./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/product-lines/minepump_spec5_product53.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version f4b24e32 Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/config -Xmx15G -Xms4m -jar /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data -tc /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/AutomizerReach.xml -i ../sv-benchmarks/c/product-lines/minepump_spec5_product53.cil.c -s /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash e7a194b3d6e079d2329a0d70eaa59b34ff3d58300de8b046ef1cd7cff7f67b94 --- Real Ultimate output --- This is Ultimate 0.2.2-?-f4b24e3 [2022-07-13 18:01:02,289 INFO L177 SettingsManager]: Resetting all preferences to default values... [2022-07-13 18:01:02,291 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2022-07-13 18:01:02,328 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2022-07-13 18:01:02,329 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2022-07-13 18:01:02,330 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2022-07-13 18:01:02,331 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2022-07-13 18:01:02,333 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2022-07-13 18:01:02,334 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2022-07-13 18:01:02,337 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2022-07-13 18:01:02,338 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2022-07-13 18:01:02,340 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2022-07-13 18:01:02,340 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2022-07-13 18:01:02,341 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2022-07-13 18:01:02,342 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2022-07-13 18:01:02,345 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2022-07-13 18:01:02,346 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2022-07-13 18:01:02,347 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2022-07-13 18:01:02,348 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2022-07-13 18:01:02,352 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2022-07-13 18:01:02,354 INFO L181 SettingsManager]: Resetting HornVerifier preferences to default values [2022-07-13 18:01:02,355 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2022-07-13 18:01:02,355 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2022-07-13 18:01:02,356 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2022-07-13 18:01:02,357 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2022-07-13 18:01:02,362 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2022-07-13 18:01:02,362 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2022-07-13 18:01:02,362 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2022-07-13 18:01:02,363 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2022-07-13 18:01:02,364 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2022-07-13 18:01:02,364 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2022-07-13 18:01:02,364 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2022-07-13 18:01:02,366 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2022-07-13 18:01:02,366 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2022-07-13 18:01:02,367 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2022-07-13 18:01:02,367 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2022-07-13 18:01:02,367 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2022-07-13 18:01:02,368 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2022-07-13 18:01:02,368 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2022-07-13 18:01:02,368 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2022-07-13 18:01:02,369 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2022-07-13 18:01:02,370 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2022-07-13 18:01:02,371 INFO L101 SettingsManager]: Beginning loading settings from /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf [2022-07-13 18:01:02,394 INFO L113 SettingsManager]: Loading preferences was successful [2022-07-13 18:01:02,395 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2022-07-13 18:01:02,395 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2022-07-13 18:01:02,395 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2022-07-13 18:01:02,395 INFO L136 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2022-07-13 18:01:02,396 INFO L138 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2022-07-13 18:01:02,396 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2022-07-13 18:01:02,396 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2022-07-13 18:01:02,396 INFO L138 SettingsManager]: * Use SBE=true [2022-07-13 18:01:02,397 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2022-07-13 18:01:02,397 INFO L138 SettingsManager]: * sizeof long=4 [2022-07-13 18:01:02,397 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2022-07-13 18:01:02,397 INFO L138 SettingsManager]: * sizeof POINTER=4 [2022-07-13 18:01:02,398 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2022-07-13 18:01:02,398 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2022-07-13 18:01:02,398 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2022-07-13 18:01:02,398 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2022-07-13 18:01:02,398 INFO L138 SettingsManager]: * sizeof long double=12 [2022-07-13 18:01:02,398 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2022-07-13 18:01:02,399 INFO L138 SettingsManager]: * Use constant arrays=true [2022-07-13 18:01:02,399 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2022-07-13 18:01:02,400 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2022-07-13 18:01:02,400 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2022-07-13 18:01:02,400 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2022-07-13 18:01:02,400 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2022-07-13 18:01:02,400 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2022-07-13 18:01:02,400 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2022-07-13 18:01:02,400 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2022-07-13 18:01:02,401 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2022-07-13 18:01:02,401 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2022-07-13 18:01:02,401 INFO L138 SettingsManager]: * Apply one-shot large block encoding in concurrent analysis=false [2022-07-13 18:01:02,401 INFO L138 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2022-07-13 18:01:02,401 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2022-07-13 18:01:02,401 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> e7a194b3d6e079d2329a0d70eaa59b34ff3d58300de8b046ef1cd7cff7f67b94 [2022-07-13 18:01:02,581 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2022-07-13 18:01:02,598 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2022-07-13 18:01:02,600 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2022-07-13 18:01:02,601 INFO L271 PluginConnector]: Initializing CDTParser... [2022-07-13 18:01:02,602 INFO L275 PluginConnector]: CDTParser initialized [2022-07-13 18:01:02,603 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../sv-benchmarks/c/product-lines/minepump_spec5_product53.cil.c [2022-07-13 18:01:02,647 INFO L220 CDTParser]: Created temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/b2a878aee/37a1f52b3ed44cef9b30bdad143c81fe/FLAG0352a4dcc [2022-07-13 18:01:03,265 INFO L306 CDTParser]: Found 1 translation units. [2022-07-13 18:01:03,269 INFO L160 CDTParser]: Scanning /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec5_product53.cil.c [2022-07-13 18:01:03,308 INFO L349 CDTParser]: About to delete temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/b2a878aee/37a1f52b3ed44cef9b30bdad143c81fe/FLAG0352a4dcc [2022-07-13 18:01:03,628 INFO L357 CDTParser]: Successfully deleted /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/b2a878aee/37a1f52b3ed44cef9b30bdad143c81fe [2022-07-13 18:01:03,629 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2022-07-13 18:01:03,630 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2022-07-13 18:01:03,631 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2022-07-13 18:01:03,631 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2022-07-13 18:01:03,633 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2022-07-13 18:01:03,641 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 13.07 06:01:03" (1/1) ... [2022-07-13 18:01:03,642 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@4d329a91 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.07 06:01:03, skipping insertion in model container [2022-07-13 18:01:03,642 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 13.07 06:01:03" (1/1) ... [2022-07-13 18:01:03,647 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2022-07-13 18:01:03,729 INFO L178 MainTranslator]: Built tables and reachable declarations [2022-07-13 18:01:04,176 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec5_product53.cil.c[17915,17928] [2022-07-13 18:01:04,186 INFO L210 PostProcessor]: Analyzing one entry point: main [2022-07-13 18:01:04,200 INFO L203 MainTranslator]: Completed pre-run [2022-07-13 18:01:04,289 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec5_product53.cil.c[17915,17928] [2022-07-13 18:01:04,296 INFO L210 PostProcessor]: Analyzing one entry point: main [2022-07-13 18:01:04,326 INFO L208 MainTranslator]: Completed translation [2022-07-13 18:01:04,328 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.07 06:01:04 WrapperNode [2022-07-13 18:01:04,328 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2022-07-13 18:01:04,330 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2022-07-13 18:01:04,330 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2022-07-13 18:01:04,330 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2022-07-13 18:01:04,334 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.07 06:01:04" (1/1) ... [2022-07-13 18:01:04,358 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.07 06:01:04" (1/1) ... [2022-07-13 18:01:04,394 INFO L137 Inliner]: procedures = 58, calls = 161, calls flagged for inlining = 25, calls inlined = 22, statements flattened = 286 [2022-07-13 18:01:04,394 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2022-07-13 18:01:04,395 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2022-07-13 18:01:04,395 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2022-07-13 18:01:04,395 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2022-07-13 18:01:04,401 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.07 06:01:04" (1/1) ... [2022-07-13 18:01:04,401 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.07 06:01:04" (1/1) ... [2022-07-13 18:01:04,408 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.07 06:01:04" (1/1) ... [2022-07-13 18:01:04,409 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.07 06:01:04" (1/1) ... [2022-07-13 18:01:04,420 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.07 06:01:04" (1/1) ... [2022-07-13 18:01:04,426 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.07 06:01:04" (1/1) ... [2022-07-13 18:01:04,430 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.07 06:01:04" (1/1) ... [2022-07-13 18:01:04,432 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2022-07-13 18:01:04,433 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2022-07-13 18:01:04,434 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2022-07-13 18:01:04,434 INFO L275 PluginConnector]: RCFGBuilder initialized [2022-07-13 18:01:04,435 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.07 06:01:04" (1/1) ... [2022-07-13 18:01:04,440 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2022-07-13 18:01:04,448 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2022-07-13 18:01:04,481 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2022-07-13 18:01:04,522 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2022-07-13 18:01:04,548 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2022-07-13 18:01:04,548 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2022-07-13 18:01:04,549 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2022-07-13 18:01:04,549 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2022-07-13 18:01:04,549 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2022-07-13 18:01:04,549 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2022-07-13 18:01:04,549 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2022-07-13 18:01:04,549 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2022-07-13 18:01:04,549 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2022-07-13 18:01:04,549 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2022-07-13 18:01:04,550 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2022-07-13 18:01:04,550 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__lowWaterSensor [2022-07-13 18:01:04,550 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__lowWaterSensor [2022-07-13 18:01:04,550 INFO L130 BoogieDeclarations]: Found specification of procedure isPumpRunning [2022-07-13 18:01:04,550 INFO L138 BoogieDeclarations]: Found implementation of procedure isPumpRunning [2022-07-13 18:01:04,550 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2022-07-13 18:01:04,550 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2022-07-13 18:01:04,550 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2022-07-13 18:01:04,551 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2022-07-13 18:01:04,551 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2022-07-13 18:01:04,551 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2022-07-13 18:01:04,551 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2022-07-13 18:01:04,637 INFO L234 CfgBuilder]: Building ICFG [2022-07-13 18:01:04,638 INFO L260 CfgBuilder]: Building CFG for each procedure with an implementation [2022-07-13 18:01:04,868 INFO L275 CfgBuilder]: Performing block encoding [2022-07-13 18:01:04,872 INFO L294 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2022-07-13 18:01:04,879 INFO L299 CfgBuilder]: Removed 2 assume(true) statements. [2022-07-13 18:01:04,880 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 13.07 06:01:04 BoogieIcfgContainer [2022-07-13 18:01:04,880 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2022-07-13 18:01:04,882 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2022-07-13 18:01:04,882 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2022-07-13 18:01:04,884 INFO L275 PluginConnector]: TraceAbstraction initialized [2022-07-13 18:01:04,890 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 13.07 06:01:03" (1/3) ... [2022-07-13 18:01:04,891 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@4f2433b9 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 13.07 06:01:04, skipping insertion in model container [2022-07-13 18:01:04,891 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.07 06:01:04" (2/3) ... [2022-07-13 18:01:04,891 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@4f2433b9 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 13.07 06:01:04, skipping insertion in model container [2022-07-13 18:01:04,891 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 13.07 06:01:04" (3/3) ... [2022-07-13 18:01:04,899 INFO L111 eAbstractionObserver]: Analyzing ICFG minepump_spec5_product53.cil.c [2022-07-13 18:01:04,909 INFO L201 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2022-07-13 18:01:04,909 INFO L160 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2022-07-13 18:01:04,961 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2022-07-13 18:01:04,967 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=de.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings@59039650, mLbeIndependenceSettings=de.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings@e2e6bf9 [2022-07-13 18:01:04,967 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2022-07-13 18:01:04,972 INFO L276 IsEmpty]: Start isEmpty. Operand has 105 states, 78 states have (on average 1.3717948717948718) internal successors, (107), 88 states have internal predecessors, (107), 16 states have call successors, (16), 9 states have call predecessors, (16), 9 states have return successors, (16), 11 states have call predecessors, (16), 16 states have call successors, (16) [2022-07-13 18:01:04,982 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 33 [2022-07-13 18:01:04,982 INFO L187 NwaCegarLoop]: Found error trace [2022-07-13 18:01:04,983 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-13 18:01:04,984 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-13 18:01:04,988 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-13 18:01:04,989 INFO L85 PathProgramCache]: Analyzing trace with hash 836117038, now seen corresponding path program 1 times [2022-07-13 18:01:04,994 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-13 18:01:04,995 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [750275761] [2022-07-13 18:01:04,995 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-13 18:01:04,996 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-13 18:01:05,124 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:05,185 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 13 [2022-07-13 18:01:05,188 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:05,193 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 24 [2022-07-13 18:01:05,199 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:05,203 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2022-07-13 18:01:05,203 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-13 18:01:05,204 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [750275761] [2022-07-13 18:01:05,204 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [750275761] provided 1 perfect and 0 imperfect interpolant sequences [2022-07-13 18:01:05,205 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-07-13 18:01:05,205 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2022-07-13 18:01:05,206 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [912471134] [2022-07-13 18:01:05,206 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-07-13 18:01:05,209 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2022-07-13 18:01:05,209 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-13 18:01:05,231 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2022-07-13 18:01:05,232 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2022-07-13 18:01:05,234 INFO L87 Difference]: Start difference. First operand has 105 states, 78 states have (on average 1.3717948717948718) internal successors, (107), 88 states have internal predecessors, (107), 16 states have call successors, (16), 9 states have call predecessors, (16), 9 states have return successors, (16), 11 states have call predecessors, (16), 16 states have call successors, (16) Second operand has 2 states, 2 states have (on average 12.0) internal successors, (24), 2 states have internal predecessors, (24), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2022-07-13 18:01:05,277 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-13 18:01:05,277 INFO L93 Difference]: Finished difference Result 201 states and 272 transitions. [2022-07-13 18:01:05,278 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2022-07-13 18:01:05,279 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 12.0) internal successors, (24), 2 states have internal predecessors, (24), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 32 [2022-07-13 18:01:05,279 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-13 18:01:05,286 INFO L225 Difference]: With dead ends: 201 [2022-07-13 18:01:05,287 INFO L226 Difference]: Without dead ends: 96 [2022-07-13 18:01:05,291 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2022-07-13 18:01:05,294 INFO L413 NwaCegarLoop]: 133 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 0 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 133 SdHoareTripleChecker+Invalid, 0 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 0 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-07-13 18:01:05,294 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 133 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 0 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-07-13 18:01:05,305 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 96 states. [2022-07-13 18:01:05,329 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 96 to 96. [2022-07-13 18:01:05,331 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 96 states, 71 states have (on average 1.3098591549295775) internal successors, (93), 80 states have internal predecessors, (93), 16 states have call successors, (16), 9 states have call predecessors, (16), 8 states have return successors, (15), 10 states have call predecessors, (15), 15 states have call successors, (15) [2022-07-13 18:01:05,335 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 96 states to 96 states and 124 transitions. [2022-07-13 18:01:05,336 INFO L78 Accepts]: Start accepts. Automaton has 96 states and 124 transitions. Word has length 32 [2022-07-13 18:01:05,337 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-13 18:01:05,337 INFO L495 AbstractCegarLoop]: Abstraction has 96 states and 124 transitions. [2022-07-13 18:01:05,338 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 12.0) internal successors, (24), 2 states have internal predecessors, (24), 1 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2022-07-13 18:01:05,338 INFO L276 IsEmpty]: Start isEmpty. Operand 96 states and 124 transitions. [2022-07-13 18:01:05,343 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 38 [2022-07-13 18:01:05,343 INFO L187 NwaCegarLoop]: Found error trace [2022-07-13 18:01:05,344 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-13 18:01:05,344 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2022-07-13 18:01:05,344 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-13 18:01:05,345 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-13 18:01:05,345 INFO L85 PathProgramCache]: Analyzing trace with hash 485124754, now seen corresponding path program 1 times [2022-07-13 18:01:05,345 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-13 18:01:05,345 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1221783194] [2022-07-13 18:01:05,346 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-13 18:01:05,346 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-13 18:01:05,387 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:05,437 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 18 [2022-07-13 18:01:05,440 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:05,444 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 29 [2022-07-13 18:01:05,445 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:05,446 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2022-07-13 18:01:05,447 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-13 18:01:05,447 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1221783194] [2022-07-13 18:01:05,448 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1221783194] provided 1 perfect and 0 imperfect interpolant sequences [2022-07-13 18:01:05,448 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-07-13 18:01:05,448 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2022-07-13 18:01:05,448 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1860946211] [2022-07-13 18:01:05,449 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-07-13 18:01:05,451 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2022-07-13 18:01:05,453 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-13 18:01:05,454 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2022-07-13 18:01:05,454 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-07-13 18:01:05,454 INFO L87 Difference]: Start difference. First operand 96 states and 124 transitions. Second operand has 3 states, 3 states have (on average 10.0) internal successors, (30), 3 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2022-07-13 18:01:05,484 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-13 18:01:05,485 INFO L93 Difference]: Finished difference Result 184 states and 243 transitions. [2022-07-13 18:01:05,486 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2022-07-13 18:01:05,486 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 10.0) internal successors, (30), 3 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 37 [2022-07-13 18:01:05,486 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-13 18:01:05,490 INFO L225 Difference]: With dead ends: 184 [2022-07-13 18:01:05,490 INFO L226 Difference]: Without dead ends: 96 [2022-07-13 18:01:05,493 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-07-13 18:01:05,494 INFO L413 NwaCegarLoop]: 122 mSDtfsCounter, 101 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 101 SdHoareTripleChecker+Valid, 122 SdHoareTripleChecker+Invalid, 1 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-07-13 18:01:05,494 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [101 Valid, 122 Invalid, 1 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-07-13 18:01:05,495 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 96 states. [2022-07-13 18:01:05,500 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 96 to 96. [2022-07-13 18:01:05,504 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 96 states, 71 states have (on average 1.295774647887324) internal successors, (92), 80 states have internal predecessors, (92), 16 states have call successors, (16), 9 states have call predecessors, (16), 8 states have return successors, (15), 10 states have call predecessors, (15), 15 states have call successors, (15) [2022-07-13 18:01:05,504 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 96 states to 96 states and 123 transitions. [2022-07-13 18:01:05,506 INFO L78 Accepts]: Start accepts. Automaton has 96 states and 123 transitions. Word has length 37 [2022-07-13 18:01:05,507 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-13 18:01:05,508 INFO L495 AbstractCegarLoop]: Abstraction has 96 states and 123 transitions. [2022-07-13 18:01:05,508 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 10.0) internal successors, (30), 3 states have internal predecessors, (30), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2022-07-13 18:01:05,508 INFO L276 IsEmpty]: Start isEmpty. Operand 96 states and 123 transitions. [2022-07-13 18:01:05,509 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 47 [2022-07-13 18:01:05,511 INFO L187 NwaCegarLoop]: Found error trace [2022-07-13 18:01:05,511 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-13 18:01:05,511 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2022-07-13 18:01:05,512 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-13 18:01:05,512 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-13 18:01:05,512 INFO L85 PathProgramCache]: Analyzing trace with hash 88830114, now seen corresponding path program 1 times [2022-07-13 18:01:05,512 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-13 18:01:05,512 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [288601537] [2022-07-13 18:01:05,513 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-13 18:01:05,513 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-13 18:01:05,530 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:05,574 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 18 [2022-07-13 18:01:05,575 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:05,582 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 30 [2022-07-13 18:01:05,583 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:05,584 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 38 [2022-07-13 18:01:05,585 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:05,586 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2022-07-13 18:01:05,586 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-13 18:01:05,586 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [288601537] [2022-07-13 18:01:05,587 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [288601537] provided 1 perfect and 0 imperfect interpolant sequences [2022-07-13 18:01:05,587 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-07-13 18:01:05,587 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2022-07-13 18:01:05,587 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [311922893] [2022-07-13 18:01:05,587 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-07-13 18:01:05,588 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2022-07-13 18:01:05,588 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-13 18:01:05,588 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2022-07-13 18:01:05,588 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2022-07-13 18:01:05,588 INFO L87 Difference]: Start difference. First operand 96 states and 123 transitions. Second operand has 4 states, 4 states have (on average 9.25) internal successors, (37), 3 states have internal predecessors, (37), 2 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2022-07-13 18:01:05,769 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-13 18:01:05,770 INFO L93 Difference]: Finished difference Result 288 states and 392 transitions. [2022-07-13 18:01:05,770 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2022-07-13 18:01:05,770 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 9.25) internal successors, (37), 3 states have internal predecessors, (37), 2 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 46 [2022-07-13 18:01:05,770 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-13 18:01:05,772 INFO L225 Difference]: With dead ends: 288 [2022-07-13 18:01:05,772 INFO L226 Difference]: Without dead ends: 200 [2022-07-13 18:01:05,773 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 8 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2022-07-13 18:01:05,774 INFO L413 NwaCegarLoop]: 136 mSDtfsCounter, 186 mSDsluCounter, 153 mSDsCounter, 0 mSdLazyCounter, 93 mSolverCounterSat, 63 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 192 SdHoareTripleChecker+Valid, 289 SdHoareTripleChecker+Invalid, 156 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 63 IncrementalHoareTripleChecker+Valid, 93 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-07-13 18:01:05,774 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [192 Valid, 289 Invalid, 156 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [63 Valid, 93 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-07-13 18:01:05,775 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 200 states. [2022-07-13 18:01:05,789 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 200 to 182. [2022-07-13 18:01:05,790 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 182 states, 135 states have (on average 1.2740740740740741) internal successors, (172), 143 states have internal predecessors, (172), 26 states have call successors, (26), 17 states have call predecessors, (26), 20 states have return successors, (43), 26 states have call predecessors, (43), 24 states have call successors, (43) [2022-07-13 18:01:05,791 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 182 states to 182 states and 241 transitions. [2022-07-13 18:01:05,791 INFO L78 Accepts]: Start accepts. Automaton has 182 states and 241 transitions. Word has length 46 [2022-07-13 18:01:05,791 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-13 18:01:05,791 INFO L495 AbstractCegarLoop]: Abstraction has 182 states and 241 transitions. [2022-07-13 18:01:05,791 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 9.25) internal successors, (37), 3 states have internal predecessors, (37), 2 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2022-07-13 18:01:05,791 INFO L276 IsEmpty]: Start isEmpty. Operand 182 states and 241 transitions. [2022-07-13 18:01:05,792 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 53 [2022-07-13 18:01:05,792 INFO L187 NwaCegarLoop]: Found error trace [2022-07-13 18:01:05,793 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-13 18:01:05,793 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2022-07-13 18:01:05,793 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-13 18:01:05,793 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-13 18:01:05,793 INFO L85 PathProgramCache]: Analyzing trace with hash 385655368, now seen corresponding path program 1 times [2022-07-13 18:01:05,794 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-13 18:01:05,794 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1202443474] [2022-07-13 18:01:05,794 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-13 18:01:05,794 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-13 18:01:05,805 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:05,817 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2022-07-13 18:01:05,818 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:05,821 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2022-07-13 18:01:05,823 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:05,825 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2022-07-13 18:01:05,827 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:05,829 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 44 [2022-07-13 18:01:05,829 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:05,830 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2022-07-13 18:01:05,830 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-13 18:01:05,831 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1202443474] [2022-07-13 18:01:05,831 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1202443474] provided 1 perfect and 0 imperfect interpolant sequences [2022-07-13 18:01:05,831 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-07-13 18:01:05,831 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2022-07-13 18:01:05,831 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1353256159] [2022-07-13 18:01:05,831 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-07-13 18:01:05,832 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2022-07-13 18:01:05,832 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-13 18:01:05,832 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2022-07-13 18:01:05,832 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2022-07-13 18:01:05,833 INFO L87 Difference]: Start difference. First operand 182 states and 241 transitions. Second operand has 4 states, 4 states have (on average 10.0) internal successors, (40), 3 states have internal predecessors, (40), 2 states have call successors, (6), 3 states have call predecessors, (6), 1 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2022-07-13 18:01:05,896 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-13 18:01:05,896 INFO L93 Difference]: Finished difference Result 304 states and 389 transitions. [2022-07-13 18:01:05,896 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2022-07-13 18:01:05,897 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 10.0) internal successors, (40), 3 states have internal predecessors, (40), 2 states have call successors, (6), 3 states have call predecessors, (6), 1 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) Word has length 52 [2022-07-13 18:01:05,897 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-13 18:01:05,898 INFO L225 Difference]: With dead ends: 304 [2022-07-13 18:01:05,898 INFO L226 Difference]: Without dead ends: 166 [2022-07-13 18:01:05,899 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 9 SyntacticMatches, 0 SemanticMatches, 2 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2022-07-13 18:01:05,899 INFO L413 NwaCegarLoop]: 113 mSDtfsCounter, 72 mSDsluCounter, 124 mSDsCounter, 0 mSdLazyCounter, 58 mSolverCounterSat, 16 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 79 SdHoareTripleChecker+Valid, 237 SdHoareTripleChecker+Invalid, 74 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 16 IncrementalHoareTripleChecker+Valid, 58 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-07-13 18:01:05,900 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [79 Valid, 237 Invalid, 74 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [16 Valid, 58 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-07-13 18:01:05,900 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 166 states. [2022-07-13 18:01:05,911 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 166 to 164. [2022-07-13 18:01:05,912 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 164 states, 123 states have (on average 1.2845528455284554) internal successors, (158), 131 states have internal predecessors, (158), 20 states have call successors, (20), 15 states have call predecessors, (20), 20 states have return successors, (31), 22 states have call predecessors, (31), 20 states have call successors, (31) [2022-07-13 18:01:05,912 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 164 states to 164 states and 209 transitions. [2022-07-13 18:01:05,913 INFO L78 Accepts]: Start accepts. Automaton has 164 states and 209 transitions. Word has length 52 [2022-07-13 18:01:05,913 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-13 18:01:05,913 INFO L495 AbstractCegarLoop]: Abstraction has 164 states and 209 transitions. [2022-07-13 18:01:05,913 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 10.0) internal successors, (40), 3 states have internal predecessors, (40), 2 states have call successors, (6), 3 states have call predecessors, (6), 1 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2022-07-13 18:01:05,913 INFO L276 IsEmpty]: Start isEmpty. Operand 164 states and 209 transitions. [2022-07-13 18:01:05,914 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 57 [2022-07-13 18:01:05,914 INFO L187 NwaCegarLoop]: Found error trace [2022-07-13 18:01:05,914 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-13 18:01:05,914 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2022-07-13 18:01:05,915 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-13 18:01:05,915 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-13 18:01:05,915 INFO L85 PathProgramCache]: Analyzing trace with hash -2065653903, now seen corresponding path program 1 times [2022-07-13 18:01:05,915 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-13 18:01:05,915 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [483797870] [2022-07-13 18:01:05,916 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-13 18:01:05,916 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-13 18:01:05,928 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:05,940 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 18 [2022-07-13 18:01:05,941 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:05,943 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 27 [2022-07-13 18:01:05,946 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:05,948 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2022-07-13 18:01:05,951 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:05,965 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 48 [2022-07-13 18:01:05,966 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:05,968 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2022-07-13 18:01:05,968 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-13 18:01:05,968 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [483797870] [2022-07-13 18:01:05,968 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [483797870] provided 1 perfect and 0 imperfect interpolant sequences [2022-07-13 18:01:05,968 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-07-13 18:01:05,968 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2022-07-13 18:01:05,968 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [748996630] [2022-07-13 18:01:05,969 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-07-13 18:01:05,969 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2022-07-13 18:01:05,969 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-13 18:01:05,969 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2022-07-13 18:01:05,970 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2022-07-13 18:01:05,970 INFO L87 Difference]: Start difference. First operand 164 states and 209 transitions. Second operand has 6 states, 6 states have (on average 7.5) internal successors, (45), 5 states have internal predecessors, (45), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2022-07-13 18:01:06,082 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-13 18:01:06,083 INFO L93 Difference]: Finished difference Result 328 states and 426 transitions. [2022-07-13 18:01:06,083 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2022-07-13 18:01:06,083 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 7.5) internal successors, (45), 5 states have internal predecessors, (45), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) Word has length 56 [2022-07-13 18:01:06,083 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-13 18:01:06,085 INFO L225 Difference]: With dead ends: 328 [2022-07-13 18:01:06,085 INFO L226 Difference]: Without dead ends: 172 [2022-07-13 18:01:06,086 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 19 GetRequests, 11 SyntacticMatches, 0 SemanticMatches, 8 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=32, Invalid=58, Unknown=0, NotChecked=0, Total=90 [2022-07-13 18:01:06,086 INFO L413 NwaCegarLoop]: 112 mSDtfsCounter, 73 mSDsluCounter, 337 mSDsCounter, 0 mSdLazyCounter, 133 mSolverCounterSat, 23 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 76 SdHoareTripleChecker+Valid, 449 SdHoareTripleChecker+Invalid, 156 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 23 IncrementalHoareTripleChecker+Valid, 133 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-07-13 18:01:06,087 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [76 Valid, 449 Invalid, 156 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [23 Valid, 133 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-07-13 18:01:06,087 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 172 states. [2022-07-13 18:01:06,108 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 172 to 167. [2022-07-13 18:01:06,108 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 167 states, 126 states have (on average 1.2777777777777777) internal successors, (161), 134 states have internal predecessors, (161), 20 states have call successors, (20), 15 states have call predecessors, (20), 20 states have return successors, (31), 22 states have call predecessors, (31), 20 states have call successors, (31) [2022-07-13 18:01:06,109 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 167 states to 167 states and 212 transitions. [2022-07-13 18:01:06,109 INFO L78 Accepts]: Start accepts. Automaton has 167 states and 212 transitions. Word has length 56 [2022-07-13 18:01:06,109 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-13 18:01:06,109 INFO L495 AbstractCegarLoop]: Abstraction has 167 states and 212 transitions. [2022-07-13 18:01:06,110 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 7.5) internal successors, (45), 5 states have internal predecessors, (45), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2022-07-13 18:01:06,110 INFO L276 IsEmpty]: Start isEmpty. Operand 167 states and 212 transitions. [2022-07-13 18:01:06,111 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 57 [2022-07-13 18:01:06,111 INFO L187 NwaCegarLoop]: Found error trace [2022-07-13 18:01:06,111 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-13 18:01:06,111 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2022-07-13 18:01:06,111 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-13 18:01:06,112 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-13 18:01:06,112 INFO L85 PathProgramCache]: Analyzing trace with hash -1642952077, now seen corresponding path program 1 times [2022-07-13 18:01:06,112 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-13 18:01:06,112 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [870410858] [2022-07-13 18:01:06,112 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-13 18:01:06,112 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-13 18:01:06,125 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:06,136 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 18 [2022-07-13 18:01:06,137 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:06,140 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 27 [2022-07-13 18:01:06,142 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:06,145 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2022-07-13 18:01:06,146 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:06,165 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 48 [2022-07-13 18:01:06,166 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:06,168 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2022-07-13 18:01:06,168 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-13 18:01:06,168 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [870410858] [2022-07-13 18:01:06,168 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [870410858] provided 1 perfect and 0 imperfect interpolant sequences [2022-07-13 18:01:06,168 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-07-13 18:01:06,168 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2022-07-13 18:01:06,168 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1673600924] [2022-07-13 18:01:06,169 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-07-13 18:01:06,169 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2022-07-13 18:01:06,169 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-13 18:01:06,169 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2022-07-13 18:01:06,170 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2022-07-13 18:01:06,170 INFO L87 Difference]: Start difference. First operand 167 states and 212 transitions. Second operand has 5 states, 5 states have (on average 9.0) internal successors, (45), 4 states have internal predecessors, (45), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2022-07-13 18:01:06,317 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-13 18:01:06,318 INFO L93 Difference]: Finished difference Result 336 states and 440 transitions. [2022-07-13 18:01:06,318 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2022-07-13 18:01:06,318 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 9.0) internal successors, (45), 4 states have internal predecessors, (45), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) Word has length 56 [2022-07-13 18:01:06,319 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-13 18:01:06,320 INFO L225 Difference]: With dead ends: 336 [2022-07-13 18:01:06,320 INFO L226 Difference]: Without dead ends: 177 [2022-07-13 18:01:06,321 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 16 GetRequests, 11 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2022-07-13 18:01:06,321 INFO L413 NwaCegarLoop]: 112 mSDtfsCounter, 77 mSDsluCounter, 238 mSDsCounter, 0 mSdLazyCounter, 97 mSolverCounterSat, 20 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 81 SdHoareTripleChecker+Valid, 350 SdHoareTripleChecker+Invalid, 117 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 20 IncrementalHoareTripleChecker+Valid, 97 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-07-13 18:01:06,322 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [81 Valid, 350 Invalid, 117 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [20 Valid, 97 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-07-13 18:01:06,330 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 177 states. [2022-07-13 18:01:06,371 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 177 to 169. [2022-07-13 18:01:06,372 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 169 states, 128 states have (on average 1.2734375) internal successors, (163), 136 states have internal predecessors, (163), 20 states have call successors, (20), 15 states have call predecessors, (20), 20 states have return successors, (31), 22 states have call predecessors, (31), 20 states have call successors, (31) [2022-07-13 18:01:06,373 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 169 states to 169 states and 214 transitions. [2022-07-13 18:01:06,374 INFO L78 Accepts]: Start accepts. Automaton has 169 states and 214 transitions. Word has length 56 [2022-07-13 18:01:06,374 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-13 18:01:06,374 INFO L495 AbstractCegarLoop]: Abstraction has 169 states and 214 transitions. [2022-07-13 18:01:06,375 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 9.0) internal successors, (45), 4 states have internal predecessors, (45), 2 states have call successors, (5), 2 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2022-07-13 18:01:06,375 INFO L276 IsEmpty]: Start isEmpty. Operand 169 states and 214 transitions. [2022-07-13 18:01:06,375 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 57 [2022-07-13 18:01:06,375 INFO L187 NwaCegarLoop]: Found error trace [2022-07-13 18:01:06,375 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-13 18:01:06,376 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2022-07-13 18:01:06,376 INFO L420 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-13 18:01:06,376 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-13 18:01:06,376 INFO L85 PathProgramCache]: Analyzing trace with hash 846576885, now seen corresponding path program 1 times [2022-07-13 18:01:06,376 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-13 18:01:06,377 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1771416362] [2022-07-13 18:01:06,377 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-13 18:01:06,377 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-13 18:01:06,398 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:06,452 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 18 [2022-07-13 18:01:06,453 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:06,457 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 27 [2022-07-13 18:01:06,459 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:06,465 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2022-07-13 18:01:06,467 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:06,490 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 48 [2022-07-13 18:01:06,491 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:06,492 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2022-07-13 18:01:06,492 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-13 18:01:06,492 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1771416362] [2022-07-13 18:01:06,492 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1771416362] provided 1 perfect and 0 imperfect interpolant sequences [2022-07-13 18:01:06,493 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-07-13 18:01:06,493 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2022-07-13 18:01:06,493 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [959090833] [2022-07-13 18:01:06,493 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-07-13 18:01:06,493 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2022-07-13 18:01:06,493 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-13 18:01:06,494 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2022-07-13 18:01:06,494 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2022-07-13 18:01:06,494 INFO L87 Difference]: Start difference. First operand 169 states and 214 transitions. Second operand has 5 states, 5 states have (on average 9.0) internal successors, (45), 4 states have internal predecessors, (45), 3 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) [2022-07-13 18:01:06,681 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-13 18:01:06,681 INFO L93 Difference]: Finished difference Result 477 states and 626 transitions. [2022-07-13 18:01:06,681 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2022-07-13 18:01:06,685 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 9.0) internal successors, (45), 4 states have internal predecessors, (45), 3 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) Word has length 56 [2022-07-13 18:01:06,685 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-13 18:01:06,687 INFO L225 Difference]: With dead ends: 477 [2022-07-13 18:01:06,687 INFO L226 Difference]: Without dead ends: 316 [2022-07-13 18:01:06,688 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 18 GetRequests, 11 SyntacticMatches, 2 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=15, Invalid=27, Unknown=0, NotChecked=0, Total=42 [2022-07-13 18:01:06,691 INFO L413 NwaCegarLoop]: 165 mSDtfsCounter, 232 mSDsluCounter, 196 mSDsCounter, 0 mSdLazyCounter, 181 mSolverCounterSat, 72 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 239 SdHoareTripleChecker+Valid, 361 SdHoareTripleChecker+Invalid, 253 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 72 IncrementalHoareTripleChecker+Valid, 181 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2022-07-13 18:01:06,693 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [239 Valid, 361 Invalid, 253 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [72 Valid, 181 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2022-07-13 18:01:06,695 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 316 states. [2022-07-13 18:01:06,714 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 316 to 308. [2022-07-13 18:01:06,731 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 308 states, 231 states have (on average 1.2467532467532467) internal successors, (288), 243 states have internal predecessors, (288), 40 states have call successors, (40), 33 states have call predecessors, (40), 36 states have return successors, (66), 41 states have call predecessors, (66), 40 states have call successors, (66) [2022-07-13 18:01:06,733 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 308 states to 308 states and 394 transitions. [2022-07-13 18:01:06,733 INFO L78 Accepts]: Start accepts. Automaton has 308 states and 394 transitions. Word has length 56 [2022-07-13 18:01:06,735 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-13 18:01:06,735 INFO L495 AbstractCegarLoop]: Abstraction has 308 states and 394 transitions. [2022-07-13 18:01:06,735 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 9.0) internal successors, (45), 4 states have internal predecessors, (45), 3 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 3 states have call predecessors, (4), 3 states have call successors, (4) [2022-07-13 18:01:06,735 INFO L276 IsEmpty]: Start isEmpty. Operand 308 states and 394 transitions. [2022-07-13 18:01:06,735 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 59 [2022-07-13 18:01:06,736 INFO L187 NwaCegarLoop]: Found error trace [2022-07-13 18:01:06,736 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-13 18:01:06,736 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2022-07-13 18:01:06,742 INFO L420 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-13 18:01:06,743 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-13 18:01:06,743 INFO L85 PathProgramCache]: Analyzing trace with hash 1874240715, now seen corresponding path program 1 times [2022-07-13 18:01:06,743 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-13 18:01:06,743 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [418792837] [2022-07-13 18:01:06,743 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-13 18:01:06,743 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-13 18:01:06,752 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:06,796 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 18 [2022-07-13 18:01:06,797 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:06,801 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 27 [2022-07-13 18:01:06,803 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:06,805 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2022-07-13 18:01:06,806 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:06,820 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2022-07-13 18:01:06,820 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:06,821 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 50 [2022-07-13 18:01:06,822 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:06,827 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 2 proven. 0 refuted. 0 times theorem prover too weak. 1 trivial. 0 not checked. [2022-07-13 18:01:06,827 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-13 18:01:06,827 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [418792837] [2022-07-13 18:01:06,828 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [418792837] provided 1 perfect and 0 imperfect interpolant sequences [2022-07-13 18:01:06,828 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-07-13 18:01:06,828 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2022-07-13 18:01:06,828 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1900790088] [2022-07-13 18:01:06,828 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-07-13 18:01:06,828 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2022-07-13 18:01:06,828 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-13 18:01:06,828 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2022-07-13 18:01:06,829 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2022-07-13 18:01:06,829 INFO L87 Difference]: Start difference. First operand 308 states and 394 transitions. Second operand has 7 states, 7 states have (on average 6.714285714285714) internal successors, (47), 5 states have internal predecessors, (47), 2 states have call successors, (6), 3 states have call predecessors, (6), 3 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) [2022-07-13 18:01:07,089 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-13 18:01:07,089 INFO L93 Difference]: Finished difference Result 624 states and 811 transitions. [2022-07-13 18:01:07,089 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 13 states. [2022-07-13 18:01:07,090 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 6.714285714285714) internal successors, (47), 5 states have internal predecessors, (47), 2 states have call successors, (6), 3 states have call predecessors, (6), 3 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) Word has length 58 [2022-07-13 18:01:07,090 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-13 18:01:07,091 INFO L225 Difference]: With dead ends: 624 [2022-07-13 18:01:07,091 INFO L226 Difference]: Without dead ends: 324 [2022-07-13 18:01:07,092 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 27 GetRequests, 14 SyntacticMatches, 0 SemanticMatches, 13 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 25 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=53, Invalid=157, Unknown=0, NotChecked=0, Total=210 [2022-07-13 18:01:07,093 INFO L413 NwaCegarLoop]: 109 mSDtfsCounter, 125 mSDsluCounter, 383 mSDsCounter, 0 mSdLazyCounter, 223 mSolverCounterSat, 41 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 131 SdHoareTripleChecker+Valid, 492 SdHoareTripleChecker+Invalid, 264 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 41 IncrementalHoareTripleChecker+Valid, 223 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2022-07-13 18:01:07,093 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [131 Valid, 492 Invalid, 264 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [41 Valid, 223 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2022-07-13 18:01:07,093 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 324 states. [2022-07-13 18:01:07,114 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 324 to 304. [2022-07-13 18:01:07,115 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 304 states, 227 states have (on average 1.2158590308370043) internal successors, (276), 239 states have internal predecessors, (276), 40 states have call successors, (40), 33 states have call predecessors, (40), 36 states have return successors, (66), 41 states have call predecessors, (66), 40 states have call successors, (66) [2022-07-13 18:01:07,116 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 304 states to 304 states and 382 transitions. [2022-07-13 18:01:07,116 INFO L78 Accepts]: Start accepts. Automaton has 304 states and 382 transitions. Word has length 58 [2022-07-13 18:01:07,117 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-13 18:01:07,117 INFO L495 AbstractCegarLoop]: Abstraction has 304 states and 382 transitions. [2022-07-13 18:01:07,117 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 6.714285714285714) internal successors, (47), 5 states have internal predecessors, (47), 2 states have call successors, (6), 3 states have call predecessors, (6), 3 states have return successors, (5), 2 states have call predecessors, (5), 2 states have call successors, (5) [2022-07-13 18:01:07,117 INFO L276 IsEmpty]: Start isEmpty. Operand 304 states and 382 transitions. [2022-07-13 18:01:07,118 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 61 [2022-07-13 18:01:07,118 INFO L187 NwaCegarLoop]: Found error trace [2022-07-13 18:01:07,118 INFO L195 NwaCegarLoop]: trace histogram [2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-13 18:01:07,118 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2022-07-13 18:01:07,118 INFO L420 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-13 18:01:07,118 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-13 18:01:07,118 INFO L85 PathProgramCache]: Analyzing trace with hash -1421347697, now seen corresponding path program 1 times [2022-07-13 18:01:07,118 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-13 18:01:07,118 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [332466468] [2022-07-13 18:01:07,119 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-13 18:01:07,119 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-13 18:01:07,140 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:07,212 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2022-07-13 18:01:07,214 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:07,228 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 22 [2022-07-13 18:01:07,231 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:07,237 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 31 [2022-07-13 18:01:07,239 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:07,247 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2022-07-13 18:01:07,249 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:07,261 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 52 [2022-07-13 18:01:07,261 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:07,262 INFO L134 CoverageAnalysis]: Checked inductivity of 3 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 3 trivial. 0 not checked. [2022-07-13 18:01:07,263 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-13 18:01:07,263 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [332466468] [2022-07-13 18:01:07,263 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [332466468] provided 1 perfect and 0 imperfect interpolant sequences [2022-07-13 18:01:07,263 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-07-13 18:01:07,263 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [10] imperfect sequences [] total 10 [2022-07-13 18:01:07,263 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1562979858] [2022-07-13 18:01:07,263 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-07-13 18:01:07,264 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 10 states [2022-07-13 18:01:07,264 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-13 18:01:07,264 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 10 interpolants. [2022-07-13 18:01:07,264 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=18, Invalid=72, Unknown=0, NotChecked=0, Total=90 [2022-07-13 18:01:07,265 INFO L87 Difference]: Start difference. First operand 304 states and 382 transitions. Second operand has 10 states, 10 states have (on average 4.7) internal successors, (47), 8 states have internal predecessors, (47), 4 states have call successors, (6), 4 states have call predecessors, (6), 3 states have return successors, (5), 3 states have call predecessors, (5), 4 states have call successors, (5) [2022-07-13 18:01:08,142 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-13 18:01:08,143 INFO L93 Difference]: Finished difference Result 950 states and 1254 transitions. [2022-07-13 18:01:08,143 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 33 states. [2022-07-13 18:01:08,143 INFO L78 Accepts]: Start accepts. Automaton has has 10 states, 10 states have (on average 4.7) internal successors, (47), 8 states have internal predecessors, (47), 4 states have call successors, (6), 4 states have call predecessors, (6), 3 states have return successors, (5), 3 states have call predecessors, (5), 4 states have call successors, (5) Word has length 60 [2022-07-13 18:01:08,143 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-13 18:01:08,146 INFO L225 Difference]: With dead ends: 950 [2022-07-13 18:01:08,146 INFO L226 Difference]: Without dead ends: 709 [2022-07-13 18:01:08,147 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 47 GetRequests, 13 SyntacticMatches, 1 SemanticMatches, 33 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 288 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=221, Invalid=969, Unknown=0, NotChecked=0, Total=1190 [2022-07-13 18:01:08,148 INFO L413 NwaCegarLoop]: 180 mSDtfsCounter, 552 mSDsluCounter, 664 mSDsCounter, 0 mSdLazyCounter, 932 mSolverCounterSat, 229 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.6s Time, 0 mProtectedPredicate, 0 mProtectedAction, 559 SdHoareTripleChecker+Valid, 844 SdHoareTripleChecker+Invalid, 1161 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 229 IncrementalHoareTripleChecker+Valid, 932 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.6s IncrementalHoareTripleChecker+Time [2022-07-13 18:01:08,148 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [559 Valid, 844 Invalid, 1161 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [229 Valid, 932 Invalid, 0 Unknown, 0 Unchecked, 0.6s Time] [2022-07-13 18:01:08,149 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 709 states. [2022-07-13 18:01:08,183 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 709 to 585. [2022-07-13 18:01:08,187 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 585 states, 437 states have (on average 1.2151029748283753) internal successors, (531), 463 states have internal predecessors, (531), 77 states have call successors, (77), 58 states have call predecessors, (77), 70 states have return successors, (127), 79 states have call predecessors, (127), 77 states have call successors, (127) [2022-07-13 18:01:08,196 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 585 states to 585 states and 735 transitions. [2022-07-13 18:01:08,197 INFO L78 Accepts]: Start accepts. Automaton has 585 states and 735 transitions. Word has length 60 [2022-07-13 18:01:08,197 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-13 18:01:08,197 INFO L495 AbstractCegarLoop]: Abstraction has 585 states and 735 transitions. [2022-07-13 18:01:08,197 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 10 states, 10 states have (on average 4.7) internal successors, (47), 8 states have internal predecessors, (47), 4 states have call successors, (6), 4 states have call predecessors, (6), 3 states have return successors, (5), 3 states have call predecessors, (5), 4 states have call successors, (5) [2022-07-13 18:01:08,197 INFO L276 IsEmpty]: Start isEmpty. Operand 585 states and 735 transitions. [2022-07-13 18:01:08,198 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 110 [2022-07-13 18:01:08,198 INFO L187 NwaCegarLoop]: Found error trace [2022-07-13 18:01:08,198 INFO L195 NwaCegarLoop]: trace histogram [3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-13 18:01:08,199 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2022-07-13 18:01:08,199 INFO L420 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-13 18:01:08,199 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-13 18:01:08,199 INFO L85 PathProgramCache]: Analyzing trace with hash 118762499, now seen corresponding path program 1 times [2022-07-13 18:01:08,199 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-13 18:01:08,200 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [352252029] [2022-07-13 18:01:08,200 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-13 18:01:08,200 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-13 18:01:08,231 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:08,248 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2022-07-13 18:01:08,249 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:08,254 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2022-07-13 18:01:08,255 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:08,256 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2022-07-13 18:01:08,257 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:08,272 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2022-07-13 18:01:08,273 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:08,274 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2022-07-13 18:01:08,275 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:08,276 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 65 [2022-07-13 18:01:08,276 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:08,277 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 79 [2022-07-13 18:01:08,278 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:08,298 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2022-07-13 18:01:08,299 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:08,300 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2022-07-13 18:01:08,300 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:08,301 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 101 [2022-07-13 18:01:08,301 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:08,302 INFO L134 CoverageAnalysis]: Checked inductivity of 37 backedges. 6 proven. 1 refuted. 0 times theorem prover too weak. 30 trivial. 0 not checked. [2022-07-13 18:01:08,302 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-13 18:01:08,302 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [352252029] [2022-07-13 18:01:08,302 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [352252029] provided 0 perfect and 1 imperfect interpolant sequences [2022-07-13 18:01:08,302 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2145824440] [2022-07-13 18:01:08,302 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-13 18:01:08,303 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-07-13 18:01:08,303 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2022-07-13 18:01:08,315 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-07-13 18:01:08,349 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2022-07-13 18:01:08,471 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:08,474 INFO L263 TraceCheckSpWp]: Trace formula consists of 507 conjuncts, 8 conjunts are in the unsatisfiable core [2022-07-13 18:01:08,479 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-07-13 18:01:08,670 INFO L134 CoverageAnalysis]: Checked inductivity of 37 backedges. 26 proven. 11 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-07-13 18:01:08,670 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-07-13 18:01:08,845 INFO L134 CoverageAnalysis]: Checked inductivity of 37 backedges. 18 proven. 10 refuted. 0 times theorem prover too weak. 9 trivial. 0 not checked. [2022-07-13 18:01:08,845 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2145824440] provided 0 perfect and 2 imperfect interpolant sequences [2022-07-13 18:01:08,846 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-07-13 18:01:08,846 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [8, 6, 6] total 13 [2022-07-13 18:01:08,846 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1538473308] [2022-07-13 18:01:08,846 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-07-13 18:01:08,847 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 13 states [2022-07-13 18:01:08,847 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-13 18:01:08,847 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 13 interpolants. [2022-07-13 18:01:08,847 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=27, Invalid=129, Unknown=0, NotChecked=0, Total=156 [2022-07-13 18:01:08,851 INFO L87 Difference]: Start difference. First operand 585 states and 735 transitions. Second operand has 13 states, 13 states have (on average 10.153846153846153) internal successors, (132), 9 states have internal predecessors, (132), 4 states have call successors, (23), 6 states have call predecessors, (23), 6 states have return successors, (21), 5 states have call predecessors, (21), 4 states have call successors, (21) [2022-07-13 18:01:09,697 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-13 18:01:09,697 INFO L93 Difference]: Finished difference Result 1239 states and 1603 transitions. [2022-07-13 18:01:09,698 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 29 states. [2022-07-13 18:01:09,698 INFO L78 Accepts]: Start accepts. Automaton has has 13 states, 13 states have (on average 10.153846153846153) internal successors, (132), 9 states have internal predecessors, (132), 4 states have call successors, (23), 6 states have call predecessors, (23), 6 states have return successors, (21), 5 states have call predecessors, (21), 4 states have call successors, (21) Word has length 109 [2022-07-13 18:01:09,698 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-13 18:01:09,701 INFO L225 Difference]: With dead ends: 1239 [2022-07-13 18:01:09,702 INFO L226 Difference]: Without dead ends: 715 [2022-07-13 18:01:09,704 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 277 GetRequests, 243 SyntacticMatches, 1 SemanticMatches, 33 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 233 ImplicationChecksByTransitivity, 0.3s TimeCoverageRelationStatistics Valid=269, Invalid=921, Unknown=0, NotChecked=0, Total=1190 [2022-07-13 18:01:09,705 INFO L413 NwaCegarLoop]: 229 mSDtfsCounter, 342 mSDsluCounter, 1142 mSDsCounter, 0 mSdLazyCounter, 953 mSolverCounterSat, 159 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 349 SdHoareTripleChecker+Valid, 1371 SdHoareTripleChecker+Invalid, 1112 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 159 IncrementalHoareTripleChecker+Valid, 953 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.5s IncrementalHoareTripleChecker+Time [2022-07-13 18:01:09,705 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [349 Valid, 1371 Invalid, 1112 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [159 Valid, 953 Invalid, 0 Unknown, 0 Unchecked, 0.5s Time] [2022-07-13 18:01:09,706 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 715 states. [2022-07-13 18:01:09,752 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 715 to 641. [2022-07-13 18:01:09,754 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 641 states, 475 states have (on average 1.2) internal successors, (570), 507 states have internal predecessors, (570), 86 states have call successors, (86), 71 states have call predecessors, (86), 79 states have return successors, (114), 83 states have call predecessors, (114), 86 states have call successors, (114) [2022-07-13 18:01:09,755 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 641 states to 641 states and 770 transitions. [2022-07-13 18:01:09,756 INFO L78 Accepts]: Start accepts. Automaton has 641 states and 770 transitions. Word has length 109 [2022-07-13 18:01:09,756 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-13 18:01:09,757 INFO L495 AbstractCegarLoop]: Abstraction has 641 states and 770 transitions. [2022-07-13 18:01:09,757 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 13 states, 13 states have (on average 10.153846153846153) internal successors, (132), 9 states have internal predecessors, (132), 4 states have call successors, (23), 6 states have call predecessors, (23), 6 states have return successors, (21), 5 states have call predecessors, (21), 4 states have call successors, (21) [2022-07-13 18:01:09,757 INFO L276 IsEmpty]: Start isEmpty. Operand 641 states and 770 transitions. [2022-07-13 18:01:09,762 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 192 [2022-07-13 18:01:09,762 INFO L187 NwaCegarLoop]: Found error trace [2022-07-13 18:01:09,763 INFO L195 NwaCegarLoop]: trace histogram [5, 5, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-13 18:01:09,798 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2022-07-13 18:01:09,980 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable9 [2022-07-13 18:01:09,981 INFO L420 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-13 18:01:09,981 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-13 18:01:09,981 INFO L85 PathProgramCache]: Analyzing trace with hash -1755329041, now seen corresponding path program 1 times [2022-07-13 18:01:09,982 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-13 18:01:09,982 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [35353679] [2022-07-13 18:01:09,982 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-13 18:01:09,982 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-13 18:01:09,999 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,026 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2022-07-13 18:01:10,028 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,034 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2022-07-13 18:01:10,036 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,038 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2022-07-13 18:01:10,039 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,042 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2022-07-13 18:01:10,043 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,044 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2022-07-13 18:01:10,045 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,046 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 63 [2022-07-13 18:01:10,049 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,052 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2022-07-13 18:01:10,053 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,053 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2022-07-13 18:01:10,054 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,055 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2022-07-13 18:01:10,056 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,056 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2022-07-13 18:01:10,057 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,057 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 112 [2022-07-13 18:01:10,059 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,080 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2022-07-13 18:01:10,081 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,082 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2022-07-13 18:01:10,082 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,083 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 143 [2022-07-13 18:01:10,084 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,084 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 153 [2022-07-13 18:01:10,085 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,085 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 162 [2022-07-13 18:01:10,087 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,088 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2022-07-13 18:01:10,090 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,091 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 183 [2022-07-13 18:01:10,091 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,092 INFO L134 CoverageAnalysis]: Checked inductivity of 201 backedges. 79 proven. 0 refuted. 0 times theorem prover too weak. 122 trivial. 0 not checked. [2022-07-13 18:01:10,092 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-13 18:01:10,093 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [35353679] [2022-07-13 18:01:10,093 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [35353679] provided 1 perfect and 0 imperfect interpolant sequences [2022-07-13 18:01:10,093 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-07-13 18:01:10,093 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [10] imperfect sequences [] total 10 [2022-07-13 18:01:10,093 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [818114801] [2022-07-13 18:01:10,093 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-07-13 18:01:10,094 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 10 states [2022-07-13 18:01:10,094 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-13 18:01:10,094 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 10 interpolants. [2022-07-13 18:01:10,094 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=19, Invalid=71, Unknown=0, NotChecked=0, Total=90 [2022-07-13 18:01:10,095 INFO L87 Difference]: Start difference. First operand 641 states and 770 transitions. Second operand has 10 states, 10 states have (on average 9.6) internal successors, (96), 7 states have internal predecessors, (96), 4 states have call successors, (14), 5 states have call predecessors, (14), 2 states have return successors, (14), 4 states have call predecessors, (14), 4 states have call successors, (14) [2022-07-13 18:01:10,750 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-13 18:01:10,751 INFO L93 Difference]: Finished difference Result 1786 states and 2182 transitions. [2022-07-13 18:01:10,751 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 28 states. [2022-07-13 18:01:10,751 INFO L78 Accepts]: Start accepts. Automaton has has 10 states, 10 states have (on average 9.6) internal successors, (96), 7 states have internal predecessors, (96), 4 states have call successors, (14), 5 states have call predecessors, (14), 2 states have return successors, (14), 4 states have call predecessors, (14), 4 states have call successors, (14) Word has length 191 [2022-07-13 18:01:10,752 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-13 18:01:10,756 INFO L225 Difference]: With dead ends: 1786 [2022-07-13 18:01:10,756 INFO L226 Difference]: Without dead ends: 1153 [2022-07-13 18:01:10,759 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 80 GetRequests, 48 SyntacticMatches, 0 SemanticMatches, 32 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 251 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=229, Invalid=893, Unknown=0, NotChecked=0, Total=1122 [2022-07-13 18:01:10,759 INFO L413 NwaCegarLoop]: 217 mSDtfsCounter, 509 mSDsluCounter, 537 mSDsCounter, 0 mSdLazyCounter, 762 mSolverCounterSat, 212 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 513 SdHoareTripleChecker+Valid, 754 SdHoareTripleChecker+Invalid, 974 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 212 IncrementalHoareTripleChecker+Valid, 762 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2022-07-13 18:01:10,760 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [513 Valid, 754 Invalid, 974 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [212 Valid, 762 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2022-07-13 18:01:10,761 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1153 states. [2022-07-13 18:01:10,797 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1153 to 1138. [2022-07-13 18:01:10,799 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1138 states, 849 states have (on average 1.16489988221437) internal successors, (989), 897 states have internal predecessors, (989), 149 states have call successors, (149), 128 states have call predecessors, (149), 139 states have return successors, (195), 146 states have call predecessors, (195), 149 states have call successors, (195) [2022-07-13 18:01:10,802 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1138 states to 1138 states and 1333 transitions. [2022-07-13 18:01:10,803 INFO L78 Accepts]: Start accepts. Automaton has 1138 states and 1333 transitions. Word has length 191 [2022-07-13 18:01:10,803 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-13 18:01:10,803 INFO L495 AbstractCegarLoop]: Abstraction has 1138 states and 1333 transitions. [2022-07-13 18:01:10,803 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 10 states, 10 states have (on average 9.6) internal successors, (96), 7 states have internal predecessors, (96), 4 states have call successors, (14), 5 states have call predecessors, (14), 2 states have return successors, (14), 4 states have call predecessors, (14), 4 states have call successors, (14) [2022-07-13 18:01:10,803 INFO L276 IsEmpty]: Start isEmpty. Operand 1138 states and 1333 transitions. [2022-07-13 18:01:10,806 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 192 [2022-07-13 18:01:10,807 INFO L187 NwaCegarLoop]: Found error trace [2022-07-13 18:01:10,807 INFO L195 NwaCegarLoop]: trace histogram [5, 5, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-13 18:01:10,807 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10 [2022-07-13 18:01:10,807 INFO L420 AbstractCegarLoop]: === Iteration 12 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-13 18:01:10,808 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-13 18:01:10,808 INFO L85 PathProgramCache]: Analyzing trace with hash -813407625, now seen corresponding path program 1 times [2022-07-13 18:01:10,808 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-13 18:01:10,808 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [161601233] [2022-07-13 18:01:10,808 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-13 18:01:10,808 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-13 18:01:10,824 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,842 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2022-07-13 18:01:10,843 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,849 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2022-07-13 18:01:10,852 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,869 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2022-07-13 18:01:10,870 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,874 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2022-07-13 18:01:10,875 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,877 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2022-07-13 18:01:10,878 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,879 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 63 [2022-07-13 18:01:10,882 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,916 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2022-07-13 18:01:10,917 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,918 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2022-07-13 18:01:10,919 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,921 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2022-07-13 18:01:10,922 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,923 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2022-07-13 18:01:10,923 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,930 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 110 [2022-07-13 18:01:10,931 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,931 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 116 [2022-07-13 18:01:10,933 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,935 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2022-07-13 18:01:10,936 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,936 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2022-07-13 18:01:10,937 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,937 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 153 [2022-07-13 18:01:10,938 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,938 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 162 [2022-07-13 18:01:10,940 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,942 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2022-07-13 18:01:10,943 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,944 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 183 [2022-07-13 18:01:10,945 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:10,945 INFO L134 CoverageAnalysis]: Checked inductivity of 197 backedges. 87 proven. 28 refuted. 0 times theorem prover too weak. 82 trivial. 0 not checked. [2022-07-13 18:01:10,946 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-13 18:01:10,946 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [161601233] [2022-07-13 18:01:10,946 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [161601233] provided 0 perfect and 1 imperfect interpolant sequences [2022-07-13 18:01:10,946 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1494596494] [2022-07-13 18:01:10,946 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-13 18:01:10,946 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-07-13 18:01:10,946 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2022-07-13 18:01:10,947 INFO L229 MonitoredProcess]: Starting monitored process 3 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-07-13 18:01:10,948 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2022-07-13 18:01:11,072 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:11,074 INFO L263 TraceCheckSpWp]: Trace formula consists of 721 conjuncts, 13 conjunts are in the unsatisfiable core [2022-07-13 18:01:11,079 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-07-13 18:01:11,243 INFO L134 CoverageAnalysis]: Checked inductivity of 197 backedges. 143 proven. 4 refuted. 0 times theorem prover too weak. 50 trivial. 0 not checked. [2022-07-13 18:01:11,244 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-07-13 18:01:11,570 INFO L134 CoverageAnalysis]: Checked inductivity of 197 backedges. 77 proven. 39 refuted. 0 times theorem prover too weak. 81 trivial. 0 not checked. [2022-07-13 18:01:11,570 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1494596494] provided 0 perfect and 2 imperfect interpolant sequences [2022-07-13 18:01:11,570 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-07-13 18:01:11,571 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [13, 10, 11] total 26 [2022-07-13 18:01:11,571 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1125454432] [2022-07-13 18:01:11,571 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-07-13 18:01:11,571 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 26 states [2022-07-13 18:01:11,571 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-13 18:01:11,572 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 26 interpolants. [2022-07-13 18:01:11,572 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=125, Invalid=525, Unknown=0, NotChecked=0, Total=650 [2022-07-13 18:01:11,572 INFO L87 Difference]: Start difference. First operand 1138 states and 1333 transitions. Second operand has 26 states, 26 states have (on average 8.384615384615385) internal successors, (218), 22 states have internal predecessors, (218), 10 states have call successors, (39), 9 states have call predecessors, (39), 9 states have return successors, (34), 9 states have call predecessors, (34), 10 states have call successors, (34) [2022-07-13 18:01:12,609 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-13 18:01:12,609 INFO L93 Difference]: Finished difference Result 2431 states and 2924 transitions. [2022-07-13 18:01:12,609 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 27 states. [2022-07-13 18:01:12,610 INFO L78 Accepts]: Start accepts. Automaton has has 26 states, 26 states have (on average 8.384615384615385) internal successors, (218), 22 states have internal predecessors, (218), 10 states have call successors, (39), 9 states have call predecessors, (39), 9 states have return successors, (34), 9 states have call predecessors, (34), 10 states have call successors, (34) Word has length 191 [2022-07-13 18:01:12,610 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-13 18:01:12,614 INFO L225 Difference]: With dead ends: 2431 [2022-07-13 18:01:12,614 INFO L226 Difference]: Without dead ends: 1301 [2022-07-13 18:01:12,617 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 464 GetRequests, 414 SyntacticMatches, 4 SemanticMatches, 46 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 448 ImplicationChecksByTransitivity, 0.5s TimeCoverageRelationStatistics Valid=492, Invalid=1764, Unknown=0, NotChecked=0, Total=2256 [2022-07-13 18:01:12,617 INFO L413 NwaCegarLoop]: 158 mSDtfsCounter, 831 mSDsluCounter, 395 mSDsCounter, 0 mSdLazyCounter, 1525 mSolverCounterSat, 364 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.6s Time, 0 mProtectedPredicate, 0 mProtectedAction, 834 SdHoareTripleChecker+Valid, 553 SdHoareTripleChecker+Invalid, 1889 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 364 IncrementalHoareTripleChecker+Valid, 1525 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.7s IncrementalHoareTripleChecker+Time [2022-07-13 18:01:12,618 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [834 Valid, 553 Invalid, 1889 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [364 Valid, 1525 Invalid, 0 Unknown, 0 Unchecked, 0.7s Time] [2022-07-13 18:01:12,618 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1301 states. [2022-07-13 18:01:12,674 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1301 to 1148. [2022-07-13 18:01:12,676 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1148 states, 862 states have (on average 1.1392111368909512) internal successors, (982), 903 states have internal predecessors, (982), 151 states have call successors, (151), 130 states have call predecessors, (151), 134 states have return successors, (188), 143 states have call predecessors, (188), 151 states have call successors, (188) [2022-07-13 18:01:12,679 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1148 states to 1148 states and 1321 transitions. [2022-07-13 18:01:12,679 INFO L78 Accepts]: Start accepts. Automaton has 1148 states and 1321 transitions. Word has length 191 [2022-07-13 18:01:12,680 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-13 18:01:12,680 INFO L495 AbstractCegarLoop]: Abstraction has 1148 states and 1321 transitions. [2022-07-13 18:01:12,680 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 26 states, 26 states have (on average 8.384615384615385) internal successors, (218), 22 states have internal predecessors, (218), 10 states have call successors, (39), 9 states have call predecessors, (39), 9 states have return successors, (34), 9 states have call predecessors, (34), 10 states have call successors, (34) [2022-07-13 18:01:12,680 INFO L276 IsEmpty]: Start isEmpty. Operand 1148 states and 1321 transitions. [2022-07-13 18:01:12,682 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 208 [2022-07-13 18:01:12,683 INFO L187 NwaCegarLoop]: Found error trace [2022-07-13 18:01:12,683 INFO L195 NwaCegarLoop]: trace histogram [7, 7, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-13 18:01:12,717 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Forceful destruction successful, exit code 0 [2022-07-13 18:01:12,900 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 3 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable11 [2022-07-13 18:01:12,901 INFO L420 AbstractCegarLoop]: === Iteration 13 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-13 18:01:12,901 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-13 18:01:12,901 INFO L85 PathProgramCache]: Analyzing trace with hash 1314092273, now seen corresponding path program 1 times [2022-07-13 18:01:12,901 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-13 18:01:12,901 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [547126530] [2022-07-13 18:01:12,901 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-13 18:01:12,902 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-13 18:01:12,915 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:12,934 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2022-07-13 18:01:12,935 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:12,941 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2022-07-13 18:01:12,943 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:12,949 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2022-07-13 18:01:12,950 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:12,954 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2022-07-13 18:01:12,955 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:12,957 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2022-07-13 18:01:12,958 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:12,967 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 63 [2022-07-13 18:01:12,971 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:12,985 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2022-07-13 18:01:12,986 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:12,987 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2022-07-13 18:01:12,988 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:12,991 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2022-07-13 18:01:12,991 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:12,993 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2022-07-13 18:01:12,994 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:12,994 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 37 [2022-07-13 18:01:12,995 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:13,006 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 116 [2022-07-13 18:01:13,007 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:13,008 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 122 [2022-07-13 18:01:13,009 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:13,011 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2022-07-13 18:01:13,012 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:13,012 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2022-07-13 18:01:13,013 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:13,013 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2022-07-13 18:01:13,014 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:13,014 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 159 [2022-07-13 18:01:13,015 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:13,015 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 169 [2022-07-13 18:01:13,016 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:13,016 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 178 [2022-07-13 18:01:13,017 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:13,018 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2022-07-13 18:01:13,019 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:13,020 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 199 [2022-07-13 18:01:13,020 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:13,021 INFO L134 CoverageAnalysis]: Checked inductivity of 243 backedges. 86 proven. 58 refuted. 0 times theorem prover too weak. 99 trivial. 0 not checked. [2022-07-13 18:01:13,021 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-13 18:01:13,021 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [547126530] [2022-07-13 18:01:13,021 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [547126530] provided 0 perfect and 1 imperfect interpolant sequences [2022-07-13 18:01:13,022 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1362576772] [2022-07-13 18:01:13,022 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-13 18:01:13,022 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-07-13 18:01:13,022 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2022-07-13 18:01:13,023 INFO L229 MonitoredProcess]: Starting monitored process 4 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-07-13 18:01:13,024 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2022-07-13 18:01:13,142 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:13,145 INFO L263 TraceCheckSpWp]: Trace formula consists of 760 conjuncts, 12 conjunts are in the unsatisfiable core [2022-07-13 18:01:13,160 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-07-13 18:01:13,313 INFO L134 CoverageAnalysis]: Checked inductivity of 243 backedges. 186 proven. 11 refuted. 0 times theorem prover too weak. 46 trivial. 0 not checked. [2022-07-13 18:01:13,314 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-07-13 18:01:13,842 INFO L134 CoverageAnalysis]: Checked inductivity of 243 backedges. 101 proven. 61 refuted. 0 times theorem prover too weak. 81 trivial. 0 not checked. [2022-07-13 18:01:13,842 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1362576772] provided 0 perfect and 2 imperfect interpolant sequences [2022-07-13 18:01:13,842 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-07-13 18:01:13,842 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [12, 8, 8] total 22 [2022-07-13 18:01:13,843 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [81871992] [2022-07-13 18:01:13,843 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-07-13 18:01:13,843 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 22 states [2022-07-13 18:01:13,843 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-13 18:01:13,844 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 22 interpolants. [2022-07-13 18:01:13,844 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=68, Invalid=394, Unknown=0, NotChecked=0, Total=462 [2022-07-13 18:01:13,844 INFO L87 Difference]: Start difference. First operand 1148 states and 1321 transitions. Second operand has 22 states, 22 states have (on average 11.409090909090908) internal successors, (251), 15 states have internal predecessors, (251), 7 states have call successors, (47), 8 states have call predecessors, (47), 11 states have return successors, (41), 10 states have call predecessors, (41), 7 states have call successors, (41) [2022-07-13 18:01:15,542 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-13 18:01:15,543 INFO L93 Difference]: Finished difference Result 2250 states and 2629 transitions. [2022-07-13 18:01:15,543 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 30 states. [2022-07-13 18:01:15,543 INFO L78 Accepts]: Start accepts. Automaton has has 22 states, 22 states have (on average 11.409090909090908) internal successors, (251), 15 states have internal predecessors, (251), 7 states have call successors, (47), 8 states have call predecessors, (47), 11 states have return successors, (41), 10 states have call predecessors, (41), 7 states have call successors, (41) Word has length 207 [2022-07-13 18:01:15,544 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-13 18:01:15,548 INFO L225 Difference]: With dead ends: 2250 [2022-07-13 18:01:15,548 INFO L226 Difference]: Without dead ends: 1216 [2022-07-13 18:01:15,550 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 510 GetRequests, 460 SyntacticMatches, 3 SemanticMatches, 47 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 462 ImplicationChecksByTransitivity, 0.8s TimeCoverageRelationStatistics Valid=483, Invalid=1869, Unknown=0, NotChecked=0, Total=2352 [2022-07-13 18:01:15,551 INFO L413 NwaCegarLoop]: 146 mSDtfsCounter, 644 mSDsluCounter, 432 mSDsCounter, 0 mSdLazyCounter, 1728 mSolverCounterSat, 306 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.8s Time, 0 mProtectedPredicate, 0 mProtectedAction, 647 SdHoareTripleChecker+Valid, 578 SdHoareTripleChecker+Invalid, 2034 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 306 IncrementalHoareTripleChecker+Valid, 1728 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.0s IncrementalHoareTripleChecker+Time [2022-07-13 18:01:15,551 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [647 Valid, 578 Invalid, 2034 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [306 Valid, 1728 Invalid, 0 Unknown, 0 Unchecked, 1.0s Time] [2022-07-13 18:01:15,552 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1216 states. [2022-07-13 18:01:15,592 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1216 to 1172. [2022-07-13 18:01:15,594 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1172 states, 878 states have (on average 1.1309794988610478) internal successors, (993), 919 states have internal predecessors, (993), 151 states have call successors, (151), 138 states have call predecessors, (151), 142 states have return successors, (188), 143 states have call predecessors, (188), 151 states have call successors, (188) [2022-07-13 18:01:15,597 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1172 states to 1172 states and 1332 transitions. [2022-07-13 18:01:15,597 INFO L78 Accepts]: Start accepts. Automaton has 1172 states and 1332 transitions. Word has length 207 [2022-07-13 18:01:15,597 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-13 18:01:15,597 INFO L495 AbstractCegarLoop]: Abstraction has 1172 states and 1332 transitions. [2022-07-13 18:01:15,598 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 22 states, 22 states have (on average 11.409090909090908) internal successors, (251), 15 states have internal predecessors, (251), 7 states have call successors, (47), 8 states have call predecessors, (47), 11 states have return successors, (41), 10 states have call predecessors, (41), 7 states have call successors, (41) [2022-07-13 18:01:15,598 INFO L276 IsEmpty]: Start isEmpty. Operand 1172 states and 1332 transitions. [2022-07-13 18:01:15,601 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 209 [2022-07-13 18:01:15,601 INFO L187 NwaCegarLoop]: Found error trace [2022-07-13 18:01:15,601 INFO L195 NwaCegarLoop]: trace histogram [7, 7, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-13 18:01:15,630 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Forceful destruction successful, exit code 0 [2022-07-13 18:01:15,818 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable12,4 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-07-13 18:01:15,818 INFO L420 AbstractCegarLoop]: === Iteration 14 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-13 18:01:15,819 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-13 18:01:15,819 INFO L85 PathProgramCache]: Analyzing trace with hash -916420892, now seen corresponding path program 1 times [2022-07-13 18:01:15,819 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-13 18:01:15,819 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1100481832] [2022-07-13 18:01:15,819 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-13 18:01:15,819 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-13 18:01:15,848 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:15,876 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2022-07-13 18:01:15,876 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:15,882 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2022-07-13 18:01:15,884 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:15,901 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2022-07-13 18:01:15,902 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:15,906 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2022-07-13 18:01:15,907 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:15,908 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2022-07-13 18:01:15,909 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:15,910 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 63 [2022-07-13 18:01:15,913 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:15,923 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2022-07-13 18:01:15,924 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:15,925 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2022-07-13 18:01:15,926 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:15,927 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2022-07-13 18:01:15,928 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:15,928 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2022-07-13 18:01:15,928 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:15,929 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 37 [2022-07-13 18:01:15,929 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:15,935 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 117 [2022-07-13 18:01:15,936 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:15,936 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 123 [2022-07-13 18:01:15,938 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:15,943 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2022-07-13 18:01:15,944 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:15,945 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2022-07-13 18:01:15,945 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:15,946 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2022-07-13 18:01:15,946 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:15,947 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 160 [2022-07-13 18:01:15,947 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:15,955 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 170 [2022-07-13 18:01:15,956 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:15,957 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 179 [2022-07-13 18:01:15,958 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:15,965 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2022-07-13 18:01:15,967 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:15,969 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 200 [2022-07-13 18:01:15,969 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:15,970 INFO L134 CoverageAnalysis]: Checked inductivity of 244 backedges. 90 proven. 43 refuted. 0 times theorem prover too weak. 111 trivial. 0 not checked. [2022-07-13 18:01:15,970 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-13 18:01:15,971 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1100481832] [2022-07-13 18:01:15,971 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1100481832] provided 0 perfect and 1 imperfect interpolant sequences [2022-07-13 18:01:15,971 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [409848303] [2022-07-13 18:01:15,971 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-13 18:01:15,971 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-07-13 18:01:15,971 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2022-07-13 18:01:15,979 INFO L229 MonitoredProcess]: Starting monitored process 5 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-07-13 18:01:15,980 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Waiting until timeout for monitored process [2022-07-13 18:01:16,074 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:16,077 INFO L263 TraceCheckSpWp]: Trace formula consists of 760 conjuncts, 18 conjunts are in the unsatisfiable core [2022-07-13 18:01:16,080 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-07-13 18:01:16,255 INFO L134 CoverageAnalysis]: Checked inductivity of 244 backedges. 131 proven. 26 refuted. 0 times theorem prover too weak. 87 trivial. 0 not checked. [2022-07-13 18:01:16,256 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-07-13 18:01:16,705 INFO L134 CoverageAnalysis]: Checked inductivity of 244 backedges. 99 proven. 45 refuted. 0 times theorem prover too weak. 100 trivial. 0 not checked. [2022-07-13 18:01:16,705 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [409848303] provided 0 perfect and 2 imperfect interpolant sequences [2022-07-13 18:01:16,706 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-07-13 18:01:16,706 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [14, 8, 13] total 23 [2022-07-13 18:01:16,706 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1707706576] [2022-07-13 18:01:16,706 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-07-13 18:01:16,707 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 23 states [2022-07-13 18:01:16,707 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-13 18:01:16,707 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 23 interpolants. [2022-07-13 18:01:16,707 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=111, Invalid=395, Unknown=0, NotChecked=0, Total=506 [2022-07-13 18:01:16,708 INFO L87 Difference]: Start difference. First operand 1172 states and 1332 transitions. Second operand has 23 states, 23 states have (on average 10.08695652173913) internal successors, (232), 19 states have internal predecessors, (232), 13 states have call successors, (47), 11 states have call predecessors, (47), 13 states have return successors, (41), 14 states have call predecessors, (41), 13 states have call successors, (41) [2022-07-13 18:01:18,349 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-13 18:01:18,349 INFO L93 Difference]: Finished difference Result 2220 states and 2579 transitions. [2022-07-13 18:01:18,350 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 41 states. [2022-07-13 18:01:18,350 INFO L78 Accepts]: Start accepts. Automaton has has 23 states, 23 states have (on average 10.08695652173913) internal successors, (232), 19 states have internal predecessors, (232), 13 states have call successors, (47), 11 states have call predecessors, (47), 13 states have return successors, (41), 14 states have call predecessors, (41), 13 states have call successors, (41) Word has length 208 [2022-07-13 18:01:18,350 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-13 18:01:18,355 INFO L225 Difference]: With dead ends: 2220 [2022-07-13 18:01:18,356 INFO L226 Difference]: Without dead ends: 1624 [2022-07-13 18:01:18,358 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 524 GetRequests, 466 SyntacticMatches, 2 SemanticMatches, 56 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 681 ImplicationChecksByTransitivity, 0.7s TimeCoverageRelationStatistics Valid=822, Invalid=2484, Unknown=0, NotChecked=0, Total=3306 [2022-07-13 18:01:18,382 INFO L413 NwaCegarLoop]: 232 mSDtfsCounter, 1030 mSDsluCounter, 406 mSDsCounter, 0 mSdLazyCounter, 1532 mSolverCounterSat, 552 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.8s Time, 0 mProtectedPredicate, 0 mProtectedAction, 1033 SdHoareTripleChecker+Valid, 638 SdHoareTripleChecker+Invalid, 2084 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 552 IncrementalHoareTripleChecker+Valid, 1532 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.0s IncrementalHoareTripleChecker+Time [2022-07-13 18:01:18,382 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [1033 Valid, 638 Invalid, 2084 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [552 Valid, 1532 Invalid, 0 Unknown, 0 Unchecked, 1.0s Time] [2022-07-13 18:01:18,384 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1624 states. [2022-07-13 18:01:18,517 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1624 to 1484. [2022-07-13 18:01:18,519 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1484 states, 1113 states have (on average 1.1311769991015275) internal successors, (1259), 1160 states have internal predecessors, (1259), 192 states have call successors, (192), 176 states have call predecessors, (192), 178 states have return successors, (235), 182 states have call predecessors, (235), 192 states have call successors, (235) [2022-07-13 18:01:18,524 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1484 states to 1484 states and 1686 transitions. [2022-07-13 18:01:18,539 INFO L78 Accepts]: Start accepts. Automaton has 1484 states and 1686 transitions. Word has length 208 [2022-07-13 18:01:18,541 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-13 18:01:18,541 INFO L495 AbstractCegarLoop]: Abstraction has 1484 states and 1686 transitions. [2022-07-13 18:01:18,542 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 23 states, 23 states have (on average 10.08695652173913) internal successors, (232), 19 states have internal predecessors, (232), 13 states have call successors, (47), 11 states have call predecessors, (47), 13 states have return successors, (41), 14 states have call predecessors, (41), 13 states have call successors, (41) [2022-07-13 18:01:18,542 INFO L276 IsEmpty]: Start isEmpty. Operand 1484 states and 1686 transitions. [2022-07-13 18:01:18,551 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 264 [2022-07-13 18:01:18,551 INFO L187 NwaCegarLoop]: Found error trace [2022-07-13 18:01:18,551 INFO L195 NwaCegarLoop]: trace histogram [9, 9, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 5, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 4, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-13 18:01:18,585 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (5)] Forceful destruction successful, exit code 0 [2022-07-13 18:01:18,769 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable13,5 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-07-13 18:01:18,770 INFO L420 AbstractCegarLoop]: === Iteration 15 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-07-13 18:01:18,770 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-07-13 18:01:18,770 INFO L85 PathProgramCache]: Analyzing trace with hash 1779854262, now seen corresponding path program 1 times [2022-07-13 18:01:18,770 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-07-13 18:01:18,770 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1866817559] [2022-07-13 18:01:18,770 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-13 18:01:18,771 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-07-13 18:01:18,810 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:18,876 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 12 [2022-07-13 18:01:18,877 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:18,882 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2022-07-13 18:01:18,884 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:18,899 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2022-07-13 18:01:18,900 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:18,904 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2022-07-13 18:01:18,906 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:18,914 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2022-07-13 18:01:18,916 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:18,928 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 63 [2022-07-13 18:01:18,935 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:18,968 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2022-07-13 18:01:18,969 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:18,970 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2022-07-13 18:01:18,972 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:19,037 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2022-07-13 18:01:19,041 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:19,042 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2022-07-13 18:01:19,043 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:19,043 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 37 [2022-07-13 18:01:19,044 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:19,050 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 117 [2022-07-13 18:01:19,051 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:19,051 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 123 [2022-07-13 18:01:19,054 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:19,056 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2022-07-13 18:01:19,056 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:19,072 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2022-07-13 18:01:19,072 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:19,073 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2022-07-13 18:01:19,073 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:19,074 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 160 [2022-07-13 18:01:19,074 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:19,075 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 168 [2022-07-13 18:01:19,078 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:19,080 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 1 [2022-07-13 18:01:19,081 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:19,081 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2022-07-13 18:01:19,082 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:19,084 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2022-07-13 18:01:19,085 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:19,086 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2022-07-13 18:01:19,086 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:19,087 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 33 [2022-07-13 18:01:19,087 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:19,088 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 215 [2022-07-13 18:01:19,088 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:19,095 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 225 [2022-07-13 18:01:19,096 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:19,096 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 234 [2022-07-13 18:01:19,097 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:19,098 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2022-07-13 18:01:19,099 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:19,100 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 255 [2022-07-13 18:01:19,100 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:19,112 INFO L134 CoverageAnalysis]: Checked inductivity of 437 backedges. 127 proven. 85 refuted. 0 times theorem prover too weak. 225 trivial. 0 not checked. [2022-07-13 18:01:19,113 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-07-13 18:01:19,113 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1866817559] [2022-07-13 18:01:19,113 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1866817559] provided 0 perfect and 1 imperfect interpolant sequences [2022-07-13 18:01:19,113 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [501432081] [2022-07-13 18:01:19,113 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-07-13 18:01:19,113 INFO L173 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2022-07-13 18:01:19,114 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2022-07-13 18:01:19,115 INFO L229 MonitoredProcess]: Starting monitored process 6 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2022-07-13 18:01:19,155 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Waiting until timeout for monitored process [2022-07-13 18:01:19,328 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-07-13 18:01:19,332 INFO L263 TraceCheckSpWp]: Trace formula consists of 898 conjuncts, 30 conjunts are in the unsatisfiable core [2022-07-13 18:01:19,337 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2022-07-13 18:01:19,771 INFO L134 CoverageAnalysis]: Checked inductivity of 437 backedges. 153 proven. 89 refuted. 0 times theorem prover too weak. 195 trivial. 0 not checked. [2022-07-13 18:01:19,771 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2022-07-13 18:01:20,618 INFO L134 CoverageAnalysis]: Checked inductivity of 437 backedges. 98 proven. 136 refuted. 0 times theorem prover too weak. 203 trivial. 0 not checked. [2022-07-13 18:01:20,619 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleZ3 [501432081] provided 0 perfect and 2 imperfect interpolant sequences [2022-07-13 18:01:20,619 INFO L184 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2022-07-13 18:01:20,619 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [12, 11, 16] total 28 [2022-07-13 18:01:20,619 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1616337250] [2022-07-13 18:01:20,620 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2022-07-13 18:01:20,621 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 28 states [2022-07-13 18:01:20,621 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-07-13 18:01:20,621 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 28 interpolants. [2022-07-13 18:01:20,622 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=131, Invalid=625, Unknown=0, NotChecked=0, Total=756 [2022-07-13 18:01:20,622 INFO L87 Difference]: Start difference. First operand 1484 states and 1686 transitions. Second operand has 28 states, 28 states have (on average 10.892857142857142) internal successors, (305), 24 states have internal predecessors, (305), 16 states have call successors, (55), 12 states have call predecessors, (55), 17 states have return successors, (58), 16 states have call predecessors, (58), 16 states have call successors, (58) [2022-07-13 18:01:22,531 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-07-13 18:01:22,531 INFO L93 Difference]: Finished difference Result 1984 states and 2246 transitions. [2022-07-13 18:01:22,531 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 32 states. [2022-07-13 18:01:22,532 INFO L78 Accepts]: Start accepts. Automaton has has 28 states, 28 states have (on average 10.892857142857142) internal successors, (305), 24 states have internal predecessors, (305), 16 states have call successors, (55), 12 states have call predecessors, (55), 17 states have return successors, (58), 16 states have call predecessors, (58), 16 states have call successors, (58) Word has length 263 [2022-07-13 18:01:22,532 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-07-13 18:01:22,532 INFO L225 Difference]: With dead ends: 1984 [2022-07-13 18:01:22,533 INFO L226 Difference]: Without dead ends: 0 [2022-07-13 18:01:22,537 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 635 GetRequests, 578 SyntacticMatches, 4 SemanticMatches, 53 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 529 ImplicationChecksByTransitivity, 1.0s TimeCoverageRelationStatistics Valid=693, Invalid=2277, Unknown=0, NotChecked=0, Total=2970 [2022-07-13 18:01:22,538 INFO L413 NwaCegarLoop]: 156 mSDtfsCounter, 761 mSDsluCounter, 485 mSDsCounter, 0 mSdLazyCounter, 1762 mSolverCounterSat, 335 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.9s Time, 0 mProtectedPredicate, 0 mProtectedAction, 763 SdHoareTripleChecker+Valid, 641 SdHoareTripleChecker+Invalid, 2097 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 335 IncrementalHoareTripleChecker+Valid, 1762 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 1.1s IncrementalHoareTripleChecker+Time [2022-07-13 18:01:22,539 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [763 Valid, 641 Invalid, 2097 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [335 Valid, 1762 Invalid, 0 Unknown, 0 Unchecked, 1.1s Time] [2022-07-13 18:01:22,539 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2022-07-13 18:01:22,539 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2022-07-13 18:01:22,539 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-07-13 18:01:22,539 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2022-07-13 18:01:22,540 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 263 [2022-07-13 18:01:22,540 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-07-13 18:01:22,540 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2022-07-13 18:01:22,540 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 28 states, 28 states have (on average 10.892857142857142) internal successors, (305), 24 states have internal predecessors, (305), 16 states have call successors, (55), 12 states have call predecessors, (55), 17 states have return successors, (58), 16 states have call predecessors, (58), 16 states have call successors, (58) [2022-07-13 18:01:22,540 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2022-07-13 18:01:22,541 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2022-07-13 18:01:22,542 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2022-07-13 18:01:22,584 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (6)] Forceful destruction successful, exit code 0 [2022-07-13 18:01:22,771 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 6 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable14 [2022-07-13 18:01:22,773 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2022-07-13 18:01:31,691 INFO L895 garLoopResultBuilder]: At program point deactivatePumpENTRY(lines 551 558) the Hoare annotation is: (or (not (= ~waterLevel~0 1)) (= ~pumpRunning~0 |old(~pumpRunning~0)|) (not (= 1 ~systemActive~0)) (not (<= 1 |old(~pumpRunning~0)|)) (not (<= 1 ~switchedOnBeforeTS~0))) [2022-07-13 18:01:31,691 INFO L899 garLoopResultBuilder]: For program point deactivatePumpEXIT(lines 551 558) no Hoare annotation was computed. [2022-07-13 18:01:31,691 INFO L899 garLoopResultBuilder]: For program point deactivatePumpFINAL(lines 551 558) no Hoare annotation was computed. [2022-07-13 18:01:31,691 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 458 464) no Hoare annotation was computed. [2022-07-13 18:01:31,691 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 458 464) the Hoare annotation is: true [2022-07-13 18:01:31,691 INFO L895 garLoopResultBuilder]: At program point changeMethaneLevelENTRY(lines 943 954) the Hoare annotation is: (let ((.cse0 (not (= ~pumpRunning~0 0))) (.cse1 (not (= 1 ~systemActive~0))) (.cse2 (= |old(~methaneLevelCritical~0)| ~methaneLevelCritical~0)) (.cse3 (not (<= ~waterLevel~0 2)))) (and (or (not (= ~waterLevel~0 1)) .cse0 .cse1 .cse2) (or (not (< 1 ~waterLevel~0)) .cse0 .cse1 .cse2 .cse3) (or .cse1 .cse2 (not (<= 1 ~pumpRunning~0)) .cse3 (< ~waterLevel~0 2)))) [2022-07-13 18:01:31,692 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 943 954) no Hoare annotation was computed. [2022-07-13 18:01:31,692 INFO L899 garLoopResultBuilder]: For program point L947-1(lines 943 954) no Hoare annotation was computed. [2022-07-13 18:01:31,692 INFO L899 garLoopResultBuilder]: For program point L833(line 833) no Hoare annotation was computed. [2022-07-13 18:01:31,692 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 812 841) no Hoare annotation was computed. [2022-07-13 18:01:31,692 INFO L902 garLoopResultBuilder]: At program point cleanupENTRY(lines 812 841) the Hoare annotation is: true [2022-07-13 18:01:31,692 INFO L899 garLoopResultBuilder]: For program point L826(lines 826 830) no Hoare annotation was computed. [2022-07-13 18:01:31,692 INFO L902 garLoopResultBuilder]: At program point L826-1(lines 826 830) the Hoare annotation is: true [2022-07-13 18:01:31,692 INFO L899 garLoopResultBuilder]: For program point L823(line 823) no Hoare annotation was computed. [2022-07-13 18:01:31,692 INFO L902 garLoopResultBuilder]: At program point L822-2(lines 822 836) the Hoare annotation is: true [2022-07-13 18:01:31,692 INFO L902 garLoopResultBuilder]: At program point L818(line 818) the Hoare annotation is: true [2022-07-13 18:01:31,692 INFO L899 garLoopResultBuilder]: For program point L818-1(line 818) no Hoare annotation was computed. [2022-07-13 18:01:31,692 INFO L902 garLoopResultBuilder]: At program point L837(lines 812 841) the Hoare annotation is: true [2022-07-13 18:01:31,692 INFO L895 garLoopResultBuilder]: At program point L960(lines 955 963) the Hoare annotation is: (let ((.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (<= |old(~waterLevel~0)| 2)))) (and (or .cse0 (not (<= 1 |old(~pumpRunning~0)|)) (not (< 1 |old(~waterLevel~0)|)) (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= |timeShift_isMethaneLevelCritical_#res#1| ~methaneLevelCritical~0) (= ~waterLevel~0 1) (<= 1 ~switchedOnBeforeTS~0)) .cse1) (or .cse2 (not (= |old(~waterLevel~0)| 1)) .cse0) (or .cse2 .cse0 .cse1 (not (<= 2 |old(~waterLevel~0)|))))) [2022-07-13 18:01:31,692 INFO L899 garLoopResultBuilder]: For program point L923(lines 923 927) no Hoare annotation was computed. [2022-07-13 18:01:31,692 INFO L895 garLoopResultBuilder]: At program point L923-2(lines 919 930) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= 1 ~systemActive~0))) (.cse2 (not (<= |old(~waterLevel~0)| 2)))) (and (or .cse0 (not (= |old(~waterLevel~0)| 1)) .cse1) (or .cse1 (not (<= 1 |old(~pumpRunning~0)|)) (not (< 1 |old(~waterLevel~0)|)) (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= ~waterLevel~0 1) (<= 1 ~switchedOnBeforeTS~0)) .cse2) (or .cse0 .cse1 .cse2 (not (<= 2 |old(~waterLevel~0)|))))) [2022-07-13 18:01:31,692 INFO L895 garLoopResultBuilder]: At program point L791(line 791) the Hoare annotation is: (let ((.cse2 (= ~pumpRunning~0 0)) (.cse3 (= ~waterLevel~0 |timeShift_getWaterLevel_#res#1|)) (.cse4 (= |timeShift___utac_acc__Specification5_spec__3_~tmp~9#1| ~waterLevel~0)) (.cse5 (= ~waterLevel~0 1)) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= 1 ~systemActive~0))) (.cse6 (not (<= |old(~waterLevel~0)| 2)))) (and (or .cse0 (not (= |old(~waterLevel~0)| 1)) .cse1 (and .cse2 .cse3 .cse4 .cse5)) (or (and (= ~methaneLevelCritical~0 |timeShift_isMethaneAlarm_#res#1|) .cse2 .cse3 (= |timeShift_isMethaneLevelCritical_#res#1| ~methaneLevelCritical~0) (= |timeShift_processEnvironment_~tmp~5#1| ~methaneLevelCritical~0) .cse4 .cse5 (<= 1 ~switchedOnBeforeTS~0)) .cse1 (not (<= 1 |old(~pumpRunning~0)|)) (not (< 1 |old(~waterLevel~0)|)) .cse6) (or .cse0 .cse1 .cse6 (not (<= 2 |old(~waterLevel~0)|))))) [2022-07-13 18:01:31,692 INFO L899 garLoopResultBuilder]: For program point L791-1(line 791) no Hoare annotation was computed. [2022-07-13 18:01:31,693 INFO L899 garLoopResultBuilder]: For program point timeShiftFINAL(lines 431 457) no Hoare annotation was computed. [2022-07-13 18:01:31,693 INFO L899 garLoopResultBuilder]: For program point L445-1(lines 445 451) no Hoare annotation was computed. [2022-07-13 18:01:31,693 INFO L895 garLoopResultBuilder]: At program point L532(line 532) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= 1 ~systemActive~0))) (.cse2 (not (<= 1 |old(~pumpRunning~0)|))) (.cse3 (not (< 1 |old(~waterLevel~0)|))) (.cse4 (not (<= |old(~waterLevel~0)| 2)))) (and (or .cse0 (not (= |old(~waterLevel~0)| 1)) .cse1) (or (= ~methaneLevelCritical~0 0) .cse1 .cse2 .cse3 .cse4) (or .cse0 .cse1 .cse4 (not (<= 2 |old(~waterLevel~0)|))) (or .cse1 .cse2 .cse3 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= ~methaneLevelCritical~0 |timeShift_isMethaneAlarm_#res#1|) (= |timeShift_isMethaneLevelCritical_#res#1| ~methaneLevelCritical~0) (= |timeShift_processEnvironment_~tmp~5#1| ~methaneLevelCritical~0) (= ~waterLevel~0 1) (<= 1 ~switchedOnBeforeTS~0)) .cse4))) [2022-07-13 18:01:31,693 INFO L895 garLoopResultBuilder]: At program point L528(line 528) the Hoare annotation is: (let ((.cse4 (not (= |old(~pumpRunning~0)| 0))) (.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (<= 1 |old(~pumpRunning~0)|))) (.cse2 (not (< 1 |old(~waterLevel~0)|))) (.cse3 (not (<= |old(~waterLevel~0)| 2)))) (and (or .cse0 .cse1 .cse2 (not (= ~methaneLevelCritical~0 0)) .cse3) (or .cse4 (not (= |old(~waterLevel~0)| 1)) .cse0) (or .cse4 .cse0 .cse3 (not (<= 2 |old(~waterLevel~0)|))) (or .cse0 .cse1 .cse2 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= ~methaneLevelCritical~0 |timeShift_isMethaneAlarm_#res#1|) (= |timeShift_isMethaneLevelCritical_#res#1| ~methaneLevelCritical~0) (= |timeShift_processEnvironment_~tmp~5#1| ~methaneLevelCritical~0) (= ~waterLevel~0 1) (<= 1 ~switchedOnBeforeTS~0)) .cse3))) [2022-07-13 18:01:31,693 INFO L899 garLoopResultBuilder]: For program point L912(line 912) no Hoare annotation was computed. [2022-07-13 18:01:31,693 INFO L895 garLoopResultBuilder]: At program point L776(line 776) the Hoare annotation is: (let ((.cse2 (= ~pumpRunning~0 0)) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= 1 ~systemActive~0))) (.cse3 (= ~switchedOnBeforeTS~0 |old(~switchedOnBeforeTS~0)|)) (.cse4 (< 1 ~waterLevel~0)) (.cse5 (<= ~waterLevel~0 2)) (.cse6 (not (<= |old(~waterLevel~0)| 2)))) (and (or .cse0 .cse1 (and .cse2 .cse3 .cse4 .cse5) .cse6 (not (<= 2 |old(~waterLevel~0)|))) (or (and .cse2 .cse3 (= ~waterLevel~0 1)) .cse0 (not (= |old(~waterLevel~0)| 1)) .cse1) (or .cse1 (not (<= 1 |old(~pumpRunning~0)|)) (not (< 1 |old(~waterLevel~0)|)) (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse3 .cse4 .cse5) .cse6))) [2022-07-13 18:01:31,693 INFO L899 garLoopResultBuilder]: For program point L776-1(line 776) no Hoare annotation was computed. [2022-07-13 18:01:31,693 INFO L895 garLoopResultBuilder]: At program point L537(line 537) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (= ~pumpRunning~0 0)) (.cse1 (not (= 1 ~systemActive~0))) (.cse3 (not (<= |old(~waterLevel~0)| 2)))) (and (or .cse0 (not (= |old(~waterLevel~0)| 1)) .cse1 (and .cse2 (= ~waterLevel~0 1))) (or .cse0 .cse1 (and .cse2 (< 1 ~waterLevel~0) (<= ~waterLevel~0 2)) .cse3 (not (<= 2 |old(~waterLevel~0)|))) (or .cse1 (not (<= 1 |old(~pumpRunning~0)|)) (not (< 1 |old(~waterLevel~0)|)) .cse3))) [2022-07-13 18:01:31,693 INFO L899 garLoopResultBuilder]: For program point L793(lines 793 803) no Hoare annotation was computed. [2022-07-13 18:01:31,693 INFO L895 garLoopResultBuilder]: At program point L537-1(lines 518 542) the Hoare annotation is: (let ((.cse1 (= ~waterLevel~0 1)) (.cse4 (not (= |old(~pumpRunning~0)| 0))) (.cse0 (= ~pumpRunning~0 0)) (.cse2 (not (= 1 ~systemActive~0))) (.cse3 (not (<= |old(~waterLevel~0)| 2)))) (and (or (and (= ~methaneLevelCritical~0 |timeShift_isMethaneAlarm_#res#1|) .cse0 (= |timeShift_isMethaneLevelCritical_#res#1| ~methaneLevelCritical~0) (= |timeShift_processEnvironment_~tmp~5#1| ~methaneLevelCritical~0) .cse1 (<= 1 ~switchedOnBeforeTS~0)) .cse2 (not (<= 1 |old(~pumpRunning~0)|)) (not (< 1 |old(~waterLevel~0)|)) .cse3) (or .cse4 (not (= |old(~waterLevel~0)| 1)) .cse2 (and .cse0 .cse1)) (let ((.cse5 (= |old(~waterLevel~0)| ~waterLevel~0))) (or .cse4 (and .cse0 .cse5) .cse2 (and (<= 1 ~pumpRunning~0) .cse5) .cse3 (not (<= 2 |old(~waterLevel~0)|)))))) [2022-07-13 18:01:31,693 INFO L899 garLoopResultBuilder]: For program point L438(lines 438 444) no Hoare annotation was computed. [2022-07-13 18:01:31,693 INFO L895 garLoopResultBuilder]: At program point L566(lines 559 569) the Hoare annotation is: (let ((.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (<= |old(~waterLevel~0)| 2)))) (and (or .cse0 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= ~methaneLevelCritical~0 |timeShift_isMethaneAlarm_#res#1|) (= |timeShift_isMethaneLevelCritical_#res#1| ~methaneLevelCritical~0) (= ~waterLevel~0 1) (<= 1 ~switchedOnBeforeTS~0)) (not (<= 1 |old(~pumpRunning~0)|)) (not (< 1 |old(~waterLevel~0)|)) .cse1) (or .cse2 (not (= |old(~waterLevel~0)| 1)) .cse0) (or .cse2 .cse0 .cse1 (not (<= 2 |old(~waterLevel~0)|))))) [2022-07-13 18:01:31,693 INFO L899 garLoopResultBuilder]: For program point L789(lines 789 806) no Hoare annotation was computed. [2022-07-13 18:01:31,693 INFO L899 garLoopResultBuilder]: For program point L438-2(lines 434 456) no Hoare annotation was computed. [2022-07-13 18:01:31,694 INFO L895 garLoopResultBuilder]: At program point L789-1(lines 781 809) the Hoare annotation is: (let ((.cse1 (= ~waterLevel~0 |timeShift_getWaterLevel_#res#1|)) (.cse2 (= |timeShift___utac_acc__Specification5_spec__3_~tmp~9#1| ~waterLevel~0)) (.cse5 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (not (= 1 ~systemActive~0))) (.cse0 (= ~pumpRunning~0 0)) (.cse6 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse4 (not (<= |old(~waterLevel~0)| 2)))) (and (or (and (= ~methaneLevelCritical~0 |timeShift_isMethaneAlarm_#res#1|) .cse0 .cse1 (= |timeShift_isMethaneLevelCritical_#res#1| ~methaneLevelCritical~0) (= |timeShift_processEnvironment_~tmp~5#1| ~methaneLevelCritical~0) .cse2 (= ~waterLevel~0 1) (<= 1 ~switchedOnBeforeTS~0)) .cse3 (not (<= 1 |old(~pumpRunning~0)|)) (not (< 1 |old(~waterLevel~0)|)) .cse4) (or .cse5 (not (= |old(~waterLevel~0)| 1)) .cse3 (and .cse0 .cse1 (<= ~pumpRunning~0 |timeShift___utac_acc__Specification5_spec__3_~tmp___0~3#1|) .cse2 .cse6)) (let ((.cse7 (= 2 |timeShift_getWaterLevel_#res#1|)) (.cse8 (= |timeShift___utac_acc__Specification5_spec__3_~tmp~9#1| 2))) (or .cse5 (and (<= 1 ~pumpRunning~0) .cse7 .cse6 .cse8) .cse3 (and .cse0 .cse7 .cse6 .cse8) .cse4 (not (<= 2 |old(~waterLevel~0)|)))))) [2022-07-13 18:01:31,694 INFO L895 garLoopResultBuilder]: At program point L913(lines 908 915) the Hoare annotation is: (let ((.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (<= |old(~waterLevel~0)| 2)))) (and (or .cse0 (not (<= 1 |old(~pumpRunning~0)|)) (not (< 1 |old(~waterLevel~0)|)) .cse1) (or .cse2 (not (= |old(~waterLevel~0)| 1)) .cse0) (or .cse2 .cse0 .cse1 (not (<= 2 |old(~waterLevel~0)|))))) [2022-07-13 18:01:31,694 INFO L895 garLoopResultBuilder]: At program point L992(lines 987 995) the Hoare annotation is: (let ((.cse3 (not (= |old(~pumpRunning~0)| 0))) (.cse4 (not (= 1 ~systemActive~0))) (.cse5 (not (<= |old(~waterLevel~0)| 2))) (.cse0 (= ~pumpRunning~0 0)) (.cse6 (= ~waterLevel~0 |timeShift_getWaterLevel_#res#1|)) (.cse7 (= ~waterLevel~0 1))) (and (let ((.cse1 (= 2 |timeShift_getWaterLevel_#res#1|)) (.cse2 (= |old(~waterLevel~0)| ~waterLevel~0))) (or (and .cse0 .cse1 .cse2) .cse3 .cse4 (and (<= 1 ~pumpRunning~0) .cse1 .cse2) .cse5 (not (<= 2 |old(~waterLevel~0)|)))) (or .cse3 (and .cse0 .cse6 .cse7) (not (= |old(~waterLevel~0)| 1)) .cse4) (or .cse4 (not (<= 1 |old(~pumpRunning~0)|)) (not (< 1 |old(~waterLevel~0)|)) .cse5 (and (= ~methaneLevelCritical~0 |timeShift_isMethaneAlarm_#res#1|) .cse0 .cse6 (= |timeShift_isMethaneLevelCritical_#res#1| ~methaneLevelCritical~0) (= |timeShift_processEnvironment_~tmp~5#1| ~methaneLevelCritical~0) .cse7 (<= 1 ~switchedOnBeforeTS~0))))) [2022-07-13 18:01:31,694 INFO L899 garLoopResultBuilder]: For program point L794(lines 794 800) no Hoare annotation was computed. [2022-07-13 18:01:31,694 INFO L895 garLoopResultBuilder]: At program point timeShiftENTRY(lines 431 457) the Hoare annotation is: (let ((.cse2 (= ~pumpRunning~0 0)) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= 1 ~systemActive~0))) (.cse3 (= ~switchedOnBeforeTS~0 |old(~switchedOnBeforeTS~0)|)) (.cse4 (< 1 ~waterLevel~0)) (.cse5 (<= ~waterLevel~0 2)) (.cse6 (not (<= |old(~waterLevel~0)| 2)))) (and (or .cse0 .cse1 (and .cse2 .cse3 .cse4 .cse5) .cse6 (not (<= 2 |old(~waterLevel~0)|))) (or (and .cse2 .cse3 (= ~waterLevel~0 1)) .cse0 (not (= |old(~waterLevel~0)| 1)) .cse1) (or .cse1 (not (<= 1 |old(~pumpRunning~0)|)) (not (< 1 |old(~waterLevel~0)|)) (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse3 .cse4 .cse5) .cse6))) [2022-07-13 18:01:31,694 INFO L899 garLoopResultBuilder]: For program point L526(lines 526 534) no Hoare annotation was computed. [2022-07-13 18:01:31,694 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 431 457) no Hoare annotation was computed. [2022-07-13 18:01:31,694 INFO L895 garLoopResultBuilder]: At program point L778(lines 771 780) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (not (= 1 ~systemActive~0))) (.cse3 (not (<= |old(~waterLevel~0)| 2)))) (and (or .cse0 (and .cse1 (= |old(~waterLevel~0)| ~waterLevel~0)) .cse2 .cse3 (not (<= 2 |old(~waterLevel~0)|))) (or .cse0 (not (= |old(~waterLevel~0)| 1)) .cse2 (and .cse1 (= ~waterLevel~0 1))) (or .cse2 (not (<= 1 |old(~pumpRunning~0)|)) (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (< 1 ~waterLevel~0) (<= ~waterLevel~0 2) (<= 1 ~switchedOnBeforeTS~0)) (not (< 1 |old(~waterLevel~0)|)) .cse3))) [2022-07-13 18:01:31,694 INFO L899 garLoopResultBuilder]: For program point L522(lines 522 539) no Hoare annotation was computed. [2022-07-13 18:01:31,694 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 912) no Hoare annotation was computed. [2022-07-13 18:01:31,694 INFO L899 garLoopResultBuilder]: For program point L894(lines 894 901) no Hoare annotation was computed. [2022-07-13 18:01:31,694 INFO L899 garLoopResultBuilder]: For program point L894-2(lines 894 901) no Hoare annotation was computed. [2022-07-13 18:01:31,694 INFO L899 garLoopResultBuilder]: For program point L725(lines 725 731) no Hoare annotation was computed. [2022-07-13 18:01:31,695 INFO L899 garLoopResultBuilder]: For program point L725-1(lines 725 731) no Hoare annotation was computed. [2022-07-13 18:01:31,695 INFO L902 garLoopResultBuilder]: At program point L754(lines 695 758) the Hoare annotation is: true [2022-07-13 18:01:31,695 INFO L895 garLoopResultBuilder]: At program point L717(line 717) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse3 (= 2 ~waterLevel~0)) (.cse1 (= 1 ~systemActive~0)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 .cse2 (= ~waterLevel~0 1)) (and .cse0 .cse3 .cse1 .cse2) (and (<= 1 ~pumpRunning~0) .cse3 .cse1 .cse2))) [2022-07-13 18:01:31,695 INFO L902 garLoopResultBuilder]: At program point L903(lines 884 906) the Hoare annotation is: true [2022-07-13 18:01:31,695 INFO L895 garLoopResultBuilder]: At program point L870(lines 866 872) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2022-07-13 18:01:31,707 INFO L895 garLoopResultBuilder]: At program point L672(lines 668 674) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2022-07-13 18:01:31,707 INFO L899 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2022-07-13 18:01:31,707 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startENTRY(line -1) no Hoare annotation was computed. [2022-07-13 18:01:31,708 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2022-07-13 18:01:31,708 INFO L895 garLoopResultBuilder]: At program point L751(lines 704 752) the Hoare annotation is: false [2022-07-13 18:01:31,708 INFO L899 garLoopResultBuilder]: For program point L706(lines 705 750) no Hoare annotation was computed. [2022-07-13 18:01:31,708 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2022-07-13 18:01:31,708 INFO L895 garLoopResultBuilder]: At program point L768(lines 763 770) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2022-07-13 18:01:31,709 INFO L899 garLoopResultBuilder]: For program point L735(lines 735 746) no Hoare annotation was computed. [2022-07-13 18:01:31,709 INFO L895 garLoopResultBuilder]: At program point L727(line 727) the Hoare annotation is: (let ((.cse4 (= ~pumpRunning~0 0)) (.cse0 (< 1 ~waterLevel~0)) (.cse1 (= 1 ~systemActive~0)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse3 (<= ~waterLevel~0 2))) (or (and (<= 1 ~pumpRunning~0) .cse0 .cse1 .cse2 .cse3) (and .cse4 .cse1 .cse2 (= ~waterLevel~0 1)) (and .cse4 .cse0 .cse1 .cse2 .cse3))) [2022-07-13 18:01:31,709 INFO L895 garLoopResultBuilder]: At program point L748(lines 705 750) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse3 (= 2 ~waterLevel~0)) (.cse1 (= 1 ~systemActive~0)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 .cse2 (= ~waterLevel~0 1)) (and .cse0 .cse3 .cse1 .cse2) (and (<= 1 ~pumpRunning~0) .cse3 .cse1 .cse2))) [2022-07-13 18:01:31,709 INFO L899 garLoopResultBuilder]: For program point L715(lines 715 721) no Hoare annotation was computed. [2022-07-13 18:01:31,709 INFO L899 garLoopResultBuilder]: For program point L715-1(lines 715 721) no Hoare annotation was computed. [2022-07-13 18:01:31,709 INFO L899 garLoopResultBuilder]: For program point L707(lines 707 711) no Hoare annotation was computed. [2022-07-13 18:01:31,709 INFO L902 garLoopResultBuilder]: At program point L881(lines 873 883) the Hoare annotation is: true [2022-07-13 18:01:31,710 INFO L895 garLoopResultBuilder]: At program point L687(lines 682 690) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2022-07-13 18:01:31,710 INFO L895 garLoopResultBuilder]: At program point L679(lines 675 681) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2022-07-13 18:01:31,711 INFO L899 garLoopResultBuilder]: For program point L741(lines 741 745) no Hoare annotation was computed. [2022-07-13 18:01:31,711 INFO L895 garLoopResultBuilder]: At program point L741-2(lines 735 746) the Hoare annotation is: (let ((.cse4 (= ~pumpRunning~0 0)) (.cse0 (< 1 ~waterLevel~0)) (.cse1 (= 1 ~systemActive~0)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse3 (<= ~waterLevel~0 2))) (or (and (<= 1 ~pumpRunning~0) .cse0 .cse1 .cse2 .cse3) (and .cse4 .cse1 .cse2 (= ~waterLevel~0 1)) (and .cse4 .cse0 .cse1 .cse2 .cse3))) [2022-07-13 18:01:31,711 INFO L895 garLoopResultBuilder]: At program point processEnvironment__wrappee__highWaterSensorENTRY(lines 466 490) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 .cse2 (not (<= 2 ~waterLevel~0)) (not (<= ~waterLevel~0 2))) (or (not (= ~waterLevel~0 1)) .cse0 .cse1 .cse2))) [2022-07-13 18:01:31,711 INFO L895 garLoopResultBuilder]: At program point L630(lines 615 633) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (not (= 1 ~systemActive~0)))) (and (or (not (= ~waterLevel~0 1)) .cse0 (and .cse1 (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_#res#1| 0) (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp___0~0#1| 0)) .cse2) (or .cse0 .cse1 .cse2 (not (<= 2 ~waterLevel~0)) (not (<= ~waterLevel~0 2))))) [2022-07-13 18:01:31,711 INFO L899 garLoopResultBuilder]: For program point L624(lines 624 628) no Hoare annotation was computed. [2022-07-13 18:01:31,711 INFO L899 garLoopResultBuilder]: For program point L624-2(lines 624 628) no Hoare annotation was computed. [2022-07-13 18:01:31,712 INFO L899 garLoopResultBuilder]: For program point L1000(lines 1000 1006) no Hoare annotation was computed. [2022-07-13 18:01:31,715 INFO L895 garLoopResultBuilder]: At program point L548(lines 543 550) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= 1 ~systemActive~0)))) (and (or (not (= ~waterLevel~0 1)) .cse0 .cse1) (or (<= 1 ~pumpRunning~0) .cse0 .cse1 (not (<= 2 ~waterLevel~0)) (not (<= ~waterLevel~0 2))))) [2022-07-13 18:01:31,715 INFO L895 garLoopResultBuilder]: At program point L480(line 480) the Hoare annotation is: (let ((.cse3 (= 1 ~systemActive~0))) (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not .cse3)) (.cse2 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= ~pumpRunning~0 0) .cse3 (= |processEnvironment__wrappee__highWaterSensor_~tmp~3#1| 0)))) (and (or .cse0 .cse1 .cse2 (not (<= 2 ~waterLevel~0)) (not (<= ~waterLevel~0 2))) (or (not (= ~waterLevel~0 1)) .cse0 .cse1 .cse2)))) [2022-07-13 18:01:31,715 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__highWaterSensorEXIT(lines 466 490) no Hoare annotation was computed. [2022-07-13 18:01:31,715 INFO L899 garLoopResultBuilder]: For program point L474(lines 474 482) no Hoare annotation was computed. [2022-07-13 18:01:31,716 INFO L899 garLoopResultBuilder]: For program point L470(lines 470 487) no Hoare annotation was computed. [2022-07-13 18:01:31,716 INFO L895 garLoopResultBuilder]: At program point L1005(lines 996 1009) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (not (= 1 ~systemActive~0))) (.cse1 (= ~pumpRunning~0 0))) (and (or .cse0 .cse1 .cse2 (not (<= 2 ~waterLevel~0)) (not (<= ~waterLevel~0 2))) (or (not (= ~waterLevel~0 1)) .cse0 .cse2 (and .cse1 (= |processEnvironment__wrappee__highWaterSensor_isHighWaterSensorDry_#res#1| 1))))) [2022-07-13 18:01:31,716 INFO L895 garLoopResultBuilder]: At program point L485(line 485) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 (not (<= 2 ~waterLevel~0)) (not (<= ~waterLevel~0 2))) (or (not (= ~waterLevel~0 1)) .cse0 .cse1))) [2022-07-13 18:01:31,716 INFO L899 garLoopResultBuilder]: For program point L485-1(lines 466 490) no Hoare annotation was computed. [2022-07-13 18:01:31,716 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 931 942) no Hoare annotation was computed. [2022-07-13 18:01:31,716 INFO L899 garLoopResultBuilder]: For program point L935-1(lines 931 942) no Hoare annotation was computed. [2022-07-13 18:01:31,717 INFO L895 garLoopResultBuilder]: At program point waterRiseENTRY(lines 931 942) the Hoare annotation is: (let ((.cse0 (not (= ~pumpRunning~0 0))) (.cse1 (not (= 1 ~systemActive~0))) (.cse2 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse3 (not (<= |old(~waterLevel~0)| 2))) (.cse4 (not (<= 2 |old(~waterLevel~0)|)))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4) (or .cse0 (not (= |old(~waterLevel~0)| 1)) .cse1 .cse2) (or .cse1 (not (<= 1 ~pumpRunning~0)) .cse2 .cse3 .cse4))) [2022-07-13 18:01:31,717 INFO L895 garLoopResultBuilder]: At program point processEnvironment__wrappee__lowWaterSensorENTRY(lines 492 516) the Hoare annotation is: (let ((.cse3 (not (= ~waterLevel~0 1))) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 .cse2 (not (<= 2 ~waterLevel~0)) (not (<= ~waterLevel~0 2))) (or .cse3 (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse2 (not (<= 1 |old(~pumpRunning~0)|)) (not (= ~methaneLevelCritical~0 0)) (not (<= 1 ~switchedOnBeforeTS~0))) (or .cse3 .cse0 .cse1 .cse2))) [2022-07-13 18:01:31,717 INFO L895 garLoopResultBuilder]: At program point L506(line 506) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (not (= ~waterLevel~0 1))) (.cse1 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 (not (<= 2 ~waterLevel~0)) (not (<= ~waterLevel~0 2))) (or .cse2 .cse0 .cse1) (or .cse2 .cse1 (not (<= 1 |old(~pumpRunning~0)|)) (not (= ~methaneLevelCritical~0 0)) (not (<= 1 ~switchedOnBeforeTS~0))))) [2022-07-13 18:01:31,717 INFO L895 garLoopResultBuilder]: At program point L502(line 502) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (not (= ~waterLevel~0 1))) (.cse1 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 (not (<= 2 ~waterLevel~0)) (not (<= ~waterLevel~0 2))) (or .cse2 .cse0 .cse1) (or .cse2 .cse1 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= |processEnvironment__wrappee__lowWaterSensor_isLowWaterLevel_~tmp~7#1| 0) (= |processEnvironment__wrappee__lowWaterSensor_isLowWaterSensorDry_#res#1| 0)) (not (<= 1 |old(~pumpRunning~0)|)) (not (= ~methaneLevelCritical~0 0)) (not (<= 1 ~switchedOnBeforeTS~0))))) [2022-07-13 18:01:31,717 INFO L899 garLoopResultBuilder]: For program point L500(lines 500 508) no Hoare annotation was computed. [2022-07-13 18:01:31,717 INFO L899 garLoopResultBuilder]: For program point L496(lines 496 513) no Hoare annotation was computed. [2022-07-13 18:01:31,717 INFO L895 garLoopResultBuilder]: At program point L649(lines 634 652) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (not (= ~waterLevel~0 1))) (.cse1 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 (not (<= 2 ~waterLevel~0)) (not (<= ~waterLevel~0 2))) (or .cse2 .cse0 .cse1) (or .cse2 .cse1 (not (<= 1 |old(~pumpRunning~0)|)) (not (= ~methaneLevelCritical~0 0)) (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 |processEnvironment__wrappee__lowWaterSensor_isLowWaterLevel_#res#1|) (<= 1 |processEnvironment__wrappee__lowWaterSensor_isLowWaterLevel_~tmp___0~1#1|) (= |processEnvironment__wrappee__lowWaterSensor_isLowWaterLevel_~tmp~7#1| 0) (= |processEnvironment__wrappee__lowWaterSensor_isLowWaterSensorDry_#res#1| 0)) (not (<= 1 ~switchedOnBeforeTS~0))))) [2022-07-13 18:01:31,717 INFO L899 garLoopResultBuilder]: For program point L643(lines 643 647) no Hoare annotation was computed. [2022-07-13 18:01:31,718 INFO L899 garLoopResultBuilder]: For program point L643-2(lines 643 647) no Hoare annotation was computed. [2022-07-13 18:01:31,718 INFO L895 garLoopResultBuilder]: At program point L511(line 511) the Hoare annotation is: (let ((.cse3 (not (= ~waterLevel~0 1))) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 .cse2 (not (<= 2 ~waterLevel~0)) (not (<= ~waterLevel~0 2))) (or .cse3 .cse2 (not (<= 1 |old(~pumpRunning~0)|)) (not (= ~methaneLevelCritical~0 0)) (not (<= 1 ~switchedOnBeforeTS~0))) (or .cse3 .cse0 .cse1 .cse2))) [2022-07-13 18:01:31,718 INFO L899 garLoopResultBuilder]: For program point L511-1(lines 492 516) no Hoare annotation was computed. [2022-07-13 18:01:31,718 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__lowWaterSensorEXIT(lines 492 516) no Hoare annotation was computed. [2022-07-13 18:01:31,718 INFO L895 garLoopResultBuilder]: At program point L1015(lines 1010 1018) the Hoare annotation is: (let ((.cse0 (not (= ~waterLevel~0 1))) (.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 (not (<= 1 |old(~pumpRunning~0)|)) (not (= ~methaneLevelCritical~0 0)) (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= |processEnvironment__wrappee__lowWaterSensor_isLowWaterSensorDry_#res#1| 0)) (not (<= 1 ~switchedOnBeforeTS~0))) (or .cse2 .cse1 (not (<= 2 ~waterLevel~0)) (not (<= ~waterLevel~0 2))) (or .cse0 .cse2 .cse1))) [2022-07-13 18:01:31,718 INFO L899 garLoopResultBuilder]: For program point isPumpRunningEXIT(lines 570 578) no Hoare annotation was computed. [2022-07-13 18:01:31,718 INFO L902 garLoopResultBuilder]: At program point isPumpRunningENTRY(lines 570 578) the Hoare annotation is: true [2022-07-13 18:01:31,718 INFO L899 garLoopResultBuilder]: For program point isPumpRunningFINAL(lines 570 578) no Hoare annotation was computed. [2022-07-13 18:01:31,721 INFO L356 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-07-13 18:01:31,728 INFO L176 ceAbstractionStarter]: Computing trace abstraction results [2022-07-13 18:01:31,810 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 13.07 06:01:31 BoogieIcfgContainer [2022-07-13 18:01:31,811 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2022-07-13 18:01:31,811 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2022-07-13 18:01:31,811 INFO L271 PluginConnector]: Initializing Witness Printer... [2022-07-13 18:01:31,812 INFO L275 PluginConnector]: Witness Printer initialized [2022-07-13 18:01:31,812 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 13.07 06:01:04" (3/4) ... [2022-07-13 18:01:31,817 INFO L137 WitnessPrinter]: Generating witness for correct program [2022-07-13 18:01:31,821 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure deactivatePump [2022-07-13 18:01:31,826 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2022-07-13 18:01:31,827 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2022-07-13 18:01:31,827 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2022-07-13 18:01:31,827 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2022-07-13 18:01:31,827 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__highWaterSensor [2022-07-13 18:01:31,827 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2022-07-13 18:01:31,828 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__lowWaterSensor [2022-07-13 18:01:31,828 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure isPumpRunning [2022-07-13 18:01:31,855 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 54 nodes and edges [2022-07-13 18:01:31,855 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 22 nodes and edges [2022-07-13 18:01:31,855 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 11 nodes and edges [2022-07-13 18:01:31,856 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2022-07-13 18:01:31,856 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2022-07-13 18:01:31,857 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2022-07-13 18:01:31,857 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2022-07-13 18:01:31,882 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || !(1 == systemActive)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || (pumpRunning == 0 && waterLevel == 1))) && ((((!(1 == systemActive) || !(1 <= \old(pumpRunning))) || (((pumpRunning == \old(pumpRunning) && 1 < waterLevel) && waterLevel <= 2) && 1 <= switchedOnBeforeTS)) || !(1 < \old(waterLevel))) || !(\old(waterLevel) <= 2)) [2022-07-13 18:01:31,882 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) && ((((!(1 == systemActive) || !(1 <= \old(pumpRunning))) || !(1 < \old(waterLevel))) || ((pumpRunning == \old(pumpRunning) && waterLevel == 1) && 1 <= switchedOnBeforeTS)) || !(\old(waterLevel) <= 2))) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) [2022-07-13 18:01:31,885 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((((methaneLevelCritical == \result && pumpRunning == 0) && waterLevel == \result) && \result == methaneLevelCritical) && tmp == methaneLevelCritical) && tmp == waterLevel) && waterLevel == 1) && 1 <= switchedOnBeforeTS) || !(1 == systemActive)) || !(1 <= \old(pumpRunning))) || !(1 < \old(waterLevel))) || !(\old(waterLevel) <= 2)) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || ((((pumpRunning == 0 && waterLevel == \result) && pumpRunning <= tmp___0) && tmp == waterLevel) && \old(waterLevel) == waterLevel))) && (((((!(\old(pumpRunning) == 0) || (((1 <= pumpRunning && 2 == \result) && \old(waterLevel) == waterLevel) && tmp == 2)) || !(1 == systemActive)) || (((pumpRunning == 0 && 2 == \result) && \old(waterLevel) == waterLevel) && tmp == 2)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) [2022-07-13 18:01:31,885 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((methaneLevelCritical == \result && pumpRunning == 0) && \result == methaneLevelCritical) && tmp == methaneLevelCritical) && waterLevel == 1) && 1 <= switchedOnBeforeTS) || !(1 == systemActive)) || !(1 <= \old(pumpRunning))) || !(1 < \old(waterLevel))) || !(\old(waterLevel) <= 2)) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || (pumpRunning == 0 && waterLevel == 1))) && (((((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || !(1 == systemActive)) || (1 <= pumpRunning && \old(waterLevel) == waterLevel)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) [2022-07-13 18:01:31,885 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!(1 == systemActive) || !(1 <= \old(pumpRunning))) || !(1 < \old(waterLevel))) || !(\old(waterLevel) <= 2)) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive))) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) [2022-07-13 18:01:31,886 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((pumpRunning == 0 && 2 == \result) && \old(waterLevel) == waterLevel) || !(\old(pumpRunning) == 0)) || !(1 == systemActive)) || ((1 <= pumpRunning && 2 == \result) && \old(waterLevel) == waterLevel)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) && (((!(\old(pumpRunning) == 0) || ((pumpRunning == 0 && waterLevel == \result) && waterLevel == 1)) || !(\old(waterLevel) == 1)) || !(1 == systemActive))) && ((((!(1 == systemActive) || !(1 <= \old(pumpRunning))) || !(1 < \old(waterLevel))) || !(\old(waterLevel) <= 2)) || ((((((methaneLevelCritical == \result && pumpRunning == 0) && waterLevel == \result) && \result == methaneLevelCritical) && tmp == methaneLevelCritical) && waterLevel == 1) && 1 <= switchedOnBeforeTS)) [2022-07-13 18:01:31,886 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!(1 == systemActive) || !(1 <= \old(pumpRunning))) || !(1 < \old(waterLevel))) || (((pumpRunning == \old(pumpRunning) && \result == methaneLevelCritical) && waterLevel == 1) && 1 <= switchedOnBeforeTS)) || !(\old(waterLevel) <= 2)) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive))) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) [2022-07-13 18:01:31,886 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!(1 == systemActive) || ((((pumpRunning == \old(pumpRunning) && methaneLevelCritical == \result) && \result == methaneLevelCritical) && waterLevel == 1) && 1 <= switchedOnBeforeTS)) || !(1 <= \old(pumpRunning))) || !(1 < \old(waterLevel))) || !(\old(waterLevel) <= 2)) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive))) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) [2022-07-13 18:01:31,899 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((!(waterLevel == 1) || !(1 == systemActive)) || !(1 <= \old(pumpRunning))) || !(methaneLevelCritical == 0)) || (pumpRunning == \old(pumpRunning) && \result == 0)) || !(1 <= switchedOnBeforeTS)) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(2 <= waterLevel)) || !(waterLevel <= 2))) && ((!(waterLevel == 1) || !(\old(pumpRunning) == 0)) || !(1 == systemActive)) [2022-07-13 18:01:31,900 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(1 == systemActive)) || !(2 <= waterLevel)) || !(waterLevel <= 2)) && (((!(waterLevel == 1) || !(\old(pumpRunning) == 0)) || !(1 == systemActive)) || (pumpRunning == 0 && \result == 1)) [2022-07-13 18:01:31,900 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(2 <= waterLevel)) || !(waterLevel <= 2)) && ((!(waterLevel == 1) || !(\old(pumpRunning) == 0)) || !(1 == systemActive))) && (((((!(waterLevel == 1) || !(1 == systemActive)) || !(1 <= \old(pumpRunning))) || !(methaneLevelCritical == 0)) || ((((pumpRunning == \old(pumpRunning) && 1 <= \result) && 1 <= tmp___0) && tmp == 0) && \result == 0)) || !(1 <= switchedOnBeforeTS)) [2022-07-13 18:01:31,902 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(waterLevel == 1) || !(\old(pumpRunning) == 0)) || ((pumpRunning == 0 && \result == 0) && tmp___0 == 0)) || !(1 == systemActive)) && ((((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(1 == systemActive)) || !(2 <= waterLevel)) || !(waterLevel <= 2)) [2022-07-13 18:01:31,903 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(waterLevel == 1) || !(\old(pumpRunning) == 0)) || !(1 == systemActive)) && ((((1 <= pumpRunning || !(\old(pumpRunning) == 0)) || !(1 == systemActive)) || !(2 <= waterLevel)) || !(waterLevel <= 2)) [2022-07-13 18:01:31,936 INFO L141 WitnessManager]: Wrote witness to /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/witness.graphml [2022-07-13 18:01:31,937 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2022-07-13 18:01:31,937 INFO L158 Benchmark]: Toolchain (without parser) took 28306.74ms. Allocated memory was 92.3MB in the beginning and 383.8MB in the end (delta: 291.5MB). Free memory was 70.3MB in the beginning and 155.1MB in the end (delta: -84.8MB). Peak memory consumption was 207.0MB. Max. memory is 16.1GB. [2022-07-13 18:01:31,951 INFO L158 Benchmark]: CDTParser took 0.19ms. Allocated memory is still 92.3MB. Free memory is still 67.4MB. There was no memory consumed. Max. memory is 16.1GB. [2022-07-13 18:01:31,952 INFO L158 Benchmark]: CACSL2BoogieTranslator took 697.52ms. Allocated memory is still 92.3MB. Free memory was 70.0MB in the beginning and 58.2MB in the end (delta: 11.8MB). Peak memory consumption was 13.0MB. Max. memory is 16.1GB. [2022-07-13 18:01:31,952 INFO L158 Benchmark]: Boogie Procedure Inliner took 64.52ms. Allocated memory is still 92.3MB. Free memory was 58.2MB in the beginning and 55.7MB in the end (delta: 2.5MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2022-07-13 18:01:31,952 INFO L158 Benchmark]: Boogie Preprocessor took 37.69ms. Allocated memory is still 92.3MB. Free memory was 55.4MB in the beginning and 53.9MB in the end (delta: 1.5MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2022-07-13 18:01:31,953 INFO L158 Benchmark]: RCFGBuilder took 447.18ms. Allocated memory was 92.3MB in the beginning and 125.8MB in the end (delta: 33.6MB). Free memory was 53.9MB in the beginning and 100.9MB in the end (delta: -47.1MB). Peak memory consumption was 19.5MB. Max. memory is 16.1GB. [2022-07-13 18:01:31,953 INFO L158 Benchmark]: TraceAbstraction took 26929.05ms. Allocated memory was 125.8MB in the beginning and 383.8MB in the end (delta: 257.9MB). Free memory was 100.4MB in the beginning and 161.4MB in the end (delta: -61.0MB). Peak memory consumption was 201.8MB. Max. memory is 16.1GB. [2022-07-13 18:01:31,954 INFO L158 Benchmark]: Witness Printer took 125.45ms. Allocated memory is still 383.8MB. Free memory was 161.4MB in the beginning and 155.1MB in the end (delta: 6.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. [2022-07-13 18:01:31,956 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.19ms. Allocated memory is still 92.3MB. Free memory is still 67.4MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 697.52ms. Allocated memory is still 92.3MB. Free memory was 70.0MB in the beginning and 58.2MB in the end (delta: 11.8MB). Peak memory consumption was 13.0MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 64.52ms. Allocated memory is still 92.3MB. Free memory was 58.2MB in the beginning and 55.7MB in the end (delta: 2.5MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 37.69ms. Allocated memory is still 92.3MB. Free memory was 55.4MB in the beginning and 53.9MB in the end (delta: 1.5MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 447.18ms. Allocated memory was 92.3MB in the beginning and 125.8MB in the end (delta: 33.6MB). Free memory was 53.9MB in the beginning and 100.9MB in the end (delta: -47.1MB). Peak memory consumption was 19.5MB. Max. memory is 16.1GB. * TraceAbstraction took 26929.05ms. Allocated memory was 125.8MB in the beginning and 383.8MB in the end (delta: 257.9MB). Free memory was 100.4MB in the beginning and 161.4MB in the end (delta: -61.0MB). Peak memory consumption was 201.8MB. Max. memory is 16.1GB. * Witness Printer took 125.45ms. Allocated memory is still 383.8MB. Free memory was 161.4MB in the beginning and 155.1MB in the end (delta: 6.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 912]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 10 procedures, 105 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 26.8s, OverallIterations: 15, TraceHistogramMax: 9, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.1s, AutomataDifference: 9.9s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 8.9s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 5597 SdHoareTripleChecker+Valid, 6.1s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 5535 mSDsluCounter, 7812 SdHoareTripleChecker+Invalid, 5.1s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 5492 mSDsCounter, 2392 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 9980 IncrementalHoareTripleChecker+Invalid, 12372 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 2392 mSolverCounterUnsat, 2320 mSDtfsCounter, 9980 mSolverCounterSat, 0.1s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 2651 GetRequests, 2297 SyntacticMatches, 17 SemanticMatches, 337 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 2921 ImplicationChecksByTransitivity, 3.9s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=1484occurred in iteration=14, InterpolantAutomatonStates: 266, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.6s AutomataMinimizationTime, 15 MinimizatonAttempts, 611 StatesRemovedByMinimization, 12 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 49 LocationsWithAnnotation, 3929 PreInvPairs, 4093 NumberOfFragments, 2088 HoareAnnotationTreeSize, 3929 FomulaSimplifications, 5131 FormulaSimplificationTreeSizeReduction, 1.9s HoareSimplificationTime, 49 FomulaSimplificationsInter, 79977 FormulaSimplificationTreeSizeReductionInter, 6.9s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.2s SsaConstructionTime, 0.7s SatisfiabilityAnalysisTime, 4.9s InterpolantComputationTime, 2600 NumberOfCodeBlocks, 2600 NumberOfCodeBlocksAsserted, 20 NumberOfCheckSat, 3553 ConstructedInterpolants, 0 QuantifiedInterpolants, 8331 SizeOfPredicates, 14 NumberOfNonLiveVariables, 3646 ConjunctsInSsa, 81 ConjunctsInUnsatCore, 25 InterpolantComputations, 10 PerfectInterpolantSequences, 3055/3702 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 884]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 873]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 996]: Loop Invariant Derived loop invariant: ((((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(1 == systemActive)) || !(2 <= waterLevel)) || !(waterLevel <= 2)) && (((!(waterLevel == 1) || !(\old(pumpRunning) == 0)) || !(1 == systemActive)) || (pumpRunning == 0 && \result == 1)) - InvariantResult [Line: 615]: Loop Invariant Derived loop invariant: (((!(waterLevel == 1) || !(\old(pumpRunning) == 0)) || ((pumpRunning == 0 && \result == 0) && tmp___0 == 0)) || !(1 == systemActive)) && ((((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(1 == systemActive)) || !(2 <= waterLevel)) || !(waterLevel <= 2)) - InvariantResult [Line: 695]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 771]: Loop Invariant Derived loop invariant: (((((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || !(1 == systemActive)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || (pumpRunning == 0 && waterLevel == 1))) && ((((!(1 == systemActive) || !(1 <= \old(pumpRunning))) || (((pumpRunning == \old(pumpRunning) && 1 < waterLevel) && waterLevel <= 2) && 1 <= switchedOnBeforeTS)) || !(1 < \old(waterLevel))) || !(\old(waterLevel) <= 2)) - InvariantResult [Line: 705]: Loop Invariant Derived loop invariant: ((((pumpRunning == 0 && 1 == systemActive) && splverifierCounter == 0) && waterLevel == 1) || (((pumpRunning == 0 && 2 == waterLevel) && 1 == systemActive) && splverifierCounter == 0)) || (((1 <= pumpRunning && 2 == waterLevel) && 1 == systemActive) && splverifierCounter == 0) - InvariantResult [Line: 559]: Loop Invariant Derived loop invariant: (((((!(1 == systemActive) || ((((pumpRunning == \old(pumpRunning) && methaneLevelCritical == \result) && \result == methaneLevelCritical) && waterLevel == 1) && 1 <= switchedOnBeforeTS)) || !(1 <= \old(pumpRunning))) || !(1 < \old(waterLevel))) || !(\old(waterLevel) <= 2)) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive))) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) - InvariantResult [Line: 763]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1 - InvariantResult [Line: 668]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1 - InvariantResult [Line: 919]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) && ((((!(1 == systemActive) || !(1 <= \old(pumpRunning))) || !(1 < \old(waterLevel))) || ((pumpRunning == \old(pumpRunning) && waterLevel == 1) && 1 <= switchedOnBeforeTS)) || !(\old(waterLevel) <= 2))) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) - InvariantResult [Line: 987]: Loop Invariant Derived loop invariant: ((((((((pumpRunning == 0 && 2 == \result) && \old(waterLevel) == waterLevel) || !(\old(pumpRunning) == 0)) || !(1 == systemActive)) || ((1 <= pumpRunning && 2 == \result) && \old(waterLevel) == waterLevel)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) && (((!(\old(pumpRunning) == 0) || ((pumpRunning == 0 && waterLevel == \result) && waterLevel == 1)) || !(\old(waterLevel) == 1)) || !(1 == systemActive))) && ((((!(1 == systemActive) || !(1 <= \old(pumpRunning))) || !(1 < \old(waterLevel))) || !(\old(waterLevel) <= 2)) || ((((((methaneLevelCritical == \result && pumpRunning == 0) && waterLevel == \result) && \result == methaneLevelCritical) && tmp == methaneLevelCritical) && waterLevel == 1) && 1 <= switchedOnBeforeTS)) - InvariantResult [Line: 866]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1 - InvariantResult [Line: 955]: Loop Invariant Derived loop invariant: (((((!(1 == systemActive) || !(1 <= \old(pumpRunning))) || !(1 < \old(waterLevel))) || (((pumpRunning == \old(pumpRunning) && \result == methaneLevelCritical) && waterLevel == 1) && 1 <= switchedOnBeforeTS)) || !(\old(waterLevel) <= 2)) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive))) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) - InvariantResult [Line: 518]: Loop Invariant Derived loop invariant: ((((((((((methaneLevelCritical == \result && pumpRunning == 0) && \result == methaneLevelCritical) && tmp == methaneLevelCritical) && waterLevel == 1) && 1 <= switchedOnBeforeTS) || !(1 == systemActive)) || !(1 <= \old(pumpRunning))) || !(1 < \old(waterLevel))) || !(\old(waterLevel) <= 2)) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || (pumpRunning == 0 && waterLevel == 1))) && (((((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || !(1 == systemActive)) || (1 <= pumpRunning && \old(waterLevel) == waterLevel)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) - InvariantResult [Line: 812]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 634]: Loop Invariant Derived loop invariant: ((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(2 <= waterLevel)) || !(waterLevel <= 2)) && ((!(waterLevel == 1) || !(\old(pumpRunning) == 0)) || !(1 == systemActive))) && (((((!(waterLevel == 1) || !(1 == systemActive)) || !(1 <= \old(pumpRunning))) || !(methaneLevelCritical == 0)) || ((((pumpRunning == \old(pumpRunning) && 1 <= \result) && 1 <= tmp___0) && tmp == 0) && \result == 0)) || !(1 <= switchedOnBeforeTS)) - InvariantResult [Line: 682]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1 - InvariantResult [Line: 908]: Loop Invariant Derived loop invariant: ((((!(1 == systemActive) || !(1 <= \old(pumpRunning))) || !(1 < \old(waterLevel))) || !(\old(waterLevel) <= 2)) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive))) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) - InvariantResult [Line: 704]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 543]: Loop Invariant Derived loop invariant: ((!(waterLevel == 1) || !(\old(pumpRunning) == 0)) || !(1 == systemActive)) && ((((1 <= pumpRunning || !(\old(pumpRunning) == 0)) || !(1 == systemActive)) || !(2 <= waterLevel)) || !(waterLevel <= 2)) - InvariantResult [Line: 781]: Loop Invariant Derived loop invariant: ((((((((((((methaneLevelCritical == \result && pumpRunning == 0) && waterLevel == \result) && \result == methaneLevelCritical) && tmp == methaneLevelCritical) && tmp == waterLevel) && waterLevel == 1) && 1 <= switchedOnBeforeTS) || !(1 == systemActive)) || !(1 <= \old(pumpRunning))) || !(1 < \old(waterLevel))) || !(\old(waterLevel) <= 2)) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || ((((pumpRunning == 0 && waterLevel == \result) && pumpRunning <= tmp___0) && tmp == waterLevel) && \old(waterLevel) == waterLevel))) && (((((!(\old(pumpRunning) == 0) || (((1 <= pumpRunning && 2 == \result) && \old(waterLevel) == waterLevel) && tmp == 2)) || !(1 == systemActive)) || (((pumpRunning == 0 && 2 == \result) && \old(waterLevel) == waterLevel) && tmp == 2)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) - InvariantResult [Line: 1010]: Loop Invariant Derived loop invariant: ((((((!(waterLevel == 1) || !(1 == systemActive)) || !(1 <= \old(pumpRunning))) || !(methaneLevelCritical == 0)) || (pumpRunning == \old(pumpRunning) && \result == 0)) || !(1 <= switchedOnBeforeTS)) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(2 <= waterLevel)) || !(waterLevel <= 2))) && ((!(waterLevel == 1) || !(\old(pumpRunning) == 0)) || !(1 == systemActive)) - InvariantResult [Line: 822]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 675]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1 RESULT: Ultimate proved your program to be correct! [2022-07-13 18:01:32,023 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE