167 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 10 states to 10 states and 240 transitions. [2018-11-14 17:13:49,167 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 10 states and 240 transitions. [2018-11-14 17:13:49,419 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 240 edges. 240 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:13:49,423 INFO L225 Difference]: With dead ends: 217 [2018-11-14 17:13:49,424 INFO L226 Difference]: Without dead ends: 179 [2018-11-14 17:13:49,424 INFO L604 BasicCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 9 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=21, Invalid=89, Unknown=0, NotChecked=0, Total=110 [2018-11-14 17:13:49,424 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 179 states. [2018-11-14 17:13:49,607 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 179 to 179. [2018-11-14 17:13:49,607 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-14 17:13:49,607 INFO L82 GeneralOperation]: Start isEquivalent. First operand 179 states. Second operand 179 states. [2018-11-14 17:13:49,607 INFO L74 IsIncluded]: Start isIncluded. First operand 179 states. Second operand 179 states. [2018-11-14 17:13:49,608 INFO L87 Difference]: Start difference. First operand 179 states. Second operand 179 states. [2018-11-14 17:13:49,611 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:49,611 INFO L93 Difference]: Finished difference Result 179 states and 227 transitions. [2018-11-14 17:13:49,611 INFO L276 IsEmpty]: Start isEmpty. Operand 179 states and 227 transitions. [2018-11-14 17:13:49,612 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:13:49,612 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:13:49,612 INFO L74 IsIncluded]: Start isIncluded. First operand 179 states. Second operand 179 states. [2018-11-14 17:13:49,612 INFO L87 Difference]: Start difference. First operand 179 states. Second operand 179 states. [2018-11-14 17:13:49,616 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:49,616 INFO L93 Difference]: Finished difference Result 179 states and 227 transitions. [2018-11-14 17:13:49,616 INFO L276 IsEmpty]: Start isEmpty. Operand 179 states and 227 transitions. [2018-11-14 17:13:49,617 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:13:49,617 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:13:49,617 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-14 17:13:49,617 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-14 17:13:49,618 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 179 states. [2018-11-14 17:13:49,621 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 179 states to 179 states and 227 transitions. [2018-11-14 17:13:49,622 INFO L78 Accepts]: Start accepts. Automaton has 179 states and 227 transitions. Word has length 59 [2018-11-14 17:13:49,622 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-14 17:13:49,622 INFO L480 AbstractCegarLoop]: Abstraction has 179 states and 227 transitions. [2018-11-14 17:13:49,622 INFO L481 AbstractCegarLoop]: Interpolant automaton has 10 states. [2018-11-14 17:13:49,622 INFO L276 IsEmpty]: Start isEmpty. Operand 179 states and 227 transitions. [2018-11-14 17:13:49,623 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 55 [2018-11-14 17:13:49,623 INFO L367 BasicCegarLoop]: Found error trace [2018-11-14 17:13:49,623 INFO L375 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-14 17:13:49,624 INFO L423 AbstractCegarLoop]: === Iteration 13 === [errorFnErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-14 17:13:49,624 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-14 17:13:49,624 INFO L82 PathProgramCache]: Analyzing trace with hash 1933570889, now seen corresponding path program 1 times [2018-11-14 17:13:49,624 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-14 17:13:49,624 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-14 17:13:49,625 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:13:49,625 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-14 17:13:49,625 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:13:49,636 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-14 17:13:50,062 INFO L256 TraceCheckUtils]: 0: Hoare triple {15718#true} call ULTIMATE.init(); {15718#true} is VALID [2018-11-14 17:13:50,063 INFO L273 TraceCheckUtils]: 1: Hoare triple {15718#true} ~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 0;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0; {15718#true} is VALID [2018-11-14 17:13:50,063 INFO L273 TraceCheckUtils]: 2: Hoare triple {15718#true} assume true; {15718#true} is VALID [2018-11-14 17:13:50,063 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {15718#true} {15718#true} #759#return; {15718#true} is VALID [2018-11-14 17:13:50,063 INFO L256 TraceCheckUtils]: 4: Hoare triple {15718#true} call #t~ret77 := main(); {15718#true} is VALID [2018-11-14 17:13:50,063 INFO L273 TraceCheckUtils]: 5: Hoare triple {15718#true} havoc ~status~1;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;~irp~0 := #t~nondet17;havoc #t~nondet17;havoc ~pirp~0;havoc ~pirp__IoStatus__Status~0;assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~irp_choice~0 := #t~nondet18;havoc #t~nondet18;assume -2147483648 <= #t~nondet19 && #t~nondet19 <= 2147483647;~devobj~0 := #t~nondet19;havoc #t~nondet19;havoc ~__cil_tmp8~0;~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 1;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0;~status~1 := 0;~pirp~0 := ~irp~0; {15718#true} is VALID [2018-11-14 17:13:50,064 INFO L256 TraceCheckUtils]: 6: Hoare triple {15718#true} call _BLAST_init(); {15718#true} is VALID [2018-11-14 17:13:50,064 INFO L273 TraceCheckUtils]: 7: Hoare triple {15718#true} ~UNLOADED~0 := 0;~NP~0 := 1;~DC~0 := 2;~SKIP1~0 := 3;~SKIP2~0 := 4;~MPR1~0 := 5;~MPR3~0 := 6;~IPC~0 := 7;~s~0 := ~UNLOADED~0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0; {15718#true} is VALID [2018-11-14 17:13:50,064 INFO L273 TraceCheckUtils]: 8: Hoare triple {15718#true} assume true; {15718#true} is VALID [2018-11-14 17:13:50,064 INFO L268 TraceCheckUtils]: 9: Hoare quadruple {15718#true} {15718#true} #717#return; {15718#true} is VALID [2018-11-14 17:13:50,064 INFO L273 TraceCheckUtils]: 10: Hoare triple {15718#true} assume ~status~1 >= 0;~s~0 := ~NP~0;~customIrp~0 := 0;~setEventCalled~0 := ~customIrp~0;~lowerDriverReturn~0 := ~setEventCalled~0;~compRegistered~0 := ~lowerDriverReturn~0;~pended~0 := ~compRegistered~0;~pirp__IoStatus__Status~0 := 0;~myStatus~0 := 0; {15718#true} is VALID [2018-11-14 17:13:50,065 INFO L273 TraceCheckUtils]: 11: Hoare triple {15718#true} assume !(~irp_choice~0 == 0); {15718#true} is VALID [2018-11-14 17:13:50,065 INFO L256 TraceCheckUtils]: 12: Hoare triple {15718#true} call stub_driver_init(); {15718#true} is VALID [2018-11-14 17:13:50,065 INFO L273 TraceCheckUtils]: 13: Hoare triple {15718#true} ~s~0 := ~NP~0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0; {15718#true} is VALID [2018-11-14 17:13:50,065 INFO L273 TraceCheckUtils]: 14: Hoare triple {15718#true} assume true; {15718#true} is VALID [2018-11-14 17:13:50,065 INFO L268 TraceCheckUtils]: 15: Hoare quadruple {15718#true} {15718#true} #719#return; {15718#true} is VALID [2018-11-14 17:13:50,065 INFO L273 TraceCheckUtils]: 16: Hoare triple {15718#true} assume !(~status~1 < 0);havoc ~tmp_ndt_1~0;assume -2147483648 <= #t~nondet20 && #t~nondet20 <= 2147483647;~tmp_ndt_1~0 := #t~nondet20;havoc #t~nondet20; {15718#true} is VALID [2018-11-14 17:13:50,066 INFO L273 TraceCheckUtils]: 17: Hoare triple {15718#true} assume ~tmp_ndt_1~0 == 0; {15718#true} is VALID [2018-11-14 17:13:50,066 INFO L256 TraceCheckUtils]: 18: Hoare triple {15718#true} call #t~ret25 := KbFilter_CreateClose(~devobj~0, ~pirp~0); {15718#true} is VALID [2018-11-14 17:13:50,066 INFO L273 TraceCheckUtils]: 19: Hoare triple {15718#true} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;assume -2147483648 <= #t~nondet37 && #t~nondet37 <= 2147483647;~irpStack__MajorFunction~0 := #t~nondet37;havoc #t~nondet37;assume -2147483648 <= #t~nondet38 && #t~nondet38 <= 2147483647;~devExt__UpperConnectData__ClassService~0 := #t~nondet38;havoc #t~nondet38;havoc ~Irp__IoStatus__Status~1;havoc ~status~2;havoc ~tmp~0;~status~2 := ~myStatus~0; {15718#true} is VALID [2018-11-14 17:13:50,066 INFO L273 TraceCheckUtils]: 20: Hoare triple {15718#true} assume ~irpStack__MajorFunction~0 == 0; {15718#true} is VALID [2018-11-14 17:13:50,066 INFO L273 TraceCheckUtils]: 21: Hoare triple {15718#true} assume ~devExt__UpperConnectData__ClassService~0 == 0;~status~2 := -1073741436; {15718#true} is VALID [2018-11-14 17:13:50,066 INFO L273 TraceCheckUtils]: 22: Hoare triple {15718#true} ~Irp__IoStatus__Status~1 := ~status~2;~myStatus~0 := ~status~2; {15718#true} is VALID [2018-11-14 17:13:50,066 INFO L256 TraceCheckUtils]: 23: Hoare triple {15718#true} call #t~ret39 := KbFilter_DispatchPassThrough(~DeviceObject, ~Irp); {15718#true} is VALID [2018-11-14 17:13:50,066 INFO L273 TraceCheckUtils]: 24: Hoare triple {15718#true} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;assume -2147483648 <= #t~nondet40 && #t~nondet40 <= 2147483647;~Irp__Tail__Overlay__CurrentStackLocation~1 := #t~nondet40;havoc #t~nondet40;assume -2147483648 <= #t~nondet41 && #t~nondet41 <= 2147483647;~Irp__CurrentLocation~1 := #t~nondet41;havoc #t~nondet41;assume -2147483648 <= #t~nondet42 && #t~nondet42 <= 2147483647;~DeviceObject__DeviceExtension__TopOfStack~0 := #t~nondet42;havoc #t~nondet42;havoc ~irpStack~1;havoc ~tmp~1;~irpStack~1 := ~Irp__Tail__Overlay__CurrentStackLocation~1; {15718#true} is VALID [2018-11-14 17:13:50,067 INFO L273 TraceCheckUtils]: 25: Hoare triple {15718#true} assume ~s~0 == ~NP~0;~s~0 := ~SKIP1~0; {15718#true} is VALID [2018-11-14 17:13:50,067 INFO L273 TraceCheckUtils]: 26: Hoare triple {15718#true} #t~post43 := ~Irp__CurrentLocation~1;~Irp__CurrentLocation~1 := #t~post43 + 1;havoc #t~post43;#t~post44 := ~Irp__Tail__Overlay__CurrentStackLocation~1;~Irp__Tail__Overlay__CurrentStackLocation~1 := #t~post44 + 1;havoc #t~post44; {15718#true} is VALID [2018-11-14 17:13:50,067 INFO L256 TraceCheckUtils]: 27: Hoare triple {15718#true} call #t~ret45 := IofCallDriver(~DeviceObject__DeviceExtension__TopOfStack~0, ~Irp); {15718#true} is VALID [2018-11-14 17:13:50,067 INFO L273 TraceCheckUtils]: 28: Hoare triple {15718#true} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;havoc ~returnVal2~0;havoc ~compRetStatus~0;assume -2147483648 <= #t~nondet30 && #t~nondet30 <= 2147483647;~lcontext~0 := #t~nondet30;havoc #t~nondet30;havoc ~__cil_tmp7~0; {15718#true} is VALID [2018-11-14 17:13:50,067 INFO L273 TraceCheckUtils]: 29: Hoare triple {15718#true} assume !(~compRegistered~0 != 0); {15718#true} is VALID [2018-11-14 17:13:50,067 INFO L273 TraceCheckUtils]: 30: Hoare triple {15718#true} havoc ~tmp_ndt_6~0;assume -2147483648 <= #t~nondet32 && #t~nondet32 <= 2147483647;~tmp_ndt_6~0 := #t~nondet32;havoc #t~nondet32; {15718#true} is VALID [2018-11-14 17:13:50,067 INFO L273 TraceCheckUtils]: 31: Hoare triple {15718#true} assume ~tmp_ndt_6~0 == 0; {15718#true} is VALID [2018-11-14 17:13:50,067 INFO L273 TraceCheckUtils]: 32: Hoare triple {15718#true} ~returnVal2~0 := 0; {15718#true} is VALID [2018-11-14 17:13:50,068 INFO L273 TraceCheckUtils]: 33: Hoare triple {15718#true} assume ~s~0 == ~NP~0;~s~0 := ~IPC~0;~lowerDriverReturn~0 := ~returnVal2~0; {15720#(= ~lowerDriverReturn~0 IofCallDriver_~returnVal2~0)} is VALID [2018-11-14 17:13:50,068 INFO L273 TraceCheckUtils]: 34: Hoare triple {15720#(= ~lowerDriverReturn~0 IofCallDriver_~returnVal2~0)} #res := ~returnVal2~0; {15721#(= ~lowerDriverReturn~0 |IofCallDriver_#res|)} is VALID [2018-11-14 17:13:50,069 INFO L273 TraceCheckUtils]: 35: Hoare triple {15721#(= ~lowerDriverReturn~0 |IofCallDriver_#res|)} assume true; {15721#(= ~lowerDriverReturn~0 |IofCallDriver_#res|)} is VALID [2018-11-14 17:13:50,069 INFO L268 TraceCheckUtils]: 36: Hoare quadruple {15721#(= ~lowerDriverReturn~0 |IofCallDriver_#res|)} {15718#true} #765#return; {15722#(= ~lowerDriverReturn~0 |KbFilter_DispatchPassThrough_#t~ret45|)} is VALID [2018-11-14 17:13:50,070 INFO L273 TraceCheckUtils]: 37: Hoare triple {15722#(= ~lowerDriverReturn~0 |KbFilter_DispatchPassThrough_#t~ret45|)} assume -2147483648 <= #t~ret45 && #t~ret45 <= 2147483647;~tmp~1 := #t~ret45;havoc #t~ret45;#res := ~tmp~1; {15723#(= ~lowerDriverReturn~0 |KbFilter_DispatchPassThrough_#res|)} is VALID [2018-11-14 17:13:50,070 INFO L273 TraceCheckUtils]: 38: Hoare triple {15723#(= ~lowerDriverReturn~0 |KbFilter_DispatchPassThrough_#res|)} assume true; {15723#(= ~lowerDriverReturn~0 |KbFilter_DispatchPassThrough_#res|)} is VALID [2018-11-14 17:13:50,071 INFO L268 TraceCheckUtils]: 39: Hoare quadruple {15723#(= ~lowerDriverReturn~0 |KbFilter_DispatchPassThrough_#res|)} {15718#true} #749#return; {15724#(= ~lowerDriverReturn~0 |KbFilter_CreateClose_#t~ret39|)} is VALID [2018-11-14 17:13:50,071 INFO L273 TraceCheckUtils]: 40: Hoare triple {15724#(= ~lowerDriverReturn~0 |KbFilter_CreateClose_#t~ret39|)} assume -2147483648 <= #t~ret39 && #t~ret39 <= 2147483647;~tmp~0 := #t~ret39;havoc #t~ret39;#res := ~tmp~0; {15725#(= ~lowerDriverReturn~0 |KbFilter_CreateClose_#res|)} is VALID [2018-11-14 17:13:50,072 INFO L273 TraceCheckUtils]: 41: Hoare triple {15725#(= ~lowerDriverReturn~0 |KbFilter_CreateClose_#res|)} assume true; {15725#(= ~lowerDriverReturn~0 |KbFilter_CreateClose_#res|)} is VALID [2018-11-14 17:13:50,073 INFO L268 TraceCheckUtils]: 42: Hoare quadruple {15725#(= ~lowerDriverReturn~0 |KbFilter_CreateClose_#res|)} {15718#true} #721#return; {15726#(= ~lowerDriverReturn~0 |main_#t~ret25|)} is VALID [2018-11-14 17:13:50,074 INFO L273 TraceCheckUtils]: 43: Hoare triple {15726#(= ~lowerDriverReturn~0 |main_#t~ret25|)} assume -2147483648 <= #t~ret25 && #t~ret25 <= 2147483647;~status~1 := #t~ret25;havoc #t~ret25; {15727#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:50,075 INFO L273 TraceCheckUtils]: 44: Hoare triple {15727#(= main_~status~1 ~lowerDriverReturn~0)} assume !(~pended~0 == 1); {15727#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:50,075 INFO L273 TraceCheckUtils]: 45: Hoare triple {15727#(= main_~status~1 ~lowerDriverReturn~0)} assume !(~pended~0 == 1); {15727#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:50,076 INFO L273 TraceCheckUtils]: 46: Hoare triple {15727#(= main_~status~1 ~lowerDriverReturn~0)} assume ~s~0 != ~UNLOADED~0; {15727#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:50,076 INFO L273 TraceCheckUtils]: 47: Hoare triple {15727#(= main_~status~1 ~lowerDriverReturn~0)} assume ~status~1 != -1; {15727#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:50,077 INFO L273 TraceCheckUtils]: 48: Hoare triple {15727#(= main_~status~1 ~lowerDriverReturn~0)} assume !(~s~0 != ~SKIP2~0); {15727#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:50,077 INFO L273 TraceCheckUtils]: 49: Hoare triple {15727#(= main_~status~1 ~lowerDriverReturn~0)} assume !(~pended~0 == 1); {15727#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:50,078 INFO L273 TraceCheckUtils]: 50: Hoare triple {15727#(= main_~status~1 ~lowerDriverReturn~0)} assume !(~s~0 == ~DC~0); {15727#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:50,078 INFO L273 TraceCheckUtils]: 51: Hoare triple {15727#(= main_~status~1 ~lowerDriverReturn~0)} assume ~status~1 != ~lowerDriverReturn~0; {15719#false} is VALID [2018-11-14 17:13:50,079 INFO L256 TraceCheckUtils]: 52: Hoare triple {15719#false} call errorFn(); {15719#false} is VALID [2018-11-14 17:13:50,079 INFO L273 TraceCheckUtils]: 53: Hoare triple {15719#false} assume !false; {15719#false} is VALID [2018-11-14 17:13:50,081 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-11-14 17:13:50,081 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-14 17:13:50,081 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [10] imperfect sequences [] total 10 [2018-11-14 17:13:50,081 INFO L78 Accepts]: Start accepts. Automaton has 10 states. Word has length 54 [2018-11-14 17:13:50,082 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-14 17:13:50,082 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 10 states. [2018-11-14 17:13:50,140 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 54 edges. 54 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:13:50,140 INFO L459 AbstractCegarLoop]: Interpolant automaton has 10 states [2018-11-14 17:13:50,140 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 10 interpolants. [2018-11-14 17:13:50,140 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=17, Invalid=73, Unknown=0, NotChecked=0, Total=90 [2018-11-14 17:13:50,141 INFO L87 Difference]: Start difference. First operand 179 states and 227 transitions. Second operand 10 states. [2018-11-14 17:13:52,156 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:52,156 INFO L93 Difference]: Finished difference Result 191 states and 239 transitions. [2018-11-14 17:13:52,156 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2018-11-14 17:13:52,157 INFO L78 Accepts]: Start accepts. Automaton has 10 states. Word has length 54 [2018-11-14 17:13:52,157 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-14 17:13:52,157 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 10 states. [2018-11-14 17:13:52,159 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 10 states to 10 states and 202 transitions. [2018-11-14 17:13:52,159 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 10 states. [2018-11-14 17:13:52,160 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 10 states to 10 states and 202 transitions. [2018-11-14 17:13:52,161 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 10 states and 202 transitions. [2018-11-14 17:13:52,331 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 202 edges. 202 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:13:52,335 INFO L225 Difference]: With dead ends: 191 [2018-11-14 17:13:52,335 INFO L226 Difference]: Without dead ends: 177 [2018-11-14 17:13:52,335 INFO L604 BasicCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 9 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=21, Invalid=89, Unknown=0, NotChecked=0, Total=110 [2018-11-14 17:13:52,336 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 177 states. [2018-11-14 17:13:52,495 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 177 to 177. [2018-11-14 17:13:52,495 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-14 17:13:52,495 INFO L82 GeneralOperation]: Start isEquivalent. First operand 177 states. Second operand 177 states. [2018-11-14 17:13:52,495 INFO L74 IsIncluded]: Start isIncluded. First operand 177 states. Second operand 177 states. [2018-11-14 17:13:52,496 INFO L87 Difference]: Start difference. First operand 177 states. Second operand 177 states. [2018-11-14 17:13:52,499 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:52,499 INFO L93 Difference]: Finished difference Result 177 states and 223 transitions. [2018-11-14 17:13:52,499 INFO L276 IsEmpty]: Start isEmpty. Operand 177 states and 223 transitions. [2018-11-14 17:13:52,500 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:13:52,500 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:13:52,500 INFO L74 IsIncluded]: Start isIncluded. First operand 177 states. Second operand 177 states. [2018-11-14 17:13:52,500 INFO L87 Difference]: Start difference. First operand 177 states. Second operand 177 states. [2018-11-14 17:13:52,503 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:52,503 INFO L93 Difference]: Finished difference Result 177 states and 223 transitions. [2018-11-14 17:13:52,503 INFO L276 IsEmpty]: Start isEmpty. Operand 177 states and 223 transitions. [2018-11-14 17:13:52,504 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:13:52,504 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:13:52,504 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-14 17:13:52,504 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-14 17:13:52,504 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 177 states. [2018-11-14 17:13:52,507 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 177 states to 177 states and 223 transitions. [2018-11-14 17:13:52,507 INFO L78 Accepts]: Start accepts. Automaton has 177 states and 223 transitions. Word has length 54 [2018-11-14 17:13:52,507 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-14 17:13:52,507 INFO L480 AbstractCegarLoop]: Abstraction has 177 states and 223 transitions. [2018-11-14 17:13:52,507 INFO L481 AbstractCegarLoop]: Interpolant automaton has 10 states. [2018-11-14 17:13:52,507 INFO L276 IsEmpty]: Start isEmpty. Operand 177 states and 223 transitions. [2018-11-14 17:13:52,508 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 54 [2018-11-14 17:13:52,508 INFO L367 BasicCegarLoop]: Found error trace [2018-11-14 17:13:52,508 INFO L375 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-14 17:13:52,508 INFO L423 AbstractCegarLoop]: === Iteration 14 === [errorFnErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-14 17:13:52,508 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-14 17:13:52,508 INFO L82 PathProgramCache]: Analyzing trace with hash -309007876, now seen corresponding path program 1 times [2018-11-14 17:13:52,508 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-14 17:13:52,508 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-14 17:13:52,509 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:13:52,509 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-14 17:13:52,509 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:13:52,522 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-14 17:13:52,681 INFO L256 TraceCheckUtils]: 0: Hoare triple {16585#true} call ULTIMATE.init(); {16585#true} is VALID [2018-11-14 17:13:52,682 INFO L273 TraceCheckUtils]: 1: Hoare triple {16585#true} ~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 0;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0; {16585#true} is VALID [2018-11-14 17:13:52,682 INFO L273 TraceCheckUtils]: 2: Hoare triple {16585#true} assume true; {16585#true} is VALID [2018-11-14 17:13:52,682 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {16585#true} {16585#true} #759#return; {16585#true} is VALID [2018-11-14 17:13:52,682 INFO L256 TraceCheckUtils]: 4: Hoare triple {16585#true} call #t~ret77 := main(); {16585#true} is VALID [2018-11-14 17:13:52,682 INFO L273 TraceCheckUtils]: 5: Hoare triple {16585#true} havoc ~status~1;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;~irp~0 := #t~nondet17;havoc #t~nondet17;havoc ~pirp~0;havoc ~pirp__IoStatus__Status~0;assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~irp_choice~0 := #t~nondet18;havoc #t~nondet18;assume -2147483648 <= #t~nondet19 && #t~nondet19 <= 2147483647;~devobj~0 := #t~nondet19;havoc #t~nondet19;havoc ~__cil_tmp8~0;~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 1;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0;~status~1 := 0;~pirp~0 := ~irp~0; {16585#true} is VALID [2018-11-14 17:13:52,683 INFO L256 TraceCheckUtils]: 6: Hoare triple {16585#true} call _BLAST_init(); {16585#true} is VALID [2018-11-14 17:13:52,683 INFO L273 TraceCheckUtils]: 7: Hoare triple {16585#true} ~UNLOADED~0 := 0;~NP~0 := 1;~DC~0 := 2;~SKIP1~0 := 3;~SKIP2~0 := 4;~MPR1~0 := 5;~MPR3~0 := 6;~IPC~0 := 7;~s~0 := ~UNLOADED~0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0; {16585#true} is VALID [2018-11-14 17:13:52,683 INFO L273 TraceCheckUtils]: 8: Hoare triple {16585#true} assume true; {16585#true} is VALID [2018-11-14 17:13:52,683 INFO L268 TraceCheckUtils]: 9: Hoare quadruple {16585#true} {16585#true} #717#return; {16585#true} is VALID [2018-11-14 17:13:52,683 INFO L273 TraceCheckUtils]: 10: Hoare triple {16585#true} assume ~status~1 >= 0;~s~0 := ~NP~0;~customIrp~0 := 0;~setEventCalled~0 := ~customIrp~0;~lowerDriverReturn~0 := ~setEventCalled~0;~compRegistered~0 := ~lowerDriverReturn~0;~pended~0 := ~compRegistered~0;~pirp__IoStatus__Status~0 := 0;~myStatus~0 := 0; {16585#true} is VALID [2018-11-14 17:13:52,683 INFO L273 TraceCheckUtils]: 11: Hoare triple {16585#true} assume !(~irp_choice~0 == 0); {16585#true} is VALID [2018-11-14 17:13:52,684 INFO L256 TraceCheckUtils]: 12: Hoare triple {16585#true} call stub_driver_init(); {16585#true} is VALID [2018-11-14 17:13:52,684 INFO L273 TraceCheckUtils]: 13: Hoare triple {16585#true} ~s~0 := ~NP~0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0; {16585#true} is VALID [2018-11-14 17:13:52,684 INFO L273 TraceCheckUtils]: 14: Hoare triple {16585#true} assume true; {16585#true} is VALID [2018-11-14 17:13:52,684 INFO L268 TraceCheckUtils]: 15: Hoare quadruple {16585#true} {16585#true} #719#return; {16585#true} is VALID [2018-11-14 17:13:52,684 INFO L273 TraceCheckUtils]: 16: Hoare triple {16585#true} assume !(~status~1 < 0);havoc ~tmp_ndt_1~0;assume -2147483648 <= #t~nondet20 && #t~nondet20 <= 2147483647;~tmp_ndt_1~0 := #t~nondet20;havoc #t~nondet20; {16585#true} is VALID [2018-11-14 17:13:52,684 INFO L273 TraceCheckUtils]: 17: Hoare triple {16585#true} assume !(~tmp_ndt_1~0 == 0);havoc ~tmp_ndt_2~0;assume -2147483648 <= #t~nondet21 && #t~nondet21 <= 2147483647;~tmp_ndt_2~0 := #t~nondet21;havoc #t~nondet21; {16585#true} is VALID [2018-11-14 17:13:52,684 INFO L273 TraceCheckUtils]: 18: Hoare triple {16585#true} assume !(~tmp_ndt_2~0 == 1);havoc ~tmp_ndt_3~0;assume -2147483648 <= #t~nondet22 && #t~nondet22 <= 2147483647;~tmp_ndt_3~0 := #t~nondet22;havoc #t~nondet22; {16585#true} is VALID [2018-11-14 17:13:52,684 INFO L273 TraceCheckUtils]: 19: Hoare triple {16585#true} assume ~tmp_ndt_3~0 == 3; {16585#true} is VALID [2018-11-14 17:13:52,685 INFO L256 TraceCheckUtils]: 20: Hoare triple {16585#true} call #t~ret27 := KbFilter_PnP(~devobj~0, ~pirp~0); {16585#true} is VALID [2018-11-14 17:13:52,685 INFO L273 TraceCheckUtils]: 21: Hoare triple {16585#true} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;havoc ~devExt~0;havoc ~irpStack~0;havoc ~status~0;assume -2147483648 <= #t~nondet0 && #t~nondet0 <= 2147483647;~event~0 := #t~nondet0;havoc #t~nondet0;assume -2147483648 <= #t~nondet1 && #t~nondet1 <= 2147483647;~DeviceObject__DeviceExtension~0 := #t~nondet1;havoc #t~nondet1;assume -2147483648 <= #t~nondet2 && #t~nondet2 <= 2147483647;~Irp__Tail__Overlay__CurrentStackLocation~0 := #t~nondet2;havoc #t~nondet2;assume -2147483648 <= #t~nondet3 && #t~nondet3 <= 2147483647;~irpStack__MinorFunction~0 := #t~nondet3;havoc #t~nondet3;assume -2147483648 <= #t~nondet4 && #t~nondet4 <= 2147483647;~devExt__TopOfStack~0 := #t~nondet4;havoc #t~nondet4;havoc ~devExt__Started~0;havoc ~devExt__Removed~0;havoc ~devExt__SurpriseRemoved~0;havoc ~Irp__IoStatus__Status~0;havoc ~Irp__IoStatus__Information~0;assume -2147483648 <= #t~nondet5 && #t~nondet5 <= 2147483647;~Irp__CurrentLocation~0 := #t~nondet5;havoc #t~nondet5;havoc ~irpSp~0;havoc ~nextIrpSp~0;havoc ~nextIrpSp__Control~0;havoc ~irpSp___0~0;havoc ~irpSp__Context~0;havoc ~irpSp__Control~0;havoc ~__cil_tmp23~0;~status~0 := 0;~devExt~0 := ~DeviceObject__DeviceExtension~0;~irpStack~0 := ~Irp__Tail__Overlay__CurrentStackLocation~0; {16585#true} is VALID [2018-11-14 17:13:52,685 INFO L273 TraceCheckUtils]: 22: Hoare triple {16585#true} assume !(~irpStack__MinorFunction~0 == 0); {16585#true} is VALID [2018-11-14 17:13:52,685 INFO L273 TraceCheckUtils]: 23: Hoare triple {16585#true} assume !(~irpStack__MinorFunction~0 == 23); {16585#true} is VALID [2018-11-14 17:13:52,685 INFO L273 TraceCheckUtils]: 24: Hoare triple {16585#true} assume ~irpStack__MinorFunction~0 == 2; {16585#true} is VALID [2018-11-14 17:13:52,685 INFO L273 TraceCheckUtils]: 25: Hoare triple {16585#true} ~devExt__Removed~0 := 1; {16585#true} is VALID [2018-11-14 17:13:52,685 INFO L273 TraceCheckUtils]: 26: Hoare triple {16585#true} assume ~s~0 == ~NP~0;~s~0 := ~SKIP1~0; {16585#true} is VALID [2018-11-14 17:13:52,685 INFO L273 TraceCheckUtils]: 27: Hoare triple {16585#true} #t~post11 := ~Irp__CurrentLocation~0;~Irp__CurrentLocation~0 := #t~post11 + 1;havoc #t~post11;#t~post12 := ~Irp__Tail__Overlay__CurrentStackLocation~0;~Irp__Tail__Overlay__CurrentStackLocation~0 := #t~post12 + 1;havoc #t~post12; {16585#true} is VALID [2018-11-14 17:13:52,686 INFO L256 TraceCheckUtils]: 28: Hoare triple {16585#true} call #t~ret13 := IofCallDriver(~devExt__TopOfStack~0, ~Irp); {16585#true} is VALID [2018-11-14 17:13:52,686 INFO L273 TraceCheckUtils]: 29: Hoare triple {16585#true} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;havoc ~returnVal2~0;havoc ~compRetStatus~0;assume -2147483648 <= #t~nondet30 && #t~nondet30 <= 2147483647;~lcontext~0 := #t~nondet30;havoc #t~nondet30;havoc ~__cil_tmp7~0; {16585#true} is VALID [2018-11-14 17:13:52,686 INFO L273 TraceCheckUtils]: 30: Hoare triple {16585#true} assume !(~compRegistered~0 != 0); {16585#true} is VALID [2018-11-14 17:13:52,686 INFO L273 TraceCheckUtils]: 31: Hoare triple {16585#true} havoc ~tmp_ndt_6~0;assume -2147483648 <= #t~nondet32 && #t~nondet32 <= 2147483647;~tmp_ndt_6~0 := #t~nondet32;havoc #t~nondet32; {16585#true} is VALID [2018-11-14 17:13:52,686 INFO L273 TraceCheckUtils]: 32: Hoare triple {16585#true} assume ~tmp_ndt_6~0 == 0; {16585#true} is VALID [2018-11-14 17:13:52,686 INFO L273 TraceCheckUtils]: 33: Hoare triple {16585#true} ~returnVal2~0 := 0; {16587#(= IofCallDriver_~returnVal2~0 0)} is VALID [2018-11-14 17:13:52,687 INFO L273 TraceCheckUtils]: 34: Hoare triple {16587#(= IofCallDriver_~returnVal2~0 0)} assume ~s~0 == ~NP~0;~s~0 := ~IPC~0;~lowerDriverReturn~0 := ~returnVal2~0; {16588#(= ~lowerDriverReturn~0 0)} is VALID [2018-11-14 17:13:52,687 INFO L273 TraceCheckUtils]: 35: Hoare triple {16588#(= ~lowerDriverReturn~0 0)} #res := ~returnVal2~0; {16588#(= ~lowerDriverReturn~0 0)} is VALID [2018-11-14 17:13:52,687 INFO L273 TraceCheckUtils]: 36: Hoare triple {16588#(= ~lowerDriverReturn~0 0)} assume true; {16588#(= ~lowerDriverReturn~0 0)} is VALID [2018-11-14 17:13:52,688 INFO L268 TraceCheckUtils]: 37: Hoare quadruple {16588#(= ~lowerDriverReturn~0 0)} {16585#true} #783#return; {16588#(= ~lowerDriverReturn~0 0)} is VALID [2018-11-14 17:13:52,689 INFO L273 TraceCheckUtils]: 38: Hoare triple {16588#(= ~lowerDriverReturn~0 0)} assume -2147483648 <= #t~ret13 && #t~ret13 <= 2147483647;havoc #t~ret13;~status~0 := 0; {16589#(= ~lowerDriverReturn~0 KbFilter_PnP_~status~0)} is VALID [2018-11-14 17:13:52,689 INFO L273 TraceCheckUtils]: 39: Hoare triple {16589#(= ~lowerDriverReturn~0 KbFilter_PnP_~status~0)} #res := ~status~0; {16590#(= ~lowerDriverReturn~0 |KbFilter_PnP_#res|)} is VALID [2018-11-14 17:13:52,690 INFO L273 TraceCheckUtils]: 40: Hoare triple {16590#(= ~lowerDriverReturn~0 |KbFilter_PnP_#res|)} assume true; {16590#(= ~lowerDriverReturn~0 |KbFilter_PnP_#res|)} is VALID [2018-11-14 17:13:52,691 INFO L268 TraceCheckUtils]: 41: Hoare quadruple {16590#(= ~lowerDriverReturn~0 |KbFilter_PnP_#res|)} {16585#true} #725#return; {16591#(= ~lowerDriverReturn~0 |main_#t~ret27|)} is VALID [2018-11-14 17:13:52,691 INFO L273 TraceCheckUtils]: 42: Hoare triple {16591#(= ~lowerDriverReturn~0 |main_#t~ret27|)} assume -2147483648 <= #t~ret27 && #t~ret27 <= 2147483647;~status~1 := #t~ret27;havoc #t~ret27; {16592#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:52,692 INFO L273 TraceCheckUtils]: 43: Hoare triple {16592#(= main_~status~1 ~lowerDriverReturn~0)} assume !(~pended~0 == 1); {16592#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:52,693 INFO L273 TraceCheckUtils]: 44: Hoare triple {16592#(= main_~status~1 ~lowerDriverReturn~0)} assume !(~pended~0 == 1); {16592#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:52,693 INFO L273 TraceCheckUtils]: 45: Hoare triple {16592#(= main_~status~1 ~lowerDriverReturn~0)} assume ~s~0 != ~UNLOADED~0; {16592#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:52,694 INFO L273 TraceCheckUtils]: 46: Hoare triple {16592#(= main_~status~1 ~lowerDriverReturn~0)} assume ~status~1 != -1; {16592#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:52,694 INFO L273 TraceCheckUtils]: 47: Hoare triple {16592#(= main_~status~1 ~lowerDriverReturn~0)} assume !(~s~0 != ~SKIP2~0); {16592#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:52,695 INFO L273 TraceCheckUtils]: 48: Hoare triple {16592#(= main_~status~1 ~lowerDriverReturn~0)} assume !(~pended~0 == 1); {16592#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:52,695 INFO L273 TraceCheckUtils]: 49: Hoare triple {16592#(= main_~status~1 ~lowerDriverReturn~0)} assume !(~s~0 == ~DC~0); {16592#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:52,696 INFO L273 TraceCheckUtils]: 50: Hoare triple {16592#(= main_~status~1 ~lowerDriverReturn~0)} assume ~status~1 != ~lowerDriverReturn~0; {16586#false} is VALID [2018-11-14 17:13:52,696 INFO L256 TraceCheckUtils]: 51: Hoare triple {16586#false} call errorFn(); {16586#false} is VALID [2018-11-14 17:13:52,696 INFO L273 TraceCheckUtils]: 52: Hoare triple {16586#false} assume !false; {16586#false} is VALID [2018-11-14 17:13:52,698 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-11-14 17:13:52,699 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-14 17:13:52,699 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2018-11-14 17:13:52,699 INFO L78 Accepts]: Start accepts. Automaton has 8 states. Word has length 53 [2018-11-14 17:13:52,699 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-14 17:13:52,699 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 8 states. [2018-11-14 17:13:52,747 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 53 edges. 53 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:13:52,747 INFO L459 AbstractCegarLoop]: Interpolant automaton has 8 states [2018-11-14 17:13:52,748 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2018-11-14 17:13:52,748 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=43, Unknown=0, NotChecked=0, Total=56 [2018-11-14 17:13:52,748 INFO L87 Difference]: Start difference. First operand 177 states and 223 transitions. Second operand 8 states. [2018-11-14 17:13:55,053 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:55,054 INFO L93 Difference]: Finished difference Result 317 states and 386 transitions. [2018-11-14 17:13:55,054 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2018-11-14 17:13:55,054 INFO L78 Accepts]: Start accepts. Automaton has 8 states. Word has length 53 [2018-11-14 17:13:55,054 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-14 17:13:55,054 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 8 states. [2018-11-14 17:13:55,057 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 8 states to 8 states and 327 transitions. [2018-11-14 17:13:55,057 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 8 states. [2018-11-14 17:13:55,060 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 8 states to 8 states and 327 transitions. [2018-11-14 17:13:55,060 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 8 states and 327 transitions. [2018-11-14 17:13:55,370 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 327 edges. 327 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:13:55,380 INFO L225 Difference]: With dead ends: 317 [2018-11-14 17:13:55,380 INFO L226 Difference]: Without dead ends: 249 [2018-11-14 17:13:55,381 INFO L604 BasicCegarLoop]: 0 DeclaredPredicates, 15 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 11 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 8 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=37, Invalid=119, Unknown=0, NotChecked=0, Total=156 [2018-11-14 17:13:55,381 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 249 states. [2018-11-14 17:13:55,602 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 249 to 187. [2018-11-14 17:13:55,602 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-14 17:13:55,602 INFO L82 GeneralOperation]: Start isEquivalent. First operand 249 states. Second operand 187 states. [2018-11-14 17:13:55,602 INFO L74 IsIncluded]: Start isIncluded. First operand 249 states. Second operand 187 states. [2018-11-14 17:13:55,602 INFO L87 Difference]: Start difference. First operand 249 states. Second operand 187 states. [2018-11-14 17:13:55,607 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:55,607 INFO L93 Difference]: Finished difference Result 249 states and 306 transitions. [2018-11-14 17:13:55,607 INFO L276 IsEmpty]: Start isEmpty. Operand 249 states and 306 transitions. [2018-11-14 17:13:55,608 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:13:55,608 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:13:55,608 INFO L74 IsIncluded]: Start isIncluded. First operand 187 states. Second operand 249 states. [2018-11-14 17:13:55,608 INFO L87 Difference]: Start difference. First operand 187 states. Second operand 249 states. [2018-11-14 17:13:55,614 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:55,614 INFO L93 Difference]: Finished difference Result 249 states and 306 transitions. [2018-11-14 17:13:55,614 INFO L276 IsEmpty]: Start isEmpty. Operand 249 states and 306 transitions. [2018-11-14 17:13:55,615 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:13:55,615 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:13:55,615 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-14 17:13:55,615 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-14 17:13:55,615 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 187 states. [2018-11-14 17:13:55,619 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 187 states to 187 states and 237 transitions. [2018-11-14 17:13:55,620 INFO L78 Accepts]: Start accepts. Automaton has 187 states and 237 transitions. Word has length 53 [2018-11-14 17:13:55,620 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-14 17:13:55,620 INFO L480 AbstractCegarLoop]: Abstraction has 187 states and 237 transitions. [2018-11-14 17:13:55,620 INFO L481 AbstractCegarLoop]: Interpolant automaton has 8 states. [2018-11-14 17:13:55,620 INFO L276 IsEmpty]: Start isEmpty. Operand 187 states and 237 transitions. [2018-11-14 17:13:55,621 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 54 [2018-11-14 17:13:55,621 INFO L367 BasicCegarLoop]: Found error trace [2018-11-14 17:13:55,621 INFO L375 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-14 17:13:55,621 INFO L423 AbstractCegarLoop]: === Iteration 15 === [errorFnErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-14 17:13:55,622 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-14 17:13:55,622 INFO L82 PathProgramCache]: Analyzing trace with hash -1433722057, now seen corresponding path program 1 times [2018-11-14 17:13:55,622 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-14 17:13:55,622 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-14 17:13:55,623 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:13:55,623 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-14 17:13:55,623 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:13:55,633 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-14 17:13:55,776 INFO L256 TraceCheckUtils]: 0: Hoare triple {17778#true} call ULTIMATE.init(); {17778#true} is VALID [2018-11-14 17:13:55,776 INFO L273 TraceCheckUtils]: 1: Hoare triple {17778#true} ~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 0;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0; {17778#true} is VALID [2018-11-14 17:13:55,776 INFO L273 TraceCheckUtils]: 2: Hoare triple {17778#true} assume true; {17778#true} is VALID [2018-11-14 17:13:55,777 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {17778#true} {17778#true} #759#return; {17778#true} is VALID [2018-11-14 17:13:55,777 INFO L256 TraceCheckUtils]: 4: Hoare triple {17778#true} call #t~ret77 := main(); {17778#true} is VALID [2018-11-14 17:13:55,777 INFO L273 TraceCheckUtils]: 5: Hoare triple {17778#true} havoc ~status~1;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;~irp~0 := #t~nondet17;havoc #t~nondet17;havoc ~pirp~0;havoc ~pirp__IoStatus__Status~0;assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~irp_choice~0 := #t~nondet18;havoc #t~nondet18;assume -2147483648 <= #t~nondet19 && #t~nondet19 <= 2147483647;~devobj~0 := #t~nondet19;havoc #t~nondet19;havoc ~__cil_tmp8~0;~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 1;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0;~status~1 := 0;~pirp~0 := ~irp~0; {17778#true} is VALID [2018-11-14 17:13:55,777 INFO L256 TraceCheckUtils]: 6: Hoare triple {17778#true} call _BLAST_init(); {17778#true} is VALID [2018-11-14 17:13:55,777 INFO L273 TraceCheckUtils]: 7: Hoare triple {17778#true} ~UNLOADED~0 := 0;~NP~0 := 1;~DC~0 := 2;~SKIP1~0 := 3;~SKIP2~0 := 4;~MPR1~0 := 5;~MPR3~0 := 6;~IPC~0 := 7;~s~0 := ~UNLOADED~0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0; {17778#true} is VALID [2018-11-14 17:13:55,777 INFO L273 TraceCheckUtils]: 8: Hoare triple {17778#true} assume true; {17778#true} is VALID [2018-11-14 17:13:55,777 INFO L268 TraceCheckUtils]: 9: Hoare quadruple {17778#true} {17778#true} #717#return; {17778#true} is VALID [2018-11-14 17:13:55,778 INFO L273 TraceCheckUtils]: 10: Hoare triple {17778#true} assume ~status~1 >= 0;~s~0 := ~NP~0;~customIrp~0 := 0;~setEventCalled~0 := ~customIrp~0;~lowerDriverReturn~0 := ~setEventCalled~0;~compRegistered~0 := ~lowerDriverReturn~0;~pended~0 := ~compRegistered~0;~pirp__IoStatus__Status~0 := 0;~myStatus~0 := 0; {17778#true} is VALID [2018-11-14 17:13:55,778 INFO L273 TraceCheckUtils]: 11: Hoare triple {17778#true} assume !(~irp_choice~0 == 0); {17778#true} is VALID [2018-11-14 17:13:55,778 INFO L256 TraceCheckUtils]: 12: Hoare triple {17778#true} call stub_driver_init(); {17778#true} is VALID [2018-11-14 17:13:55,778 INFO L273 TraceCheckUtils]: 13: Hoare triple {17778#true} ~s~0 := ~NP~0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0; {17778#true} is VALID [2018-11-14 17:13:55,778 INFO L273 TraceCheckUtils]: 14: Hoare triple {17778#true} assume true; {17778#true} is VALID [2018-11-14 17:13:55,779 INFO L268 TraceCheckUtils]: 15: Hoare quadruple {17778#true} {17778#true} #719#return; {17778#true} is VALID [2018-11-14 17:13:55,779 INFO L273 TraceCheckUtils]: 16: Hoare triple {17778#true} assume !(~status~1 < 0);havoc ~tmp_ndt_1~0;assume -2147483648 <= #t~nondet20 && #t~nondet20 <= 2147483647;~tmp_ndt_1~0 := #t~nondet20;havoc #t~nondet20; {17778#true} is VALID [2018-11-14 17:13:55,779 INFO L273 TraceCheckUtils]: 17: Hoare triple {17778#true} assume !(~tmp_ndt_1~0 == 0);havoc ~tmp_ndt_2~0;assume -2147483648 <= #t~nondet21 && #t~nondet21 <= 2147483647;~tmp_ndt_2~0 := #t~nondet21;havoc #t~nondet21; {17778#true} is VALID [2018-11-14 17:13:55,779 INFO L273 TraceCheckUtils]: 18: Hoare triple {17778#true} assume !(~tmp_ndt_2~0 == 1);havoc ~tmp_ndt_3~0;assume -2147483648 <= #t~nondet22 && #t~nondet22 <= 2147483647;~tmp_ndt_3~0 := #t~nondet22;havoc #t~nondet22; {17778#true} is VALID [2018-11-14 17:13:55,779 INFO L273 TraceCheckUtils]: 19: Hoare triple {17778#true} assume ~tmp_ndt_3~0 == 3; {17778#true} is VALID [2018-11-14 17:13:55,780 INFO L256 TraceCheckUtils]: 20: Hoare triple {17778#true} call #t~ret27 := KbFilter_PnP(~devobj~0, ~pirp~0); {17778#true} is VALID [2018-11-14 17:13:55,780 INFO L273 TraceCheckUtils]: 21: Hoare triple {17778#true} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;havoc ~devExt~0;havoc ~irpStack~0;havoc ~status~0;assume -2147483648 <= #t~nondet0 && #t~nondet0 <= 2147483647;~event~0 := #t~nondet0;havoc #t~nondet0;assume -2147483648 <= #t~nondet1 && #t~nondet1 <= 2147483647;~DeviceObject__DeviceExtension~0 := #t~nondet1;havoc #t~nondet1;assume -2147483648 <= #t~nondet2 && #t~nondet2 <= 2147483647;~Irp__Tail__Overlay__CurrentStackLocation~0 := #t~nondet2;havoc #t~nondet2;assume -2147483648 <= #t~nondet3 && #t~nondet3 <= 2147483647;~irpStack__MinorFunction~0 := #t~nondet3;havoc #t~nondet3;assume -2147483648 <= #t~nondet4 && #t~nondet4 <= 2147483647;~devExt__TopOfStack~0 := #t~nondet4;havoc #t~nondet4;havoc ~devExt__Started~0;havoc ~devExt__Removed~0;havoc ~devExt__SurpriseRemoved~0;havoc ~Irp__IoStatus__Status~0;havoc ~Irp__IoStatus__Information~0;assume -2147483648 <= #t~nondet5 && #t~nondet5 <= 2147483647;~Irp__CurrentLocation~0 := #t~nondet5;havoc #t~nondet5;havoc ~irpSp~0;havoc ~nextIrpSp~0;havoc ~nextIrpSp__Control~0;havoc ~irpSp___0~0;havoc ~irpSp__Context~0;havoc ~irpSp__Control~0;havoc ~__cil_tmp23~0;~status~0 := 0;~devExt~0 := ~DeviceObject__DeviceExtension~0;~irpStack~0 := ~Irp__Tail__Overlay__CurrentStackLocation~0; {17778#true} is VALID [2018-11-14 17:13:55,780 INFO L273 TraceCheckUtils]: 22: Hoare triple {17778#true} assume !(~irpStack__MinorFunction~0 == 0); {17778#true} is VALID [2018-11-14 17:13:55,780 INFO L273 TraceCheckUtils]: 23: Hoare triple {17778#true} assume !(~irpStack__MinorFunction~0 == 23); {17778#true} is VALID [2018-11-14 17:13:55,780 INFO L273 TraceCheckUtils]: 24: Hoare triple {17778#true} assume !(~irpStack__MinorFunction~0 == 2); {17778#true} is VALID [2018-11-14 17:13:55,781 INFO L273 TraceCheckUtils]: 25: Hoare triple {17778#true} assume ~irpStack__MinorFunction~0 == 1; {17778#true} is VALID [2018-11-14 17:13:55,781 INFO L273 TraceCheckUtils]: 26: Hoare triple {17778#true} assume ~s~0 == ~NP~0;~s~0 := ~SKIP1~0; {17778#true} is VALID [2018-11-14 17:13:55,781 INFO L273 TraceCheckUtils]: 27: Hoare triple {17778#true} #t~post14 := ~Irp__CurrentLocation~0;~Irp__CurrentLocation~0 := #t~post14 + 1;havoc #t~post14;#t~post15 := ~Irp__Tail__Overlay__CurrentStackLocation~0;~Irp__Tail__Overlay__CurrentStackLocation~0 := #t~post15 + 1;havoc #t~post15; {17778#true} is VALID [2018-11-14 17:13:55,781 INFO L256 TraceCheckUtils]: 28: Hoare triple {17778#true} call #t~ret16 := IofCallDriver(~devExt__TopOfStack~0, ~Irp); {17778#true} is VALID [2018-11-14 17:13:55,781 INFO L273 TraceCheckUtils]: 29: Hoare triple {17778#true} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;havoc ~returnVal2~0;havoc ~compRetStatus~0;assume -2147483648 <= #t~nondet30 && #t~nondet30 <= 2147483647;~lcontext~0 := #t~nondet30;havoc #t~nondet30;havoc ~__cil_tmp7~0; {17778#true} is VALID [2018-11-14 17:13:55,781 INFO L273 TraceCheckUtils]: 30: Hoare triple {17778#true} assume !(~compRegistered~0 != 0); {17778#true} is VALID [2018-11-14 17:13:55,782 INFO L273 TraceCheckUtils]: 31: Hoare triple {17778#true} havoc ~tmp_ndt_6~0;assume -2147483648 <= #t~nondet32 && #t~nondet32 <= 2147483647;~tmp_ndt_6~0 := #t~nondet32;havoc #t~nondet32; {17778#true} is VALID [2018-11-14 17:13:55,782 INFO L273 TraceCheckUtils]: 32: Hoare triple {17778#true} assume ~tmp_ndt_6~0 == 0; {17778#true} is VALID [2018-11-14 17:13:55,782 INFO L273 TraceCheckUtils]: 33: Hoare triple {17778#true} ~returnVal2~0 := 0; {17778#true} is VALID [2018-11-14 17:13:55,812 INFO L273 TraceCheckUtils]: 34: Hoare triple {17778#true} assume ~s~0 == ~NP~0;~s~0 := ~IPC~0;~lowerDriverReturn~0 := ~returnVal2~0; {17780#(= ~lowerDriverReturn~0 IofCallDriver_~returnVal2~0)} is VALID [2018-11-14 17:13:55,820 INFO L273 TraceCheckUtils]: 35: Hoare triple {17780#(= ~lowerDriverReturn~0 IofCallDriver_~returnVal2~0)} #res := ~returnVal2~0; {17781#(= ~lowerDriverReturn~0 |IofCallDriver_#res|)} is VALID [2018-11-14 17:13:55,830 INFO L273 TraceCheckUtils]: 36: Hoare triple {17781#(= ~lowerDriverReturn~0 |IofCallDriver_#res|)} assume true; {17781#(= ~lowerDriverReturn~0 |IofCallDriver_#res|)} is VALID [2018-11-14 17:13:55,831 INFO L268 TraceCheckUtils]: 37: Hoare quadruple {17781#(= ~lowerDriverReturn~0 |IofCallDriver_#res|)} {17778#true} #787#return; {17782#(= ~lowerDriverReturn~0 |KbFilter_PnP_#t~ret16|)} is VALID [2018-11-14 17:13:55,832 INFO L273 TraceCheckUtils]: 38: Hoare triple {17782#(= ~lowerDriverReturn~0 |KbFilter_PnP_#t~ret16|)} assume -2147483648 <= #t~ret16 && #t~ret16 <= 2147483647;~status~0 := #t~ret16;havoc #t~ret16; {17783#(= ~lowerDriverReturn~0 KbFilter_PnP_~status~0)} is VALID [2018-11-14 17:13:55,832 INFO L273 TraceCheckUtils]: 39: Hoare triple {17783#(= ~lowerDriverReturn~0 KbFilter_PnP_~status~0)} #res := ~status~0; {17784#(= ~lowerDriverReturn~0 |KbFilter_PnP_#res|)} is VALID [2018-11-14 17:13:55,834 INFO L273 TraceCheckUtils]: 40: Hoare triple {17784#(= ~lowerDriverReturn~0 |KbFilter_PnP_#res|)} assume true; {17784#(= ~lowerDriverReturn~0 |KbFilter_PnP_#res|)} is VALID [2018-11-14 17:13:55,837 INFO L268 TraceCheckUtils]: 41: Hoare quadruple {17784#(= ~lowerDriverReturn~0 |KbFilter_PnP_#res|)} {17778#true} #725#return; {17785#(= ~lowerDriverReturn~0 |main_#t~ret27|)} is VALID [2018-11-14 17:13:55,837 INFO L273 TraceCheckUtils]: 42: Hoare triple {17785#(= ~lowerDriverReturn~0 |main_#t~ret27|)} assume -2147483648 <= #t~ret27 && #t~ret27 <= 2147483647;~status~1 := #t~ret27;havoc #t~ret27; {17786#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:55,838 INFO L273 TraceCheckUtils]: 43: Hoare triple {17786#(= main_~status~1 ~lowerDriverReturn~0)} assume !(~pended~0 == 1); {17786#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:55,838 INFO L273 TraceCheckUtils]: 44: Hoare triple {17786#(= main_~status~1 ~lowerDriverReturn~0)} assume !(~pended~0 == 1); {17786#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:55,839 INFO L273 TraceCheckUtils]: 45: Hoare triple {17786#(= main_~status~1 ~lowerDriverReturn~0)} assume ~s~0 != ~UNLOADED~0; {17786#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:55,839 INFO L273 TraceCheckUtils]: 46: Hoare triple {17786#(= main_~status~1 ~lowerDriverReturn~0)} assume ~status~1 != -1; {17786#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:55,839 INFO L273 TraceCheckUtils]: 47: Hoare triple {17786#(= main_~status~1 ~lowerDriverReturn~0)} assume !(~s~0 != ~SKIP2~0); {17786#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:55,840 INFO L273 TraceCheckUtils]: 48: Hoare triple {17786#(= main_~status~1 ~lowerDriverReturn~0)} assume !(~pended~0 == 1); {17786#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:55,840 INFO L273 TraceCheckUtils]: 49: Hoare triple {17786#(= main_~status~1 ~lowerDriverReturn~0)} assume !(~s~0 == ~DC~0); {17786#(= main_~status~1 ~lowerDriverReturn~0)} is VALID [2018-11-14 17:13:55,840 INFO L273 TraceCheckUtils]: 50: Hoare triple {17786#(= main_~status~1 ~lowerDriverReturn~0)} assume ~status~1 != ~lowerDriverReturn~0; {17779#false} is VALID [2018-11-14 17:13:55,840 INFO L256 TraceCheckUtils]: 51: Hoare triple {17779#false} call errorFn(); {17779#false} is VALID [2018-11-14 17:13:55,840 INFO L273 TraceCheckUtils]: 52: Hoare triple {17779#false} assume !false; {17779#false} is VALID [2018-11-14 17:13:55,842 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-11-14 17:13:55,843 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-14 17:13:55,843 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [9] imperfect sequences [] total 9 [2018-11-14 17:13:55,843 INFO L78 Accepts]: Start accepts. Automaton has 9 states. Word has length 53 [2018-11-14 17:13:55,843 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-14 17:13:55,843 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 9 states. [2018-11-14 17:13:56,308 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 53 edges. 53 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:13:56,308 INFO L459 AbstractCegarLoop]: Interpolant automaton has 9 states [2018-11-14 17:13:56,309 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 9 interpolants. [2018-11-14 17:13:56,309 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=15, Invalid=57, Unknown=0, NotChecked=0, Total=72 [2018-11-14 17:13:56,309 INFO L87 Difference]: Start difference. First operand 187 states and 237 transitions. Second operand 9 states. [2018-11-14 17:13:58,045 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:58,045 INFO L93 Difference]: Finished difference Result 203 states and 253 transitions. [2018-11-14 17:13:58,046 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2018-11-14 17:13:58,046 INFO L78 Accepts]: Start accepts. Automaton has 9 states. Word has length 53 [2018-11-14 17:13:58,046 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-14 17:13:58,046 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 9 states. [2018-11-14 17:13:58,048 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 9 states to 9 states and 202 transitions. [2018-11-14 17:13:58,048 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 9 states. [2018-11-14 17:13:58,049 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 9 states to 9 states and 202 transitions. [2018-11-14 17:13:58,050 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 9 states and 202 transitions. [2018-11-14 17:13:58,226 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 202 edges. 202 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:13:58,230 INFO L225 Difference]: With dead ends: 203 [2018-11-14 17:13:58,230 INFO L226 Difference]: Without dead ends: 165 [2018-11-14 17:13:58,230 INFO L604 BasicCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 9 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=23, Invalid=87, Unknown=0, NotChecked=0, Total=110 [2018-11-14 17:13:58,231 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 165 states. [2018-11-14 17:13:58,468 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 165 to 165. [2018-11-14 17:13:58,468 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-14 17:13:58,468 INFO L82 GeneralOperation]: Start isEquivalent. First operand 165 states. Second operand 165 states. [2018-11-14 17:13:58,468 INFO L74 IsIncluded]: Start isIncluded. First operand 165 states. Second operand 165 states. [2018-11-14 17:13:58,468 INFO L87 Difference]: Start difference. First operand 165 states. Second operand 165 states. [2018-11-14 17:13:58,472 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:58,472 INFO L93 Difference]: Finished difference Result 165 states and 194 transitions. [2018-11-14 17:13:58,472 INFO L276 IsEmpty]: Start isEmpty. Operand 165 states and 194 transitions. [2018-11-14 17:13:58,472 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:13:58,472 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:13:58,472 INFO L74 IsIncluded]: Start isIncluded. First operand 165 states. Second operand 165 states. [2018-11-14 17:13:58,472 INFO L87 Difference]: Start difference. First operand 165 states. Second operand 165 states. [2018-11-14 17:13:58,475 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:13:58,476 INFO L93 Difference]: Finished difference Result 165 states and 194 transitions. [2018-11-14 17:13:58,476 INFO L276 IsEmpty]: Start isEmpty. Operand 165 states and 194 transitions. [2018-11-14 17:13:58,476 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:13:58,476 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:13:58,476 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-14 17:13:58,477 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-14 17:13:58,477 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 165 states. [2018-11-14 17:13:58,480 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 165 states to 165 states and 194 transitions. [2018-11-14 17:13:58,480 INFO L78 Accepts]: Start accepts. Automaton has 165 states and 194 transitions. Word has length 53 [2018-11-14 17:13:58,480 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-14 17:13:58,480 INFO L480 AbstractCegarLoop]: Abstraction has 165 states and 194 transitions. [2018-11-14 17:13:58,480 INFO L481 AbstractCegarLoop]: Interpolant automaton has 9 states. [2018-11-14 17:13:58,480 INFO L276 IsEmpty]: Start isEmpty. Operand 165 states and 194 transitions. [2018-11-14 17:13:58,481 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 55 [2018-11-14 17:13:58,481 INFO L367 BasicCegarLoop]: Found error trace [2018-11-14 17:13:58,481 INFO L375 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-14 17:13:58,481 INFO L423 AbstractCegarLoop]: === Iteration 16 === [errorFnErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-14 17:13:58,481 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-14 17:13:58,481 INFO L82 PathProgramCache]: Analyzing trace with hash 1317699651, now seen corresponding path program 1 times [2018-11-14 17:13:58,482 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-14 17:13:58,482 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-14 17:13:58,482 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:13:58,482 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-14 17:13:58,482 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:13:58,494 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-14 17:13:58,761 INFO L256 TraceCheckUtils]: 0: Hoare triple {18624#true} call ULTIMATE.init(); {18624#true} is VALID [2018-11-14 17:13:58,761 INFO L273 TraceCheckUtils]: 1: Hoare triple {18624#true} ~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 0;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0; {18624#true} is VALID [2018-11-14 17:13:58,761 INFO L273 TraceCheckUtils]: 2: Hoare triple {18624#true} assume true; {18624#true} is VALID [2018-11-14 17:13:58,761 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {18624#true} {18624#true} #759#return; {18624#true} is VALID [2018-11-14 17:13:58,762 INFO L256 TraceCheckUtils]: 4: Hoare triple {18624#true} call #t~ret77 := main(); {18624#true} is VALID [2018-11-14 17:13:58,762 INFO L273 TraceCheckUtils]: 5: Hoare triple {18624#true} havoc ~status~1;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;~irp~0 := #t~nondet17;havoc #t~nondet17;havoc ~pirp~0;havoc ~pirp__IoStatus__Status~0;assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~irp_choice~0 := #t~nondet18;havoc #t~nondet18;assume -2147483648 <= #t~nondet19 && #t~nondet19 <= 2147483647;~devobj~0 := #t~nondet19;havoc #t~nondet19;havoc ~__cil_tmp8~0;~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 1;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0;~status~1 := 0;~pirp~0 := ~irp~0; {18624#true} is VALID [2018-11-14 17:13:58,762 INFO L256 TraceCheckUtils]: 6: Hoare triple {18624#true} call _BLAST_init(); {18624#true} is VALID [2018-11-14 17:13:58,763 INFO L273 TraceCheckUtils]: 7: Hoare triple {18624#true} ~UNLOADED~0 := 0;~NP~0 := 1;~DC~0 := 2;~SKIP1~0 := 3;~SKIP2~0 := 4;~MPR1~0 := 5;~MPR3~0 := 6;~IPC~0 := 7;~s~0 := ~UNLOADED~0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0; {18626#(<= (+ ~NP~0 2) ~SKIP1~0)} is VALID [2018-11-14 17:13:58,763 INFO L273 TraceCheckUtils]: 8: Hoare triple {18626#(<= (+ ~NP~0 2) ~SKIP1~0)} assume true; {18626#(<= (+ ~NP~0 2) ~SKIP1~0)} is VALID [2018-11-14 17:13:58,765 INFO L268 TraceCheckUtils]: 9: Hoare quadruple {18626#(<= (+ ~NP~0 2) ~SKIP1~0)} {18624#true} #717#return; {18626#(<= (+ ~NP~0 2) ~SKIP1~0)} is VALID [2018-11-14 17:13:58,765 INFO L273 TraceCheckUtils]: 10: Hoare triple {18626#(<= (+ ~NP~0 2) ~SKIP1~0)} assume ~status~1 >= 0;~s~0 := ~NP~0;~customIrp~0 := 0;~setEventCalled~0 := ~customIrp~0;~lowerDriverReturn~0 := ~setEventCalled~0;~compRegistered~0 := ~lowerDriverReturn~0;~pended~0 := ~compRegistered~0;~pirp__IoStatus__Status~0 := 0;~myStatus~0 := 0; {18626#(<= (+ ~NP~0 2) ~SKIP1~0)} is VALID [2018-11-14 17:13:58,768 INFO L273 TraceCheckUtils]: 11: Hoare triple {18626#(<= (+ ~NP~0 2) ~SKIP1~0)} assume !(~irp_choice~0 == 0); {18626#(<= (+ ~NP~0 2) ~SKIP1~0)} is VALID [2018-11-14 17:13:58,768 INFO L256 TraceCheckUtils]: 12: Hoare triple {18626#(<= (+ ~NP~0 2) ~SKIP1~0)} call stub_driver_init(); {18624#true} is VALID [2018-11-14 17:13:58,768 INFO L273 TraceCheckUtils]: 13: Hoare triple {18624#true} ~s~0 := ~NP~0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0; {18627#(<= ~s~0 ~NP~0)} is VALID [2018-11-14 17:13:58,771 INFO L273 TraceCheckUtils]: 14: Hoare triple {18627#(<= ~s~0 ~NP~0)} assume true; {18627#(<= ~s~0 ~NP~0)} is VALID [2018-11-14 17:13:58,773 INFO L268 TraceCheckUtils]: 15: Hoare quadruple {18627#(<= ~s~0 ~NP~0)} {18626#(<= (+ ~NP~0 2) ~SKIP1~0)} #719#return; {18628#(<= (+ ~s~0 2) ~SKIP1~0)} is VALID [2018-11-14 17:13:58,773 INFO L273 TraceCheckUtils]: 16: Hoare triple {18628#(<= (+ ~s~0 2) ~SKIP1~0)} assume !(~status~1 < 0);havoc ~tmp_ndt_1~0;assume -2147483648 <= #t~nondet20 && #t~nondet20 <= 2147483647;~tmp_ndt_1~0 := #t~nondet20;havoc #t~nondet20; {18628#(<= (+ ~s~0 2) ~SKIP1~0)} is VALID [2018-11-14 17:13:58,775 INFO L273 TraceCheckUtils]: 17: Hoare triple {18628#(<= (+ ~s~0 2) ~SKIP1~0)} assume !(~tmp_ndt_1~0 == 0);havoc ~tmp_ndt_2~0;assume -2147483648 <= #t~nondet21 && #t~nondet21 <= 2147483647;~tmp_ndt_2~0 := #t~nondet21;havoc #t~nondet21; {18628#(<= (+ ~s~0 2) ~SKIP1~0)} is VALID [2018-11-14 17:13:58,775 INFO L273 TraceCheckUtils]: 18: Hoare triple {18628#(<= (+ ~s~0 2) ~SKIP1~0)} assume !(~tmp_ndt_2~0 == 1);havoc ~tmp_ndt_3~0;assume -2147483648 <= #t~nondet22 && #t~nondet22 <= 2147483647;~tmp_ndt_3~0 := #t~nondet22;havoc #t~nondet22; {18628#(<= (+ ~s~0 2) ~SKIP1~0)} is VALID [2018-11-14 17:13:58,777 INFO L273 TraceCheckUtils]: 19: Hoare triple {18628#(<= (+ ~s~0 2) ~SKIP1~0)} assume ~tmp_ndt_3~0 == 3; {18628#(<= (+ ~s~0 2) ~SKIP1~0)} is VALID [2018-11-14 17:13:58,777 INFO L256 TraceCheckUtils]: 20: Hoare triple {18628#(<= (+ ~s~0 2) ~SKIP1~0)} call #t~ret27 := KbFilter_PnP(~devobj~0, ~pirp~0); {18629#(= |old(~s~0)| ~s~0)} is VALID [2018-11-14 17:13:58,779 INFO L273 TraceCheckUtils]: 21: Hoare triple {18629#(= |old(~s~0)| ~s~0)} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;havoc ~devExt~0;havoc ~irpStack~0;havoc ~status~0;assume -2147483648 <= #t~nondet0 && #t~nondet0 <= 2147483647;~event~0 := #t~nondet0;havoc #t~nondet0;assume -2147483648 <= #t~nondet1 && #t~nondet1 <= 2147483647;~DeviceObject__DeviceExtension~0 := #t~nondet1;havoc #t~nondet1;assume -2147483648 <= #t~nondet2 && #t~nondet2 <= 2147483647;~Irp__Tail__Overlay__CurrentStackLocation~0 := #t~nondet2;havoc #t~nondet2;assume -2147483648 <= #t~nondet3 && #t~nondet3 <= 2147483647;~irpStack__MinorFunction~0 := #t~nondet3;havoc #t~nondet3;assume -2147483648 <= #t~nondet4 && #t~nondet4 <= 2147483647;~devExt__TopOfStack~0 := #t~nondet4;havoc #t~nondet4;havoc ~devExt__Started~0;havoc ~devExt__Removed~0;havoc ~devExt__SurpriseRemoved~0;havoc ~Irp__IoStatus__Status~0;havoc ~Irp__IoStatus__Information~0;assume -2147483648 <= #t~nondet5 && #t~nondet5 <= 2147483647;~Irp__CurrentLocation~0 := #t~nondet5;havoc #t~nondet5;havoc ~irpSp~0;havoc ~nextIrpSp~0;havoc ~nextIrpSp__Control~0;havoc ~irpSp___0~0;havoc ~irpSp__Context~0;havoc ~irpSp__Control~0;havoc ~__cil_tmp23~0;~status~0 := 0;~devExt~0 := ~DeviceObject__DeviceExtension~0;~irpStack~0 := ~Irp__Tail__Overlay__CurrentStackLocation~0; {18629#(= |old(~s~0)| ~s~0)} is VALID [2018-11-14 17:13:58,779 INFO L273 TraceCheckUtils]: 22: Hoare triple {18629#(= |old(~s~0)| ~s~0)} assume !(~irpStack__MinorFunction~0 == 0); {18629#(= |old(~s~0)| ~s~0)} is VALID [2018-11-14 17:13:58,781 INFO L273 TraceCheckUtils]: 23: Hoare triple {18629#(= |old(~s~0)| ~s~0)} assume !(~irpStack__MinorFunction~0 == 23); {18629#(= |old(~s~0)| ~s~0)} is VALID [2018-11-14 17:13:58,781 INFO L273 TraceCheckUtils]: 24: Hoare triple {18629#(= |old(~s~0)| ~s~0)} assume ~irpStack__MinorFunction~0 == 2; {18629#(= |old(~s~0)| ~s~0)} is VALID [2018-11-14 17:13:58,783 INFO L273 TraceCheckUtils]: 25: Hoare triple {18629#(= |old(~s~0)| ~s~0)} ~devExt__Removed~0 := 1; {18629#(= |old(~s~0)| ~s~0)} is VALID [2018-11-14 17:13:58,783 INFO L273 TraceCheckUtils]: 26: Hoare triple {18629#(= |old(~s~0)| ~s~0)} assume ~s~0 == ~NP~0;~s~0 := ~SKIP1~0; {18630#(and (<= ~SKIP1~0 ~s~0) (= |old(~s~0)| ~NP~0))} is VALID [2018-11-14 17:13:58,786 INFO L273 TraceCheckUtils]: 27: Hoare triple {18630#(and (<= ~SKIP1~0 ~s~0) (= |old(~s~0)| ~NP~0))} #t~post11 := ~Irp__CurrentLocation~0;~Irp__CurrentLocation~0 := #t~post11 + 1;havoc #t~post11;#t~post12 := ~Irp__Tail__Overlay__CurrentStackLocation~0;~Irp__Tail__Overlay__CurrentStackLocation~0 := #t~post12 + 1;havoc #t~post12; {18630#(and (<= ~SKIP1~0 ~s~0) (= |old(~s~0)| ~NP~0))} is VALID [2018-11-14 17:13:58,788 INFO L256 TraceCheckUtils]: 28: Hoare triple {18630#(and (<= ~SKIP1~0 ~s~0) (= |old(~s~0)| ~NP~0))} call #t~ret13 := IofCallDriver(~devExt__TopOfStack~0, ~Irp); {18629#(= |old(~s~0)| ~s~0)} is VALID [2018-11-14 17:13:58,788 INFO L273 TraceCheckUtils]: 29: Hoare triple {18629#(= |old(~s~0)| ~s~0)} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;havoc ~returnVal2~0;havoc ~compRetStatus~0;assume -2147483648 <= #t~nondet30 && #t~nondet30 <= 2147483647;~lcontext~0 := #t~nondet30;havoc #t~nondet30;havoc ~__cil_tmp7~0; {18629#(= |old(~s~0)| ~s~0)} is VALID [2018-11-14 17:13:58,791 INFO L273 TraceCheckUtils]: 30: Hoare triple {18629#(= |old(~s~0)| ~s~0)} assume !(~compRegistered~0 != 0); {18629#(= |old(~s~0)| ~s~0)} is VALID [2018-11-14 17:13:58,791 INFO L273 TraceCheckUtils]: 31: Hoare triple {18629#(= |old(~s~0)| ~s~0)} havoc ~tmp_ndt_6~0;assume -2147483648 <= #t~nondet32 && #t~nondet32 <= 2147483647;~tmp_ndt_6~0 := #t~nondet32;havoc #t~nondet32; {18629#(= |old(~s~0)| ~s~0)} is VALID [2018-11-14 17:13:58,794 INFO L273 TraceCheckUtils]: 32: Hoare triple {18629#(= |old(~s~0)| ~s~0)} assume !(~tmp_ndt_6~0 == 0);havoc ~tmp_ndt_7~0;assume -2147483648 <= #t~nondet33 && #t~nondet33 <= 2147483647;~tmp_ndt_7~0 := #t~nondet33;havoc #t~nondet33; {18629#(= |old(~s~0)| ~s~0)} is VALID [2018-11-14 17:13:58,794 INFO L273 TraceCheckUtils]: 33: Hoare triple {18629#(= |old(~s~0)| ~s~0)} assume ~tmp_ndt_7~0 == 1; {18629#(= |old(~s~0)| ~s~0)} is VALID [2018-11-14 17:13:58,796 INFO L273 TraceCheckUtils]: 34: Hoare triple {18629#(= |old(~s~0)| ~s~0)} ~returnVal2~0 := -1073741823; {18629#(= |old(~s~0)| ~s~0)} is VALID [2018-11-14 17:13:58,796 INFO L273 TraceCheckUtils]: 35: Hoare triple {18629#(= |old(~s~0)| ~s~0)} assume ~s~0 == ~NP~0;~s~0 := ~IPC~0;~lowerDriverReturn~0 := ~returnVal2~0; {18631#(= ~NP~0 |old(~s~0)|)} is VALID [2018-11-14 17:13:58,798 INFO L273 TraceCheckUtils]: 36: Hoare triple {18631#(= ~NP~0 |old(~s~0)|)} #res := ~returnVal2~0; {18631#(= ~NP~0 |old(~s~0)|)} is VALID [2018-11-14 17:13:58,800 INFO L273 TraceCheckUtils]: 37: Hoare triple {18631#(= ~NP~0 |old(~s~0)|)} assume true; {18631#(= ~NP~0 |old(~s~0)|)} is VALID [2018-11-14 17:13:58,802 INFO L268 TraceCheckUtils]: 38: Hoare quadruple {18631#(= ~NP~0 |old(~s~0)|)} {18630#(and (<= ~SKIP1~0 ~s~0) (= |old(~s~0)| ~NP~0))} #783#return; {18632#(<= ~SKIP1~0 |old(~s~0)|)} is VALID [2018-11-14 17:13:58,802 INFO L273 TraceCheckUtils]: 39: Hoare triple {18632#(<= ~SKIP1~0 |old(~s~0)|)} assume -2147483648 <= #t~ret13 && #t~ret13 <= 2147483647;havoc #t~ret13;~status~0 := 0; {18632#(<= ~SKIP1~0 |old(~s~0)|)} is VALID [2018-11-14 17:13:58,804 INFO L273 TraceCheckUtils]: 40: Hoare triple {18632#(<= ~SKIP1~0 |old(~s~0)|)} #res := ~status~0; {18632#(<= ~SKIP1~0 |old(~s~0)|)} is VALID [2018-11-14 17:13:58,804 INFO L273 TraceCheckUtils]: 41: Hoare triple {18632#(<= ~SKIP1~0 |old(~s~0)|)} assume true; {18632#(<= ~SKIP1~0 |old(~s~0)|)} is VALID [2018-11-14 17:13:58,806 INFO L268 TraceCheckUtils]: 42: Hoare quadruple {18632#(<= ~SKIP1~0 |old(~s~0)|)} {18628#(<= (+ ~s~0 2) ~SKIP1~0)} #725#return; {18625#false} is VALID [2018-11-14 17:13:58,806 INFO L273 TraceCheckUtils]: 43: Hoare triple {18625#false} assume -2147483648 <= #t~ret27 && #t~ret27 <= 2147483647;~status~1 := #t~ret27;havoc #t~ret27; {18625#false} is VALID [2018-11-14 17:13:58,806 INFO L273 TraceCheckUtils]: 44: Hoare triple {18625#false} assume !(~pended~0 == 1); {18625#false} is VALID [2018-11-14 17:13:58,806 INFO L273 TraceCheckUtils]: 45: Hoare triple {18625#false} assume !(~pended~0 == 1); {18625#false} is VALID [2018-11-14 17:13:58,806 INFO L273 TraceCheckUtils]: 46: Hoare triple {18625#false} assume ~s~0 != ~UNLOADED~0; {18625#false} is VALID [2018-11-14 17:13:58,806 INFO L273 TraceCheckUtils]: 47: Hoare triple {18625#false} assume ~status~1 != -1; {18625#false} is VALID [2018-11-14 17:13:58,806 INFO L273 TraceCheckUtils]: 48: Hoare triple {18625#false} assume !(~s~0 != ~SKIP2~0); {18625#false} is VALID [2018-11-14 17:13:58,807 INFO L273 TraceCheckUtils]: 49: Hoare triple {18625#false} assume !(~pended~0 == 1); {18625#false} is VALID [2018-11-14 17:13:58,807 INFO L273 TraceCheckUtils]: 50: Hoare triple {18625#false} assume !(~s~0 == ~DC~0); {18625#false} is VALID [2018-11-14 17:13:58,807 INFO L273 TraceCheckUtils]: 51: Hoare triple {18625#false} assume ~status~1 != ~lowerDriverReturn~0; {18625#false} is VALID [2018-11-14 17:13:58,807 INFO L256 TraceCheckUtils]: 52: Hoare triple {18625#false} call errorFn(); {18625#false} is VALID [2018-11-14 17:13:58,807 INFO L273 TraceCheckUtils]: 53: Hoare triple {18625#false} assume !false; {18625#false} is VALID [2018-11-14 17:13:58,809 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-11-14 17:13:58,809 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-14 17:13:58,809 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [9] imperfect sequences [] total 9 [2018-11-14 17:13:58,810 INFO L78 Accepts]: Start accepts. Automaton has 9 states. Word has length 54 [2018-11-14 17:13:58,810 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-14 17:13:58,810 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 9 states. [2018-11-14 17:13:58,885 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 54 edges. 54 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:13:58,885 INFO L459 AbstractCegarLoop]: Interpolant automaton has 9 states [2018-11-14 17:13:58,885 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 9 interpolants. [2018-11-14 17:13:58,885 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=16, Invalid=56, Unknown=0, NotChecked=0, Total=72 [2018-11-14 17:13:58,885 INFO L87 Difference]: Start difference. First operand 165 states and 194 transitions. Second operand 9 states. [2018-11-14 17:14:04,206 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:14:04,206 INFO L93 Difference]: Finished difference Result 228 states and 258 transitions. [2018-11-14 17:14:04,206 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 16 states. [2018-11-14 17:14:04,206 INFO L78 Accepts]: Start accepts. Automaton has 9 states. Word has length 54 [2018-11-14 17:14:04,207 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-14 17:14:04,207 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 9 states. [2018-11-14 17:14:04,209 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 16 states to 16 states and 239 transitions. [2018-11-14 17:14:04,210 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 9 states. [2018-11-14 17:14:04,212 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 16 states to 16 states and 239 transitions. [2018-11-14 17:14:04,212 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 16 states and 239 transitions. [2018-11-14 17:14:04,502 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 239 edges. 239 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:14:04,509 INFO L225 Difference]: With dead ends: 228 [2018-11-14 17:14:04,509 INFO L226 Difference]: Without dead ends: 198 [2018-11-14 17:14:04,510 INFO L604 BasicCegarLoop]: 0 DeclaredPredicates, 22 GetRequests, 3 SyntacticMatches, 1 SemanticMatches, 18 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 48 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=88, Invalid=292, Unknown=0, NotChecked=0, Total=380 [2018-11-14 17:14:04,510 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 198 states. [2018-11-14 17:14:04,958 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 198 to 165. [2018-11-14 17:14:04,958 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-14 17:14:04,958 INFO L82 GeneralOperation]: Start isEquivalent. First operand 198 states. Second operand 165 states. [2018-11-14 17:14:04,958 INFO L74 IsIncluded]: Start isIncluded. First operand 198 states. Second operand 165 states. [2018-11-14 17:14:04,958 INFO L87 Difference]: Start difference. First operand 198 states. Second operand 165 states. [2018-11-14 17:14:04,962 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:14:04,963 INFO L93 Difference]: Finished difference Result 198 states and 225 transitions. [2018-11-14 17:14:04,963 INFO L276 IsEmpty]: Start isEmpty. Operand 198 states and 225 transitions. [2018-11-14 17:14:04,963 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:14:04,963 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:14:04,963 INFO L74 IsIncluded]: Start isIncluded. First operand 165 states. Second operand 198 states. [2018-11-14 17:14:04,963 INFO L87 Difference]: Start difference. First operand 165 states. Second operand 198 states. [2018-11-14 17:14:04,968 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:14:04,968 INFO L93 Difference]: Finished difference Result 198 states and 225 transitions. [2018-11-14 17:14:04,968 INFO L276 IsEmpty]: Start isEmpty. Operand 198 states and 225 transitions. [2018-11-14 17:14:04,969 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:14:04,969 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:14:04,969 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-14 17:14:04,969 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-14 17:14:04,969 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 165 states. [2018-11-14 17:14:04,972 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 165 states to 165 states and 192 transitions. [2018-11-14 17:14:04,973 INFO L78 Accepts]: Start accepts. Automaton has 165 states and 192 transitions. Word has length 54 [2018-11-14 17:14:04,973 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-14 17:14:04,973 INFO L480 AbstractCegarLoop]: Abstraction has 165 states and 192 transitions. [2018-11-14 17:14:04,973 INFO L481 AbstractCegarLoop]: Interpolant automaton has 9 states. [2018-11-14 17:14:04,973 INFO L276 IsEmpty]: Start isEmpty. Operand 165 states and 192 transitions. [2018-11-14 17:14:04,974 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 58 [2018-11-14 17:14:04,974 INFO L367 BasicCegarLoop]: Found error trace [2018-11-14 17:14:04,974 INFO L375 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-14 17:14:04,974 INFO L423 AbstractCegarLoop]: === Iteration 17 === [errorFnErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-14 17:14:04,975 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-14 17:14:04,975 INFO L82 PathProgramCache]: Analyzing trace with hash -1204113239, now seen corresponding path program 1 times [2018-11-14 17:14:04,975 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-14 17:14:04,975 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-14 17:14:04,976 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:14:04,976 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-14 17:14:04,976 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:14:04,988 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-14 17:14:05,176 INFO L256 TraceCheckUtils]: 0: Hoare triple {19587#true} call ULTIMATE.init(); {19587#true} is VALID [2018-11-14 17:14:05,176 INFO L273 TraceCheckUtils]: 1: Hoare triple {19587#true} ~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 0;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0; {19587#true} is VALID [2018-11-14 17:14:05,176 INFO L273 TraceCheckUtils]: 2: Hoare triple {19587#true} assume true; {19587#true} is VALID [2018-11-14 17:14:05,177 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {19587#true} {19587#true} #759#return; {19587#true} is VALID [2018-11-14 17:14:05,177 INFO L256 TraceCheckUtils]: 4: Hoare triple {19587#true} call #t~ret77 := main(); {19587#true} is VALID [2018-11-14 17:14:05,177 INFO L273 TraceCheckUtils]: 5: Hoare triple {19587#true} havoc ~status~1;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;~irp~0 := #t~nondet17;havoc #t~nondet17;havoc ~pirp~0;havoc ~pirp__IoStatus__Status~0;assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~irp_choice~0 := #t~nondet18;havoc #t~nondet18;assume -2147483648 <= #t~nondet19 && #t~nondet19 <= 2147483647;~devobj~0 := #t~nondet19;havoc #t~nondet19;havoc ~__cil_tmp8~0;~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 1;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0;~status~1 := 0;~pirp~0 := ~irp~0; {19587#true} is VALID [2018-11-14 17:14:05,177 INFO L256 TraceCheckUtils]: 6: Hoare triple {19587#true} call _BLAST_init(); {19587#true} is VALID [2018-11-14 17:14:05,177 INFO L273 TraceCheckUtils]: 7: Hoare triple {19587#true} ~UNLOADED~0 := 0;~NP~0 := 1;~DC~0 := 2;~SKIP1~0 := 3;~SKIP2~0 := 4;~MPR1~0 := 5;~MPR3~0 := 6;~IPC~0 := 7;~s~0 := ~UNLOADED~0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0; {19587#true} is VALID [2018-11-14 17:14:05,178 INFO L273 TraceCheckUtils]: 8: Hoare triple {19587#true} assume true; {19587#true} is VALID [2018-11-14 17:14:05,178 INFO L268 TraceCheckUtils]: 9: Hoare quadruple {19587#true} {19587#true} #717#return; {19587#true} is VALID [2018-11-14 17:14:05,178 INFO L273 TraceCheckUtils]: 10: Hoare triple {19587#true} assume ~status~1 >= 0;~s~0 := ~NP~0;~customIrp~0 := 0;~setEventCalled~0 := ~customIrp~0;~lowerDriverReturn~0 := ~setEventCalled~0;~compRegistered~0 := ~lowerDriverReturn~0;~pended~0 := ~compRegistered~0;~pirp__IoStatus__Status~0 := 0;~myStatus~0 := 0; {19587#true} is VALID [2018-11-14 17:14:05,179 INFO L273 TraceCheckUtils]: 11: Hoare triple {19587#true} assume !(~irp_choice~0 == 0); {19587#true} is VALID [2018-11-14 17:14:05,179 INFO L256 TraceCheckUtils]: 12: Hoare triple {19587#true} call stub_driver_init(); {19587#true} is VALID [2018-11-14 17:14:05,179 INFO L273 TraceCheckUtils]: 13: Hoare triple {19587#true} ~s~0 := ~NP~0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0; {19587#true} is VALID [2018-11-14 17:14:05,179 INFO L273 TraceCheckUtils]: 14: Hoare triple {19587#true} assume true; {19587#true} is VALID [2018-11-14 17:14:05,179 INFO L268 TraceCheckUtils]: 15: Hoare quadruple {19587#true} {19587#true} #719#return; {19587#true} is VALID [2018-11-14 17:14:05,179 INFO L273 TraceCheckUtils]: 16: Hoare triple {19587#true} assume !(~status~1 < 0);havoc ~tmp_ndt_1~0;assume -2147483648 <= #t~nondet20 && #t~nondet20 <= 2147483647;~tmp_ndt_1~0 := #t~nondet20;havoc #t~nondet20; {19587#true} is VALID [2018-11-14 17:14:05,180 INFO L273 TraceCheckUtils]: 17: Hoare triple {19587#true} assume !(~tmp_ndt_1~0 == 0);havoc ~tmp_ndt_2~0;assume -2147483648 <= #t~nondet21 && #t~nondet21 <= 2147483647;~tmp_ndt_2~0 := #t~nondet21;havoc #t~nondet21; {19587#true} is VALID [2018-11-14 17:14:05,180 INFO L273 TraceCheckUtils]: 18: Hoare triple {19587#true} assume !(~tmp_ndt_2~0 == 1);havoc ~tmp_ndt_3~0;assume -2147483648 <= #t~nondet22 && #t~nondet22 <= 2147483647;~tmp_ndt_3~0 := #t~nondet22;havoc #t~nondet22; {19587#true} is VALID [2018-11-14 17:14:05,180 INFO L273 TraceCheckUtils]: 19: Hoare triple {19587#true} assume ~tmp_ndt_3~0 == 3; {19587#true} is VALID [2018-11-14 17:14:05,180 INFO L256 TraceCheckUtils]: 20: Hoare triple {19587#true} call #t~ret27 := KbFilter_PnP(~devobj~0, ~pirp~0); {19587#true} is VALID [2018-11-14 17:14:05,180 INFO L273 TraceCheckUtils]: 21: Hoare triple {19587#true} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;havoc ~devExt~0;havoc ~irpStack~0;havoc ~status~0;assume -2147483648 <= #t~nondet0 && #t~nondet0 <= 2147483647;~event~0 := #t~nondet0;havoc #t~nondet0;assume -2147483648 <= #t~nondet1 && #t~nondet1 <= 2147483647;~DeviceObject__DeviceExtension~0 := #t~nondet1;havoc #t~nondet1;assume -2147483648 <= #t~nondet2 && #t~nondet2 <= 2147483647;~Irp__Tail__Overlay__CurrentStackLocation~0 := #t~nondet2;havoc #t~nondet2;assume -2147483648 <= #t~nondet3 && #t~nondet3 <= 2147483647;~irpStack__MinorFunction~0 := #t~nondet3;havoc #t~nondet3;assume -2147483648 <= #t~nondet4 && #t~nondet4 <= 2147483647;~devExt__TopOfStack~0 := #t~nondet4;havoc #t~nondet4;havoc ~devExt__Started~0;havoc ~devExt__Removed~0;havoc ~devExt__SurpriseRemoved~0;havoc ~Irp__IoStatus__Status~0;havoc ~Irp__IoStatus__Information~0;assume -2147483648 <= #t~nondet5 && #t~nondet5 <= 2147483647;~Irp__CurrentLocation~0 := #t~nondet5;havoc #t~nondet5;havoc ~irpSp~0;havoc ~nextIrpSp~0;havoc ~nextIrpSp__Control~0;havoc ~irpSp___0~0;havoc ~irpSp__Context~0;havoc ~irpSp__Control~0;havoc ~__cil_tmp23~0;~status~0 := 0;~devExt~0 := ~DeviceObject__DeviceExtension~0;~irpStack~0 := ~Irp__Tail__Overlay__CurrentStackLocation~0; {19587#true} is VALID [2018-11-14 17:14:05,180 INFO L273 TraceCheckUtils]: 22: Hoare triple {19587#true} assume ~irpStack__MinorFunction~0 == 0; {19587#true} is VALID [2018-11-14 17:14:05,181 INFO L273 TraceCheckUtils]: 23: Hoare triple {19587#true} ~irpSp~0 := ~Irp__Tail__Overlay__CurrentStackLocation~0;~nextIrpSp~0 := ~Irp__Tail__Overlay__CurrentStackLocation~0 - 1;~nextIrpSp__Control~0 := 0; {19587#true} is VALID [2018-11-14 17:14:05,181 INFO L273 TraceCheckUtils]: 24: Hoare triple {19587#true} assume !(~s~0 != ~NP~0); {19587#true} is VALID [2018-11-14 17:14:05,181 INFO L273 TraceCheckUtils]: 25: Hoare triple {19587#true} assume !(~compRegistered~0 != 0);~compRegistered~0 := 1; {19587#true} is VALID [2018-11-14 17:14:05,181 INFO L273 TraceCheckUtils]: 26: Hoare triple {19587#true} ~irpSp___0~0 := ~Irp__Tail__Overlay__CurrentStackLocation~0 - 1;~irpSp__Context~0 := ~event~0;~irpSp__Control~0 := 224; {19587#true} is VALID [2018-11-14 17:14:05,181 INFO L256 TraceCheckUtils]: 27: Hoare triple {19587#true} call #t~ret6 := IofCallDriver(~devExt__TopOfStack~0, ~Irp); {19587#true} is VALID [2018-11-14 17:14:05,181 INFO L273 TraceCheckUtils]: 28: Hoare triple {19587#true} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;havoc ~returnVal2~0;havoc ~compRetStatus~0;assume -2147483648 <= #t~nondet30 && #t~nondet30 <= 2147483647;~lcontext~0 := #t~nondet30;havoc #t~nondet30;havoc ~__cil_tmp7~0; {19587#true} is VALID [2018-11-14 17:14:05,182 INFO L273 TraceCheckUtils]: 29: Hoare triple {19587#true} assume ~compRegistered~0 != 0; {19587#true} is VALID [2018-11-14 17:14:05,182 INFO L256 TraceCheckUtils]: 30: Hoare triple {19587#true} call #t~ret31 := KbFilter_Complete(~DeviceObject, ~Irp, ~lcontext~0); {19587#true} is VALID [2018-11-14 17:14:05,182 INFO L273 TraceCheckUtils]: 31: Hoare triple {19587#true} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;~Context := #in~Context;havoc ~event~1;~event~1 := ~Context; {19587#true} is VALID [2018-11-14 17:14:05,182 INFO L256 TraceCheckUtils]: 32: Hoare triple {19587#true} call #t~ret36 := KeSetEvent(~event~1, 0, 0); {19587#true} is VALID [2018-11-14 17:14:05,182 INFO L273 TraceCheckUtils]: 33: Hoare triple {19587#true} ~Event := #in~Event;~Increment := #in~Increment;~Wait := #in~Wait;assume -2147483648 <= #t~nondet34 && #t~nondet34 <= 2147483647;~l~0 := #t~nondet34;havoc #t~nondet34;~setEventCalled~0 := 1;#res := ~l~0; {19587#true} is VALID [2018-11-14 17:14:05,183 INFO L273 TraceCheckUtils]: 34: Hoare triple {19587#true} assume true; {19587#true} is VALID [2018-11-14 17:14:05,183 INFO L268 TraceCheckUtils]: 35: Hoare quadruple {19587#true} {19587#true} #711#return; {19587#true} is VALID [2018-11-14 17:14:05,183 INFO L273 TraceCheckUtils]: 36: Hoare triple {19587#true} assume -2147483648 <= #t~ret36 && #t~ret36 <= 2147483647;havoc #t~ret36;#res := -1073741802; {19587#true} is VALID [2018-11-14 17:14:05,183 INFO L273 TraceCheckUtils]: 37: Hoare triple {19587#true} assume true; {19587#true} is VALID [2018-11-14 17:14:05,183 INFO L268 TraceCheckUtils]: 38: Hoare quadruple {19587#true} {19587#true} #735#return; {19587#true} is VALID [2018-11-14 17:14:05,183 INFO L273 TraceCheckUtils]: 39: Hoare triple {19587#true} assume -2147483648 <= #t~ret31 && #t~ret31 <= 2147483647;~compRetStatus~0 := #t~ret31;havoc #t~ret31;~__cil_tmp7~0 := ~compRetStatus~0; {19587#true} is VALID [2018-11-14 17:14:05,183 INFO L273 TraceCheckUtils]: 40: Hoare triple {19587#true} assume !(~__cil_tmp7~0 == -1073741802); {19587#true} is VALID [2018-11-14 17:14:05,184 INFO L273 TraceCheckUtils]: 41: Hoare triple {19587#true} havoc ~tmp_ndt_6~0;assume -2147483648 <= #t~nondet32 && #t~nondet32 <= 2147483647;~tmp_ndt_6~0 := #t~nondet32;havoc #t~nondet32; {19587#true} is VALID [2018-11-14 17:14:05,184 INFO L273 TraceCheckUtils]: 42: Hoare triple {19587#true} assume ~tmp_ndt_6~0 == 0; {19587#true} is VALID [2018-11-14 17:14:05,199 INFO L273 TraceCheckUtils]: 43: Hoare triple {19587#true} ~returnVal2~0 := 0; {19589#(= 0 IofCallDriver_~returnVal2~0)} is VALID [2018-11-14 17:14:05,207 INFO L273 TraceCheckUtils]: 44: Hoare triple {19589#(= 0 IofCallDriver_~returnVal2~0)} assume ~s~0 == ~NP~0;~s~0 := ~IPC~0;~lowerDriverReturn~0 := ~returnVal2~0; {19589#(= 0 IofCallDriver_~returnVal2~0)} is VALID [2018-11-14 17:14:05,220 INFO L273 TraceCheckUtils]: 45: Hoare triple {19589#(= 0 IofCallDriver_~returnVal2~0)} #res := ~returnVal2~0; {19590#(= 0 |IofCallDriver_#res|)} is VALID [2018-11-14 17:14:05,221 INFO L273 TraceCheckUtils]: 46: Hoare triple {19590#(= 0 |IofCallDriver_#res|)} assume true; {19590#(= 0 |IofCallDriver_#res|)} is VALID [2018-11-14 17:14:05,222 INFO L268 TraceCheckUtils]: 47: Hoare quadruple {19590#(= 0 |IofCallDriver_#res|)} {19587#true} #771#return; {19591#(= 0 |KbFilter_PnP_#t~ret6|)} is VALID [2018-11-14 17:14:05,222 INFO L273 TraceCheckUtils]: 48: Hoare triple {19591#(= 0 |KbFilter_PnP_#t~ret6|)} assume -2147483648 <= #t~ret6 && #t~ret6 <= 2147483647;~status~0 := #t~ret6;havoc #t~ret6;~__cil_tmp23~0 := ~status~0; {19592#(= 0 KbFilter_PnP_~__cil_tmp23~0)} is VALID [2018-11-14 17:14:05,225 INFO L273 TraceCheckUtils]: 49: Hoare triple {19592#(= 0 KbFilter_PnP_~__cil_tmp23~0)} assume ~__cil_tmp23~0 == 259; {19588#false} is VALID [2018-11-14 17:14:05,225 INFO L256 TraceCheckUtils]: 50: Hoare triple {19588#false} call #t~ret7 := KeWaitForSingleObject(~event~0, ~Executive~0, ~KernelMode~0, 0, 0); {19588#false} is VALID [2018-11-14 17:14:05,225 INFO L273 TraceCheckUtils]: 51: Hoare triple {19588#false} ~Object := #in~Object;~WaitReason := #in~WaitReason;~WaitMode := #in~WaitMode;~Alertable := #in~Alertable;~Timeout := #in~Timeout; {19588#false} is VALID [2018-11-14 17:14:05,225 INFO L273 TraceCheckUtils]: 52: Hoare triple {19588#false} assume !(~s~0 == ~MPR3~0); {19588#false} is VALID [2018-11-14 17:14:05,225 INFO L273 TraceCheckUtils]: 53: Hoare triple {19588#false} assume !(~customIrp~0 == 1); {19588#false} is VALID [2018-11-14 17:14:05,225 INFO L273 TraceCheckUtils]: 54: Hoare triple {19588#false} assume ~s~0 == ~MPR3~0; {19588#false} is VALID [2018-11-14 17:14:05,225 INFO L256 TraceCheckUtils]: 55: Hoare triple {19588#false} call errorFn(); {19588#false} is VALID [2018-11-14 17:14:05,226 INFO L273 TraceCheckUtils]: 56: Hoare triple {19588#false} assume !false; {19588#false} is VALID [2018-11-14 17:14:05,227 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-11-14 17:14:05,227 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-14 17:14:05,228 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2018-11-14 17:14:05,228 INFO L78 Accepts]: Start accepts. Automaton has 6 states. Word has length 57 [2018-11-14 17:14:05,228 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-14 17:14:05,228 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 6 states. [2018-11-14 17:14:05,286 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 57 edges. 57 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:14:05,287 INFO L459 AbstractCegarLoop]: Interpolant automaton has 6 states [2018-11-14 17:14:05,287 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2018-11-14 17:14:05,287 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2018-11-14 17:14:05,287 INFO L87 Difference]: Start difference. First operand 165 states and 192 transitions. Second operand 6 states. [2018-11-14 17:14:06,111 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:14:06,112 INFO L93 Difference]: Finished difference Result 209 states and 244 transitions. [2018-11-14 17:14:06,112 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2018-11-14 17:14:06,112 INFO L78 Accepts]: Start accepts. Automaton has 6 states. Word has length 57 [2018-11-14 17:14:06,112 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-14 17:14:06,112 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 6 states. [2018-11-14 17:14:06,114 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 6 states to 6 states and 190 transitions. [2018-11-14 17:14:06,114 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 6 states. [2018-11-14 17:14:06,116 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 6 states to 6 states and 190 transitions. [2018-11-14 17:14:06,116 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 6 states and 190 transitions. [2018-11-14 17:14:06,273 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 190 edges. 190 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:14:06,277 INFO L225 Difference]: With dead ends: 209 [2018-11-14 17:14:06,277 INFO L226 Difference]: Without dead ends: 173 [2018-11-14 17:14:06,278 INFO L604 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=13, Invalid=29, Unknown=0, NotChecked=0, Total=42 [2018-11-14 17:14:06,278 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 173 states. [2018-11-14 17:14:06,651 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 173 to 167. [2018-11-14 17:14:06,651 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-14 17:14:06,651 INFO L82 GeneralOperation]: Start isEquivalent. First operand 173 states. Second operand 167 states. [2018-11-14 17:14:06,652 INFO L74 IsIncluded]: Start isIncluded. First operand 173 states. Second operand 167 states. [2018-11-14 17:14:06,652 INFO L87 Difference]: Start difference. First operand 173 states. Second operand 167 states. [2018-11-14 17:14:06,655 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:14:06,655 INFO L93 Difference]: Finished difference Result 173 states and 201 transitions. [2018-11-14 17:14:06,655 INFO L276 IsEmpty]: Start isEmpty. Operand 173 states and 201 transitions. [2018-11-14 17:14:06,655 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:14:06,655 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:14:06,655 INFO L74 IsIncluded]: Start isIncluded. First operand 167 states. Second operand 173 states. [2018-11-14 17:14:06,656 INFO L87 Difference]: Start difference. First operand 167 states. Second operand 173 states. [2018-11-14 17:14:06,659 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:14:06,659 INFO L93 Difference]: Finished difference Result 173 states and 201 transitions. [2018-11-14 17:14:06,659 INFO L276 IsEmpty]: Start isEmpty. Operand 173 states and 201 transitions. [2018-11-14 17:14:06,660 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:14:06,660 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:14:06,660 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-14 17:14:06,660 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-14 17:14:06,660 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 167 states. [2018-11-14 17:14:06,664 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 167 states to 167 states and 193 transitions. [2018-11-14 17:14:06,664 INFO L78 Accepts]: Start accepts. Automaton has 167 states and 193 transitions. Word has length 57 [2018-11-14 17:14:06,664 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-14 17:14:06,664 INFO L480 AbstractCegarLoop]: Abstraction has 167 states and 193 transitions. [2018-11-14 17:14:06,664 INFO L481 AbstractCegarLoop]: Interpolant automaton has 6 states. [2018-11-14 17:14:06,665 INFO L276 IsEmpty]: Start isEmpty. Operand 167 states and 193 transitions. [2018-11-14 17:14:06,665 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 58 [2018-11-14 17:14:06,665 INFO L367 BasicCegarLoop]: Found error trace [2018-11-14 17:14:06,666 INFO L375 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-14 17:14:06,666 INFO L423 AbstractCegarLoop]: === Iteration 18 === [errorFnErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-14 17:14:06,666 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-14 17:14:06,666 INFO L82 PathProgramCache]: Analyzing trace with hash -527681510, now seen corresponding path program 1 times [2018-11-14 17:14:06,666 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-14 17:14:06,666 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-14 17:14:06,667 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:14:06,667 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-14 17:14:06,667 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:14:06,679 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-14 17:14:06,879 INFO L256 TraceCheckUtils]: 0: Hoare triple {20457#true} call ULTIMATE.init(); {20457#true} is VALID [2018-11-14 17:14:06,879 INFO L273 TraceCheckUtils]: 1: Hoare triple {20457#true} ~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 0;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0; {20457#true} is VALID [2018-11-14 17:14:06,880 INFO L273 TraceCheckUtils]: 2: Hoare triple {20457#true} assume true; {20457#true} is VALID [2018-11-14 17:14:06,880 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {20457#true} {20457#true} #759#return; {20457#true} is VALID [2018-11-14 17:14:06,880 INFO L256 TraceCheckUtils]: 4: Hoare triple {20457#true} call #t~ret77 := main(); {20457#true} is VALID [2018-11-14 17:14:06,880 INFO L273 TraceCheckUtils]: 5: Hoare triple {20457#true} havoc ~status~1;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;~irp~0 := #t~nondet17;havoc #t~nondet17;havoc ~pirp~0;havoc ~pirp__IoStatus__Status~0;assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~irp_choice~0 := #t~nondet18;havoc #t~nondet18;assume -2147483648 <= #t~nondet19 && #t~nondet19 <= 2147483647;~devobj~0 := #t~nondet19;havoc #t~nondet19;havoc ~__cil_tmp8~0;~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 1;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0;~status~1 := 0;~pirp~0 := ~irp~0; {20457#true} is VALID [2018-11-14 17:14:06,880 INFO L256 TraceCheckUtils]: 6: Hoare triple {20457#true} call _BLAST_init(); {20457#true} is VALID [2018-11-14 17:14:06,881 INFO L273 TraceCheckUtils]: 7: Hoare triple {20457#true} ~UNLOADED~0 := 0;~NP~0 := 1;~DC~0 := 2;~SKIP1~0 := 3;~SKIP2~0 := 4;~MPR1~0 := 5;~MPR3~0 := 6;~IPC~0 := 7;~s~0 := ~UNLOADED~0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0; {20457#true} is VALID [2018-11-14 17:14:06,881 INFO L273 TraceCheckUtils]: 8: Hoare triple {20457#true} assume true; {20457#true} is VALID [2018-11-14 17:14:06,881 INFO L268 TraceCheckUtils]: 9: Hoare quadruple {20457#true} {20457#true} #717#return; {20457#true} is VALID [2018-11-14 17:14:06,881 INFO L273 TraceCheckUtils]: 10: Hoare triple {20457#true} assume ~status~1 >= 0;~s~0 := ~NP~0;~customIrp~0 := 0;~setEventCalled~0 := ~customIrp~0;~lowerDriverReturn~0 := ~setEventCalled~0;~compRegistered~0 := ~lowerDriverReturn~0;~pended~0 := ~compRegistered~0;~pirp__IoStatus__Status~0 := 0;~myStatus~0 := 0; {20457#true} is VALID [2018-11-14 17:14:06,882 INFO L273 TraceCheckUtils]: 11: Hoare triple {20457#true} assume !(~irp_choice~0 == 0); {20457#true} is VALID [2018-11-14 17:14:06,882 INFO L256 TraceCheckUtils]: 12: Hoare triple {20457#true} call stub_driver_init(); {20457#true} is VALID [2018-11-14 17:14:06,882 INFO L273 TraceCheckUtils]: 13: Hoare triple {20457#true} ~s~0 := ~NP~0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0; {20457#true} is VALID [2018-11-14 17:14:06,882 INFO L273 TraceCheckUtils]: 14: Hoare triple {20457#true} assume true; {20457#true} is VALID [2018-11-14 17:14:06,882 INFO L268 TraceCheckUtils]: 15: Hoare quadruple {20457#true} {20457#true} #719#return; {20457#true} is VALID [2018-11-14 17:14:06,882 INFO L273 TraceCheckUtils]: 16: Hoare triple {20457#true} assume !(~status~1 < 0);havoc ~tmp_ndt_1~0;assume -2147483648 <= #t~nondet20 && #t~nondet20 <= 2147483647;~tmp_ndt_1~0 := #t~nondet20;havoc #t~nondet20; {20457#true} is VALID [2018-11-14 17:14:06,882 INFO L273 TraceCheckUtils]: 17: Hoare triple {20457#true} assume !(~tmp_ndt_1~0 == 0);havoc ~tmp_ndt_2~0;assume -2147483648 <= #t~nondet21 && #t~nondet21 <= 2147483647;~tmp_ndt_2~0 := #t~nondet21;havoc #t~nondet21; {20457#true} is VALID [2018-11-14 17:14:06,883 INFO L273 TraceCheckUtils]: 18: Hoare triple {20457#true} assume !(~tmp_ndt_2~0 == 1);havoc ~tmp_ndt_3~0;assume -2147483648 <= #t~nondet22 && #t~nondet22 <= 2147483647;~tmp_ndt_3~0 := #t~nondet22;havoc #t~nondet22; {20457#true} is VALID [2018-11-14 17:14:06,883 INFO L273 TraceCheckUtils]: 19: Hoare triple {20457#true} assume ~tmp_ndt_3~0 == 3; {20457#true} is VALID [2018-11-14 17:14:06,883 INFO L256 TraceCheckUtils]: 20: Hoare triple {20457#true} call #t~ret27 := KbFilter_PnP(~devobj~0, ~pirp~0); {20457#true} is VALID [2018-11-14 17:14:06,883 INFO L273 TraceCheckUtils]: 21: Hoare triple {20457#true} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;havoc ~devExt~0;havoc ~irpStack~0;havoc ~status~0;assume -2147483648 <= #t~nondet0 && #t~nondet0 <= 2147483647;~event~0 := #t~nondet0;havoc #t~nondet0;assume -2147483648 <= #t~nondet1 && #t~nondet1 <= 2147483647;~DeviceObject__DeviceExtension~0 := #t~nondet1;havoc #t~nondet1;assume -2147483648 <= #t~nondet2 && #t~nondet2 <= 2147483647;~Irp__Tail__Overlay__CurrentStackLocation~0 := #t~nondet2;havoc #t~nondet2;assume -2147483648 <= #t~nondet3 && #t~nondet3 <= 2147483647;~irpStack__MinorFunction~0 := #t~nondet3;havoc #t~nondet3;assume -2147483648 <= #t~nondet4 && #t~nondet4 <= 2147483647;~devExt__TopOfStack~0 := #t~nondet4;havoc #t~nondet4;havoc ~devExt__Started~0;havoc ~devExt__Removed~0;havoc ~devExt__SurpriseRemoved~0;havoc ~Irp__IoStatus__Status~0;havoc ~Irp__IoStatus__Information~0;assume -2147483648 <= #t~nondet5 && #t~nondet5 <= 2147483647;~Irp__CurrentLocation~0 := #t~nondet5;havoc #t~nondet5;havoc ~irpSp~0;havoc ~nextIrpSp~0;havoc ~nextIrpSp__Control~0;havoc ~irpSp___0~0;havoc ~irpSp__Context~0;havoc ~irpSp__Control~0;havoc ~__cil_tmp23~0;~status~0 := 0;~devExt~0 := ~DeviceObject__DeviceExtension~0;~irpStack~0 := ~Irp__Tail__Overlay__CurrentStackLocation~0; {20457#true} is VALID [2018-11-14 17:14:06,883 INFO L273 TraceCheckUtils]: 22: Hoare triple {20457#true} assume ~irpStack__MinorFunction~0 == 0; {20457#true} is VALID [2018-11-14 17:14:06,883 INFO L273 TraceCheckUtils]: 23: Hoare triple {20457#true} ~irpSp~0 := ~Irp__Tail__Overlay__CurrentStackLocation~0;~nextIrpSp~0 := ~Irp__Tail__Overlay__CurrentStackLocation~0 - 1;~nextIrpSp__Control~0 := 0; {20457#true} is VALID [2018-11-14 17:14:06,883 INFO L273 TraceCheckUtils]: 24: Hoare triple {20457#true} assume !(~s~0 != ~NP~0); {20457#true} is VALID [2018-11-14 17:14:06,883 INFO L273 TraceCheckUtils]: 25: Hoare triple {20457#true} assume !(~compRegistered~0 != 0);~compRegistered~0 := 1; {20457#true} is VALID [2018-11-14 17:14:06,883 INFO L273 TraceCheckUtils]: 26: Hoare triple {20457#true} ~irpSp___0~0 := ~Irp__Tail__Overlay__CurrentStackLocation~0 - 1;~irpSp__Context~0 := ~event~0;~irpSp__Control~0 := 224; {20457#true} is VALID [2018-11-14 17:14:06,884 INFO L256 TraceCheckUtils]: 27: Hoare triple {20457#true} call #t~ret6 := IofCallDriver(~devExt__TopOfStack~0, ~Irp); {20457#true} is VALID [2018-11-14 17:14:06,884 INFO L273 TraceCheckUtils]: 28: Hoare triple {20457#true} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;havoc ~returnVal2~0;havoc ~compRetStatus~0;assume -2147483648 <= #t~nondet30 && #t~nondet30 <= 2147483647;~lcontext~0 := #t~nondet30;havoc #t~nondet30;havoc ~__cil_tmp7~0; {20457#true} is VALID [2018-11-14 17:14:06,884 INFO L273 TraceCheckUtils]: 29: Hoare triple {20457#true} assume ~compRegistered~0 != 0; {20457#true} is VALID [2018-11-14 17:14:06,884 INFO L256 TraceCheckUtils]: 30: Hoare triple {20457#true} call #t~ret31 := KbFilter_Complete(~DeviceObject, ~Irp, ~lcontext~0); {20457#true} is VALID [2018-11-14 17:14:06,884 INFO L273 TraceCheckUtils]: 31: Hoare triple {20457#true} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;~Context := #in~Context;havoc ~event~1;~event~1 := ~Context; {20457#true} is VALID [2018-11-14 17:14:06,884 INFO L256 TraceCheckUtils]: 32: Hoare triple {20457#true} call #t~ret36 := KeSetEvent(~event~1, 0, 0); {20457#true} is VALID [2018-11-14 17:14:06,884 INFO L273 TraceCheckUtils]: 33: Hoare triple {20457#true} ~Event := #in~Event;~Increment := #in~Increment;~Wait := #in~Wait;assume -2147483648 <= #t~nondet34 && #t~nondet34 <= 2147483647;~l~0 := #t~nondet34;havoc #t~nondet34;~setEventCalled~0 := 1;#res := ~l~0; {20457#true} is VALID [2018-11-14 17:14:06,884 INFO L273 TraceCheckUtils]: 34: Hoare triple {20457#true} assume true; {20457#true} is VALID [2018-11-14 17:14:06,885 INFO L268 TraceCheckUtils]: 35: Hoare quadruple {20457#true} {20457#true} #711#return; {20457#true} is VALID [2018-11-14 17:14:06,885 INFO L273 TraceCheckUtils]: 36: Hoare triple {20457#true} assume -2147483648 <= #t~ret36 && #t~ret36 <= 2147483647;havoc #t~ret36;#res := -1073741802; {20457#true} is VALID [2018-11-14 17:14:06,885 INFO L273 TraceCheckUtils]: 37: Hoare triple {20457#true} assume true; {20457#true} is VALID [2018-11-14 17:14:06,885 INFO L268 TraceCheckUtils]: 38: Hoare quadruple {20457#true} {20457#true} #735#return; {20457#true} is VALID [2018-11-14 17:14:06,885 INFO L273 TraceCheckUtils]: 39: Hoare triple {20457#true} assume -2147483648 <= #t~ret31 && #t~ret31 <= 2147483647;~compRetStatus~0 := #t~ret31;havoc #t~ret31;~__cil_tmp7~0 := ~compRetStatus~0; {20457#true} is VALID [2018-11-14 17:14:06,885 INFO L273 TraceCheckUtils]: 40: Hoare triple {20457#true} assume !(~__cil_tmp7~0 == -1073741802); {20457#true} is VALID [2018-11-14 17:14:06,885 INFO L273 TraceCheckUtils]: 41: Hoare triple {20457#true} havoc ~tmp_ndt_6~0;assume -2147483648 <= #t~nondet32 && #t~nondet32 <= 2147483647;~tmp_ndt_6~0 := #t~nondet32;havoc #t~nondet32; {20457#true} is VALID [2018-11-14 17:14:06,885 INFO L273 TraceCheckUtils]: 42: Hoare triple {20457#true} assume ~tmp_ndt_6~0 == 0; {20457#true} is VALID [2018-11-14 17:14:06,886 INFO L273 TraceCheckUtils]: 43: Hoare triple {20457#true} ~returnVal2~0 := 0; {20459#(= 0 IofCallDriver_~returnVal2~0)} is VALID [2018-11-14 17:14:06,886 INFO L273 TraceCheckUtils]: 44: Hoare triple {20459#(= 0 IofCallDriver_~returnVal2~0)} assume ~s~0 == ~NP~0;~s~0 := ~IPC~0;~lowerDriverReturn~0 := ~returnVal2~0; {20459#(= 0 IofCallDriver_~returnVal2~0)} is VALID [2018-11-14 17:14:06,886 INFO L273 TraceCheckUtils]: 45: Hoare triple {20459#(= 0 IofCallDriver_~returnVal2~0)} #res := ~returnVal2~0; {20460#(= 0 |IofCallDriver_#res|)} is VALID [2018-11-14 17:14:06,887 INFO L273 TraceCheckUtils]: 46: Hoare triple {20460#(= 0 |IofCallDriver_#res|)} assume true; {20460#(= 0 |IofCallDriver_#res|)} is VALID [2018-11-14 17:14:06,887 INFO L268 TraceCheckUtils]: 47: Hoare quadruple {20460#(= 0 |IofCallDriver_#res|)} {20457#true} #771#return; {20461#(= 0 |KbFilter_PnP_#t~ret6|)} is VALID [2018-11-14 17:14:06,888 INFO L273 TraceCheckUtils]: 48: Hoare triple {20461#(= 0 |KbFilter_PnP_#t~ret6|)} assume -2147483648 <= #t~ret6 && #t~ret6 <= 2147483647;~status~0 := #t~ret6;havoc #t~ret6;~__cil_tmp23~0 := ~status~0; {20462#(= KbFilter_PnP_~status~0 0)} is VALID [2018-11-14 17:14:06,888 INFO L273 TraceCheckUtils]: 49: Hoare triple {20462#(= KbFilter_PnP_~status~0 0)} assume !(~__cil_tmp23~0 == 259); {20462#(= KbFilter_PnP_~status~0 0)} is VALID [2018-11-14 17:14:06,888 INFO L273 TraceCheckUtils]: 50: Hoare triple {20462#(= KbFilter_PnP_~status~0 0)} assume !(~status~0 >= 0); {20458#false} is VALID [2018-11-14 17:14:06,889 INFO L273 TraceCheckUtils]: 51: Hoare triple {20458#false} ~Irp__IoStatus__Status~0 := ~status~0;~myStatus~0 := ~status~0;~Irp__IoStatus__Information~0 := 0; {20458#false} is VALID [2018-11-14 17:14:06,889 INFO L256 TraceCheckUtils]: 52: Hoare triple {20458#false} call IofCompleteRequest(~Irp, 0); {20458#false} is VALID [2018-11-14 17:14:06,889 INFO L273 TraceCheckUtils]: 53: Hoare triple {20458#false} ~Irp := #in~Irp;~PriorityBoost := #in~PriorityBoost; {20458#false} is VALID [2018-11-14 17:14:06,889 INFO L273 TraceCheckUtils]: 54: Hoare triple {20458#false} assume !(~s~0 == ~NP~0); {20458#false} is VALID [2018-11-14 17:14:06,889 INFO L256 TraceCheckUtils]: 55: Hoare triple {20458#false} call errorFn(); {20458#false} is VALID [2018-11-14 17:14:06,889 INFO L273 TraceCheckUtils]: 56: Hoare triple {20458#false} assume !false; {20458#false} is VALID [2018-11-14 17:14:06,892 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-11-14 17:14:06,892 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-14 17:14:06,892 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2018-11-14 17:14:06,892 INFO L78 Accepts]: Start accepts. Automaton has 6 states. Word has length 57 [2018-11-14 17:14:06,893 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-14 17:14:06,893 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 6 states. [2018-11-14 17:14:06,989 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 57 edges. 57 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:14:06,990 INFO L459 AbstractCegarLoop]: Interpolant automaton has 6 states [2018-11-14 17:14:06,990 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2018-11-14 17:14:06,990 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2018-11-14 17:14:06,990 INFO L87 Difference]: Start difference. First operand 167 states and 193 transitions. Second operand 6 states. [2018-11-14 17:14:07,858 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:14:07,858 INFO L93 Difference]: Finished difference Result 178 states and 205 transitions. [2018-11-14 17:14:07,858 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2018-11-14 17:14:07,858 INFO L78 Accepts]: Start accepts. Automaton has 6 states. Word has length 57 [2018-11-14 17:14:07,859 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-14 17:14:07,859 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 6 states. [2018-11-14 17:14:07,860 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 6 states to 6 states and 168 transitions. [2018-11-14 17:14:07,860 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 6 states. [2018-11-14 17:14:07,862 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 6 states to 6 states and 168 transitions. [2018-11-14 17:14:07,862 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 6 states and 168 transitions. [2018-11-14 17:14:08,029 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 168 edges. 168 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:14:08,033 INFO L225 Difference]: With dead ends: 178 [2018-11-14 17:14:08,033 INFO L226 Difference]: Without dead ends: 171 [2018-11-14 17:14:08,033 INFO L604 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 2 SyntacticMatches, 1 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=17, Invalid=39, Unknown=0, NotChecked=0, Total=56 [2018-11-14 17:14:08,033 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 171 states. [2018-11-14 17:14:08,445 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 171 to 168. [2018-11-14 17:14:08,445 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-14 17:14:08,445 INFO L82 GeneralOperation]: Start isEquivalent. First operand 171 states. Second operand 168 states. [2018-11-14 17:14:08,446 INFO L74 IsIncluded]: Start isIncluded. First operand 171 states. Second operand 168 states. [2018-11-14 17:14:08,446 INFO L87 Difference]: Start difference. First operand 171 states. Second operand 168 states. [2018-11-14 17:14:08,449 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:14:08,449 INFO L93 Difference]: Finished difference Result 171 states and 198 transitions. [2018-11-14 17:14:08,449 INFO L276 IsEmpty]: Start isEmpty. Operand 171 states and 198 transitions. [2018-11-14 17:14:08,450 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:14:08,450 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:14:08,450 INFO L74 IsIncluded]: Start isIncluded. First operand 168 states. Second operand 171 states. [2018-11-14 17:14:08,450 INFO L87 Difference]: Start difference. First operand 168 states. Second operand 171 states. [2018-11-14 17:14:08,453 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:14:08,453 INFO L93 Difference]: Finished difference Result 171 states and 198 transitions. [2018-11-14 17:14:08,454 INFO L276 IsEmpty]: Start isEmpty. Operand 171 states and 198 transitions. [2018-11-14 17:14:08,454 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:14:08,454 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:14:08,454 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-14 17:14:08,454 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-14 17:14:08,454 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 168 states. [2018-11-14 17:14:08,457 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 168 states to 168 states and 194 transitions. [2018-11-14 17:14:08,458 INFO L78 Accepts]: Start accepts. Automaton has 168 states and 194 transitions. Word has length 57 [2018-11-14 17:14:08,458 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-14 17:14:08,458 INFO L480 AbstractCegarLoop]: Abstraction has 168 states and 194 transitions. [2018-11-14 17:14:08,458 INFO L481 AbstractCegarLoop]: Interpolant automaton has 6 states. [2018-11-14 17:14:08,458 INFO L276 IsEmpty]: Start isEmpty. Operand 168 states and 194 transitions. [2018-11-14 17:14:08,459 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 59 [2018-11-14 17:14:08,459 INFO L367 BasicCegarLoop]: Found error trace [2018-11-14 17:14:08,459 INFO L375 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-14 17:14:08,459 INFO L423 AbstractCegarLoop]: === Iteration 19 === [errorFnErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-14 17:14:08,459 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-14 17:14:08,460 INFO L82 PathProgramCache]: Analyzing trace with hash -639520605, now seen corresponding path program 1 times [2018-11-14 17:14:08,460 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-14 17:14:08,460 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-14 17:14:08,460 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:14:08,461 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-14 17:14:08,461 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:14:08,477 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2018-11-14 17:14:08,601 INFO L256 TraceCheckUtils]: 0: Hoare triple {21284#true} call ULTIMATE.init(); {21284#true} is VALID [2018-11-14 17:14:08,602 INFO L273 TraceCheckUtils]: 1: Hoare triple {21284#true} ~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 0;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0; {21284#true} is VALID [2018-11-14 17:14:08,602 INFO L273 TraceCheckUtils]: 2: Hoare triple {21284#true} assume true; {21284#true} is VALID [2018-11-14 17:14:08,602 INFO L268 TraceCheckUtils]: 3: Hoare quadruple {21284#true} {21284#true} #759#return; {21284#true} is VALID [2018-11-14 17:14:08,603 INFO L256 TraceCheckUtils]: 4: Hoare triple {21284#true} call #t~ret77 := main(); {21284#true} is VALID [2018-11-14 17:14:08,603 INFO L273 TraceCheckUtils]: 5: Hoare triple {21284#true} havoc ~status~1;assume -2147483648 <= #t~nondet17 && #t~nondet17 <= 2147483647;~irp~0 := #t~nondet17;havoc #t~nondet17;havoc ~pirp~0;havoc ~pirp__IoStatus__Status~0;assume -2147483648 <= #t~nondet18 && #t~nondet18 <= 2147483647;~irp_choice~0 := #t~nondet18;havoc #t~nondet18;assume -2147483648 <= #t~nondet19 && #t~nondet19 <= 2147483647;~devobj~0 := #t~nondet19;havoc #t~nondet19;havoc ~__cil_tmp8~0;~KernelMode~0 := 0;~Executive~0 := 0;~DevicePowerState~0 := 1;~s~0 := 0;~UNLOADED~0 := 0;~NP~0 := 0;~DC~0 := 0;~SKIP1~0 := 0;~SKIP2~0 := 0;~MPR1~0 := 0;~MPR3~0 := 0;~IPC~0 := 0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0;~myStatus~0 := 0;~status~1 := 0;~pirp~0 := ~irp~0; {21284#true} is VALID [2018-11-14 17:14:08,603 INFO L256 TraceCheckUtils]: 6: Hoare triple {21284#true} call _BLAST_init(); {21284#true} is VALID [2018-11-14 17:14:08,603 INFO L273 TraceCheckUtils]: 7: Hoare triple {21284#true} ~UNLOADED~0 := 0;~NP~0 := 1;~DC~0 := 2;~SKIP1~0 := 3;~SKIP2~0 := 4;~MPR1~0 := 5;~MPR3~0 := 6;~IPC~0 := 7;~s~0 := ~UNLOADED~0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0; {21284#true} is VALID [2018-11-14 17:14:08,603 INFO L273 TraceCheckUtils]: 8: Hoare triple {21284#true} assume true; {21284#true} is VALID [2018-11-14 17:14:08,603 INFO L268 TraceCheckUtils]: 9: Hoare quadruple {21284#true} {21284#true} #717#return; {21284#true} is VALID [2018-11-14 17:14:08,604 INFO L273 TraceCheckUtils]: 10: Hoare triple {21284#true} assume ~status~1 >= 0;~s~0 := ~NP~0;~customIrp~0 := 0;~setEventCalled~0 := ~customIrp~0;~lowerDriverReturn~0 := ~setEventCalled~0;~compRegistered~0 := ~lowerDriverReturn~0;~pended~0 := ~compRegistered~0;~pirp__IoStatus__Status~0 := 0;~myStatus~0 := 0; {21284#true} is VALID [2018-11-14 17:14:08,604 INFO L273 TraceCheckUtils]: 11: Hoare triple {21284#true} assume !(~irp_choice~0 == 0); {21284#true} is VALID [2018-11-14 17:14:08,604 INFO L256 TraceCheckUtils]: 12: Hoare triple {21284#true} call stub_driver_init(); {21284#true} is VALID [2018-11-14 17:14:08,604 INFO L273 TraceCheckUtils]: 13: Hoare triple {21284#true} ~s~0 := ~NP~0;~pended~0 := 0;~compFptr~0 := 0;~compRegistered~0 := 0;~lowerDriverReturn~0 := 0;~setEventCalled~0 := 0;~customIrp~0 := 0; {21284#true} is VALID [2018-11-14 17:14:08,604 INFO L273 TraceCheckUtils]: 14: Hoare triple {21284#true} assume true; {21284#true} is VALID [2018-11-14 17:14:08,604 INFO L268 TraceCheckUtils]: 15: Hoare quadruple {21284#true} {21284#true} #719#return; {21284#true} is VALID [2018-11-14 17:14:08,604 INFO L273 TraceCheckUtils]: 16: Hoare triple {21284#true} assume !(~status~1 < 0);havoc ~tmp_ndt_1~0;assume -2147483648 <= #t~nondet20 && #t~nondet20 <= 2147483647;~tmp_ndt_1~0 := #t~nondet20;havoc #t~nondet20; {21284#true} is VALID [2018-11-14 17:14:08,604 INFO L273 TraceCheckUtils]: 17: Hoare triple {21284#true} assume !(~tmp_ndt_1~0 == 0);havoc ~tmp_ndt_2~0;assume -2147483648 <= #t~nondet21 && #t~nondet21 <= 2147483647;~tmp_ndt_2~0 := #t~nondet21;havoc #t~nondet21; {21284#true} is VALID [2018-11-14 17:14:08,605 INFO L273 TraceCheckUtils]: 18: Hoare triple {21284#true} assume !(~tmp_ndt_2~0 == 1);havoc ~tmp_ndt_3~0;assume -2147483648 <= #t~nondet22 && #t~nondet22 <= 2147483647;~tmp_ndt_3~0 := #t~nondet22;havoc #t~nondet22; {21284#true} is VALID [2018-11-14 17:14:08,605 INFO L273 TraceCheckUtils]: 19: Hoare triple {21284#true} assume ~tmp_ndt_3~0 == 3; {21284#true} is VALID [2018-11-14 17:14:08,605 INFO L256 TraceCheckUtils]: 20: Hoare triple {21284#true} call #t~ret27 := KbFilter_PnP(~devobj~0, ~pirp~0); {21284#true} is VALID [2018-11-14 17:14:08,605 INFO L273 TraceCheckUtils]: 21: Hoare triple {21284#true} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;havoc ~devExt~0;havoc ~irpStack~0;havoc ~status~0;assume -2147483648 <= #t~nondet0 && #t~nondet0 <= 2147483647;~event~0 := #t~nondet0;havoc #t~nondet0;assume -2147483648 <= #t~nondet1 && #t~nondet1 <= 2147483647;~DeviceObject__DeviceExtension~0 := #t~nondet1;havoc #t~nondet1;assume -2147483648 <= #t~nondet2 && #t~nondet2 <= 2147483647;~Irp__Tail__Overlay__CurrentStackLocation~0 := #t~nondet2;havoc #t~nondet2;assume -2147483648 <= #t~nondet3 && #t~nondet3 <= 2147483647;~irpStack__MinorFunction~0 := #t~nondet3;havoc #t~nondet3;assume -2147483648 <= #t~nondet4 && #t~nondet4 <= 2147483647;~devExt__TopOfStack~0 := #t~nondet4;havoc #t~nondet4;havoc ~devExt__Started~0;havoc ~devExt__Removed~0;havoc ~devExt__SurpriseRemoved~0;havoc ~Irp__IoStatus__Status~0;havoc ~Irp__IoStatus__Information~0;assume -2147483648 <= #t~nondet5 && #t~nondet5 <= 2147483647;~Irp__CurrentLocation~0 := #t~nondet5;havoc #t~nondet5;havoc ~irpSp~0;havoc ~nextIrpSp~0;havoc ~nextIrpSp__Control~0;havoc ~irpSp___0~0;havoc ~irpSp__Context~0;havoc ~irpSp__Control~0;havoc ~__cil_tmp23~0;~status~0 := 0;~devExt~0 := ~DeviceObject__DeviceExtension~0;~irpStack~0 := ~Irp__Tail__Overlay__CurrentStackLocation~0; {21284#true} is VALID [2018-11-14 17:14:08,605 INFO L273 TraceCheckUtils]: 22: Hoare triple {21284#true} assume ~irpStack__MinorFunction~0 == 0; {21284#true} is VALID [2018-11-14 17:14:08,605 INFO L273 TraceCheckUtils]: 23: Hoare triple {21284#true} ~irpSp~0 := ~Irp__Tail__Overlay__CurrentStackLocation~0;~nextIrpSp~0 := ~Irp__Tail__Overlay__CurrentStackLocation~0 - 1;~nextIrpSp__Control~0 := 0; {21284#true} is VALID [2018-11-14 17:14:08,605 INFO L273 TraceCheckUtils]: 24: Hoare triple {21284#true} assume !(~s~0 != ~NP~0); {21284#true} is VALID [2018-11-14 17:14:08,605 INFO L273 TraceCheckUtils]: 25: Hoare triple {21284#true} assume !(~compRegistered~0 != 0);~compRegistered~0 := 1; {21284#true} is VALID [2018-11-14 17:14:08,605 INFO L273 TraceCheckUtils]: 26: Hoare triple {21284#true} ~irpSp___0~0 := ~Irp__Tail__Overlay__CurrentStackLocation~0 - 1;~irpSp__Context~0 := ~event~0;~irpSp__Control~0 := 224; {21284#true} is VALID [2018-11-14 17:14:08,606 INFO L256 TraceCheckUtils]: 27: Hoare triple {21284#true} call #t~ret6 := IofCallDriver(~devExt__TopOfStack~0, ~Irp); {21284#true} is VALID [2018-11-14 17:14:08,606 INFO L273 TraceCheckUtils]: 28: Hoare triple {21284#true} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;havoc ~returnVal2~0;havoc ~compRetStatus~0;assume -2147483648 <= #t~nondet30 && #t~nondet30 <= 2147483647;~lcontext~0 := #t~nondet30;havoc #t~nondet30;havoc ~__cil_tmp7~0; {21284#true} is VALID [2018-11-14 17:14:08,606 INFO L273 TraceCheckUtils]: 29: Hoare triple {21284#true} assume ~compRegistered~0 != 0; {21284#true} is VALID [2018-11-14 17:14:08,606 INFO L256 TraceCheckUtils]: 30: Hoare triple {21284#true} call #t~ret31 := KbFilter_Complete(~DeviceObject, ~Irp, ~lcontext~0); {21284#true} is VALID [2018-11-14 17:14:08,606 INFO L273 TraceCheckUtils]: 31: Hoare triple {21284#true} ~DeviceObject := #in~DeviceObject;~Irp := #in~Irp;~Context := #in~Context;havoc ~event~1;~event~1 := ~Context; {21284#true} is VALID [2018-11-14 17:14:08,606 INFO L256 TraceCheckUtils]: 32: Hoare triple {21284#true} call #t~ret36 := KeSetEvent(~event~1, 0, 0); {21284#true} is VALID [2018-11-14 17:14:08,606 INFO L273 TraceCheckUtils]: 33: Hoare triple {21284#true} ~Event := #in~Event;~Increment := #in~Increment;~Wait := #in~Wait;assume -2147483648 <= #t~nondet34 && #t~nondet34 <= 2147483647;~l~0 := #t~nondet34;havoc #t~nondet34;~setEventCalled~0 := 1;#res := ~l~0; {21284#true} is VALID [2018-11-14 17:14:08,606 INFO L273 TraceCheckUtils]: 34: Hoare triple {21284#true} assume true; {21284#true} is VALID [2018-11-14 17:14:08,606 INFO L268 TraceCheckUtils]: 35: Hoare quadruple {21284#true} {21284#true} #711#return; {21284#true} is VALID [2018-11-14 17:14:08,607 INFO L273 TraceCheckUtils]: 36: Hoare triple {21284#true} assume -2147483648 <= #t~ret36 && #t~ret36 <= 2147483647;havoc #t~ret36;#res := -1073741802; {21286#(and (<= (+ |KbFilter_Complete_#res| 1073741802) 0) (<= 0 (+ |KbFilter_Complete_#res| 1073741802)))} is VALID [2018-11-14 17:14:08,607 INFO L273 TraceCheckUtils]: 37: Hoare triple {21286#(and (<= (+ |KbFilter_Complete_#res| 1073741802) 0) (<= 0 (+ |KbFilter_Complete_#res| 1073741802)))} assume true; {21286#(and (<= (+ |KbFilter_Complete_#res| 1073741802) 0) (<= 0 (+ |KbFilter_Complete_#res| 1073741802)))} is VALID [2018-11-14 17:14:08,608 INFO L268 TraceCheckUtils]: 38: Hoare quadruple {21286#(and (<= (+ |KbFilter_Complete_#res| 1073741802) 0) (<= 0 (+ |KbFilter_Complete_#res| 1073741802)))} {21284#true} #735#return; {21287#(= (+ |IofCallDriver_#t~ret31| 1073741802) 0)} is VALID [2018-11-14 17:14:08,609 INFO L273 TraceCheckUtils]: 39: Hoare triple {21287#(= (+ |IofCallDriver_#t~ret31| 1073741802) 0)} assume -2147483648 <= #t~ret31 && #t~ret31 <= 2147483647;~compRetStatus~0 := #t~ret31;havoc #t~ret31;~__cil_tmp7~0 := ~compRetStatus~0; {21288#(= 0 (+ IofCallDriver_~__cil_tmp7~0 1073741802))} is VALID [2018-11-14 17:14:08,609 INFO L273 TraceCheckUtils]: 40: Hoare triple {21288#(= 0 (+ IofCallDriver_~__cil_tmp7~0 1073741802))} assume !(~__cil_tmp7~0 == -1073741802); {21285#false} is VALID [2018-11-14 17:14:08,609 INFO L273 TraceCheckUtils]: 41: Hoare triple {21285#false} havoc ~tmp_ndt_6~0;assume -2147483648 <= #t~nondet32 && #t~nondet32 <= 2147483647;~tmp_ndt_6~0 := #t~nondet32;havoc #t~nondet32; {21285#false} is VALID [2018-11-14 17:14:08,609 INFO L273 TraceCheckUtils]: 42: Hoare triple {21285#false} assume ~tmp_ndt_6~0 == 0; {21285#false} is VALID [2018-11-14 17:14:08,610 INFO L273 TraceCheckUtils]: 43: Hoare triple {21285#false} ~returnVal2~0 := 0; {21285#false} is VALID [2018-11-14 17:14:08,610 INFO L273 TraceCheckUtils]: 44: Hoare triple {21285#false} assume ~s~0 == ~NP~0;~s~0 := ~IPC~0;~lowerDriverReturn~0 := ~returnVal2~0; {21285#false} is VALID [2018-11-14 17:14:08,610 INFO L273 TraceCheckUtils]: 45: Hoare triple {21285#false} #res := ~returnVal2~0; {21285#false} is VALID [2018-11-14 17:14:08,610 INFO L273 TraceCheckUtils]: 46: Hoare triple {21285#false} assume true; {21285#false} is VALID [2018-11-14 17:14:08,610 INFO L268 TraceCheckUtils]: 47: Hoare quadruple {21285#false} {21284#true} #771#return; {21285#false} is VALID [2018-11-14 17:14:08,610 INFO L273 TraceCheckUtils]: 48: Hoare triple {21285#false} assume -2147483648 <= #t~ret6 && #t~ret6 <= 2147483647;~status~0 := #t~ret6;havoc #t~ret6;~__cil_tmp23~0 := ~status~0; {21285#false} is VALID [2018-11-14 17:14:08,610 INFO L273 TraceCheckUtils]: 49: Hoare triple {21285#false} assume !(~__cil_tmp23~0 == 259); {21285#false} is VALID [2018-11-14 17:14:08,611 INFO L273 TraceCheckUtils]: 50: Hoare triple {21285#false} assume ~status~0 >= 0; {21285#false} is VALID [2018-11-14 17:14:08,611 INFO L273 TraceCheckUtils]: 51: Hoare triple {21285#false} assume ~myStatus~0 >= 0;~devExt__Started~0 := 1;~devExt__Removed~0 := 0;~devExt__SurpriseRemoved~0 := 0; {21285#false} is VALID [2018-11-14 17:14:08,611 INFO L273 TraceCheckUtils]: 52: Hoare triple {21285#false} ~Irp__IoStatus__Status~0 := ~status~0;~myStatus~0 := ~status~0;~Irp__IoStatus__Information~0 := 0; {21285#false} is VALID [2018-11-14 17:14:08,611 INFO L256 TraceCheckUtils]: 53: Hoare triple {21285#false} call IofCompleteRequest(~Irp, 0); {21285#false} is VALID [2018-11-14 17:14:08,611 INFO L273 TraceCheckUtils]: 54: Hoare triple {21285#false} ~Irp := #in~Irp;~PriorityBoost := #in~PriorityBoost; {21285#false} is VALID [2018-11-14 17:14:08,612 INFO L273 TraceCheckUtils]: 55: Hoare triple {21285#false} assume !(~s~0 == ~NP~0); {21285#false} is VALID [2018-11-14 17:14:08,612 INFO L256 TraceCheckUtils]: 56: Hoare triple {21285#false} call errorFn(); {21285#false} is VALID [2018-11-14 17:14:08,612 INFO L273 TraceCheckUtils]: 57: Hoare triple {21285#false} assume !false; {21285#false} is VALID [2018-11-14 17:14:08,615 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2018-11-14 17:14:08,615 INFO L312 seRefinementStrategy]: Constructing automaton from 1 perfect and 0 imperfect interpolant sequences. [2018-11-14 17:14:08,615 INFO L327 seRefinementStrategy]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2018-11-14 17:14:08,616 INFO L78 Accepts]: Start accepts. Automaton has 5 states. Word has length 58 [2018-11-14 17:14:08,616 INFO L84 Accepts]: Finished accepts. word is accepted. [2018-11-14 17:14:08,616 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 5 states. [2018-11-14 17:14:08,677 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 58 edges. 58 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:14:08,678 INFO L459 AbstractCegarLoop]: Interpolant automaton has 5 states [2018-11-14 17:14:08,678 INFO L142 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2018-11-14 17:14:08,678 INFO L144 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2018-11-14 17:14:08,679 INFO L87 Difference]: Start difference. First operand 168 states and 194 transitions. Second operand 5 states. [2018-11-14 17:14:09,832 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:14:09,832 INFO L93 Difference]: Finished difference Result 204 states and 235 transitions. [2018-11-14 17:14:09,832 INFO L142 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2018-11-14 17:14:09,832 INFO L78 Accepts]: Start accepts. Automaton has 5 states. Word has length 58 [2018-11-14 17:14:09,833 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2018-11-14 17:14:09,833 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 5 states. [2018-11-14 17:14:09,834 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 5 states to 5 states and 200 transitions. [2018-11-14 17:14:09,834 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 5 states. [2018-11-14 17:14:09,835 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 5 states to 5 states and 200 transitions. [2018-11-14 17:14:09,835 INFO L86 InductivityCheck]: Starting indutivity check of a Floyd-Hoare automaton with 5 states and 200 transitions. [2018-11-14 17:14:10,031 INFO L119 InductivityCheck]: Floyd-Hoare automaton has 200 edges. 200 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. [2018-11-14 17:14:10,035 INFO L225 Difference]: With dead ends: 204 [2018-11-14 17:14:10,035 INFO L226 Difference]: Without dead ends: 162 [2018-11-14 17:14:10,036 INFO L604 BasicCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2018-11-14 17:14:10,036 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 162 states. [2018-11-14 17:14:10,560 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 162 to 162. [2018-11-14 17:14:10,561 INFO L214 AbstractMinimizeNwa]: Start testing correctness of minimizeSevpa [2018-11-14 17:14:10,561 INFO L82 GeneralOperation]: Start isEquivalent. First operand 162 states. Second operand 162 states. [2018-11-14 17:14:10,561 INFO L74 IsIncluded]: Start isIncluded. First operand 162 states. Second operand 162 states. [2018-11-14 17:14:10,561 INFO L87 Difference]: Start difference. First operand 162 states. Second operand 162 states. [2018-11-14 17:14:10,565 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:14:10,565 INFO L93 Difference]: Finished difference Result 162 states and 185 transitions. [2018-11-14 17:14:10,565 INFO L276 IsEmpty]: Start isEmpty. Operand 162 states and 185 transitions. [2018-11-14 17:14:10,565 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:14:10,565 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:14:10,565 INFO L74 IsIncluded]: Start isIncluded. First operand 162 states. Second operand 162 states. [2018-11-14 17:14:10,566 INFO L87 Difference]: Start difference. First operand 162 states. Second operand 162 states. [2018-11-14 17:14:10,568 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2018-11-14 17:14:10,568 INFO L93 Difference]: Finished difference Result 162 states and 185 transitions. [2018-11-14 17:14:10,568 INFO L276 IsEmpty]: Start isEmpty. Operand 162 states and 185 transitions. [2018-11-14 17:14:10,568 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2018-11-14 17:14:10,568 INFO L83 IsIncluded]: Finished isIncluded. Language is included [2018-11-14 17:14:10,569 INFO L88 GeneralOperation]: Finished isEquivalent. [2018-11-14 17:14:10,569 INFO L221 AbstractMinimizeNwa]: Finished testing correctness of minimizeSevpa [2018-11-14 17:14:10,569 INFO L82 GeneralOperation]: Start removeUnreachable. Operand 162 states. [2018-11-14 17:14:10,571 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 162 states to 162 states and 185 transitions. [2018-11-14 17:14:10,571 INFO L78 Accepts]: Start accepts. Automaton has 162 states and 185 transitions. Word has length 58 [2018-11-14 17:14:10,571 INFO L84 Accepts]: Finished accepts. word is rejected. [2018-11-14 17:14:10,571 INFO L480 AbstractCegarLoop]: Abstraction has 162 states and 185 transitions. [2018-11-14 17:14:10,571 INFO L481 AbstractCegarLoop]: Interpolant automaton has 5 states. [2018-11-14 17:14:10,572 INFO L276 IsEmpty]: Start isEmpty. Operand 162 states and 185 transitions. [2018-11-14 17:14:10,572 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 57 [2018-11-14 17:14:10,572 INFO L367 BasicCegarLoop]: Found error trace [2018-11-14 17:14:10,572 INFO L375 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2018-11-14 17:14:10,572 INFO L423 AbstractCegarLoop]: === Iteration 20 === [errorFnErr0ASSERT_VIOLATIONERROR_FUNCTION]=== [2018-11-14 17:14:10,573 INFO L141 PredicateUnifier]: Initialized classic predicate unifier [2018-11-14 17:14:10,573 INFO L82 PathProgramCache]: Analyzing trace with hash -1656625880, now seen corresponding path program 1 times [2018-11-14 17:14:10,573 INFO L223 ckRefinementStrategy]: Switched to mode SMTINTERPOL_TREE_INTERPOLANTS [2018-11-14 17:14:10,573 INFO L69 tionRefinementEngine]: Using refinement strategy CamelRefinementStrategy [2018-11-14 17:14:10,573 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:14:10,574 INFO L103 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2018-11-14 17:14:10,574 INFO L119 rtionOrderModulation]: Craig_TreeInterpolation forces the order to NOT_INCREMENTALLY [2018-11-14 17:14:10,591 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is sat [2018-11-14 17:14:10,609 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is sat [2018-11-14 17:14:10,667 INFO L442 BasicCegarLoop]: Counterexample might be feasible [2018-11-14 17:14:10,798 WARN L170 areAnnotationChecker]: KeSetEventENTRY has no Hoare annotation [2018-11-14 17:14:10,798 WARN L170 areAnnotationChecker]: KbFilter_CompleteENTRY has no Hoare annotation [2018-11-14 17:14:10,798 WARN L170 areAnnotationChecker]: stub_driver_initENTRY has no Hoare annotation [2018-11-14 17:14:10,798 WARN L170 areAnnotationChecker]: KbFilter_PowerENTRY has no Hoare annotation [2018-11-14 17:14:10,798 WARN L170 areAnnotationChecker]: _BLAST_initENTRY has no Hoare annotation [2018-11-14 17:14:10,798 WARN L170 areAnnotationChecker]: errorFnENTRY has no Hoare annotation [2018-11-14 17:14:10,798 WARN L170 areAnnotationChecker]: errorFnENTRY has no Hoare annotation [2018-11-14 17:14:10,799 WARN L170 areAnnotationChecker]: mainENTRY has no Hoare annotation [2018-11-14 17:14:10,799 WARN L170 areAnnotationChecker]: IofCallDriverENTRY has no Hoare annotation [2018-11-14 17:14:10,799 WARN L170 areAnnotationChecker]: stubMoreProcessingRequiredENTRY has no Hoare annotation [2018-11-14 17:14:10,799 WARN L170 areAnnotationChecker]: stubMoreProcessingRequiredENTRY has no Hoare annotation [2018-11-14 17:14:10,799 WARN L170 areAnnotationChecker]: PoCallDriverENTRY has no Hoare annotation [2018-11-14 17:14:10,799 WARN L170 areAnnotationChecker]: ULTIMATE.initENTRY has no Hoare annotation [2018-11-14 17:14:10,799 WARN L170 areAnnotationChecker]: KbFilter_CreateCloseENTRY has no Hoare annotation [2018-11-14 17:14:10,799 WARN L170 areAnnotationChecker]: KbFilter_InternIoCtlENTRY has no Hoare annotation [2018-11-14 17:14:10,799 WARN L170 areAnnotationChecker]: KeWaitForSingleObjectENTRY has no Hoare annotation [2018-11-14 17:14:10,799 WARN L170 areAnnotationChecker]: IofCompleteRequestENTRY has no Hoare annotation [2018-11-14 17:14:10,800 WARN L170 areAnnotationChecker]: ULTIMATE.startENTRY has no Hoare annotation [2018-11-14 17:14:10,800 WARN L170 areAnnotationChecker]: ULTIMATE.startENTRY has no Hoare annotation [2018-11-14 17:14:10,800 WARN L170 areAnnotationChecker]: KbFilter_DispatchPassThroughENTRY has no Hoare annotation [2018-11-14 17:14:10,800 WARN L170 areAnnotationChecker]: KbFilter_PnPENTRY has no Hoare annotation [2018-11-14 17:14:10,800 WARN L170 areAnnotationChecker]: KeSetEventFINAL has no Hoare annotation [2018-11-14 17:14:10,800 WARN L170 areAnnotationChecker]: L623 has no Hoare annotation [2018-11-14 17:14:10,800 WARN L170 areAnnotationChecker]: L623 has no Hoare annotation [2018-11-14 17:14:10,800 WARN L170 areAnnotationChecker]: stub_driver_initFINAL has no Hoare annotation [2018-11-14 17:14:10,800 WARN L170 areAnnotationChecker]: L699 has no Hoare annotation [2018-11-14 17:14:10,800 WARN L170 areAnnotationChecker]: L699 has no Hoare annotation [2018-11-14 17:14:10,800 WARN L170 areAnnotationChecker]: _BLAST_initFINAL has no Hoare annotation [2018-11-14 17:14:10,801 WARN L170 areAnnotationChecker]: errorFnFINAL has no Hoare annotation [2018-11-14 17:14:10,801 WARN L170 areAnnotationChecker]: L325 has no Hoare annotation [2018-11-14 17:14:10,801 WARN L170 areAnnotationChecker]: L325 has no Hoare annotation [2018-11-14 17:14:10,801 WARN L170 areAnnotationChecker]: L488 has no Hoare annotation [2018-11-14 17:14:10,801 WARN L170 areAnnotationChecker]: L488 has no Hoare annotation [2018-11-14 17:14:10,801 WARN L170 areAnnotationChecker]: L474-1 has no Hoare annotation [2018-11-14 17:14:10,801 WARN L170 areAnnotationChecker]: L474 has no Hoare annotation [2018-11-14 17:14:10,801 WARN L170 areAnnotationChecker]: L474 has no Hoare annotation [2018-11-14 17:14:10,801 WARN L170 areAnnotationChecker]: L753 has no Hoare annotation [2018-11-14 17:14:10,801 WARN L170 areAnnotationChecker]: L753 has no Hoare annotation [2018-11-14 17:14:10,802 WARN L170 areAnnotationChecker]: ULTIMATE.initFINAL has no Hoare annotation [2018-11-14 17:14:10,802 WARN L170 areAnnotationChecker]: L637 has no Hoare annotation [2018-11-14 17:14:10,802 WARN L170 areAnnotationChecker]: L637 has no Hoare annotation [2018-11-14 17:14:10,802 WARN L170 areAnnotationChecker]: L874 has no Hoare annotation [2018-11-14 17:14:10,802 WARN L170 areAnnotationChecker]: L874 has no Hoare annotation [2018-11-14 17:14:10,802 WARN L170 areAnnotationChecker]: L580 has no Hoare annotation [2018-11-14 17:14:10,802 WARN L170 areAnnotationChecker]: L580 has no Hoare annotation [2018-11-14 17:14:10,802 WARN L170 areAnnotationChecker]: L557 has no Hoare annotation [2018-11-14 17:14:10,802 WARN L170 areAnnotationChecker]: L557 has no Hoare annotation [2018-11-14 17:14:10,802 WARN L170 areAnnotationChecker]: L-1 has no Hoare annotation [2018-11-14 17:14:10,803 WARN L170 areAnnotationChecker]: L-1 has no Hoare annotation [2018-11-14 17:14:10,803 WARN L170 areAnnotationChecker]: L673 has no Hoare annotation [2018-11-14 17:14:10,803 WARN L170 areAnnotationChecker]: L673 has no Hoare annotation [2018-11-14 17:14:10,803 WARN L170 areAnnotationChecker]: L105 has no Hoare annotation [2018-11-14 17:14:10,803 WARN L170 areAnnotationChecker]: L105 has no Hoare annotation [2018-11-14 17:14:10,803 WARN L170 areAnnotationChecker]: KeSetEventEXIT has no Hoare annotation [2018-11-14 17:14:10,803 WARN L170 areAnnotationChecker]: L623-1 has no Hoare annotation [2018-11-14 17:14:10,803 WARN L170 areAnnotationChecker]: stub_driver_initEXIT has no Hoare annotation [2018-11-14 17:14:10,803 WARN L170 areAnnotationChecker]: L700 has no Hoare annotation [2018-11-14 17:14:10,803 WARN L170 areAnnotationChecker]: L700 has no Hoare annotation [2018-11-14 17:14:10,803 WARN L170 areAnnotationChecker]: L702 has no Hoare annotation [2018-11-14 17:14:10,803 WARN L170 areAnnotationChecker]: L702 has no Hoare annotation [2018-11-14 17:14:10,804 WARN L170 areAnnotationChecker]: _BLAST_initEXIT has no Hoare annotation [2018-11-14 17:14:10,804 WARN L170 areAnnotationChecker]: errorFnEXIT has no Hoare annotation [2018-11-14 17:14:10,804 WARN L170 areAnnotationChecker]: errorFnEXIT has no Hoare annotation [2018-11-14 17:14:10,804 WARN L170 areAnnotationChecker]: errorFnEXIT has no Hoare annotation [2018-11-14 17:14:10,804 WARN L170 areAnnotationChecker]: errorFnEXIT has no Hoare annotation [2018-11-14 17:14:10,804 WARN L170 areAnnotationChecker]: errorFnEXIT has no Hoare annotation [2018-11-14 17:14:10,804 WARN L170 areAnnotationChecker]: errorFnEXIT has no Hoare annotation [2018-11-14 17:14:10,804 WARN L170 areAnnotationChecker]: errorFnEXIT has no Hoare annotation [2018-11-14 17:14:10,804 WARN L170 areAnnotationChecker]: errorFnEXIT has no Hoare annotation [2018-11-14 17:14:10,804 WARN L170 areAnnotationChecker]: errorFnEXIT has no Hoare annotation [2018-11-14 17:14:10,804 WARN L170 areAnnotationChecker]: errorFnEXIT has no Hoare annotation [2018-11-14 17:14:10,804 WARN L170 areAnnotationChecker]: errorFnEXIT has no Hoare annotation [2018-11-14 17:14:10,804 WARN L170 areAnnotationChecker]: errorFnEXIT has no Hoare annotation [2018-11-14 17:14:10,804 WARN L170 areAnnotationChecker]: errorFnEXIT has no Hoare annotation [2018-11-14 17:14:10,804 WARN L170 areAnnotationChecker]: errorFnEXIT has no Hoare annotation [2018-11-14 17:14:10,805 WARN L170 areAnnotationChecker]: L325-1 has no Hoare annotation [2018-11-14 17:14:10,805 WARN L170 areAnnotationChecker]: L325-1 has no Hoare annotation [2018-11-14 17:14:10,805 WARN L170 areAnnotationChecker]: L490 has no Hoare annotation [2018-11-14 17:14:10,805 WARN L170 areAnnotationChecker]: L490 has no Hoare annotation [2018-11-14 17:14:10,805 WARN L170 areAnnotationChecker]: L488-1 has no Hoare annotation [2018-11-14 17:14:10,805 WARN L170 areAnnotationChecker]: stubMoreProcessingRequiredEXIT has no Hoare annotation [2018-11-14 17:14:10,805 WARN L170 areAnnotationChecker]: stubMoreProcessingRequiredEXIT has no Hoare annotation [2018-11-14 17:14:10,805 WARN L170 areAnnotationChecker]: L755 has no Hoare annotation [2018-11-14 17:14:10,805 WARN L170 areAnnotationChecker]: L755 has no Hoare annotation [2018-11-14 17:14:10,805 WARN L170 areAnnotationChecker]: L753-1 has no Hoare annotation [2018-11-14 17:14:10,805 WARN L170 areAnnotationChecker]: ULTIMATE.initEXIT has no Hoare annotation [2018-11-14 17:14:10,805 WARN L170 areAnnotationChecker]: L644 has no Hoare annotation [2018-11-14 17:14:10,805 WARN L170 areAnnotationChecker]: L644 has no Hoare annotation [2018-11-14 17:14:10,805 WARN L170 areAnnotationChecker]: L640 has no Hoare annotation [2018-11-14 17:14:10,805 WARN L170 areAnnotationChecker]: L640 has no Hoare annotation [2018-11-14 17:14:10,806 WARN L170 areAnnotationChecker]: L934 has no Hoare annotation [2018-11-14 17:14:10,806 WARN L170 areAnnotationChecker]: L934 has no Hoare annotation [2018-11-14 17:14:10,806 WARN L170 areAnnotationChecker]: L882 has no Hoare annotation [2018-11-14 17:14:10,806 WARN L170 areAnnotationChecker]: L882 has no Hoare annotation [2018-11-14 17:14:10,806 WARN L170 areAnnotationChecker]: L581 has no Hoare annotation [2018-11-14 17:14:10,806 WARN L170 areAnnotationChecker]: L581 has no Hoare annotation [2018-11-14 17:14:10,806 WARN L170 areAnnotationChecker]: L588 has no Hoare annotation [2018-11-14 17:14:10,806 WARN L170 areAnnotationChecker]: L588 has no Hoare annotation [2018-11-14 17:14:10,806 WARN L170 areAnnotationChecker]: L561-1 has no Hoare annotation [2018-11-14 17:14:10,806 WARN L170 areAnnotationChecker]: L561 has no Hoare annotation [2018-11-14 17:14:10,806 WARN L170 areAnnotationChecker]: L561 has no Hoare annotation [2018-11-14 17:14:10,806 WARN L170 areAnnotationChecker]: ULTIMATE.startFINAL has no Hoare annotation [2018-11-14 17:14:10,806 WARN L170 areAnnotationChecker]: L677-1 has no Hoare annotation [2018-11-14 17:14:10,806 WARN L170 areAnnotationChecker]: L677 has no Hoare annotation [2018-11-14 17:14:10,806 WARN L170 areAnnotationChecker]: L677 has no Hoare annotation [2018-11-14 17:14:10,806 WARN L170 areAnnotationChecker]: L106 has no Hoare annotation [2018-11-14 17:14:10,807 WARN L170 areAnnotationChecker]: L108 has no Hoare annotation [2018-11-14 17:14:10,807 WARN L170 areAnnotationChecker]: L108 has no Hoare annotation [2018-11-14 17:14:10,807 WARN L170 areAnnotationChecker]: KbFilter_CompleteFINAL has no Hoare annotation [2018-11-14 17:14:10,807 WARN L170 areAnnotationChecker]: L341 has no Hoare annotation [2018-11-14 17:14:10,807 WARN L170 areAnnotationChecker]: L341 has no Hoare annotation [2018-11-14 17:14:10,807 WARN L170 areAnnotationChecker]: L723 has no Hoare annotation [2018-11-14 17:14:10,807 WARN L170 areAnnotationChecker]: L723 has no Hoare annotation [2018-11-14 17:14:10,807 WARN L170 areAnnotationChecker]: L705 has no Hoare annotation [2018-11-14 17:14:10,807 WARN L170 areAnnotationChecker]: L705 has no Hoare annotation [2018-11-14 17:14:10,808 WARN L170 areAnnotationChecker]: L733-1 has no Hoare annotation [2018-11-14 17:14:10,808 WARN L170 areAnnotationChecker]: L427 has no Hoare annotation [2018-11-14 17:14:10,808 WARN L170 areAnnotationChecker]: L545-1 has no Hoare annotation [2018-11-14 17:14:10,808 WARN L170 areAnnotationChecker]: L813-1 has no Hoare annotation [2018-11-14 17:14:10,808 WARN L170 areAnnotationChecker]: L593-1 has no Hoare annotation [2018-11-14 17:14:10,808 WARN L170 areAnnotationChecker]: L179-1 has no Hoare annotation [2018-11-14 17:14:10,808 WARN L170 areAnnotationChecker]: L224-1 has no Hoare annotation [2018-11-14 17:14:10,808 WARN L170 areAnnotationChecker]: L240-1 has no Hoare annotation [2018-11-14 17:14:10,808 WARN L170 areAnnotationChecker]: L255-1 has no Hoare annotation [2018-11-14 17:14:10,808 WARN L170 areAnnotationChecker]: L336 has no Hoare annotation [2018-11-14 17:14:10,809 WARN L170 areAnnotationChecker]: L336 has no Hoare annotation [2018-11-14 17:14:10,809 WARN L170 areAnnotationChecker]: L327 has no Hoare annotation [2018-11-14 17:14:10,809 WARN L170 areAnnotationChecker]: L327 has no Hoare annotation [2018-11-14 17:14:10,809 WARN L170 areAnnotationChecker]: L490-1 has no Hoare annotation [2018-11-14 17:14:10,809 WARN L170 areAnnotationChecker]: L503 has no Hoare annotation [2018-11-14 17:14:10,809 WARN L170 areAnnotationChecker]: L503 has no Hoare annotation [2018-11-14 17:14:10,809 WARN L170 areAnnotationChecker]: L755-1 has no Hoare annotation [2018-11-14 17:14:10,809 WARN L170 areAnnotationChecker]: L768 has no Hoare annotation [2018-11-14 17:14:10,809 WARN L170 areAnnotationChecker]: L768 has no Hoare annotation [2018-11-14 17:14:10,810 WARN L170 areAnnotationChecker]: L652 has no Hoare annotation [2018-11-14 17:14:10,810 WARN L170 areAnnotationChecker]: L643 has no Hoare annotation [2018-11-14 17:14:10,810 WARN L170 areAnnotationChecker]: L643 has no Hoare annotation [2018-11-14 17:14:10,810 WARN L170 areAnnotationChecker]: L971 has no Hoare annotation [2018-11-14 17:14:10,810 WARN L170 areAnnotationChecker]: L971 has no Hoare annotation [2018-11-14 17:14:10,810 WARN L170 areAnnotationChecker]: L939 has no Hoare annotation [2018-11-14 17:14:10,810 WARN L170 areAnnotationChecker]: L939 has no Hoare annotation [2018-11-14 17:14:10,810 WARN L170 areAnnotationChecker]: L883 has no Hoare annotation [2018-11-14 17:14:10,810 WARN L170 areAnnotationChecker]: L890 has no Hoare annotation [2018-11-14 17:14:10,811 WARN L170 areAnnotationChecker]: L890 has no Hoare annotation [2018-11-14 17:14:10,811 WARN L170 areAnnotationChecker]: L593 has no Hoare annotation [2018-11-14 17:14:10,811 WARN L170 areAnnotationChecker]: L593 has no Hoare annotation [2018-11-14 17:14:10,811 WARN L170 areAnnotationChecker]: IofCompleteRequestEXIT has no Hoare annotation [2018-11-14 17:14:10,811 WARN L170 areAnnotationChecker]: IofCompleteRequestEXIT has no Hoare annotation [2018-11-14 17:14:10,811 WARN L170 areAnnotationChecker]: L683 has no Hoare annotation [2018-11-14 17:14:10,811 WARN L170 areAnnotationChecker]: L683 has no Hoare annotation [2018-11-14 17:14:10,811 WARN L170 areAnnotationChecker]: L174 has no Hoare annotation [2018-11-14 17:14:10,811 WARN L170 areAnnotationChecker]: L174 has no Hoare annotation [2018-11-14 17:14:10,811 WARN L170 areAnnotationChecker]: L109 has no Hoare annotation [2018-11-14 17:14:10,811 WARN L170 areAnnotationChecker]: L111 has no Hoare annotation [2018-11-14 17:14:10,812 WARN L170 areAnnotationChecker]: L111 has no Hoare annotation [2018-11-14 17:14:10,812 WARN L170 areAnnotationChecker]: KbFilter_CompleteEXIT has no Hoare annotation [2018-11-14 17:14:10,812 WARN L170 areAnnotationChecker]: KbFilter_CompleteEXIT has no Hoare annotation [2018-11-14 17:14:10,812 WARN L170 areAnnotationChecker]: mainFINAL has no Hoare annotation [2018-11-14 17:14:10,812 WARN L170 areAnnotationChecker]: L350 has no Hoare annotation [2018-11-14 17:14:10,812 WARN L170 areAnnotationChecker]: L350 has no Hoare annotation [2018-11-14 17:14:10,812 WARN L170 areAnnotationChecker]: L733 has no Hoare annotation [2018-11-14 17:14:10,812 WARN L170 areAnnotationChecker]: L733 has no Hoare annotation [2018-11-14 17:14:10,812 WARN L170 areAnnotationChecker]: L708 has no Hoare annotation [2018-11-14 17:14:10,812 WARN L170 areAnnotationChecker]: L708 has no Hoare annotation [2018-11-14 17:14:10,813 WARN L170 areAnnotationChecker]: L739 has no Hoare annotation [2018-11-14 17:14:10,813 WARN L170 areAnnotationChecker]: L739 has no Hoare annotation [2018-11-14 17:14:10,813 WARN L170 areAnnotationChecker]: IofCallDriverFINAL has no Hoare annotation [2018-11-14 17:14:10,813 WARN L170 areAnnotationChecker]: PoCallDriverFINAL has no Hoare annotation [2018-11-14 17:14:10,813 WARN L170 areAnnotationChecker]: L602 has no Hoare annotation [2018-11-14 17:14:10,813 WARN L170 areAnnotationChecker]: L602 has no Hoare annotation [2018-11-14 17:14:10,813 WARN L170 areAnnotationChecker]: L191 has no Hoare annotation [2018-11-14 17:14:10,813 WARN L170 areAnnotationChecker]: L191 has no Hoare annotation [2018-11-14 17:14:10,813 WARN L170 areAnnotationChecker]: L230 has no Hoare annotation [2018-11-14 17:14:10,813 WARN L170 areAnnotationChecker]: L230 has no Hoare annotation [2018-11-14 17:14:10,813 WARN L170 areAnnotationChecker]: L246 has no Hoare annotation [2018-11-14 17:14:10,814 WARN L170 areAnnotationChecker]: L246 has no Hoare annotation [2018-11-14 17:14:10,814 WARN L170 areAnnotationChecker]: L261 has no Hoare annotation [2018-11-14 17:14:10,814 WARN L170 areAnnotationChecker]: L261 has no Hoare annotation [2018-11-14 17:14:10,814 WARN L170 areAnnotationChecker]: L336-2 has no Hoare annotation [2018-11-14 17:14:10,814 WARN L170 areAnnotationChecker]: L336-2 has no Hoare annotation [2018-11-14 17:14:10,814 WARN L170 areAnnotationChecker]: L412 has no Hoare annotation [2018-11-14 17:14:10,814 WARN L170 areAnnotationChecker]: L412 has no Hoare annotation [2018-11-14 17:14:10,814 WARN L170 areAnnotationChecker]: L418 has no Hoare annotation [2018-11-14 17:14:10,814 WARN L170 areAnnotationChecker]: L418 has no Hoare annotation [2018-11-14 17:14:10,814 WARN L170 areAnnotationChecker]: L494 has no Hoare annotation [2018-11-14 17:14:10,815 WARN L170 areAnnotationChecker]: L494 has no Hoare annotation [2018-11-14 17:14:10,815 WARN L170 areAnnotationChecker]: L504 has no Hoare annotation [2018-11-14 17:14:10,815 WARN L170 areAnnotationChecker]: L508 has no Hoare annotation [2018-11-14 17:14:10,815 WARN L170 areAnnotationChecker]: L508 has no Hoare annotation [2018-11-14 17:14:10,815 WARN L170 areAnnotationChecker]: L759 has no Hoare annotation [2018-11-14 17:14:10,815 WARN L170 areAnnotationChecker]: L759 has no Hoare annotation [2018-11-14 17:14:10,815 WARN L170 areAnnotationChecker]: L769 has no Hoare annotation [2018-11-14 17:14:10,815 WARN L170 areAnnotationChecker]: L773 has no Hoare annotation [2018-11-14 17:14:10,815 WARN L170 areAnnotationChecker]: L773 has no Hoare annotation [2018-11-14 17:14:10,815 WARN L170 areAnnotationChecker]: L659 has no Hoare annotation [2018-11-14 17:14:10,816 WARN L170 areAnnotationChecker]: L659 has no Hoare annotation [2018-11-14 17:14:10,816 WARN L170 areAnnotationChecker]: L996 has no Hoare annotation [2018-11-14 17:14:10,816 WARN L170 areAnnotationChecker]: L996 has no Hoare annotation [2018-11-14 17:14:10,816 WARN L170 areAnnotationChecker]: L1002 has no Hoare annotation [2018-11-14 17:14:10,816 WARN L170 areAnnotationChecker]: L1002 has no Hoare annotation [2018-11-14 17:14:10,816 WARN L170 areAnnotationChecker]: L891 has no Hoare annotation [2018-11-14 17:14:10,816 WARN L170 areAnnotationChecker]: L891 has no Hoare annotation [2018-11-14 17:14:10,816 WARN L170 areAnnotationChecker]: L895 has no Hoare annotation [2018-11-14 17:14:10,816 WARN L170 areAnnotationChecker]: L895 has no Hoare annotation [2018-11-14 17:14:10,816 WARN L170 areAnnotationChecker]: L595 has no Hoare annotation [2018-11-14 17:14:10,816 WARN L170 areAnnotationChecker]: L595 has no Hoare annotation [2018-11-14 17:14:10,817 WARN L170 areAnnotationChecker]: L996-1 has no Hoare annotation [2018-11-14 17:14:10,817 WARN L170 areAnnotationChecker]: L266 has no Hoare annotation [2018-11-14 17:14:10,817 WARN L170 areAnnotationChecker]: L683-1 has no Hoare annotation [2018-11-14 17:14:10,817 WARN L170 areAnnotationChecker]: L176 has no Hoare annotation [2018-11-14 17:14:10,817 WARN L170 areAnnotationChecker]: L176 has no Hoare annotation [2018-11-14 17:14:10,817 WARN L170 areAnnotationChecker]: L179 has no Hoare annotation [2018-11-14 17:14:10,817 WARN L170 areAnnotationChecker]: L179 has no Hoare annotation [2018-11-14 17:14:10,817 WARN L170 areAnnotationChecker]: L220 has no Hoare annotation [2018-11-14 17:14:10,817 WARN L170 areAnnotationChecker]: L220 has no Hoare annotation [2018-11-14 17:14:10,817 WARN L170 areAnnotationChecker]: L112 has no Hoare annotation [2018-11-14 17:14:10,818 WARN L170 areAnnotationChecker]: L114 has no Hoare annotation [2018-11-14 17:14:10,818 WARN L170 areAnnotationChecker]: L114 has no Hoare annotation [2018-11-14 17:14:10,818 WARN L170 areAnnotationChecker]: mainEXIT has no Hoare annotation [2018-11-14 17:14:10,818 WARN L170 areAnnotationChecker]: L351 has no Hoare annotation [2018-11-14 17:14:10,818 WARN L170 areAnnotationChecker]: L351 has no Hoare annotation [2018-11-14 17:14:10,818 WARN L170 areAnnotationChecker]: L355 has no Hoare annotation [2018-11-14 17:14:10,818 WARN L170 areAnnotationChecker]: L355 has no Hoare annotation [2018-11-14 17:14:10,818 WARN L170 areAnnotationChecker]: L739-1 has no Hoare annotation [2018-11-14 17:14:10,818 WARN L170 areAnnotationChecker]: IofCallDriverEXIT has no Hoare annotation [2018-11-14 17:14:10,818 WARN L170 areAnnotationChecker]: IofCallDriverEXIT has no Hoare annotation [2018-11-14 17:14:10,818 WARN L170 areAnnotationChecker]: IofCallDriverEXIT has no Hoare annotation [2018-11-14 17:14:10,819 WARN L170 areAnnotationChecker]: IofCallDriverEXIT has no Hoare annotation [2018-11-14 17:14:10,819 WARN L170 areAnnotationChecker]: IofCallDriverEXIT has no Hoare annotation [2018-11-14 17:14:10,819 WARN L170 areAnnotationChecker]: PoCallDriverEXIT has no Hoare annotation [2018-11-14 17:14:10,819 WARN L170 areAnnotationChecker]: L603 has no Hoare annotation [2018-11-14 17:14:10,819 WARN L170 areAnnotationChecker]: L605 has no Hoare annotation [2018-11-14 17:14:10,819 WARN L170 areAnnotationChecker]: L191-1 has no Hoare annotation [2018-11-14 17:14:10,819 WARN L170 areAnnotationChecker]: L230-1 has no Hoare annotation [2018-11-14 17:14:10,819 WARN L170 areAnnotationChecker]: L246-1 has no Hoare annotation [2018-11-14 17:14:10,819 WARN L170 areAnnotationChecker]: L261-1 has no Hoare annotation [2018-11-14 17:14:10,819 WARN L170 areAnnotationChecker]: L420 has no Hoare annotation [2018-11-14 17:14:10,820 WARN L170 areAnnotationChecker]: L420 has no Hoare annotation [2018-11-14 17:14:10,820 WARN L170 areAnnotationChecker]: L426 has no Hoare annotation [2018-11-14 17:14:10,820 WARN L170 areAnnotationChecker]: L426 has no Hoare annotation [2018-11-14 17:14:10,820 WARN L170 areAnnotationChecker]: L496 has no Hoare annotation [2018-11-14 17:14:10,820 WARN L170 areAnnotationChecker]: L496 has no Hoare annotation [2018-11-14 17:14:10,820 WARN L170 areAnnotationChecker]: L523 has no Hoare annotation [2018-11-14 17:14:10,820 WARN L170 areAnnotationChecker]: L523 has no Hoare annotation [2018-11-14 17:14:10,820 WARN L170 areAnnotationChecker]: L509 has no Hoare annotation [2018-11-14 17:14:10,820 WARN L170 areAnnotationChecker]: L511 has no Hoare annotation [2018-11-14 17:14:10,820 WARN L170 areAnnotationChecker]: L761 has no Hoare annotation [2018-11-14 17:14:10,820 WARN L170 areAnnotationChecker]: L761 has no Hoare annotation [2018-11-14 17:14:10,821 WARN L170 areAnnotationChecker]: L788 has no Hoare annotation [2018-11-14 17:14:10,821 WARN L170 areAnnotationChecker]: L788 has no Hoare annotation [2018-11-14 17:14:10,821 WARN L170 areAnnotationChecker]: L774 has no Hoare annotation [2018-11-14 17:14:10,821 WARN L170 areAnnotationChecker]: L776 has no Hoare annotation [2018-11-14 17:14:10,821 WARN L170 areAnnotationChecker]: L659-1 has no Hoare annotation [2018-11-14 17:14:10,821 WARN L170 areAnnotationChecker]: L1002-1 has no Hoare annotation [2018-11-14 17:14:10,821 WARN L170 areAnnotationChecker]: L955 has no Hoare annotation [2018-11-14 17:14:10,821 WARN L170 areAnnotationChecker]: L955 has no Hoare annotation [2018-11-14 17:14:10,821 WARN L170 areAnnotationChecker]: L902 has no Hoare annotation [2018-11-14 17:14:10,821 WARN L170 areAnnotationChecker]: L902 has no Hoare annotation [2018-11-14 17:14:10,822 WARN L170 areAnnotationChecker]: KbFilter_InternIoCtlFINAL has no Hoare annotation [2018-11-14 17:14:10,822 WARN L170 areAnnotationChecker]: KbFilter_PnPFINAL has no Hoare annotation [2018-11-14 17:14:10,822 WARN L170 areAnnotationChecker]: KbFilter_DispatchPassThroughFINAL has no Hoare annotation [2018-11-14 17:14:10,822 WARN L170 areAnnotationChecker]: L181 has no Hoare annotation [2018-11-14 17:14:10,822 WARN L170 areAnnotationChecker]: L181 has no Hoare annotation [2018-11-14 17:14:10,822 WARN L170 areAnnotationChecker]: L224 has no Hoare annotation [2018-11-14 17:14:10,822 WARN L170 areAnnotationChecker]: L224 has no Hoare annotation [2018-11-14 17:14:10,822 WARN L170 areAnnotationChecker]: L236 has no Hoare annotation [2018-11-14 17:14:10,822 WARN L170 areAnnotationChecker]: L236 has no Hoare annotation [2018-11-14 17:14:10,822 WARN L170 areAnnotationChecker]: L168 has no Hoare annotation [2018-11-14 17:14:10,823 WARN L170 areAnnotationChecker]: L168 has no Hoare annotation [2018-11-14 17:14:10,823 WARN L170 areAnnotationChecker]: L117 has no Hoare annotation [2018-11-14 17:14:10,823 WARN L170 areAnnotationChecker]: L117 has no Hoare annotation [2018-11-14 17:14:10,823 WARN L170 areAnnotationChecker]: L377 has no Hoare annotation [2018-11-14 17:14:10,823 WARN L170 areAnnotationChecker]: L356 has no Hoare annotation [2018-11-14 17:14:10,823 WARN L170 areAnnotationChecker]: L356 has no Hoare annotation [2018-11-14 17:14:10,823 WARN L170 areAnnotationChecker]: L360 has no Hoare annotation [2018-11-14 17:14:10,823 WARN L170 areAnnotationChecker]: L360 has no Hoare annotation [2018-11-14 17:14:10,823 WARN L170 areAnnotationChecker]: KbFilter_PowerFINAL has no Hoare annotation [2018-11-14 17:14:10,823 WARN L170 areAnnotationChecker]: KeWaitForSingleObjectFINAL has no Hoare annotation [2018-11-14 17:14:10,824 WARN L170 areAnnotationChecker]: L196 has no Hoare annotation [2018-11-14 17:14:10,824 WARN L170 areAnnotationChecker]: L196 has no Hoare annotation [2018-11-14 17:14:10,824 WARN L170 areAnnotationChecker]: L428 has no Hoare annotation [2018-11-14 17:14:10,824 WARN L170 areAnnotationChecker]: L428 has no Hoare annotation [2018-11-14 17:14:10,824 WARN L170 areAnnotationChecker]: L531 has no Hoare annotation [2018-11-14 17:14:10,824 WARN L170 areAnnotationChecker]: L531 has no Hoare annotation [2018-11-14 17:14:10,824 WARN L170 areAnnotationChecker]: L796 has no Hoare annotation [2018-11-14 17:14:10,824 WARN L170 areAnnotationChecker]: L796 has no Hoare annotation [2018-11-14 17:14:10,824 WARN L170 areAnnotationChecker]: KbFilter_CreateCloseFINAL has no Hoare annotation [2018-11-14 17:14:10,825 WARN L170 areAnnotationChecker]: L955-2 has no Hoare annotation [2018-11-14 17:14:10,825 WARN L170 areAnnotationChecker]: L955-2 has no Hoare annotation [2018-11-14 17:14:10,825 WARN L170 areAnnotationChecker]: L909 has no Hoare annotation [2018-11-14 17:14:10,825 WARN L170 areAnnotationChecker]: L909 has no Hoare annotation [2018-11-14 17:14:10,825 WARN L170 areAnnotationChecker]: KbFilter_InternIoCtlEXIT has no Hoare annotation [2018-11-14 17:14:10,825 WARN L170 areAnnotationChecker]: KbFilter_PnPEXIT has no Hoare annotation [2018-11-14 17:14:10,825 WARN L170 areAnnotationChecker]: KbFilter_DispatchPassThroughEXIT has no Hoare annotation [2018-11-14 17:14:10,825 WARN L170 areAnnotationChecker]: KbFilter_DispatchPassThroughEXIT has no Hoare annotation [2018-11-14 17:14:10,825 WARN L170 areAnnotationChecker]: L240 has no Hoare annotation [2018-11-14 17:14:10,825 WARN L170 areAnnotationChecker]: L240 has no Hoare annotation [2018-11-14 17:14:10,825 WARN L170 areAnnotationChecker]: L255 has no Hoare annotation [2018-11-14 17:14:10,825 WARN L170 areAnnotationChecker]: L255 has no Hoare annotation [2018-11-14 17:14:10,826 WARN L170 areAnnotationChecker]: L120 has no Hoare annotation [2018-11-14 17:14:10,826 WARN L170 areAnnotationChecker]: L120 has no Hoare annotation [2018-11-14 17:14:10,826 WARN L170 areAnnotationChecker]: L382 has no Hoare annotation [2018-11-14 17:14:10,826 WARN L170 areAnnotationChecker]: L361 has no Hoare annotation [2018-11-14 17:14:10,826 WARN L170 areAnnotationChecker]: L361 has no Hoare annotation [2018-11-14 17:14:10,826 WARN L170 areAnnotationChecker]: L365 has no Hoare annotation [2018-11-14 17:14:10,826 WARN L170 areAnnotationChecker]: L365 has no Hoare annotation [2018-11-14 17:14:10,826 WARN L170 areAnnotationChecker]: KbFilter_PowerEXIT has no Hoare annotation [2018-11-14 17:14:10,826 WARN L170 areAnnotationChecker]: KeWaitForSingleObjectEXIT has no Hoare annotation [2018-11-14 17:14:10,826 WARN L170 areAnnotationChecker]: L198 has no Hoare annotation [2018-11-14 17:14:10,826 WARN L170 areAnnotationChecker]: L198 has no Hoare annotation [2018-11-14 17:14:10,827 WARN L170 areAnnotationChecker]: L196-2 has no Hoare annotation [2018-11-14 17:14:10,827 WARN L170 areAnnotationChecker]: L196-2 has no Hoare annotation [2018-11-14 17:14:10,827 WARN L170 areAnnotationChecker]: L429 has no Hoare annotation [2018-11-14 17:14:10,827 WARN L170 areAnnotationChecker]: L429 has no Hoare annotation [2018-11-14 17:14:10,827 WARN L170 areAnnotationChecker]: L532 has no Hoare annotation [2018-11-14 17:14:10,827 WARN L170 areAnnotationChecker]: L532 has no Hoare annotation [2018-11-14 17:14:10,827 WARN L170 areAnnotationChecker]: L540 has no Hoare annotation [2018-11-14 17:14:10,827 WARN L170 areAnnotationChecker]: L540 has no Hoare annotation [2018-11-14 17:14:10,827 WARN L170 areAnnotationChecker]: L799 has no Hoare annotation [2018-11-14 17:14:10,827 WARN L170 areAnnotationChecker]: L799 has no Hoare annotation [2018-11-14 17:14:10,828 WARN L170 areAnnotationChecker]: L808 has no Hoare annotation [2018-11-14 17:14:10,828 WARN L170 areAnnotationChecker]: L808 has no Hoare annotation [2018-11-14 17:14:10,828 WARN L170 areAnnotationChecker]: KbFilter_CreateCloseEXIT has no Hoare annotation [2018-11-14 17:14:10,828 WARN L170 areAnnotationChecker]: KbFilter_CreateCloseEXIT has no Hoare annotation [2018-11-14 17:14:10,828 WARN L170 areAnnotationChecker]: L958-1 has no Hoare annotation [2018-11-14 17:14:10,828 WARN L170 areAnnotationChecker]: L916 has no Hoare annotation [2018-11-14 17:14:10,828 WARN L170 areAnnotationChecker]: L916 has no Hoare annotation [2018-11-14 17:14:10,828 WARN L170 areAnnotationChecker]: L397 has no Hoare annotation [2018-11-14 17:14:10,828 WARN L170 areAnnotationChecker]: L387 has no Hoare annotation [2018-11-14 17:14:10,828 WARN L170 areAnnotationChecker]: L123 has no Hoare annotation [2018-11-14 17:14:10,828 WARN L170 areAnnotationChecker]: L123 has no Hoare annotation [2018-11-14 17:14:10,829 WARN L170 areAnnotationChecker]: L366 has no Hoare annotation [2018-11-14 17:14:10,829 WARN L170 areAnnotationChecker]: L366 has no Hoare annotation [2018-11-14 17:14:10,829 WARN L170 areAnnotationChecker]: L370 has no Hoare annotation [2018-11-14 17:14:10,829 WARN L170 areAnnotationChecker]: L370 has no Hoare annotation [2018-11-14 17:14:10,829 WARN L170 areAnnotationChecker]: L392 has no Hoare annotation [2018-11-14 17:14:10,829 WARN L170 areAnnotationChecker]: L198-1 has no Hoare annotation [2018-11-14 17:14:10,829 WARN L170 areAnnotationChecker]: L205 has no Hoare annotation [2018-11-14 17:14:10,829 WARN L170 areAnnotationChecker]: L205 has no Hoare annotation [2018-11-14 17:14:10,829 WARN L170 areAnnotationChecker]: L204 has no Hoare annotation [2018-11-14 17:14:10,829 WARN L170 areAnnotationChecker]: L430 has no Hoare annotation [2018-11-14 17:14:10,829 WARN L170 areAnnotationChecker]: L430 has no Hoare annotation [2018-11-14 17:14:10,830 WARN L170 areAnnotationChecker]: L438 has no Hoare annotation [2018-11-14 17:14:10,830 WARN L170 areAnnotationChecker]: L438 has no Hoare annotation [2018-11-14 17:14:10,830 WARN L170 areAnnotationChecker]: L545 has no Hoare annotation [2018-11-14 17:14:10,830 WARN L170 areAnnotationChecker]: L545 has no Hoare annotation [2018-11-14 17:14:10,830 WARN L170 areAnnotationChecker]: L813 has no Hoare annotation [2018-11-14 17:14:10,830 WARN L170 areAnnotationChecker]: L813 has no Hoare annotation [2018-11-14 17:14:10,830 WARN L170 areAnnotationChecker]: L923 has no Hoare annotation [2018-11-14 17:14:10,830 WARN L170 areAnnotationChecker]: L923 has no Hoare annotation [2018-11-14 17:14:10,830 WARN L170 areAnnotationChecker]: L126 has no Hoare annotation [2018-11-14 17:14:10,830 WARN L170 areAnnotationChecker]: L126 has no Hoare annotation [2018-11-14 17:14:10,830 WARN L170 areAnnotationChecker]: L371 has no Hoare annotation [2018-11-14 17:14:10,831 WARN L170 areAnnotationChecker]: L371 has no Hoare annotation [2018-11-14 17:14:10,831 WARN L170 areAnnotationChecker]: L373 has no Hoare annotation [2018-11-14 17:14:10,831 WARN L170 areAnnotationChecker]: L215 has no Hoare annotation [2018-11-14 17:14:10,831 WARN L170 areAnnotationChecker]: L215 has no Hoare annotation [2018-11-14 17:14:10,831 WARN L170 areAnnotationChecker]: L431 has no Hoare annotation [2018-11-14 17:14:10,831 WARN L170 areAnnotationChecker]: L431 has no Hoare annotation [2018-11-14 17:14:10,831 WARN L170 areAnnotationChecker]: L440 has no Hoare annotation [2018-11-14 17:14:10,831 WARN L170 areAnnotationChecker]: L440 has no Hoare annotation [2018-11-14 17:14:10,831 WARN L170 areAnnotationChecker]: L446 has no Hoare annotation [2018-11-14 17:14:10,831 WARN L170 areAnnotationChecker]: L446 has no Hoare annotation [2018-11-14 17:14:10,832 WARN L170 areAnnotationChecker]: L930 has no Hoare annotation [2018-11-14 17:14:10,832 WARN L170 areAnnotationChecker]: L930 has no Hoare annotation [2018-11-14 17:14:10,832 WARN L170 areAnnotationChecker]: L129 has no Hoare annotation [2018-11-14 17:14:10,832 WARN L170 areAnnotationChecker]: L129 has no Hoare annotation [2018-11-14 17:14:10,832 WARN L170 areAnnotationChecker]: L442 has no Hoare annotation [2018-11-14 17:14:10,832 WARN L170 areAnnotationChecker]: L442 has no Hoare annotation [2018-11-14 17:14:10,832 WARN L170 areAnnotationChecker]: L447 has no Hoare annotation [2018-11-14 17:14:10,832 WARN L170 areAnnotationChecker]: L447 has no Hoare annotation [2018-11-14 17:14:10,832 WARN L170 areAnnotationChecker]: L451 has no Hoare annotation [2018-11-14 17:14:10,832 WARN L170 areAnnotationChecker]: L451 has no Hoare annotation [2018-11-14 17:14:10,833 WARN L170 areAnnotationChecker]: L933 has no Hoare annotation [2018-11-14 17:14:10,833 WARN L170 areAnnotationChecker]: L933 has no Hoare annotation [2018-11-14 17:14:10,833 WARN L170 areAnnotationChecker]: L132 has no Hoare annotation [2018-11-14 17:14:10,833 WARN L170 areAnnotationChecker]: L132 has no Hoare annotation [2018-11-14 17:14:10,833 WARN L170 areAnnotationChecker]: L452 has no Hoare annotation [2018-11-14 17:14:10,833 WARN L170 areAnnotationChecker]: L452 has no Hoare annotation [2018-11-14 17:14:10,833 WARN L170 areAnnotationChecker]: L135 has no Hoare annotation [2018-11-14 17:14:10,833 WARN L170 areAnnotationChecker]: L135 has no Hoare annotation [2018-11-14 17:14:10,833 WARN L170 areAnnotationChecker]: L138 has no Hoare annotation [2018-11-14 17:14:10,834 WARN L170 areAnnotationChecker]: L138 has no Hoare annotation [2018-11-14 17:14:10,834 WARN L170 areAnnotationChecker]: L141 has no Hoare annotation [2018-11-14 17:14:10,834 WARN L170 areAnnotationChecker]: L141 has no Hoare annotation [2018-11-14 17:14:10,834 WARN L170 areAnnotationChecker]: L144 has no Hoare annotation [2018-11-14 17:14:10,834 WARN L170 areAnnotationChecker]: L144 has no Hoare annotation [2018-11-14 17:14:10,834 WARN L170 areAnnotationChecker]: L147 has no Hoare annotation [2018-11-14 17:14:10,834 WARN L170 areAnnotationChecker]: L147 has no Hoare annotation [2018-11-14 17:14:10,834 WARN L170 areAnnotationChecker]: L150 has no Hoare annotation [2018-11-14 17:14:10,834 WARN L170 areAnnotationChecker]: L150 has no Hoare annotation [2018-11-14 17:14:10,834 WARN L170 areAnnotationChecker]: L153 has no Hoare annotation [2018-11-14 17:14:10,834 WARN L170 areAnnotationChecker]: L153 has no Hoare annotation [2018-11-14 17:14:10,835 WARN L170 areAnnotationChecker]: L156 has no Hoare annotation [2018-11-14 17:14:10,835 WARN L170 areAnnotationChecker]: L156 has no Hoare annotation [2018-11-14 17:14:10,835 WARN L170 areAnnotationChecker]: L159 has no Hoare annotation [2018-11-14 17:14:10,835 WARN L170 areAnnotationChecker]: L159 has no Hoare annotation [2018-11-14 17:14:10,835 WARN L170 areAnnotationChecker]: L162 has no Hoare annotation [2018-11-14 17:14:10,835 WARN L170 areAnnotationChecker]: L162 has no Hoare annotation [2018-11-14 17:14:10,835 WARN L170 areAnnotationChecker]: L165 has no Hoare annotation [2018-11-14 17:14:10,835 WARN L170 areAnnotationChecker]: L165 has no Hoare annotation [2018-11-14 17:14:10,835 INFO L163 areAnnotationChecker]: CFG has 0 edges. 0 inductive. 0 not inductive. 0 times theorem prover too weak to decide inductivity. 0 times interpolants missing. [2018-11-14 17:14:10,839 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 14.11 05:14:10 BoogieIcfgContainer [2018-11-14 17:14:10,839 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2018-11-14 17:14:10,840 INFO L168 Benchmark]: Toolchain (without parser) took 58918.13 ms. Allocated memory was 1.5 GB in the beginning and 2.8 GB in the end (delta: 1.2 GB). Free memory was 1.4 GB in the beginning and 1.8 GB in the end (delta: -335.8 MB). Peak memory consumption was 901.5 MB. Max. memory is 7.1 GB. [2018-11-14 17:14:10,842 INFO L168 Benchmark]: CDTParser took 0.19 ms. Allocated memory is still 1.5 GB. Free memory is still 1.5 GB. There was no memory consumed. Max. memory is 7.1 GB. [2018-11-14 17:14:10,842 INFO L168 Benchmark]: CACSL2BoogieTranslator took 661.37 ms. Allocated memory is still 1.5 GB. Free memory was 1.4 GB in the beginning and 1.4 GB in the end (delta: 21.1 MB). Peak memory consumption was 21.1 MB. Max. memory is 7.1 GB. [2018-11-14 17:14:10,843 INFO L168 Benchmark]: Boogie Preprocessor took 185.31 ms. Allocated memory was 1.5 GB in the beginning and 2.3 GB in the end (delta: 749.2 MB). Free memory was 1.4 GB in the beginning and 2.2 GB in the end (delta: -817.6 MB). Peak memory consumption was 16.1 MB. Max. memory is 7.1 GB. [2018-11-14 17:14:10,844 INFO L168 Benchmark]: RCFGBuilder took 2614.47 ms. Allocated memory is still 2.3 GB. Free memory was 2.2 GB in the beginning and 2.1 GB in the end (delta: 131.5 MB). Peak memory consumption was 131.5 MB. Max. memory is 7.1 GB. [2018-11-14 17:14:10,844 INFO L168 Benchmark]: TraceAbstraction took 55451.48 ms. Allocated memory was 2.3 GB in the beginning and 2.8 GB in the end (delta: 488.1 MB). Free memory was 2.1 GB in the beginning and 1.8 GB in the end (delta: 329.2 MB). Peak memory consumption was 817.3 MB. Max. memory is 7.1 GB. [2018-11-14 17:14:10,848 INFO L336 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - GenericResult: Assertions are enabled Assertions are enabled - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.19 ms. Allocated memory is still 1.5 GB. Free memory is still 1.5 GB. There was no memory consumed. Max. memory is 7.1 GB. * CACSL2BoogieTranslator took 661.37 ms. Allocated memory is still 1.5 GB. Free memory was 1.4 GB in the beginning and 1.4 GB in the end (delta: 21.1 MB). Peak memory consumption was 21.1 MB. Max. memory is 7.1 GB. * Boogie Preprocessor took 185.31 ms. Allocated memory was 1.5 GB in the beginning and 2.3 GB in the end (delta: 749.2 MB). Free memory was 1.4 GB in the beginning and 2.2 GB in the end (delta: -817.6 MB). Peak memory consumption was 16.1 MB. Max. memory is 7.1 GB. * RCFGBuilder took 2614.47 ms. Allocated memory is still 2.3 GB. Free memory was 2.2 GB in the beginning and 2.1 GB in the end (delta: 131.5 MB). Peak memory consumption was 131.5 MB. Max. memory is 7.1 GB. * TraceAbstraction took 55451.48 ms. Allocated memory was 2.3 GB in the beginning and 2.8 GB in the end (delta: 488.1 MB). Free memory was 2.1 GB in the beginning and 1.8 GB in the end (delta: 329.2 MB). Peak memory consumption was 817.3 MB. Max. memory is 7.1 GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - CounterExampleResult [Line: 1012]: a call of __VERIFIER_error() is reachable a call of __VERIFIER_error() is reachable We found a FailurePath: [L22] int KernelMode ; [L23] int Executive ; [L24] int DevicePowerState ; [L25] int s ; [L26] int UNLOADED ; [L27] int NP ; [L28] int DC ; [L29] int SKIP1 ; [L30] int SKIP2 ; [L31] int MPR1 ; [L32] int MPR3 ; [L33] int IPC ; [L34] int pended ; [L35] int compFptr ; [L36] int compRegistered ; [L37] int lowerDriverReturn ; [L38] int setEventCalled ; [L39] int customIrp ; [L40] int myStatus ; VAL [\old(compFptr)=19, \old(compRegistered)=11, \old(customIrp)=14, \old(DC)=7, \old(DevicePowerState)=20, \old(Executive)=12, \old(IPC)=8, \old(KernelMode)=24, \old(lowerDriverReturn)=22, \old(MPR1)=18, \old(MPR3)=16, \old(myStatus)=21, \old(NP)=13, \old(pended)=23, \old(s)=9, \old(setEventCalled)=17, \old(SKIP1)=15, \old(SKIP2)=10, \old(UNLOADED)=6, compFptr=0, compRegistered=0, customIrp=0, DC=0, DevicePowerState=0, Executive=0, IPC=0, KernelMode=0, lowerDriverReturn=0, MPR1=0, MPR3=0, myStatus=0, NP=0, pended=0, s=0, setEventCalled=0, SKIP1=0, SKIP2=0, UNLOADED=0] [L293] int status ; [L294] int irp = __VERIFIER_nondet_int() ; [L295] int pirp ; [L296] int pirp__IoStatus__Status ; [L297] int irp_choice = __VERIFIER_nondet_int() ; [L298] int devobj = __VERIFIER_nondet_int() ; [L299] int __cil_tmp8 ; [L301] KernelMode = 0 [L302] Executive = 0 [L303] DevicePowerState = 1 [L304] s = 0 [L305] UNLOADED = 0 [L306] NP = 0 [L307] DC = 0 [L308] SKIP1 = 0 [L309] SKIP2 = 0 [L310] MPR1 = 0 [L311] MPR3 = 0 [L312] IPC = 0 [L313] pended = 0 [L314] compFptr = 0 [L315] compRegistered = 0 [L316] lowerDriverReturn = 0 [L317] setEventCalled = 0 [L318] customIrp = 0 [L319] myStatus = 0 [L323] status = 0 [L324] pirp = irp VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=0, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=0, DevicePowerState=1, devobj=0, Executive=0, IPC=0, irp=0, irp_choice=1, KernelMode=0, lowerDriverReturn=0, MPR1=0, MPR3=0, myStatus=0, NP=0, pended=0, pirp=0, s=0, setEventCalled=0, SKIP1=0, SKIP2=0, status=0, UNLOADED=0] [L325] CALL _BLAST_init() VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=0, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=0, DevicePowerState=1, Executive=0, IPC=0, KernelMode=0, lowerDriverReturn=0, MPR1=0, MPR3=0, myStatus=0, NP=0, pended=0, s=0, setEventCalled=0, SKIP1=0, SKIP2=0, UNLOADED=0] [L60] UNLOADED = 0 [L61] NP = 1 [L62] DC = 2 [L63] SKIP1 = 3 [L64] SKIP2 = 4 [L65] MPR1 = 5 [L66] MPR3 = 6 [L67] IPC = 7 [L68] s = UNLOADED [L69] pended = 0 [L70] compFptr = 0 [L71] compRegistered = 0 [L72] lowerDriverReturn = 0 [L73] setEventCalled = 0 [L74] RET customIrp = 0 VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=0, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, DevicePowerState=1, Executive=0, IPC=7, KernelMode=0, lowerDriverReturn=0, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, s=0, setEventCalled=0, SKIP1=3, SKIP2=4, UNLOADED=0] [L325] _BLAST_init() VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=0, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, DevicePowerState=1, devobj=0, Executive=0, IPC=7, irp=0, irp_choice=1, KernelMode=0, lowerDriverReturn=0, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, pirp=0, s=0, setEventCalled=0, SKIP1=3, SKIP2=4, status=0, UNLOADED=0] [L327] COND TRUE status >= 0 [L328] s = NP [L329] customIrp = 0 [L330] setEventCalled = customIrp [L331] lowerDriverReturn = setEventCalled [L332] compRegistered = lowerDriverReturn [L333] pended = compRegistered [L334] pirp__IoStatus__Status = 0 [L335] myStatus = 0 VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=0, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, DevicePowerState=1, devobj=0, Executive=0, IPC=7, irp=0, irp_choice=1, KernelMode=0, lowerDriverReturn=0, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, pirp=0, pirp__IoStatus__Status=0, s=1, setEventCalled=0, SKIP1=3, SKIP2=4, status=0, UNLOADED=0] [L336] COND FALSE !(irp_choice == 0) VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=0, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, DevicePowerState=1, devobj=0, Executive=0, IPC=7, irp=0, irp_choice=1, KernelMode=0, lowerDriverReturn=0, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, pirp=0, pirp__IoStatus__Status=0, s=1, setEventCalled=0, SKIP1=3, SKIP2=4, status=0, UNLOADED=0] [L341] CALL stub_driver_init() VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=1, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, DevicePowerState=1, Executive=0, IPC=7, KernelMode=0, lowerDriverReturn=0, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, s=1, setEventCalled=0, SKIP1=3, SKIP2=4, UNLOADED=0] [L46] s = NP [L47] pended = 0 [L48] compFptr = 0 [L49] compRegistered = 0 [L50] lowerDriverReturn = 0 [L51] setEventCalled = 0 [L52] RET customIrp = 0 VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=1, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, DevicePowerState=1, Executive=0, IPC=7, KernelMode=0, lowerDriverReturn=0, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, s=1, setEventCalled=0, SKIP1=3, SKIP2=4, UNLOADED=0] [L341] stub_driver_init() VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=0, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, DevicePowerState=1, devobj=0, Executive=0, IPC=7, irp=0, irp_choice=1, KernelMode=0, lowerDriverReturn=0, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, pirp=0, pirp__IoStatus__Status=0, s=1, setEventCalled=0, SKIP1=3, SKIP2=4, status=0, UNLOADED=0] [L344] COND FALSE !(status < 0) [L348] int tmp_ndt_1; [L349] tmp_ndt_1 = __VERIFIER_nondet_int() [L350] COND FALSE !(tmp_ndt_1 == 0) [L353] int tmp_ndt_2; [L354] tmp_ndt_2 = __VERIFIER_nondet_int() [L355] COND FALSE !(tmp_ndt_2 == 1) [L358] int tmp_ndt_3; [L359] tmp_ndt_3 = __VERIFIER_nondet_int() [L360] COND TRUE tmp_ndt_3 == 3 VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=0, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, DevicePowerState=1, devobj=0, Executive=0, IPC=7, irp=0, irp_choice=1, KernelMode=0, lowerDriverReturn=0, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, pirp=0, pirp__IoStatus__Status=0, s=1, setEventCalled=0, SKIP1=3, SKIP2=4, status=0, tmp_ndt_1=1, tmp_ndt_2=0, tmp_ndt_3=3, UNLOADED=0] [L387] CALL, EXPR KbFilter_PnP(devobj, pirp) VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DeviceObject)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(Irp)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=1, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, DevicePowerState=1, Executive=0, IPC=7, KernelMode=0, lowerDriverReturn=0, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, s=1, setEventCalled=0, SKIP1=3, SKIP2=4, UNLOADED=0] [L79] int devExt ; [L80] int irpStack ; [L81] int status ; [L82] int event = __VERIFIER_nondet_int() ; [L83] int DeviceObject__DeviceExtension = __VERIFIER_nondet_int() ; [L84] int Irp__Tail__Overlay__CurrentStackLocation = __VERIFIER_nondet_int() ; [L85] int irpStack__MinorFunction = __VERIFIER_nondet_int() ; [L86] int devExt__TopOfStack = __VERIFIER_nondet_int() ; [L87] int devExt__Started ; [L88] int devExt__Removed ; [L89] int devExt__SurpriseRemoved ; [L90] int Irp__IoStatus__Status ; [L91] int Irp__IoStatus__Information ; [L92] int Irp__CurrentLocation = __VERIFIER_nondet_int() ; [L93] int irpSp ; [L94] int nextIrpSp ; [L95] int nextIrpSp__Control ; [L96] int irpSp___0 ; [L97] int irpSp__Context ; [L98] int irpSp__Control ; [L99] long __cil_tmp23 ; [L102] status = 0 [L103] devExt = DeviceObject__DeviceExtension [L104] irpStack = Irp__Tail__Overlay__CurrentStackLocation VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DeviceObject)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(Irp)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=1, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, devExt=0, devExt__TopOfStack=0, DeviceObject=0, DeviceObject__DeviceExtension=0, DevicePowerState=1, event=0, Executive=0, IPC=7, Irp=0, Irp__CurrentLocation=0, Irp__Tail__Overlay__CurrentStackLocation=0, irpStack=0, irpStack__MinorFunction=2, KernelMode=0, lowerDriverReturn=0, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, s=1, setEventCalled=0, SKIP1=3, SKIP2=4, status=0, UNLOADED=0] [L105] COND FALSE !(irpStack__MinorFunction == 0) VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DeviceObject)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(Irp)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=1, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, devExt=0, devExt__TopOfStack=0, DeviceObject=0, DeviceObject__DeviceExtension=0, DevicePowerState=1, event=0, Executive=0, IPC=7, Irp=0, Irp__CurrentLocation=0, Irp__Tail__Overlay__CurrentStackLocation=0, irpStack=0, irpStack__MinorFunction=2, KernelMode=0, lowerDriverReturn=0, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, s=1, setEventCalled=0, SKIP1=3, SKIP2=4, status=0, UNLOADED=0] [L108] COND FALSE !(irpStack__MinorFunction == 23) VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DeviceObject)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(Irp)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=1, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, devExt=0, devExt__TopOfStack=0, DeviceObject=0, DeviceObject__DeviceExtension=0, DevicePowerState=1, event=0, Executive=0, IPC=7, Irp=0, Irp__CurrentLocation=0, Irp__Tail__Overlay__CurrentStackLocation=0, irpStack=0, irpStack__MinorFunction=2, KernelMode=0, lowerDriverReturn=0, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, s=1, setEventCalled=0, SKIP1=3, SKIP2=4, status=0, UNLOADED=0] [L111] COND TRUE irpStack__MinorFunction == 2 VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DeviceObject)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(Irp)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=1, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, devExt=0, devExt__TopOfStack=0, DeviceObject=0, DeviceObject__DeviceExtension=0, DevicePowerState=1, event=0, Executive=0, IPC=7, Irp=0, Irp__CurrentLocation=0, Irp__Tail__Overlay__CurrentStackLocation=0, irpStack=0, irpStack__MinorFunction=2, KernelMode=0, lowerDriverReturn=0, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, s=1, setEventCalled=0, SKIP1=3, SKIP2=4, status=0, UNLOADED=0] [L235] devExt__Removed = 1 VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DeviceObject)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(Irp)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=1, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, devExt=0, devExt__Removed=1, devExt__TopOfStack=0, DeviceObject=0, DeviceObject__DeviceExtension=0, DevicePowerState=1, event=0, Executive=0, IPC=7, Irp=0, Irp__CurrentLocation=0, Irp__Tail__Overlay__CurrentStackLocation=0, irpStack=0, irpStack__MinorFunction=2, KernelMode=0, lowerDriverReturn=0, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, s=1, setEventCalled=0, SKIP1=3, SKIP2=4, status=0, UNLOADED=0] [L236] COND TRUE s == NP [L237] s = SKIP1 VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DeviceObject)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(Irp)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=1, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, devExt=0, devExt__Removed=1, devExt__TopOfStack=0, DeviceObject=0, DeviceObject__DeviceExtension=0, DevicePowerState=1, event=0, Executive=0, IPC=7, Irp=0, Irp__CurrentLocation=0, Irp__Tail__Overlay__CurrentStackLocation=0, irpStack=0, irpStack__MinorFunction=2, KernelMode=0, lowerDriverReturn=0, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, s=3, setEventCalled=0, SKIP1=3, SKIP2=4, status=0, UNLOADED=0] [L244] Irp__CurrentLocation ++ [L245] Irp__Tail__Overlay__CurrentStackLocation ++ VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DeviceObject)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(Irp)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=1, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, devExt=0, devExt__Removed=1, devExt__TopOfStack=0, DeviceObject=0, DeviceObject__DeviceExtension=0, DevicePowerState=1, event=0, Executive=0, IPC=7, Irp=0, Irp__CurrentLocation=1, Irp__Tail__Overlay__CurrentStackLocation=1, irpStack=0, irpStack__MinorFunction=2, KernelMode=0, lowerDriverReturn=0, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, s=3, setEventCalled=0, SKIP1=3, SKIP2=4, status=0, UNLOADED=0] [L246] CALL IofCallDriver(devExt__TopOfStack, Irp) VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DeviceObject)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(Irp)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=3, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, DevicePowerState=1, Executive=0, IPC=7, KernelMode=0, lowerDriverReturn=0, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, s=3, setEventCalled=0, SKIP1=3, SKIP2=4, UNLOADED=0] [L482] int returnVal2 ; [L483] int compRetStatus ; [L484] int lcontext = __VERIFIER_nondet_int() ; [L485] long long __cil_tmp7 ; VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DeviceObject)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(Irp)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=3, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, DeviceObject=0, DevicePowerState=1, Executive=0, IPC=7, Irp=0, KernelMode=0, lcontext=0, lowerDriverReturn=0, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, s=3, setEventCalled=0, SKIP1=3, SKIP2=4, UNLOADED=0] [L488] COND FALSE !(\read(compRegistered)) VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DeviceObject)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(Irp)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=3, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, DeviceObject=0, DevicePowerState=1, Executive=0, IPC=7, Irp=0, KernelMode=0, lcontext=0, lowerDriverReturn=0, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, s=3, setEventCalled=0, SKIP1=3, SKIP2=4, UNLOADED=0] [L501] int tmp_ndt_6; [L502] tmp_ndt_6 = __VERIFIER_nondet_int() [L503] COND FALSE !(tmp_ndt_6 == 0) [L506] int tmp_ndt_7; [L507] tmp_ndt_7 = __VERIFIER_nondet_int() [L508] COND TRUE tmp_ndt_7 == 1 VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DeviceObject)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(Irp)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=3, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, DeviceObject=0, DevicePowerState=1, Executive=0, IPC=7, Irp=0, KernelMode=0, lcontext=0, lowerDriverReturn=0, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, s=3, setEventCalled=0, SKIP1=3, SKIP2=4, tmp_ndt_6=1, tmp_ndt_7=1, UNLOADED=0] [L517] returnVal2 = -1073741823 VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DeviceObject)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(Irp)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=3, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, DeviceObject=0, DevicePowerState=1, Executive=0, IPC=7, Irp=0, KernelMode=0, lcontext=0, lowerDriverReturn=0, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, returnVal2=-1073741823, s=3, setEventCalled=0, SKIP1=3, SKIP2=4, tmp_ndt_6=1, tmp_ndt_7=1, UNLOADED=0] [L527] COND FALSE !(s == NP) VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DeviceObject)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(Irp)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=3, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, DeviceObject=0, DevicePowerState=1, Executive=0, IPC=7, Irp=0, KernelMode=0, lcontext=0, lowerDriverReturn=0, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, returnVal2=-1073741823, s=3, setEventCalled=0, SKIP1=3, SKIP2=4, tmp_ndt_6=1, tmp_ndt_7=1, UNLOADED=0] [L531] COND FALSE !(s == MPR1) VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DeviceObject)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(Irp)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=3, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, DeviceObject=0, DevicePowerState=1, Executive=0, IPC=7, Irp=0, KernelMode=0, lcontext=0, lowerDriverReturn=0, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, returnVal2=-1073741823, s=3, setEventCalled=0, SKIP1=3, SKIP2=4, tmp_ndt_6=1, tmp_ndt_7=1, UNLOADED=0] [L540] COND TRUE s == SKIP1 [L541] s = SKIP2 [L542] lowerDriverReturn = returnVal2 VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DeviceObject)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(Irp)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=3, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, DeviceObject=0, DevicePowerState=1, Executive=0, IPC=7, Irp=0, KernelMode=0, lcontext=0, lowerDriverReturn=-1073741823, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, returnVal2=-1073741823, s=4, setEventCalled=0, SKIP1=3, SKIP2=4, tmp_ndt_6=1, tmp_ndt_7=1, UNLOADED=0] [L550] RET return (returnVal2); VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DeviceObject)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(Irp)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=3, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, \result=-1073741823, compFptr=0, compRegistered=0, customIrp=0, DC=2, DeviceObject=0, DevicePowerState=1, Executive=0, IPC=7, Irp=0, KernelMode=0, lcontext=0, lowerDriverReturn=-1073741823, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, returnVal2=-1073741823, s=4, setEventCalled=0, SKIP1=3, SKIP2=4, tmp_ndt_6=1, tmp_ndt_7=1, UNLOADED=0] [L246] IofCallDriver(devExt__TopOfStack, Irp) VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DeviceObject)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(Irp)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=1, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, devExt=0, devExt__Removed=1, devExt__TopOfStack=0, DeviceObject=0, DeviceObject__DeviceExtension=0, DevicePowerState=1, event=0, Executive=0, IofCallDriver(devExt__TopOfStack, Irp)=-1073741823, IPC=7, Irp=0, Irp__CurrentLocation=1, Irp__Tail__Overlay__CurrentStackLocation=1, irpStack=0, irpStack__MinorFunction=2, KernelMode=0, lowerDriverReturn=-1073741823, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, s=4, setEventCalled=0, SKIP1=3, SKIP2=4, status=0, UNLOADED=0] [L247] status = 0 VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DeviceObject)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(Irp)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=1, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, devExt=0, devExt__Removed=1, devExt__TopOfStack=0, DeviceObject=0, DeviceObject__DeviceExtension=0, DevicePowerState=1, event=0, Executive=0, IPC=7, Irp=0, Irp__CurrentLocation=1, Irp__Tail__Overlay__CurrentStackLocation=1, irpStack=0, irpStack__MinorFunction=2, KernelMode=0, lowerDriverReturn=-1073741823, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, s=4, setEventCalled=0, SKIP1=3, SKIP2=4, status=0, UNLOADED=0] [L289] RET return (status); VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DeviceObject)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(Irp)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=1, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, \result=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, devExt=0, devExt__Removed=1, devExt__TopOfStack=0, DeviceObject=0, DeviceObject__DeviceExtension=0, DevicePowerState=1, event=0, Executive=0, IPC=7, Irp=0, Irp__CurrentLocation=1, Irp__Tail__Overlay__CurrentStackLocation=1, irpStack=0, irpStack__MinorFunction=2, KernelMode=0, lowerDriverReturn=-1073741823, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, s=4, setEventCalled=0, SKIP1=3, SKIP2=4, status=0, UNLOADED=0] [L387] EXPR KbFilter_PnP(devobj, pirp) VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=0, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, DevicePowerState=1, devobj=0, Executive=0, IPC=7, irp=0, irp_choice=1, KbFilter_PnP(devobj, pirp)=0, KernelMode=0, lowerDriverReturn=-1073741823, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, pirp=0, pirp__IoStatus__Status=0, s=4, setEventCalled=0, SKIP1=3, SKIP2=4, status=0, tmp_ndt_1=1, tmp_ndt_2=0, tmp_ndt_3=3, UNLOADED=0] [L387] status = KbFilter_PnP(devobj, pirp) [L411] COND FALSE !(pended == 1) VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=0, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, DevicePowerState=1, devobj=0, Executive=0, IPC=7, irp=0, irp_choice=1, KernelMode=0, lowerDriverReturn=-1073741823, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, pirp=0, pirp__IoStatus__Status=0, s=4, setEventCalled=0, SKIP1=3, SKIP2=4, status=0, tmp_ndt_1=1, tmp_ndt_2=0, tmp_ndt_3=3, UNLOADED=0] [L419] COND FALSE !(pended == 1) VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=0, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, DevicePowerState=1, devobj=0, Executive=0, IPC=7, irp=0, irp_choice=1, KernelMode=0, lowerDriverReturn=-1073741823, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, pirp=0, pirp__IoStatus__Status=0, s=4, setEventCalled=0, SKIP1=3, SKIP2=4, status=0, tmp_ndt_1=1, tmp_ndt_2=0, tmp_ndt_3=3, UNLOADED=0] [L427] COND TRUE s != UNLOADED VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=0, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, DevicePowerState=1, devobj=0, Executive=0, IPC=7, irp=0, irp_choice=1, KernelMode=0, lowerDriverReturn=-1073741823, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, pirp=0, pirp__IoStatus__Status=0, s=4, setEventCalled=0, SKIP1=3, SKIP2=4, status=0, tmp_ndt_1=1, tmp_ndt_2=0, tmp_ndt_3=3, UNLOADED=0] [L428] COND TRUE status != -1 VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=0, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, DevicePowerState=1, devobj=0, Executive=0, IPC=7, irp=0, irp_choice=1, KernelMode=0, lowerDriverReturn=-1073741823, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, pirp=0, pirp__IoStatus__Status=0, s=4, setEventCalled=0, SKIP1=3, SKIP2=4, status=0, tmp_ndt_1=1, tmp_ndt_2=0, tmp_ndt_3=3, UNLOADED=0] [L429] COND FALSE !(s != SKIP2) VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=0, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, DevicePowerState=1, devobj=0, Executive=0, IPC=7, irp=0, irp_choice=1, KernelMode=0, lowerDriverReturn=-1073741823, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, pirp=0, pirp__IoStatus__Status=0, s=4, setEventCalled=0, SKIP1=3, SKIP2=4, status=0, tmp_ndt_1=1, tmp_ndt_2=0, tmp_ndt_3=3, UNLOADED=0] [L439] COND FALSE !(pended == 1) VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=0, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, DevicePowerState=1, devobj=0, Executive=0, IPC=7, irp=0, irp_choice=1, KernelMode=0, lowerDriverReturn=-1073741823, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, pirp=0, pirp__IoStatus__Status=0, s=4, setEventCalled=0, SKIP1=3, SKIP2=4, status=0, tmp_ndt_1=1, tmp_ndt_2=0, tmp_ndt_3=3, UNLOADED=0] [L446] COND FALSE !(s == DC) VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=0, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, DevicePowerState=1, devobj=0, Executive=0, IPC=7, irp=0, irp_choice=1, KernelMode=0, lowerDriverReturn=-1073741823, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, pirp=0, pirp__IoStatus__Status=0, s=4, setEventCalled=0, SKIP1=3, SKIP2=4, status=0, tmp_ndt_1=1, tmp_ndt_2=0, tmp_ndt_3=3, UNLOADED=0] [L451] COND TRUE status != lowerDriverReturn VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=0, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, DevicePowerState=1, devobj=0, Executive=0, IPC=7, irp=0, irp_choice=1, KernelMode=0, lowerDriverReturn=-1073741823, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, pirp=0, pirp__IoStatus__Status=0, s=4, setEventCalled=0, SKIP1=3, SKIP2=4, status=0, tmp_ndt_1=1, tmp_ndt_2=0, tmp_ndt_3=3, UNLOADED=0] [L452] CALL errorFn() VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=0, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, DevicePowerState=1, Executive=0, IPC=7, KernelMode=0, lowerDriverReturn=-1073741823, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, s=4, setEventCalled=0, SKIP1=3, SKIP2=4, UNLOADED=0] [L1012] __VERIFIER_error() VAL [\old(compFptr)=0, \old(compRegistered)=0, \old(customIrp)=0, \old(DC)=0, \old(DevicePowerState)=0, \old(Executive)=0, \old(IPC)=0, \old(KernelMode)=0, \old(lowerDriverReturn)=0, \old(MPR1)=0, \old(MPR3)=0, \old(myStatus)=0, \old(NP)=0, \old(pended)=0, \old(s)=0, \old(setEventCalled)=0, \old(SKIP1)=0, \old(SKIP2)=0, \old(UNLOADED)=0, compFptr=0, compRegistered=0, customIrp=0, DC=2, DevicePowerState=1, Executive=0, IPC=7, KernelMode=0, lowerDriverReturn=-1073741823, MPR1=5, MPR3=6, myStatus=0, NP=1, pended=0, s=4, setEventCalled=0, SKIP1=3, SKIP2=4, UNLOADED=0] - StatisticsResult: Ultimate Automizer benchmark data CFG has 18 procedures, 252 locations, 1 error locations. UNSAFE Result, 55.3s OverallTime, 20 OverallIterations, 1 TraceHistogramMax, 40.6s AutomataDifference, 0.0s DeadEndRemovalTime, 0.0s HoareAnnotationTime, HoareTripleCheckerStatistics: 4639 SDtfs, 1908 SDslu, 11673 SDs, 0 SdLazy, 1786 SolverSat, 238 SolverUnsat, 0 SolverUnknown, 0 SolverNotchecked, 3.7s Time, PredicateUnifierStatistics: 0 DeclaredPredicates, 145 GetRequests, 44 SyntacticMatches, 5 SemanticMatches, 96 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 59 ImplicationChecksByTransitivity, 2.6s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=338occurred in iteration=3, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s AbstIntTime, 0 AbstIntIterations, 0 AbstIntStrong, NaN AbsIntWeakeningRatio, NaN AbsIntAvgWeakeningVarsNumRemoved, NaN AbsIntAvgWeakenedConjuncts, 0.0s DumpTime, AutomataMinimizationStatistics: 6.4s AutomataMinimizationTime, 19 MinimizatonAttempts, 195 StatesRemovedByMinimization, 8 NontrivialMinimizations, HoareAnnotationStatistics: No data available, RefinementEngineStatistics: TraceCheckStatistics: 0.0s SsaConstructionTime, 0.3s SatisfiabilityAnalysisTime, 5.4s InterpolantComputationTime, 966 NumberOfCodeBlocks, 966 NumberOfCodeBlocksAsserted, 20 NumberOfCheckSat, 891 ConstructedInterpolants, 0 QuantifiedInterpolants, 68655 SizeOfPredicates, 0 NumberOfNonLiveVariables, 0 ConjunctsInSsa, 0 ConjunctsInUnsatCore, 19 InterpolantComputations, 19 PerfectInterpolantSequences, 0/0 InterpolantCoveringCapability, InvariantSynthesisStatistics: No data available, InterpolantConsolidationStatistics: No data available, ReuseStatistics: No data available RESULT: Ultimate proved your program to be incorrect! Received shutdown request...