./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec3_product38.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 839c364b Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a2d3d6a6-8a01-44f5-8478-740c0b25be7f/bin/uautomizer-DrprNOufMa/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a2d3d6a6-8a01-44f5-8478-740c0b25be7f/bin/uautomizer-DrprNOufMa/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a2d3d6a6-8a01-44f5-8478-740c0b25be7f/bin/uautomizer-DrprNOufMa/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a2d3d6a6-8a01-44f5-8478-740c0b25be7f/bin/uautomizer-DrprNOufMa/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec3_product38.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a2d3d6a6-8a01-44f5-8478-740c0b25be7f/bin/uautomizer-DrprNOufMa/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a2d3d6a6-8a01-44f5-8478-740c0b25be7f/bin/uautomizer-DrprNOufMa --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash c8e3613a57f37f194f1fe75086d0eb5e0d997c2a9b69c99903e0a1a10a2db5eb --- Real Ultimate output --- This is Ultimate 0.2.2-hotfix-svcomp22-839c364 [2021-12-07 01:49:24,503 INFO L177 SettingsManager]: Resetting all preferences to default values... [2021-12-07 01:49:24,505 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2021-12-07 01:49:24,535 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2021-12-07 01:49:24,536 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2021-12-07 01:49:24,537 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2021-12-07 01:49:24,538 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2021-12-07 01:49:24,541 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2021-12-07 01:49:24,543 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2021-12-07 01:49:24,544 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2021-12-07 01:49:24,545 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2021-12-07 01:49:24,546 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2021-12-07 01:49:24,546 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2021-12-07 01:49:24,547 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2021-12-07 01:49:24,548 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2021-12-07 01:49:24,549 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2021-12-07 01:49:24,550 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2021-12-07 01:49:24,550 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2021-12-07 01:49:24,552 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2021-12-07 01:49:24,553 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2021-12-07 01:49:24,555 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2021-12-07 01:49:24,556 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2021-12-07 01:49:24,557 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2021-12-07 01:49:24,558 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2021-12-07 01:49:24,560 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2021-12-07 01:49:24,561 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2021-12-07 01:49:24,561 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2021-12-07 01:49:24,562 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2021-12-07 01:49:24,562 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2021-12-07 01:49:24,563 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2021-12-07 01:49:24,563 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2021-12-07 01:49:24,564 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2021-12-07 01:49:24,564 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2021-12-07 01:49:24,565 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2021-12-07 01:49:24,566 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2021-12-07 01:49:24,566 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2021-12-07 01:49:24,567 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2021-12-07 01:49:24,567 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2021-12-07 01:49:24,567 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2021-12-07 01:49:24,568 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2021-12-07 01:49:24,568 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2021-12-07 01:49:24,569 INFO L101 SettingsManager]: Beginning loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a2d3d6a6-8a01-44f5-8478-740c0b25be7f/bin/uautomizer-DrprNOufMa/config/svcomp-Reach-32bit-Automizer_Default.epf [2021-12-07 01:49:24,586 INFO L113 SettingsManager]: Loading preferences was successful [2021-12-07 01:49:24,586 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2021-12-07 01:49:24,586 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2021-12-07 01:49:24,587 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2021-12-07 01:49:24,587 INFO L136 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2021-12-07 01:49:24,587 INFO L138 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2021-12-07 01:49:24,588 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2021-12-07 01:49:24,588 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2021-12-07 01:49:24,588 INFO L138 SettingsManager]: * Use SBE=true [2021-12-07 01:49:24,588 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2021-12-07 01:49:24,588 INFO L138 SettingsManager]: * sizeof long=4 [2021-12-07 01:49:24,588 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2021-12-07 01:49:24,588 INFO L138 SettingsManager]: * sizeof POINTER=4 [2021-12-07 01:49:24,588 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2021-12-07 01:49:24,588 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2021-12-07 01:49:24,589 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2021-12-07 01:49:24,589 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2021-12-07 01:49:24,589 INFO L138 SettingsManager]: * sizeof long double=12 [2021-12-07 01:49:24,589 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2021-12-07 01:49:24,589 INFO L138 SettingsManager]: * Use constant arrays=true [2021-12-07 01:49:24,589 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2021-12-07 01:49:24,589 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2021-12-07 01:49:24,589 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2021-12-07 01:49:24,589 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2021-12-07 01:49:24,590 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-12-07 01:49:24,590 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2021-12-07 01:49:24,590 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2021-12-07 01:49:24,590 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2021-12-07 01:49:24,590 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2021-12-07 01:49:24,590 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2021-12-07 01:49:24,590 INFO L138 SettingsManager]: * Large block encoding in concurrent analysis=OFF [2021-12-07 01:49:24,590 INFO L138 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2021-12-07 01:49:24,590 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2021-12-07 01:49:24,591 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2021-12-07 01:49:24,591 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a2d3d6a6-8a01-44f5-8478-740c0b25be7f/bin/uautomizer-DrprNOufMa/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a2d3d6a6-8a01-44f5-8478-740c0b25be7f/bin/uautomizer-DrprNOufMa Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> c8e3613a57f37f194f1fe75086d0eb5e0d997c2a9b69c99903e0a1a10a2db5eb [2021-12-07 01:49:24,767 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2021-12-07 01:49:24,782 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2021-12-07 01:49:24,783 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2021-12-07 01:49:24,784 INFO L271 PluginConnector]: Initializing CDTParser... [2021-12-07 01:49:24,785 INFO L275 PluginConnector]: CDTParser initialized [2021-12-07 01:49:24,786 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a2d3d6a6-8a01-44f5-8478-740c0b25be7f/bin/uautomizer-DrprNOufMa/../../sv-benchmarks/c/product-lines/minepump_spec3_product38.cil.c [2021-12-07 01:49:24,830 INFO L220 CDTParser]: Created temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a2d3d6a6-8a01-44f5-8478-740c0b25be7f/bin/uautomizer-DrprNOufMa/data/ec04ba68e/3b0f0f46680f4668b68f5014e2949fc5/FLAGec207186b [2021-12-07 01:49:25,224 INFO L306 CDTParser]: Found 1 translation units. [2021-12-07 01:49:25,224 INFO L160 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a2d3d6a6-8a01-44f5-8478-740c0b25be7f/sv-benchmarks/c/product-lines/minepump_spec3_product38.cil.c [2021-12-07 01:49:25,233 INFO L349 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a2d3d6a6-8a01-44f5-8478-740c0b25be7f/bin/uautomizer-DrprNOufMa/data/ec04ba68e/3b0f0f46680f4668b68f5014e2949fc5/FLAGec207186b [2021-12-07 01:49:25,242 INFO L357 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a2d3d6a6-8a01-44f5-8478-740c0b25be7f/bin/uautomizer-DrprNOufMa/data/ec04ba68e/3b0f0f46680f4668b68f5014e2949fc5 [2021-12-07 01:49:25,244 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2021-12-07 01:49:25,245 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2021-12-07 01:49:25,246 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2021-12-07 01:49:25,246 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2021-12-07 01:49:25,249 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2021-12-07 01:49:25,249 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 07.12 01:49:25" (1/1) ... [2021-12-07 01:49:25,250 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@24f89290 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 07.12 01:49:25, skipping insertion in model container [2021-12-07 01:49:25,250 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 07.12 01:49:25" (1/1) ... [2021-12-07 01:49:25,255 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2021-12-07 01:49:25,281 INFO L178 MainTranslator]: Built tables and reachable declarations [2021-12-07 01:49:25,465 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a2d3d6a6-8a01-44f5-8478-740c0b25be7f/sv-benchmarks/c/product-lines/minepump_spec3_product38.cil.c[15422,15435] [2021-12-07 01:49:25,480 INFO L209 PostProcessor]: Analyzing one entry point: main [2021-12-07 01:49:25,487 INFO L203 MainTranslator]: Completed pre-run [2021-12-07 01:49:25,533 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a2d3d6a6-8a01-44f5-8478-740c0b25be7f/sv-benchmarks/c/product-lines/minepump_spec3_product38.cil.c[15422,15435] [2021-12-07 01:49:25,540 INFO L209 PostProcessor]: Analyzing one entry point: main [2021-12-07 01:49:25,554 INFO L208 MainTranslator]: Completed translation [2021-12-07 01:49:25,554 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 07.12 01:49:25 WrapperNode [2021-12-07 01:49:25,554 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2021-12-07 01:49:25,555 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2021-12-07 01:49:25,555 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2021-12-07 01:49:25,555 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2021-12-07 01:49:25,561 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 07.12 01:49:25" (1/1) ... [2021-12-07 01:49:25,572 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 07.12 01:49:25" (1/1) ... [2021-12-07 01:49:25,592 INFO L137 Inliner]: procedures = 54, calls = 155, calls flagged for inlining = 23, calls inlined = 20, statements flattened = 254 [2021-12-07 01:49:25,593 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2021-12-07 01:49:25,593 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2021-12-07 01:49:25,593 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2021-12-07 01:49:25,594 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2021-12-07 01:49:25,600 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 07.12 01:49:25" (1/1) ... [2021-12-07 01:49:25,600 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 07.12 01:49:25" (1/1) ... [2021-12-07 01:49:25,602 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 07.12 01:49:25" (1/1) ... [2021-12-07 01:49:25,603 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 07.12 01:49:25" (1/1) ... [2021-12-07 01:49:25,607 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 07.12 01:49:25" (1/1) ... [2021-12-07 01:49:25,611 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 07.12 01:49:25" (1/1) ... [2021-12-07 01:49:25,613 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 07.12 01:49:25" (1/1) ... [2021-12-07 01:49:25,616 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2021-12-07 01:49:25,616 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2021-12-07 01:49:25,616 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2021-12-07 01:49:25,617 INFO L275 PluginConnector]: RCFGBuilder initialized [2021-12-07 01:49:25,617 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 07.12 01:49:25" (1/1) ... [2021-12-07 01:49:25,626 INFO L168 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-12-07 01:49:25,638 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a2d3d6a6-8a01-44f5-8478-740c0b25be7f/bin/uautomizer-DrprNOufMa/z3 [2021-12-07 01:49:25,650 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a2d3d6a6-8a01-44f5-8478-740c0b25be7f/bin/uautomizer-DrprNOufMa/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2021-12-07 01:49:25,652 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a2d3d6a6-8a01-44f5-8478-740c0b25be7f/bin/uautomizer-DrprNOufMa/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2021-12-07 01:49:25,680 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2021-12-07 01:49:25,680 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2021-12-07 01:49:25,680 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2021-12-07 01:49:25,680 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneLevelCritical [2021-12-07 01:49:25,680 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneLevelCritical [2021-12-07 01:49:25,680 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2021-12-07 01:49:25,680 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2021-12-07 01:49:25,680 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2021-12-07 01:49:25,681 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2021-12-07 01:49:25,681 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2021-12-07 01:49:25,681 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2021-12-07 01:49:25,681 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2021-12-07 01:49:25,681 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2021-12-07 01:49:25,681 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2021-12-07 01:49:25,681 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2021-12-07 01:49:25,681 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2021-12-07 01:49:25,681 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2021-12-07 01:49:25,681 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2021-12-07 01:49:25,736 INFO L236 CfgBuilder]: Building ICFG [2021-12-07 01:49:25,737 INFO L262 CfgBuilder]: Building CFG for each procedure with an implementation [2021-12-07 01:49:25,969 INFO L277 CfgBuilder]: Performing block encoding [2021-12-07 01:49:25,977 INFO L296 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2021-12-07 01:49:25,977 INFO L301 CfgBuilder]: Removed 2 assume(true) statements. [2021-12-07 01:49:25,979 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 07.12 01:49:25 BoogieIcfgContainer [2021-12-07 01:49:25,979 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2021-12-07 01:49:25,981 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2021-12-07 01:49:25,981 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2021-12-07 01:49:25,985 INFO L275 PluginConnector]: TraceAbstraction initialized [2021-12-07 01:49:25,985 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 07.12 01:49:25" (1/3) ... [2021-12-07 01:49:25,985 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@3f2e683e and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 07.12 01:49:25, skipping insertion in model container [2021-12-07 01:49:25,986 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 07.12 01:49:25" (2/3) ... [2021-12-07 01:49:25,986 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@3f2e683e and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 07.12 01:49:25, skipping insertion in model container [2021-12-07 01:49:25,986 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 07.12 01:49:25" (3/3) ... [2021-12-07 01:49:25,987 INFO L111 eAbstractionObserver]: Analyzing ICFG minepump_spec3_product38.cil.c [2021-12-07 01:49:25,991 INFO L204 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2021-12-07 01:49:25,991 INFO L163 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2021-12-07 01:49:26,026 INFO L338 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2021-12-07 01:49:26,032 INFO L339 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mLoopAccelerationTechnique=FAST_UPR [2021-12-07 01:49:26,032 INFO L340 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2021-12-07 01:49:26,051 INFO L276 IsEmpty]: Start isEmpty. Operand has 88 states, 67 states have (on average 1.3880597014925373) internal successors, (93), 75 states have internal predecessors, (93), 12 states have call successors, (12), 7 states have call predecessors, (12), 7 states have return successors, (12), 10 states have call predecessors, (12), 12 states have call successors, (12) [2021-12-07 01:49:26,058 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2021-12-07 01:49:26,058 INFO L506 BasicCegarLoop]: Found error trace [2021-12-07 01:49:26,059 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-07 01:49:26,059 INFO L402 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-07 01:49:26,064 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-07 01:49:26,065 INFO L85 PathProgramCache]: Analyzing trace with hash -1928340701, now seen corresponding path program 1 times [2021-12-07 01:49:26,072 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-07 01:49:26,072 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1291546561] [2021-12-07 01:49:26,073 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-07 01:49:26,073 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-07 01:49:26,182 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:26,248 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2021-12-07 01:49:26,250 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:26,255 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-07 01:49:26,255 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-07 01:49:26,255 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1291546561] [2021-12-07 01:49:26,256 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1291546561] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-07 01:49:26,256 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-07 01:49:26,256 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-12-07 01:49:26,257 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2135157724] [2021-12-07 01:49:26,258 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-07 01:49:26,261 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2021-12-07 01:49:26,261 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-07 01:49:26,280 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2021-12-07 01:49:26,280 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-12-07 01:49:26,282 INFO L87 Difference]: Start difference. First operand has 88 states, 67 states have (on average 1.3880597014925373) internal successors, (93), 75 states have internal predecessors, (93), 12 states have call successors, (12), 7 states have call predecessors, (12), 7 states have return successors, (12), 10 states have call predecessors, (12), 12 states have call successors, (12) Second operand has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-07 01:49:26,305 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-07 01:49:26,305 INFO L93 Difference]: Finished difference Result 168 states and 229 transitions. [2021-12-07 01:49:26,306 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2021-12-07 01:49:26,307 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 25 [2021-12-07 01:49:26,307 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-07 01:49:26,313 INFO L225 Difference]: With dead ends: 168 [2021-12-07 01:49:26,313 INFO L226 Difference]: Without dead ends: 79 [2021-12-07 01:49:26,316 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-12-07 01:49:26,319 INFO L933 BasicCegarLoop]: 111 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 0 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 111 SdHoareTripleChecker+Invalid, 0 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 0 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-07 01:49:26,319 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [0 Valid, 111 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 0 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-07 01:49:26,331 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 79 states. [2021-12-07 01:49:26,347 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 79 to 79. [2021-12-07 01:49:26,348 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 79 states, 60 states have (on average 1.3166666666666667) internal successors, (79), 67 states have internal predecessors, (79), 12 states have call successors, (12), 7 states have call predecessors, (12), 6 states have return successors, (11), 9 states have call predecessors, (11), 11 states have call successors, (11) [2021-12-07 01:49:26,350 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 79 states to 79 states and 102 transitions. [2021-12-07 01:49:26,351 INFO L78 Accepts]: Start accepts. Automaton has 79 states and 102 transitions. Word has length 25 [2021-12-07 01:49:26,351 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-07 01:49:26,351 INFO L470 AbstractCegarLoop]: Abstraction has 79 states and 102 transitions. [2021-12-07 01:49:26,352 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-07 01:49:26,352 INFO L276 IsEmpty]: Start isEmpty. Operand 79 states and 102 transitions. [2021-12-07 01:49:26,354 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2021-12-07 01:49:26,354 INFO L506 BasicCegarLoop]: Found error trace [2021-12-07 01:49:26,354 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-07 01:49:26,354 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2021-12-07 01:49:26,354 INFO L402 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-07 01:49:26,355 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-07 01:49:26,355 INFO L85 PathProgramCache]: Analyzing trace with hash -2041135719, now seen corresponding path program 1 times [2021-12-07 01:49:26,355 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-07 01:49:26,356 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [177536006] [2021-12-07 01:49:26,356 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-07 01:49:26,356 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-07 01:49:26,375 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:26,403 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2021-12-07 01:49:26,405 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:26,407 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-07 01:49:26,407 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-07 01:49:26,408 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [177536006] [2021-12-07 01:49:26,408 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [177536006] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-07 01:49:26,408 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-07 01:49:26,408 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-12-07 01:49:26,408 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1916563304] [2021-12-07 01:49:26,408 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-07 01:49:26,409 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-12-07 01:49:26,409 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-07 01:49:26,410 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-12-07 01:49:26,410 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-07 01:49:26,410 INFO L87 Difference]: Start difference. First operand 79 states and 102 transitions. Second operand has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 3 states have internal predecessors, (22), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-07 01:49:26,422 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-07 01:49:26,422 INFO L93 Difference]: Finished difference Result 123 states and 159 transitions. [2021-12-07 01:49:26,422 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-12-07 01:49:26,423 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 3 states have internal predecessors, (22), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 26 [2021-12-07 01:49:26,423 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-07 01:49:26,424 INFO L225 Difference]: With dead ends: 123 [2021-12-07 01:49:26,424 INFO L226 Difference]: Without dead ends: 70 [2021-12-07 01:49:26,425 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-07 01:49:26,426 INFO L933 BasicCegarLoop]: 89 mSDtfsCounter, 13 mSDsluCounter, 72 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 16 SdHoareTripleChecker+Valid, 161 SdHoareTripleChecker+Invalid, 1 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-07 01:49:26,426 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [16 Valid, 161 Invalid, 1 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-07 01:49:26,427 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 70 states. [2021-12-07 01:49:26,433 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 70 to 70. [2021-12-07 01:49:26,433 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 70 states, 54 states have (on average 1.3333333333333333) internal successors, (72), 61 states have internal predecessors, (72), 9 states have call successors, (9), 6 states have call predecessors, (9), 6 states have return successors, (9), 7 states have call predecessors, (9), 9 states have call successors, (9) [2021-12-07 01:49:26,434 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 70 states to 70 states and 90 transitions. [2021-12-07 01:49:26,435 INFO L78 Accepts]: Start accepts. Automaton has 70 states and 90 transitions. Word has length 26 [2021-12-07 01:49:26,435 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-07 01:49:26,435 INFO L470 AbstractCegarLoop]: Abstraction has 70 states and 90 transitions. [2021-12-07 01:49:26,435 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 3 states have internal predecessors, (22), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-07 01:49:26,435 INFO L276 IsEmpty]: Start isEmpty. Operand 70 states and 90 transitions. [2021-12-07 01:49:26,436 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 32 [2021-12-07 01:49:26,436 INFO L506 BasicCegarLoop]: Found error trace [2021-12-07 01:49:26,437 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-07 01:49:26,437 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2021-12-07 01:49:26,437 INFO L402 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-07 01:49:26,437 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-07 01:49:26,437 INFO L85 PathProgramCache]: Analyzing trace with hash 1999159483, now seen corresponding path program 1 times [2021-12-07 01:49:26,437 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-07 01:49:26,438 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [269388655] [2021-12-07 01:49:26,438 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-07 01:49:26,438 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-07 01:49:26,456 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:26,497 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2021-12-07 01:49:26,498 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:26,501 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-07 01:49:26,501 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-07 01:49:26,501 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [269388655] [2021-12-07 01:49:26,501 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [269388655] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-07 01:49:26,501 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-07 01:49:26,502 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2021-12-07 01:49:26,502 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [609097129] [2021-12-07 01:49:26,502 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-07 01:49:26,502 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-12-07 01:49:26,502 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-07 01:49:26,503 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-12-07 01:49:26,503 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=10, Invalid=20, Unknown=0, NotChecked=0, Total=30 [2021-12-07 01:49:26,503 INFO L87 Difference]: Start difference. First operand 70 states and 90 transitions. Second operand has 6 states, 6 states have (on average 4.666666666666667) internal successors, (28), 6 states have internal predecessors, (28), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-07 01:49:26,569 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-07 01:49:26,569 INFO L93 Difference]: Finished difference Result 133 states and 174 transitions. [2021-12-07 01:49:26,569 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-12-07 01:49:26,569 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 4.666666666666667) internal successors, (28), 6 states have internal predecessors, (28), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 31 [2021-12-07 01:49:26,570 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-07 01:49:26,571 INFO L225 Difference]: With dead ends: 133 [2021-12-07 01:49:26,571 INFO L226 Difference]: Without dead ends: 70 [2021-12-07 01:49:26,572 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 3 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-12-07 01:49:26,573 INFO L933 BasicCegarLoop]: 83 mSDtfsCounter, 115 mSDsluCounter, 102 mSDsCounter, 0 mSdLazyCounter, 41 mSolverCounterSat, 13 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 115 SdHoareTripleChecker+Valid, 185 SdHoareTripleChecker+Invalid, 54 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 13 IncrementalHoareTripleChecker+Valid, 41 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-07 01:49:26,574 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [115 Valid, 185 Invalid, 54 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [13 Valid, 41 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-07 01:49:26,575 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 70 states. [2021-12-07 01:49:26,582 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 70 to 70. [2021-12-07 01:49:26,582 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 70 states, 54 states have (on average 1.3148148148148149) internal successors, (71), 61 states have internal predecessors, (71), 9 states have call successors, (9), 6 states have call predecessors, (9), 6 states have return successors, (9), 7 states have call predecessors, (9), 9 states have call successors, (9) [2021-12-07 01:49:26,583 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 70 states to 70 states and 89 transitions. [2021-12-07 01:49:26,583 INFO L78 Accepts]: Start accepts. Automaton has 70 states and 89 transitions. Word has length 31 [2021-12-07 01:49:26,584 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-07 01:49:26,584 INFO L470 AbstractCegarLoop]: Abstraction has 70 states and 89 transitions. [2021-12-07 01:49:26,584 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 4.666666666666667) internal successors, (28), 6 states have internal predecessors, (28), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-07 01:49:26,584 INFO L276 IsEmpty]: Start isEmpty. Operand 70 states and 89 transitions. [2021-12-07 01:49:26,585 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 42 [2021-12-07 01:49:26,585 INFO L506 BasicCegarLoop]: Found error trace [2021-12-07 01:49:26,585 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-07 01:49:26,585 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2021-12-07 01:49:26,586 INFO L402 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-07 01:49:26,586 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-07 01:49:26,586 INFO L85 PathProgramCache]: Analyzing trace with hash 1128329484, now seen corresponding path program 1 times [2021-12-07 01:49:26,586 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-07 01:49:26,586 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1206105091] [2021-12-07 01:49:26,586 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-07 01:49:26,586 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-07 01:49:26,603 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:26,641 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2021-12-07 01:49:26,643 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:26,652 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-07 01:49:26,654 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:26,656 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 30 [2021-12-07 01:49:26,657 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:26,660 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-07 01:49:26,660 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-07 01:49:26,660 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1206105091] [2021-12-07 01:49:26,660 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1206105091] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-07 01:49:26,661 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-07 01:49:26,661 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-12-07 01:49:26,661 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [439325846] [2021-12-07 01:49:26,661 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-07 01:49:26,662 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-12-07 01:49:26,662 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-07 01:49:26,662 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-12-07 01:49:26,662 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-12-07 01:49:26,663 INFO L87 Difference]: Start difference. First operand 70 states and 89 transitions. Second operand has 5 states, 5 states have (on average 6.8) internal successors, (34), 5 states have internal predecessors, (34), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2021-12-07 01:49:26,786 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-07 01:49:26,786 INFO L93 Difference]: Finished difference Result 211 states and 269 transitions. [2021-12-07 01:49:26,787 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-12-07 01:49:26,787 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 6.8) internal successors, (34), 5 states have internal predecessors, (34), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) Word has length 41 [2021-12-07 01:49:26,787 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-07 01:49:26,789 INFO L225 Difference]: With dead ends: 211 [2021-12-07 01:49:26,789 INFO L226 Difference]: Without dead ends: 148 [2021-12-07 01:49:26,790 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 15 GetRequests, 9 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=19, Invalid=37, Unknown=0, NotChecked=0, Total=56 [2021-12-07 01:49:26,791 INFO L933 BasicCegarLoop]: 133 mSDtfsCounter, 167 mSDsluCounter, 176 mSDsCounter, 0 mSdLazyCounter, 95 mSolverCounterSat, 45 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 169 SdHoareTripleChecker+Valid, 309 SdHoareTripleChecker+Invalid, 140 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 45 IncrementalHoareTripleChecker+Valid, 95 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-07 01:49:26,792 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [169 Valid, 309 Invalid, 140 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [45 Valid, 95 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-07 01:49:26,792 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 148 states. [2021-12-07 01:49:26,805 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 148 to 142. [2021-12-07 01:49:26,806 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 142 states, 110 states have (on average 1.2727272727272727) internal successors, (140), 117 states have internal predecessors, (140), 15 states have call successors, (15), 13 states have call predecessors, (15), 16 states have return successors, (20), 16 states have call predecessors, (20), 15 states have call successors, (20) [2021-12-07 01:49:26,808 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 142 states to 142 states and 175 transitions. [2021-12-07 01:49:26,808 INFO L78 Accepts]: Start accepts. Automaton has 142 states and 175 transitions. Word has length 41 [2021-12-07 01:49:26,809 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-07 01:49:26,809 INFO L470 AbstractCegarLoop]: Abstraction has 142 states and 175 transitions. [2021-12-07 01:49:26,809 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 6.8) internal successors, (34), 5 states have internal predecessors, (34), 3 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 3 states have call successors, (3) [2021-12-07 01:49:26,809 INFO L276 IsEmpty]: Start isEmpty. Operand 142 states and 175 transitions. [2021-12-07 01:49:26,811 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 46 [2021-12-07 01:49:26,811 INFO L506 BasicCegarLoop]: Found error trace [2021-12-07 01:49:26,811 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-07 01:49:26,811 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2021-12-07 01:49:26,811 INFO L402 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-07 01:49:26,812 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-07 01:49:26,812 INFO L85 PathProgramCache]: Analyzing trace with hash 1086887613, now seen corresponding path program 1 times [2021-12-07 01:49:26,812 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-07 01:49:26,812 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1384848588] [2021-12-07 01:49:26,812 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-07 01:49:26,813 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-07 01:49:26,831 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:26,851 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2021-12-07 01:49:26,855 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:26,874 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 34 [2021-12-07 01:49:26,875 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:26,877 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-07 01:49:26,877 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-07 01:49:26,877 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1384848588] [2021-12-07 01:49:26,878 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1384848588] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-07 01:49:26,878 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-07 01:49:26,878 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2021-12-07 01:49:26,878 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [401241615] [2021-12-07 01:49:26,878 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-07 01:49:26,879 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-12-07 01:49:26,879 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-07 01:49:26,879 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-12-07 01:49:26,879 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-12-07 01:49:26,880 INFO L87 Difference]: Start difference. First operand 142 states and 175 transitions. Second operand has 6 states, 6 states have (on average 6.666666666666667) internal successors, (40), 5 states have internal predecessors, (40), 2 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) [2021-12-07 01:49:26,971 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-07 01:49:26,971 INFO L93 Difference]: Finished difference Result 285 states and 355 transitions. [2021-12-07 01:49:26,971 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-12-07 01:49:26,971 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 6.666666666666667) internal successors, (40), 5 states have internal predecessors, (40), 2 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) Word has length 45 [2021-12-07 01:49:26,972 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-07 01:49:26,973 INFO L225 Difference]: With dead ends: 285 [2021-12-07 01:49:26,974 INFO L226 Difference]: Without dead ends: 150 [2021-12-07 01:49:26,974 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 14 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 8 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=32, Invalid=58, Unknown=0, NotChecked=0, Total=90 [2021-12-07 01:49:26,976 INFO L933 BasicCegarLoop]: 93 mSDtfsCounter, 59 mSDsluCounter, 285 mSDsCounter, 0 mSdLazyCounter, 103 mSolverCounterSat, 18 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 62 SdHoareTripleChecker+Valid, 378 SdHoareTripleChecker+Invalid, 121 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 18 IncrementalHoareTripleChecker+Valid, 103 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-07 01:49:26,976 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [62 Valid, 378 Invalid, 121 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [18 Valid, 103 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-07 01:49:26,977 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 150 states. [2021-12-07 01:49:26,991 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 150 to 145. [2021-12-07 01:49:26,992 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 145 states, 113 states have (on average 1.2654867256637168) internal successors, (143), 120 states have internal predecessors, (143), 15 states have call successors, (15), 13 states have call predecessors, (15), 16 states have return successors, (20), 16 states have call predecessors, (20), 15 states have call successors, (20) [2021-12-07 01:49:26,993 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 145 states to 145 states and 178 transitions. [2021-12-07 01:49:26,994 INFO L78 Accepts]: Start accepts. Automaton has 145 states and 178 transitions. Word has length 45 [2021-12-07 01:49:26,994 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-07 01:49:26,994 INFO L470 AbstractCegarLoop]: Abstraction has 145 states and 178 transitions. [2021-12-07 01:49:26,994 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 6.666666666666667) internal successors, (40), 5 states have internal predecessors, (40), 2 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) [2021-12-07 01:49:26,994 INFO L276 IsEmpty]: Start isEmpty. Operand 145 states and 178 transitions. [2021-12-07 01:49:26,996 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 46 [2021-12-07 01:49:26,996 INFO L506 BasicCegarLoop]: Found error trace [2021-12-07 01:49:26,996 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-07 01:49:26,996 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2021-12-07 01:49:26,996 INFO L402 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-07 01:49:26,997 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-07 01:49:26,997 INFO L85 PathProgramCache]: Analyzing trace with hash 269239163, now seen corresponding path program 1 times [2021-12-07 01:49:26,997 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-07 01:49:26,997 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [534322593] [2021-12-07 01:49:26,997 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-07 01:49:26,997 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-07 01:49:27,011 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:27,037 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2021-12-07 01:49:27,041 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:27,053 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 34 [2021-12-07 01:49:27,054 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:27,056 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-07 01:49:27,056 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-07 01:49:27,056 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [534322593] [2021-12-07 01:49:27,057 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [534322593] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-07 01:49:27,057 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-07 01:49:27,057 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-12-07 01:49:27,057 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [173081483] [2021-12-07 01:49:27,057 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-07 01:49:27,057 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-12-07 01:49:27,057 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-07 01:49:27,058 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-12-07 01:49:27,058 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-12-07 01:49:27,058 INFO L87 Difference]: Start difference. First operand 145 states and 178 transitions. Second operand has 5 states, 5 states have (on average 8.0) internal successors, (40), 4 states have internal predecessors, (40), 2 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) [2021-12-07 01:49:27,134 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-07 01:49:27,134 INFO L93 Difference]: Finished difference Result 293 states and 366 transitions. [2021-12-07 01:49:27,135 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-12-07 01:49:27,135 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 8.0) internal successors, (40), 4 states have internal predecessors, (40), 2 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) Word has length 45 [2021-12-07 01:49:27,136 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-07 01:49:27,137 INFO L225 Difference]: With dead ends: 293 [2021-12-07 01:49:27,137 INFO L226 Difference]: Without dead ends: 155 [2021-12-07 01:49:27,138 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-12-07 01:49:27,140 INFO L933 BasicCegarLoop]: 93 mSDtfsCounter, 63 mSDsluCounter, 203 mSDsCounter, 0 mSdLazyCounter, 74 mSolverCounterSat, 15 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 67 SdHoareTripleChecker+Valid, 296 SdHoareTripleChecker+Invalid, 89 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 15 IncrementalHoareTripleChecker+Valid, 74 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-07 01:49:27,140 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [67 Valid, 296 Invalid, 89 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [15 Valid, 74 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-07 01:49:27,141 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 155 states. [2021-12-07 01:49:27,156 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 155 to 147. [2021-12-07 01:49:27,157 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 147 states, 115 states have (on average 1.2608695652173914) internal successors, (145), 122 states have internal predecessors, (145), 15 states have call successors, (15), 13 states have call predecessors, (15), 16 states have return successors, (20), 16 states have call predecessors, (20), 15 states have call successors, (20) [2021-12-07 01:49:27,159 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 147 states to 147 states and 180 transitions. [2021-12-07 01:49:27,159 INFO L78 Accepts]: Start accepts. Automaton has 147 states and 180 transitions. Word has length 45 [2021-12-07 01:49:27,159 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-07 01:49:27,159 INFO L470 AbstractCegarLoop]: Abstraction has 147 states and 180 transitions. [2021-12-07 01:49:27,159 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 8.0) internal successors, (40), 4 states have internal predecessors, (40), 2 states have call successors, (3), 2 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) [2021-12-07 01:49:27,160 INFO L276 IsEmpty]: Start isEmpty. Operand 147 states and 180 transitions. [2021-12-07 01:49:27,161 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 46 [2021-12-07 01:49:27,161 INFO L506 BasicCegarLoop]: Found error trace [2021-12-07 01:49:27,161 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-07 01:49:27,162 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2021-12-07 01:49:27,162 INFO L402 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-07 01:49:27,162 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-07 01:49:27,162 INFO L85 PathProgramCache]: Analyzing trace with hash 488093881, now seen corresponding path program 1 times [2021-12-07 01:49:27,162 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-07 01:49:27,163 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1872715574] [2021-12-07 01:49:27,163 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-07 01:49:27,163 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-07 01:49:27,178 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:27,209 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2021-12-07 01:49:27,212 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:27,220 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 34 [2021-12-07 01:49:27,221 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:27,223 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-07 01:49:27,223 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-07 01:49:27,223 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1872715574] [2021-12-07 01:49:27,223 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1872715574] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-07 01:49:27,223 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-07 01:49:27,223 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-12-07 01:49:27,223 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [55511630] [2021-12-07 01:49:27,223 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-07 01:49:27,224 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-12-07 01:49:27,224 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-07 01:49:27,224 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-12-07 01:49:27,224 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-12-07 01:49:27,224 INFO L87 Difference]: Start difference. First operand 147 states and 180 transitions. Second operand has 5 states, 5 states have (on average 8.0) internal successors, (40), 4 states have internal predecessors, (40), 2 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) [2021-12-07 01:49:27,346 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-07 01:49:27,346 INFO L93 Difference]: Finished difference Result 414 states and 528 transitions. [2021-12-07 01:49:27,346 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-12-07 01:49:27,346 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 8.0) internal successors, (40), 4 states have internal predecessors, (40), 2 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) Word has length 45 [2021-12-07 01:49:27,346 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-07 01:49:27,348 INFO L225 Difference]: With dead ends: 414 [2021-12-07 01:49:27,348 INFO L226 Difference]: Without dead ends: 274 [2021-12-07 01:49:27,349 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 13 GetRequests, 8 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=15, Invalid=27, Unknown=0, NotChecked=0, Total=42 [2021-12-07 01:49:27,349 INFO L933 BasicCegarLoop]: 142 mSDtfsCounter, 201 mSDsluCounter, 169 mSDsCounter, 0 mSdLazyCounter, 138 mSolverCounterSat, 53 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 208 SdHoareTripleChecker+Valid, 311 SdHoareTripleChecker+Invalid, 191 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 53 IncrementalHoareTripleChecker+Valid, 138 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-07 01:49:27,350 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [208 Valid, 311 Invalid, 191 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [53 Valid, 138 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-07 01:49:27,350 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 274 states. [2021-12-07 01:49:27,371 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 274 to 266. [2021-12-07 01:49:27,372 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 266 states, 206 states have (on average 1.2524271844660195) internal successors, (258), 217 states have internal predecessors, (258), 30 states have call successors, (30), 28 states have call predecessors, (30), 29 states have return successors, (45), 30 states have call predecessors, (45), 30 states have call successors, (45) [2021-12-07 01:49:27,374 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 266 states to 266 states and 333 transitions. [2021-12-07 01:49:27,374 INFO L78 Accepts]: Start accepts. Automaton has 266 states and 333 transitions. Word has length 45 [2021-12-07 01:49:27,375 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-07 01:49:27,375 INFO L470 AbstractCegarLoop]: Abstraction has 266 states and 333 transitions. [2021-12-07 01:49:27,375 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 8.0) internal successors, (40), 4 states have internal predecessors, (40), 2 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 1 states have call predecessors, (2), 2 states have call successors, (2) [2021-12-07 01:49:27,375 INFO L276 IsEmpty]: Start isEmpty. Operand 266 states and 333 transitions. [2021-12-07 01:49:27,377 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 48 [2021-12-07 01:49:27,377 INFO L506 BasicCegarLoop]: Found error trace [2021-12-07 01:49:27,377 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-07 01:49:27,377 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2021-12-07 01:49:27,377 INFO L402 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-07 01:49:27,378 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-07 01:49:27,378 INFO L85 PathProgramCache]: Analyzing trace with hash -2000597692, now seen corresponding path program 1 times [2021-12-07 01:49:27,378 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-07 01:49:27,378 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1851038342] [2021-12-07 01:49:27,378 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-07 01:49:27,379 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-07 01:49:27,392 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:27,425 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2021-12-07 01:49:27,428 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:27,431 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2021-12-07 01:49:27,432 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:27,434 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 36 [2021-12-07 01:49:27,436 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:27,438 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-07 01:49:27,438 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-07 01:49:27,438 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1851038342] [2021-12-07 01:49:27,438 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1851038342] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-07 01:49:27,438 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-07 01:49:27,439 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2021-12-07 01:49:27,439 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1254077243] [2021-12-07 01:49:27,439 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-07 01:49:27,439 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-12-07 01:49:27,440 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-07 01:49:27,440 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-12-07 01:49:27,440 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-12-07 01:49:27,440 INFO L87 Difference]: Start difference. First operand 266 states and 333 transitions. Second operand has 6 states, 6 states have (on average 6.666666666666667) internal successors, (40), 5 states have internal predecessors, (40), 2 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2021-12-07 01:49:27,556 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-07 01:49:27,556 INFO L93 Difference]: Finished difference Result 528 states and 661 transitions. [2021-12-07 01:49:27,557 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 7 states. [2021-12-07 01:49:27,557 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 6.666666666666667) internal successors, (40), 5 states have internal predecessors, (40), 2 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 47 [2021-12-07 01:49:27,558 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-07 01:49:27,560 INFO L225 Difference]: With dead ends: 528 [2021-12-07 01:49:27,560 INFO L226 Difference]: Without dead ends: 269 [2021-12-07 01:49:27,561 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 15 GetRequests, 8 SyntacticMatches, 0 SemanticMatches, 7 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=27, Invalid=45, Unknown=0, NotChecked=0, Total=72 [2021-12-07 01:49:27,562 INFO L933 BasicCegarLoop]: 85 mSDtfsCounter, 108 mSDsluCounter, 261 mSDsCounter, 0 mSdLazyCounter, 125 mSolverCounterSat, 25 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 113 SdHoareTripleChecker+Valid, 346 SdHoareTripleChecker+Invalid, 150 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 25 IncrementalHoareTripleChecker+Valid, 125 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-07 01:49:27,562 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [113 Valid, 346 Invalid, 150 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [25 Valid, 125 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-07 01:49:27,563 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 269 states. [2021-12-07 01:49:27,582 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 269 to 264. [2021-12-07 01:49:27,583 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 264 states, 204 states have (on average 1.2450980392156863) internal successors, (254), 215 states have internal predecessors, (254), 30 states have call successors, (30), 28 states have call predecessors, (30), 29 states have return successors, (45), 30 states have call predecessors, (45), 30 states have call successors, (45) [2021-12-07 01:49:27,585 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 264 states to 264 states and 329 transitions. [2021-12-07 01:49:27,585 INFO L78 Accepts]: Start accepts. Automaton has 264 states and 329 transitions. Word has length 47 [2021-12-07 01:49:27,586 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-07 01:49:27,586 INFO L470 AbstractCegarLoop]: Abstraction has 264 states and 329 transitions. [2021-12-07 01:49:27,586 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 6.666666666666667) internal successors, (40), 5 states have internal predecessors, (40), 2 states have call successors, (4), 3 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2021-12-07 01:49:27,586 INFO L276 IsEmpty]: Start isEmpty. Operand 264 states and 329 transitions. [2021-12-07 01:49:27,587 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 50 [2021-12-07 01:49:27,587 INFO L506 BasicCegarLoop]: Found error trace [2021-12-07 01:49:27,588 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-07 01:49:27,588 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2021-12-07 01:49:27,588 INFO L402 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-07 01:49:27,588 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-07 01:49:27,588 INFO L85 PathProgramCache]: Analyzing trace with hash 568530835, now seen corresponding path program 1 times [2021-12-07 01:49:27,589 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-07 01:49:27,589 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [529022746] [2021-12-07 01:49:27,589 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-07 01:49:27,589 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-07 01:49:27,601 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:27,629 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-07 01:49:27,630 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:27,635 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 24 [2021-12-07 01:49:27,638 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:27,643 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 38 [2021-12-07 01:49:27,644 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:27,647 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-07 01:49:27,647 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-07 01:49:27,647 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [529022746] [2021-12-07 01:49:27,647 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [529022746] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-07 01:49:27,647 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-07 01:49:27,647 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2021-12-07 01:49:27,647 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1435773507] [2021-12-07 01:49:27,648 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-07 01:49:27,648 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-12-07 01:49:27,648 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-07 01:49:27,648 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-12-07 01:49:27,649 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2021-12-07 01:49:27,649 INFO L87 Difference]: Start difference. First operand 264 states and 329 transitions. Second operand has 7 states, 7 states have (on average 6.0) internal successors, (42), 5 states have internal predecessors, (42), 2 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2021-12-07 01:49:27,862 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-07 01:49:27,862 INFO L93 Difference]: Finished difference Result 522 states and 655 transitions. [2021-12-07 01:49:27,862 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 15 states. [2021-12-07 01:49:27,862 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 6.0) internal successors, (42), 5 states have internal predecessors, (42), 2 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 49 [2021-12-07 01:49:27,862 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-07 01:49:27,864 INFO L225 Difference]: With dead ends: 522 [2021-12-07 01:49:27,864 INFO L226 Difference]: Without dead ends: 312 [2021-12-07 01:49:27,865 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 25 GetRequests, 10 SyntacticMatches, 0 SemanticMatches, 15 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 24 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=87, Invalid=185, Unknown=0, NotChecked=0, Total=272 [2021-12-07 01:49:27,866 INFO L933 BasicCegarLoop]: 146 mSDtfsCounter, 199 mSDsluCounter, 376 mSDsCounter, 0 mSdLazyCounter, 279 mSolverCounterSat, 56 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 203 SdHoareTripleChecker+Valid, 522 SdHoareTripleChecker+Invalid, 335 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 56 IncrementalHoareTripleChecker+Valid, 279 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-07 01:49:27,866 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [203 Valid, 522 Invalid, 335 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [56 Valid, 279 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-07 01:49:27,867 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 312 states. [2021-12-07 01:49:27,879 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 312 to 299. [2021-12-07 01:49:27,880 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 299 states, 232 states have (on average 1.2241379310344827) internal successors, (284), 246 states have internal predecessors, (284), 34 states have call successors, (34), 28 states have call predecessors, (34), 32 states have return successors, (46), 34 states have call predecessors, (46), 34 states have call successors, (46) [2021-12-07 01:49:27,882 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 299 states to 299 states and 364 transitions. [2021-12-07 01:49:27,882 INFO L78 Accepts]: Start accepts. Automaton has 299 states and 364 transitions. Word has length 49 [2021-12-07 01:49:27,882 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-07 01:49:27,882 INFO L470 AbstractCegarLoop]: Abstraction has 299 states and 364 transitions. [2021-12-07 01:49:27,883 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 6.0) internal successors, (42), 5 states have internal predecessors, (42), 2 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2021-12-07 01:49:27,883 INFO L276 IsEmpty]: Start isEmpty. Operand 299 states and 364 transitions. [2021-12-07 01:49:27,883 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 52 [2021-12-07 01:49:27,883 INFO L506 BasicCegarLoop]: Found error trace [2021-12-07 01:49:27,883 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-07 01:49:27,884 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2021-12-07 01:49:27,884 INFO L402 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-07 01:49:27,884 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-07 01:49:27,884 INFO L85 PathProgramCache]: Analyzing trace with hash -2144109732, now seen corresponding path program 1 times [2021-12-07 01:49:27,884 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-07 01:49:27,884 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [751448091] [2021-12-07 01:49:27,884 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-07 01:49:27,885 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-07 01:49:27,895 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:27,907 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-07 01:49:27,908 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:27,911 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 24 [2021-12-07 01:49:27,913 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:27,923 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2021-12-07 01:49:27,924 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:27,925 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 40 [2021-12-07 01:49:27,926 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:27,927 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-07 01:49:27,928 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-07 01:49:27,928 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [751448091] [2021-12-07 01:49:27,928 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [751448091] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-07 01:49:27,928 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-07 01:49:27,928 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2021-12-07 01:49:27,928 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [201610183] [2021-12-07 01:49:27,928 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-07 01:49:27,928 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-12-07 01:49:27,929 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-07 01:49:27,929 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-12-07 01:49:27,929 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-12-07 01:49:27,929 INFO L87 Difference]: Start difference. First operand 299 states and 364 transitions. Second operand has 6 states, 6 states have (on average 7.0) internal successors, (42), 4 states have internal predecessors, (42), 2 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2021-12-07 01:49:28,047 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-07 01:49:28,048 INFO L93 Difference]: Finished difference Result 543 states and 669 transitions. [2021-12-07 01:49:28,048 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2021-12-07 01:49:28,048 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 7.0) internal successors, (42), 4 states have internal predecessors, (42), 2 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) Word has length 51 [2021-12-07 01:49:28,048 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-07 01:49:28,050 INFO L225 Difference]: With dead ends: 543 [2021-12-07 01:49:28,050 INFO L226 Difference]: Without dead ends: 300 [2021-12-07 01:49:28,051 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 18 GetRequests, 10 SyntacticMatches, 0 SemanticMatches, 8 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=33, Invalid=57, Unknown=0, NotChecked=0, Total=90 [2021-12-07 01:49:28,052 INFO L933 BasicCegarLoop]: 88 mSDtfsCounter, 132 mSDsluCounter, 219 mSDsCounter, 0 mSdLazyCounter, 143 mSolverCounterSat, 40 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 135 SdHoareTripleChecker+Valid, 307 SdHoareTripleChecker+Invalid, 183 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 40 IncrementalHoareTripleChecker+Valid, 143 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-07 01:49:28,052 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [135 Valid, 307 Invalid, 183 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [40 Valid, 143 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-07 01:49:28,053 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 300 states. [2021-12-07 01:49:28,070 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 300 to 296. [2021-12-07 01:49:28,070 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 296 states, 229 states have (on average 1.222707423580786) internal successors, (280), 243 states have internal predecessors, (280), 34 states have call successors, (34), 28 states have call predecessors, (34), 32 states have return successors, (46), 34 states have call predecessors, (46), 34 states have call successors, (46) [2021-12-07 01:49:28,073 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 296 states to 296 states and 360 transitions. [2021-12-07 01:49:28,073 INFO L78 Accepts]: Start accepts. Automaton has 296 states and 360 transitions. Word has length 51 [2021-12-07 01:49:28,073 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-07 01:49:28,073 INFO L470 AbstractCegarLoop]: Abstraction has 296 states and 360 transitions. [2021-12-07 01:49:28,073 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 7.0) internal successors, (42), 4 states have internal predecessors, (42), 2 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2021-12-07 01:49:28,073 INFO L276 IsEmpty]: Start isEmpty. Operand 296 states and 360 transitions. [2021-12-07 01:49:28,074 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 52 [2021-12-07 01:49:28,074 INFO L506 BasicCegarLoop]: Found error trace [2021-12-07 01:49:28,074 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-07 01:49:28,074 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9 [2021-12-07 01:49:28,074 INFO L402 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-07 01:49:28,075 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-07 01:49:28,075 INFO L85 PathProgramCache]: Analyzing trace with hash -1925255014, now seen corresponding path program 1 times [2021-12-07 01:49:28,075 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-07 01:49:28,075 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1550392225] [2021-12-07 01:49:28,075 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-07 01:49:28,075 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-07 01:49:28,082 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:28,101 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-07 01:49:28,102 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:28,106 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 24 [2021-12-07 01:49:28,109 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:28,128 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2021-12-07 01:49:28,129 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:28,130 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 40 [2021-12-07 01:49:28,131 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:28,133 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-07 01:49:28,133 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-07 01:49:28,133 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1550392225] [2021-12-07 01:49:28,134 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1550392225] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-07 01:49:28,134 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-07 01:49:28,134 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [9] imperfect sequences [] total 9 [2021-12-07 01:49:28,134 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [436243049] [2021-12-07 01:49:28,134 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-07 01:49:28,134 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 9 states [2021-12-07 01:49:28,134 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-07 01:49:28,135 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 9 interpolants. [2021-12-07 01:49:28,135 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=15, Invalid=57, Unknown=0, NotChecked=0, Total=72 [2021-12-07 01:49:28,135 INFO L87 Difference]: Start difference. First operand 296 states and 360 transitions. Second operand has 9 states, 9 states have (on average 4.666666666666667) internal successors, (42), 7 states have internal predecessors, (42), 2 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2021-12-07 01:49:28,303 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-07 01:49:28,304 INFO L93 Difference]: Finished difference Result 514 states and 631 transitions. [2021-12-07 01:49:28,304 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2021-12-07 01:49:28,304 INFO L78 Accepts]: Start accepts. Automaton has has 9 states, 9 states have (on average 4.666666666666667) internal successors, (42), 7 states have internal predecessors, (42), 2 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) Word has length 51 [2021-12-07 01:49:28,304 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-07 01:49:28,306 INFO L225 Difference]: With dead ends: 514 [2021-12-07 01:49:28,306 INFO L226 Difference]: Without dead ends: 274 [2021-12-07 01:49:28,308 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 25 GetRequests, 12 SyntacticMatches, 0 SemanticMatches, 13 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 9 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=54, Invalid=156, Unknown=0, NotChecked=0, Total=210 [2021-12-07 01:49:28,308 INFO L933 BasicCegarLoop]: 85 mSDtfsCounter, 155 mSDsluCounter, 378 mSDsCounter, 0 mSdLazyCounter, 298 mSolverCounterSat, 50 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 158 SdHoareTripleChecker+Valid, 463 SdHoareTripleChecker+Invalid, 348 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 50 IncrementalHoareTripleChecker+Valid, 298 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-07 01:49:28,309 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [158 Valid, 463 Invalid, 348 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [50 Valid, 298 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-07 01:49:28,309 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 274 states. [2021-12-07 01:49:28,329 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 274 to 270. [2021-12-07 01:49:28,330 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 270 states, 210 states have (on average 1.2190476190476192) internal successors, (256), 223 states have internal predecessors, (256), 31 states have call successors, (31), 25 states have call predecessors, (31), 28 states have return successors, (39), 30 states have call predecessors, (39), 31 states have call successors, (39) [2021-12-07 01:49:28,332 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 270 states to 270 states and 326 transitions. [2021-12-07 01:49:28,332 INFO L78 Accepts]: Start accepts. Automaton has 270 states and 326 transitions. Word has length 51 [2021-12-07 01:49:28,332 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-07 01:49:28,332 INFO L470 AbstractCegarLoop]: Abstraction has 270 states and 326 transitions. [2021-12-07 01:49:28,333 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 9 states, 9 states have (on average 4.666666666666667) internal successors, (42), 7 states have internal predecessors, (42), 2 states have call successors, (5), 3 states have call predecessors, (5), 2 states have return successors, (4), 2 states have call predecessors, (4), 2 states have call successors, (4) [2021-12-07 01:49:28,333 INFO L276 IsEmpty]: Start isEmpty. Operand 270 states and 326 transitions. [2021-12-07 01:49:28,334 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 84 [2021-12-07 01:49:28,334 INFO L506 BasicCegarLoop]: Found error trace [2021-12-07 01:49:28,334 INFO L514 BasicCegarLoop]: trace histogram [3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-07 01:49:28,334 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10 [2021-12-07 01:49:28,334 INFO L402 AbstractCegarLoop]: === Iteration 12 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-07 01:49:28,335 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-07 01:49:28,335 INFO L85 PathProgramCache]: Analyzing trace with hash 896506289, now seen corresponding path program 1 times [2021-12-07 01:49:28,335 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-07 01:49:28,335 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [175328404] [2021-12-07 01:49:28,335 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-07 01:49:28,335 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-07 01:49:28,348 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:28,371 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-07 01:49:28,372 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:28,377 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2021-12-07 01:49:28,380 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:28,399 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2021-12-07 01:49:28,400 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:28,402 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 17 [2021-12-07 01:49:28,403 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:28,409 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 62 [2021-12-07 01:49:28,410 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:28,411 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 72 [2021-12-07 01:49:28,412 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:28,414 INFO L134 CoverageAnalysis]: Checked inductivity of 27 backedges. 18 proven. 4 refuted. 0 times theorem prover too weak. 5 trivial. 0 not checked. [2021-12-07 01:49:28,414 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-07 01:49:28,414 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [175328404] [2021-12-07 01:49:28,414 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [175328404] provided 0 perfect and 1 imperfect interpolant sequences [2021-12-07 01:49:28,414 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [965990725] [2021-12-07 01:49:28,414 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-07 01:49:28,414 INFO L168 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-12-07 01:49:28,414 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a2d3d6a6-8a01-44f5-8478-740c0b25be7f/bin/uautomizer-DrprNOufMa/z3 [2021-12-07 01:49:28,415 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a2d3d6a6-8a01-44f5-8478-740c0b25be7f/bin/uautomizer-DrprNOufMa/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2021-12-07 01:49:28,416 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a2d3d6a6-8a01-44f5-8478-740c0b25be7f/bin/uautomizer-DrprNOufMa/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2021-12-07 01:49:28,480 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-07 01:49:28,483 INFO L263 TraceCheckSpWp]: Trace formula consists of 445 conjuncts, 13 conjunts are in the unsatisfiable core [2021-12-07 01:49:28,489 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2021-12-07 01:49:28,683 INFO L134 CoverageAnalysis]: Checked inductivity of 27 backedges. 6 proven. 12 refuted. 0 times theorem prover too weak. 9 trivial. 0 not checked. [2021-12-07 01:49:28,683 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2021-12-07 01:49:28,893 INFO L134 CoverageAnalysis]: Checked inductivity of 27 backedges. 8 proven. 4 refuted. 0 times theorem prover too weak. 15 trivial. 0 not checked. [2021-12-07 01:49:28,893 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleZ3 [965990725] provided 0 perfect and 2 imperfect interpolant sequences [2021-12-07 01:49:28,893 INFO L186 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2021-12-07 01:49:28,894 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [10, 8, 9] total 19 [2021-12-07 01:49:28,894 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2065114125] [2021-12-07 01:49:28,894 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2021-12-07 01:49:28,895 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 19 states [2021-12-07 01:49:28,895 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-07 01:49:28,895 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 19 interpolants. [2021-12-07 01:49:28,895 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=60, Invalid=282, Unknown=0, NotChecked=0, Total=342 [2021-12-07 01:49:28,896 INFO L87 Difference]: Start difference. First operand 270 states and 326 transitions. Second operand has 19 states, 19 states have (on average 6.7368421052631575) internal successors, (128), 14 states have internal predecessors, (128), 7 states have call successors, (20), 10 states have call predecessors, (20), 8 states have return successors, (18), 8 states have call predecessors, (18), 7 states have call successors, (18) [2021-12-07 01:49:29,780 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-07 01:49:29,780 INFO L93 Difference]: Finished difference Result 814 states and 1054 transitions. [2021-12-07 01:49:29,780 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 52 states. [2021-12-07 01:49:29,781 INFO L78 Accepts]: Start accepts. Automaton has has 19 states, 19 states have (on average 6.7368421052631575) internal successors, (128), 14 states have internal predecessors, (128), 7 states have call successors, (20), 10 states have call predecessors, (20), 8 states have return successors, (18), 8 states have call predecessors, (18), 7 states have call successors, (18) Word has length 83 [2021-12-07 01:49:29,781 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-07 01:49:29,781 INFO L225 Difference]: With dead ends: 814 [2021-12-07 01:49:29,781 INFO L226 Difference]: Without dead ends: 0 [2021-12-07 01:49:29,785 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 241 GetRequests, 173 SyntacticMatches, 1 SemanticMatches, 67 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1195 ImplicationChecksByTransitivity, 0.5s TimeCoverageRelationStatistics Valid=927, Invalid=3765, Unknown=0, NotChecked=0, Total=4692 [2021-12-07 01:49:29,785 INFO L933 BasicCegarLoop]: 124 mSDtfsCounter, 980 mSDsluCounter, 682 mSDsCounter, 0 mSdLazyCounter, 1088 mSolverCounterSat, 481 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.4s Time, 0 mProtectedPredicate, 0 mProtectedAction, 980 SdHoareTripleChecker+Valid, 806 SdHoareTripleChecker+Invalid, 1569 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 481 IncrementalHoareTripleChecker+Valid, 1088 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.5s IncrementalHoareTripleChecker+Time [2021-12-07 01:49:29,785 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [980 Valid, 806 Invalid, 1569 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [481 Valid, 1088 Invalid, 0 Unknown, 0 Unchecked, 0.5s Time] [2021-12-07 01:49:29,786 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2021-12-07 01:49:29,786 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2021-12-07 01:49:29,786 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-07 01:49:29,786 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2021-12-07 01:49:29,786 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 83 [2021-12-07 01:49:29,786 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-07 01:49:29,786 INFO L470 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2021-12-07 01:49:29,787 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 19 states, 19 states have (on average 6.7368421052631575) internal successors, (128), 14 states have internal predecessors, (128), 7 states have call successors, (20), 10 states have call predecessors, (20), 8 states have return successors, (18), 8 states have call predecessors, (18), 7 states have call successors, (18) [2021-12-07 01:49:29,787 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2021-12-07 01:49:29,787 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2021-12-07 01:49:29,789 INFO L764 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2021-12-07 01:49:29,810 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a2d3d6a6-8a01-44f5-8478-740c0b25be7f/bin/uautomizer-DrprNOufMa/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2021-12-07 01:49:29,989 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable11,2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a2d3d6a6-8a01-44f5-8478-740c0b25be7f/bin/uautomizer-DrprNOufMa/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-12-07 01:49:29,991 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2021-12-07 01:49:32,556 INFO L858 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 196 202) no Hoare annotation was computed. [2021-12-07 01:49:32,556 INFO L861 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 196 202) the Hoare annotation is: true [2021-12-07 01:49:32,556 INFO L854 garLoopResultBuilder]: At program point changeMethaneLevelENTRY(lines 853 864) the Hoare annotation is: (let ((.cse2 (= ~methaneLevelCritical~0 0)) (.cse6 (= |old(~methaneLevelCritical~0)| 0))) (let ((.cse0 (not .cse6)) (.cse5 (not (= ~pumpRunning~0 1))) (.cse1 (not (= ~pumpRunning~0 0))) (.cse3 (not (= 1 ~systemActive~0))) (.cse7 (not .cse2)) (.cse4 (not (<= ~waterLevel~0 2)))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4) (or .cse0 .cse2 .cse3 .cse5 .cse4) (or .cse3 .cse6 .cse7 .cse5 .cse4) (or .cse1 .cse3 .cse6 .cse7 .cse4)))) [2021-12-07 01:49:32,556 INFO L858 garLoopResultBuilder]: For program point L857-1(lines 853 864) no Hoare annotation was computed. [2021-12-07 01:49:32,556 INFO L858 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 853 864) no Hoare annotation was computed. [2021-12-07 01:49:32,557 INFO L861 garLoopResultBuilder]: At program point isMethaneLevelCriticalENTRY(lines 865 873) the Hoare annotation is: true [2021-12-07 01:49:32,557 INFO L858 garLoopResultBuilder]: For program point isMethaneLevelCriticalFINAL(lines 865 873) no Hoare annotation was computed. [2021-12-07 01:49:32,557 INFO L858 garLoopResultBuilder]: For program point isMethaneLevelCriticalEXIT(lines 865 873) no Hoare annotation was computed. [2021-12-07 01:49:32,557 INFO L861 garLoopResultBuilder]: At program point L737(line 737) the Hoare annotation is: true [2021-12-07 01:49:32,557 INFO L858 garLoopResultBuilder]: For program point L737-1(line 737) no Hoare annotation was computed. [2021-12-07 01:49:32,557 INFO L858 garLoopResultBuilder]: For program point cleanupEXIT(lines 731 760) no Hoare annotation was computed. [2021-12-07 01:49:32,557 INFO L861 garLoopResultBuilder]: At program point cleanupENTRY(lines 731 760) the Hoare annotation is: true [2021-12-07 01:49:32,557 INFO L861 garLoopResultBuilder]: At program point L756(lines 731 760) the Hoare annotation is: true [2021-12-07 01:49:32,557 INFO L858 garLoopResultBuilder]: For program point L752(line 752) no Hoare annotation was computed. [2021-12-07 01:49:32,557 INFO L858 garLoopResultBuilder]: For program point L745(lines 745 749) no Hoare annotation was computed. [2021-12-07 01:49:32,557 INFO L861 garLoopResultBuilder]: At program point L745-1(lines 745 749) the Hoare annotation is: true [2021-12-07 01:49:32,557 INFO L858 garLoopResultBuilder]: For program point L742(line 742) no Hoare annotation was computed. [2021-12-07 01:49:32,557 INFO L861 garLoopResultBuilder]: At program point L741-2(lines 741 755) the Hoare annotation is: true [2021-12-07 01:49:32,557 INFO L854 garLoopResultBuilder]: At program point L287(lines 282 290) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (<= |old(~waterLevel~0)| 2)))) (and (or .cse0 (not (= |old(~pumpRunning~0)| 1)) .cse1) (or (not (= |old(~pumpRunning~0)| 0)) .cse0 (and (= |timeShift_isPumpRunning_#res#1| 1) (= ~methaneLevelCritical~0 0) (<= 2 ~waterLevel~0) (= |old(~waterLevel~0)| ~waterLevel~0) (= ~methaneLevelCritical~0 |timeShift___utac_acc__Specification3_spec__1_~tmp~8#1|) (= ~pumpRunning~0 1)) .cse1))) [2021-12-07 01:49:32,557 INFO L858 garLoopResultBuilder]: For program point L725(line 725) no Hoare annotation was computed. [2021-12-07 01:49:32,558 INFO L858 garLoopResultBuilder]: For program point L176-1(lines 175 194) no Hoare annotation was computed. [2021-12-07 01:49:32,558 INFO L858 garLoopResultBuilder]: For program point L238(lines 238 246) no Hoare annotation was computed. [2021-12-07 01:49:32,558 INFO L858 garLoopResultBuilder]: For program point L940(lines 940 946) no Hoare annotation was computed. [2021-12-07 01:49:32,558 INFO L858 garLoopResultBuilder]: For program point L234(lines 234 251) no Hoare annotation was computed. [2021-12-07 01:49:32,558 INFO L858 garLoopResultBuilder]: For program point L936(lines 936 949) no Hoare annotation was computed. [2021-12-07 01:49:32,558 INFO L854 garLoopResultBuilder]: At program point L936-1(lines 921 953) the Hoare annotation is: (let ((.cse0 (not (<= |old(~waterLevel~0)| 1))) (.cse3 (and (<= |timeShift___utac_acc__Specification3_spec__1_~tmp___0~2#1| 1) (<= |timeShift_getWaterLevel_#res#1| 1))) (.cse4 (not (= ~methaneLevelCritical~0 0))) (.cse5 (= ~pumpRunning~0 0)) (.cse8 (not (= |old(~pumpRunning~0)| 1))) (.cse1 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (not (= 1 ~systemActive~0))) (.cse6 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse7 (= ~methaneLevelCritical~0 |timeShift___utac_acc__Specification3_spec__1_~tmp~8#1|)) (.cse12 (= ~pumpRunning~0 1)) (.cse9 (not (<= |old(~waterLevel~0)| 2)))) (and (or .cse0 .cse1 .cse2 .cse3 .cse4) (or .cse0 .cse1 (and .cse5 .cse6 .cse7) .cse2) (or .cse2 .cse3 .cse4 .cse8 .cse9) (let ((.cse10 (<= ~waterLevel~0 1)) (.cse11 (<= ~waterLevel~0 |old(~waterLevel~0)|))) (or (and .cse5 .cse10 .cse11 .cse7) .cse2 .cse8 .cse9 (and .cse10 .cse11 .cse7 .cse12))) (or .cse1 .cse2 (and .cse6 .cse7 .cse12) .cse9 (not (<= 2 |old(~waterLevel~0)|))))) [2021-12-07 01:49:32,558 INFO L858 garLoopResultBuilder]: For program point timeShiftFINAL(lines 172 195) no Hoare annotation was computed. [2021-12-07 01:49:32,558 INFO L858 garLoopResultBuilder]: For program point L833(lines 833 837) no Hoare annotation was computed. [2021-12-07 01:49:32,558 INFO L854 garLoopResultBuilder]: At program point L928(line 928) the Hoare annotation is: (let ((.cse4 (= ~pumpRunning~0 0)) (.cse0 (<= ~waterLevel~0 1)) (.cse3 (not (= 1 ~systemActive~0))) (.cse2 (= ~pumpRunning~0 1)) (.cse5 (not (<= |old(~waterLevel~0)| 2)))) (and (let ((.cse1 (<= ~waterLevel~0 |old(~waterLevel~0)|))) (or (and .cse0 .cse1 .cse2) .cse3 (not (= |old(~pumpRunning~0)| 1)) (and .cse4 .cse0 .cse1) .cse5)) (let ((.cse6 (= |old(~waterLevel~0)| ~waterLevel~0))) (or (and .cse4 .cse0 .cse6) (not (= |old(~pumpRunning~0)| 0)) .cse3 (and (<= 2 ~waterLevel~0) .cse6 .cse2) .cse5)))) [2021-12-07 01:49:32,558 INFO L854 garLoopResultBuilder]: At program point L833-2(lines 829 840) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (<= |old(~waterLevel~0)| 2)))) (and (or (and (<= ~waterLevel~0 1) (<= ~waterLevel~0 |old(~waterLevel~0)|) (= ~pumpRunning~0 1)) .cse0 (not (= |old(~pumpRunning~0)| 1)) .cse1) (or (not (= |old(~pumpRunning~0)| 0)) .cse0 .cse1))) [2021-12-07 01:49:32,558 INFO L858 garLoopResultBuilder]: For program point L928-1(line 928) no Hoare annotation was computed. [2021-12-07 01:49:32,558 INFO L854 garLoopResultBuilder]: At program point L726(lines 721 728) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (<= |old(~waterLevel~0)| 2)))) (and (or .cse0 (not (= |old(~pumpRunning~0)| 1)) .cse1) (or (not (= |old(~pumpRunning~0)| 0)) .cse0 .cse1))) [2021-12-07 01:49:32,559 INFO L854 garLoopResultBuilder]: At program point L276(line 276) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (<= |old(~waterLevel~0)| 2)))) (and (or (and (<= ~waterLevel~0 1) (<= ~waterLevel~0 |old(~waterLevel~0)|) (= ~pumpRunning~0 1)) .cse0 (not (= |old(~pumpRunning~0)| 1)) .cse1) (or (not (= |old(~pumpRunning~0)| 0)) .cse0 .cse1))) [2021-12-07 01:49:32,559 INFO L858 garLoopResultBuilder]: For program point L276-1(line 276) no Hoare annotation was computed. [2021-12-07 01:49:32,559 INFO L854 garLoopResultBuilder]: At program point L268(lines 263 270) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (<= |old(~waterLevel~0)| 2)))) (and (or .cse0 (not (= |old(~pumpRunning~0)| 1)) (and (= ~pumpRunning~0 0) (<= ~waterLevel~0 1) (<= ~waterLevel~0 |old(~waterLevel~0)|)) .cse1) (or (not (= |old(~pumpRunning~0)| 0)) .cse0 .cse1))) [2021-12-07 01:49:32,559 INFO L854 garLoopResultBuilder]: At program point L244(line 244) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (<= |old(~waterLevel~0)| 2)))) (and (or (and (<= ~waterLevel~0 1) (<= ~waterLevel~0 |old(~waterLevel~0)|) (= ~pumpRunning~0 1)) .cse0 (not (= |old(~pumpRunning~0)| 1)) .cse1) (or (not (= |old(~pumpRunning~0)| 0)) .cse0 .cse1))) [2021-12-07 01:49:32,559 INFO L858 garLoopResultBuilder]: For program point L930(lines 930 950) no Hoare annotation was computed. [2021-12-07 01:49:32,559 INFO L854 garLoopResultBuilder]: At program point L249(line 249) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (<= |old(~waterLevel~0)| 2)))) (and (or (not (= |old(~pumpRunning~0)| 0)) (and (= ~pumpRunning~0 0) (= |old(~waterLevel~0)| ~waterLevel~0)) .cse0 .cse1) (or .cse0 (not (= |old(~pumpRunning~0)| 1)) .cse1))) [2021-12-07 01:49:32,559 INFO L854 garLoopResultBuilder]: At program point L249-1(lines 230 254) the Hoare annotation is: (let ((.cse4 (= ~pumpRunning~0 0)) (.cse0 (<= ~waterLevel~0 1)) (.cse3 (not (= 1 ~systemActive~0))) (.cse2 (= ~pumpRunning~0 1)) (.cse5 (not (<= |old(~waterLevel~0)| 2)))) (and (let ((.cse1 (<= ~waterLevel~0 |old(~waterLevel~0)|))) (or (and .cse0 .cse1 .cse2) .cse3 (not (= |old(~pumpRunning~0)| 1)) (and .cse4 .cse0 .cse1) .cse5)) (let ((.cse6 (= |old(~waterLevel~0)| ~waterLevel~0))) (or (and .cse4 .cse0 .cse6) (not (= |old(~pumpRunning~0)| 0)) .cse3 (and (<= 2 ~waterLevel~0) .cse6 .cse2) .cse5)))) [2021-12-07 01:49:32,559 INFO L854 garLoopResultBuilder]: At program point L278(lines 271 281) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (<= |old(~waterLevel~0)| 2)))) (and (or (and (<= ~waterLevel~0 1) (<= ~waterLevel~0 |old(~waterLevel~0)|) (= ~pumpRunning~0 1)) .cse0 (not (= |old(~pumpRunning~0)| 1)) .cse1) (or (not (= |old(~pumpRunning~0)| 0)) .cse0 .cse1))) [2021-12-07 01:49:32,559 INFO L858 garLoopResultBuilder]: For program point L183-1(lines 183 189) no Hoare annotation was computed. [2021-12-07 01:49:32,559 INFO L854 garLoopResultBuilder]: At program point timeShiftENTRY(lines 172 195) the Hoare annotation is: (let ((.cse1 (not (= 1 ~systemActive~0))) (.cse2 (not (<= |old(~waterLevel~0)| 2))) (.cse0 (= |old(~waterLevel~0)| ~waterLevel~0))) (and (or (not (= |old(~pumpRunning~0)| 0)) (and (= ~pumpRunning~0 0) .cse0) .cse1 .cse2) (or .cse1 (not (= |old(~pumpRunning~0)| 1)) .cse2 (and .cse0 (= ~pumpRunning~0 1))))) [2021-12-07 01:49:32,559 INFO L858 garLoopResultBuilder]: For program point timeShiftEXIT(lines 172 195) no Hoare annotation was computed. [2021-12-07 01:49:32,559 INFO L858 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 725) no Hoare annotation was computed. [2021-12-07 01:49:32,560 INFO L854 garLoopResultBuilder]: At program point L902(lines 897 905) the Hoare annotation is: (let ((.cse10 (= ~methaneLevelCritical~0 0)) (.cse6 (not (= |old(~pumpRunning~0)| 1))) (.cse4 (= ~pumpRunning~0 1)) (.cse7 (not (<= |old(~waterLevel~0)| 2))) (.cse9 (not (= |old(~pumpRunning~0)| 0))) (.cse8 (= ~pumpRunning~0 0)) (.cse11 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse2 (= ~methaneLevelCritical~0 |timeShift___utac_acc__Specification3_spec__1_~tmp~8#1|)) (.cse3 (<= |timeShift_getWaterLevel_#res#1| 1)) (.cse5 (not (= 1 ~systemActive~0)))) (and (let ((.cse0 (<= ~waterLevel~0 1)) (.cse1 (<= ~waterLevel~0 |old(~waterLevel~0)|))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) .cse5 .cse6 .cse7 (and .cse8 .cse0 .cse1 .cse2 .cse3))) (or .cse9 .cse10 .cse5 .cse7) (or .cse10 .cse5 .cse6 .cse7) (or .cse9 (not (= |old(~waterLevel~0)| 1)) .cse5 (= |timeShift_getWaterLevel_#res#1| 1)) (or .cse9 .cse5 (and .cse11 .cse2 .cse4) .cse7 (not (<= 2 |old(~waterLevel~0)|))) (or (not (<= |old(~waterLevel~0)| 1)) .cse9 (and .cse8 .cse11 .cse2 .cse3) .cse5))) [2021-12-07 01:49:32,560 INFO L861 garLoopResultBuilder]: At program point L799(lines 792 801) the Hoare annotation is: true [2021-12-07 01:49:32,560 INFO L854 garLoopResultBuilder]: At program point L151(lines 102 152) the Hoare annotation is: false [2021-12-07 01:49:32,560 INFO L858 garLoopResultBuilder]: For program point L812(lines 812 819) no Hoare annotation was computed. [2021-12-07 01:49:32,560 INFO L858 garLoopResultBuilder]: For program point L812-2(lines 812 819) no Hoare annotation was computed. [2021-12-07 01:49:32,560 INFO L858 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2021-12-07 01:49:32,560 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startENTRY(line -1) no Hoare annotation was computed. [2021-12-07 01:49:32,560 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2021-12-07 01:49:32,560 INFO L858 garLoopResultBuilder]: For program point L123(lines 123 129) no Hoare annotation was computed. [2021-12-07 01:49:32,560 INFO L858 garLoopResultBuilder]: For program point L123-1(lines 123 129) no Hoare annotation was computed. [2021-12-07 01:49:32,560 INFO L861 garLoopResultBuilder]: At program point L821(lines 802 824) the Hoare annotation is: true [2021-12-07 01:49:32,560 INFO L854 garLoopResultBuilder]: At program point L148(lines 103 150) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse1 (= |ULTIMATE.start_valid_product_#res#1| ~systemActive~0)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse3 (= |ULTIMATE.start_main_~tmp~7#1| ~systemActive~0))) (or (and (= ~pumpRunning~0 0) (<= ~waterLevel~0 1) .cse0 .cse1 .cse2 .cse3) (and .cse0 .cse1 .cse2 (<= ~waterLevel~0 2) .cse3 (= ~pumpRunning~0 1)))) [2021-12-07 01:49:32,560 INFO L854 garLoopResultBuilder]: At program point L115(line 115) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse1 (= |ULTIMATE.start_valid_product_#res#1| ~systemActive~0)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse3 (= |ULTIMATE.start_main_~tmp~7#1| ~systemActive~0))) (or (and (= ~pumpRunning~0 0) (<= ~waterLevel~0 1) .cse0 .cse1 .cse2 .cse3) (and .cse0 .cse1 .cse2 (<= ~waterLevel~0 2) .cse3 (= ~pumpRunning~0 1)))) [2021-12-07 01:49:32,560 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2021-12-07 01:49:32,560 INFO L854 garLoopResultBuilder]: At program point L351(lines 346 353) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse1 (= |ULTIMATE.start_valid_product_#res#1| ~systemActive~0)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse3 (<= ~waterLevel~0 2)) (.cse4 (= |ULTIMATE.start_main_~tmp~7#1| ~systemActive~0))) (or (and (= ~pumpRunning~0 0) .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 .cse1 .cse2 .cse3 .cse4 (= ~pumpRunning~0 1)))) [2021-12-07 01:49:32,561 INFO L854 garLoopResultBuilder]: At program point L789(lines 785 791) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0) (= |ULTIMATE.start_valid_product_#res#1| ~systemActive~0) (= ~waterLevel~0 1) (= |ULTIMATE.start_main_~tmp~7#1| ~systemActive~0)) [2021-12-07 01:49:32,561 INFO L854 garLoopResultBuilder]: At program point L83(lines 78 86) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0) (= |ULTIMATE.start_valid_product_#res#1| ~systemActive~0) (= ~waterLevel~0 1)) [2021-12-07 01:49:32,561 INFO L858 garLoopResultBuilder]: For program point L141(lines 141 145) no Hoare annotation was computed. [2021-12-07 01:49:32,561 INFO L854 garLoopResultBuilder]: At program point L75(lines 71 77) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2021-12-07 01:49:32,561 INFO L854 garLoopResultBuilder]: At program point L141-2(lines 133 146) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse1 (= |ULTIMATE.start_valid_product_#res#1| ~systemActive~0)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse3 (<= ~waterLevel~0 2)) (.cse4 (= |ULTIMATE.start_main_~tmp~7#1| ~systemActive~0))) (or (and (= ~pumpRunning~0 0) .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 .cse1 .cse2 .cse3 .cse4 (= ~pumpRunning~0 1)))) [2021-12-07 01:49:32,561 INFO L858 garLoopResultBuilder]: For program point L104(lines 103 150) no Hoare annotation was computed. [2021-12-07 01:49:32,561 INFO L858 garLoopResultBuilder]: For program point L133(lines 133 146) no Hoare annotation was computed. [2021-12-07 01:49:32,561 INFO L854 garLoopResultBuilder]: At program point L125(line 125) the Hoare annotation is: (let ((.cse0 (= 1 ~systemActive~0)) (.cse1 (= |ULTIMATE.start_valid_product_#res#1| ~systemActive~0)) (.cse2 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse3 (<= ~waterLevel~0 2)) (.cse4 (= |ULTIMATE.start_main_~tmp~7#1| ~systemActive~0))) (or (and (= ~pumpRunning~0 0) .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 .cse1 .cse2 .cse3 .cse4 (= ~pumpRunning~0 1)))) [2021-12-07 01:49:32,561 INFO L861 garLoopResultBuilder]: At program point L154(lines 93 158) the Hoare annotation is: true [2021-12-07 01:49:32,561 INFO L858 garLoopResultBuilder]: For program point L113(lines 113 119) no Hoare annotation was computed. [2021-12-07 01:49:32,561 INFO L858 garLoopResultBuilder]: For program point L113-1(lines 113 119) no Hoare annotation was computed. [2021-12-07 01:49:32,561 INFO L858 garLoopResultBuilder]: For program point L105(lines 105 109) no Hoare annotation was computed. [2021-12-07 01:49:32,561 INFO L854 garLoopResultBuilder]: At program point L68(lines 64 70) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~methaneLevelCritical~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2021-12-07 01:49:32,561 INFO L854 garLoopResultBuilder]: At program point processEnvironment__wrappee__highWaterSensorENTRY(lines 204 228) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0)))) (and (or .cse0 (not (= |old(~pumpRunning~0)| 1)) (not (<= ~waterLevel~0 1)) (= ~pumpRunning~0 1)) (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) .cse0 (not (<= ~waterLevel~0 2))))) [2021-12-07 01:49:32,561 INFO L854 garLoopResultBuilder]: At program point L223(line 223) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0)))) (and (or .cse0 (not (= |old(~pumpRunning~0)| 1)) (not (<= ~waterLevel~0 1)) (= ~pumpRunning~0 1)) (or (not (= |old(~pumpRunning~0)| 0)) .cse0 (not (<= ~waterLevel~0 2))))) [2021-12-07 01:49:32,562 INFO L858 garLoopResultBuilder]: For program point L223-1(lines 204 228) no Hoare annotation was computed. [2021-12-07 01:49:32,562 INFO L854 garLoopResultBuilder]: At program point L915(lines 906 919) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= 1 ~systemActive~0))) (.cse3 (not (<= ~waterLevel~0 1))) (.cse2 (= ~pumpRunning~0 0))) (and (or .cse0 .cse1 (not (<= 2 ~waterLevel~0)) (and .cse2 (= |processEnvironment__wrappee__highWaterSensor_isHighWaterSensorDry_#res#1| 0)) (not (<= ~waterLevel~0 2))) (or .cse1 (not (= |old(~pumpRunning~0)| 1)) .cse3) (or .cse0 .cse1 .cse3 (and (<= 1 |processEnvironment__wrappee__highWaterSensor_isHighWaterSensorDry_#res#1|) .cse2)))) [2021-12-07 01:49:32,562 INFO L858 garLoopResultBuilder]: For program point processEnvironment__wrappee__highWaterSensorEXIT(lines 204 228) no Hoare annotation was computed. [2021-12-07 01:49:32,562 INFO L854 garLoopResultBuilder]: At program point L218(line 218) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (<= ~waterLevel~0 1))) (and (or (not (= |old(~pumpRunning~0)| 0)) .cse0 (not (<= ~waterLevel~0 2)) (and (= ~pumpRunning~0 0) .cse1 (= |processEnvironment__wrappee__highWaterSensor_~tmp~1#1| 0))) (or .cse0 (not (= |old(~pumpRunning~0)| 1)) (not .cse1)))) [2021-12-07 01:49:32,562 INFO L854 garLoopResultBuilder]: At program point L342(lines 327 345) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (<= ~waterLevel~0 1))) (and (or .cse0 (not (= |old(~pumpRunning~0)| 1)) (not .cse1)) (let ((.cse2 (= ~pumpRunning~0 0))) (or (not (= |old(~pumpRunning~0)| 0)) .cse0 (and .cse2 (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp___0~1#1| 0) .cse1 (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_#res#1| 0)) (not (<= ~waterLevel~0 2)) (and (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp~3#1| 0) .cse2 (<= 2 ~waterLevel~0) (<= 1 |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_#res#1|) (<= 1 |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp___0~1#1|) (= |processEnvironment__wrappee__highWaterSensor_isHighWaterSensorDry_#res#1| 0)))))) [2021-12-07 01:49:32,562 INFO L858 garLoopResultBuilder]: For program point L212(lines 212 220) no Hoare annotation was computed. [2021-12-07 01:49:32,562 INFO L858 garLoopResultBuilder]: For program point L208(lines 208 225) no Hoare annotation was computed. [2021-12-07 01:49:32,562 INFO L858 garLoopResultBuilder]: For program point L336(lines 336 340) no Hoare annotation was computed. [2021-12-07 01:49:32,562 INFO L858 garLoopResultBuilder]: For program point L910(lines 910 916) no Hoare annotation was computed. [2021-12-07 01:49:32,562 INFO L858 garLoopResultBuilder]: For program point L336-2(lines 336 340) no Hoare annotation was computed. [2021-12-07 01:49:32,562 INFO L854 garLoopResultBuilder]: At program point L260(lines 255 262) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0)))) (and (or .cse0 (not (= |old(~pumpRunning~0)| 1)) (not (<= ~waterLevel~0 1))) (or (not (= |old(~pumpRunning~0)| 0)) .cse0 (not (<= ~waterLevel~0 2)) (and (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp~3#1| 0) (<= 2 ~waterLevel~0) (<= 1 |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_#res#1|) (<= 1 |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp___0~1#1|) (<= 1 |processEnvironment__wrappee__highWaterSensor_~tmp~1#1|) (= |processEnvironment__wrappee__highWaterSensor_isHighWaterSensorDry_#res#1| 0) (= ~pumpRunning~0 1))))) [2021-12-07 01:49:32,562 INFO L858 garLoopResultBuilder]: For program point waterRiseEXIT(lines 841 852) no Hoare annotation was computed. [2021-12-07 01:49:32,562 INFO L858 garLoopResultBuilder]: For program point L845-1(lines 841 852) no Hoare annotation was computed. [2021-12-07 01:49:32,563 INFO L854 garLoopResultBuilder]: At program point waterRiseENTRY(lines 841 852) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (= |old(~waterLevel~0)| ~waterLevel~0))) (and (or (not (<= |old(~waterLevel~0)| 1)) (not (= ~pumpRunning~0 0)) .cse0 .cse1) (or .cse0 (not (= ~pumpRunning~0 1)) .cse1 (not (<= |old(~waterLevel~0)| 2))))) [2021-12-07 01:49:32,565 INFO L732 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-07 01:49:32,566 INFO L179 ceAbstractionStarter]: Computing trace abstraction results [2021-12-07 01:49:32,591 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 07.12 01:49:32 BoogieIcfgContainer [2021-12-07 01:49:32,592 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2021-12-07 01:49:32,592 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2021-12-07 01:49:32,592 INFO L271 PluginConnector]: Initializing Witness Printer... [2021-12-07 01:49:32,592 INFO L275 PluginConnector]: Witness Printer initialized [2021-12-07 01:49:32,593 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 07.12 01:49:25" (3/4) ... [2021-12-07 01:49:32,595 INFO L137 WitnessPrinter]: Generating witness for correct program [2021-12-07 01:49:32,601 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2021-12-07 01:49:32,601 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2021-12-07 01:49:32,601 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneLevelCritical [2021-12-07 01:49:32,602 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2021-12-07 01:49:32,602 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2021-12-07 01:49:32,602 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__highWaterSensor [2021-12-07 01:49:32,602 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2021-12-07 01:49:32,610 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 51 nodes and edges [2021-12-07 01:49:32,611 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 22 nodes and edges [2021-12-07 01:49:32,611 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 11 nodes and edges [2021-12-07 01:49:32,612 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2021-12-07 01:49:32,612 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2021-12-07 01:49:32,613 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-12-07 01:49:32,613 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-12-07 01:49:32,636 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && \result == systemActive) && waterLevel == 1 [2021-12-07 01:49:32,636 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && \result == systemActive) && waterLevel == 1) && tmp == systemActive [2021-12-07 01:49:32,637 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((pumpRunning == 0 && waterLevel <= 1) && 1 == systemActive) && \result == systemActive) && splverifierCounter == 0) && tmp == systemActive) || (((((1 == systemActive && \result == systemActive) && splverifierCounter == 0) && waterLevel <= 2) && tmp == systemActive) && pumpRunning == 1) [2021-12-07 01:49:32,637 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((waterLevel <= 1 && waterLevel <= \old(waterLevel)) && pumpRunning == 1) || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || !(\old(waterLevel) <= 2)) && ((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(\old(waterLevel) <= 2)) [2021-12-07 01:49:32,637 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((waterLevel <= 1 && waterLevel <= \old(waterLevel)) && pumpRunning == 1) || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || ((pumpRunning == 0 && waterLevel <= 1) && waterLevel <= \old(waterLevel))) || !(\old(waterLevel) <= 2)) && ((((((pumpRunning == 0 && waterLevel <= 1) && \old(waterLevel) == waterLevel) || !(\old(pumpRunning) == 0)) || !(1 == systemActive)) || ((2 <= waterLevel && \old(waterLevel) == waterLevel) && pumpRunning == 1)) || !(\old(waterLevel) <= 2)) [2021-12-07 01:49:32,638 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((pumpRunning == 0 && 1 == systemActive) && \result == systemActive) && splverifierCounter == 0) && waterLevel <= 2) && tmp == systemActive) || (((((1 == systemActive && \result == systemActive) && splverifierCounter == 0) && waterLevel <= 2) && tmp == systemActive) && pumpRunning == 1) [2021-12-07 01:49:32,638 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((((!(\old(waterLevel) <= 1) || !(\old(pumpRunning) == 0)) || !(1 == systemActive)) || (tmp___0 <= 1 && \result <= 1)) || !(methaneLevelCritical == 0)) && (((!(\old(waterLevel) <= 1) || !(\old(pumpRunning) == 0)) || ((pumpRunning == 0 && \old(waterLevel) == waterLevel) && methaneLevelCritical == tmp)) || !(1 == systemActive))) && ((((!(1 == systemActive) || (tmp___0 <= 1 && \result <= 1)) || !(methaneLevelCritical == 0)) || !(\old(pumpRunning) == 1)) || !(\old(waterLevel) <= 2))) && (((((((pumpRunning == 0 && waterLevel <= 1) && waterLevel <= \old(waterLevel)) && methaneLevelCritical == tmp) || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || !(\old(waterLevel) <= 2)) || (((waterLevel <= 1 && waterLevel <= \old(waterLevel)) && methaneLevelCritical == tmp) && pumpRunning == 1))) && ((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || ((\old(waterLevel) == waterLevel && methaneLevelCritical == tmp) && pumpRunning == 1)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) [2021-12-07 01:49:32,638 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((waterLevel <= 1 && waterLevel <= \old(waterLevel)) && pumpRunning == 1) || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || !(\old(waterLevel) <= 2)) && ((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(\old(waterLevel) <= 2)) [2021-12-07 01:49:32,638 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((((waterLevel <= 1 && waterLevel <= \old(waterLevel)) && methaneLevelCritical == tmp) && \result <= 1) && pumpRunning == 1) || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || !(\old(waterLevel) <= 2)) || ((((pumpRunning == 0 && waterLevel <= 1) && waterLevel <= \old(waterLevel)) && methaneLevelCritical == tmp) && \result <= 1)) && (((!(\old(pumpRunning) == 0) || methaneLevelCritical == 0) || !(1 == systemActive)) || !(\old(waterLevel) <= 2))) && (((methaneLevelCritical == 0 || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || !(\old(waterLevel) <= 2))) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || \result == 1)) && ((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || ((\old(waterLevel) == waterLevel && methaneLevelCritical == tmp) && pumpRunning == 1)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel)))) && (((!(\old(waterLevel) <= 1) || !(\old(pumpRunning) == 0)) || (((pumpRunning == 0 && \old(waterLevel) == waterLevel) && methaneLevelCritical == tmp) && \result <= 1)) || !(1 == systemActive)) [2021-12-07 01:49:32,639 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || ((pumpRunning == 0 && waterLevel <= 1) && waterLevel <= \old(waterLevel))) || !(\old(waterLevel) <= 2)) && ((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(\old(waterLevel) <= 2)) [2021-12-07 01:49:32,639 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(2 <= waterLevel)) || (pumpRunning == 0 && \result == 0)) || !(waterLevel <= 2)) && ((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || !(waterLevel <= 1))) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(waterLevel <= 1)) || (1 <= \result && pumpRunning == 0)) [2021-12-07 01:49:32,639 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || !(\old(waterLevel) <= 2)) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || (((((\result == 1 && methaneLevelCritical == 0) && 2 <= waterLevel) && \old(waterLevel) == waterLevel) && methaneLevelCritical == tmp) && pumpRunning == 1)) || !(\old(waterLevel) <= 2)) [2021-12-07 01:49:32,639 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || !(waterLevel <= 1)) && ((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || (((pumpRunning == 0 && tmp___0 == 0) && waterLevel <= 1) && \result == 0)) || !(waterLevel <= 2)) || (((((tmp == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 <= \result) && 1 <= tmp___0) && \result == 0)) [2021-12-07 01:49:32,639 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || !(waterLevel <= 1)) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(waterLevel <= 2)) || ((((((tmp == 0 && 2 <= waterLevel) && 1 <= \result) && 1 <= tmp___0) && 1 <= tmp) && \result == 0) && pumpRunning == 1)) [2021-12-07 01:49:32,639 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || !(\old(waterLevel) <= 2)) && ((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(\old(waterLevel) <= 2)) [2021-12-07 01:49:32,658 INFO L141 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a2d3d6a6-8a01-44f5-8478-740c0b25be7f/bin/uautomizer-DrprNOufMa/witness.graphml [2021-12-07 01:49:32,658 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2021-12-07 01:49:32,659 INFO L158 Benchmark]: Toolchain (without parser) took 7413.26ms. Allocated memory was 100.7MB in the beginning and 121.6MB in the end (delta: 21.0MB). Free memory was 63.7MB in the beginning and 61.5MB in the end (delta: 2.2MB). Peak memory consumption was 24.1MB. Max. memory is 16.1GB. [2021-12-07 01:49:32,659 INFO L158 Benchmark]: CDTParser took 0.15ms. Allocated memory is still 100.7MB. Free memory is still 80.9MB. There was no memory consumed. Max. memory is 16.1GB. [2021-12-07 01:49:32,659 INFO L158 Benchmark]: CACSL2BoogieTranslator took 308.05ms. Allocated memory is still 100.7MB. Free memory was 63.5MB in the beginning and 68.2MB in the end (delta: -4.7MB). Peak memory consumption was 10.5MB. Max. memory is 16.1GB. [2021-12-07 01:49:32,659 INFO L158 Benchmark]: Boogie Procedure Inliner took 37.93ms. Allocated memory is still 100.7MB. Free memory was 68.2MB in the beginning and 65.6MB in the end (delta: 2.6MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. [2021-12-07 01:49:32,659 INFO L158 Benchmark]: Boogie Preprocessor took 22.43ms. Allocated memory is still 100.7MB. Free memory was 65.6MB in the beginning and 64.4MB in the end (delta: 1.2MB). There was no memory consumed. Max. memory is 16.1GB. [2021-12-07 01:49:32,660 INFO L158 Benchmark]: RCFGBuilder took 363.22ms. Allocated memory is still 100.7MB. Free memory was 64.0MB in the beginning and 48.0MB in the end (delta: 15.9MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. [2021-12-07 01:49:32,660 INFO L158 Benchmark]: TraceAbstraction took 6610.35ms. Allocated memory was 100.7MB in the beginning and 121.6MB in the end (delta: 21.0MB). Free memory was 47.6MB in the beginning and 67.8MB in the end (delta: -20.1MB). Peak memory consumption was 43.9MB. Max. memory is 16.1GB. [2021-12-07 01:49:32,660 INFO L158 Benchmark]: Witness Printer took 66.06ms. Allocated memory is still 121.6MB. Free memory was 67.8MB in the beginning and 61.5MB in the end (delta: 6.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. [2021-12-07 01:49:32,662 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.15ms. Allocated memory is still 100.7MB. Free memory is still 80.9MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 308.05ms. Allocated memory is still 100.7MB. Free memory was 63.5MB in the beginning and 68.2MB in the end (delta: -4.7MB). Peak memory consumption was 10.5MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 37.93ms. Allocated memory is still 100.7MB. Free memory was 68.2MB in the beginning and 65.6MB in the end (delta: 2.6MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. * Boogie Preprocessor took 22.43ms. Allocated memory is still 100.7MB. Free memory was 65.6MB in the beginning and 64.4MB in the end (delta: 1.2MB). There was no memory consumed. Max. memory is 16.1GB. * RCFGBuilder took 363.22ms. Allocated memory is still 100.7MB. Free memory was 64.0MB in the beginning and 48.0MB in the end (delta: 15.9MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. * TraceAbstraction took 6610.35ms. Allocated memory was 100.7MB in the beginning and 121.6MB in the end (delta: 21.0MB). Free memory was 47.6MB in the beginning and 67.8MB in the end (delta: -20.1MB). Peak memory consumption was 43.9MB. Max. memory is 16.1GB. * Witness Printer took 66.06ms. Allocated memory is still 121.6MB. Free memory was 67.8MB in the beginning and 61.5MB in the end (delta: 6.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 725]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 8 procedures, 88 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 6.5s, OverallIterations: 12, TraceHistogramMax: 3, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 2.1s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 2.6s, InitialAbstractionConstructionTime: 0.0s, PartialOrderReductionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 2226 SdHoareTripleChecker+Valid, 1.2s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 2192 mSDsluCounter, 4195 SdHoareTripleChecker+Invalid, 1.0s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 2923 mSDsCounter, 796 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 2385 IncrementalHoareTripleChecker+Invalid, 3181 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 796 mSolverCounterUnsat, 1272 mSDtfsCounter, 2385 mSolverCounterSat, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 395 GetRequests, 253 SyntacticMatches, 1 SemanticMatches, 141 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 1238 ImplicationChecksByTransitivity, 0.7s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=299occurred in iteration=9, InterpolantAutomatonStates: 129, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.2s AutomataMinimizationTime, 12 MinimizatonAttempts, 53 StatesRemovedByMinimization, 8 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 41 LocationsWithAnnotation, 1136 PreInvPairs, 1387 NumberOfFragments, 1399 HoareAnnotationTreeSize, 1136 FomulaSimplifications, 120 FormulaSimplificationTreeSizeReduction, 0.2s HoareSimplificationTime, 41 FomulaSimplificationsInter, 12442 FormulaSimplificationTreeSizeReductionInter, 2.4s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.0s SsaConstructionTime, 0.2s SatisfiabilityAnalysisTime, 1.0s InterpolantComputationTime, 622 NumberOfCodeBlocks, 622 NumberOfCodeBlocksAsserted, 13 NumberOfCheckSat, 691 ConstructedInterpolants, 0 QuantifiedInterpolants, 1348 SizeOfPredicates, 4 NumberOfNonLiveVariables, 445 ConjunctsInSsa, 13 ConjunctsInUnsatCore, 14 InterpolantComputations, 11 PerfectInterpolantSequences, 61/81 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 346]: Loop Invariant Derived loop invariant: (((((pumpRunning == 0 && 1 == systemActive) && \result == systemActive) && splverifierCounter == 0) && waterLevel <= 2) && tmp == systemActive) || (((((1 == systemActive && \result == systemActive) && splverifierCounter == 0) && waterLevel <= 2) && tmp == systemActive) && pumpRunning == 1) - InvariantResult [Line: 785]: Loop Invariant Derived loop invariant: ((((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && \result == systemActive) && waterLevel == 1) && tmp == systemActive - InvariantResult [Line: 255]: Loop Invariant Derived loop invariant: ((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || !(waterLevel <= 1)) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(waterLevel <= 2)) || ((((((tmp == 0 && 2 <= waterLevel) && 1 <= \result) && 1 <= tmp___0) && 1 <= tmp) && \result == 0) && pumpRunning == 1)) - InvariantResult [Line: 263]: Loop Invariant Derived loop invariant: (((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || ((pumpRunning == 0 && waterLevel <= 1) && waterLevel <= \old(waterLevel))) || !(\old(waterLevel) <= 2)) && ((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(\old(waterLevel) <= 2)) - InvariantResult [Line: 721]: Loop Invariant Derived loop invariant: ((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || !(\old(waterLevel) <= 2)) && ((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(\old(waterLevel) <= 2)) - InvariantResult [Line: 78]: Loop Invariant Derived loop invariant: (((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && \result == systemActive) && waterLevel == 1 - InvariantResult [Line: 64]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1 - InvariantResult [Line: 93]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 792]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 802]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 829]: Loop Invariant Derived loop invariant: (((((waterLevel <= 1 && waterLevel <= \old(waterLevel)) && pumpRunning == 1) || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || !(\old(waterLevel) <= 2)) && ((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(\old(waterLevel) <= 2)) - InvariantResult [Line: 921]: Loop Invariant Derived loop invariant: (((((((!(\old(waterLevel) <= 1) || !(\old(pumpRunning) == 0)) || !(1 == systemActive)) || (tmp___0 <= 1 && \result <= 1)) || !(methaneLevelCritical == 0)) && (((!(\old(waterLevel) <= 1) || !(\old(pumpRunning) == 0)) || ((pumpRunning == 0 && \old(waterLevel) == waterLevel) && methaneLevelCritical == tmp)) || !(1 == systemActive))) && ((((!(1 == systemActive) || (tmp___0 <= 1 && \result <= 1)) || !(methaneLevelCritical == 0)) || !(\old(pumpRunning) == 1)) || !(\old(waterLevel) <= 2))) && (((((((pumpRunning == 0 && waterLevel <= 1) && waterLevel <= \old(waterLevel)) && methaneLevelCritical == tmp) || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || !(\old(waterLevel) <= 2)) || (((waterLevel <= 1 && waterLevel <= \old(waterLevel)) && methaneLevelCritical == tmp) && pumpRunning == 1))) && ((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || ((\old(waterLevel) == waterLevel && methaneLevelCritical == tmp) && pumpRunning == 1)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel))) - InvariantResult [Line: 71]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && methaneLevelCritical == 0) && 1 == systemActive) && waterLevel == 1 - InvariantResult [Line: 897]: Loop Invariant Derived loop invariant: ((((((((((((waterLevel <= 1 && waterLevel <= \old(waterLevel)) && methaneLevelCritical == tmp) && \result <= 1) && pumpRunning == 1) || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || !(\old(waterLevel) <= 2)) || ((((pumpRunning == 0 && waterLevel <= 1) && waterLevel <= \old(waterLevel)) && methaneLevelCritical == tmp) && \result <= 1)) && (((!(\old(pumpRunning) == 0) || methaneLevelCritical == 0) || !(1 == systemActive)) || !(\old(waterLevel) <= 2))) && (((methaneLevelCritical == 0 || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || !(\old(waterLevel) <= 2))) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || \result == 1)) && ((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || ((\old(waterLevel) == waterLevel && methaneLevelCritical == tmp) && pumpRunning == 1)) || !(\old(waterLevel) <= 2)) || !(2 <= \old(waterLevel)))) && (((!(\old(waterLevel) <= 1) || !(\old(pumpRunning) == 0)) || (((pumpRunning == 0 && \old(waterLevel) == waterLevel) && methaneLevelCritical == tmp) && \result <= 1)) || !(1 == systemActive)) - InvariantResult [Line: 282]: Loop Invariant Derived loop invariant: ((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || !(\old(waterLevel) <= 2)) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || (((((\result == 1 && methaneLevelCritical == 0) && 2 <= waterLevel) && \old(waterLevel) == waterLevel) && methaneLevelCritical == tmp) && pumpRunning == 1)) || !(\old(waterLevel) <= 2)) - InvariantResult [Line: 327]: Loop Invariant Derived loop invariant: ((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || !(waterLevel <= 1)) && ((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || (((pumpRunning == 0 && tmp___0 == 0) && waterLevel <= 1) && \result == 0)) || !(waterLevel <= 2)) || (((((tmp == 0 && pumpRunning == 0) && 2 <= waterLevel) && 1 <= \result) && 1 <= tmp___0) && \result == 0)) - InvariantResult [Line: 103]: Loop Invariant Derived loop invariant: (((((pumpRunning == 0 && waterLevel <= 1) && 1 == systemActive) && \result == systemActive) && splverifierCounter == 0) && tmp == systemActive) || (((((1 == systemActive && \result == systemActive) && splverifierCounter == 0) && waterLevel <= 2) && tmp == systemActive) && pumpRunning == 1) - InvariantResult [Line: 271]: Loop Invariant Derived loop invariant: (((((waterLevel <= 1 && waterLevel <= \old(waterLevel)) && pumpRunning == 1) || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || !(\old(waterLevel) <= 2)) && ((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(\old(waterLevel) <= 2)) - InvariantResult [Line: 230]: Loop Invariant Derived loop invariant: ((((((waterLevel <= 1 && waterLevel <= \old(waterLevel)) && pumpRunning == 1) || !(1 == systemActive)) || !(\old(pumpRunning) == 1)) || ((pumpRunning == 0 && waterLevel <= 1) && waterLevel <= \old(waterLevel))) || !(\old(waterLevel) <= 2)) && ((((((pumpRunning == 0 && waterLevel <= 1) && \old(waterLevel) == waterLevel) || !(\old(pumpRunning) == 0)) || !(1 == systemActive)) || ((2 <= waterLevel && \old(waterLevel) == waterLevel) && pumpRunning == 1)) || !(\old(waterLevel) <= 2)) - InvariantResult [Line: 906]: Loop Invariant Derived loop invariant: (((((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(2 <= waterLevel)) || (pumpRunning == 0 && \result == 0)) || !(waterLevel <= 2)) && ((!(1 == systemActive) || !(\old(pumpRunning) == 1)) || !(waterLevel <= 1))) && (((!(\old(pumpRunning) == 0) || !(1 == systemActive)) || !(waterLevel <= 1)) || (1 <= \result && pumpRunning == 0)) - InvariantResult [Line: 102]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 741]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 731]: Loop Invariant Derived loop invariant: 1 RESULT: Ultimate proved your program to be correct! [2021-12-07 01:49:32,697 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_a2d3d6a6-8a01-44f5-8478-740c0b25be7f/bin/uautomizer-DrprNOufMa/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Ended with exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE