./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec4_product55.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 839c364b Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b62fcd93-4a7e-4d06-b73d-c2b7621a60c7/bin/uautomizer-DrprNOufMa/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b62fcd93-4a7e-4d06-b73d-c2b7621a60c7/bin/uautomizer-DrprNOufMa/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b62fcd93-4a7e-4d06-b73d-c2b7621a60c7/bin/uautomizer-DrprNOufMa/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b62fcd93-4a7e-4d06-b73d-c2b7621a60c7/bin/uautomizer-DrprNOufMa/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec4_product55.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b62fcd93-4a7e-4d06-b73d-c2b7621a60c7/bin/uautomizer-DrprNOufMa/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b62fcd93-4a7e-4d06-b73d-c2b7621a60c7/bin/uautomizer-DrprNOufMa --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 1741a5d4e19b6faba6ff51056891b76c8b4c0acd4f550f71706571820842dcfa --- Real Ultimate output --- This is Ultimate 0.2.2-hotfix-svcomp22-839c364 [2021-12-06 17:47:07,162 INFO L177 SettingsManager]: Resetting all preferences to default values... [2021-12-06 17:47:07,164 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2021-12-06 17:47:07,191 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2021-12-06 17:47:07,191 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2021-12-06 17:47:07,192 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2021-12-06 17:47:07,193 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2021-12-06 17:47:07,195 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2021-12-06 17:47:07,197 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2021-12-06 17:47:07,198 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2021-12-06 17:47:07,199 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2021-12-06 17:47:07,200 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2021-12-06 17:47:07,200 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2021-12-06 17:47:07,201 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2021-12-06 17:47:07,202 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2021-12-06 17:47:07,203 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2021-12-06 17:47:07,204 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2021-12-06 17:47:07,205 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2021-12-06 17:47:07,206 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2021-12-06 17:47:07,208 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2021-12-06 17:47:07,210 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2021-12-06 17:47:07,211 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2021-12-06 17:47:07,212 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2021-12-06 17:47:07,213 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2021-12-06 17:47:07,215 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2021-12-06 17:47:07,216 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2021-12-06 17:47:07,216 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2021-12-06 17:47:07,217 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2021-12-06 17:47:07,217 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2021-12-06 17:47:07,218 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2021-12-06 17:47:07,218 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2021-12-06 17:47:07,219 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2021-12-06 17:47:07,220 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2021-12-06 17:47:07,220 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2021-12-06 17:47:07,221 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2021-12-06 17:47:07,221 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2021-12-06 17:47:07,221 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2021-12-06 17:47:07,222 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2021-12-06 17:47:07,222 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2021-12-06 17:47:07,222 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2021-12-06 17:47:07,223 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2021-12-06 17:47:07,224 INFO L101 SettingsManager]: Beginning loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b62fcd93-4a7e-4d06-b73d-c2b7621a60c7/bin/uautomizer-DrprNOufMa/config/svcomp-Reach-32bit-Automizer_Default.epf [2021-12-06 17:47:07,248 INFO L113 SettingsManager]: Loading preferences was successful [2021-12-06 17:47:07,248 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2021-12-06 17:47:07,249 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2021-12-06 17:47:07,249 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2021-12-06 17:47:07,249 INFO L136 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2021-12-06 17:47:07,250 INFO L138 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2021-12-06 17:47:07,250 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2021-12-06 17:47:07,250 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2021-12-06 17:47:07,251 INFO L138 SettingsManager]: * Use SBE=true [2021-12-06 17:47:07,251 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2021-12-06 17:47:07,251 INFO L138 SettingsManager]: * sizeof long=4 [2021-12-06 17:47:07,251 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2021-12-06 17:47:07,251 INFO L138 SettingsManager]: * sizeof POINTER=4 [2021-12-06 17:47:07,251 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2021-12-06 17:47:07,252 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2021-12-06 17:47:07,252 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2021-12-06 17:47:07,252 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2021-12-06 17:47:07,252 INFO L138 SettingsManager]: * sizeof long double=12 [2021-12-06 17:47:07,252 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2021-12-06 17:47:07,253 INFO L138 SettingsManager]: * Use constant arrays=true [2021-12-06 17:47:07,253 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2021-12-06 17:47:07,253 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2021-12-06 17:47:07,253 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2021-12-06 17:47:07,253 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2021-12-06 17:47:07,253 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-12-06 17:47:07,254 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2021-12-06 17:47:07,254 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2021-12-06 17:47:07,254 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2021-12-06 17:47:07,254 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2021-12-06 17:47:07,254 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2021-12-06 17:47:07,255 INFO L138 SettingsManager]: * Large block encoding in concurrent analysis=OFF [2021-12-06 17:47:07,255 INFO L138 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2021-12-06 17:47:07,255 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2021-12-06 17:47:07,255 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2021-12-06 17:47:07,255 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b62fcd93-4a7e-4d06-b73d-c2b7621a60c7/bin/uautomizer-DrprNOufMa/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b62fcd93-4a7e-4d06-b73d-c2b7621a60c7/bin/uautomizer-DrprNOufMa Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 1741a5d4e19b6faba6ff51056891b76c8b4c0acd4f550f71706571820842dcfa [2021-12-06 17:47:07,441 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2021-12-06 17:47:07,459 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2021-12-06 17:47:07,461 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2021-12-06 17:47:07,461 INFO L271 PluginConnector]: Initializing CDTParser... [2021-12-06 17:47:07,462 INFO L275 PluginConnector]: CDTParser initialized [2021-12-06 17:47:07,463 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b62fcd93-4a7e-4d06-b73d-c2b7621a60c7/bin/uautomizer-DrprNOufMa/../../sv-benchmarks/c/product-lines/minepump_spec4_product55.cil.c [2021-12-06 17:47:07,517 INFO L220 CDTParser]: Created temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b62fcd93-4a7e-4d06-b73d-c2b7621a60c7/bin/uautomizer-DrprNOufMa/data/3b750007f/363f3ac04b0b465b8876e137b5b02d0f/FLAGfbde5315e [2021-12-06 17:47:07,856 INFO L306 CDTParser]: Found 1 translation units. [2021-12-06 17:47:07,856 INFO L160 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b62fcd93-4a7e-4d06-b73d-c2b7621a60c7/sv-benchmarks/c/product-lines/minepump_spec4_product55.cil.c [2021-12-06 17:47:07,867 INFO L349 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b62fcd93-4a7e-4d06-b73d-c2b7621a60c7/bin/uautomizer-DrprNOufMa/data/3b750007f/363f3ac04b0b465b8876e137b5b02d0f/FLAGfbde5315e [2021-12-06 17:47:08,242 INFO L357 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b62fcd93-4a7e-4d06-b73d-c2b7621a60c7/bin/uautomizer-DrprNOufMa/data/3b750007f/363f3ac04b0b465b8876e137b5b02d0f [2021-12-06 17:47:08,244 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2021-12-06 17:47:08,245 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2021-12-06 17:47:08,246 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2021-12-06 17:47:08,246 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2021-12-06 17:47:08,249 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2021-12-06 17:47:08,249 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 06.12 05:47:08" (1/1) ... [2021-12-06 17:47:08,250 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@1f269b82 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.12 05:47:08, skipping insertion in model container [2021-12-06 17:47:08,250 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 06.12 05:47:08" (1/1) ... [2021-12-06 17:47:08,255 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2021-12-06 17:47:08,286 INFO L178 MainTranslator]: Built tables and reachable declarations [2021-12-06 17:47:08,438 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b62fcd93-4a7e-4d06-b73d-c2b7621a60c7/sv-benchmarks/c/product-lines/minepump_spec4_product55.cil.c[6887,6900] [2021-12-06 17:47:08,480 INFO L209 PostProcessor]: Analyzing one entry point: main [2021-12-06 17:47:08,487 INFO L203 MainTranslator]: Completed pre-run [2021-12-06 17:47:08,510 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b62fcd93-4a7e-4d06-b73d-c2b7621a60c7/sv-benchmarks/c/product-lines/minepump_spec4_product55.cil.c[6887,6900] [2021-12-06 17:47:08,540 INFO L209 PostProcessor]: Analyzing one entry point: main [2021-12-06 17:47:08,554 INFO L208 MainTranslator]: Completed translation [2021-12-06 17:47:08,554 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.12 05:47:08 WrapperNode [2021-12-06 17:47:08,554 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2021-12-06 17:47:08,555 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2021-12-06 17:47:08,555 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2021-12-06 17:47:08,555 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2021-12-06 17:47:08,560 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.12 05:47:08" (1/1) ... [2021-12-06 17:47:08,571 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.12 05:47:08" (1/1) ... [2021-12-06 17:47:08,591 INFO L137 Inliner]: procedures = 57, calls = 160, calls flagged for inlining = 25, calls inlined = 22, statements flattened = 286 [2021-12-06 17:47:08,592 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2021-12-06 17:47:08,592 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2021-12-06 17:47:08,592 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2021-12-06 17:47:08,592 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2021-12-06 17:47:08,598 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.12 05:47:08" (1/1) ... [2021-12-06 17:47:08,599 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.12 05:47:08" (1/1) ... [2021-12-06 17:47:08,602 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.12 05:47:08" (1/1) ... [2021-12-06 17:47:08,602 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.12 05:47:08" (1/1) ... [2021-12-06 17:47:08,610 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.12 05:47:08" (1/1) ... [2021-12-06 17:47:08,615 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.12 05:47:08" (1/1) ... [2021-12-06 17:47:08,617 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.12 05:47:08" (1/1) ... [2021-12-06 17:47:08,621 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2021-12-06 17:47:08,622 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2021-12-06 17:47:08,622 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2021-12-06 17:47:08,622 INFO L275 PluginConnector]: RCFGBuilder initialized [2021-12-06 17:47:08,623 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.12 05:47:08" (1/1) ... [2021-12-06 17:47:08,630 INFO L168 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-12-06 17:47:08,638 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b62fcd93-4a7e-4d06-b73d-c2b7621a60c7/bin/uautomizer-DrprNOufMa/z3 [2021-12-06 17:47:08,649 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b62fcd93-4a7e-4d06-b73d-c2b7621a60c7/bin/uautomizer-DrprNOufMa/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2021-12-06 17:47:08,651 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b62fcd93-4a7e-4d06-b73d-c2b7621a60c7/bin/uautomizer-DrprNOufMa/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2021-12-06 17:47:08,677 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2021-12-06 17:47:08,678 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2021-12-06 17:47:08,678 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2021-12-06 17:47:08,678 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2021-12-06 17:47:08,678 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2021-12-06 17:47:08,678 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2021-12-06 17:47:08,678 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2021-12-06 17:47:08,678 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2021-12-06 17:47:08,678 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2021-12-06 17:47:08,678 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2021-12-06 17:47:08,678 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2021-12-06 17:47:08,678 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__lowWaterSensor [2021-12-06 17:47:08,679 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__lowWaterSensor [2021-12-06 17:47:08,679 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2021-12-06 17:47:08,679 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2021-12-06 17:47:08,679 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2021-12-06 17:47:08,679 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2021-12-06 17:47:08,679 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2021-12-06 17:47:08,679 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2021-12-06 17:47:08,679 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2021-12-06 17:47:08,736 INFO L236 CfgBuilder]: Building ICFG [2021-12-06 17:47:08,737 INFO L262 CfgBuilder]: Building CFG for each procedure with an implementation [2021-12-06 17:47:08,971 INFO L277 CfgBuilder]: Performing block encoding [2021-12-06 17:47:08,977 INFO L296 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2021-12-06 17:47:08,977 INFO L301 CfgBuilder]: Removed 2 assume(true) statements. [2021-12-06 17:47:08,978 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 06.12 05:47:08 BoogieIcfgContainer [2021-12-06 17:47:08,978 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2021-12-06 17:47:08,980 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2021-12-06 17:47:08,980 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2021-12-06 17:47:08,982 INFO L275 PluginConnector]: TraceAbstraction initialized [2021-12-06 17:47:08,982 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 06.12 05:47:08" (1/3) ... [2021-12-06 17:47:08,983 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@54f1de8e and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 06.12 05:47:08, skipping insertion in model container [2021-12-06 17:47:08,983 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 06.12 05:47:08" (2/3) ... [2021-12-06 17:47:08,983 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@54f1de8e and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 06.12 05:47:08, skipping insertion in model container [2021-12-06 17:47:08,983 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 06.12 05:47:08" (3/3) ... [2021-12-06 17:47:08,984 INFO L111 eAbstractionObserver]: Analyzing ICFG minepump_spec4_product55.cil.c [2021-12-06 17:47:08,988 INFO L204 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2021-12-06 17:47:08,988 INFO L163 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2021-12-06 17:47:09,022 INFO L338 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2021-12-06 17:47:09,027 INFO L339 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mLoopAccelerationTechnique=FAST_UPR [2021-12-06 17:47:09,027 INFO L340 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2021-12-06 17:47:09,041 INFO L276 IsEmpty]: Start isEmpty. Operand has 99 states, 74 states have (on average 1.3918918918918919) internal successors, (103), 85 states have internal predecessors, (103), 15 states have call successors, (15), 8 states have call predecessors, (15), 8 states have return successors, (15), 10 states have call predecessors, (15), 15 states have call successors, (15) [2021-12-06 17:47:09,045 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 20 [2021-12-06 17:47:09,046 INFO L506 BasicCegarLoop]: Found error trace [2021-12-06 17:47:09,046 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-06 17:47:09,047 INFO L402 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-06 17:47:09,051 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-06 17:47:09,051 INFO L85 PathProgramCache]: Analyzing trace with hash -405346600, now seen corresponding path program 1 times [2021-12-06 17:47:09,057 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-06 17:47:09,057 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1351585661] [2021-12-06 17:47:09,058 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-06 17:47:09,058 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-06 17:47:09,148 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:09,206 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-06 17:47:09,206 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-06 17:47:09,206 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1351585661] [2021-12-06 17:47:09,207 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1351585661] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-06 17:47:09,207 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-06 17:47:09,207 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-12-06 17:47:09,208 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1867857211] [2021-12-06 17:47:09,209 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-06 17:47:09,212 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2021-12-06 17:47:09,212 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-06 17:47:09,232 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2021-12-06 17:47:09,232 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-12-06 17:47:09,234 INFO L87 Difference]: Start difference. First operand has 99 states, 74 states have (on average 1.3918918918918919) internal successors, (103), 85 states have internal predecessors, (103), 15 states have call successors, (15), 8 states have call predecessors, (15), 8 states have return successors, (15), 10 states have call predecessors, (15), 15 states have call successors, (15) Second operand has 2 states, 2 states have (on average 8.5) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-06 17:47:09,260 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-06 17:47:09,260 INFO L93 Difference]: Finished difference Result 190 states and 261 transitions. [2021-12-06 17:47:09,261 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2021-12-06 17:47:09,262 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 8.5) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 19 [2021-12-06 17:47:09,262 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-06 17:47:09,269 INFO L225 Difference]: With dead ends: 190 [2021-12-06 17:47:09,269 INFO L226 Difference]: Without dead ends: 90 [2021-12-06 17:47:09,272 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-12-06 17:47:09,275 INFO L933 BasicCegarLoop]: 127 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 0 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 127 SdHoareTripleChecker+Invalid, 0 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 0 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-06 17:47:09,276 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [0 Valid, 127 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 0 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-06 17:47:09,288 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 90 states. [2021-12-06 17:47:09,305 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 90 to 90. [2021-12-06 17:47:09,306 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 90 states, 67 states have (on average 1.328358208955224) internal successors, (89), 77 states have internal predecessors, (89), 15 states have call successors, (15), 8 states have call predecessors, (15), 7 states have return successors, (14), 9 states have call predecessors, (14), 14 states have call successors, (14) [2021-12-06 17:47:09,308 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 90 states to 90 states and 118 transitions. [2021-12-06 17:47:09,309 INFO L78 Accepts]: Start accepts. Automaton has 90 states and 118 transitions. Word has length 19 [2021-12-06 17:47:09,310 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-06 17:47:09,310 INFO L470 AbstractCegarLoop]: Abstraction has 90 states and 118 transitions. [2021-12-06 17:47:09,310 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 8.5) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-06 17:47:09,310 INFO L276 IsEmpty]: Start isEmpty. Operand 90 states and 118 transitions. [2021-12-06 17:47:09,312 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 21 [2021-12-06 17:47:09,312 INFO L506 BasicCegarLoop]: Found error trace [2021-12-06 17:47:09,312 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-06 17:47:09,312 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2021-12-06 17:47:09,312 INFO L402 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-06 17:47:09,313 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-06 17:47:09,313 INFO L85 PathProgramCache]: Analyzing trace with hash 1370466006, now seen corresponding path program 1 times [2021-12-06 17:47:09,313 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-06 17:47:09,313 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1987521043] [2021-12-06 17:47:09,313 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-06 17:47:09,314 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-06 17:47:09,334 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:09,366 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-06 17:47:09,366 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-06 17:47:09,367 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1987521043] [2021-12-06 17:47:09,367 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1987521043] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-06 17:47:09,367 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-06 17:47:09,367 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-12-06 17:47:09,367 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [298537118] [2021-12-06 17:47:09,367 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-06 17:47:09,368 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-12-06 17:47:09,368 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-06 17:47:09,369 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-12-06 17:47:09,369 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-06 17:47:09,369 INFO L87 Difference]: Start difference. First operand 90 states and 118 transitions. Second operand has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-06 17:47:09,382 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-06 17:47:09,383 INFO L93 Difference]: Finished difference Result 142 states and 186 transitions. [2021-12-06 17:47:09,383 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-12-06 17:47:09,383 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 20 [2021-12-06 17:47:09,383 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-06 17:47:09,385 INFO L225 Difference]: With dead ends: 142 [2021-12-06 17:47:09,385 INFO L226 Difference]: Without dead ends: 81 [2021-12-06 17:47:09,386 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-06 17:47:09,387 INFO L933 BasicCegarLoop]: 105 mSDtfsCounter, 16 mSDsluCounter, 84 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 20 SdHoareTripleChecker+Valid, 189 SdHoareTripleChecker+Invalid, 1 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-06 17:47:09,387 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [20 Valid, 189 Invalid, 1 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-06 17:47:09,388 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 81 states. [2021-12-06 17:47:09,395 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 81 to 81. [2021-12-06 17:47:09,395 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 81 states, 61 states have (on average 1.3442622950819672) internal successors, (82), 71 states have internal predecessors, (82), 12 states have call successors, (12), 7 states have call predecessors, (12), 7 states have return successors, (12), 7 states have call predecessors, (12), 12 states have call successors, (12) [2021-12-06 17:47:09,396 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 81 states to 81 states and 106 transitions. [2021-12-06 17:47:09,397 INFO L78 Accepts]: Start accepts. Automaton has 81 states and 106 transitions. Word has length 20 [2021-12-06 17:47:09,397 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-06 17:47:09,397 INFO L470 AbstractCegarLoop]: Abstraction has 81 states and 106 transitions. [2021-12-06 17:47:09,397 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-06 17:47:09,397 INFO L276 IsEmpty]: Start isEmpty. Operand 81 states and 106 transitions. [2021-12-06 17:47:09,398 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2021-12-06 17:47:09,398 INFO L506 BasicCegarLoop]: Found error trace [2021-12-06 17:47:09,398 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-06 17:47:09,398 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2021-12-06 17:47:09,398 INFO L402 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-06 17:47:09,399 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-06 17:47:09,399 INFO L85 PathProgramCache]: Analyzing trace with hash 412043634, now seen corresponding path program 1 times [2021-12-06 17:47:09,399 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-06 17:47:09,399 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [716932719] [2021-12-06 17:47:09,399 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-06 17:47:09,400 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-06 17:47:09,419 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:09,462 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-06 17:47:09,462 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-06 17:47:09,462 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [716932719] [2021-12-06 17:47:09,462 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [716932719] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-06 17:47:09,462 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-06 17:47:09,462 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-12-06 17:47:09,463 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2115124000] [2021-12-06 17:47:09,463 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-06 17:47:09,463 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-12-06 17:47:09,463 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-06 17:47:09,464 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-12-06 17:47:09,464 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=10, Invalid=20, Unknown=0, NotChecked=0, Total=30 [2021-12-06 17:47:09,464 INFO L87 Difference]: Start difference. First operand 81 states and 106 transitions. Second operand has 6 states, 6 states have (on average 3.8333333333333335) internal successors, (23), 5 states have internal predecessors, (23), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-06 17:47:09,586 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-06 17:47:09,586 INFO L93 Difference]: Finished difference Result 266 states and 355 transitions. [2021-12-06 17:47:09,586 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2021-12-06 17:47:09,586 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 3.8333333333333335) internal successors, (23), 5 states have internal predecessors, (23), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 24 [2021-12-06 17:47:09,587 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-06 17:47:09,589 INFO L225 Difference]: With dead ends: 266 [2021-12-06 17:47:09,589 INFO L226 Difference]: Without dead ends: 192 [2021-12-06 17:47:09,590 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 6 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=22, Invalid=34, Unknown=0, NotChecked=0, Total=56 [2021-12-06 17:47:09,591 INFO L933 BasicCegarLoop]: 137 mSDtfsCounter, 219 mSDsluCounter, 391 mSDsCounter, 0 mSdLazyCounter, 113 mSolverCounterSat, 14 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 219 SdHoareTripleChecker+Valid, 528 SdHoareTripleChecker+Invalid, 127 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 14 IncrementalHoareTripleChecker+Valid, 113 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-06 17:47:09,591 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [219 Valid, 528 Invalid, 127 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [14 Valid, 113 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-06 17:47:09,592 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 192 states. [2021-12-06 17:47:09,612 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 192 to 186. [2021-12-06 17:47:09,612 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 186 states, 139 states have (on average 1.3741007194244603) internal successors, (191), 161 states have internal predecessors, (191), 28 states have call successors, (28), 18 states have call predecessors, (28), 18 states have return successors, (29), 16 states have call predecessors, (29), 28 states have call successors, (29) [2021-12-06 17:47:09,614 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 186 states to 186 states and 248 transitions. [2021-12-06 17:47:09,614 INFO L78 Accepts]: Start accepts. Automaton has 186 states and 248 transitions. Word has length 24 [2021-12-06 17:47:09,614 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-06 17:47:09,615 INFO L470 AbstractCegarLoop]: Abstraction has 186 states and 248 transitions. [2021-12-06 17:47:09,615 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 3.8333333333333335) internal successors, (23), 5 states have internal predecessors, (23), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-06 17:47:09,615 INFO L276 IsEmpty]: Start isEmpty. Operand 186 states and 248 transitions. [2021-12-06 17:47:09,616 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 29 [2021-12-06 17:47:09,616 INFO L506 BasicCegarLoop]: Found error trace [2021-12-06 17:47:09,616 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-06 17:47:09,617 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2021-12-06 17:47:09,617 INFO L402 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-06 17:47:09,617 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-06 17:47:09,617 INFO L85 PathProgramCache]: Analyzing trace with hash 2062247464, now seen corresponding path program 1 times [2021-12-06 17:47:09,618 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-06 17:47:09,618 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1136632963] [2021-12-06 17:47:09,618 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-06 17:47:09,618 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-06 17:47:09,638 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:09,675 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-06 17:47:09,675 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-06 17:47:09,676 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1136632963] [2021-12-06 17:47:09,676 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1136632963] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-06 17:47:09,676 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-06 17:47:09,676 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-12-06 17:47:09,676 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [323979755] [2021-12-06 17:47:09,676 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-06 17:47:09,677 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-12-06 17:47:09,677 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-06 17:47:09,677 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-12-06 17:47:09,677 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-12-06 17:47:09,677 INFO L87 Difference]: Start difference. First operand 186 states and 248 transitions. Second operand has 5 states, 5 states have (on average 5.4) internal successors, (27), 4 states have internal predecessors, (27), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-06 17:47:09,728 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-06 17:47:09,728 INFO L93 Difference]: Finished difference Result 527 states and 733 transitions. [2021-12-06 17:47:09,729 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-12-06 17:47:09,729 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 5.4) internal successors, (27), 4 states have internal predecessors, (27), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 28 [2021-12-06 17:47:09,729 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-06 17:47:09,733 INFO L225 Difference]: With dead ends: 527 [2021-12-06 17:47:09,733 INFO L226 Difference]: Without dead ends: 348 [2021-12-06 17:47:09,734 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-12-06 17:47:09,735 INFO L933 BasicCegarLoop]: 111 mSDtfsCounter, 77 mSDsluCounter, 315 mSDsCounter, 0 mSdLazyCounter, 29 mSolverCounterSat, 4 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 77 SdHoareTripleChecker+Valid, 426 SdHoareTripleChecker+Invalid, 33 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 4 IncrementalHoareTripleChecker+Valid, 29 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-06 17:47:09,736 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [77 Valid, 426 Invalid, 33 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [4 Valid, 29 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-06 17:47:09,737 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 348 states. [2021-12-06 17:47:09,766 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 348 to 348. [2021-12-06 17:47:09,767 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 348 states, 258 states have (on average 1.3488372093023255) internal successors, (348), 298 states have internal predecessors, (348), 56 states have call successors, (56), 36 states have call predecessors, (56), 33 states have return successors, (62), 29 states have call predecessors, (62), 56 states have call successors, (62) [2021-12-06 17:47:09,770 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 348 states to 348 states and 466 transitions. [2021-12-06 17:47:09,770 INFO L78 Accepts]: Start accepts. Automaton has 348 states and 466 transitions. Word has length 28 [2021-12-06 17:47:09,771 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-06 17:47:09,771 INFO L470 AbstractCegarLoop]: Abstraction has 348 states and 466 transitions. [2021-12-06 17:47:09,771 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 5.4) internal successors, (27), 4 states have internal predecessors, (27), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-06 17:47:09,771 INFO L276 IsEmpty]: Start isEmpty. Operand 348 states and 466 transitions. [2021-12-06 17:47:09,773 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 31 [2021-12-06 17:47:09,773 INFO L506 BasicCegarLoop]: Found error trace [2021-12-06 17:47:09,774 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-06 17:47:09,774 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2021-12-06 17:47:09,774 INFO L402 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-06 17:47:09,774 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-06 17:47:09,775 INFO L85 PathProgramCache]: Analyzing trace with hash -1056507795, now seen corresponding path program 1 times [2021-12-06 17:47:09,775 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-06 17:47:09,775 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [563862584] [2021-12-06 17:47:09,775 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-06 17:47:09,775 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-06 17:47:09,789 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:09,811 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-06 17:47:09,811 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-06 17:47:09,811 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [563862584] [2021-12-06 17:47:09,811 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [563862584] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-06 17:47:09,811 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-06 17:47:09,811 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-12-06 17:47:09,811 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2056280956] [2021-12-06 17:47:09,812 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-06 17:47:09,812 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-12-06 17:47:09,812 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-06 17:47:09,812 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-12-06 17:47:09,812 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-06 17:47:09,813 INFO L87 Difference]: Start difference. First operand 348 states and 466 transitions. Second operand has 3 states, 3 states have (on average 9.666666666666666) internal successors, (29), 2 states have internal predecessors, (29), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-06 17:47:09,849 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-06 17:47:09,849 INFO L93 Difference]: Finished difference Result 794 states and 1093 transitions. [2021-12-06 17:47:09,849 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-12-06 17:47:09,849 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 9.666666666666666) internal successors, (29), 2 states have internal predecessors, (29), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 30 [2021-12-06 17:47:09,850 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-06 17:47:09,853 INFO L225 Difference]: With dead ends: 794 [2021-12-06 17:47:09,853 INFO L226 Difference]: Without dead ends: 453 [2021-12-06 17:47:09,854 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-06 17:47:09,855 INFO L933 BasicCegarLoop]: 109 mSDtfsCounter, 58 mSDsluCounter, 68 mSDsCounter, 0 mSdLazyCounter, 13 mSolverCounterSat, 10 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 58 SdHoareTripleChecker+Valid, 177 SdHoareTripleChecker+Invalid, 23 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 10 IncrementalHoareTripleChecker+Valid, 13 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-06 17:47:09,856 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [58 Valid, 177 Invalid, 23 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [10 Valid, 13 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-06 17:47:09,857 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 453 states. [2021-12-06 17:47:09,882 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 453 to 442. [2021-12-06 17:47:09,883 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 442 states, 336 states have (on average 1.2916666666666667) internal successors, (434), 361 states have internal predecessors, (434), 55 states have call successors, (55), 51 states have call predecessors, (55), 50 states have return successors, (83), 49 states have call predecessors, (83), 55 states have call successors, (83) [2021-12-06 17:47:09,886 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 442 states to 442 states and 572 transitions. [2021-12-06 17:47:09,886 INFO L78 Accepts]: Start accepts. Automaton has 442 states and 572 transitions. Word has length 30 [2021-12-06 17:47:09,886 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-06 17:47:09,886 INFO L470 AbstractCegarLoop]: Abstraction has 442 states and 572 transitions. [2021-12-06 17:47:09,887 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 9.666666666666666) internal successors, (29), 2 states have internal predecessors, (29), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-06 17:47:09,887 INFO L276 IsEmpty]: Start isEmpty. Operand 442 states and 572 transitions. [2021-12-06 17:47:09,888 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 33 [2021-12-06 17:47:09,888 INFO L506 BasicCegarLoop]: Found error trace [2021-12-06 17:47:09,888 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-06 17:47:09,888 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2021-12-06 17:47:09,888 INFO L402 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-06 17:47:09,889 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-06 17:47:09,889 INFO L85 PathProgramCache]: Analyzing trace with hash -1410993586, now seen corresponding path program 1 times [2021-12-06 17:47:09,889 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-06 17:47:09,889 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [259323906] [2021-12-06 17:47:09,889 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-06 17:47:09,889 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-06 17:47:09,902 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:09,934 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-06 17:47:09,936 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:09,940 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-06 17:47:09,940 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-06 17:47:09,940 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [259323906] [2021-12-06 17:47:09,940 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [259323906] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-06 17:47:09,940 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-06 17:47:09,940 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2021-12-06 17:47:09,941 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [972766675] [2021-12-06 17:47:09,941 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-06 17:47:09,941 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-12-06 17:47:09,941 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-06 17:47:09,942 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-12-06 17:47:09,942 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-12-06 17:47:09,942 INFO L87 Difference]: Start difference. First operand 442 states and 572 transitions. Second operand has 6 states, 6 states have (on average 4.833333333333333) internal successors, (29), 5 states have internal predecessors, (29), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-06 17:47:10,117 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-06 17:47:10,117 INFO L93 Difference]: Finished difference Result 537 states and 697 transitions. [2021-12-06 17:47:10,118 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2021-12-06 17:47:10,118 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 4.833333333333333) internal successors, (29), 5 states have internal predecessors, (29), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 32 [2021-12-06 17:47:10,118 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-06 17:47:10,121 INFO L225 Difference]: With dead ends: 537 [2021-12-06 17:47:10,121 INFO L226 Difference]: Without dead ends: 535 [2021-12-06 17:47:10,121 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 14 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 12 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=45, Invalid=87, Unknown=0, NotChecked=0, Total=132 [2021-12-06 17:47:10,122 INFO L933 BasicCegarLoop]: 108 mSDtfsCounter, 140 mSDsluCounter, 262 mSDsCounter, 0 mSdLazyCounter, 190 mSolverCounterSat, 42 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 147 SdHoareTripleChecker+Valid, 370 SdHoareTripleChecker+Invalid, 232 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 42 IncrementalHoareTripleChecker+Valid, 190 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-06 17:47:10,122 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [147 Valid, 370 Invalid, 232 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [42 Valid, 190 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-06 17:47:10,123 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 535 states. [2021-12-06 17:47:10,147 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 535 to 506. [2021-12-06 17:47:10,148 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 506 states, 385 states have (on average 1.2727272727272727) internal successors, (490), 421 states have internal predecessors, (490), 61 states have call successors, (61), 51 states have call predecessors, (61), 59 states have return successors, (102), 53 states have call predecessors, (102), 61 states have call successors, (102) [2021-12-06 17:47:10,151 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 506 states to 506 states and 653 transitions. [2021-12-06 17:47:10,152 INFO L78 Accepts]: Start accepts. Automaton has 506 states and 653 transitions. Word has length 32 [2021-12-06 17:47:10,152 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-06 17:47:10,152 INFO L470 AbstractCegarLoop]: Abstraction has 506 states and 653 transitions. [2021-12-06 17:47:10,152 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 4.833333333333333) internal successors, (29), 5 states have internal predecessors, (29), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-06 17:47:10,152 INFO L276 IsEmpty]: Start isEmpty. Operand 506 states and 653 transitions. [2021-12-06 17:47:10,154 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 48 [2021-12-06 17:47:10,154 INFO L506 BasicCegarLoop]: Found error trace [2021-12-06 17:47:10,154 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-06 17:47:10,154 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2021-12-06 17:47:10,154 INFO L402 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-06 17:47:10,154 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-06 17:47:10,154 INFO L85 PathProgramCache]: Analyzing trace with hash -1995340570, now seen corresponding path program 1 times [2021-12-06 17:47:10,155 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-06 17:47:10,155 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1331812314] [2021-12-06 17:47:10,155 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-06 17:47:10,155 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-06 17:47:10,167 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:10,181 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-06 17:47:10,182 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:10,187 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2021-12-06 17:47:10,190 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:10,197 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-06 17:47:10,200 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:10,218 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-06 17:47:10,218 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-06 17:47:10,219 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1331812314] [2021-12-06 17:47:10,219 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1331812314] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-06 17:47:10,219 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-06 17:47:10,219 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2021-12-06 17:47:10,219 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1785225826] [2021-12-06 17:47:10,219 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-06 17:47:10,219 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-12-06 17:47:10,219 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-06 17:47:10,220 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-12-06 17:47:10,220 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2021-12-06 17:47:10,220 INFO L87 Difference]: Start difference. First operand 506 states and 653 transitions. Second operand has 7 states, 7 states have (on average 5.714285714285714) internal successors, (40), 5 states have internal predecessors, (40), 1 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 1 states have call successors, (3) [2021-12-06 17:47:10,405 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-06 17:47:10,406 INFO L93 Difference]: Finished difference Result 1119 states and 1470 transitions. [2021-12-06 17:47:10,406 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2021-12-06 17:47:10,406 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 5.714285714285714) internal successors, (40), 5 states have internal predecessors, (40), 1 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 1 states have call successors, (3) Word has length 47 [2021-12-06 17:47:10,407 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-06 17:47:10,411 INFO L225 Difference]: With dead ends: 1119 [2021-12-06 17:47:10,411 INFO L226 Difference]: Without dead ends: 620 [2021-12-06 17:47:10,414 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 19 GetRequests, 9 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=46, Invalid=86, Unknown=0, NotChecked=0, Total=132 [2021-12-06 17:47:10,415 INFO L933 BasicCegarLoop]: 96 mSDtfsCounter, 145 mSDsluCounter, 280 mSDsCounter, 0 mSdLazyCounter, 247 mSolverCounterSat, 52 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 145 SdHoareTripleChecker+Valid, 376 SdHoareTripleChecker+Invalid, 299 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 52 IncrementalHoareTripleChecker+Valid, 247 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-06 17:47:10,415 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [145 Valid, 376 Invalid, 299 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [52 Valid, 247 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-06 17:47:10,416 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 620 states. [2021-12-06 17:47:10,453 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 620 to 566. [2021-12-06 17:47:10,454 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 566 states, 435 states have (on average 1.2551724137931035) internal successors, (546), 471 states have internal predecessors, (546), 61 states have call successors, (61), 51 states have call predecessors, (61), 69 states have return successors, (116), 61 states have call predecessors, (116), 61 states have call successors, (116) [2021-12-06 17:47:10,458 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 566 states to 566 states and 723 transitions. [2021-12-06 17:47:10,458 INFO L78 Accepts]: Start accepts. Automaton has 566 states and 723 transitions. Word has length 47 [2021-12-06 17:47:10,458 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-06 17:47:10,459 INFO L470 AbstractCegarLoop]: Abstraction has 566 states and 723 transitions. [2021-12-06 17:47:10,459 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 5.714285714285714) internal successors, (40), 5 states have internal predecessors, (40), 1 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 1 states have call successors, (3) [2021-12-06 17:47:10,459 INFO L276 IsEmpty]: Start isEmpty. Operand 566 states and 723 transitions. [2021-12-06 17:47:10,460 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 48 [2021-12-06 17:47:10,460 INFO L506 BasicCegarLoop]: Found error trace [2021-12-06 17:47:10,461 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-06 17:47:10,461 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2021-12-06 17:47:10,461 INFO L402 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-06 17:47:10,461 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-06 17:47:10,461 INFO L85 PathProgramCache]: Analyzing trace with hash 1278558372, now seen corresponding path program 1 times [2021-12-06 17:47:10,462 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-06 17:47:10,462 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1147444459] [2021-12-06 17:47:10,462 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-06 17:47:10,462 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-06 17:47:10,476 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:10,506 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-06 17:47:10,508 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:10,513 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2021-12-06 17:47:10,516 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:10,522 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-06 17:47:10,524 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:10,545 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-06 17:47:10,545 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-06 17:47:10,546 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1147444459] [2021-12-06 17:47:10,546 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1147444459] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-06 17:47:10,546 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-06 17:47:10,546 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2021-12-06 17:47:10,546 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1998768329] [2021-12-06 17:47:10,546 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-06 17:47:10,547 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2021-12-06 17:47:10,547 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-06 17:47:10,547 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2021-12-06 17:47:10,547 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=43, Unknown=0, NotChecked=0, Total=56 [2021-12-06 17:47:10,548 INFO L87 Difference]: Start difference. First operand 566 states and 723 transitions. Second operand has 8 states, 8 states have (on average 5.0) internal successors, (40), 6 states have internal predecessors, (40), 1 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 1 states have call successors, (3) [2021-12-06 17:47:10,743 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-06 17:47:10,744 INFO L93 Difference]: Finished difference Result 1118 states and 1471 transitions. [2021-12-06 17:47:10,744 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2021-12-06 17:47:10,744 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 5.0) internal successors, (40), 6 states have internal predecessors, (40), 1 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 1 states have call successors, (3) Word has length 47 [2021-12-06 17:47:10,744 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-06 17:47:10,747 INFO L225 Difference]: With dead ends: 1118 [2021-12-06 17:47:10,747 INFO L226 Difference]: Without dead ends: 559 [2021-12-06 17:47:10,749 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 22 GetRequests, 11 SyntacticMatches, 0 SemanticMatches, 11 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 6 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=42, Invalid=114, Unknown=0, NotChecked=0, Total=156 [2021-12-06 17:47:10,750 INFO L933 BasicCegarLoop]: 92 mSDtfsCounter, 201 mSDsluCounter, 286 mSDsCounter, 0 mSdLazyCounter, 308 mSolverCounterSat, 71 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 201 SdHoareTripleChecker+Valid, 378 SdHoareTripleChecker+Invalid, 379 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 71 IncrementalHoareTripleChecker+Valid, 308 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-06 17:47:10,750 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [201 Valid, 378 Invalid, 379 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [71 Valid, 308 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-06 17:47:10,751 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 559 states. [2021-12-06 17:47:10,771 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 559 to 457. [2021-12-06 17:47:10,772 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 457 states, 350 states have (on average 1.2514285714285713) internal successors, (438), 379 states have internal predecessors, (438), 52 states have call successors, (52), 44 states have call predecessors, (52), 54 states have return successors, (88), 48 states have call predecessors, (88), 52 states have call successors, (88) [2021-12-06 17:47:10,774 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 457 states to 457 states and 578 transitions. [2021-12-06 17:47:10,774 INFO L78 Accepts]: Start accepts. Automaton has 457 states and 578 transitions. Word has length 47 [2021-12-06 17:47:10,774 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-06 17:47:10,774 INFO L470 AbstractCegarLoop]: Abstraction has 457 states and 578 transitions. [2021-12-06 17:47:10,775 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 5.0) internal successors, (40), 6 states have internal predecessors, (40), 1 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 1 states have call successors, (3) [2021-12-06 17:47:10,775 INFO L276 IsEmpty]: Start isEmpty. Operand 457 states and 578 transitions. [2021-12-06 17:47:10,775 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 48 [2021-12-06 17:47:10,775 INFO L506 BasicCegarLoop]: Found error trace [2021-12-06 17:47:10,776 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-06 17:47:10,776 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2021-12-06 17:47:10,776 INFO L402 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-06 17:47:10,776 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-06 17:47:10,776 INFO L85 PathProgramCache]: Analyzing trace with hash -715586334, now seen corresponding path program 1 times [2021-12-06 17:47:10,776 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-06 17:47:10,776 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [902816187] [2021-12-06 17:47:10,776 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-06 17:47:10,777 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-06 17:47:10,787 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:10,811 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-06 17:47:10,813 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:10,818 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2021-12-06 17:47:10,821 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:10,828 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-06 17:47:10,830 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:10,837 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-06 17:47:10,838 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-06 17:47:10,838 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [902816187] [2021-12-06 17:47:10,838 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [902816187] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-06 17:47:10,838 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-06 17:47:10,838 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2021-12-06 17:47:10,838 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1479943317] [2021-12-06 17:47:10,838 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-06 17:47:10,839 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-12-06 17:47:10,839 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-06 17:47:10,839 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-12-06 17:47:10,839 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2021-12-06 17:47:10,839 INFO L87 Difference]: Start difference. First operand 457 states and 578 transitions. Second operand has 7 states, 7 states have (on average 5.714285714285714) internal successors, (40), 5 states have internal predecessors, (40), 1 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 1 states have call successors, (3) [2021-12-06 17:47:11,113 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-06 17:47:11,114 INFO L93 Difference]: Finished difference Result 1035 states and 1392 transitions. [2021-12-06 17:47:11,114 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 17 states. [2021-12-06 17:47:11,114 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 5.714285714285714) internal successors, (40), 5 states have internal predecessors, (40), 1 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 1 states have call successors, (3) Word has length 47 [2021-12-06 17:47:11,114 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-06 17:47:11,119 INFO L225 Difference]: With dead ends: 1035 [2021-12-06 17:47:11,120 INFO L226 Difference]: Without dead ends: 702 [2021-12-06 17:47:11,122 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 27 GetRequests, 8 SyntacticMatches, 2 SemanticMatches, 17 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 54 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=106, Invalid=236, Unknown=0, NotChecked=0, Total=342 [2021-12-06 17:47:11,122 INFO L933 BasicCegarLoop]: 142 mSDtfsCounter, 204 mSDsluCounter, 358 mSDsCounter, 0 mSdLazyCounter, 359 mSolverCounterSat, 79 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 206 SdHoareTripleChecker+Valid, 500 SdHoareTripleChecker+Invalid, 438 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 79 IncrementalHoareTripleChecker+Valid, 359 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2021-12-06 17:47:11,123 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [206 Valid, 500 Invalid, 438 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [79 Valid, 359 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2021-12-06 17:47:11,124 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 702 states. [2021-12-06 17:47:11,166 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 702 to 677. [2021-12-06 17:47:11,168 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 677 states, 521 states have (on average 1.2284069097888675) internal successors, (640), 558 states have internal predecessors, (640), 76 states have call successors, (76), 66 states have call predecessors, (76), 79 states have return successors, (157), 78 states have call predecessors, (157), 76 states have call successors, (157) [2021-12-06 17:47:11,173 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 677 states to 677 states and 873 transitions. [2021-12-06 17:47:11,173 INFO L78 Accepts]: Start accepts. Automaton has 677 states and 873 transitions. Word has length 47 [2021-12-06 17:47:11,173 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-06 17:47:11,173 INFO L470 AbstractCegarLoop]: Abstraction has 677 states and 873 transitions. [2021-12-06 17:47:11,174 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 5.714285714285714) internal successors, (40), 5 states have internal predecessors, (40), 1 states have call successors, (4), 3 states have call predecessors, (4), 2 states have return successors, (3), 2 states have call predecessors, (3), 1 states have call successors, (3) [2021-12-06 17:47:11,174 INFO L276 IsEmpty]: Start isEmpty. Operand 677 states and 873 transitions. [2021-12-06 17:47:11,177 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 90 [2021-12-06 17:47:11,177 INFO L506 BasicCegarLoop]: Found error trace [2021-12-06 17:47:11,177 INFO L514 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-06 17:47:11,178 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2021-12-06 17:47:11,178 INFO L402 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-06 17:47:11,178 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-06 17:47:11,178 INFO L85 PathProgramCache]: Analyzing trace with hash -1870420981, now seen corresponding path program 1 times [2021-12-06 17:47:11,178 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-06 17:47:11,179 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [795410572] [2021-12-06 17:47:11,179 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-06 17:47:11,179 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-06 17:47:11,199 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:11,242 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-06 17:47:11,244 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:11,251 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2021-12-06 17:47:11,254 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:11,267 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2021-12-06 17:47:11,269 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:11,275 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-06 17:47:11,277 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:11,284 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 64 [2021-12-06 17:47:11,287 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:11,291 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2021-12-06 17:47:11,292 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:11,294 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-06 17:47:11,295 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:11,297 INFO L134 CoverageAnalysis]: Checked inductivity of 24 backedges. 11 proven. 9 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2021-12-06 17:47:11,297 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-06 17:47:11,297 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [795410572] [2021-12-06 17:47:11,297 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [795410572] provided 0 perfect and 1 imperfect interpolant sequences [2021-12-06 17:47:11,297 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [567601456] [2021-12-06 17:47:11,297 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-06 17:47:11,298 INFO L168 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-12-06 17:47:11,298 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b62fcd93-4a7e-4d06-b73d-c2b7621a60c7/bin/uautomizer-DrprNOufMa/z3 [2021-12-06 17:47:11,299 INFO L229 MonitoredProcess]: Starting monitored process 2 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b62fcd93-4a7e-4d06-b73d-c2b7621a60c7/bin/uautomizer-DrprNOufMa/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2021-12-06 17:47:11,300 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b62fcd93-4a7e-4d06-b73d-c2b7621a60c7/bin/uautomizer-DrprNOufMa/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2021-12-06 17:47:11,363 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:11,367 INFO L263 TraceCheckSpWp]: Trace formula consists of 454 conjuncts, 8 conjunts are in the unsatisfiable core [2021-12-06 17:47:11,374 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2021-12-06 17:47:11,544 INFO L134 CoverageAnalysis]: Checked inductivity of 24 backedges. 16 proven. 8 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-06 17:47:11,545 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2021-12-06 17:47:11,685 INFO L134 CoverageAnalysis]: Checked inductivity of 24 backedges. 12 proven. 8 refuted. 0 times theorem prover too weak. 4 trivial. 0 not checked. [2021-12-06 17:47:11,685 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleZ3 [567601456] provided 0 perfect and 2 imperfect interpolant sequences [2021-12-06 17:47:11,685 INFO L186 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2021-12-06 17:47:11,685 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [9, 6, 6] total 9 [2021-12-06 17:47:11,685 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [978733287] [2021-12-06 17:47:11,685 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2021-12-06 17:47:11,686 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 9 states [2021-12-06 17:47:11,686 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-06 17:47:11,686 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 9 interpolants. [2021-12-06 17:47:11,686 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=18, Invalid=54, Unknown=0, NotChecked=0, Total=72 [2021-12-06 17:47:11,686 INFO L87 Difference]: Start difference. First operand 677 states and 873 transitions. Second operand has 9 states, 9 states have (on average 9.777777777777779) internal successors, (88), 6 states have internal predecessors, (88), 3 states have call successors, (17), 6 states have call predecessors, (17), 3 states have return successors, (10), 3 states have call predecessors, (10), 2 states have call successors, (10) [2021-12-06 17:47:12,178 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-06 17:47:12,179 INFO L93 Difference]: Finished difference Result 1624 states and 2213 transitions. [2021-12-06 17:47:12,179 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 27 states. [2021-12-06 17:47:12,179 INFO L78 Accepts]: Start accepts. Automaton has has 9 states, 9 states have (on average 9.777777777777779) internal successors, (88), 6 states have internal predecessors, (88), 3 states have call successors, (17), 6 states have call predecessors, (17), 3 states have return successors, (10), 3 states have call predecessors, (10), 2 states have call successors, (10) Word has length 89 [2021-12-06 17:47:12,179 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-06 17:47:12,185 INFO L225 Difference]: With dead ends: 1624 [2021-12-06 17:47:12,185 INFO L226 Difference]: Without dead ends: 1071 [2021-12-06 17:47:12,187 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 226 GetRequests, 195 SyntacticMatches, 4 SemanticMatches, 27 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 200 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=227, Invalid=585, Unknown=0, NotChecked=0, Total=812 [2021-12-06 17:47:12,188 INFO L933 BasicCegarLoop]: 144 mSDtfsCounter, 275 mSDsluCounter, 492 mSDsCounter, 0 mSdLazyCounter, 610 mSolverCounterSat, 118 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 281 SdHoareTripleChecker+Valid, 636 SdHoareTripleChecker+Invalid, 728 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 118 IncrementalHoareTripleChecker+Valid, 610 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2021-12-06 17:47:12,188 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [281 Valid, 636 Invalid, 728 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [118 Valid, 610 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2021-12-06 17:47:12,189 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1071 states. [2021-12-06 17:47:12,232 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1071 to 936. [2021-12-06 17:47:12,233 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 936 states, 712 states have (on average 1.2359550561797752) internal successors, (880), 767 states have internal predecessors, (880), 111 states have call successors, (111), 95 states have call predecessors, (111), 112 states have return successors, (242), 105 states have call predecessors, (242), 111 states have call successors, (242) [2021-12-06 17:47:12,238 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 936 states to 936 states and 1233 transitions. [2021-12-06 17:47:12,238 INFO L78 Accepts]: Start accepts. Automaton has 936 states and 1233 transitions. Word has length 89 [2021-12-06 17:47:12,238 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-06 17:47:12,238 INFO L470 AbstractCegarLoop]: Abstraction has 936 states and 1233 transitions. [2021-12-06 17:47:12,239 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 9 states, 9 states have (on average 9.777777777777779) internal successors, (88), 6 states have internal predecessors, (88), 3 states have call successors, (17), 6 states have call predecessors, (17), 3 states have return successors, (10), 3 states have call predecessors, (10), 2 states have call successors, (10) [2021-12-06 17:47:12,239 INFO L276 IsEmpty]: Start isEmpty. Operand 936 states and 1233 transitions. [2021-12-06 17:47:12,242 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 132 [2021-12-06 17:47:12,242 INFO L506 BasicCegarLoop]: Found error trace [2021-12-06 17:47:12,242 INFO L514 BasicCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-06 17:47:12,264 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b62fcd93-4a7e-4d06-b73d-c2b7621a60c7/bin/uautomizer-DrprNOufMa/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2021-12-06 17:47:12,442 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b62fcd93-4a7e-4d06-b73d-c2b7621a60c7/bin/uautomizer-DrprNOufMa/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable9 [2021-12-06 17:47:12,443 INFO L402 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-06 17:47:12,443 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-06 17:47:12,443 INFO L85 PathProgramCache]: Analyzing trace with hash 309477364, now seen corresponding path program 2 times [2021-12-06 17:47:12,443 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-06 17:47:12,443 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2122606152] [2021-12-06 17:47:12,443 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-06 17:47:12,444 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-06 17:47:12,461 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:12,488 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-06 17:47:12,489 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:12,494 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2021-12-06 17:47:12,496 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:12,504 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2021-12-06 17:47:12,506 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:12,511 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-06 17:47:12,512 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:12,517 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 55 [2021-12-06 17:47:12,521 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:12,539 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2021-12-06 17:47:12,541 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:12,591 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2021-12-06 17:47:12,593 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:12,594 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-06 17:47:12,595 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:12,596 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 106 [2021-12-06 17:47:12,598 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:12,600 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2021-12-06 17:47:12,601 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:12,603 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-06 17:47:12,603 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:12,605 INFO L134 CoverageAnalysis]: Checked inductivity of 90 backedges. 49 proven. 23 refuted. 0 times theorem prover too weak. 18 trivial. 0 not checked. [2021-12-06 17:47:12,605 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-06 17:47:12,605 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2122606152] [2021-12-06 17:47:12,605 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2122606152] provided 0 perfect and 1 imperfect interpolant sequences [2021-12-06 17:47:12,605 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2050302976] [2021-12-06 17:47:12,605 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2021-12-06 17:47:12,605 INFO L168 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-12-06 17:47:12,605 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b62fcd93-4a7e-4d06-b73d-c2b7621a60c7/bin/uautomizer-DrprNOufMa/z3 [2021-12-06 17:47:12,606 INFO L229 MonitoredProcess]: Starting monitored process 3 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b62fcd93-4a7e-4d06-b73d-c2b7621a60c7/bin/uautomizer-DrprNOufMa/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2021-12-06 17:47:12,607 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b62fcd93-4a7e-4d06-b73d-c2b7621a60c7/bin/uautomizer-DrprNOufMa/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2021-12-06 17:47:12,685 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2021-12-06 17:47:12,685 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2021-12-06 17:47:12,688 INFO L263 TraceCheckSpWp]: Trace formula consists of 562 conjuncts, 10 conjunts are in the unsatisfiable core [2021-12-06 17:47:12,691 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2021-12-06 17:47:12,837 INFO L134 CoverageAnalysis]: Checked inductivity of 90 backedges. 76 proven. 0 refuted. 0 times theorem prover too weak. 14 trivial. 0 not checked. [2021-12-06 17:47:12,837 INFO L324 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2021-12-06 17:47:12,837 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2050302976] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-06 17:47:12,837 INFO L186 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2021-12-06 17:47:12,837 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [11] total 12 [2021-12-06 17:47:12,838 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [154079875] [2021-12-06 17:47:12,838 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-06 17:47:12,838 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-12-06 17:47:12,838 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-06 17:47:12,839 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-12-06 17:47:12,839 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=26, Invalid=106, Unknown=0, NotChecked=0, Total=132 [2021-12-06 17:47:12,839 INFO L87 Difference]: Start difference. First operand 936 states and 1233 transitions. Second operand has 6 states, 6 states have (on average 16.5) internal successors, (99), 6 states have internal predecessors, (99), 3 states have call successors, (11), 4 states have call predecessors, (11), 3 states have return successors, (11), 3 states have call predecessors, (11), 3 states have call successors, (11) [2021-12-06 17:47:13,092 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-06 17:47:13,092 INFO L93 Difference]: Finished difference Result 2509 states and 3457 transitions. [2021-12-06 17:47:13,092 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2021-12-06 17:47:13,092 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 16.5) internal successors, (99), 6 states have internal predecessors, (99), 3 states have call successors, (11), 4 states have call predecessors, (11), 3 states have return successors, (11), 3 states have call predecessors, (11), 3 states have call successors, (11) Word has length 131 [2021-12-06 17:47:13,093 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-06 17:47:13,101 INFO L225 Difference]: With dead ends: 2509 [2021-12-06 17:47:13,101 INFO L226 Difference]: Without dead ends: 1695 [2021-12-06 17:47:13,105 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 171 GetRequests, 153 SyntacticMatches, 3 SemanticMatches, 15 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 31 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=57, Invalid=215, Unknown=0, NotChecked=0, Total=272 [2021-12-06 17:47:13,106 INFO L933 BasicCegarLoop]: 188 mSDtfsCounter, 234 mSDsluCounter, 434 mSDsCounter, 0 mSdLazyCounter, 157 mSolverCounterSat, 47 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 234 SdHoareTripleChecker+Valid, 622 SdHoareTripleChecker+Invalid, 204 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 47 IncrementalHoareTripleChecker+Valid, 157 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-06 17:47:13,106 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [234 Valid, 622 Invalid, 204 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [47 Valid, 157 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-06 17:47:13,108 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 1695 states. [2021-12-06 17:47:13,176 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 1695 to 1659. [2021-12-06 17:47:13,179 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 1659 states, 1262 states have (on average 1.2345483359746434) internal successors, (1558), 1344 states have internal predecessors, (1558), 192 states have call successors, (192), 170 states have call predecessors, (192), 204 states have return successors, (394), 194 states have call predecessors, (394), 192 states have call successors, (394) [2021-12-06 17:47:13,186 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 1659 states to 1659 states and 2144 transitions. [2021-12-06 17:47:13,186 INFO L78 Accepts]: Start accepts. Automaton has 1659 states and 2144 transitions. Word has length 131 [2021-12-06 17:47:13,186 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-06 17:47:13,186 INFO L470 AbstractCegarLoop]: Abstraction has 1659 states and 2144 transitions. [2021-12-06 17:47:13,187 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 16.5) internal successors, (99), 6 states have internal predecessors, (99), 3 states have call successors, (11), 4 states have call predecessors, (11), 3 states have return successors, (11), 3 states have call predecessors, (11), 3 states have call successors, (11) [2021-12-06 17:47:13,187 INFO L276 IsEmpty]: Start isEmpty. Operand 1659 states and 2144 transitions. [2021-12-06 17:47:13,190 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 132 [2021-12-06 17:47:13,190 INFO L506 BasicCegarLoop]: Found error trace [2021-12-06 17:47:13,191 INFO L514 BasicCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-06 17:47:13,224 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b62fcd93-4a7e-4d06-b73d-c2b7621a60c7/bin/uautomizer-DrprNOufMa/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Ended with exit code 0 [2021-12-06 17:47:13,391 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 3 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b62fcd93-4a7e-4d06-b73d-c2b7621a60c7/bin/uautomizer-DrprNOufMa/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable10 [2021-12-06 17:47:13,391 INFO L402 AbstractCegarLoop]: === Iteration 12 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-06 17:47:13,392 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-06 17:47:13,392 INFO L85 PathProgramCache]: Analyzing trace with hash -107919242, now seen corresponding path program 1 times [2021-12-06 17:47:13,392 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-06 17:47:13,392 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1700461649] [2021-12-06 17:47:13,392 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-06 17:47:13,392 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-06 17:47:13,404 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:13,418 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-06 17:47:13,419 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:13,423 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2021-12-06 17:47:13,424 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:13,429 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2021-12-06 17:47:13,430 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:13,432 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-06 17:47:13,433 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:13,435 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 55 [2021-12-06 17:47:13,438 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:13,442 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 8 [2021-12-06 17:47:13,444 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:13,459 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2021-12-06 17:47:13,460 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:13,462 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-06 17:47:13,462 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:13,463 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 106 [2021-12-06 17:47:13,465 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:13,467 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 7 [2021-12-06 17:47:13,468 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:13,470 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-06 17:47:13,470 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:13,471 INFO L134 CoverageAnalysis]: Checked inductivity of 90 backedges. 43 proven. 6 refuted. 0 times theorem prover too weak. 41 trivial. 0 not checked. [2021-12-06 17:47:13,472 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-06 17:47:13,472 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1700461649] [2021-12-06 17:47:13,472 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1700461649] provided 0 perfect and 1 imperfect interpolant sequences [2021-12-06 17:47:13,472 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1514637424] [2021-12-06 17:47:13,472 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-06 17:47:13,472 INFO L168 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-12-06 17:47:13,472 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b62fcd93-4a7e-4d06-b73d-c2b7621a60c7/bin/uautomizer-DrprNOufMa/z3 [2021-12-06 17:47:13,473 INFO L229 MonitoredProcess]: Starting monitored process 4 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b62fcd93-4a7e-4d06-b73d-c2b7621a60c7/bin/uautomizer-DrprNOufMa/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2021-12-06 17:47:13,473 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b62fcd93-4a7e-4d06-b73d-c2b7621a60c7/bin/uautomizer-DrprNOufMa/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Waiting until timeout for monitored process [2021-12-06 17:47:13,547 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-06 17:47:13,549 INFO L263 TraceCheckSpWp]: Trace formula consists of 563 conjuncts, 5 conjunts are in the unsatisfiable core [2021-12-06 17:47:13,553 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2021-12-06 17:47:13,656 INFO L134 CoverageAnalysis]: Checked inductivity of 90 backedges. 62 proven. 0 refuted. 0 times theorem prover too weak. 28 trivial. 0 not checked. [2021-12-06 17:47:13,656 INFO L324 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2021-12-06 17:47:13,656 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1514637424] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-06 17:47:13,656 INFO L186 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2021-12-06 17:47:13,656 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [8] total 8 [2021-12-06 17:47:13,657 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [490489830] [2021-12-06 17:47:13,657 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-06 17:47:13,657 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-12-06 17:47:13,657 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-06 17:47:13,657 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-12-06 17:47:13,657 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=15, Invalid=41, Unknown=0, NotChecked=0, Total=56 [2021-12-06 17:47:13,658 INFO L87 Difference]: Start difference. First operand 1659 states and 2144 transitions. Second operand has 5 states, 5 states have (on average 18.2) internal successors, (91), 5 states have internal predecessors, (91), 2 states have call successors, (9), 2 states have call predecessors, (9), 2 states have return successors, (9), 2 states have call predecessors, (9), 2 states have call successors, (9) [2021-12-06 17:47:13,699 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-06 17:47:13,699 INFO L93 Difference]: Finished difference Result 2287 states and 2930 transitions. [2021-12-06 17:47:13,699 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-12-06 17:47:13,700 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 18.2) internal successors, (91), 5 states have internal predecessors, (91), 2 states have call successors, (9), 2 states have call predecessors, (9), 2 states have return successors, (9), 2 states have call predecessors, (9), 2 states have call successors, (9) Word has length 131 [2021-12-06 17:47:13,700 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-06 17:47:13,700 INFO L225 Difference]: With dead ends: 2287 [2021-12-06 17:47:13,701 INFO L226 Difference]: Without dead ends: 0 [2021-12-06 17:47:13,705 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 162 GetRequests, 154 SyntacticMatches, 0 SemanticMatches, 8 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 9 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=25, Invalid=65, Unknown=0, NotChecked=0, Total=90 [2021-12-06 17:47:13,705 INFO L933 BasicCegarLoop]: 104 mSDtfsCounter, 9 mSDsluCounter, 295 mSDsCounter, 0 mSdLazyCounter, 14 mSolverCounterSat, 3 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 9 SdHoareTripleChecker+Valid, 399 SdHoareTripleChecker+Invalid, 17 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 3 IncrementalHoareTripleChecker+Valid, 14 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-06 17:47:13,706 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [9 Valid, 399 Invalid, 17 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [3 Valid, 14 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-06 17:47:13,706 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2021-12-06 17:47:13,706 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2021-12-06 17:47:13,706 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-06 17:47:13,706 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2021-12-06 17:47:13,707 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 131 [2021-12-06 17:47:13,707 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-06 17:47:13,707 INFO L470 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2021-12-06 17:47:13,707 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 18.2) internal successors, (91), 5 states have internal predecessors, (91), 2 states have call successors, (9), 2 states have call predecessors, (9), 2 states have return successors, (9), 2 states have call predecessors, (9), 2 states have call successors, (9) [2021-12-06 17:47:13,707 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2021-12-06 17:47:13,707 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2021-12-06 17:47:13,709 INFO L764 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2021-12-06 17:47:13,743 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b62fcd93-4a7e-4d06-b73d-c2b7621a60c7/bin/uautomizer-DrprNOufMa/z3 -smt2 -in SMTLIB2_COMPLIANT=true (4)] Ended with exit code 0 [2021-12-06 17:47:13,909 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable11,4 /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b62fcd93-4a7e-4d06-b73d-c2b7621a60c7/bin/uautomizer-DrprNOufMa/z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-12-06 17:47:13,911 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2021-12-06 17:47:15,905 INFO L854 garLoopResultBuilder]: At program point deactivatePumpENTRY(lines 252 259) the Hoare annotation is: (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) (not (<= 1 ~waterLevel~0)) (= 0 ~systemActive~0)) [2021-12-06 17:47:15,905 INFO L858 garLoopResultBuilder]: For program point deactivatePumpEXIT(lines 252 259) no Hoare annotation was computed. [2021-12-06 17:47:15,905 INFO L858 garLoopResultBuilder]: For program point deactivatePumpFINAL(lines 252 259) no Hoare annotation was computed. [2021-12-06 17:47:15,906 INFO L858 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 159 165) no Hoare annotation was computed. [2021-12-06 17:47:15,906 INFO L861 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 159 165) the Hoare annotation is: true [2021-12-06 17:47:15,906 INFO L861 garLoopResultBuilder]: At program point changeMethaneLevelENTRY(lines 933 944) the Hoare annotation is: true [2021-12-06 17:47:15,906 INFO L858 garLoopResultBuilder]: For program point L937-1(lines 933 944) no Hoare annotation was computed. [2021-12-06 17:47:15,906 INFO L858 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 933 944) no Hoare annotation was computed. [2021-12-06 17:47:15,906 INFO L858 garLoopResultBuilder]: For program point cleanupEXIT(lines 446 475) no Hoare annotation was computed. [2021-12-06 17:47:15,906 INFO L861 garLoopResultBuilder]: At program point cleanupENTRY(lines 446 475) the Hoare annotation is: true [2021-12-06 17:47:15,906 INFO L861 garLoopResultBuilder]: At program point L471(lines 446 475) the Hoare annotation is: true [2021-12-06 17:47:15,906 INFO L858 garLoopResultBuilder]: For program point L467(line 467) no Hoare annotation was computed. [2021-12-06 17:47:15,906 INFO L858 garLoopResultBuilder]: For program point L460(lines 460 464) no Hoare annotation was computed. [2021-12-06 17:47:15,906 INFO L861 garLoopResultBuilder]: At program point L460-1(lines 460 464) the Hoare annotation is: true [2021-12-06 17:47:15,906 INFO L858 garLoopResultBuilder]: For program point L457(line 457) no Hoare annotation was computed. [2021-12-06 17:47:15,906 INFO L861 garLoopResultBuilder]: At program point L456-2(lines 456 470) the Hoare annotation is: true [2021-12-06 17:47:15,906 INFO L861 garLoopResultBuilder]: At program point L452(line 452) the Hoare annotation is: true [2021-12-06 17:47:15,906 INFO L858 garLoopResultBuilder]: For program point L452-1(line 452) no Hoare annotation was computed. [2021-12-06 17:47:15,906 INFO L858 garLoopResultBuilder]: For program point L440(line 440) no Hoare annotation was computed. [2021-12-06 17:47:15,907 INFO L854 garLoopResultBuilder]: At program point L238(line 238) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0)) (.cse1 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 |old(~waterLevel~0)|)) (and .cse0 (= |old(~waterLevel~0)| ~waterLevel~0) (not .cse1))) (or (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse0) .cse1 (not (<= 2 |old(~waterLevel~0)|))))) [2021-12-06 17:47:15,907 INFO L854 garLoopResultBuilder]: At program point L238-1(lines 219 243) the Hoare annotation is: (let ((.cse3 (= 0 ~systemActive~0))) (let ((.cse0 (= ~pumpRunning~0 0)) (.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not .cse3)) (.cse4 (not (<= 2 |old(~waterLevel~0)|)))) (and (or (and .cse0 (= ~waterLevel~0 1) .cse1) .cse2 (not (= |old(~waterLevel~0)| 1))) (or (<= 2 ~waterLevel~0) .cse3 (and .cse0 (<= 1 ~waterLevel~0)) .cse4) (or .cse2 (and (= |old(~waterLevel~0)| ~waterLevel~0) .cse1) .cse4)))) [2021-12-06 17:47:15,907 INFO L854 garLoopResultBuilder]: At program point L267(lines 260 270) the Hoare annotation is: (and (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 |old(~waterLevel~0)|))) (or (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 ~waterLevel~0)) (= 0 ~systemActive~0) (not (<= 2 |old(~waterLevel~0)|)))) [2021-12-06 17:47:15,907 INFO L858 garLoopResultBuilder]: For program point L139-1(lines 138 157) no Hoare annotation was computed. [2021-12-06 17:47:15,907 INFO L858 garLoopResultBuilder]: For program point timeShiftFINAL(lines 135 158) no Hoare annotation was computed. [2021-12-06 17:47:15,907 INFO L854 garLoopResultBuilder]: At program point L441(lines 436 443) the Hoare annotation is: (and (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 |old(~waterLevel~0)|))) (or (= 0 ~systemActive~0) (not (<= 2 |old(~waterLevel~0)|)))) [2021-12-06 17:47:15,907 INFO L854 garLoopResultBuilder]: At program point L982(lines 977 985) the Hoare annotation is: (let ((.cse7 (<= 2 ~waterLevel~0)) (.cse6 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse8 (<= 2 |timeShift_getWaterLevel_#res#1|)) (.cse2 (= 0 ~systemActive~0))) (let ((.cse1 (and .cse7 .cse6 .cse8 (not .cse2))) (.cse5 (= ~pumpRunning~0 0)) (.cse4 (<= 1 |timeShift_getWaterLevel_#res#1|)) (.cse3 (not (<= 2 |old(~waterLevel~0)|))) (.cse0 (not (= |old(~pumpRunning~0)| 0)))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse0 .cse4 .cse3) (or .cse0 (and .cse5 .cse6) .cse1 (not (<= 1 |old(~waterLevel~0)|))) (or (and .cse7 .cse8) (and .cse5 (<= 1 ~waterLevel~0) .cse4) .cse2 .cse3) (or .cse0 (not (= |old(~waterLevel~0)| 1)) (= |timeShift_getWaterLevel_#res#1| 1))))) [2021-12-06 17:47:15,907 INFO L854 garLoopResultBuilder]: At program point L276(lines 271 279) the Hoare annotation is: (and (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 |old(~waterLevel~0)|))) (or (= 0 ~systemActive~0) (not (<= 2 |old(~waterLevel~0)|)))) [2021-12-06 17:47:15,907 INFO L858 garLoopResultBuilder]: For program point L227(lines 227 235) no Hoare annotation was computed. [2021-12-06 17:47:15,907 INFO L858 garLoopResultBuilder]: For program point L384(lines 384 390) no Hoare annotation was computed. [2021-12-06 17:47:15,907 INFO L858 garLoopResultBuilder]: For program point L223(lines 223 240) no Hoare annotation was computed. [2021-12-06 17:47:15,907 INFO L858 garLoopResultBuilder]: For program point L380(lines 380 393) no Hoare annotation was computed. [2021-12-06 17:47:15,908 INFO L854 garLoopResultBuilder]: At program point L380-1(lines 372 396) the Hoare annotation is: (let ((.cse4 (<= 2 ~waterLevel~0)) (.cse5 (<= 2 |timeShift___utac_acc__Specification4_spec__1_~tmp~6#1|)) (.cse10 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse6 (<= 2 |timeShift_getWaterLevel_#res#1|)) (.cse1 (= 0 ~systemActive~0))) (let ((.cse3 (not (<= 2 |old(~waterLevel~0)|))) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse7 (= ~pumpRunning~0 0)) (.cse8 (<= 1 |timeShift___utac_acc__Specification4_spec__1_~tmp~6#1|)) (.cse9 (<= 1 |timeShift_getWaterLevel_#res#1|)) (.cse2 (and .cse4 .cse5 .cse10 .cse6 (not .cse1)))) (and (or .cse0 (not (= |old(~waterLevel~0)| 1)) (and (= |timeShift___utac_acc__Specification4_spec__1_~tmp~6#1| 1) (= |timeShift_getWaterLevel_#res#1| 1))) (or .cse0 .cse1 .cse2 .cse3) (or (and .cse4 .cse5 .cse6) (and .cse7 .cse8 (<= 1 ~waterLevel~0) .cse9) .cse1 .cse3) (or .cse0 (not (<= 1 |old(~waterLevel~0)|)) (and .cse7 .cse8 .cse9 .cse10) .cse2)))) [2021-12-06 17:47:15,908 INFO L854 garLoopResultBuilder]: At program point L950(lines 945 953) the Hoare annotation is: (and (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 |old(~waterLevel~0)|))) (or (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 ~waterLevel~0)) (= 0 ~systemActive~0) (not (<= 2 |old(~waterLevel~0)|)))) [2021-12-06 17:47:15,908 INFO L858 garLoopResultBuilder]: For program point L913(lines 913 917) no Hoare annotation was computed. [2021-12-06 17:47:15,908 INFO L854 garLoopResultBuilder]: At program point L913-2(lines 909 920) the Hoare annotation is: (and (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 |old(~waterLevel~0)|))) (or (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 ~waterLevel~0)) (= 0 ~systemActive~0) (not (<= 2 |old(~waterLevel~0)|)))) [2021-12-06 17:47:15,908 INFO L858 garLoopResultBuilder]: For program point L146-1(lines 146 152) no Hoare annotation was computed. [2021-12-06 17:47:15,908 INFO L854 garLoopResultBuilder]: At program point timeShiftENTRY(lines 135 158) the Hoare annotation is: (let ((.cse0 (= |old(~waterLevel~0)| ~waterLevel~0))) (and (or (not (= |old(~pumpRunning~0)| 0)) (and (= ~pumpRunning~0 0) .cse0) (not (<= 1 |old(~waterLevel~0)|))) (or (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse0) (= 0 ~systemActive~0) (not (<= 2 |old(~waterLevel~0)|))))) [2021-12-06 17:47:15,908 INFO L858 garLoopResultBuilder]: For program point timeShiftEXIT(lines 135 158) no Hoare annotation was computed. [2021-12-06 17:47:15,908 INFO L854 garLoopResultBuilder]: At program point L233(line 233) the Hoare annotation is: (and (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 |old(~waterLevel~0)|))) (or (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 ~waterLevel~0)) (= 0 ~systemActive~0) (not (<= 2 |old(~waterLevel~0)|)))) [2021-12-06 17:47:15,908 INFO L858 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 440) no Hoare annotation was computed. [2021-12-06 17:47:15,908 INFO L854 garLoopResultBuilder]: At program point L229(line 229) the Hoare annotation is: (and (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 |old(~waterLevel~0)|))) (or (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 ~waterLevel~0)) (= 0 ~systemActive~0) (not (<= 2 |old(~waterLevel~0)|)))) [2021-12-06 17:47:15,908 INFO L858 garLoopResultBuilder]: For program point L85(lines 85 91) no Hoare annotation was computed. [2021-12-06 17:47:15,908 INFO L858 garLoopResultBuilder]: For program point L85-1(lines 85 91) no Hoare annotation was computed. [2021-12-06 17:47:15,908 INFO L858 garLoopResultBuilder]: For program point L527(lines 527 534) no Hoare annotation was computed. [2021-12-06 17:47:15,909 INFO L854 garLoopResultBuilder]: At program point L366(lines 354 368) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_main_~tmp~7#1| 1)) (.cse1 (= ~pumpRunning~0 0)) (.cse2 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse3 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 .cse2 (<= 2 ~waterLevel~0) .cse3) (and .cse0 .cse1 .cse2 .cse3 (= ~waterLevel~0 1)))) [2021-12-06 17:47:15,909 INFO L854 garLoopResultBuilder]: At program point L110(lines 65 112) the Hoare annotation is: (let ((.cse1 (= ~pumpRunning~0 0)) (.cse0 (= |ULTIMATE.start_main_~tmp~7#1| 1)) (.cse2 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse3 (<= 2 ~waterLevel~0)) (.cse4 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 .cse1 .cse2 .cse4 (= ~waterLevel~0 1)) (and .cse0 .cse2 .cse3 .cse4 (not (= 0 ~systemActive~0))))) [2021-12-06 17:47:15,909 INFO L854 garLoopResultBuilder]: At program point L77(line 77) the Hoare annotation is: (let ((.cse1 (= ~pumpRunning~0 0)) (.cse0 (= |ULTIMATE.start_main_~tmp~7#1| 1)) (.cse2 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse3 (<= 2 ~waterLevel~0)) (.cse4 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 .cse1 .cse2 .cse4 (= ~waterLevel~0 1)) (and .cse0 .cse2 .cse3 .cse4 (not (= 0 ~systemActive~0))))) [2021-12-06 17:47:15,909 INFO L858 garLoopResultBuilder]: For program point L527-2(lines 527 534) no Hoare annotation was computed. [2021-12-06 17:47:15,909 INFO L858 garLoopResultBuilder]: For program point L358(lines 358 364) no Hoare annotation was computed. [2021-12-06 17:47:15,909 INFO L858 garLoopResultBuilder]: For program point L358-1(lines 358 364) no Hoare annotation was computed. [2021-12-06 17:47:15,909 INFO L854 garLoopResultBuilder]: At program point L416(lines 412 418) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2021-12-06 17:47:15,909 INFO L858 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2021-12-06 17:47:15,909 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startENTRY(line -1) no Hoare annotation was computed. [2021-12-06 17:47:15,909 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2021-12-06 17:47:15,909 INFO L861 garLoopResultBuilder]: At program point L536(lines 517 539) the Hoare annotation is: true [2021-12-06 17:47:15,909 INFO L858 garLoopResultBuilder]: For program point L66(lines 65 112) no Hoare annotation was computed. [2021-12-06 17:47:15,909 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2021-12-06 17:47:15,909 INFO L858 garLoopResultBuilder]: For program point L95(lines 95 108) no Hoare annotation was computed. [2021-12-06 17:47:15,909 INFO L854 garLoopResultBuilder]: At program point L504(lines 500 506) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= 1 ~systemActive~0) (= |ULTIMATE.start_valid_product_#res#1| ~systemActive~0) (= ~waterLevel~0 1) (= |ULTIMATE.start_main_~tmp~7#1| ~systemActive~0)) [2021-12-06 17:47:15,909 INFO L854 garLoopResultBuilder]: At program point L87(line 87) the Hoare annotation is: (let ((.cse1 (= ~pumpRunning~0 0)) (.cse0 (= |ULTIMATE.start_main_~tmp~7#1| 1)) (.cse2 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse3 (<= 2 ~waterLevel~0)) (.cse4 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 .cse1 .cse2 .cse4 (= ~waterLevel~0 1)) (and .cse0 .cse2 .cse3 .cse4 (not (= 0 ~systemActive~0))))) [2021-12-06 17:47:15,910 INFO L861 garLoopResultBuilder]: At program point L116(lines 55 120) the Hoare annotation is: true [2021-12-06 17:47:15,910 INFO L858 garLoopResultBuilder]: For program point L75(lines 75 81) no Hoare annotation was computed. [2021-12-06 17:47:15,910 INFO L858 garLoopResultBuilder]: For program point L75-1(lines 75 81) no Hoare annotation was computed. [2021-12-06 17:47:15,910 INFO L854 garLoopResultBuilder]: At program point L360(line 360) the Hoare annotation is: (and (= |ULTIMATE.start_main_~tmp~7#1| 1) (= |ULTIMATE.start_valid_product_#res#1| 1) (<= 2 ~waterLevel~0) (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0) (not (= 0 ~systemActive~0))) [2021-12-06 17:47:15,910 INFO L858 garLoopResultBuilder]: For program point L67(lines 67 71) no Hoare annotation was computed. [2021-12-06 17:47:15,910 INFO L854 garLoopResultBuilder]: At program point L113(lines 64 114) the Hoare annotation is: false [2021-12-06 17:47:15,910 INFO L854 garLoopResultBuilder]: At program point L431(lines 426 434) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= 1 ~systemActive~0) (= |ULTIMATE.start_valid_product_#res#1| ~systemActive~0) (= ~waterLevel~0 1)) [2021-12-06 17:47:15,910 INFO L854 garLoopResultBuilder]: At program point L423(lines 419 425) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= 1 ~systemActive~0) (= ~waterLevel~0 1)) [2021-12-06 17:47:15,910 INFO L858 garLoopResultBuilder]: For program point L101(lines 101 107) no Hoare annotation was computed. [2021-12-06 17:47:15,910 INFO L854 garLoopResultBuilder]: At program point L101-2(lines 95 108) the Hoare annotation is: (let ((.cse1 (= ~pumpRunning~0 0)) (.cse0 (= |ULTIMATE.start_main_~tmp~7#1| 1)) (.cse2 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse3 (<= 2 ~waterLevel~0)) (.cse4 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 .cse1 .cse2 .cse3 .cse4) (and .cse0 .cse1 .cse2 .cse4 (= ~waterLevel~0 1)) (and .cse0 .cse2 .cse3 .cse4 (not (= 0 ~systemActive~0))))) [2021-12-06 17:47:15,910 INFO L861 garLoopResultBuilder]: At program point L514(lines 507 516) the Hoare annotation is: true [2021-12-06 17:47:15,910 INFO L854 garLoopResultBuilder]: At program point processEnvironment__wrappee__highWaterSensorENTRY(lines 167 191) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0) (not (<= 1 ~waterLevel~0)) (= 0 ~systemActive~0)) [2021-12-06 17:47:15,910 INFO L854 garLoopResultBuilder]: At program point L186(line 186) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 ~waterLevel~0)) (= 0 ~systemActive~0)) [2021-12-06 17:47:15,910 INFO L858 garLoopResultBuilder]: For program point L186-1(lines 167 191) no Hoare annotation was computed. [2021-12-06 17:47:15,910 INFO L854 garLoopResultBuilder]: At program point L331(lines 316 334) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (= 0 ~systemActive~0)) (.cse1 (= ~pumpRunning~0 0))) (and (or .cse0 .cse1 (not (<= 2 ~waterLevel~0)) .cse2) (or (not (= ~waterLevel~0 1)) .cse0 .cse2 (and .cse1 (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp___0~1#1| 0) (not (= |processEnvironment__wrappee__highWaterSensor_isHighWaterSensorDry_#res#1| 0)) (not (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp~4#1| 0)) (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_#res#1| 0))))) [2021-12-06 17:47:15,911 INFO L858 garLoopResultBuilder]: For program point L325(lines 325 329) no Hoare annotation was computed. [2021-12-06 17:47:15,911 INFO L858 garLoopResultBuilder]: For program point L325-2(lines 325 329) no Hoare annotation was computed. [2021-12-06 17:47:15,911 INFO L858 garLoopResultBuilder]: For program point L990(lines 990 996) no Hoare annotation was computed. [2021-12-06 17:47:15,911 INFO L858 garLoopResultBuilder]: For program point processEnvironment__wrappee__highWaterSensorEXIT(lines 167 191) no Hoare annotation was computed. [2021-12-06 17:47:15,911 INFO L854 garLoopResultBuilder]: At program point L249(lines 244 251) the Hoare annotation is: (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 ~waterLevel~0)) (<= 2 ~waterLevel~0) (= 0 ~systemActive~0)) [2021-12-06 17:47:15,911 INFO L854 garLoopResultBuilder]: At program point L181(line 181) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (= ~pumpRunning~0 0)) (.cse3 (= |processEnvironment__wrappee__highWaterSensor_~tmp~1#1| 0)) (.cse1 (= 0 ~systemActive~0))) (and (or (not (= ~waterLevel~0 1)) .cse0 .cse1 (and .cse2 (not (= |processEnvironment__wrappee__highWaterSensor_isHighWaterSensorDry_#res#1| 0)) (not (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp~4#1| 0)) .cse3)) (or .cse0 (not (<= 2 ~waterLevel~0)) (and .cse2 .cse3) .cse1))) [2021-12-06 17:47:15,911 INFO L858 garLoopResultBuilder]: For program point L175(lines 175 183) no Hoare annotation was computed. [2021-12-06 17:47:15,911 INFO L858 garLoopResultBuilder]: For program point L171(lines 171 188) no Hoare annotation was computed. [2021-12-06 17:47:15,911 INFO L854 garLoopResultBuilder]: At program point L995(lines 986 999) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 0))) (or (not (= |old(~pumpRunning~0)| 0)) (not (<= 1 ~waterLevel~0)) (and .cse0 (not (= |processEnvironment__wrappee__highWaterSensor_isHighWaterSensorDry_#res#1| 0))) (and .cse0 (<= 2 ~waterLevel~0)) (= 0 ~systemActive~0))) [2021-12-06 17:47:15,911 INFO L858 garLoopResultBuilder]: For program point waterRiseEXIT(lines 921 932) no Hoare annotation was computed. [2021-12-06 17:47:15,911 INFO L858 garLoopResultBuilder]: For program point L925-1(lines 921 932) no Hoare annotation was computed. [2021-12-06 17:47:15,911 INFO L854 garLoopResultBuilder]: At program point waterRiseENTRY(lines 921 932) the Hoare annotation is: (let ((.cse0 (= |old(~waterLevel~0)| ~waterLevel~0))) (and (or (not (= ~pumpRunning~0 0)) (not (<= 1 |old(~waterLevel~0)|)) .cse0) (or .cse0 (= 0 ~systemActive~0) (not (<= 2 |old(~waterLevel~0)|))))) [2021-12-06 17:47:15,911 INFO L854 garLoopResultBuilder]: At program point processEnvironment__wrappee__lowWaterSensorENTRY(lines 193 217) the Hoare annotation is: (or (= ~pumpRunning~0 |old(~pumpRunning~0)|) (not (<= 1 ~waterLevel~0)) (= 0 ~systemActive~0)) [2021-12-06 17:47:15,911 INFO L854 garLoopResultBuilder]: At program point L207(line 207) the Hoare annotation is: (or (not (<= 1 ~waterLevel~0)) (= 0 ~systemActive~0)) [2021-12-06 17:47:15,911 INFO L854 garLoopResultBuilder]: At program point L203(line 203) the Hoare annotation is: (let ((.cse0 (not (<= 1 ~waterLevel~0))) (.cse1 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 0)) .cse0 .cse1) (or .cse0 .cse1 (and (= |processEnvironment__wrappee__lowWaterSensor_isLowWaterLevel_~tmp~5#1| 0) (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 |processEnvironment__wrappee__lowWaterSensor_isLowWaterLevel_#res#1|) (<= 1 |processEnvironment__wrappee__lowWaterSensor_isLowWaterLevel_~tmp___0~2#1|) (<= 1 |processEnvironment__wrappee__lowWaterSensor_~tmp~2#1|) (= |processEnvironment__wrappee__lowWaterSensor_isLowWaterSensorDry_#res#1| 0))))) [2021-12-06 17:47:15,912 INFO L858 garLoopResultBuilder]: For program point L201(lines 201 209) no Hoare annotation was computed. [2021-12-06 17:47:15,912 INFO L858 garLoopResultBuilder]: For program point L197(lines 197 214) no Hoare annotation was computed. [2021-12-06 17:47:15,912 INFO L854 garLoopResultBuilder]: At program point L350(lines 335 353) the Hoare annotation is: (let ((.cse0 (not (<= 1 ~waterLevel~0))) (.cse1 (= 0 ~systemActive~0))) (and (or (and (= |processEnvironment__wrappee__lowWaterSensor_isLowWaterLevel_~tmp~5#1| 0) (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 |processEnvironment__wrappee__lowWaterSensor_isLowWaterLevel_#res#1|) (<= 1 |processEnvironment__wrappee__lowWaterSensor_isLowWaterLevel_~tmp___0~2#1|) (= |processEnvironment__wrappee__lowWaterSensor_isLowWaterSensorDry_#res#1| 0)) .cse0 .cse1) (or (not (= |old(~pumpRunning~0)| 0)) .cse0 .cse1))) [2021-12-06 17:47:15,912 INFO L858 garLoopResultBuilder]: For program point processEnvironment__wrappee__lowWaterSensorEXIT(lines 193 217) no Hoare annotation was computed. [2021-12-06 17:47:15,912 INFO L858 garLoopResultBuilder]: For program point L344(lines 344 348) no Hoare annotation was computed. [2021-12-06 17:47:15,912 INFO L858 garLoopResultBuilder]: For program point L344-2(lines 344 348) no Hoare annotation was computed. [2021-12-06 17:47:15,912 INFO L854 garLoopResultBuilder]: At program point L212(line 212) the Hoare annotation is: (or (not (<= 1 ~waterLevel~0)) (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= ~pumpRunning~0 0)) (= 0 ~systemActive~0)) [2021-12-06 17:47:15,912 INFO L858 garLoopResultBuilder]: For program point L212-1(lines 193 217) no Hoare annotation was computed. [2021-12-06 17:47:15,912 INFO L854 garLoopResultBuilder]: At program point L1005(lines 1000 1008) the Hoare annotation is: (let ((.cse0 (not (<= 1 ~waterLevel~0))) (.cse1 (= 0 ~systemActive~0))) (and (or .cse0 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= |processEnvironment__wrappee__lowWaterSensor_isLowWaterSensorDry_#res#1| 0)) .cse1) (or (not (= |old(~pumpRunning~0)| 0)) .cse0 .cse1))) [2021-12-06 17:47:15,914 INFO L732 BasicCegarLoop]: Path program histogram: [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-06 17:47:15,915 INFO L179 ceAbstractionStarter]: Computing trace abstraction results [2021-12-06 17:47:15,934 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 06.12 05:47:15 BoogieIcfgContainer [2021-12-06 17:47:15,934 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2021-12-06 17:47:15,934 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2021-12-06 17:47:15,934 INFO L271 PluginConnector]: Initializing Witness Printer... [2021-12-06 17:47:15,935 INFO L275 PluginConnector]: Witness Printer initialized [2021-12-06 17:47:15,935 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 06.12 05:47:08" (3/4) ... [2021-12-06 17:47:15,937 INFO L137 WitnessPrinter]: Generating witness for correct program [2021-12-06 17:47:15,942 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure deactivatePump [2021-12-06 17:47:15,942 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2021-12-06 17:47:15,942 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2021-12-06 17:47:15,942 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2021-12-06 17:47:15,942 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2021-12-06 17:47:15,942 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__highWaterSensor [2021-12-06 17:47:15,942 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2021-12-06 17:47:15,942 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__lowWaterSensor [2021-12-06 17:47:15,948 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 55 nodes and edges [2021-12-06 17:47:15,949 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 22 nodes and edges [2021-12-06 17:47:15,949 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 11 nodes and edges [2021-12-06 17:47:15,949 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2021-12-06 17:47:15,950 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2021-12-06 17:47:15,950 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-12-06 17:47:15,951 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-12-06 17:47:15,967 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((pumpRunning == 0 && 1 == systemActive) && \result == systemActive) && waterLevel == 1 [2021-12-06 17:47:15,967 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((pumpRunning == 0 && 1 == systemActive) && \result == systemActive) && waterLevel == 1) && tmp == systemActive [2021-12-06 17:47:15,967 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((tmp == 1 && pumpRunning == 0) && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) || ((((tmp == 1 && pumpRunning == 0) && \result == 1) && splverifierCounter == 0) && waterLevel == 1)) || ((((tmp == 1 && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) && !(0 == systemActive)) [2021-12-06 17:47:15,968 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (!(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel))) && (((pumpRunning == \old(pumpRunning) && 1 <= waterLevel) || 0 == systemActive) || !(2 <= \old(waterLevel))) [2021-12-06 17:47:15,968 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((pumpRunning == 0 && waterLevel == 1) && !(0 == systemActive)) || !(\old(pumpRunning) == 0)) || !(\old(waterLevel) == 1)) && (((2 <= waterLevel || 0 == systemActive) || (pumpRunning == 0 && 1 <= waterLevel)) || !(2 <= \old(waterLevel)))) && ((!(\old(pumpRunning) == 0) || (\old(waterLevel) == waterLevel && !(0 == systemActive))) || !(2 <= \old(waterLevel))) [2021-12-06 17:47:15,969 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((!(\old(pumpRunning) == 0) || (((2 <= waterLevel && \old(waterLevel) == waterLevel) && 2 <= \result) && !(0 == systemActive))) || 0 == systemActive) || !(2 <= \old(waterLevel))) && ((!(\old(pumpRunning) == 0) || 1 <= \result) || !(2 <= \old(waterLevel)))) && (((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || (((2 <= waterLevel && \old(waterLevel) == waterLevel) && 2 <= \result) && !(0 == systemActive))) || !(1 <= \old(waterLevel)))) && ((((2 <= waterLevel && 2 <= \result) || ((pumpRunning == 0 && 1 <= waterLevel) && 1 <= \result)) || 0 == systemActive) || !(2 <= \old(waterLevel)))) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || \result == 1) [2021-12-06 17:47:15,969 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (!(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel))) && (((pumpRunning == \old(pumpRunning) && 1 <= waterLevel) || 0 == systemActive) || !(2 <= \old(waterLevel))) [2021-12-06 17:47:15,969 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((tmp == 1 && pumpRunning == 0) && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) || ((((tmp == 1 && pumpRunning == 0) && \result == 1) && splverifierCounter == 0) && waterLevel == 1) [2021-12-06 17:47:15,969 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || (tmp == 1 && \result == 1)) && (((!(\old(pumpRunning) == 0) || 0 == systemActive) || ((((2 <= waterLevel && 2 <= tmp) && \old(waterLevel) == waterLevel) && 2 <= \result) && !(0 == systemActive))) || !(2 <= \old(waterLevel)))) && (((((2 <= waterLevel && 2 <= tmp) && 2 <= \result) || (((pumpRunning == 0 && 1 <= tmp) && 1 <= waterLevel) && 1 <= \result)) || 0 == systemActive) || !(2 <= \old(waterLevel)))) && (((!(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel))) || (((pumpRunning == 0 && 1 <= tmp) && 1 <= \result) && \old(waterLevel) == waterLevel)) || ((((2 <= waterLevel && 2 <= tmp) && \old(waterLevel) == waterLevel) && 2 <= \result) && !(0 == systemActive))) [2021-12-06 17:47:15,969 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (!(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel))) && (((pumpRunning == \old(pumpRunning) && 1 <= waterLevel) || 0 == systemActive) || !(2 <= \old(waterLevel))) [2021-12-06 17:47:15,969 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(1 <= waterLevel) || (pumpRunning == \old(pumpRunning) && \result == 0)) || 0 == systemActive) && ((!(\old(pumpRunning) == 0) || !(1 <= waterLevel)) || 0 == systemActive) [2021-12-06 17:47:15,970 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (!(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel))) && (0 == systemActive || !(2 <= \old(waterLevel))) [2021-12-06 17:47:15,970 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 0) || !(1 <= waterLevel)) || (pumpRunning == 0 && !(\result == 0))) || (pumpRunning == 0 && 2 <= waterLevel)) || 0 == systemActive [2021-12-06 17:47:15,970 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((tmp == 0 && pumpRunning == \old(pumpRunning)) && 1 <= \result) && 1 <= tmp___0) && \result == 0) || !(1 <= waterLevel)) || 0 == systemActive) && ((!(\old(pumpRunning) == 0) || !(1 <= waterLevel)) || 0 == systemActive) [2021-12-06 17:47:15,970 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (!(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel))) && (0 == systemActive || !(2 <= \old(waterLevel))) [2021-12-06 17:47:15,970 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(2 <= waterLevel)) || 0 == systemActive) && (((!(waterLevel == 1) || !(\old(pumpRunning) == 0)) || 0 == systemActive) || ((((pumpRunning == 0 && tmp___0 == 0) && !(\result == 0)) && !(tmp == 0)) && \result == 0)) [2021-12-06 17:47:15,970 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(\old(pumpRunning) == 0) || !(1 <= waterLevel)) || 2 <= waterLevel) || 0 == systemActive [2021-12-06 17:47:15,991 INFO L141 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b62fcd93-4a7e-4d06-b73d-c2b7621a60c7/bin/uautomizer-DrprNOufMa/witness.graphml [2021-12-06 17:47:15,991 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2021-12-06 17:47:15,992 INFO L158 Benchmark]: Toolchain (without parser) took 7746.61ms. Allocated memory was 102.8MB in the beginning and 148.9MB in the end (delta: 46.1MB). Free memory was 66.8MB in the beginning and 75.1MB in the end (delta: -8.2MB). Peak memory consumption was 39.0MB. Max. memory is 16.1GB. [2021-12-06 17:47:15,992 INFO L158 Benchmark]: CDTParser took 0.14ms. Allocated memory is still 73.4MB. Free memory was 51.1MB in the beginning and 51.1MB in the end (delta: 28.6kB). There was no memory consumed. Max. memory is 16.1GB. [2021-12-06 17:47:15,992 INFO L158 Benchmark]: CACSL2BoogieTranslator took 308.25ms. Allocated memory is still 102.8MB. Free memory was 66.6MB in the beginning and 69.9MB in the end (delta: -3.3MB). Peak memory consumption was 10.5MB. Max. memory is 16.1GB. [2021-12-06 17:47:15,992 INFO L158 Benchmark]: Boogie Procedure Inliner took 36.88ms. Allocated memory is still 102.8MB. Free memory was 69.9MB in the beginning and 67.3MB in the end (delta: 2.6MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2021-12-06 17:47:15,993 INFO L158 Benchmark]: Boogie Preprocessor took 28.74ms. Allocated memory is still 102.8MB. Free memory was 67.3MB in the beginning and 65.7MB in the end (delta: 1.6MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2021-12-06 17:47:15,993 INFO L158 Benchmark]: RCFGBuilder took 356.67ms. Allocated memory is still 102.8MB. Free memory was 65.7MB in the beginning and 48.9MB in the end (delta: 16.8MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. [2021-12-06 17:47:15,993 INFO L158 Benchmark]: TraceAbstraction took 6954.34ms. Allocated memory was 102.8MB in the beginning and 148.9MB in the end (delta: 46.1MB). Free memory was 48.4MB in the beginning and 82.4MB in the end (delta: -34.0MB). Peak memory consumption was 64.7MB. Max. memory is 16.1GB. [2021-12-06 17:47:15,993 INFO L158 Benchmark]: Witness Printer took 56.79ms. Allocated memory is still 148.9MB. Free memory was 82.4MB in the beginning and 75.1MB in the end (delta: 7.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. [2021-12-06 17:47:15,995 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.14ms. Allocated memory is still 73.4MB. Free memory was 51.1MB in the beginning and 51.1MB in the end (delta: 28.6kB). There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 308.25ms. Allocated memory is still 102.8MB. Free memory was 66.6MB in the beginning and 69.9MB in the end (delta: -3.3MB). Peak memory consumption was 10.5MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 36.88ms. Allocated memory is still 102.8MB. Free memory was 69.9MB in the beginning and 67.3MB in the end (delta: 2.6MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 28.74ms. Allocated memory is still 102.8MB. Free memory was 67.3MB in the beginning and 65.7MB in the end (delta: 1.6MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 356.67ms. Allocated memory is still 102.8MB. Free memory was 65.7MB in the beginning and 48.9MB in the end (delta: 16.8MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. * TraceAbstraction took 6954.34ms. Allocated memory was 102.8MB in the beginning and 148.9MB in the end (delta: 46.1MB). Free memory was 48.4MB in the beginning and 82.4MB in the end (delta: -34.0MB). Peak memory consumption was 64.7MB. Max. memory is 16.1GB. * Witness Printer took 56.79ms. Allocated memory is still 148.9MB. Free memory was 82.4MB in the beginning and 75.1MB in the end (delta: 7.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 440]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 9 procedures, 99 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 6.9s, OverallIterations: 12, TraceHistogramMax: 3, PathProgramHistogramMax: 2, EmptinessCheckTime: 0.0s, AutomataDifference: 2.0s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 2.0s, InitialAbstractionConstructionTime: 0.0s, PartialOrderReductionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 1597 SdHoareTripleChecker+Valid, 1.1s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 1578 mSDsluCounter, 4728 SdHoareTripleChecker+Invalid, 0.9s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 3265 mSDsCounter, 440 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 2041 IncrementalHoareTripleChecker+Invalid, 2481 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 440 mSolverCounterUnsat, 1463 mSDtfsCounter, 2041 mSolverCounterSat, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 663 GetRequests, 543 SyntacticMatches, 9 SemanticMatches, 111 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 315 ImplicationChecksByTransitivity, 0.5s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=1659occurred in iteration=11, InterpolantAutomatonStates: 108, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.4s AutomataMinimizationTime, 12 MinimizatonAttempts, 398 StatesRemovedByMinimization, 8 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 47 LocationsWithAnnotation, 2851 PreInvPairs, 3108 NumberOfFragments, 1153 HoareAnnotationTreeSize, 2851 FomulaSimplifications, 3646 FormulaSimplificationTreeSizeReduction, 0.4s HoareSimplificationTime, 47 FomulaSimplificationsInter, 14613 FormulaSimplificationTreeSizeReductionInter, 1.5s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.3s SatisfiabilityAnalysisTime, 1.3s InterpolantComputationTime, 996 NumberOfCodeBlocks, 996 NumberOfCodeBlocksAsserted, 16 NumberOfCheckSat, 1069 ConstructedInterpolants, 0 QuantifiedInterpolants, 1903 SizeOfPredicates, 11 NumberOfNonLiveVariables, 1579 ConjunctsInSsa, 23 ConjunctsInUnsatCore, 16 InterpolantComputations, 11 PerfectInterpolantSequences, 378/432 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 1000]: Loop Invariant Derived loop invariant: ((!(1 <= waterLevel) || (pumpRunning == \old(pumpRunning) && \result == 0)) || 0 == systemActive) && ((!(\old(pumpRunning) == 0) || !(1 <= waterLevel)) || 0 == systemActive) - InvariantResult [Line: 456]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 65]: Loop Invariant Derived loop invariant: (((((tmp == 1 && pumpRunning == 0) && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) || ((((tmp == 1 && pumpRunning == 0) && \result == 1) && splverifierCounter == 0) && waterLevel == 1)) || ((((tmp == 1 && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) && !(0 == systemActive)) - InvariantResult [Line: 446]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 986]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 0) || !(1 <= waterLevel)) || (pumpRunning == 0 && !(\result == 0))) || (pumpRunning == 0 && 2 <= waterLevel)) || 0 == systemActive - InvariantResult [Line: 372]: Loop Invariant Derived loop invariant: ((((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || (tmp == 1 && \result == 1)) && (((!(\old(pumpRunning) == 0) || 0 == systemActive) || ((((2 <= waterLevel && 2 <= tmp) && \old(waterLevel) == waterLevel) && 2 <= \result) && !(0 == systemActive))) || !(2 <= \old(waterLevel)))) && (((((2 <= waterLevel && 2 <= tmp) && 2 <= \result) || (((pumpRunning == 0 && 1 <= tmp) && 1 <= waterLevel) && 1 <= \result)) || 0 == systemActive) || !(2 <= \old(waterLevel)))) && (((!(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel))) || (((pumpRunning == 0 && 1 <= tmp) && 1 <= \result) && \old(waterLevel) == waterLevel)) || ((((2 <= waterLevel && 2 <= tmp) && \old(waterLevel) == waterLevel) && 2 <= \result) && !(0 == systemActive))) - InvariantResult [Line: 354]: Loop Invariant Derived loop invariant: ((((tmp == 1 && pumpRunning == 0) && \result == 1) && 2 <= waterLevel) && splverifierCounter == 0) || ((((tmp == 1 && pumpRunning == 0) && \result == 1) && splverifierCounter == 0) && waterLevel == 1) - InvariantResult [Line: 500]: Loop Invariant Derived loop invariant: (((pumpRunning == 0 && 1 == systemActive) && \result == systemActive) && waterLevel == 1) && tmp == systemActive - InvariantResult [Line: 977]: Loop Invariant Derived loop invariant: ((((((!(\old(pumpRunning) == 0) || (((2 <= waterLevel && \old(waterLevel) == waterLevel) && 2 <= \result) && !(0 == systemActive))) || 0 == systemActive) || !(2 <= \old(waterLevel))) && ((!(\old(pumpRunning) == 0) || 1 <= \result) || !(2 <= \old(waterLevel)))) && (((!(\old(pumpRunning) == 0) || (pumpRunning == 0 && \old(waterLevel) == waterLevel)) || (((2 <= waterLevel && \old(waterLevel) == waterLevel) && 2 <= \result) && !(0 == systemActive))) || !(1 <= \old(waterLevel)))) && ((((2 <= waterLevel && 2 <= \result) || ((pumpRunning == 0 && 1 <= waterLevel) && 1 <= \result)) || 0 == systemActive) || !(2 <= \old(waterLevel)))) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || \result == 1) - InvariantResult [Line: 64]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 316]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 0) || pumpRunning == 0) || !(2 <= waterLevel)) || 0 == systemActive) && (((!(waterLevel == 1) || !(\old(pumpRunning) == 0)) || 0 == systemActive) || ((((pumpRunning == 0 && tmp___0 == 0) && !(\result == 0)) && !(tmp == 0)) && \result == 0)) - InvariantResult [Line: 507]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 436]: Loop Invariant Derived loop invariant: (!(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel))) && (0 == systemActive || !(2 <= \old(waterLevel))) - InvariantResult [Line: 945]: Loop Invariant Derived loop invariant: (!(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel))) && (((pumpRunning == \old(pumpRunning) && 1 <= waterLevel) || 0 == systemActive) || !(2 <= \old(waterLevel))) - InvariantResult [Line: 335]: Loop Invariant Derived loop invariant: ((((((tmp == 0 && pumpRunning == \old(pumpRunning)) && 1 <= \result) && 1 <= tmp___0) && \result == 0) || !(1 <= waterLevel)) || 0 == systemActive) && ((!(\old(pumpRunning) == 0) || !(1 <= waterLevel)) || 0 == systemActive) - InvariantResult [Line: 412]: Loop Invariant Derived loop invariant: (pumpRunning == 0 && 1 == systemActive) && waterLevel == 1 - InvariantResult [Line: 419]: Loop Invariant Derived loop invariant: (pumpRunning == 0 && 1 == systemActive) && waterLevel == 1 - InvariantResult [Line: 271]: Loop Invariant Derived loop invariant: (!(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel))) && (0 == systemActive || !(2 <= \old(waterLevel))) - InvariantResult [Line: 260]: Loop Invariant Derived loop invariant: (!(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel))) && (((pumpRunning == \old(pumpRunning) && 1 <= waterLevel) || 0 == systemActive) || !(2 <= \old(waterLevel))) - InvariantResult [Line: 909]: Loop Invariant Derived loop invariant: (!(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel))) && (((pumpRunning == \old(pumpRunning) && 1 <= waterLevel) || 0 == systemActive) || !(2 <= \old(waterLevel))) - InvariantResult [Line: 244]: Loop Invariant Derived loop invariant: ((!(\old(pumpRunning) == 0) || !(1 <= waterLevel)) || 2 <= waterLevel) || 0 == systemActive - InvariantResult [Line: 426]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && 1 == systemActive) && \result == systemActive) && waterLevel == 1 - InvariantResult [Line: 55]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 219]: Loop Invariant Derived loop invariant: (((((pumpRunning == 0 && waterLevel == 1) && !(0 == systemActive)) || !(\old(pumpRunning) == 0)) || !(\old(waterLevel) == 1)) && (((2 <= waterLevel || 0 == systemActive) || (pumpRunning == 0 && 1 <= waterLevel)) || !(2 <= \old(waterLevel)))) && ((!(\old(pumpRunning) == 0) || (\old(waterLevel) == waterLevel && !(0 == systemActive))) || !(2 <= \old(waterLevel))) - InvariantResult [Line: 517]: Loop Invariant Derived loop invariant: 1 RESULT: Ultimate proved your program to be correct! [2021-12-06 17:47:16,042 INFO L552 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_b62fcd93-4a7e-4d06-b73d-c2b7621a60c7/bin/uautomizer-DrprNOufMa/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Ended with exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE