./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/product-lines/minepump_spec3_product33.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 6c24879c Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/config -Xmx15G -Xms4m -jar /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data -tc /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/AutomizerReach.xml -i ../sv-benchmarks/c/product-lines/minepump_spec3_product33.cil.c -s /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash e2e0ba6a085074e8295b6882a51ff57a646359fc725b3e12397ae540b49c1d93 --- Real Ultimate output --- This is Ultimate 0.2.2-?-6c24879 [2022-07-12 06:19:17,714 INFO L177 SettingsManager]: Resetting all preferences to default values... [2022-07-12 06:19:17,716 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2022-07-12 06:19:17,736 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2022-07-12 06:19:17,738 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2022-07-12 06:19:17,739 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2022-07-12 06:19:17,743 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2022-07-12 06:19:17,746 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2022-07-12 06:19:17,749 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2022-07-12 06:19:17,750 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2022-07-12 06:19:17,751 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2022-07-12 06:19:17,752 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2022-07-12 06:19:17,753 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2022-07-12 06:19:17,755 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2022-07-12 06:19:17,756 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2022-07-12 06:19:17,758 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2022-07-12 06:19:17,760 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2022-07-12 06:19:17,764 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2022-07-12 06:19:17,766 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2022-07-12 06:19:17,769 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2022-07-12 06:19:17,770 INFO L181 SettingsManager]: Resetting HornVerifier preferences to default values [2022-07-12 06:19:17,774 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2022-07-12 06:19:17,775 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2022-07-12 06:19:17,775 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2022-07-12 06:19:17,776 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2022-07-12 06:19:17,777 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2022-07-12 06:19:17,779 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2022-07-12 06:19:17,779 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2022-07-12 06:19:17,780 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2022-07-12 06:19:17,780 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2022-07-12 06:19:17,781 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2022-07-12 06:19:17,781 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2022-07-12 06:19:17,782 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2022-07-12 06:19:17,783 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2022-07-12 06:19:17,784 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2022-07-12 06:19:17,784 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2022-07-12 06:19:17,784 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2022-07-12 06:19:17,785 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2022-07-12 06:19:17,785 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2022-07-12 06:19:17,785 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2022-07-12 06:19:17,786 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2022-07-12 06:19:17,786 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2022-07-12 06:19:17,787 INFO L101 SettingsManager]: Beginning loading settings from /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf [2022-07-12 06:19:17,805 INFO L113 SettingsManager]: Loading preferences was successful [2022-07-12 06:19:17,806 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2022-07-12 06:19:17,807 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2022-07-12 06:19:17,807 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2022-07-12 06:19:17,808 INFO L136 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2022-07-12 06:19:17,808 INFO L138 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2022-07-12 06:19:17,808 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2022-07-12 06:19:17,809 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2022-07-12 06:19:17,809 INFO L138 SettingsManager]: * Use SBE=true [2022-07-12 06:19:17,809 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2022-07-12 06:19:17,809 INFO L138 SettingsManager]: * sizeof long=4 [2022-07-12 06:19:17,809 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2022-07-12 06:19:17,809 INFO L138 SettingsManager]: * sizeof POINTER=4 [2022-07-12 06:19:17,810 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2022-07-12 06:19:17,810 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2022-07-12 06:19:17,810 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2022-07-12 06:19:17,810 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2022-07-12 06:19:17,810 INFO L138 SettingsManager]: * sizeof long double=12 [2022-07-12 06:19:17,810 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2022-07-12 06:19:17,810 INFO L138 SettingsManager]: * Use constant arrays=true [2022-07-12 06:19:17,810 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2022-07-12 06:19:17,811 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2022-07-12 06:19:17,811 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2022-07-12 06:19:17,811 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2022-07-12 06:19:17,811 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2022-07-12 06:19:17,812 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2022-07-12 06:19:17,812 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2022-07-12 06:19:17,812 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2022-07-12 06:19:17,812 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2022-07-12 06:19:17,812 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2022-07-12 06:19:17,813 INFO L138 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2022-07-12 06:19:17,813 INFO L138 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2022-07-12 06:19:17,813 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2022-07-12 06:19:17,813 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> e2e0ba6a085074e8295b6882a51ff57a646359fc725b3e12397ae540b49c1d93 [2022-07-12 06:19:18,026 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2022-07-12 06:19:18,043 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2022-07-12 06:19:18,046 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2022-07-12 06:19:18,047 INFO L271 PluginConnector]: Initializing CDTParser... [2022-07-12 06:19:18,047 INFO L275 PluginConnector]: CDTParser initialized [2022-07-12 06:19:18,048 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../sv-benchmarks/c/product-lines/minepump_spec3_product33.cil.c [2022-07-12 06:19:18,093 INFO L220 CDTParser]: Created temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/a8e255fc9/aa4499c95c3d4c41b30f63e707a1bc44/FLAG2c7e66f4b [2022-07-12 06:19:18,514 INFO L306 CDTParser]: Found 1 translation units. [2022-07-12 06:19:18,514 INFO L160 CDTParser]: Scanning /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec3_product33.cil.c [2022-07-12 06:19:18,521 INFO L349 CDTParser]: About to delete temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/a8e255fc9/aa4499c95c3d4c41b30f63e707a1bc44/FLAG2c7e66f4b [2022-07-12 06:19:18,923 INFO L357 CDTParser]: Successfully deleted /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/a8e255fc9/aa4499c95c3d4c41b30f63e707a1bc44 [2022-07-12 06:19:18,925 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2022-07-12 06:19:18,926 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2022-07-12 06:19:18,928 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2022-07-12 06:19:18,929 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2022-07-12 06:19:18,931 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2022-07-12 06:19:18,932 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 12.07 06:19:18" (1/1) ... [2022-07-12 06:19:18,932 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@52870a1a and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.07 06:19:18, skipping insertion in model container [2022-07-12 06:19:18,933 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 12.07 06:19:18" (1/1) ... [2022-07-12 06:19:18,938 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2022-07-12 06:19:18,984 INFO L178 MainTranslator]: Built tables and reachable declarations [2022-07-12 06:19:19,227 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec3_product33.cil.c[13988,14001] [2022-07-12 06:19:19,257 INFO L210 PostProcessor]: Analyzing one entry point: main [2022-07-12 06:19:19,270 INFO L203 MainTranslator]: Completed pre-run [2022-07-12 06:19:19,325 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec3_product33.cil.c[13988,14001] [2022-07-12 06:19:19,344 INFO L210 PostProcessor]: Analyzing one entry point: main [2022-07-12 06:19:19,355 INFO L208 MainTranslator]: Completed translation [2022-07-12 06:19:19,357 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.07 06:19:19 WrapperNode [2022-07-12 06:19:19,357 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2022-07-12 06:19:19,358 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2022-07-12 06:19:19,358 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2022-07-12 06:19:19,358 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2022-07-12 06:19:19,363 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.07 06:19:19" (1/1) ... [2022-07-12 06:19:19,381 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.07 06:19:19" (1/1) ... [2022-07-12 06:19:19,402 INFO L137 Inliner]: procedures = 52, calls = 150, calls flagged for inlining = 20, calls inlined = 17, statements flattened = 229 [2022-07-12 06:19:19,402 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2022-07-12 06:19:19,403 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2022-07-12 06:19:19,403 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2022-07-12 06:19:19,403 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2022-07-12 06:19:19,409 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.07 06:19:19" (1/1) ... [2022-07-12 06:19:19,410 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.07 06:19:19" (1/1) ... [2022-07-12 06:19:19,412 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.07 06:19:19" (1/1) ... [2022-07-12 06:19:19,412 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.07 06:19:19" (1/1) ... [2022-07-12 06:19:19,416 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.07 06:19:19" (1/1) ... [2022-07-12 06:19:19,432 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.07 06:19:19" (1/1) ... [2022-07-12 06:19:19,433 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.07 06:19:19" (1/1) ... [2022-07-12 06:19:19,435 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2022-07-12 06:19:19,435 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2022-07-12 06:19:19,435 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2022-07-12 06:19:19,436 INFO L275 PluginConnector]: RCFGBuilder initialized [2022-07-12 06:19:19,437 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.07 06:19:19" (1/1) ... [2022-07-12 06:19:19,442 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2022-07-12 06:19:19,463 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2022-07-12 06:19:19,475 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2022-07-12 06:19:19,489 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2022-07-12 06:19:19,511 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2022-07-12 06:19:19,511 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2022-07-12 06:19:19,512 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2022-07-12 06:19:19,512 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2022-07-12 06:19:19,512 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2022-07-12 06:19:19,512 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2022-07-12 06:19:19,512 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2022-07-12 06:19:19,512 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneLevelCritical [2022-07-12 06:19:19,512 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneLevelCritical [2022-07-12 06:19:19,512 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2022-07-12 06:19:19,513 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2022-07-12 06:19:19,513 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2022-07-12 06:19:19,513 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2022-07-12 06:19:19,513 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2022-07-12 06:19:19,513 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2022-07-12 06:19:19,513 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2022-07-12 06:19:19,562 INFO L234 CfgBuilder]: Building ICFG [2022-07-12 06:19:19,563 INFO L260 CfgBuilder]: Building CFG for each procedure with an implementation [2022-07-12 06:19:19,787 INFO L275 CfgBuilder]: Performing block encoding [2022-07-12 06:19:19,792 INFO L294 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2022-07-12 06:19:19,793 INFO L299 CfgBuilder]: Removed 2 assume(true) statements. [2022-07-12 06:19:19,795 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 12.07 06:19:19 BoogieIcfgContainer [2022-07-12 06:19:19,795 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2022-07-12 06:19:19,797 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2022-07-12 06:19:19,797 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2022-07-12 06:19:19,813 INFO L275 PluginConnector]: TraceAbstraction initialized [2022-07-12 06:19:19,814 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 12.07 06:19:18" (1/3) ... [2022-07-12 06:19:19,814 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@7d0b1bca and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 12.07 06:19:19, skipping insertion in model container [2022-07-12 06:19:19,814 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 12.07 06:19:19" (2/3) ... [2022-07-12 06:19:19,814 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@7d0b1bca and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 12.07 06:19:19, skipping insertion in model container [2022-07-12 06:19:19,815 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 12.07 06:19:19" (3/3) ... [2022-07-12 06:19:19,816 INFO L111 eAbstractionObserver]: Analyzing ICFG minepump_spec3_product33.cil.c [2022-07-12 06:19:19,825 INFO L201 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2022-07-12 06:19:19,827 INFO L160 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2022-07-12 06:19:19,873 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2022-07-12 06:19:19,878 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=de.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings@6b5fae9d, mLbeIndependenceSettings=de.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings@306657ba [2022-07-12 06:19:19,879 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2022-07-12 06:19:19,885 INFO L276 IsEmpty]: Start isEmpty. Operand has 76 states, 59 states have (on average 1.4067796610169492) internal successors, (83), 65 states have internal predecessors, (83), 9 states have call successors, (9), 6 states have call predecessors, (9), 6 states have return successors, (9), 8 states have call predecessors, (9), 9 states have call successors, (9) [2022-07-12 06:19:19,909 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2022-07-12 06:19:19,909 INFO L187 NwaCegarLoop]: Found error trace [2022-07-12 06:19:19,910 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-12 06:19:19,911 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-12 06:19:19,918 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-12 06:19:19,918 INFO L85 PathProgramCache]: Analyzing trace with hash 2051524167, now seen corresponding path program 1 times [2022-07-12 06:19:19,925 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-12 06:19:19,926 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [45849049] [2022-07-12 06:19:19,926 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-12 06:19:19,927 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-12 06:19:20,043 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-12 06:19:20,086 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2022-07-12 06:19:20,089 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-12 06:19:20,095 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-07-12 06:19:20,096 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-12 06:19:20,096 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [45849049] [2022-07-12 06:19:20,097 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [45849049] provided 1 perfect and 0 imperfect interpolant sequences [2022-07-12 06:19:20,097 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-07-12 06:19:20,097 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2022-07-12 06:19:20,099 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [136586292] [2022-07-12 06:19:20,100 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-07-12 06:19:20,104 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2022-07-12 06:19:20,105 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-12 06:19:20,130 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2022-07-12 06:19:20,130 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2022-07-12 06:19:20,132 INFO L87 Difference]: Start difference. First operand has 76 states, 59 states have (on average 1.4067796610169492) internal successors, (83), 65 states have internal predecessors, (83), 9 states have call successors, (9), 6 states have call predecessors, (9), 6 states have return successors, (9), 8 states have call predecessors, (9), 9 states have call successors, (9) Second operand has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-07-12 06:19:20,162 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-12 06:19:20,162 INFO L93 Difference]: Finished difference Result 144 states and 197 transitions. [2022-07-12 06:19:20,163 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2022-07-12 06:19:20,164 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 25 [2022-07-12 06:19:20,164 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-12 06:19:20,171 INFO L225 Difference]: With dead ends: 144 [2022-07-12 06:19:20,171 INFO L226 Difference]: Without dead ends: 67 [2022-07-12 06:19:20,174 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2022-07-12 06:19:20,176 INFO L413 NwaCegarLoop]: 95 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 0 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 95 SdHoareTripleChecker+Invalid, 0 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 0 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-07-12 06:19:20,177 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 95 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 0 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-07-12 06:19:20,190 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 67 states. [2022-07-12 06:19:20,203 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 67 to 67. [2022-07-12 06:19:20,204 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 67 states, 52 states have (on average 1.3269230769230769) internal successors, (69), 57 states have internal predecessors, (69), 9 states have call successors, (9), 6 states have call predecessors, (9), 5 states have return successors, (8), 7 states have call predecessors, (8), 8 states have call successors, (8) [2022-07-12 06:19:20,206 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 67 states to 67 states and 86 transitions. [2022-07-12 06:19:20,207 INFO L78 Accepts]: Start accepts. Automaton has 67 states and 86 transitions. Word has length 25 [2022-07-12 06:19:20,207 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-12 06:19:20,207 INFO L495 AbstractCegarLoop]: Abstraction has 67 states and 86 transitions. [2022-07-12 06:19:20,208 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-07-12 06:19:20,208 INFO L276 IsEmpty]: Start isEmpty. Operand 67 states and 86 transitions. [2022-07-12 06:19:20,209 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2022-07-12 06:19:20,210 INFO L187 NwaCegarLoop]: Found error trace [2022-07-12 06:19:20,210 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-12 06:19:20,210 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2022-07-12 06:19:20,210 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-12 06:19:20,211 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-12 06:19:20,212 INFO L85 PathProgramCache]: Analyzing trace with hash -755812007, now seen corresponding path program 1 times [2022-07-12 06:19:20,213 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-12 06:19:20,213 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [257409026] [2022-07-12 06:19:20,213 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-12 06:19:20,214 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-12 06:19:20,249 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-12 06:19:20,311 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2022-07-12 06:19:20,313 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-12 06:19:20,315 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-07-12 06:19:20,315 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-12 06:19:20,316 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [257409026] [2022-07-12 06:19:20,316 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [257409026] provided 1 perfect and 0 imperfect interpolant sequences [2022-07-12 06:19:20,316 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-07-12 06:19:20,316 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2022-07-12 06:19:20,316 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1284735329] [2022-07-12 06:19:20,316 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-07-12 06:19:20,317 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2022-07-12 06:19:20,317 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-12 06:19:20,318 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2022-07-12 06:19:20,318 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-07-12 06:19:20,318 INFO L87 Difference]: Start difference. First operand 67 states and 86 transitions. Second operand has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 3 states have internal predecessors, (22), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-07-12 06:19:20,327 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-12 06:19:20,327 INFO L93 Difference]: Finished difference Result 100 states and 128 transitions. [2022-07-12 06:19:20,328 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2022-07-12 06:19:20,328 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 3 states have internal predecessors, (22), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 26 [2022-07-12 06:19:20,328 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-12 06:19:20,329 INFO L225 Difference]: With dead ends: 100 [2022-07-12 06:19:20,329 INFO L226 Difference]: Without dead ends: 58 [2022-07-12 06:19:20,330 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-07-12 06:19:20,331 INFO L413 NwaCegarLoop]: 73 mSDtfsCounter, 12 mSDsluCounter, 57 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 15 SdHoareTripleChecker+Valid, 130 SdHoareTripleChecker+Invalid, 1 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-07-12 06:19:20,331 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [15 Valid, 130 Invalid, 1 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-07-12 06:19:20,332 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 58 states. [2022-07-12 06:19:20,335 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 58 to 58. [2022-07-12 06:19:20,336 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 58 states, 46 states have (on average 1.3478260869565217) internal successors, (62), 51 states have internal predecessors, (62), 6 states have call successors, (6), 5 states have call predecessors, (6), 5 states have return successors, (6), 5 states have call predecessors, (6), 6 states have call successors, (6) [2022-07-12 06:19:20,336 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 58 states to 58 states and 74 transitions. [2022-07-12 06:19:20,337 INFO L78 Accepts]: Start accepts. Automaton has 58 states and 74 transitions. Word has length 26 [2022-07-12 06:19:20,337 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-12 06:19:20,337 INFO L495 AbstractCegarLoop]: Abstraction has 58 states and 74 transitions. [2022-07-12 06:19:20,337 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 3 states have internal predecessors, (22), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-07-12 06:19:20,337 INFO L276 IsEmpty]: Start isEmpty. Operand 58 states and 74 transitions. [2022-07-12 06:19:20,338 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 31 [2022-07-12 06:19:20,338 INFO L187 NwaCegarLoop]: Found error trace [2022-07-12 06:19:20,338 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-12 06:19:20,338 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2022-07-12 06:19:20,338 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-12 06:19:20,339 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-12 06:19:20,339 INFO L85 PathProgramCache]: Analyzing trace with hash 1418329719, now seen corresponding path program 1 times [2022-07-12 06:19:20,339 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-12 06:19:20,339 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1497677663] [2022-07-12 06:19:20,339 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-12 06:19:20,340 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-12 06:19:20,367 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-12 06:19:20,425 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2022-07-12 06:19:20,427 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-12 06:19:20,429 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-07-12 06:19:20,429 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-12 06:19:20,429 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1497677663] [2022-07-12 06:19:20,429 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1497677663] provided 1 perfect and 0 imperfect interpolant sequences [2022-07-12 06:19:20,429 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-07-12 06:19:20,429 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2022-07-12 06:19:20,429 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [646890348] [2022-07-12 06:19:20,429 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-07-12 06:19:20,430 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2022-07-12 06:19:20,430 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-12 06:19:20,430 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2022-07-12 06:19:20,430 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=10, Invalid=20, Unknown=0, NotChecked=0, Total=30 [2022-07-12 06:19:20,430 INFO L87 Difference]: Start difference. First operand 58 states and 74 transitions. Second operand has 6 states, 6 states have (on average 4.5) internal successors, (27), 6 states have internal predecessors, (27), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-07-12 06:19:20,498 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-12 06:19:20,498 INFO L93 Difference]: Finished difference Result 109 states and 142 transitions. [2022-07-12 06:19:20,498 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2022-07-12 06:19:20,499 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 4.5) internal successors, (27), 6 states have internal predecessors, (27), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 30 [2022-07-12 06:19:20,499 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-12 06:19:20,499 INFO L225 Difference]: With dead ends: 109 [2022-07-12 06:19:20,499 INFO L226 Difference]: Without dead ends: 58 [2022-07-12 06:19:20,500 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2022-07-12 06:19:20,501 INFO L413 NwaCegarLoop]: 67 mSDtfsCounter, 100 mSDsluCounter, 84 mSDsCounter, 0 mSdLazyCounter, 29 mSolverCounterSat, 10 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 100 SdHoareTripleChecker+Valid, 151 SdHoareTripleChecker+Invalid, 39 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 10 IncrementalHoareTripleChecker+Valid, 29 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-07-12 06:19:20,501 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [100 Valid, 151 Invalid, 39 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [10 Valid, 29 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-07-12 06:19:20,502 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 58 states. [2022-07-12 06:19:20,506 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 58 to 58. [2022-07-12 06:19:20,507 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 58 states, 46 states have (on average 1.326086956521739) internal successors, (61), 51 states have internal predecessors, (61), 6 states have call successors, (6), 5 states have call predecessors, (6), 5 states have return successors, (6), 5 states have call predecessors, (6), 6 states have call successors, (6) [2022-07-12 06:19:20,507 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 58 states to 58 states and 73 transitions. [2022-07-12 06:19:20,508 INFO L78 Accepts]: Start accepts. Automaton has 58 states and 73 transitions. Word has length 30 [2022-07-12 06:19:20,508 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-12 06:19:20,508 INFO L495 AbstractCegarLoop]: Abstraction has 58 states and 73 transitions. [2022-07-12 06:19:20,508 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 4.5) internal successors, (27), 6 states have internal predecessors, (27), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-07-12 06:19:20,508 INFO L276 IsEmpty]: Start isEmpty. Operand 58 states and 73 transitions. [2022-07-12 06:19:20,509 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 36 [2022-07-12 06:19:20,509 INFO L187 NwaCegarLoop]: Found error trace [2022-07-12 06:19:20,509 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-12 06:19:20,510 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2022-07-12 06:19:20,510 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-12 06:19:20,510 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-12 06:19:20,510 INFO L85 PathProgramCache]: Analyzing trace with hash -1398795374, now seen corresponding path program 1 times [2022-07-12 06:19:20,510 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-12 06:19:20,510 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1503739127] [2022-07-12 06:19:20,510 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-12 06:19:20,511 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-12 06:19:20,530 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-12 06:19:20,550 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2022-07-12 06:19:20,551 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-12 06:19:20,552 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 24 [2022-07-12 06:19:20,553 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-12 06:19:20,554 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-07-12 06:19:20,554 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-12 06:19:20,554 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1503739127] [2022-07-12 06:19:20,555 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1503739127] provided 1 perfect and 0 imperfect interpolant sequences [2022-07-12 06:19:20,555 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-07-12 06:19:20,555 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2022-07-12 06:19:20,555 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [37443988] [2022-07-12 06:19:20,555 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-07-12 06:19:20,556 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2022-07-12 06:19:20,556 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-12 06:19:20,556 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2022-07-12 06:19:20,556 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-07-12 06:19:20,556 INFO L87 Difference]: Start difference. First operand 58 states and 73 transitions. Second operand has 3 states, 3 states have (on average 10.0) internal successors, (30), 3 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2022-07-12 06:19:20,572 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-12 06:19:20,572 INFO L93 Difference]: Finished difference Result 149 states and 192 transitions. [2022-07-12 06:19:20,573 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2022-07-12 06:19:20,573 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 10.0) internal successors, (30), 3 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 35 [2022-07-12 06:19:20,573 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-12 06:19:20,574 INFO L225 Difference]: With dead ends: 149 [2022-07-12 06:19:20,574 INFO L226 Difference]: Without dead ends: 98 [2022-07-12 06:19:20,575 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-07-12 06:19:20,575 INFO L413 NwaCegarLoop]: 93 mSDtfsCounter, 47 mSDsluCounter, 51 mSDsCounter, 0 mSdLazyCounter, 7 mSolverCounterSat, 3 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 47 SdHoareTripleChecker+Valid, 144 SdHoareTripleChecker+Invalid, 10 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 3 IncrementalHoareTripleChecker+Valid, 7 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-07-12 06:19:20,576 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [47 Valid, 144 Invalid, 10 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [3 Valid, 7 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-07-12 06:19:20,576 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 98 states. [2022-07-12 06:19:20,587 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 98 to 96. [2022-07-12 06:19:20,590 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 96 states, 75 states have (on average 1.32) internal successors, (99), 81 states have internal predecessors, (99), 10 states have call successors, (10), 10 states have call predecessors, (10), 10 states have return successors, (12), 10 states have call predecessors, (12), 10 states have call successors, (12) [2022-07-12 06:19:20,595 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 96 states to 96 states and 121 transitions. [2022-07-12 06:19:20,595 INFO L78 Accepts]: Start accepts. Automaton has 96 states and 121 transitions. Word has length 35 [2022-07-12 06:19:20,595 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-12 06:19:20,595 INFO L495 AbstractCegarLoop]: Abstraction has 96 states and 121 transitions. [2022-07-12 06:19:20,596 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 10.0) internal successors, (30), 3 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2022-07-12 06:19:20,596 INFO L276 IsEmpty]: Start isEmpty. Operand 96 states and 121 transitions. [2022-07-12 06:19:20,596 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 40 [2022-07-12 06:19:20,597 INFO L187 NwaCegarLoop]: Found error trace [2022-07-12 06:19:20,597 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-12 06:19:20,597 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2022-07-12 06:19:20,597 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-12 06:19:20,598 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-12 06:19:20,598 INFO L85 PathProgramCache]: Analyzing trace with hash -2080139765, now seen corresponding path program 1 times [2022-07-12 06:19:20,598 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-12 06:19:20,598 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [537759565] [2022-07-12 06:19:20,598 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-12 06:19:20,598 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-12 06:19:20,612 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-12 06:19:20,657 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 28 [2022-07-12 06:19:20,658 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-12 06:19:20,665 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-07-12 06:19:20,666 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-12 06:19:20,666 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [537759565] [2022-07-12 06:19:20,666 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [537759565] provided 1 perfect and 0 imperfect interpolant sequences [2022-07-12 06:19:20,666 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-07-12 06:19:20,667 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2022-07-12 06:19:20,667 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1407216220] [2022-07-12 06:19:20,667 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-07-12 06:19:20,667 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2022-07-12 06:19:20,668 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-12 06:19:20,668 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2022-07-12 06:19:20,668 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-07-12 06:19:20,668 INFO L87 Difference]: Start difference. First operand 96 states and 121 transitions. Second operand has 3 states, 3 states have (on average 12.0) internal successors, (36), 3 states have internal predecessors, (36), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-07-12 06:19:20,689 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-12 06:19:20,690 INFO L93 Difference]: Finished difference Result 264 states and 348 transitions. [2022-07-12 06:19:20,690 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2022-07-12 06:19:20,690 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 12.0) internal successors, (36), 3 states have internal predecessors, (36), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 39 [2022-07-12 06:19:20,691 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-12 06:19:20,694 INFO L225 Difference]: With dead ends: 264 [2022-07-12 06:19:20,694 INFO L226 Difference]: Without dead ends: 175 [2022-07-12 06:19:20,697 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 4 SyntacticMatches, 1 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-07-12 06:19:20,697 INFO L413 NwaCegarLoop]: 74 mSDtfsCounter, 43 mSDsluCounter, 61 mSDsCounter, 0 mSdLazyCounter, 11 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 43 SdHoareTripleChecker+Valid, 135 SdHoareTripleChecker+Invalid, 13 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 11 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-07-12 06:19:20,698 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [43 Valid, 135 Invalid, 13 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 11 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-07-12 06:19:20,698 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 175 states. [2022-07-12 06:19:20,710 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 175 to 173. [2022-07-12 06:19:20,710 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 173 states, 136 states have (on average 1.3161764705882353) internal successors, (179), 144 states have internal predecessors, (179), 19 states have call successors, (19), 19 states have call predecessors, (19), 17 states have return successors, (25), 17 states have call predecessors, (25), 19 states have call successors, (25) [2022-07-12 06:19:20,722 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 173 states to 173 states and 223 transitions. [2022-07-12 06:19:20,722 INFO L78 Accepts]: Start accepts. Automaton has 173 states and 223 transitions. Word has length 39 [2022-07-12 06:19:20,722 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-12 06:19:20,722 INFO L495 AbstractCegarLoop]: Abstraction has 173 states and 223 transitions. [2022-07-12 06:19:20,723 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 12.0) internal successors, (36), 3 states have internal predecessors, (36), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-07-12 06:19:20,723 INFO L276 IsEmpty]: Start isEmpty. Operand 173 states and 223 transitions. [2022-07-12 06:19:20,724 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 40 [2022-07-12 06:19:20,724 INFO L187 NwaCegarLoop]: Found error trace [2022-07-12 06:19:20,724 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-12 06:19:20,724 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2022-07-12 06:19:20,724 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-12 06:19:20,724 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-12 06:19:20,724 INFO L85 PathProgramCache]: Analyzing trace with hash -1262491315, now seen corresponding path program 1 times [2022-07-12 06:19:20,724 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-12 06:19:20,725 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1877708963] [2022-07-12 06:19:20,725 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-12 06:19:20,725 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-12 06:19:20,743 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-12 06:19:20,788 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 28 [2022-07-12 06:19:20,790 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-12 06:19:20,793 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-07-12 06:19:20,793 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-12 06:19:20,793 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1877708963] [2022-07-12 06:19:20,793 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1877708963] provided 1 perfect and 0 imperfect interpolant sequences [2022-07-12 06:19:20,793 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-07-12 06:19:20,793 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2022-07-12 06:19:20,794 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1144403628] [2022-07-12 06:19:20,794 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-07-12 06:19:20,794 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2022-07-12 06:19:20,794 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-12 06:19:20,795 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2022-07-12 06:19:20,795 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2022-07-12 06:19:20,795 INFO L87 Difference]: Start difference. First operand 173 states and 223 transitions. Second operand has 5 states, 5 states have (on average 7.2) internal successors, (36), 5 states have internal predecessors, (36), 2 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-07-12 06:19:20,830 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-12 06:19:20,830 INFO L93 Difference]: Finished difference Result 375 states and 493 transitions. [2022-07-12 06:19:20,845 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2022-07-12 06:19:20,845 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.2) internal successors, (36), 5 states have internal predecessors, (36), 2 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 39 [2022-07-12 06:19:20,846 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-12 06:19:20,847 INFO L225 Difference]: With dead ends: 375 [2022-07-12 06:19:20,847 INFO L226 Difference]: Without dead ends: 209 [2022-07-12 06:19:20,848 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2022-07-12 06:19:20,849 INFO L413 NwaCegarLoop]: 89 mSDtfsCounter, 62 mSDsluCounter, 242 mSDsCounter, 0 mSdLazyCounter, 13 mSolverCounterSat, 7 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 64 SdHoareTripleChecker+Valid, 331 SdHoareTripleChecker+Invalid, 20 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 7 IncrementalHoareTripleChecker+Valid, 13 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-07-12 06:19:20,849 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [64 Valid, 331 Invalid, 20 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [7 Valid, 13 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-07-12 06:19:20,850 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 209 states. [2022-07-12 06:19:20,862 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 209 to 179. [2022-07-12 06:19:20,863 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 179 states, 142 states have (on average 1.3028169014084507) internal successors, (185), 150 states have internal predecessors, (185), 19 states have call successors, (19), 19 states have call predecessors, (19), 17 states have return successors, (25), 17 states have call predecessors, (25), 19 states have call successors, (25) [2022-07-12 06:19:20,864 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 179 states to 179 states and 229 transitions. [2022-07-12 06:19:20,864 INFO L78 Accepts]: Start accepts. Automaton has 179 states and 229 transitions. Word has length 39 [2022-07-12 06:19:20,864 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-12 06:19:20,864 INFO L495 AbstractCegarLoop]: Abstraction has 179 states and 229 transitions. [2022-07-12 06:19:20,865 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.2) internal successors, (36), 5 states have internal predecessors, (36), 2 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-07-12 06:19:20,865 INFO L276 IsEmpty]: Start isEmpty. Operand 179 states and 229 transitions. [2022-07-12 06:19:20,866 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 40 [2022-07-12 06:19:20,866 INFO L187 NwaCegarLoop]: Found error trace [2022-07-12 06:19:20,866 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-12 06:19:20,866 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2022-07-12 06:19:20,866 INFO L420 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-12 06:19:20,867 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-12 06:19:20,867 INFO L85 PathProgramCache]: Analyzing trace with hash 1038331275, now seen corresponding path program 1 times [2022-07-12 06:19:20,867 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-12 06:19:20,867 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1693288978] [2022-07-12 06:19:20,867 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-12 06:19:20,867 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-12 06:19:20,878 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-12 06:19:20,894 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 28 [2022-07-12 06:19:20,895 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-12 06:19:20,897 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-07-12 06:19:20,911 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-12 06:19:20,911 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1693288978] [2022-07-12 06:19:20,912 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1693288978] provided 1 perfect and 0 imperfect interpolant sequences [2022-07-12 06:19:20,912 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-07-12 06:19:20,912 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2022-07-12 06:19:20,912 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [487593596] [2022-07-12 06:19:20,912 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-07-12 06:19:20,913 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2022-07-12 06:19:20,913 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-12 06:19:20,913 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2022-07-12 06:19:20,913 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2022-07-12 06:19:20,913 INFO L87 Difference]: Start difference. First operand 179 states and 229 transitions. Second operand has 4 states, 4 states have (on average 9.0) internal successors, (36), 4 states have internal predecessors, (36), 2 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-07-12 06:19:20,951 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-12 06:19:20,951 INFO L93 Difference]: Finished difference Result 334 states and 431 transitions. [2022-07-12 06:19:20,952 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2022-07-12 06:19:20,952 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 9.0) internal successors, (36), 4 states have internal predecessors, (36), 2 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 39 [2022-07-12 06:19:20,952 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-12 06:19:20,953 INFO L225 Difference]: With dead ends: 334 [2022-07-12 06:19:20,953 INFO L226 Difference]: Without dead ends: 162 [2022-07-12 06:19:20,954 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2022-07-12 06:19:20,954 INFO L413 NwaCegarLoop]: 73 mSDtfsCounter, 37 mSDsluCounter, 138 mSDsCounter, 0 mSdLazyCounter, 9 mSolverCounterSat, 4 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 37 SdHoareTripleChecker+Valid, 211 SdHoareTripleChecker+Invalid, 13 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 4 IncrementalHoareTripleChecker+Valid, 9 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-07-12 06:19:20,955 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [37 Valid, 211 Invalid, 13 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [4 Valid, 9 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-07-12 06:19:20,955 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 162 states. [2022-07-12 06:19:20,986 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 162 to 144. [2022-07-12 06:19:20,987 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 144 states, 114 states have (on average 1.280701754385965) internal successors, (146), 121 states have internal predecessors, (146), 15 states have call successors, (15), 15 states have call predecessors, (15), 14 states have return successors, (17), 14 states have call predecessors, (17), 15 states have call successors, (17) [2022-07-12 06:19:20,987 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 144 states to 144 states and 178 transitions. [2022-07-12 06:19:20,988 INFO L78 Accepts]: Start accepts. Automaton has 144 states and 178 transitions. Word has length 39 [2022-07-12 06:19:20,988 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-12 06:19:20,988 INFO L495 AbstractCegarLoop]: Abstraction has 144 states and 178 transitions. [2022-07-12 06:19:20,988 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 9.0) internal successors, (36), 4 states have internal predecessors, (36), 2 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-07-12 06:19:20,988 INFO L276 IsEmpty]: Start isEmpty. Operand 144 states and 178 transitions. [2022-07-12 06:19:20,989 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 42 [2022-07-12 06:19:20,989 INFO L187 NwaCegarLoop]: Found error trace [2022-07-12 06:19:20,990 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-12 06:19:20,990 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2022-07-12 06:19:20,990 INFO L420 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-12 06:19:20,990 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-12 06:19:20,990 INFO L85 PathProgramCache]: Analyzing trace with hash -1305949366, now seen corresponding path program 1 times [2022-07-12 06:19:20,990 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-12 06:19:20,991 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1011035335] [2022-07-12 06:19:20,991 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-12 06:19:20,991 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-12 06:19:21,004 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-12 06:19:21,037 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 25 [2022-07-12 06:19:21,038 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-12 06:19:21,041 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 30 [2022-07-12 06:19:21,043 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-12 06:19:21,045 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-07-12 06:19:21,047 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-12 06:19:21,048 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1011035335] [2022-07-12 06:19:21,048 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1011035335] provided 1 perfect and 0 imperfect interpolant sequences [2022-07-12 06:19:21,051 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-07-12 06:19:21,052 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2022-07-12 06:19:21,052 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1338497936] [2022-07-12 06:19:21,052 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-07-12 06:19:21,052 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2022-07-12 06:19:21,053 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-12 06:19:21,053 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2022-07-12 06:19:21,054 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2022-07-12 06:19:21,054 INFO L87 Difference]: Start difference. First operand 144 states and 178 transitions. Second operand has 5 states, 5 states have (on average 7.2) internal successors, (36), 5 states have internal predecessors, (36), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2022-07-12 06:19:21,096 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-12 06:19:21,097 INFO L93 Difference]: Finished difference Result 282 states and 350 transitions. [2022-07-12 06:19:21,097 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2022-07-12 06:19:21,097 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.2) internal successors, (36), 5 states have internal predecessors, (36), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 41 [2022-07-12 06:19:21,099 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-12 06:19:21,101 INFO L225 Difference]: With dead ends: 282 [2022-07-12 06:19:21,101 INFO L226 Difference]: Without dead ends: 145 [2022-07-12 06:19:21,102 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2022-07-12 06:19:21,103 INFO L413 NwaCegarLoop]: 76 mSDtfsCounter, 30 mSDsluCounter, 207 mSDsCounter, 0 mSdLazyCounter, 23 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 30 SdHoareTripleChecker+Valid, 283 SdHoareTripleChecker+Invalid, 23 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 23 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-07-12 06:19:21,104 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [30 Valid, 283 Invalid, 23 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 23 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-07-12 06:19:21,105 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 145 states. [2022-07-12 06:19:21,113 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 145 to 142. [2022-07-12 06:19:21,117 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 142 states, 112 states have (on average 1.2678571428571428) internal successors, (142), 119 states have internal predecessors, (142), 15 states have call successors, (15), 15 states have call predecessors, (15), 14 states have return successors, (17), 14 states have call predecessors, (17), 15 states have call successors, (17) [2022-07-12 06:19:21,118 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 142 states to 142 states and 174 transitions. [2022-07-12 06:19:21,118 INFO L78 Accepts]: Start accepts. Automaton has 142 states and 174 transitions. Word has length 41 [2022-07-12 06:19:21,119 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-12 06:19:21,119 INFO L495 AbstractCegarLoop]: Abstraction has 142 states and 174 transitions. [2022-07-12 06:19:21,119 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.2) internal successors, (36), 5 states have internal predecessors, (36), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2022-07-12 06:19:21,119 INFO L276 IsEmpty]: Start isEmpty. Operand 142 states and 174 transitions. [2022-07-12 06:19:21,124 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 44 [2022-07-12 06:19:21,124 INFO L187 NwaCegarLoop]: Found error trace [2022-07-12 06:19:21,124 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-12 06:19:21,124 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2022-07-12 06:19:21,124 INFO L420 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-12 06:19:21,125 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-12 06:19:21,125 INFO L85 PathProgramCache]: Analyzing trace with hash 1289793507, now seen corresponding path program 1 times [2022-07-12 06:19:21,125 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-12 06:19:21,125 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1700461999] [2022-07-12 06:19:21,125 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-12 06:19:21,125 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-12 06:19:21,141 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-12 06:19:21,200 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2022-07-12 06:19:21,202 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-12 06:19:21,204 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 32 [2022-07-12 06:19:21,210 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-12 06:19:21,213 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-07-12 06:19:21,214 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-12 06:19:21,214 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1700461999] [2022-07-12 06:19:21,214 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1700461999] provided 1 perfect and 0 imperfect interpolant sequences [2022-07-12 06:19:21,214 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-07-12 06:19:21,214 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2022-07-12 06:19:21,214 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [85088778] [2022-07-12 06:19:21,214 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-07-12 06:19:21,215 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2022-07-12 06:19:21,215 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-12 06:19:21,216 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2022-07-12 06:19:21,216 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=43, Unknown=0, NotChecked=0, Total=56 [2022-07-12 06:19:21,216 INFO L87 Difference]: Start difference. First operand 142 states and 174 transitions. Second operand has 8 states, 8 states have (on average 4.75) internal successors, (38), 7 states have internal predecessors, (38), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2022-07-12 06:19:21,391 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-12 06:19:21,391 INFO L93 Difference]: Finished difference Result 265 states and 330 transitions. [2022-07-12 06:19:21,392 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 13 states. [2022-07-12 06:19:21,392 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 4.75) internal successors, (38), 7 states have internal predecessors, (38), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 43 [2022-07-12 06:19:21,392 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-12 06:19:21,393 INFO L225 Difference]: With dead ends: 265 [2022-07-12 06:19:21,393 INFO L226 Difference]: Without dead ends: 105 [2022-07-12 06:19:21,394 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 23 GetRequests, 9 SyntacticMatches, 0 SemanticMatches, 14 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 24 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=59, Invalid=181, Unknown=0, NotChecked=0, Total=240 [2022-07-12 06:19:21,394 INFO L413 NwaCegarLoop]: 104 mSDtfsCounter, 135 mSDsluCounter, 374 mSDsCounter, 0 mSdLazyCounter, 213 mSolverCounterSat, 32 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 138 SdHoareTripleChecker+Valid, 478 SdHoareTripleChecker+Invalid, 245 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 32 IncrementalHoareTripleChecker+Valid, 213 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-07-12 06:19:21,394 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [138 Valid, 478 Invalid, 245 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [32 Valid, 213 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-07-12 06:19:21,395 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 105 states. [2022-07-12 06:19:21,399 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 105 to 99. [2022-07-12 06:19:21,399 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 99 states, 78 states have (on average 1.2179487179487178) internal successors, (95), 83 states have internal predecessors, (95), 10 states have call successors, (10), 10 states have call predecessors, (10), 10 states have return successors, (11), 9 states have call predecessors, (11), 10 states have call successors, (11) [2022-07-12 06:19:21,400 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 99 states to 99 states and 116 transitions. [2022-07-12 06:19:21,400 INFO L78 Accepts]: Start accepts. Automaton has 99 states and 116 transitions. Word has length 43 [2022-07-12 06:19:21,400 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-12 06:19:21,400 INFO L495 AbstractCegarLoop]: Abstraction has 99 states and 116 transitions. [2022-07-12 06:19:21,400 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 4.75) internal successors, (38), 7 states have internal predecessors, (38), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2022-07-12 06:19:21,401 INFO L276 IsEmpty]: Start isEmpty. Operand 99 states and 116 transitions. [2022-07-12 06:19:21,401 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 46 [2022-07-12 06:19:21,401 INFO L187 NwaCegarLoop]: Found error trace [2022-07-12 06:19:21,401 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-12 06:19:21,401 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2022-07-12 06:19:21,402 INFO L420 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-12 06:19:21,402 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-12 06:19:21,402 INFO L85 PathProgramCache]: Analyzing trace with hash -168912990, now seen corresponding path program 1 times [2022-07-12 06:19:21,402 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-12 06:19:21,402 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [983149289] [2022-07-12 06:19:21,402 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-12 06:19:21,403 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-12 06:19:21,411 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-12 06:19:21,428 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2022-07-12 06:19:21,429 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-12 06:19:21,431 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 29 [2022-07-12 06:19:21,432 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-12 06:19:21,433 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 34 [2022-07-12 06:19:21,434 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-12 06:19:21,436 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-07-12 06:19:21,436 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-12 06:19:21,436 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [983149289] [2022-07-12 06:19:21,436 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [983149289] provided 1 perfect and 0 imperfect interpolant sequences [2022-07-12 06:19:21,436 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-07-12 06:19:21,437 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2022-07-12 06:19:21,437 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1750105000] [2022-07-12 06:19:21,437 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-07-12 06:19:21,445 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2022-07-12 06:19:21,445 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-12 06:19:21,445 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2022-07-12 06:19:21,445 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2022-07-12 06:19:21,446 INFO L87 Difference]: Start difference. First operand 99 states and 116 transitions. Second operand has 5 states, 5 states have (on average 7.6) internal successors, (38), 4 states have internal predecessors, (38), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2022-07-12 06:19:21,499 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-12 06:19:21,499 INFO L93 Difference]: Finished difference Result 168 states and 200 transitions. [2022-07-12 06:19:21,499 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2022-07-12 06:19:21,500 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.6) internal successors, (38), 4 states have internal predecessors, (38), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 45 [2022-07-12 06:19:21,500 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-12 06:19:21,501 INFO L225 Difference]: With dead ends: 168 [2022-07-12 06:19:21,501 INFO L226 Difference]: Without dead ends: 117 [2022-07-12 06:19:21,501 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 12 GetRequests, 7 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2022-07-12 06:19:21,502 INFO L413 NwaCegarLoop]: 72 mSDtfsCounter, 75 mSDsluCounter, 124 mSDsCounter, 0 mSdLazyCounter, 50 mSolverCounterSat, 10 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 77 SdHoareTripleChecker+Valid, 196 SdHoareTripleChecker+Invalid, 60 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 10 IncrementalHoareTripleChecker+Valid, 50 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-07-12 06:19:21,502 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [77 Valid, 196 Invalid, 60 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [10 Valid, 50 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-07-12 06:19:21,502 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 117 states. [2022-07-12 06:19:21,507 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 117 to 99. [2022-07-12 06:19:21,507 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 99 states, 78 states have (on average 1.205128205128205) internal successors, (94), 83 states have internal predecessors, (94), 10 states have call successors, (10), 10 states have call predecessors, (10), 10 states have return successors, (11), 9 states have call predecessors, (11), 10 states have call successors, (11) [2022-07-12 06:19:21,508 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 99 states to 99 states and 115 transitions. [2022-07-12 06:19:21,508 INFO L78 Accepts]: Start accepts. Automaton has 99 states and 115 transitions. Word has length 45 [2022-07-12 06:19:21,508 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-12 06:19:21,508 INFO L495 AbstractCegarLoop]: Abstraction has 99 states and 115 transitions. [2022-07-12 06:19:21,508 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.6) internal successors, (38), 4 states have internal predecessors, (38), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2022-07-12 06:19:21,509 INFO L276 IsEmpty]: Start isEmpty. Operand 99 states and 115 transitions. [2022-07-12 06:19:21,509 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 46 [2022-07-12 06:19:21,509 INFO L187 NwaCegarLoop]: Found error trace [2022-07-12 06:19:21,509 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-12 06:19:21,510 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9 [2022-07-12 06:19:21,510 INFO L420 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-12 06:19:21,510 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-12 06:19:21,510 INFO L85 PathProgramCache]: Analyzing trace with hash -986561440, now seen corresponding path program 1 times [2022-07-12 06:19:21,510 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-12 06:19:21,510 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1757513933] [2022-07-12 06:19:21,511 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-12 06:19:21,511 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-12 06:19:21,520 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-12 06:19:21,552 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2022-07-12 06:19:21,553 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-12 06:19:21,555 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 29 [2022-07-12 06:19:21,555 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-12 06:19:21,556 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 34 [2022-07-12 06:19:21,556 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-12 06:19:21,557 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-07-12 06:19:21,557 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-12 06:19:21,557 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1757513933] [2022-07-12 06:19:21,557 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1757513933] provided 1 perfect and 0 imperfect interpolant sequences [2022-07-12 06:19:21,558 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-07-12 06:19:21,558 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2022-07-12 06:19:21,558 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [161715404] [2022-07-12 06:19:21,558 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-07-12 06:19:21,558 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2022-07-12 06:19:21,558 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-12 06:19:21,559 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2022-07-12 06:19:21,559 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=43, Unknown=0, NotChecked=0, Total=56 [2022-07-12 06:19:21,559 INFO L87 Difference]: Start difference. First operand 99 states and 115 transitions. Second operand has 8 states, 8 states have (on average 4.75) internal successors, (38), 7 states have internal predecessors, (38), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2022-07-12 06:19:21,640 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-12 06:19:21,640 INFO L93 Difference]: Finished difference Result 153 states and 179 transitions. [2022-07-12 06:19:21,641 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2022-07-12 06:19:21,641 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 4.75) internal successors, (38), 7 states have internal predecessors, (38), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 45 [2022-07-12 06:19:21,641 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-12 06:19:21,642 INFO L225 Difference]: With dead ends: 153 [2022-07-12 06:19:21,642 INFO L226 Difference]: Without dead ends: 97 [2022-07-12 06:19:21,642 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 19 GetRequests, 9 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=35, Invalid=97, Unknown=0, NotChecked=0, Total=132 [2022-07-12 06:19:21,643 INFO L413 NwaCegarLoop]: 57 mSDtfsCounter, 67 mSDsluCounter, 223 mSDsCounter, 0 mSdLazyCounter, 107 mSolverCounterSat, 10 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 69 SdHoareTripleChecker+Valid, 280 SdHoareTripleChecker+Invalid, 117 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 10 IncrementalHoareTripleChecker+Valid, 107 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-07-12 06:19:21,643 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [69 Valid, 280 Invalid, 117 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [10 Valid, 107 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-07-12 06:19:21,643 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 97 states. [2022-07-12 06:19:21,647 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 97 to 97. [2022-07-12 06:19:21,647 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 97 states, 76 states have (on average 1.1973684210526316) internal successors, (91), 81 states have internal predecessors, (91), 10 states have call successors, (10), 10 states have call predecessors, (10), 10 states have return successors, (11), 9 states have call predecessors, (11), 10 states have call successors, (11) [2022-07-12 06:19:21,648 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 97 states to 97 states and 112 transitions. [2022-07-12 06:19:21,648 INFO L78 Accepts]: Start accepts. Automaton has 97 states and 112 transitions. Word has length 45 [2022-07-12 06:19:21,648 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-12 06:19:21,648 INFO L495 AbstractCegarLoop]: Abstraction has 97 states and 112 transitions. [2022-07-12 06:19:21,648 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 4.75) internal successors, (38), 7 states have internal predecessors, (38), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2022-07-12 06:19:21,648 INFO L276 IsEmpty]: Start isEmpty. Operand 97 states and 112 transitions. [2022-07-12 06:19:21,649 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 46 [2022-07-12 06:19:21,649 INFO L187 NwaCegarLoop]: Found error trace [2022-07-12 06:19:21,649 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-12 06:19:21,649 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10 [2022-07-12 06:19:21,649 INFO L420 AbstractCegarLoop]: === Iteration 12 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-12 06:19:21,650 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-12 06:19:21,650 INFO L85 PathProgramCache]: Analyzing trace with hash -387767708, now seen corresponding path program 1 times [2022-07-12 06:19:21,650 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-12 06:19:21,650 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [15445109] [2022-07-12 06:19:21,650 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-12 06:19:21,650 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-12 06:19:21,673 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-12 06:19:21,714 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2022-07-12 06:19:21,716 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-12 06:19:21,717 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 29 [2022-07-12 06:19:21,717 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-12 06:19:21,730 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 34 [2022-07-12 06:19:21,732 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-12 06:19:21,733 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-07-12 06:19:21,733 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-12 06:19:21,733 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [15445109] [2022-07-12 06:19:21,733 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [15445109] provided 1 perfect and 0 imperfect interpolant sequences [2022-07-12 06:19:21,733 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-07-12 06:19:21,733 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2022-07-12 06:19:21,733 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2142110277] [2022-07-12 06:19:21,734 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-07-12 06:19:21,734 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2022-07-12 06:19:21,734 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-12 06:19:21,734 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2022-07-12 06:19:21,735 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2022-07-12 06:19:21,735 INFO L87 Difference]: Start difference. First operand 97 states and 112 transitions. Second operand has 6 states, 6 states have (on average 6.333333333333333) internal successors, (38), 5 states have internal predecessors, (38), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2022-07-12 06:19:21,795 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-12 06:19:21,795 INFO L93 Difference]: Finished difference Result 162 states and 193 transitions. [2022-07-12 06:19:21,796 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2022-07-12 06:19:21,796 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 6.333333333333333) internal successors, (38), 5 states have internal predecessors, (38), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 45 [2022-07-12 06:19:21,796 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-12 06:19:21,796 INFO L225 Difference]: With dead ends: 162 [2022-07-12 06:19:21,797 INFO L226 Difference]: Without dead ends: 0 [2022-07-12 06:19:21,797 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 16 GetRequests, 9 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2022-07-12 06:19:21,797 INFO L413 NwaCegarLoop]: 53 mSDtfsCounter, 79 mSDsluCounter, 123 mSDsCounter, 0 mSdLazyCounter, 60 mSolverCounterSat, 14 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 80 SdHoareTripleChecker+Valid, 176 SdHoareTripleChecker+Invalid, 74 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 14 IncrementalHoareTripleChecker+Valid, 60 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-07-12 06:19:21,798 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [80 Valid, 176 Invalid, 74 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [14 Valid, 60 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-07-12 06:19:21,798 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2022-07-12 06:19:21,798 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2022-07-12 06:19:21,798 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-07-12 06:19:21,798 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2022-07-12 06:19:21,799 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 45 [2022-07-12 06:19:21,799 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-12 06:19:21,799 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2022-07-12 06:19:21,799 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 6.333333333333333) internal successors, (38), 5 states have internal predecessors, (38), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2022-07-12 06:19:21,799 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2022-07-12 06:19:21,799 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2022-07-12 06:19:21,801 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2022-07-12 06:19:21,802 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable11 [2022-07-12 06:19:21,803 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2022-07-12 06:19:22,825 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 724 730) no Hoare annotation was computed. [2022-07-12 06:19:22,826 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 724 730) the Hoare annotation is: true [2022-07-12 06:19:22,826 INFO L902 garLoopResultBuilder]: At program point changeMethaneLevelENTRY(lines 83 94) the Hoare annotation is: true [2022-07-12 06:19:22,826 INFO L899 garLoopResultBuilder]: For program point L87-1(lines 83 94) no Hoare annotation was computed. [2022-07-12 06:19:22,826 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 83 94) no Hoare annotation was computed. [2022-07-12 06:19:22,826 INFO L899 garLoopResultBuilder]: For program point L704-1(lines 703 722) no Hoare annotation was computed. [2022-07-12 06:19:22,826 INFO L895 garLoopResultBuilder]: At program point L762(lines 757 764) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0)))) (and (or (not (= |old(~waterLevel~0)| 1)) .cse0) (or .cse0 (and (not (= ~pumpRunning~0 0)) (= |old(~waterLevel~0)| ~waterLevel~0))) (or .cse0 (= |old(~pumpRunning~0)| 0)))) [2022-07-12 06:19:22,826 INFO L895 garLoopResultBuilder]: At program point L746(line 746) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0)))) (and (or (and (= |timeShift_isHighWaterSensorDry_#res#1| 1) (= |timeShift_isHighWaterLevel_~tmp~6#1| 1)) (not (= |old(~waterLevel~0)| 1)) .cse0) (or .cse0 (= |old(~pumpRunning~0)| 0)) (or (and (= ~pumpRunning~0 0) (not (= 2 ~waterLevel~0)) (= |timeShift_processEnvironment_~tmp~5#1| 0) (= |old(~waterLevel~0)| ~waterLevel~0)) .cse0))) [2022-07-12 06:19:22,826 INFO L899 garLoopResultBuilder]: For program point timeShiftFINAL(lines 700 723) no Hoare annotation was computed. [2022-07-12 06:19:22,826 INFO L899 garLoopResultBuilder]: For program point L858(lines 858 878) no Hoare annotation was computed. [2022-07-12 06:19:22,826 INFO L895 garLoopResultBuilder]: At program point L751(line 751) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0)))) (and (or (not (= ~pumpRunning~0 0)) .cse0) (or (not (= |old(~pumpRunning~0)| 0)) .cse0))) [2022-07-12 06:19:22,826 INFO L899 garLoopResultBuilder]: For program point L623(line 623) no Hoare annotation was computed. [2022-07-12 06:19:22,826 INFO L895 garLoopResultBuilder]: At program point L751-1(lines 732 756) the Hoare annotation is: (let ((.cse2 (= ~pumpRunning~0 0)) (.cse4 (= |old(~pumpRunning~0)| 0))) (let ((.cse0 (not .cse4)) (.cse1 (not (= 1 ~systemActive~0))) (.cse3 (not .cse2))) (and (or .cse0 (not (= |old(~waterLevel~0)| 1)) .cse1 (and (= |timeShift_isHighWaterSensorDry_#res#1| 1) .cse2 (= |timeShift_isHighWaterLevel_~tmp~6#1| 1))) (or .cse3 .cse1 .cse4) (let ((.cse5 (= |old(~waterLevel~0)| ~waterLevel~0))) (or .cse0 (and (not (= 2 ~waterLevel~0)) (= |timeShift_processEnvironment_~tmp~5#1| 0) .cse5) .cse1 (and .cse3 .cse5)))))) [2022-07-12 06:19:22,826 INFO L899 garLoopResultBuilder]: For program point L140(lines 140 146) no Hoare annotation was computed. [2022-07-12 06:19:22,826 INFO L899 garLoopResultBuilder]: For program point L838(lines 838 842) no Hoare annotation was computed. [2022-07-12 06:19:22,826 INFO L899 garLoopResultBuilder]: For program point L838-2(lines 838 842) no Hoare annotation was computed. [2022-07-12 06:19:22,827 INFO L895 garLoopResultBuilder]: At program point L132(lines 127 135) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse4 (= |old(~pumpRunning~0)| 0))) (let ((.cse1 (not .cse4)) (.cse2 (not (= 1 ~systemActive~0))) (.cse3 (not .cse0))) (and (or (and (= |timeShift_isHighWaterSensorDry_#res#1| 1) .cse0 (= |timeShift_isHighWaterLevel_~tmp~6#1| 1) (= |timeShift_getWaterLevel_#res#1| 1)) .cse1 (not (= |old(~waterLevel~0)| 1)) .cse2) (or .cse3 .cse2 .cse4) (let ((.cse5 (= |old(~waterLevel~0)| ~waterLevel~0))) (or .cse1 .cse2 (and (not (= 2 |timeShift_getWaterLevel_#res#1|)) (not (= 2 ~waterLevel~0)) (= |timeShift_processEnvironment_~tmp~5#1| 0) .cse5) (and .cse3 .cse5)))))) [2022-07-12 06:19:22,827 INFO L895 garLoopResultBuilder]: At program point L789(lines 784 792) the Hoare annotation is: (let ((.cse1 (not (= |old(~pumpRunning~0)| 0))) (.cse0 (not (= 1 ~systemActive~0)))) (and (or (and (not (= ~pumpRunning~0 0)) (not (= |timeShift_isPumpRunning_#res#1| 0))) .cse0) (or .cse1 .cse0 (= |old(~waterLevel~0)| ~waterLevel~0)) (or .cse1 (not (= |old(~waterLevel~0)| 1)) .cse0))) [2022-07-12 06:19:22,827 INFO L895 garLoopResultBuilder]: At program point L145(lines 136 149) the Hoare annotation is: (let ((.cse0 (= |timeShift_isHighWaterSensorDry_#res#1| 1)) (.cse3 (not (= 1 ~systemActive~0)))) (and (let ((.cse1 (= ~pumpRunning~0 0)) (.cse2 (= |old(~waterLevel~0)| ~waterLevel~0))) (or (and .cse0 .cse1 (not (= 2 ~waterLevel~0)) .cse2) .cse3 (and .cse1 (= |timeShift_isHighWaterSensorDry_#res#1| 0) .cse2))) (or .cse3 (= |old(~pumpRunning~0)| 0)) (or .cse0 (not (= |old(~waterLevel~0)| 1)) .cse3))) [2022-07-12 06:19:22,827 INFO L895 garLoopResultBuilder]: At program point L624(lines 619 626) the Hoare annotation is: (not (= 1 ~systemActive~0)) [2022-07-12 06:19:22,827 INFO L899 garLoopResultBuilder]: For program point L711-1(lines 711 717) no Hoare annotation was computed. [2022-07-12 06:19:22,827 INFO L899 garLoopResultBuilder]: For program point L740(lines 740 748) no Hoare annotation was computed. [2022-07-12 06:19:22,827 INFO L899 garLoopResultBuilder]: For program point L868(lines 868 874) no Hoare annotation was computed. [2022-07-12 06:19:22,827 INFO L899 garLoopResultBuilder]: For program point L736(lines 736 753) no Hoare annotation was computed. [2022-07-12 06:19:22,827 INFO L899 garLoopResultBuilder]: For program point L864(lines 864 877) no Hoare annotation was computed. [2022-07-12 06:19:22,827 INFO L899 garLoopResultBuilder]: For program point L63(lines 63 67) no Hoare annotation was computed. [2022-07-12 06:19:22,827 INFO L895 garLoopResultBuilder]: At program point L864-1(lines 849 881) the Hoare annotation is: (let ((.cse1 (= ~pumpRunning~0 0)) (.cse3 (= 1 ~systemActive~0)) (.cse6 (= |old(~pumpRunning~0)| 0))) (let ((.cse2 (= |timeShift_processEnvironment_~tmp~5#1| 0)) (.cse0 (not .cse6)) (.cse4 (not .cse3)) (.cse5 (not .cse1))) (and (or .cse0 (and (= |timeShift_isHighWaterSensorDry_#res#1| 1) .cse1 .cse2 (= |timeShift_isHighWaterLevel_~tmp~6#1| 1) .cse3) (not (= |old(~waterLevel~0)| 1)) .cse4) (or .cse5 .cse4 .cse6) (let ((.cse7 (= |old(~waterLevel~0)| ~waterLevel~0))) (or (and .cse1 (not (= 2 ~waterLevel~0)) .cse2 .cse3 .cse7) .cse0 .cse4 (and .cse5 .cse7)))))) [2022-07-12 06:19:22,827 INFO L895 garLoopResultBuilder]: At program point L63-2(lines 59 70) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0)))) (and (or (not (= ~pumpRunning~0 0)) .cse0) (or (not (= |old(~pumpRunning~0)| 0)) .cse0))) [2022-07-12 06:19:22,827 INFO L895 garLoopResultBuilder]: At program point L856(line 856) the Hoare annotation is: (let ((.cse2 (= ~pumpRunning~0 0)) (.cse4 (= |old(~pumpRunning~0)| 0))) (let ((.cse0 (not .cse4)) (.cse1 (not (= 1 ~systemActive~0))) (.cse3 (not .cse2))) (and (or .cse0 (not (= |old(~waterLevel~0)| 1)) .cse1 (and (= |timeShift_isHighWaterSensorDry_#res#1| 1) .cse2 (= |timeShift_isHighWaterLevel_~tmp~6#1| 1))) (or .cse3 .cse1 .cse4) (let ((.cse5 (= |old(~waterLevel~0)| ~waterLevel~0))) (or .cse0 (and (not (= 2 ~waterLevel~0)) (= |timeShift_processEnvironment_~tmp~5#1| 0) .cse5) .cse1 (and .cse3 .cse5)))))) [2022-07-12 06:19:22,827 INFO L899 garLoopResultBuilder]: For program point L856-1(line 856) no Hoare annotation was computed. [2022-07-12 06:19:22,827 INFO L895 garLoopResultBuilder]: At program point timeShiftENTRY(lines 700 723) the Hoare annotation is: (let ((.cse1 (= |old(~pumpRunning~0)| 0)) (.cse2 (= ~pumpRunning~0 0)) (.cse3 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse0 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 (and (not .cse2) .cse3)) (or (not .cse1) (and .cse2 .cse3) .cse0))) [2022-07-12 06:19:22,827 INFO L895 garLoopResultBuilder]: At program point L844(lines 829 847) the Hoare annotation is: (let ((.cse4 (= 1 ~systemActive~0))) (let ((.cse0 (not .cse4)) (.cse2 (= |timeShift_isHighWaterLevel_~tmp___0~1#1| 0)) (.cse1 (= |timeShift_isHighWaterLevel_#res#1| 0))) (and (or .cse0 (= |old(~pumpRunning~0)| 0)) (or (not (= |old(~waterLevel~0)| 1)) .cse0 (and (= |timeShift_isHighWaterSensorDry_#res#1| 1) .cse1 (= |timeShift_isHighWaterLevel_~tmp~6#1| 1) .cse2)) (let ((.cse3 (= ~pumpRunning~0 0)) (.cse5 (= |old(~waterLevel~0)| ~waterLevel~0))) (or .cse0 (and .cse3 (not (= 2 ~waterLevel~0)) .cse4 .cse5) (and .cse3 (not .cse2) .cse4 .cse5 (not .cse1))))))) [2022-07-12 06:19:22,828 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 700 723) no Hoare annotation was computed. [2022-07-12 06:19:22,828 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 623) no Hoare annotation was computed. [2022-07-12 06:19:22,828 INFO L902 garLoopResultBuilder]: At program point L163-2(lines 163 177) the Hoare annotation is: true [2022-07-12 06:19:22,828 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 153 182) no Hoare annotation was computed. [2022-07-12 06:19:22,828 INFO L902 garLoopResultBuilder]: At program point L159(line 159) the Hoare annotation is: true [2022-07-12 06:19:22,828 INFO L899 garLoopResultBuilder]: For program point L159-1(line 159) no Hoare annotation was computed. [2022-07-12 06:19:22,828 INFO L902 garLoopResultBuilder]: At program point cleanupENTRY(lines 153 182) the Hoare annotation is: true [2022-07-12 06:19:22,828 INFO L902 garLoopResultBuilder]: At program point L178(lines 153 182) the Hoare annotation is: true [2022-07-12 06:19:22,828 INFO L899 garLoopResultBuilder]: For program point L174(line 174) no Hoare annotation was computed. [2022-07-12 06:19:22,828 INFO L899 garLoopResultBuilder]: For program point L167(lines 167 171) no Hoare annotation was computed. [2022-07-12 06:19:22,828 INFO L902 garLoopResultBuilder]: At program point L167-1(lines 167 171) the Hoare annotation is: true [2022-07-12 06:19:22,828 INFO L899 garLoopResultBuilder]: For program point L164(line 164) no Hoare annotation was computed. [2022-07-12 06:19:22,828 INFO L902 garLoopResultBuilder]: At program point isMethaneLevelCriticalENTRY(lines 95 103) the Hoare annotation is: true [2022-07-12 06:19:22,828 INFO L899 garLoopResultBuilder]: For program point isMethaneLevelCriticalFINAL(lines 95 103) no Hoare annotation was computed. [2022-07-12 06:19:22,828 INFO L899 garLoopResultBuilder]: For program point isMethaneLevelCriticalEXIT(lines 95 103) no Hoare annotation was computed. [2022-07-12 06:19:22,828 INFO L895 garLoopResultBuilder]: At program point L684(lines 637 685) the Hoare annotation is: false [2022-07-12 06:19:22,828 INFO L899 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2022-07-12 06:19:22,828 INFO L899 garLoopResultBuilder]: For program point L639(lines 638 683) no Hoare annotation was computed. [2022-07-12 06:19:22,828 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startENTRY(line -1) no Hoare annotation was computed. [2022-07-12 06:19:22,828 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2022-07-12 06:19:22,828 INFO L899 garLoopResultBuilder]: For program point L668(lines 668 679) no Hoare annotation was computed. [2022-07-12 06:19:22,828 INFO L895 garLoopResultBuilder]: At program point L660(line 660) the Hoare annotation is: (and (= |ULTIMATE.start_main_~tmp~0#1| 1) (= 1 ~systemActive~0) (= |ULTIMATE.start_valid_product_#res#1| ~systemActive~0) (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) [2022-07-12 06:19:22,829 INFO L899 garLoopResultBuilder]: For program point L239(lines 239 246) no Hoare annotation was computed. [2022-07-12 06:19:22,829 INFO L899 garLoopResultBuilder]: For program point L239-2(lines 239 246) no Hoare annotation was computed. [2022-07-12 06:19:22,829 INFO L895 garLoopResultBuilder]: At program point L681(lines 638 683) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_main_~tmp~0#1| 1)) (.cse1 (= 1 ~systemActive~0)) (.cse2 (= |ULTIMATE.start_valid_product_#res#1| ~systemActive~0)) (.cse3 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and (not (= 2 ~waterLevel~0)) .cse0 .cse1 .cse2 .cse3) (and (not (= ~pumpRunning~0 0)) .cse0 .cse1 .cse2 .cse3))) [2022-07-12 06:19:22,829 INFO L899 garLoopResultBuilder]: For program point L648(lines 648 654) no Hoare annotation was computed. [2022-07-12 06:19:22,829 INFO L899 garLoopResultBuilder]: For program point L648-1(lines 648 654) no Hoare annotation was computed. [2022-07-12 06:19:22,829 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2022-07-12 06:19:22,829 INFO L899 garLoopResultBuilder]: For program point L640(lines 640 644) no Hoare annotation was computed. [2022-07-12 06:19:22,829 INFO L902 garLoopResultBuilder]: At program point L223(lines 216 225) the Hoare annotation is: true [2022-07-12 06:19:22,829 INFO L902 garLoopResultBuilder]: At program point L248(lines 229 251) the Hoare annotation is: true [2022-07-12 06:19:22,829 INFO L895 garLoopResultBuilder]: At program point L913(lines 908 916) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= 1 ~systemActive~0) (= |ULTIMATE.start_valid_product_#res#1| ~systemActive~0) (= ~waterLevel~0 1)) [2022-07-12 06:19:22,829 INFO L895 garLoopResultBuilder]: At program point L905(lines 901 907) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2022-07-12 06:19:22,829 INFO L899 garLoopResultBuilder]: For program point L674(lines 674 678) no Hoare annotation was computed. [2022-07-12 06:19:22,829 INFO L895 garLoopResultBuilder]: At program point L674-2(lines 668 679) the Hoare annotation is: (and (= |ULTIMATE.start_main_~tmp~0#1| 1) (= 1 ~systemActive~0) (= |ULTIMATE.start_valid_product_#res#1| ~systemActive~0) (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) [2022-07-12 06:19:22,829 INFO L895 garLoopResultBuilder]: At program point L212(lines 208 214) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_main_~tmp~0#1| 1) (= 1 ~systemActive~0) (= |ULTIMATE.start_valid_product_#res#1| ~systemActive~0) (= ~waterLevel~0 1)) [2022-07-12 06:19:22,829 INFO L899 garLoopResultBuilder]: For program point L658(lines 658 664) no Hoare annotation was computed. [2022-07-12 06:19:22,829 INFO L899 garLoopResultBuilder]: For program point L658-1(lines 658 664) no Hoare annotation was computed. [2022-07-12 06:19:22,829 INFO L902 garLoopResultBuilder]: At program point L687(lines 628 691) the Hoare annotation is: true [2022-07-12 06:19:22,829 INFO L895 garLoopResultBuilder]: At program point L650(line 650) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_main_~tmp~0#1| 1)) (.cse1 (= 1 ~systemActive~0)) (.cse2 (= |ULTIMATE.start_valid_product_#res#1| ~systemActive~0)) (.cse3 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and (not (= 2 ~waterLevel~0)) .cse0 .cse1 .cse2 .cse3) (and (not (= ~pumpRunning~0 0)) .cse0 .cse1 .cse2 .cse3))) [2022-07-12 06:19:22,829 INFO L895 garLoopResultBuilder]: At program point L898(lines 894 900) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2022-07-12 06:19:22,829 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 71 82) no Hoare annotation was computed. [2022-07-12 06:19:22,829 INFO L899 garLoopResultBuilder]: For program point L75-1(lines 71 82) no Hoare annotation was computed. [2022-07-12 06:19:22,830 INFO L895 garLoopResultBuilder]: At program point waterRiseENTRY(lines 71 82) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (= |old(~waterLevel~0)| ~waterLevel~0))) (and (or .cse0 .cse1 (= |old(~waterLevel~0)| 2)) (or (= ~pumpRunning~0 0) .cse0 .cse1))) [2022-07-12 06:19:22,833 INFO L356 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-12 06:19:22,835 INFO L176 ceAbstractionStarter]: Computing trace abstraction results [2022-07-12 06:19:22,864 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 12.07 06:19:22 BoogieIcfgContainer [2022-07-12 06:19:22,864 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2022-07-12 06:19:22,865 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2022-07-12 06:19:22,865 INFO L271 PluginConnector]: Initializing Witness Printer... [2022-07-12 06:19:22,865 INFO L275 PluginConnector]: Witness Printer initialized [2022-07-12 06:19:22,865 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 12.07 06:19:19" (3/4) ... [2022-07-12 06:19:22,884 INFO L137 WitnessPrinter]: Generating witness for correct program [2022-07-12 06:19:22,888 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2022-07-12 06:19:22,888 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2022-07-12 06:19:22,888 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2022-07-12 06:19:22,888 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2022-07-12 06:19:22,889 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneLevelCritical [2022-07-12 06:19:22,889 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2022-07-12 06:19:22,893 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 50 nodes and edges [2022-07-12 06:19:22,893 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 22 nodes and edges [2022-07-12 06:19:22,893 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 11 nodes and edges [2022-07-12 06:19:22,894 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2022-07-12 06:19:22,894 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2022-07-12 06:19:22,894 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2022-07-12 06:19:22,894 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2022-07-12 06:19:22,914 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((pumpRunning == 0 && 1 == systemActive) && \result == systemActive) && waterLevel == 1 [2022-07-12 06:19:22,914 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((pumpRunning == 0 && tmp == 1) && 1 == systemActive) && \result == systemActive) && waterLevel == 1 [2022-07-12 06:19:22,914 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!(2 == waterLevel) && tmp == 1) && 1 == systemActive) && \result == systemActive) && splverifierCounter == 0) || ((((!(pumpRunning == 0) && tmp == 1) && 1 == systemActive) && \result == systemActive) && splverifierCounter == 0) [2022-07-12 06:19:22,915 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (!(pumpRunning == 0) || !(1 == systemActive)) && (!(\old(pumpRunning) == 0) || !(1 == systemActive)) [2022-07-12 06:19:22,915 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || ((\result == 1 && pumpRunning == 0) && tmp == 1)) && ((!(pumpRunning == 0) || !(1 == systemActive)) || \old(pumpRunning) == 0)) && (((!(\old(pumpRunning) == 0) || ((!(2 == waterLevel) && tmp == 0) && \old(waterLevel) == waterLevel)) || !(1 == systemActive)) || (!(pumpRunning == 0) && \old(waterLevel) == waterLevel)) [2022-07-12 06:19:22,916 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!(\old(pumpRunning) == 0) || ((((\result == 1 && pumpRunning == 0) && tmp == 0) && tmp == 1) && 1 == systemActive)) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) && ((!(pumpRunning == 0) || !(1 == systemActive)) || \old(pumpRunning) == 0)) && (((((((pumpRunning == 0 && !(2 == waterLevel)) && tmp == 0) && 1 == systemActive) && \old(waterLevel) == waterLevel) || !(\old(pumpRunning) == 0)) || !(1 == systemActive)) || (!(pumpRunning == 0) && \old(waterLevel) == waterLevel)) [2022-07-12 06:19:22,916 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((\result == 1 && pumpRunning == 0) && tmp == 1) && \result == 1) || !(\old(pumpRunning) == 0)) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) && ((!(pumpRunning == 0) || !(1 == systemActive)) || \old(pumpRunning) == 0)) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || (((!(2 == \result) && !(2 == waterLevel)) && tmp == 0) && \old(waterLevel) == waterLevel)) || (!(pumpRunning == 0) && \old(waterLevel) == waterLevel)) [2022-07-12 06:19:22,916 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((\result == 1 && pumpRunning == 0) && !(2 == waterLevel)) && \old(waterLevel) == waterLevel) || !(1 == systemActive)) || ((pumpRunning == 0 && \result == 0) && \old(waterLevel) == waterLevel)) && (!(1 == systemActive) || \old(pumpRunning) == 0)) && ((\result == 1 || !(\old(waterLevel) == 1)) || !(1 == systemActive)) [2022-07-12 06:19:22,916 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(1 == systemActive) || \old(pumpRunning) == 0) && ((!(\old(waterLevel) == 1) || !(1 == systemActive)) || (((\result == 1 && \result == 0) && tmp == 1) && tmp___0 == 0))) && ((!(1 == systemActive) || (((pumpRunning == 0 && !(2 == waterLevel)) && 1 == systemActive) && \old(waterLevel) == waterLevel)) || ((((pumpRunning == 0 && !(tmp___0 == 0)) && 1 == systemActive) && \old(waterLevel) == waterLevel) && !(\result == 0))) [2022-07-12 06:19:22,917 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(pumpRunning == 0) && !(\result == 0)) || !(1 == systemActive)) && ((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || \old(waterLevel) == waterLevel)) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) [2022-07-12 06:19:22,917 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(\old(waterLevel) == 1) || !(1 == systemActive)) && (!(1 == systemActive) || (!(pumpRunning == 0) && \old(waterLevel) == waterLevel))) && (!(1 == systemActive) || \old(pumpRunning) == 0) [2022-07-12 06:19:22,940 INFO L141 WitnessManager]: Wrote witness to /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/witness.graphml [2022-07-12 06:19:22,941 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2022-07-12 06:19:22,941 INFO L158 Benchmark]: Toolchain (without parser) took 4015.01ms. Allocated memory was 90.2MB in the beginning and 134.2MB in the end (delta: 44.0MB). Free memory was 49.7MB in the beginning and 85.1MB in the end (delta: -35.4MB). Peak memory consumption was 6.7MB. Max. memory is 16.1GB. [2022-07-12 06:19:22,941 INFO L158 Benchmark]: CDTParser took 0.19ms. Allocated memory is still 90.2MB. Free memory is still 66.7MB. There was no memory consumed. Max. memory is 16.1GB. [2022-07-12 06:19:22,942 INFO L158 Benchmark]: CACSL2BoogieTranslator took 428.84ms. Allocated memory is still 90.2MB. Free memory was 49.4MB in the beginning and 56.4MB in the end (delta: -7.0MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. [2022-07-12 06:19:22,942 INFO L158 Benchmark]: Boogie Procedure Inliner took 44.43ms. Allocated memory is still 90.2MB. Free memory was 56.4MB in the beginning and 54.0MB in the end (delta: 2.4MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. [2022-07-12 06:19:22,942 INFO L158 Benchmark]: Boogie Preprocessor took 32.10ms. Allocated memory is still 90.2MB. Free memory was 54.0MB in the beginning and 52.6MB in the end (delta: 1.4MB). There was no memory consumed. Max. memory is 16.1GB. [2022-07-12 06:19:22,942 INFO L158 Benchmark]: RCFGBuilder took 359.89ms. Allocated memory is still 90.2MB. Free memory was 52.6MB in the beginning and 36.9MB in the end (delta: 15.7MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. [2022-07-12 06:19:22,942 INFO L158 Benchmark]: TraceAbstraction took 3067.54ms. Allocated memory was 90.2MB in the beginning and 134.2MB in the end (delta: 44.0MB). Free memory was 36.2MB in the beginning and 90.3MB in the end (delta: -54.2MB). Peak memory consumption was 40.7MB. Max. memory is 16.1GB. [2022-07-12 06:19:22,943 INFO L158 Benchmark]: Witness Printer took 76.31ms. Allocated memory is still 134.2MB. Free memory was 90.3MB in the beginning and 85.1MB in the end (delta: 5.2MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. [2022-07-12 06:19:22,944 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.19ms. Allocated memory is still 90.2MB. Free memory is still 66.7MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 428.84ms. Allocated memory is still 90.2MB. Free memory was 49.4MB in the beginning and 56.4MB in the end (delta: -7.0MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 44.43ms. Allocated memory is still 90.2MB. Free memory was 56.4MB in the beginning and 54.0MB in the end (delta: 2.4MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. * Boogie Preprocessor took 32.10ms. Allocated memory is still 90.2MB. Free memory was 54.0MB in the beginning and 52.6MB in the end (delta: 1.4MB). There was no memory consumed. Max. memory is 16.1GB. * RCFGBuilder took 359.89ms. Allocated memory is still 90.2MB. Free memory was 52.6MB in the beginning and 36.9MB in the end (delta: 15.7MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. * TraceAbstraction took 3067.54ms. Allocated memory was 90.2MB in the beginning and 134.2MB in the end (delta: 44.0MB). Free memory was 36.2MB in the beginning and 90.3MB in the end (delta: -54.2MB). Peak memory consumption was 40.7MB. Max. memory is 16.1GB. * Witness Printer took 76.31ms. Allocated memory is still 134.2MB. Free memory was 90.3MB in the beginning and 85.1MB in the end (delta: 5.2MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 623]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 7 procedures, 76 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 3.0s, OverallIterations: 12, TraceHistogramMax: 1, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 0.7s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 1.0s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 700 SdHoareTripleChecker+Valid, 0.4s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 687 mSDsluCounter, 2610 SdHoareTripleChecker+Invalid, 0.3s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 1684 mSDsCounter, 92 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 523 IncrementalHoareTripleChecker+Invalid, 615 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 92 mSolverCounterUnsat, 926 mSDtfsCounter, 523 mSolverCounterSat, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 128 GetRequests, 69 SyntacticMatches, 1 SemanticMatches, 58 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 27 ImplicationChecksByTransitivity, 0.2s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=179occurred in iteration=6, InterpolantAutomatonStates: 64, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.1s AutomataMinimizationTime, 12 MinimizatonAttempts, 79 StatesRemovedByMinimization, 7 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 34 LocationsWithAnnotation, 502 PreInvPairs, 600 NumberOfFragments, 763 HoareAnnotationTreeSize, 502 FomulaSimplifications, 90 FormulaSimplificationTreeSizeReduction, 0.1s HoareSimplificationTime, 34 FomulaSimplificationsInter, 4363 FormulaSimplificationTreeSizeReductionInter, 0.9s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.0s SsaConstructionTime, 0.2s SatisfiabilityAnalysisTime, 0.5s InterpolantComputationTime, 452 NumberOfCodeBlocks, 452 NumberOfCodeBlocksAsserted, 12 NumberOfCheckSat, 440 ConstructedInterpolants, 0 QuantifiedInterpolants, 738 SizeOfPredicates, 0 NumberOfNonLiveVariables, 0 ConjunctsInSsa, 0 ConjunctsInUnsatCore, 12 InterpolantComputations, 12 PerfectInterpolantSequences, 0/0 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 908]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && 1 == systemActive) && \result == systemActive) && waterLevel == 1 - InvariantResult [Line: 136]: Loop Invariant Derived loop invariant: ((((((\result == 1 && pumpRunning == 0) && !(2 == waterLevel)) && \old(waterLevel) == waterLevel) || !(1 == systemActive)) || ((pumpRunning == 0 && \result == 0) && \old(waterLevel) == waterLevel)) && (!(1 == systemActive) || \old(pumpRunning) == 0)) && ((\result == 1 || !(\old(waterLevel) == 1)) || !(1 == systemActive)) - InvariantResult [Line: 163]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 901]: Loop Invariant Derived loop invariant: (pumpRunning == 0 && 1 == systemActive) && waterLevel == 1 - InvariantResult [Line: 628]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 637]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 894]: Loop Invariant Derived loop invariant: (pumpRunning == 0 && 1 == systemActive) && waterLevel == 1 - InvariantResult [Line: 829]: Loop Invariant Derived loop invariant: ((!(1 == systemActive) || \old(pumpRunning) == 0) && ((!(\old(waterLevel) == 1) || !(1 == systemActive)) || (((\result == 1 && \result == 0) && tmp == 1) && tmp___0 == 0))) && ((!(1 == systemActive) || (((pumpRunning == 0 && !(2 == waterLevel)) && 1 == systemActive) && \old(waterLevel) == waterLevel)) || ((((pumpRunning == 0 && !(tmp___0 == 0)) && 1 == systemActive) && \old(waterLevel) == waterLevel) && !(\result == 0))) - InvariantResult [Line: 208]: Loop Invariant Derived loop invariant: (((pumpRunning == 0 && tmp == 1) && 1 == systemActive) && \result == systemActive) && waterLevel == 1 - InvariantResult [Line: 784]: Loop Invariant Derived loop invariant: (((!(pumpRunning == 0) && !(\result == 0)) || !(1 == systemActive)) && ((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || \old(waterLevel) == waterLevel)) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) - InvariantResult [Line: 757]: Loop Invariant Derived loop invariant: ((!(\old(waterLevel) == 1) || !(1 == systemActive)) && (!(1 == systemActive) || (!(pumpRunning == 0) && \old(waterLevel) == waterLevel))) && (!(1 == systemActive) || \old(pumpRunning) == 0) - InvariantResult [Line: 127]: Loop Invariant Derived loop invariant: (((((((\result == 1 && pumpRunning == 0) && tmp == 1) && \result == 1) || !(\old(pumpRunning) == 0)) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) && ((!(pumpRunning == 0) || !(1 == systemActive)) || \old(pumpRunning) == 0)) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || (((!(2 == \result) && !(2 == waterLevel)) && tmp == 0) && \old(waterLevel) == waterLevel)) || (!(pumpRunning == 0) && \old(waterLevel) == waterLevel)) - InvariantResult [Line: 732]: Loop Invariant Derived loop invariant: ((((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || ((\result == 1 && pumpRunning == 0) && tmp == 1)) && ((!(pumpRunning == 0) || !(1 == systemActive)) || \old(pumpRunning) == 0)) && (((!(\old(pumpRunning) == 0) || ((!(2 == waterLevel) && tmp == 0) && \old(waterLevel) == waterLevel)) || !(1 == systemActive)) || (!(pumpRunning == 0) && \old(waterLevel) == waterLevel)) - InvariantResult [Line: 638]: Loop Invariant Derived loop invariant: ((((!(2 == waterLevel) && tmp == 1) && 1 == systemActive) && \result == systemActive) && splverifierCounter == 0) || ((((!(pumpRunning == 0) && tmp == 1) && 1 == systemActive) && \result == systemActive) && splverifierCounter == 0) - InvariantResult [Line: 153]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 59]: Loop Invariant Derived loop invariant: (!(pumpRunning == 0) || !(1 == systemActive)) && (!(\old(pumpRunning) == 0) || !(1 == systemActive)) - InvariantResult [Line: 229]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 849]: Loop Invariant Derived loop invariant: ((((!(\old(pumpRunning) == 0) || ((((\result == 1 && pumpRunning == 0) && tmp == 0) && tmp == 1) && 1 == systemActive)) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) && ((!(pumpRunning == 0) || !(1 == systemActive)) || \old(pumpRunning) == 0)) && (((((((pumpRunning == 0 && !(2 == waterLevel)) && tmp == 0) && 1 == systemActive) && \old(waterLevel) == waterLevel) || !(\old(pumpRunning) == 0)) || !(1 == systemActive)) || (!(pumpRunning == 0) && \old(waterLevel) == waterLevel)) - InvariantResult [Line: 619]: Loop Invariant Derived loop invariant: !(1 == systemActive) - InvariantResult [Line: 216]: Loop Invariant Derived loop invariant: 1 RESULT: Ultimate proved your program to be correct! [2022-07-12 06:19:22,977 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE