./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec3_product34.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 839c364b Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e99cb339-fe18-4d48-af53-48306c3463be/bin/uautomizer-DrprNOufMa/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e99cb339-fe18-4d48-af53-48306c3463be/bin/uautomizer-DrprNOufMa/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e99cb339-fe18-4d48-af53-48306c3463be/bin/uautomizer-DrprNOufMa/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e99cb339-fe18-4d48-af53-48306c3463be/bin/uautomizer-DrprNOufMa/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec3_product34.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e99cb339-fe18-4d48-af53-48306c3463be/bin/uautomizer-DrprNOufMa/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e99cb339-fe18-4d48-af53-48306c3463be/bin/uautomizer-DrprNOufMa --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 750fa47004e8b71818a419cd0705c167dc764081be79a2bed3ff642b9979f0ab --- Real Ultimate output --- This is Ultimate 0.2.2-hotfix-svcomp22-839c364 [2021-12-06 17:04:26,627 INFO L177 SettingsManager]: Resetting all preferences to default values... [2021-12-06 17:04:26,628 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2021-12-06 17:04:26,653 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2021-12-06 17:04:26,653 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2021-12-06 17:04:26,654 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2021-12-06 17:04:26,655 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2021-12-06 17:04:26,657 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2021-12-06 17:04:26,659 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2021-12-06 17:04:26,660 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2021-12-06 17:04:26,661 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2021-12-06 17:04:26,662 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2021-12-06 17:04:26,662 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2021-12-06 17:04:26,663 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2021-12-06 17:04:26,664 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2021-12-06 17:04:26,665 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2021-12-06 17:04:26,666 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2021-12-06 17:04:26,667 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2021-12-06 17:04:26,669 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2021-12-06 17:04:26,671 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2021-12-06 17:04:26,672 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2021-12-06 17:04:26,674 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2021-12-06 17:04:26,675 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2021-12-06 17:04:26,675 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2021-12-06 17:04:26,678 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2021-12-06 17:04:26,679 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2021-12-06 17:04:26,679 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2021-12-06 17:04:26,680 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2021-12-06 17:04:26,680 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2021-12-06 17:04:26,681 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2021-12-06 17:04:26,682 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2021-12-06 17:04:26,682 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2021-12-06 17:04:26,683 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2021-12-06 17:04:26,684 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2021-12-06 17:04:26,684 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2021-12-06 17:04:26,685 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2021-12-06 17:04:26,685 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2021-12-06 17:04:26,685 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2021-12-06 17:04:26,685 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2021-12-06 17:04:26,686 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2021-12-06 17:04:26,687 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2021-12-06 17:04:26,687 INFO L101 SettingsManager]: Beginning loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e99cb339-fe18-4d48-af53-48306c3463be/bin/uautomizer-DrprNOufMa/config/svcomp-Reach-32bit-Automizer_Default.epf [2021-12-06 17:04:26,706 INFO L113 SettingsManager]: Loading preferences was successful [2021-12-06 17:04:26,706 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2021-12-06 17:04:26,707 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2021-12-06 17:04:26,707 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2021-12-06 17:04:26,707 INFO L136 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2021-12-06 17:04:26,707 INFO L138 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2021-12-06 17:04:26,708 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2021-12-06 17:04:26,708 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2021-12-06 17:04:26,708 INFO L138 SettingsManager]: * Use SBE=true [2021-12-06 17:04:26,708 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2021-12-06 17:04:26,708 INFO L138 SettingsManager]: * sizeof long=4 [2021-12-06 17:04:26,709 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2021-12-06 17:04:26,709 INFO L138 SettingsManager]: * sizeof POINTER=4 [2021-12-06 17:04:26,709 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2021-12-06 17:04:26,709 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2021-12-06 17:04:26,709 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2021-12-06 17:04:26,709 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2021-12-06 17:04:26,709 INFO L138 SettingsManager]: * sizeof long double=12 [2021-12-06 17:04:26,709 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2021-12-06 17:04:26,710 INFO L138 SettingsManager]: * Use constant arrays=true [2021-12-06 17:04:26,710 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2021-12-06 17:04:26,710 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2021-12-06 17:04:26,710 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2021-12-06 17:04:26,710 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2021-12-06 17:04:26,710 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-12-06 17:04:26,710 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2021-12-06 17:04:26,710 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2021-12-06 17:04:26,711 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2021-12-06 17:04:26,711 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2021-12-06 17:04:26,711 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2021-12-06 17:04:26,711 INFO L138 SettingsManager]: * Large block encoding in concurrent analysis=OFF [2021-12-06 17:04:26,711 INFO L138 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2021-12-06 17:04:26,711 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2021-12-06 17:04:26,711 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2021-12-06 17:04:26,711 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e99cb339-fe18-4d48-af53-48306c3463be/bin/uautomizer-DrprNOufMa/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e99cb339-fe18-4d48-af53-48306c3463be/bin/uautomizer-DrprNOufMa Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 750fa47004e8b71818a419cd0705c167dc764081be79a2bed3ff642b9979f0ab [2021-12-06 17:04:26,903 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2021-12-06 17:04:26,918 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2021-12-06 17:04:26,920 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2021-12-06 17:04:26,921 INFO L271 PluginConnector]: Initializing CDTParser... [2021-12-06 17:04:26,921 INFO L275 PluginConnector]: CDTParser initialized [2021-12-06 17:04:26,922 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e99cb339-fe18-4d48-af53-48306c3463be/bin/uautomizer-DrprNOufMa/../../sv-benchmarks/c/product-lines/minepump_spec3_product34.cil.c [2021-12-06 17:04:26,963 INFO L220 CDTParser]: Created temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e99cb339-fe18-4d48-af53-48306c3463be/bin/uautomizer-DrprNOufMa/data/5fb22be79/fbe4872122ce4a7b8e92d90bfcb5d80b/FLAG58350cdfc [2021-12-06 17:04:27,358 INFO L306 CDTParser]: Found 1 translation units. [2021-12-06 17:04:27,358 INFO L160 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e99cb339-fe18-4d48-af53-48306c3463be/sv-benchmarks/c/product-lines/minepump_spec3_product34.cil.c [2021-12-06 17:04:27,368 INFO L349 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e99cb339-fe18-4d48-af53-48306c3463be/bin/uautomizer-DrprNOufMa/data/5fb22be79/fbe4872122ce4a7b8e92d90bfcb5d80b/FLAG58350cdfc [2021-12-06 17:04:27,381 INFO L357 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e99cb339-fe18-4d48-af53-48306c3463be/bin/uautomizer-DrprNOufMa/data/5fb22be79/fbe4872122ce4a7b8e92d90bfcb5d80b [2021-12-06 17:04:27,383 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2021-12-06 17:04:27,384 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2021-12-06 17:04:27,385 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2021-12-06 17:04:27,385 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2021-12-06 17:04:27,387 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2021-12-06 17:04:27,388 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 06.12 05:04:27" (1/1) ... [2021-12-06 17:04:27,389 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@67d78aa7 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.12 05:04:27, skipping insertion in model container [2021-12-06 17:04:27,389 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 06.12 05:04:27" (1/1) ... [2021-12-06 17:04:27,394 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2021-12-06 17:04:27,430 INFO L178 MainTranslator]: Built tables and reachable declarations [2021-12-06 17:04:27,596 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e99cb339-fe18-4d48-af53-48306c3463be/sv-benchmarks/c/product-lines/minepump_spec3_product34.cil.c[16171,16184] [2021-12-06 17:04:27,605 INFO L209 PostProcessor]: Analyzing one entry point: main [2021-12-06 17:04:27,612 INFO L203 MainTranslator]: Completed pre-run [2021-12-06 17:04:27,653 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e99cb339-fe18-4d48-af53-48306c3463be/sv-benchmarks/c/product-lines/minepump_spec3_product34.cil.c[16171,16184] [2021-12-06 17:04:27,658 INFO L209 PostProcessor]: Analyzing one entry point: main [2021-12-06 17:04:27,671 INFO L208 MainTranslator]: Completed translation [2021-12-06 17:04:27,671 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.12 05:04:27 WrapperNode [2021-12-06 17:04:27,671 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2021-12-06 17:04:27,672 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2021-12-06 17:04:27,672 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2021-12-06 17:04:27,672 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2021-12-06 17:04:27,677 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.12 05:04:27" (1/1) ... [2021-12-06 17:04:27,688 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.12 05:04:27" (1/1) ... [2021-12-06 17:04:27,707 INFO L137 Inliner]: procedures = 53, calls = 151, calls flagged for inlining = 21, calls inlined = 18, statements flattened = 232 [2021-12-06 17:04:27,708 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2021-12-06 17:04:27,708 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2021-12-06 17:04:27,708 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2021-12-06 17:04:27,708 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2021-12-06 17:04:27,715 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.12 05:04:27" (1/1) ... [2021-12-06 17:04:27,715 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.12 05:04:27" (1/1) ... [2021-12-06 17:04:27,717 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.12 05:04:27" (1/1) ... [2021-12-06 17:04:27,717 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.12 05:04:27" (1/1) ... [2021-12-06 17:04:27,721 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.12 05:04:27" (1/1) ... [2021-12-06 17:04:27,725 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.12 05:04:27" (1/1) ... [2021-12-06 17:04:27,727 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.12 05:04:27" (1/1) ... [2021-12-06 17:04:27,729 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2021-12-06 17:04:27,729 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2021-12-06 17:04:27,729 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2021-12-06 17:04:27,730 INFO L275 PluginConnector]: RCFGBuilder initialized [2021-12-06 17:04:27,730 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.12 05:04:27" (1/1) ... [2021-12-06 17:04:27,736 INFO L168 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-12-06 17:04:27,747 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e99cb339-fe18-4d48-af53-48306c3463be/bin/uautomizer-DrprNOufMa/z3 [2021-12-06 17:04:27,756 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e99cb339-fe18-4d48-af53-48306c3463be/bin/uautomizer-DrprNOufMa/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2021-12-06 17:04:27,758 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e99cb339-fe18-4d48-af53-48306c3463be/bin/uautomizer-DrprNOufMa/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2021-12-06 17:04:27,787 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2021-12-06 17:04:27,787 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2021-12-06 17:04:27,787 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2021-12-06 17:04:27,787 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneLevelCritical [2021-12-06 17:04:27,787 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneLevelCritical [2021-12-06 17:04:27,787 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2021-12-06 17:04:27,787 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2021-12-06 17:04:27,787 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2021-12-06 17:04:27,788 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2021-12-06 17:04:27,788 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2021-12-06 17:04:27,788 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2021-12-06 17:04:27,788 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2021-12-06 17:04:27,788 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2021-12-06 17:04:27,788 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2021-12-06 17:04:27,788 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2021-12-06 17:04:27,788 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2021-12-06 17:04:27,838 INFO L236 CfgBuilder]: Building ICFG [2021-12-06 17:04:27,840 INFO L262 CfgBuilder]: Building CFG for each procedure with an implementation [2021-12-06 17:04:28,044 INFO L277 CfgBuilder]: Performing block encoding [2021-12-06 17:04:28,050 INFO L296 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2021-12-06 17:04:28,050 INFO L301 CfgBuilder]: Removed 2 assume(true) statements. [2021-12-06 17:04:28,052 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 06.12 05:04:28 BoogieIcfgContainer [2021-12-06 17:04:28,052 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2021-12-06 17:04:28,054 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2021-12-06 17:04:28,054 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2021-12-06 17:04:28,056 INFO L275 PluginConnector]: TraceAbstraction initialized [2021-12-06 17:04:28,056 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 06.12 05:04:27" (1/3) ... [2021-12-06 17:04:28,057 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@1afaee44 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 06.12 05:04:28, skipping insertion in model container [2021-12-06 17:04:28,057 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.12 05:04:27" (2/3) ... [2021-12-06 17:04:28,057 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@1afaee44 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 06.12 05:04:28, skipping insertion in model container [2021-12-06 17:04:28,057 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 06.12 05:04:28" (3/3) ... [2021-12-06 17:04:28,058 INFO L111 eAbstractionObserver]: Analyzing ICFG minepump_spec3_product34.cil.c [2021-12-06 17:04:28,062 INFO L204 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2021-12-06 17:04:28,063 INFO L163 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2021-12-06 17:04:28,097 INFO L338 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2021-12-06 17:04:28,102 INFO L339 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mLoopAccelerationTechnique=FAST_UPR [2021-12-06 17:04:28,102 INFO L340 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2021-12-06 17:04:28,116 INFO L276 IsEmpty]: Start isEmpty. Operand has 77 states, 60 states have (on average 1.4) internal successors, (84), 66 states have internal predecessors, (84), 9 states have call successors, (9), 6 states have call predecessors, (9), 6 states have return successors, (9), 8 states have call predecessors, (9), 9 states have call successors, (9) [2021-12-06 17:04:28,121 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2021-12-06 17:04:28,121 INFO L506 BasicCegarLoop]: Found error trace [2021-12-06 17:04:28,121 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-06 17:04:28,122 INFO L402 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-06 17:04:28,126 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-06 17:04:28,126 INFO L85 PathProgramCache]: Analyzing trace with hash 77119383, now seen corresponding path program 1 times [2021-12-06 17:04:28,132 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-06 17:04:28,133 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1023740336] [2021-12-06 17:04:28,133 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-06 17:04:28,134 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-06 17:04:28,221 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:04:28,276 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2021-12-06 17:04:28,278 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:04:28,283 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-06 17:04:28,283 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-06 17:04:28,283 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1023740336] [2021-12-06 17:04:28,284 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1023740336] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-06 17:04:28,284 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-06 17:04:28,284 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-12-06 17:04:28,285 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [518580527] [2021-12-06 17:04:28,286 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-06 17:04:28,289 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2021-12-06 17:04:28,289 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-06 17:04:28,309 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2021-12-06 17:04:28,310 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-12-06 17:04:28,311 INFO L87 Difference]: Start difference. First operand has 77 states, 60 states have (on average 1.4) internal successors, (84), 66 states have internal predecessors, (84), 9 states have call successors, (9), 6 states have call predecessors, (9), 6 states have return successors, (9), 8 states have call predecessors, (9), 9 states have call successors, (9) Second operand has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-06 17:04:28,335 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-06 17:04:28,335 INFO L93 Difference]: Finished difference Result 146 states and 199 transitions. [2021-12-06 17:04:28,336 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2021-12-06 17:04:28,337 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 25 [2021-12-06 17:04:28,337 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-06 17:04:28,346 INFO L225 Difference]: With dead ends: 146 [2021-12-06 17:04:28,347 INFO L226 Difference]: Without dead ends: 68 [2021-12-06 17:04:28,351 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-12-06 17:04:28,353 INFO L933 BasicCegarLoop]: 96 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 0 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 96 SdHoareTripleChecker+Invalid, 0 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 0 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-06 17:04:28,354 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [0 Valid, 96 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 0 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-06 17:04:28,367 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 68 states. [2021-12-06 17:04:28,384 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 68 to 68. [2021-12-06 17:04:28,385 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 68 states, 53 states have (on average 1.320754716981132) internal successors, (70), 58 states have internal predecessors, (70), 9 states have call successors, (9), 6 states have call predecessors, (9), 5 states have return successors, (8), 7 states have call predecessors, (8), 8 states have call successors, (8) [2021-12-06 17:04:28,387 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 68 states to 68 states and 87 transitions. [2021-12-06 17:04:28,388 INFO L78 Accepts]: Start accepts. Automaton has 68 states and 87 transitions. Word has length 25 [2021-12-06 17:04:28,388 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-06 17:04:28,388 INFO L470 AbstractCegarLoop]: Abstraction has 68 states and 87 transitions. [2021-12-06 17:04:28,388 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-06 17:04:28,388 INFO L276 IsEmpty]: Start isEmpty. Operand 68 states and 87 transitions. [2021-12-06 17:04:28,390 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2021-12-06 17:04:28,391 INFO L506 BasicCegarLoop]: Found error trace [2021-12-06 17:04:28,391 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-06 17:04:28,391 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2021-12-06 17:04:28,391 INFO L402 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-06 17:04:28,392 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-06 17:04:28,392 INFO L85 PathProgramCache]: Analyzing trace with hash -736072085, now seen corresponding path program 1 times [2021-12-06 17:04:28,392 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-06 17:04:28,392 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1967845516] [2021-12-06 17:04:28,393 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-06 17:04:28,393 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-06 17:04:28,417 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:04:28,451 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2021-12-06 17:04:28,454 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:04:28,457 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-06 17:04:28,457 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-06 17:04:28,458 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1967845516] [2021-12-06 17:04:28,458 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1967845516] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-06 17:04:28,458 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-06 17:04:28,458 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-12-06 17:04:28,458 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1424023197] [2021-12-06 17:04:28,459 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-06 17:04:28,460 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-12-06 17:04:28,460 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-06 17:04:28,461 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-12-06 17:04:28,461 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-06 17:04:28,461 INFO L87 Difference]: Start difference. First operand 68 states and 87 transitions. Second operand has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 3 states have internal predecessors, (22), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-06 17:04:28,475 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-06 17:04:28,475 INFO L93 Difference]: Finished difference Result 101 states and 129 transitions. [2021-12-06 17:04:28,475 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-12-06 17:04:28,476 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 3 states have internal predecessors, (22), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 26 [2021-12-06 17:04:28,476 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-06 17:04:28,477 INFO L225 Difference]: With dead ends: 101 [2021-12-06 17:04:28,477 INFO L226 Difference]: Without dead ends: 59 [2021-12-06 17:04:28,478 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-06 17:04:28,480 INFO L933 BasicCegarLoop]: 74 mSDtfsCounter, 13 mSDsluCounter, 57 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 16 SdHoareTripleChecker+Valid, 131 SdHoareTripleChecker+Invalid, 1 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-06 17:04:28,480 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [16 Valid, 131 Invalid, 1 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-06 17:04:28,481 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 59 states. [2021-12-06 17:04:28,488 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 59 to 59. [2021-12-06 17:04:28,488 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 59 states, 47 states have (on average 1.3404255319148937) internal successors, (63), 52 states have internal predecessors, (63), 6 states have call successors, (6), 5 states have call predecessors, (6), 5 states have return successors, (6), 5 states have call predecessors, (6), 6 states have call successors, (6) [2021-12-06 17:04:28,490 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 59 states to 59 states and 75 transitions. [2021-12-06 17:04:28,490 INFO L78 Accepts]: Start accepts. Automaton has 59 states and 75 transitions. Word has length 26 [2021-12-06 17:04:28,490 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-06 17:04:28,490 INFO L470 AbstractCegarLoop]: Abstraction has 59 states and 75 transitions. [2021-12-06 17:04:28,490 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 3 states have internal predecessors, (22), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-06 17:04:28,491 INFO L276 IsEmpty]: Start isEmpty. Operand 59 states and 75 transitions. [2021-12-06 17:04:28,492 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 32 [2021-12-06 17:04:28,492 INFO L506 BasicCegarLoop]: Found error trace [2021-12-06 17:04:28,492 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-06 17:04:28,492 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2021-12-06 17:04:28,492 INFO L402 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-06 17:04:28,493 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-06 17:04:28,493 INFO L85 PathProgramCache]: Analyzing trace with hash 1036891216, now seen corresponding path program 1 times [2021-12-06 17:04:28,494 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-06 17:04:28,494 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1294832892] [2021-12-06 17:04:28,494 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-06 17:04:28,494 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-06 17:04:28,523 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:04:28,569 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2021-12-06 17:04:28,571 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:04:28,574 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-06 17:04:28,574 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-06 17:04:28,575 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1294832892] [2021-12-06 17:04:28,575 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1294832892] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-06 17:04:28,575 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-06 17:04:28,575 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-12-06 17:04:28,575 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [101898783] [2021-12-06 17:04:28,575 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-06 17:04:28,576 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-12-06 17:04:28,576 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-06 17:04:28,577 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-12-06 17:04:28,577 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-12-06 17:04:28,577 INFO L87 Difference]: Start difference. First operand 59 states and 75 transitions. Second operand has 5 states, 5 states have (on average 5.6) internal successors, (28), 5 states have internal predecessors, (28), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-06 17:04:28,628 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-06 17:04:28,628 INFO L93 Difference]: Finished difference Result 111 states and 144 transitions. [2021-12-06 17:04:28,628 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-12-06 17:04:28,628 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 5.6) internal successors, (28), 5 states have internal predecessors, (28), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 31 [2021-12-06 17:04:28,629 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-06 17:04:28,630 INFO L225 Difference]: With dead ends: 111 [2021-12-06 17:04:28,630 INFO L226 Difference]: Without dead ends: 59 [2021-12-06 17:04:28,631 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-12-06 17:04:28,632 INFO L933 BasicCegarLoop]: 68 mSDtfsCounter, 100 mSDsluCounter, 104 mSDsCounter, 0 mSdLazyCounter, 9 mSolverCounterSat, 9 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 100 SdHoareTripleChecker+Valid, 172 SdHoareTripleChecker+Invalid, 18 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 9 IncrementalHoareTripleChecker+Valid, 9 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-06 17:04:28,633 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [100 Valid, 172 Invalid, 18 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [9 Valid, 9 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-06 17:04:28,633 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 59 states. [2021-12-06 17:04:28,641 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 59 to 59. [2021-12-06 17:04:28,641 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 59 states, 47 states have (on average 1.3191489361702127) internal successors, (62), 52 states have internal predecessors, (62), 6 states have call successors, (6), 5 states have call predecessors, (6), 5 states have return successors, (6), 5 states have call predecessors, (6), 6 states have call successors, (6) [2021-12-06 17:04:28,643 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 59 states to 59 states and 74 transitions. [2021-12-06 17:04:28,643 INFO L78 Accepts]: Start accepts. Automaton has 59 states and 74 transitions. Word has length 31 [2021-12-06 17:04:28,643 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-06 17:04:28,643 INFO L470 AbstractCegarLoop]: Abstraction has 59 states and 74 transitions. [2021-12-06 17:04:28,643 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 5.6) internal successors, (28), 5 states have internal predecessors, (28), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-06 17:04:28,643 INFO L276 IsEmpty]: Start isEmpty. Operand 59 states and 74 transitions. [2021-12-06 17:04:28,645 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 37 [2021-12-06 17:04:28,645 INFO L506 BasicCegarLoop]: Found error trace [2021-12-06 17:04:28,645 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-06 17:04:28,645 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2021-12-06 17:04:28,645 INFO L402 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-06 17:04:28,646 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-06 17:04:28,646 INFO L85 PathProgramCache]: Analyzing trace with hash -349370363, now seen corresponding path program 1 times [2021-12-06 17:04:28,646 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-06 17:04:28,646 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [814249407] [2021-12-06 17:04:28,646 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-06 17:04:28,647 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-06 17:04:28,665 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:04:28,697 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2021-12-06 17:04:28,699 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:04:28,701 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 25 [2021-12-06 17:04:28,702 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:04:28,705 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-06 17:04:28,705 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-06 17:04:28,706 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [814249407] [2021-12-06 17:04:28,706 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [814249407] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-06 17:04:28,706 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-06 17:04:28,706 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-12-06 17:04:28,706 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [415865298] [2021-12-06 17:04:28,706 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-06 17:04:28,707 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-12-06 17:04:28,707 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-06 17:04:28,707 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-12-06 17:04:28,708 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-06 17:04:28,708 INFO L87 Difference]: Start difference. First operand 59 states and 74 transitions. Second operand has 3 states, 3 states have (on average 10.333333333333334) internal successors, (31), 3 states have internal predecessors, (31), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2021-12-06 17:04:28,732 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-06 17:04:28,732 INFO L93 Difference]: Finished difference Result 152 states and 195 transitions. [2021-12-06 17:04:28,732 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-12-06 17:04:28,732 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 10.333333333333334) internal successors, (31), 3 states have internal predecessors, (31), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 36 [2021-12-06 17:04:28,732 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-06 17:04:28,733 INFO L225 Difference]: With dead ends: 152 [2021-12-06 17:04:28,733 INFO L226 Difference]: Without dead ends: 100 [2021-12-06 17:04:28,734 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-06 17:04:28,735 INFO L933 BasicCegarLoop]: 94 mSDtfsCounter, 47 mSDsluCounter, 52 mSDsCounter, 0 mSdLazyCounter, 7 mSolverCounterSat, 3 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 47 SdHoareTripleChecker+Valid, 146 SdHoareTripleChecker+Invalid, 10 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 3 IncrementalHoareTripleChecker+Valid, 7 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-06 17:04:28,736 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [47 Valid, 146 Invalid, 10 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [3 Valid, 7 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-06 17:04:28,737 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 100 states. [2021-12-06 17:04:28,747 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 100 to 98. [2021-12-06 17:04:28,747 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 98 states, 77 states have (on average 1.3116883116883118) internal successors, (101), 83 states have internal predecessors, (101), 10 states have call successors, (10), 10 states have call predecessors, (10), 10 states have return successors, (12), 10 states have call predecessors, (12), 10 states have call successors, (12) [2021-12-06 17:04:28,748 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 98 states to 98 states and 123 transitions. [2021-12-06 17:04:28,748 INFO L78 Accepts]: Start accepts. Automaton has 98 states and 123 transitions. Word has length 36 [2021-12-06 17:04:28,748 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-06 17:04:28,748 INFO L470 AbstractCegarLoop]: Abstraction has 98 states and 123 transitions. [2021-12-06 17:04:28,749 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 10.333333333333334) internal successors, (31), 3 states have internal predecessors, (31), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2021-12-06 17:04:28,749 INFO L276 IsEmpty]: Start isEmpty. Operand 98 states and 123 transitions. [2021-12-06 17:04:28,750 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 41 [2021-12-06 17:04:28,750 INFO L506 BasicCegarLoop]: Found error trace [2021-12-06 17:04:28,750 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-06 17:04:28,750 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2021-12-06 17:04:28,750 INFO L402 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-06 17:04:28,750 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-06 17:04:28,750 INFO L85 PathProgramCache]: Analyzing trace with hash 2107801392, now seen corresponding path program 1 times [2021-12-06 17:04:28,751 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-06 17:04:28,751 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1863345372] [2021-12-06 17:04:28,751 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-06 17:04:28,751 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-06 17:04:28,763 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:04:28,788 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 29 [2021-12-06 17:04:28,790 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:04:28,792 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-06 17:04:28,792 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-06 17:04:28,792 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1863345372] [2021-12-06 17:04:28,792 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1863345372] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-06 17:04:28,792 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-06 17:04:28,792 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-12-06 17:04:28,792 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1504305181] [2021-12-06 17:04:28,793 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-06 17:04:28,793 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-12-06 17:04:28,793 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-06 17:04:28,793 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-12-06 17:04:28,793 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-12-06 17:04:28,794 INFO L87 Difference]: Start difference. First operand 98 states and 123 transitions. Second operand has 5 states, 5 states have (on average 7.4) internal successors, (37), 5 states have internal predecessors, (37), 2 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-06 17:04:28,826 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-06 17:04:28,826 INFO L93 Difference]: Finished difference Result 209 states and 266 transitions. [2021-12-06 17:04:28,827 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2021-12-06 17:04:28,827 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.4) internal successors, (37), 5 states have internal predecessors, (37), 2 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 40 [2021-12-06 17:04:28,827 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-06 17:04:28,828 INFO L225 Difference]: With dead ends: 209 [2021-12-06 17:04:28,828 INFO L226 Difference]: Without dead ends: 118 [2021-12-06 17:04:28,829 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-12-06 17:04:28,830 INFO L933 BasicCegarLoop]: 103 mSDtfsCounter, 50 mSDsluCounter, 248 mSDsCounter, 0 mSdLazyCounter, 13 mSolverCounterSat, 7 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 52 SdHoareTripleChecker+Valid, 351 SdHoareTripleChecker+Invalid, 20 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 7 IncrementalHoareTripleChecker+Valid, 13 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-06 17:04:28,830 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [52 Valid, 351 Invalid, 20 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [7 Valid, 13 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-06 17:04:28,831 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 118 states. [2021-12-06 17:04:28,839 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 118 to 101. [2021-12-06 17:04:28,840 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 101 states, 80 states have (on average 1.3) internal successors, (104), 86 states have internal predecessors, (104), 10 states have call successors, (10), 10 states have call predecessors, (10), 10 states have return successors, (12), 10 states have call predecessors, (12), 10 states have call successors, (12) [2021-12-06 17:04:28,840 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 101 states to 101 states and 126 transitions. [2021-12-06 17:04:28,841 INFO L78 Accepts]: Start accepts. Automaton has 101 states and 126 transitions. Word has length 40 [2021-12-06 17:04:28,841 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-06 17:04:28,841 INFO L470 AbstractCegarLoop]: Abstraction has 101 states and 126 transitions. [2021-12-06 17:04:28,841 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.4) internal successors, (37), 5 states have internal predecessors, (37), 2 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-06 17:04:28,841 INFO L276 IsEmpty]: Start isEmpty. Operand 101 states and 126 transitions. [2021-12-06 17:04:28,842 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 41 [2021-12-06 17:04:28,842 INFO L506 BasicCegarLoop]: Found error trace [2021-12-06 17:04:28,842 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-06 17:04:28,842 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2021-12-06 17:04:28,842 INFO L402 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-06 17:04:28,843 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-06 17:04:28,843 INFO L85 PathProgramCache]: Analyzing trace with hash 113656686, now seen corresponding path program 1 times [2021-12-06 17:04:28,843 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-06 17:04:28,843 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [603669361] [2021-12-06 17:04:28,843 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-06 17:04:28,843 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-06 17:04:28,854 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:04:28,881 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 29 [2021-12-06 17:04:28,883 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:04:28,885 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-06 17:04:28,885 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-06 17:04:28,885 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [603669361] [2021-12-06 17:04:28,885 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [603669361] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-06 17:04:28,885 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-06 17:04:28,885 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2021-12-06 17:04:28,885 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1710340191] [2021-12-06 17:04:28,885 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-06 17:04:28,886 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-12-06 17:04:28,886 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-06 17:04:28,886 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-12-06 17:04:28,886 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-12-06 17:04:28,886 INFO L87 Difference]: Start difference. First operand 101 states and 126 transitions. Second operand has 6 states, 6 states have (on average 6.166666666666667) internal successors, (37), 6 states have internal predecessors, (37), 2 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-06 17:04:28,926 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-06 17:04:28,926 INFO L93 Difference]: Finished difference Result 230 states and 295 transitions. [2021-12-06 17:04:28,927 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-12-06 17:04:28,927 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 6.166666666666667) internal successors, (37), 6 states have internal predecessors, (37), 2 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 40 [2021-12-06 17:04:28,927 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-06 17:04:28,929 INFO L225 Difference]: With dead ends: 230 [2021-12-06 17:04:28,929 INFO L226 Difference]: Without dead ends: 136 [2021-12-06 17:04:28,930 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 12 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=39, Unknown=0, NotChecked=0, Total=56 [2021-12-06 17:04:28,931 INFO L933 BasicCegarLoop]: 93 mSDtfsCounter, 85 mSDsluCounter, 304 mSDsCounter, 0 mSdLazyCounter, 19 mSolverCounterSat, 11 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 87 SdHoareTripleChecker+Valid, 397 SdHoareTripleChecker+Invalid, 30 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 11 IncrementalHoareTripleChecker+Valid, 19 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-06 17:04:28,932 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [87 Valid, 397 Invalid, 30 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [11 Valid, 19 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-06 17:04:28,933 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 136 states. [2021-12-06 17:04:28,945 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 136 to 103. [2021-12-06 17:04:28,946 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 103 states, 82 states have (on average 1.2926829268292683) internal successors, (106), 88 states have internal predecessors, (106), 10 states have call successors, (10), 10 states have call predecessors, (10), 10 states have return successors, (12), 10 states have call predecessors, (12), 10 states have call successors, (12) [2021-12-06 17:04:28,947 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 103 states to 103 states and 128 transitions. [2021-12-06 17:04:28,947 INFO L78 Accepts]: Start accepts. Automaton has 103 states and 128 transitions. Word has length 40 [2021-12-06 17:04:28,948 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-06 17:04:28,948 INFO L470 AbstractCegarLoop]: Abstraction has 103 states and 128 transitions. [2021-12-06 17:04:28,948 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 6.166666666666667) internal successors, (37), 6 states have internal predecessors, (37), 2 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-06 17:04:28,948 INFO L276 IsEmpty]: Start isEmpty. Operand 103 states and 128 transitions. [2021-12-06 17:04:28,950 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 41 [2021-12-06 17:04:28,950 INFO L506 BasicCegarLoop]: Found error trace [2021-12-06 17:04:28,950 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-06 17:04:28,950 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2021-12-06 17:04:28,950 INFO L402 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-06 17:04:28,951 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-06 17:04:28,951 INFO L85 PathProgramCache]: Analyzing trace with hash -703991764, now seen corresponding path program 1 times [2021-12-06 17:04:28,951 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-06 17:04:28,951 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [380762454] [2021-12-06 17:04:28,951 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-06 17:04:28,952 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-06 17:04:28,966 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:04:28,998 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 29 [2021-12-06 17:04:28,999 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:04:29,001 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-06 17:04:29,001 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-06 17:04:29,001 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [380762454] [2021-12-06 17:04:29,001 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [380762454] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-06 17:04:29,001 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-06 17:04:29,002 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-12-06 17:04:29,002 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1687029976] [2021-12-06 17:04:29,002 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-06 17:04:29,002 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-12-06 17:04:29,002 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-06 17:04:29,003 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-12-06 17:04:29,003 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-06 17:04:29,003 INFO L87 Difference]: Start difference. First operand 103 states and 128 transitions. Second operand has 3 states, 3 states have (on average 12.333333333333334) internal successors, (37), 3 states have internal predecessors, (37), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-06 17:04:29,022 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-06 17:04:29,022 INFO L93 Difference]: Finished difference Result 245 states and 308 transitions. [2021-12-06 17:04:29,022 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-12-06 17:04:29,022 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 12.333333333333334) internal successors, (37), 3 states have internal predecessors, (37), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 40 [2021-12-06 17:04:29,022 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-06 17:04:29,023 INFO L225 Difference]: With dead ends: 245 [2021-12-06 17:04:29,024 INFO L226 Difference]: Without dead ends: 149 [2021-12-06 17:04:29,024 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-06 17:04:29,025 INFO L933 BasicCegarLoop]: 76 mSDtfsCounter, 39 mSDsluCounter, 61 mSDsCounter, 0 mSdLazyCounter, 10 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 39 SdHoareTripleChecker+Valid, 137 SdHoareTripleChecker+Invalid, 11 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 10 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-06 17:04:29,026 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [39 Valid, 137 Invalid, 11 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 10 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-06 17:04:29,027 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 149 states. [2021-12-06 17:04:29,042 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 149 to 147. [2021-12-06 17:04:29,043 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 147 states, 117 states have (on average 1.2735042735042734) internal successors, (149), 124 states have internal predecessors, (149), 15 states have call successors, (15), 15 states have call predecessors, (15), 14 states have return successors, (17), 14 states have call predecessors, (17), 15 states have call successors, (17) [2021-12-06 17:04:29,044 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 147 states to 147 states and 181 transitions. [2021-12-06 17:04:29,044 INFO L78 Accepts]: Start accepts. Automaton has 147 states and 181 transitions. Word has length 40 [2021-12-06 17:04:29,044 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-06 17:04:29,044 INFO L470 AbstractCegarLoop]: Abstraction has 147 states and 181 transitions. [2021-12-06 17:04:29,044 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 12.333333333333334) internal successors, (37), 3 states have internal predecessors, (37), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-06 17:04:29,044 INFO L276 IsEmpty]: Start isEmpty. Operand 147 states and 181 transitions. [2021-12-06 17:04:29,046 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 43 [2021-12-06 17:04:29,046 INFO L506 BasicCegarLoop]: Found error trace [2021-12-06 17:04:29,046 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-06 17:04:29,047 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2021-12-06 17:04:29,047 INFO L402 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-06 17:04:29,047 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-06 17:04:29,047 INFO L85 PathProgramCache]: Analyzing trace with hash -430431235, now seen corresponding path program 1 times [2021-12-06 17:04:29,047 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-06 17:04:29,048 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1884808783] [2021-12-06 17:04:29,048 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-06 17:04:29,048 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-06 17:04:29,065 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:04:29,098 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 26 [2021-12-06 17:04:29,100 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:04:29,102 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 31 [2021-12-06 17:04:29,103 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:04:29,106 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-06 17:04:29,106 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-06 17:04:29,106 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1884808783] [2021-12-06 17:04:29,106 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1884808783] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-06 17:04:29,107 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-06 17:04:29,107 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-12-06 17:04:29,107 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [479840868] [2021-12-06 17:04:29,107 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-06 17:04:29,107 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-12-06 17:04:29,108 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-06 17:04:29,108 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-12-06 17:04:29,108 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-12-06 17:04:29,108 INFO L87 Difference]: Start difference. First operand 147 states and 181 transitions. Second operand has 5 states, 5 states have (on average 7.4) internal successors, (37), 5 states have internal predecessors, (37), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2021-12-06 17:04:29,152 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-06 17:04:29,152 INFO L93 Difference]: Finished difference Result 288 states and 356 transitions. [2021-12-06 17:04:29,153 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-12-06 17:04:29,153 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.4) internal successors, (37), 5 states have internal predecessors, (37), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 42 [2021-12-06 17:04:29,153 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-06 17:04:29,155 INFO L225 Difference]: With dead ends: 288 [2021-12-06 17:04:29,155 INFO L226 Difference]: Without dead ends: 148 [2021-12-06 17:04:29,156 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-12-06 17:04:29,157 INFO L933 BasicCegarLoop]: 77 mSDtfsCounter, 30 mSDsluCounter, 210 mSDsCounter, 0 mSdLazyCounter, 23 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 30 SdHoareTripleChecker+Valid, 287 SdHoareTripleChecker+Invalid, 23 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 23 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-06 17:04:29,157 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [30 Valid, 287 Invalid, 23 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 23 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-06 17:04:29,158 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 148 states. [2021-12-06 17:04:29,175 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 148 to 145. [2021-12-06 17:04:29,175 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 145 states, 115 states have (on average 1.2608695652173914) internal successors, (145), 122 states have internal predecessors, (145), 15 states have call successors, (15), 15 states have call predecessors, (15), 14 states have return successors, (17), 14 states have call predecessors, (17), 15 states have call successors, (17) [2021-12-06 17:04:29,177 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 145 states to 145 states and 177 transitions. [2021-12-06 17:04:29,177 INFO L78 Accepts]: Start accepts. Automaton has 145 states and 177 transitions. Word has length 42 [2021-12-06 17:04:29,177 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-06 17:04:29,177 INFO L470 AbstractCegarLoop]: Abstraction has 145 states and 177 transitions. [2021-12-06 17:04:29,178 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.4) internal successors, (37), 5 states have internal predecessors, (37), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2021-12-06 17:04:29,178 INFO L276 IsEmpty]: Start isEmpty. Operand 145 states and 177 transitions. [2021-12-06 17:04:29,179 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 45 [2021-12-06 17:04:29,179 INFO L506 BasicCegarLoop]: Found error trace [2021-12-06 17:04:29,179 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-06 17:04:29,179 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2021-12-06 17:04:29,180 INFO L402 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-06 17:04:29,180 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-06 17:04:29,180 INFO L85 PathProgramCache]: Analyzing trace with hash -994693806, now seen corresponding path program 1 times [2021-12-06 17:04:29,180 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-06 17:04:29,180 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1896276563] [2021-12-06 17:04:29,181 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-06 17:04:29,181 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-06 17:04:29,196 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:04:29,231 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-06 17:04:29,232 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:04:29,234 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 33 [2021-12-06 17:04:29,236 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:04:29,238 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-06 17:04:29,238 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-06 17:04:29,238 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1896276563] [2021-12-06 17:04:29,238 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1896276563] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-06 17:04:29,238 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-06 17:04:29,238 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2021-12-06 17:04:29,239 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [970209741] [2021-12-06 17:04:29,239 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-06 17:04:29,239 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-12-06 17:04:29,239 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-06 17:04:29,239 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-12-06 17:04:29,239 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-12-06 17:04:29,239 INFO L87 Difference]: Start difference. First operand 145 states and 177 transitions. Second operand has 6 states, 6 states have (on average 6.5) internal successors, (39), 5 states have internal predecessors, (39), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2021-12-06 17:04:29,354 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-06 17:04:29,354 INFO L93 Difference]: Finished difference Result 267 states and 332 transitions. [2021-12-06 17:04:29,354 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2021-12-06 17:04:29,354 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 6.5) internal successors, (39), 5 states have internal predecessors, (39), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 44 [2021-12-06 17:04:29,355 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-06 17:04:29,356 INFO L225 Difference]: With dead ends: 267 [2021-12-06 17:04:29,356 INFO L226 Difference]: Without dead ends: 104 [2021-12-06 17:04:29,356 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 15 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 9 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 7 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=40, Invalid=70, Unknown=0, NotChecked=0, Total=110 [2021-12-06 17:04:29,357 INFO L933 BasicCegarLoop]: 111 mSDtfsCounter, 106 mSDsluCounter, 294 mSDsCounter, 0 mSdLazyCounter, 120 mSolverCounterSat, 15 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 110 SdHoareTripleChecker+Valid, 405 SdHoareTripleChecker+Invalid, 135 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 15 IncrementalHoareTripleChecker+Valid, 120 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-06 17:04:29,357 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [110 Valid, 405 Invalid, 135 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [15 Valid, 120 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-06 17:04:29,357 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 104 states. [2021-12-06 17:04:29,363 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 104 to 101. [2021-12-06 17:04:29,364 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 101 states, 80 states have (on average 1.2125) internal successors, (97), 85 states have internal predecessors, (97), 10 states have call successors, (10), 10 states have call predecessors, (10), 10 states have return successors, (11), 9 states have call predecessors, (11), 10 states have call successors, (11) [2021-12-06 17:04:29,364 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 101 states to 101 states and 118 transitions. [2021-12-06 17:04:29,364 INFO L78 Accepts]: Start accepts. Automaton has 101 states and 118 transitions. Word has length 44 [2021-12-06 17:04:29,364 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-06 17:04:29,365 INFO L470 AbstractCegarLoop]: Abstraction has 101 states and 118 transitions. [2021-12-06 17:04:29,365 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 6.5) internal successors, (39), 5 states have internal predecessors, (39), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2021-12-06 17:04:29,365 INFO L276 IsEmpty]: Start isEmpty. Operand 101 states and 118 transitions. [2021-12-06 17:04:29,365 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 47 [2021-12-06 17:04:29,366 INFO L506 BasicCegarLoop]: Found error trace [2021-12-06 17:04:29,366 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-06 17:04:29,366 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2021-12-06 17:04:29,366 INFO L402 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-06 17:04:29,366 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-06 17:04:29,366 INFO L85 PathProgramCache]: Analyzing trace with hash -622219357, now seen corresponding path program 1 times [2021-12-06 17:04:29,366 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-06 17:04:29,366 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1873915600] [2021-12-06 17:04:29,366 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-06 17:04:29,366 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-06 17:04:29,376 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:04:29,402 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-06 17:04:29,403 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:04:29,405 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 30 [2021-12-06 17:04:29,406 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:04:29,407 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 35 [2021-12-06 17:04:29,408 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:04:29,410 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-06 17:04:29,410 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-06 17:04:29,410 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1873915600] [2021-12-06 17:04:29,410 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1873915600] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-06 17:04:29,410 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-06 17:04:29,410 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2021-12-06 17:04:29,411 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [26048633] [2021-12-06 17:04:29,411 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-06 17:04:29,411 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-12-06 17:04:29,411 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-06 17:04:29,411 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-12-06 17:04:29,411 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-12-06 17:04:29,411 INFO L87 Difference]: Start difference. First operand 101 states and 118 transitions. Second operand has 6 states, 6 states have (on average 6.5) internal successors, (39), 5 states have internal predecessors, (39), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2021-12-06 17:04:29,491 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-06 17:04:29,491 INFO L93 Difference]: Finished difference Result 199 states and 241 transitions. [2021-12-06 17:04:29,491 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-12-06 17:04:29,491 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 6.5) internal successors, (39), 5 states have internal predecessors, (39), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 46 [2021-12-06 17:04:29,492 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-06 17:04:29,493 INFO L225 Difference]: With dead ends: 199 [2021-12-06 17:04:29,493 INFO L226 Difference]: Without dead ends: 147 [2021-12-06 17:04:29,493 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 15 GetRequests, 8 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2021-12-06 17:04:29,494 INFO L933 BasicCegarLoop]: 61 mSDtfsCounter, 102 mSDsluCounter, 169 mSDsCounter, 0 mSdLazyCounter, 81 mSolverCounterSat, 17 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 105 SdHoareTripleChecker+Valid, 230 SdHoareTripleChecker+Invalid, 98 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 17 IncrementalHoareTripleChecker+Valid, 81 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-06 17:04:29,494 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [105 Valid, 230 Invalid, 98 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [17 Valid, 81 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-06 17:04:29,494 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 147 states. [2021-12-06 17:04:29,503 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 147 to 139. [2021-12-06 17:04:29,503 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 139 states, 110 states have (on average 1.209090909090909) internal successors, (133), 116 states have internal predecessors, (133), 14 states have call successors, (14), 14 states have call predecessors, (14), 14 states have return successors, (16), 13 states have call predecessors, (16), 14 states have call successors, (16) [2021-12-06 17:04:29,504 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 139 states to 139 states and 163 transitions. [2021-12-06 17:04:29,504 INFO L78 Accepts]: Start accepts. Automaton has 139 states and 163 transitions. Word has length 46 [2021-12-06 17:04:29,504 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-06 17:04:29,504 INFO L470 AbstractCegarLoop]: Abstraction has 139 states and 163 transitions. [2021-12-06 17:04:29,504 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 6.5) internal successors, (39), 5 states have internal predecessors, (39), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2021-12-06 17:04:29,504 INFO L276 IsEmpty]: Start isEmpty. Operand 139 states and 163 transitions. [2021-12-06 17:04:29,505 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 47 [2021-12-06 17:04:29,505 INFO L506 BasicCegarLoop]: Found error trace [2021-12-06 17:04:29,505 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-06 17:04:29,505 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9 [2021-12-06 17:04:29,505 INFO L402 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-06 17:04:29,505 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-06 17:04:29,506 INFO L85 PathProgramCache]: Analyzing trace with hash -403364639, now seen corresponding path program 1 times [2021-12-06 17:04:29,506 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-06 17:04:29,506 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1253525901] [2021-12-06 17:04:29,506 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-06 17:04:29,506 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-06 17:04:29,513 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:04:29,532 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-06 17:04:29,532 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:04:29,534 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 30 [2021-12-06 17:04:29,535 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:04:29,536 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 35 [2021-12-06 17:04:29,537 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:04:29,539 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-06 17:04:29,539 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-06 17:04:29,539 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1253525901] [2021-12-06 17:04:29,539 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1253525901] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-06 17:04:29,539 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-06 17:04:29,539 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-12-06 17:04:29,539 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1653854586] [2021-12-06 17:04:29,539 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-06 17:04:29,539 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-12-06 17:04:29,539 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-06 17:04:29,540 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-12-06 17:04:29,540 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-12-06 17:04:29,540 INFO L87 Difference]: Start difference. First operand 139 states and 163 transitions. Second operand has 5 states, 5 states have (on average 7.8) internal successors, (39), 4 states have internal predecessors, (39), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2021-12-06 17:04:29,593 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-06 17:04:29,593 INFO L93 Difference]: Finished difference Result 231 states and 274 transitions. [2021-12-06 17:04:29,593 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-12-06 17:04:29,593 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.8) internal successors, (39), 4 states have internal predecessors, (39), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 46 [2021-12-06 17:04:29,594 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-06 17:04:29,595 INFO L225 Difference]: With dead ends: 231 [2021-12-06 17:04:29,595 INFO L226 Difference]: Without dead ends: 139 [2021-12-06 17:04:29,595 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 12 GetRequests, 7 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-12-06 17:04:29,596 INFO L933 BasicCegarLoop]: 73 mSDtfsCounter, 70 mSDsluCounter, 119 mSDsCounter, 0 mSdLazyCounter, 48 mSolverCounterSat, 10 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 72 SdHoareTripleChecker+Valid, 192 SdHoareTripleChecker+Invalid, 58 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 10 IncrementalHoareTripleChecker+Valid, 48 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-06 17:04:29,597 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [72 Valid, 192 Invalid, 58 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [10 Valid, 48 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-06 17:04:29,597 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 139 states. [2021-12-06 17:04:29,612 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 139 to 139. [2021-12-06 17:04:29,613 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 139 states, 110 states have (on average 1.2) internal successors, (132), 116 states have internal predecessors, (132), 14 states have call successors, (14), 14 states have call predecessors, (14), 14 states have return successors, (16), 13 states have call predecessors, (16), 14 states have call successors, (16) [2021-12-06 17:04:29,614 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 139 states to 139 states and 162 transitions. [2021-12-06 17:04:29,614 INFO L78 Accepts]: Start accepts. Automaton has 139 states and 162 transitions. Word has length 46 [2021-12-06 17:04:29,614 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-06 17:04:29,614 INFO L470 AbstractCegarLoop]: Abstraction has 139 states and 162 transitions. [2021-12-06 17:04:29,614 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.8) internal successors, (39), 4 states have internal predecessors, (39), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2021-12-06 17:04:29,614 INFO L276 IsEmpty]: Start isEmpty. Operand 139 states and 162 transitions. [2021-12-06 17:04:29,615 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 47 [2021-12-06 17:04:29,615 INFO L506 BasicCegarLoop]: Found error trace [2021-12-06 17:04:29,615 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-06 17:04:29,615 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10 [2021-12-06 17:04:29,616 INFO L402 AbstractCegarLoop]: === Iteration 12 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-06 17:04:29,616 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-06 17:04:29,616 INFO L85 PathProgramCache]: Analyzing trace with hash -1221013089, now seen corresponding path program 1 times [2021-12-06 17:04:29,616 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-06 17:04:29,616 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [780566329] [2021-12-06 17:04:29,616 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-06 17:04:29,617 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-06 17:04:29,628 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:04:29,663 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-06 17:04:29,664 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:04:29,665 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 30 [2021-12-06 17:04:29,666 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:04:29,667 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 35 [2021-12-06 17:04:29,668 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:04:29,670 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-06 17:04:29,670 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-06 17:04:29,670 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [780566329] [2021-12-06 17:04:29,670 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [780566329] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-06 17:04:29,670 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-06 17:04:29,670 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2021-12-06 17:04:29,670 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [669354673] [2021-12-06 17:04:29,670 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-06 17:04:29,671 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2021-12-06 17:04:29,671 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-06 17:04:29,671 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2021-12-06 17:04:29,671 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=43, Unknown=0, NotChecked=0, Total=56 [2021-12-06 17:04:29,671 INFO L87 Difference]: Start difference. First operand 139 states and 162 transitions. Second operand has 8 states, 8 states have (on average 4.875) internal successors, (39), 7 states have internal predecessors, (39), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2021-12-06 17:04:29,745 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-06 17:04:29,745 INFO L93 Difference]: Finished difference Result 203 states and 239 transitions. [2021-12-06 17:04:29,745 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2021-12-06 17:04:29,745 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 4.875) internal successors, (39), 7 states have internal predecessors, (39), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 46 [2021-12-06 17:04:29,746 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-06 17:04:29,746 INFO L225 Difference]: With dead ends: 203 [2021-12-06 17:04:29,746 INFO L226 Difference]: Without dead ends: 0 [2021-12-06 17:04:29,747 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 19 GetRequests, 9 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=35, Invalid=97, Unknown=0, NotChecked=0, Total=132 [2021-12-06 17:04:29,747 INFO L933 BasicCegarLoop]: 51 mSDtfsCounter, 62 mSDsluCounter, 197 mSDsCounter, 0 mSdLazyCounter, 97 mSolverCounterSat, 10 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 64 SdHoareTripleChecker+Valid, 248 SdHoareTripleChecker+Invalid, 107 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 10 IncrementalHoareTripleChecker+Valid, 97 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-06 17:04:29,748 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [64 Valid, 248 Invalid, 107 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [10 Valid, 97 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-06 17:04:29,748 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2021-12-06 17:04:29,748 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2021-12-06 17:04:29,749 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-06 17:04:29,749 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2021-12-06 17:04:29,749 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 46 [2021-12-06 17:04:29,749 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-06 17:04:29,749 INFO L470 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2021-12-06 17:04:29,749 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 4.875) internal successors, (39), 7 states have internal predecessors, (39), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2021-12-06 17:04:29,749 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2021-12-06 17:04:29,749 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2021-12-06 17:04:29,752 INFO L764 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2021-12-06 17:04:29,752 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable11 [2021-12-06 17:04:29,754 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2021-12-06 17:04:30,629 INFO L858 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 257 263) no Hoare annotation was computed. [2021-12-06 17:04:30,630 INFO L861 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 257 263) the Hoare annotation is: true [2021-12-06 17:04:30,630 INFO L858 garLoopResultBuilder]: For program point L831-1(lines 827 838) no Hoare annotation was computed. [2021-12-06 17:04:30,630 INFO L861 garLoopResultBuilder]: At program point changeMethaneLevelENTRY(lines 827 838) the Hoare annotation is: true [2021-12-06 17:04:30,630 INFO L858 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 827 838) no Hoare annotation was computed. [2021-12-06 17:04:30,630 INFO L861 garLoopResultBuilder]: At program point isMethaneLevelCriticalENTRY(lines 839 847) the Hoare annotation is: true [2021-12-06 17:04:30,630 INFO L858 garLoopResultBuilder]: For program point isMethaneLevelCriticalFINAL(lines 839 847) no Hoare annotation was computed. [2021-12-06 17:04:30,630 INFO L858 garLoopResultBuilder]: For program point isMethaneLevelCriticalEXIT(lines 839 847) no Hoare annotation was computed. [2021-12-06 17:04:30,630 INFO L861 garLoopResultBuilder]: At program point L129(line 129) the Hoare annotation is: true [2021-12-06 17:04:30,630 INFO L858 garLoopResultBuilder]: For program point L129-1(line 129) no Hoare annotation was computed. [2021-12-06 17:04:30,630 INFO L858 garLoopResultBuilder]: For program point cleanupEXIT(lines 123 152) no Hoare annotation was computed. [2021-12-06 17:04:30,630 INFO L861 garLoopResultBuilder]: At program point cleanupENTRY(lines 123 152) the Hoare annotation is: true [2021-12-06 17:04:30,630 INFO L861 garLoopResultBuilder]: At program point L148(lines 123 152) the Hoare annotation is: true [2021-12-06 17:04:30,630 INFO L858 garLoopResultBuilder]: For program point L144(line 144) no Hoare annotation was computed. [2021-12-06 17:04:30,630 INFO L858 garLoopResultBuilder]: For program point L137(lines 137 141) no Hoare annotation was computed. [2021-12-06 17:04:30,631 INFO L861 garLoopResultBuilder]: At program point L137-1(lines 137 141) the Hoare annotation is: true [2021-12-06 17:04:30,631 INFO L858 garLoopResultBuilder]: For program point L134(line 134) no Hoare annotation was computed. [2021-12-06 17:04:30,631 INFO L861 garLoopResultBuilder]: At program point L133-2(lines 133 147) the Hoare annotation is: true [2021-12-06 17:04:30,631 INFO L854 garLoopResultBuilder]: At program point L279(line 279) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 0)) (and (= ~pumpRunning~0 0) (= |timeShift_processEnvironment_~tmp~2#1| 0) (<= ~waterLevel~0 1) (= |old(~waterLevel~0)| ~waterLevel~0)) .cse0) (or (not (= |old(~pumpRunning~0)| 1)) .cse0))) [2021-12-06 17:04:30,631 INFO L858 garLoopResultBuilder]: For program point timeShiftFINAL(lines 233 256) no Hoare annotation was computed. [2021-12-06 17:04:30,631 INFO L858 garLoopResultBuilder]: For program point L767(lines 767 787) no Hoare annotation was computed. [2021-12-06 17:04:30,631 INFO L854 garLoopResultBuilder]: At program point L284(line 284) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 1)) .cse0 (= ~pumpRunning~0 1)) (or (not (= |old(~pumpRunning~0)| 0)) .cse0))) [2021-12-06 17:04:30,631 INFO L858 garLoopResultBuilder]: For program point L796(line 796) no Hoare annotation was computed. [2021-12-06 17:04:30,631 INFO L854 garLoopResultBuilder]: At program point L284-1(lines 265 289) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (let ((.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (= ~pumpRunning~0 0)) (.cse4 (= |timeShift_processEnvironment_~tmp~2#1| 0)) (.cse5 (not .cse0)) (.cse1 (= ~pumpRunning~0 1))) (and (or (not (= |old(~pumpRunning~0)| 1)) .cse0 .cse1) (or .cse2 (not (= |old(~waterLevel~0)| 1)) (and .cse3 .cse4 .cse5) .cse0) (let ((.cse6 (= |old(~waterLevel~0)| ~waterLevel~0))) (or .cse2 (and .cse3 .cse4 (<= ~waterLevel~0 1) .cse6 .cse5) .cse0 (and .cse6 .cse1)))))) [2021-12-06 17:04:30,631 INFO L858 garLoopResultBuilder]: For program point L371(lines 371 375) no Hoare annotation was computed. [2021-12-06 17:04:30,631 INFO L858 garLoopResultBuilder]: For program point L371-2(lines 371 375) no Hoare annotation was computed. [2021-12-06 17:04:30,631 INFO L854 garLoopResultBuilder]: At program point L322(lines 317 325) the Hoare annotation is: (let ((.cse0 (= |timeShift_isPumpRunning_#res#1| 1)) (.cse1 (= ~pumpRunning~0 1)) (.cse3 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 1)) (and .cse0 .cse1) .cse2) (or .cse3 .cse2 (and .cse0 (= |old(~waterLevel~0)| ~waterLevel~0) .cse1)) (or .cse3 (not (= |old(~waterLevel~0)| 1)) .cse2))) [2021-12-06 17:04:30,631 INFO L854 garLoopResultBuilder]: At program point L797(lines 792 799) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 0)) .cse0) (or (not (= |old(~pumpRunning~0)| 1)) .cse0))) [2021-12-06 17:04:30,632 INFO L858 garLoopResultBuilder]: For program point L884(lines 884 890) no Hoare annotation was computed. [2021-12-06 17:04:30,632 INFO L858 garLoopResultBuilder]: For program point L244-1(lines 244 250) no Hoare annotation was computed. [2021-12-06 17:04:30,632 INFO L858 garLoopResultBuilder]: For program point L273(lines 273 281) no Hoare annotation was computed. [2021-12-06 17:04:30,632 INFO L858 garLoopResultBuilder]: For program point L269(lines 269 286) no Hoare annotation was computed. [2021-12-06 17:04:30,632 INFO L854 garLoopResultBuilder]: At program point L876(lines 871 879) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (let ((.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (= ~pumpRunning~0 0)) (.cse4 (= |timeShift_processEnvironment_~tmp~2#1| 0)) (.cse5 (not .cse0)) (.cse1 (= ~pumpRunning~0 1))) (and (or (not (= |old(~pumpRunning~0)| 1)) .cse0 .cse1) (or .cse2 (and .cse3 .cse4 (= |timeShift_getWaterLevel_#res#1| 1) .cse5) (not (= |old(~waterLevel~0)| 1)) .cse0) (let ((.cse6 (= |old(~waterLevel~0)| ~waterLevel~0))) (or .cse2 (and .cse3 .cse4 (<= ~waterLevel~0 1) .cse6 (<= |timeShift_getWaterLevel_#res#1| 1) .cse5) .cse0 (and .cse6 .cse1)))))) [2021-12-06 17:04:30,632 INFO L858 garLoopResultBuilder]: For program point L777(lines 777 783) no Hoare annotation was computed. [2021-12-06 17:04:30,632 INFO L858 garLoopResultBuilder]: For program point L773(lines 773 786) no Hoare annotation was computed. [2021-12-06 17:04:30,632 INFO L854 garLoopResultBuilder]: At program point L773-1(lines 758 790) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (let ((.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (= ~pumpRunning~0 0)) (.cse4 (= |timeShift_processEnvironment_~tmp~2#1| 0)) (.cse5 (not .cse0)) (.cse1 (= ~pumpRunning~0 1))) (and (or (not (= |old(~pumpRunning~0)| 1)) .cse0 .cse1) (or .cse2 (not (= |old(~waterLevel~0)| 1)) (and .cse3 .cse4 .cse5) .cse0) (let ((.cse6 (= |old(~waterLevel~0)| ~waterLevel~0))) (or .cse2 (and .cse3 .cse4 (<= ~waterLevel~0 1) .cse6 .cse5) .cse0 (and .cse6 .cse1)))))) [2021-12-06 17:04:30,632 INFO L854 garLoopResultBuilder]: At program point L765(line 765) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (let ((.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (= ~pumpRunning~0 0)) (.cse4 (= |timeShift_processEnvironment_~tmp~2#1| 0)) (.cse5 (not .cse0)) (.cse1 (= ~pumpRunning~0 1))) (and (or (not (= |old(~pumpRunning~0)| 1)) .cse0 .cse1) (or .cse2 (not (= |old(~waterLevel~0)| 1)) (and .cse3 .cse4 .cse5) .cse0) (let ((.cse6 (= |old(~waterLevel~0)| ~waterLevel~0))) (or .cse2 (and .cse3 .cse4 (<= ~waterLevel~0 1) .cse6 .cse5) .cse0 (and .cse6 .cse1)))))) [2021-12-06 17:04:30,632 INFO L858 garLoopResultBuilder]: For program point L765-1(line 765) no Hoare annotation was computed. [2021-12-06 17:04:30,632 INFO L854 garLoopResultBuilder]: At program point L889(lines 880 893) the Hoare annotation is: (let ((.cse3 (= ~pumpRunning~0 0)) (.cse4 (= |timeShift_isHighWaterSensorDry_#res#1| 0)) (.cse5 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse2 (= 0 ~systemActive~0))) (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (and .cse3 (<= ~waterLevel~0 1) (not .cse4) .cse5 (not .cse2)))) (and (or (not (<= |old(~waterLevel~0)| 1)) .cse0 .cse1 .cse2) (or .cse0 .cse1 .cse2 (and .cse3 .cse4 .cse5)) (or (not (= |old(~pumpRunning~0)| 1)) .cse2)))) [2021-12-06 17:04:30,632 INFO L854 garLoopResultBuilder]: At program point L377(lines 362 380) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse7 (= |timeShift_isHighWaterLevel_#res#1| 0)) (.cse5 (= |timeShift_isHighWaterLevel_~tmp___0~1#1| 0)) (.cse6 (= |timeShift_isHighWaterLevel_~tmp~3#1| 0)) (.cse4 (= 0 ~systemActive~0))) (and (let ((.cse1 (= ~pumpRunning~0 0)) (.cse2 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse3 (not .cse4))) (or .cse0 (and .cse1 (<= ~waterLevel~0 1) .cse2 .cse3) .cse4 (and .cse1 (not .cse5) .cse6 (= |timeShift_isHighWaterSensorDry_#res#1| 0) .cse2 .cse3 (not .cse7)))) (or .cse0 (not (= |old(~waterLevel~0)| 1)) (and .cse7 .cse5 (not .cse6)) .cse4) (or (not (= |old(~pumpRunning~0)| 1)) .cse4))) [2021-12-06 17:04:30,633 INFO L854 garLoopResultBuilder]: At program point timeShiftENTRY(lines 233 256) the Hoare annotation is: (let ((.cse1 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse0 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 1)) .cse0 (and .cse1 (= ~pumpRunning~0 1))) (or (not (= |old(~pumpRunning~0)| 0)) (and (= ~pumpRunning~0 0) .cse1) .cse0))) [2021-12-06 17:04:30,633 INFO L858 garLoopResultBuilder]: For program point L237-1(lines 236 255) no Hoare annotation was computed. [2021-12-06 17:04:30,633 INFO L858 garLoopResultBuilder]: For program point timeShiftEXIT(lines 233 256) no Hoare annotation was computed. [2021-12-06 17:04:30,633 INFO L858 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 796) no Hoare annotation was computed. [2021-12-06 17:04:30,633 INFO L858 garLoopResultBuilder]: For program point L807(lines 807 811) no Hoare annotation was computed. [2021-12-06 17:04:30,633 INFO L854 garLoopResultBuilder]: At program point L295(lines 290 297) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 (and (= |old(~waterLevel~0)| ~waterLevel~0) (= ~pumpRunning~0 1))) (or .cse0 (not (= |old(~waterLevel~0)| 1)) .cse1) (or (not (= |old(~pumpRunning~0)| 1)) .cse1))) [2021-12-06 17:04:30,633 INFO L854 garLoopResultBuilder]: At program point L807-2(lines 803 814) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 1)) .cse0 (= ~pumpRunning~0 1)) (or (not (= |old(~pumpRunning~0)| 0)) .cse0))) [2021-12-06 17:04:30,633 INFO L861 garLoopResultBuilder]: At program point L192(lines 185 194) the Hoare annotation is: true [2021-12-06 17:04:30,633 INFO L861 garLoopResultBuilder]: At program point L217(lines 198 220) the Hoare annotation is: true [2021-12-06 17:04:30,633 INFO L858 garLoopResultBuilder]: For program point L85(lines 85 91) no Hoare annotation was computed. [2021-12-06 17:04:30,633 INFO L858 garLoopResultBuilder]: For program point L85-1(lines 85 91) no Hoare annotation was computed. [2021-12-06 17:04:30,633 INFO L854 garLoopResultBuilder]: At program point L110(lines 65 112) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse2 (= |ULTIMATE.start_main_~tmp~1#1| 1)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 (= ~pumpRunning~0 1)) (and (= ~pumpRunning~0 0) .cse0 (<= ~waterLevel~0 1) .cse1 .cse2 .cse3))) [2021-12-06 17:04:30,633 INFO L854 garLoopResultBuilder]: At program point L77(line 77) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse2 (= |ULTIMATE.start_main_~tmp~1#1| 1)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 (= ~pumpRunning~0 1)) (and (= ~pumpRunning~0 0) .cse0 (<= ~waterLevel~0 1) .cse1 .cse2 .cse3))) [2021-12-06 17:04:30,633 INFO L858 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2021-12-06 17:04:30,633 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startENTRY(line -1) no Hoare annotation was computed. [2021-12-06 17:04:30,634 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2021-12-06 17:04:30,634 INFO L858 garLoopResultBuilder]: For program point L103(lines 103 107) no Hoare annotation was computed. [2021-12-06 17:04:30,634 INFO L854 garLoopResultBuilder]: At program point L103-2(lines 95 108) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse2 (= |ULTIMATE.start_main_~tmp~1#1| 1)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 (= ~pumpRunning~0 1)) (and (= ~pumpRunning~0 0) .cse0 .cse1 .cse2 .cse3))) [2021-12-06 17:04:30,634 INFO L858 garLoopResultBuilder]: For program point L66(lines 65 112) no Hoare annotation was computed. [2021-12-06 17:04:30,634 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2021-12-06 17:04:30,634 INFO L858 garLoopResultBuilder]: For program point L95(lines 95 108) no Hoare annotation was computed. [2021-12-06 17:04:30,634 INFO L854 garLoopResultBuilder]: At program point L925(lines 920 928) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_valid_product_#res#1| 1) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2021-12-06 17:04:30,634 INFO L854 garLoopResultBuilder]: At program point L87(line 87) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse2 (= |ULTIMATE.start_main_~tmp~1#1| 1)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 (= ~pumpRunning~0 1)) (and (= ~pumpRunning~0 0) .cse0 .cse1 .cse2 .cse3))) [2021-12-06 17:04:30,634 INFO L854 garLoopResultBuilder]: At program point L182(lines 178 184) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_valid_product_#res#1| 1) (= |ULTIMATE.start_main_~tmp~1#1| 1) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2021-12-06 17:04:30,634 INFO L854 garLoopResultBuilder]: At program point L917(lines 913 919) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2021-12-06 17:04:30,634 INFO L861 garLoopResultBuilder]: At program point L116(lines 55 120) the Hoare annotation is: true [2021-12-06 17:04:30,634 INFO L858 garLoopResultBuilder]: For program point L75(lines 75 81) no Hoare annotation was computed. [2021-12-06 17:04:30,634 INFO L858 garLoopResultBuilder]: For program point L75-1(lines 75 81) no Hoare annotation was computed. [2021-12-06 17:04:30,634 INFO L858 garLoopResultBuilder]: For program point L67(lines 67 71) no Hoare annotation was computed. [2021-12-06 17:04:30,634 INFO L854 garLoopResultBuilder]: At program point L113(lines 64 114) the Hoare annotation is: false [2021-12-06 17:04:30,634 INFO L858 garLoopResultBuilder]: For program point L208(lines 208 215) no Hoare annotation was computed. [2021-12-06 17:04:30,635 INFO L854 garLoopResultBuilder]: At program point L910(lines 906 912) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2021-12-06 17:04:30,635 INFO L858 garLoopResultBuilder]: For program point L208-2(lines 208 215) no Hoare annotation was computed. [2021-12-06 17:04:30,635 INFO L854 garLoopResultBuilder]: At program point L386(lines 381 388) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse2 (= |ULTIMATE.start_main_~tmp~1#1| 1)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 (= ~pumpRunning~0 1)) (and (= ~pumpRunning~0 0) .cse0 .cse1 .cse2 .cse3))) [2021-12-06 17:04:30,635 INFO L858 garLoopResultBuilder]: For program point waterRiseEXIT(lines 815 826) no Hoare annotation was computed. [2021-12-06 17:04:30,635 INFO L854 garLoopResultBuilder]: At program point waterRiseENTRY(lines 815 826) the Hoare annotation is: (let ((.cse0 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse1 (= 0 ~systemActive~0))) (and (or (not (<= |old(~waterLevel~0)| 1)) (not (= ~pumpRunning~0 0)) .cse0 .cse1) (or (not (= ~pumpRunning~0 1)) .cse0 .cse1))) [2021-12-06 17:04:30,635 INFO L858 garLoopResultBuilder]: For program point L819-1(lines 815 826) no Hoare annotation was computed. [2021-12-06 17:04:30,637 INFO L732 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-06 17:04:30,638 INFO L179 ceAbstractionStarter]: Computing trace abstraction results [2021-12-06 17:04:30,656 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 06.12 05:04:30 BoogieIcfgContainer [2021-12-06 17:04:30,656 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2021-12-06 17:04:30,656 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2021-12-06 17:04:30,656 INFO L271 PluginConnector]: Initializing Witness Printer... [2021-12-06 17:04:30,657 INFO L275 PluginConnector]: Witness Printer initialized [2021-12-06 17:04:30,657 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 06.12 05:04:28" (3/4) ... [2021-12-06 17:04:30,659 INFO L137 WitnessPrinter]: Generating witness for correct program [2021-12-06 17:04:30,663 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2021-12-06 17:04:30,663 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2021-12-06 17:04:30,663 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneLevelCritical [2021-12-06 17:04:30,663 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2021-12-06 17:04:30,663 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2021-12-06 17:04:30,664 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2021-12-06 17:04:30,668 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 49 nodes and edges [2021-12-06 17:04:30,669 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 22 nodes and edges [2021-12-06 17:04:30,669 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 11 nodes and edges [2021-12-06 17:04:30,670 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2021-12-06 17:04:30,670 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2021-12-06 17:04:30,670 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-12-06 17:04:30,670 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-12-06 17:04:30,686 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((pumpRunning == 0 && \result == 1) && waterLevel == 1) && !(0 == systemActive) [2021-12-06 17:04:30,686 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((pumpRunning == 0 && \result == 1) && tmp == 1) && waterLevel == 1) && !(0 == systemActive) [2021-12-06 17:04:30,686 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((\result == 1 && splverifierCounter == 0) && tmp == 1) && !(0 == systemActive)) && pumpRunning == 1) || (((((pumpRunning == 0 && \result == 1) && waterLevel <= 1) && splverifierCounter == 0) && tmp == 1) && !(0 == systemActive)) [2021-12-06 17:04:30,687 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(\old(pumpRunning) == 1) || 0 == systemActive) || pumpRunning == 1) && (!(\old(pumpRunning) == 0) || 0 == systemActive) [2021-12-06 17:04:30,687 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 1) || 0 == systemActive) || pumpRunning == 1) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || ((pumpRunning == 0 && tmp == 0) && !(0 == systemActive))) || 0 == systemActive)) && (((!(\old(pumpRunning) == 0) || ((((pumpRunning == 0 && tmp == 0) && waterLevel <= 1) && \old(waterLevel) == waterLevel) && !(0 == systemActive))) || 0 == systemActive) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) [2021-12-06 17:04:30,688 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((\result == 1 && splverifierCounter == 0) && tmp == 1) && !(0 == systemActive)) && pumpRunning == 1) || ((((pumpRunning == 0 && \result == 1) && splverifierCounter == 0) && tmp == 1) && !(0 == systemActive)) [2021-12-06 17:04:30,688 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 1) || 0 == systemActive) || pumpRunning == 1) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || ((pumpRunning == 0 && tmp == 0) && !(0 == systemActive))) || 0 == systemActive)) && (((!(\old(pumpRunning) == 0) || ((((pumpRunning == 0 && tmp == 0) && waterLevel <= 1) && \old(waterLevel) == waterLevel) && !(0 == systemActive))) || 0 == systemActive) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) [2021-12-06 17:04:30,688 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 1) || 0 == systemActive) || pumpRunning == 1) && (((!(\old(pumpRunning) == 0) || (((pumpRunning == 0 && tmp == 0) && \result == 1) && !(0 == systemActive))) || !(\old(waterLevel) == 1)) || 0 == systemActive)) && (((!(\old(pumpRunning) == 0) || (((((pumpRunning == 0 && tmp == 0) && waterLevel <= 1) && \old(waterLevel) == waterLevel) && \result <= 1) && !(0 == systemActive))) || 0 == systemActive) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) [2021-12-06 17:04:30,688 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!(\old(waterLevel) <= 1) || !(\old(pumpRunning) == 0)) || ((((pumpRunning == 0 && waterLevel <= 1) && !(\result == 0)) && \old(waterLevel) == waterLevel) && !(0 == systemActive))) || 0 == systemActive) && (((!(\old(pumpRunning) == 0) || ((((pumpRunning == 0 && waterLevel <= 1) && !(\result == 0)) && \old(waterLevel) == waterLevel) && !(0 == systemActive))) || 0 == systemActive) || ((pumpRunning == 0 && \result == 0) && \old(waterLevel) == waterLevel))) && (!(\old(pumpRunning) == 1) || 0 == systemActive) [2021-12-06 17:04:30,688 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!(\old(pumpRunning) == 0) || (((pumpRunning == 0 && waterLevel <= 1) && \old(waterLevel) == waterLevel) && !(0 == systemActive))) || 0 == systemActive) || ((((((pumpRunning == 0 && !(tmp___0 == 0)) && tmp == 0) && \result == 0) && \old(waterLevel) == waterLevel) && !(0 == systemActive)) && !(\result == 0))) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || ((\result == 0 && tmp___0 == 0) && !(tmp == 0))) || 0 == systemActive)) && (!(\old(pumpRunning) == 1) || 0 == systemActive) [2021-12-06 17:04:30,689 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 1) || (\result == 1 && pumpRunning == 1)) || 0 == systemActive) && ((!(\old(pumpRunning) == 0) || 0 == systemActive) || ((\result == 1 && \old(waterLevel) == waterLevel) && pumpRunning == 1))) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive) [2021-12-06 17:04:30,689 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 0) || 0 == systemActive) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive)) && (!(\old(pumpRunning) == 1) || 0 == systemActive) [2021-12-06 17:04:30,689 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (!(\old(pumpRunning) == 0) || 0 == systemActive) && (!(\old(pumpRunning) == 1) || 0 == systemActive) [2021-12-06 17:04:30,706 INFO L141 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e99cb339-fe18-4d48-af53-48306c3463be/bin/uautomizer-DrprNOufMa/witness.graphml [2021-12-06 17:04:30,706 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2021-12-06 17:04:30,707 INFO L158 Benchmark]: Toolchain (without parser) took 3322.74ms. Allocated memory was 86.0MB in the beginning and 121.6MB in the end (delta: 35.7MB). Free memory was 44.1MB in the beginning and 36.0MB in the end (delta: 8.1MB). Peak memory consumption was 44.0MB. Max. memory is 16.1GB. [2021-12-06 17:04:30,707 INFO L158 Benchmark]: CDTParser took 0.14ms. Allocated memory is still 86.0MB. Free memory was 61.2MB in the beginning and 61.1MB in the end (delta: 72.1kB). There was no memory consumed. Max. memory is 16.1GB. [2021-12-06 17:04:30,707 INFO L158 Benchmark]: CACSL2BoogieTranslator took 286.53ms. Allocated memory is still 86.0MB. Free memory was 43.9MB in the beginning and 48.3MB in the end (delta: -4.4MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. [2021-12-06 17:04:30,708 INFO L158 Benchmark]: Boogie Procedure Inliner took 35.83ms. Allocated memory is still 86.0MB. Free memory was 48.3MB in the beginning and 46.0MB in the end (delta: 2.4MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2021-12-06 17:04:30,708 INFO L158 Benchmark]: Boogie Preprocessor took 20.66ms. Allocated memory is still 86.0MB. Free memory was 46.0MB in the beginning and 44.4MB in the end (delta: 1.6MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2021-12-06 17:04:30,708 INFO L158 Benchmark]: RCFGBuilder took 322.78ms. Allocated memory was 86.0MB in the beginning and 121.6MB in the end (delta: 35.7MB). Free memory was 44.4MB in the beginning and 92.9MB in the end (delta: -48.5MB). Peak memory consumption was 17.6MB. Max. memory is 16.1GB. [2021-12-06 17:04:30,709 INFO L158 Benchmark]: TraceAbstraction took 2602.27ms. Allocated memory is still 121.6MB. Free memory was 92.2MB in the beginning and 42.3MB in the end (delta: 49.9MB). Peak memory consumption was 60.1MB. Max. memory is 16.1GB. [2021-12-06 17:04:30,709 INFO L158 Benchmark]: Witness Printer took 49.78ms. Allocated memory is still 121.6MB. Free memory was 42.3MB in the beginning and 36.0MB in the end (delta: 6.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. [2021-12-06 17:04:30,711 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.14ms. Allocated memory is still 86.0MB. Free memory was 61.2MB in the beginning and 61.1MB in the end (delta: 72.1kB). There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 286.53ms. Allocated memory is still 86.0MB. Free memory was 43.9MB in the beginning and 48.3MB in the end (delta: -4.4MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 35.83ms. Allocated memory is still 86.0MB. Free memory was 48.3MB in the beginning and 46.0MB in the end (delta: 2.4MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 20.66ms. Allocated memory is still 86.0MB. Free memory was 46.0MB in the beginning and 44.4MB in the end (delta: 1.6MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 322.78ms. Allocated memory was 86.0MB in the beginning and 121.6MB in the end (delta: 35.7MB). Free memory was 44.4MB in the beginning and 92.9MB in the end (delta: -48.5MB). Peak memory consumption was 17.6MB. Max. memory is 16.1GB. * TraceAbstraction took 2602.27ms. Allocated memory is still 121.6MB. Free memory was 92.2MB in the beginning and 42.3MB in the end (delta: 49.9MB). Peak memory consumption was 60.1MB. Max. memory is 16.1GB. * Witness Printer took 49.78ms. Allocated memory is still 121.6MB. Free memory was 42.3MB in the beginning and 36.0MB in the end (delta: 6.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 796]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 7 procedures, 77 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 2.5s, OverallIterations: 12, TraceHistogramMax: 1, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 0.7s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 0.9s, InitialAbstractionConstructionTime: 0.0s, PartialOrderReductionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 722 SdHoareTripleChecker+Valid, 0.3s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 704 mSDsluCounter, 2792 SdHoareTripleChecker+Invalid, 0.2s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 1815 mSDsCounter, 83 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 428 IncrementalHoareTripleChecker+Invalid, 511 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 83 mSolverCounterUnsat, 977 mSDtfsCounter, 428 mSolverCounterSat, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 126 GetRequests, 71 SyntacticMatches, 0 SemanticMatches, 55 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 11 ImplicationChecksByTransitivity, 0.2s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=147occurred in iteration=7, InterpolantAutomatonStates: 63, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.1s AutomataMinimizationTime, 12 MinimizatonAttempts, 68 StatesRemovedByMinimization, 7 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 35 LocationsWithAnnotation, 470 PreInvPairs, 578 NumberOfFragments, 901 HoareAnnotationTreeSize, 470 FomulaSimplifications, 63 FormulaSimplificationTreeSizeReduction, 0.1s HoareSimplificationTime, 35 FomulaSimplificationsInter, 3354 FormulaSimplificationTreeSizeReductionInter, 0.8s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.0s SsaConstructionTime, 0.1s SatisfiabilityAnalysisTime, 0.5s InterpolantComputationTime, 462 NumberOfCodeBlocks, 462 NumberOfCodeBlocksAsserted, 12 NumberOfCheckSat, 450 ConstructedInterpolants, 0 QuantifiedInterpolants, 701 SizeOfPredicates, 0 NumberOfNonLiveVariables, 0 ConjunctsInSsa, 0 ConjunctsInUnsatCore, 12 InterpolantComputations, 12 PerfectInterpolantSequences, 0/0 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 317]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 1) || (\result == 1 && pumpRunning == 1)) || 0 == systemActive) && ((!(\old(pumpRunning) == 0) || 0 == systemActive) || ((\result == 1 && \old(waterLevel) == waterLevel) && pumpRunning == 1))) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive) - InvariantResult [Line: 65]: Loop Invariant Derived loop invariant: ((((\result == 1 && splverifierCounter == 0) && tmp == 1) && !(0 == systemActive)) && pumpRunning == 1) || (((((pumpRunning == 0 && \result == 1) && waterLevel <= 1) && splverifierCounter == 0) && tmp == 1) && !(0 == systemActive)) - InvariantResult [Line: 123]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 198]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 265]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 1) || 0 == systemActive) || pumpRunning == 1) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || ((pumpRunning == 0 && tmp == 0) && !(0 == systemActive))) || 0 == systemActive)) && (((!(\old(pumpRunning) == 0) || ((((pumpRunning == 0 && tmp == 0) && waterLevel <= 1) && \old(waterLevel) == waterLevel) && !(0 == systemActive))) || 0 == systemActive) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) - InvariantResult [Line: 803]: Loop Invariant Derived loop invariant: ((!(\old(pumpRunning) == 1) || 0 == systemActive) || pumpRunning == 1) && (!(\old(pumpRunning) == 0) || 0 == systemActive) - InvariantResult [Line: 880]: Loop Invariant Derived loop invariant: ((((!(\old(waterLevel) <= 1) || !(\old(pumpRunning) == 0)) || ((((pumpRunning == 0 && waterLevel <= 1) && !(\result == 0)) && \old(waterLevel) == waterLevel) && !(0 == systemActive))) || 0 == systemActive) && (((!(\old(pumpRunning) == 0) || ((((pumpRunning == 0 && waterLevel <= 1) && !(\result == 0)) && \old(waterLevel) == waterLevel) && !(0 == systemActive))) || 0 == systemActive) || ((pumpRunning == 0 && \result == 0) && \old(waterLevel) == waterLevel))) && (!(\old(pumpRunning) == 1) || 0 == systemActive) - InvariantResult [Line: 792]: Loop Invariant Derived loop invariant: (!(\old(pumpRunning) == 0) || 0 == systemActive) && (!(\old(pumpRunning) == 1) || 0 == systemActive) - InvariantResult [Line: 913]: Loop Invariant Derived loop invariant: (pumpRunning == 0 && waterLevel == 1) && !(0 == systemActive) - InvariantResult [Line: 185]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 381]: Loop Invariant Derived loop invariant: ((((\result == 1 && splverifierCounter == 0) && tmp == 1) && !(0 == systemActive)) && pumpRunning == 1) || ((((pumpRunning == 0 && \result == 1) && splverifierCounter == 0) && tmp == 1) && !(0 == systemActive)) - InvariantResult [Line: 64]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 362]: Loop Invariant Derived loop invariant: ((((!(\old(pumpRunning) == 0) || (((pumpRunning == 0 && waterLevel <= 1) && \old(waterLevel) == waterLevel) && !(0 == systemActive))) || 0 == systemActive) || ((((((pumpRunning == 0 && !(tmp___0 == 0)) && tmp == 0) && \result == 0) && \old(waterLevel) == waterLevel) && !(0 == systemActive)) && !(\result == 0))) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || ((\result == 0 && tmp___0 == 0) && !(tmp == 0))) || 0 == systemActive)) && (!(\old(pumpRunning) == 1) || 0 == systemActive) - InvariantResult [Line: 55]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 920]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && \result == 1) && waterLevel == 1) && !(0 == systemActive) - InvariantResult [Line: 758]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 1) || 0 == systemActive) || pumpRunning == 1) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || ((pumpRunning == 0 && tmp == 0) && !(0 == systemActive))) || 0 == systemActive)) && (((!(\old(pumpRunning) == 0) || ((((pumpRunning == 0 && tmp == 0) && waterLevel <= 1) && \old(waterLevel) == waterLevel) && !(0 == systemActive))) || 0 == systemActive) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) - InvariantResult [Line: 133]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 290]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 0) || 0 == systemActive) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive)) && (!(\old(pumpRunning) == 1) || 0 == systemActive) - InvariantResult [Line: 906]: Loop Invariant Derived loop invariant: (pumpRunning == 0 && waterLevel == 1) && !(0 == systemActive) - InvariantResult [Line: 871]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 1) || 0 == systemActive) || pumpRunning == 1) && (((!(\old(pumpRunning) == 0) || (((pumpRunning == 0 && tmp == 0) && \result == 1) && !(0 == systemActive))) || !(\old(waterLevel) == 1)) || 0 == systemActive)) && (((!(\old(pumpRunning) == 0) || (((((pumpRunning == 0 && tmp == 0) && waterLevel <= 1) && \old(waterLevel) == waterLevel) && \result <= 1) && !(0 == systemActive))) || 0 == systemActive) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) - InvariantResult [Line: 178]: Loop Invariant Derived loop invariant: (((pumpRunning == 0 && \result == 1) && tmp == 1) && waterLevel == 1) && !(0 == systemActive) RESULT: Ultimate proved your program to be correct! [2021-12-06 17:04:30,750 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_e99cb339-fe18-4d48-af53-48306c3463be/bin/uautomizer-DrprNOufMa/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE