./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/product-lines/minepump_spec4_product51.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version c3fed411 Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/config -Xmx15G -Xms4m -jar /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data -tc /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/AutomizerReach.xml -i ../sv-benchmarks/c/product-lines/minepump_spec4_product51.cil.c -s /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 2165aefdca75c2370f155996346c5c4ea8ed352d96946243b70bd7ef162ab29f --- Real Ultimate output --- This is Ultimate 0.2.2-tmp.no-commuhash-c3fed41 [2021-12-16 01:00:38,498 INFO L177 SettingsManager]: Resetting all preferences to default values... [2021-12-16 01:00:38,499 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2021-12-16 01:00:38,537 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2021-12-16 01:00:38,537 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2021-12-16 01:00:38,538 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2021-12-16 01:00:38,539 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2021-12-16 01:00:38,544 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2021-12-16 01:00:38,545 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2021-12-16 01:00:38,546 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2021-12-16 01:00:38,547 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2021-12-16 01:00:38,547 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2021-12-16 01:00:38,548 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2021-12-16 01:00:38,548 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2021-12-16 01:00:38,549 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2021-12-16 01:00:38,550 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2021-12-16 01:00:38,551 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2021-12-16 01:00:38,554 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2021-12-16 01:00:38,555 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2021-12-16 01:00:38,559 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2021-12-16 01:00:38,560 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2021-12-16 01:00:38,561 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2021-12-16 01:00:38,562 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2021-12-16 01:00:38,562 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2021-12-16 01:00:38,564 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2021-12-16 01:00:38,564 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2021-12-16 01:00:38,564 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2021-12-16 01:00:38,565 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2021-12-16 01:00:38,565 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2021-12-16 01:00:38,566 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2021-12-16 01:00:38,566 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2021-12-16 01:00:38,567 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2021-12-16 01:00:38,572 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2021-12-16 01:00:38,575 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2021-12-16 01:00:38,576 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2021-12-16 01:00:38,576 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2021-12-16 01:00:38,577 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2021-12-16 01:00:38,578 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2021-12-16 01:00:38,578 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2021-12-16 01:00:38,579 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2021-12-16 01:00:38,579 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2021-12-16 01:00:38,580 INFO L101 SettingsManager]: Beginning loading settings from /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf [2021-12-16 01:00:38,599 INFO L113 SettingsManager]: Loading preferences was successful [2021-12-16 01:00:38,599 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2021-12-16 01:00:38,599 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2021-12-16 01:00:38,600 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2021-12-16 01:00:38,600 INFO L136 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2021-12-16 01:00:38,600 INFO L138 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2021-12-16 01:00:38,601 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2021-12-16 01:00:38,601 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2021-12-16 01:00:38,601 INFO L138 SettingsManager]: * Use SBE=true [2021-12-16 01:00:38,602 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2021-12-16 01:00:38,602 INFO L138 SettingsManager]: * sizeof long=4 [2021-12-16 01:00:38,602 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2021-12-16 01:00:38,603 INFO L138 SettingsManager]: * sizeof POINTER=4 [2021-12-16 01:00:38,603 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2021-12-16 01:00:38,603 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2021-12-16 01:00:38,603 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2021-12-16 01:00:38,603 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2021-12-16 01:00:38,603 INFO L138 SettingsManager]: * sizeof long double=12 [2021-12-16 01:00:38,604 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2021-12-16 01:00:38,604 INFO L138 SettingsManager]: * Use constant arrays=true [2021-12-16 01:00:38,604 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2021-12-16 01:00:38,604 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2021-12-16 01:00:38,604 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2021-12-16 01:00:38,604 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2021-12-16 01:00:38,605 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-12-16 01:00:38,605 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2021-12-16 01:00:38,605 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2021-12-16 01:00:38,605 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2021-12-16 01:00:38,605 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2021-12-16 01:00:38,605 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2021-12-16 01:00:38,606 INFO L138 SettingsManager]: * Large block encoding in concurrent analysis=OFF [2021-12-16 01:00:38,606 INFO L138 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2021-12-16 01:00:38,606 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2021-12-16 01:00:38,606 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2021-12-16 01:00:38,606 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 2165aefdca75c2370f155996346c5c4ea8ed352d96946243b70bd7ef162ab29f [2021-12-16 01:00:38,811 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2021-12-16 01:00:38,830 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2021-12-16 01:00:38,832 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2021-12-16 01:00:38,833 INFO L271 PluginConnector]: Initializing CDTParser... [2021-12-16 01:00:38,834 INFO L275 PluginConnector]: CDTParser initialized [2021-12-16 01:00:38,835 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../sv-benchmarks/c/product-lines/minepump_spec4_product51.cil.c [2021-12-16 01:00:38,882 INFO L220 CDTParser]: Created temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/02a038bf1/4bfbcc6924ca4d29af50d7e8fd915d59/FLAG738029958 [2021-12-16 01:00:39,277 INFO L306 CDTParser]: Found 1 translation units. [2021-12-16 01:00:39,278 INFO L160 CDTParser]: Scanning /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec4_product51.cil.c [2021-12-16 01:00:39,290 INFO L349 CDTParser]: About to delete temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/02a038bf1/4bfbcc6924ca4d29af50d7e8fd915d59/FLAG738029958 [2021-12-16 01:00:39,300 INFO L357 CDTParser]: Successfully deleted /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/02a038bf1/4bfbcc6924ca4d29af50d7e8fd915d59 [2021-12-16 01:00:39,302 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2021-12-16 01:00:39,303 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2021-12-16 01:00:39,304 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2021-12-16 01:00:39,304 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2021-12-16 01:00:39,306 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2021-12-16 01:00:39,306 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 16.12 01:00:39" (1/1) ... [2021-12-16 01:00:39,307 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@5ce3682c and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:39, skipping insertion in model container [2021-12-16 01:00:39,307 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 16.12 01:00:39" (1/1) ... [2021-12-16 01:00:39,313 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2021-12-16 01:00:39,344 INFO L178 MainTranslator]: Built tables and reachable declarations [2021-12-16 01:00:39,501 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec4_product51.cil.c[8940,8953] [2021-12-16 01:00:39,535 INFO L209 PostProcessor]: Analyzing one entry point: main [2021-12-16 01:00:39,541 INFO L203 MainTranslator]: Completed pre-run [2021-12-16 01:00:39,572 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec4_product51.cil.c[8940,8953] [2021-12-16 01:00:39,610 INFO L209 PostProcessor]: Analyzing one entry point: main [2021-12-16 01:00:39,627 INFO L208 MainTranslator]: Completed translation [2021-12-16 01:00:39,627 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:39 WrapperNode [2021-12-16 01:00:39,627 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2021-12-16 01:00:39,628 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2021-12-16 01:00:39,628 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2021-12-16 01:00:39,628 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2021-12-16 01:00:39,639 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:39" (1/1) ... [2021-12-16 01:00:39,651 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:39" (1/1) ... [2021-12-16 01:00:39,671 INFO L137 Inliner]: procedures = 56, calls = 156, calls flagged for inlining = 24, calls inlined = 20, statements flattened = 260 [2021-12-16 01:00:39,673 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2021-12-16 01:00:39,674 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2021-12-16 01:00:39,674 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2021-12-16 01:00:39,674 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2021-12-16 01:00:39,680 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:39" (1/1) ... [2021-12-16 01:00:39,681 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:39" (1/1) ... [2021-12-16 01:00:39,683 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:39" (1/1) ... [2021-12-16 01:00:39,691 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:39" (1/1) ... [2021-12-16 01:00:39,695 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:39" (1/1) ... [2021-12-16 01:00:39,698 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:39" (1/1) ... [2021-12-16 01:00:39,699 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:39" (1/1) ... [2021-12-16 01:00:39,701 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2021-12-16 01:00:39,701 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2021-12-16 01:00:39,701 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2021-12-16 01:00:39,701 INFO L275 PluginConnector]: RCFGBuilder initialized [2021-12-16 01:00:39,710 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:39" (1/1) ... [2021-12-16 01:00:39,718 INFO L168 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-12-16 01:00:39,730 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2021-12-16 01:00:39,739 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2021-12-16 01:00:39,740 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2021-12-16 01:00:39,766 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2021-12-16 01:00:39,766 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2021-12-16 01:00:39,766 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2021-12-16 01:00:39,766 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2021-12-16 01:00:39,766 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2021-12-16 01:00:39,766 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2021-12-16 01:00:39,766 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2021-12-16 01:00:39,767 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2021-12-16 01:00:39,767 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2021-12-16 01:00:39,767 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2021-12-16 01:00:39,767 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2021-12-16 01:00:39,767 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2021-12-16 01:00:39,767 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2021-12-16 01:00:39,767 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2021-12-16 01:00:39,767 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2021-12-16 01:00:39,767 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2021-12-16 01:00:39,767 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2021-12-16 01:00:39,767 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2021-12-16 01:00:39,851 INFO L236 CfgBuilder]: Building ICFG [2021-12-16 01:00:39,855 INFO L262 CfgBuilder]: Building CFG for each procedure with an implementation [2021-12-16 01:00:40,096 INFO L277 CfgBuilder]: Performing block encoding [2021-12-16 01:00:40,101 INFO L296 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2021-12-16 01:00:40,102 INFO L301 CfgBuilder]: Removed 2 assume(true) statements. [2021-12-16 01:00:40,103 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 16.12 01:00:40 BoogieIcfgContainer [2021-12-16 01:00:40,103 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2021-12-16 01:00:40,105 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2021-12-16 01:00:40,105 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2021-12-16 01:00:40,107 INFO L275 PluginConnector]: TraceAbstraction initialized [2021-12-16 01:00:40,108 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 16.12 01:00:39" (1/3) ... [2021-12-16 01:00:40,108 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@59089eda and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 16.12 01:00:40, skipping insertion in model container [2021-12-16 01:00:40,108 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:39" (2/3) ... [2021-12-16 01:00:40,108 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@59089eda and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 16.12 01:00:40, skipping insertion in model container [2021-12-16 01:00:40,109 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 16.12 01:00:40" (3/3) ... [2021-12-16 01:00:40,109 INFO L111 eAbstractionObserver]: Analyzing ICFG minepump_spec4_product51.cil.c [2021-12-16 01:00:40,113 INFO L204 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2021-12-16 01:00:40,113 INFO L163 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2021-12-16 01:00:40,145 INFO L338 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2021-12-16 01:00:40,152 INFO L339 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mLoopAccelerationTechnique=FAST_UPR [2021-12-16 01:00:40,152 INFO L340 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2021-12-16 01:00:40,177 INFO L276 IsEmpty]: Start isEmpty. Operand has 89 states, 68 states have (on average 1.3970588235294117) internal successors, (95), 77 states have internal predecessors, (95), 12 states have call successors, (12), 7 states have call predecessors, (12), 7 states have return successors, (12), 9 states have call predecessors, (12), 12 states have call successors, (12) [2021-12-16 01:00:40,181 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 20 [2021-12-16 01:00:40,182 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 01:00:40,182 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 01:00:40,183 INFO L402 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 01:00:40,186 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 01:00:40,186 INFO L85 PathProgramCache]: Analyzing trace with hash -883530062, now seen corresponding path program 1 times [2021-12-16 01:00:40,192 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 01:00:40,193 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [833018681] [2021-12-16 01:00:40,193 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 01:00:40,193 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 01:00:40,299 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:40,367 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-16 01:00:40,367 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 01:00:40,367 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [833018681] [2021-12-16 01:00:40,368 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [833018681] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 01:00:40,369 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-16 01:00:40,369 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-12-16 01:00:40,371 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1010842425] [2021-12-16 01:00:40,371 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 01:00:40,375 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2021-12-16 01:00:40,375 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 01:00:40,400 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2021-12-16 01:00:40,401 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-12-16 01:00:40,403 INFO L87 Difference]: Start difference. First operand has 89 states, 68 states have (on average 1.3970588235294117) internal successors, (95), 77 states have internal predecessors, (95), 12 states have call successors, (12), 7 states have call predecessors, (12), 7 states have return successors, (12), 9 states have call predecessors, (12), 12 states have call successors, (12) Second operand has 2 states, 2 states have (on average 8.5) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-16 01:00:40,440 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 01:00:40,440 INFO L93 Difference]: Finished difference Result 170 states and 233 transitions. [2021-12-16 01:00:40,441 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2021-12-16 01:00:40,442 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 8.5) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 19 [2021-12-16 01:00:40,442 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 01:00:40,452 INFO L225 Difference]: With dead ends: 170 [2021-12-16 01:00:40,452 INFO L226 Difference]: Without dead ends: 80 [2021-12-16 01:00:40,456 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-12-16 01:00:40,458 INFO L933 BasicCegarLoop]: 113 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 0 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 113 SdHoareTripleChecker+Invalid, 0 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 0 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-16 01:00:40,459 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [0 Valid, 113 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 0 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-16 01:00:40,471 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 80 states. [2021-12-16 01:00:40,501 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 80 to 80. [2021-12-16 01:00:40,502 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 80 states, 61 states have (on average 1.3278688524590163) internal successors, (81), 69 states have internal predecessors, (81), 12 states have call successors, (12), 7 states have call predecessors, (12), 6 states have return successors, (11), 8 states have call predecessors, (11), 11 states have call successors, (11) [2021-12-16 01:00:40,506 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 80 states to 80 states and 104 transitions. [2021-12-16 01:00:40,508 INFO L78 Accepts]: Start accepts. Automaton has 80 states and 104 transitions. Word has length 19 [2021-12-16 01:00:40,508 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 01:00:40,508 INFO L470 AbstractCegarLoop]: Abstraction has 80 states and 104 transitions. [2021-12-16 01:00:40,509 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 8.5) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-16 01:00:40,509 INFO L276 IsEmpty]: Start isEmpty. Operand 80 states and 104 transitions. [2021-12-16 01:00:40,513 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 21 [2021-12-16 01:00:40,513 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 01:00:40,513 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 01:00:40,513 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2021-12-16 01:00:40,514 INFO L402 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 01:00:40,517 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 01:00:40,517 INFO L85 PathProgramCache]: Analyzing trace with hash -1969487031, now seen corresponding path program 1 times [2021-12-16 01:00:40,517 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 01:00:40,518 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1360481430] [2021-12-16 01:00:40,518 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 01:00:40,518 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 01:00:40,551 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:40,592 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-16 01:00:40,592 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 01:00:40,593 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1360481430] [2021-12-16 01:00:40,593 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1360481430] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 01:00:40,593 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-16 01:00:40,593 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-12-16 01:00:40,593 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [682999388] [2021-12-16 01:00:40,594 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 01:00:40,595 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-12-16 01:00:40,595 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 01:00:40,596 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-12-16 01:00:40,596 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-16 01:00:40,596 INFO L87 Difference]: Start difference. First operand 80 states and 104 transitions. Second operand has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-16 01:00:40,625 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 01:00:40,625 INFO L93 Difference]: Finished difference Result 122 states and 158 transitions. [2021-12-16 01:00:40,627 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-12-16 01:00:40,627 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 20 [2021-12-16 01:00:40,628 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 01:00:40,629 INFO L225 Difference]: With dead ends: 122 [2021-12-16 01:00:40,630 INFO L226 Difference]: Without dead ends: 71 [2021-12-16 01:00:40,630 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-16 01:00:40,632 INFO L933 BasicCegarLoop]: 91 mSDtfsCounter, 16 mSDsluCounter, 70 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 20 SdHoareTripleChecker+Valid, 161 SdHoareTripleChecker+Invalid, 1 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-16 01:00:40,633 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [20 Valid, 161 Invalid, 1 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-16 01:00:40,634 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 71 states. [2021-12-16 01:00:40,639 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 71 to 71. [2021-12-16 01:00:40,641 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 71 states, 55 states have (on average 1.3454545454545455) internal successors, (74), 63 states have internal predecessors, (74), 9 states have call successors, (9), 6 states have call predecessors, (9), 6 states have return successors, (9), 6 states have call predecessors, (9), 9 states have call successors, (9) [2021-12-16 01:00:40,648 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 71 states to 71 states and 92 transitions. [2021-12-16 01:00:40,648 INFO L78 Accepts]: Start accepts. Automaton has 71 states and 92 transitions. Word has length 20 [2021-12-16 01:00:40,649 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 01:00:40,649 INFO L470 AbstractCegarLoop]: Abstraction has 71 states and 92 transitions. [2021-12-16 01:00:40,652 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-16 01:00:40,652 INFO L276 IsEmpty]: Start isEmpty. Operand 71 states and 92 transitions. [2021-12-16 01:00:40,653 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2021-12-16 01:00:40,653 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 01:00:40,653 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 01:00:40,653 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2021-12-16 01:00:40,654 INFO L402 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 01:00:40,654 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 01:00:40,654 INFO L85 PathProgramCache]: Analyzing trace with hash 389175485, now seen corresponding path program 1 times [2021-12-16 01:00:40,654 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 01:00:40,655 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1200745110] [2021-12-16 01:00:40,655 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 01:00:40,655 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 01:00:40,679 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:40,701 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-16 01:00:40,701 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 01:00:40,701 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1200745110] [2021-12-16 01:00:40,701 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1200745110] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 01:00:40,702 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-16 01:00:40,702 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-12-16 01:00:40,702 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1387615438] [2021-12-16 01:00:40,702 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 01:00:40,702 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-12-16 01:00:40,703 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 01:00:40,703 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-12-16 01:00:40,703 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-16 01:00:40,703 INFO L87 Difference]: Start difference. First operand 71 states and 92 transitions. Second operand has 3 states, 3 states have (on average 7.666666666666667) internal successors, (23), 2 states have internal predecessors, (23), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-16 01:00:40,716 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 01:00:40,717 INFO L93 Difference]: Finished difference Result 198 states and 262 transitions. [2021-12-16 01:00:40,717 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-12-16 01:00:40,717 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 7.666666666666667) internal successors, (23), 2 states have internal predecessors, (23), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 24 [2021-12-16 01:00:40,718 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 01:00:40,719 INFO L225 Difference]: With dead ends: 198 [2021-12-16 01:00:40,719 INFO L226 Difference]: Without dead ends: 134 [2021-12-16 01:00:40,719 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-16 01:00:40,723 INFO L933 BasicCegarLoop]: 110 mSDtfsCounter, 72 mSDsluCounter, 82 mSDsCounter, 0 mSdLazyCounter, 4 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 72 SdHoareTripleChecker+Valid, 192 SdHoareTripleChecker+Invalid, 4 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 4 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-16 01:00:40,724 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [72 Valid, 192 Invalid, 4 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 4 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-16 01:00:40,725 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 134 states. [2021-12-16 01:00:40,737 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 134 to 131. [2021-12-16 01:00:40,738 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 131 states, 100 states have (on average 1.37) internal successors, (137), 115 states have internal predecessors, (137), 18 states have call successors, (18), 12 states have call predecessors, (18), 12 states have return successors, (18), 11 states have call predecessors, (18), 18 states have call successors, (18) [2021-12-16 01:00:40,739 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 131 states to 131 states and 173 transitions. [2021-12-16 01:00:40,739 INFO L78 Accepts]: Start accepts. Automaton has 131 states and 173 transitions. Word has length 24 [2021-12-16 01:00:40,739 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 01:00:40,739 INFO L470 AbstractCegarLoop]: Abstraction has 131 states and 173 transitions. [2021-12-16 01:00:40,739 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 7.666666666666667) internal successors, (23), 2 states have internal predecessors, (23), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-16 01:00:40,739 INFO L276 IsEmpty]: Start isEmpty. Operand 131 states and 173 transitions. [2021-12-16 01:00:40,740 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 29 [2021-12-16 01:00:40,740 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 01:00:40,740 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 01:00:40,740 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2021-12-16 01:00:40,740 INFO L402 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 01:00:40,741 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 01:00:40,741 INFO L85 PathProgramCache]: Analyzing trace with hash 1254129459, now seen corresponding path program 1 times [2021-12-16 01:00:40,741 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 01:00:40,741 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1546046280] [2021-12-16 01:00:40,741 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 01:00:40,741 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 01:00:40,764 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:40,806 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-16 01:00:40,806 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 01:00:40,806 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1546046280] [2021-12-16 01:00:40,806 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1546046280] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 01:00:40,806 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-16 01:00:40,807 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-12-16 01:00:40,807 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1544592956] [2021-12-16 01:00:40,807 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 01:00:40,807 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-12-16 01:00:40,807 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 01:00:40,808 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-12-16 01:00:40,808 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-12-16 01:00:40,808 INFO L87 Difference]: Start difference. First operand 131 states and 173 transitions. Second operand has 5 states, 5 states have (on average 5.4) internal successors, (27), 4 states have internal predecessors, (27), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-16 01:00:40,873 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 01:00:40,873 INFO L93 Difference]: Finished difference Result 367 states and 504 transitions. [2021-12-16 01:00:40,873 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-12-16 01:00:40,874 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 5.4) internal successors, (27), 4 states have internal predecessors, (27), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 28 [2021-12-16 01:00:40,875 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 01:00:40,879 INFO L225 Difference]: With dead ends: 367 [2021-12-16 01:00:40,881 INFO L226 Difference]: Without dead ends: 243 [2021-12-16 01:00:40,882 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-12-16 01:00:40,885 INFO L933 BasicCegarLoop]: 94 mSDtfsCounter, 63 mSDsluCounter, 267 mSDsCounter, 0 mSdLazyCounter, 29 mSolverCounterSat, 4 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 63 SdHoareTripleChecker+Valid, 361 SdHoareTripleChecker+Invalid, 33 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 4 IncrementalHoareTripleChecker+Valid, 29 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-16 01:00:40,886 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [63 Valid, 361 Invalid, 33 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [4 Valid, 29 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-16 01:00:40,888 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 243 states. [2021-12-16 01:00:40,908 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 243 to 243. [2021-12-16 01:00:40,909 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 243 states, 184 states have (on average 1.3478260869565217) internal successors, (248), 211 states have internal predecessors, (248), 36 states have call successors, (36), 24 states have call predecessors, (36), 22 states have return successors, (38), 20 states have call predecessors, (38), 36 states have call successors, (38) [2021-12-16 01:00:40,910 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 243 states to 243 states and 322 transitions. [2021-12-16 01:00:40,910 INFO L78 Accepts]: Start accepts. Automaton has 243 states and 322 transitions. Word has length 28 [2021-12-16 01:00:40,911 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 01:00:40,911 INFO L470 AbstractCegarLoop]: Abstraction has 243 states and 322 transitions. [2021-12-16 01:00:40,911 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 5.4) internal successors, (27), 4 states have internal predecessors, (27), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-16 01:00:40,911 INFO L276 IsEmpty]: Start isEmpty. Operand 243 states and 322 transitions. [2021-12-16 01:00:40,913 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 31 [2021-12-16 01:00:40,913 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 01:00:40,913 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 01:00:40,914 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2021-12-16 01:00:40,914 INFO L402 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 01:00:40,914 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 01:00:40,914 INFO L85 PathProgramCache]: Analyzing trace with hash 183678264, now seen corresponding path program 1 times [2021-12-16 01:00:40,914 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 01:00:40,915 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [795778223] [2021-12-16 01:00:40,915 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 01:00:40,915 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 01:00:40,925 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:40,945 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-16 01:00:40,946 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 01:00:40,946 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [795778223] [2021-12-16 01:00:40,946 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [795778223] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 01:00:40,946 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-16 01:00:40,947 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-12-16 01:00:40,947 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1444508920] [2021-12-16 01:00:40,947 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 01:00:40,947 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-12-16 01:00:40,948 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 01:00:40,948 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-12-16 01:00:40,949 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-16 01:00:40,949 INFO L87 Difference]: Start difference. First operand 243 states and 322 transitions. Second operand has 3 states, 3 states have (on average 9.666666666666666) internal successors, (29), 2 states have internal predecessors, (29), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-16 01:00:40,979 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 01:00:40,979 INFO L93 Difference]: Finished difference Result 593 states and 807 transitions. [2021-12-16 01:00:40,979 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-12-16 01:00:40,980 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 9.666666666666666) internal successors, (29), 2 states have internal predecessors, (29), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 30 [2021-12-16 01:00:40,980 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 01:00:40,981 INFO L225 Difference]: With dead ends: 593 [2021-12-16 01:00:40,981 INFO L226 Difference]: Without dead ends: 357 [2021-12-16 01:00:40,982 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-16 01:00:40,983 INFO L933 BasicCegarLoop]: 95 mSDtfsCounter, 51 mSDsluCounter, 59 mSDsCounter, 0 mSdLazyCounter, 11 mSolverCounterSat, 8 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 51 SdHoareTripleChecker+Valid, 154 SdHoareTripleChecker+Invalid, 19 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 8 IncrementalHoareTripleChecker+Valid, 11 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-16 01:00:40,983 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [51 Valid, 154 Invalid, 19 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [8 Valid, 11 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-16 01:00:40,984 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 357 states. [2021-12-16 01:00:41,001 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 357 to 348. [2021-12-16 01:00:41,002 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 348 states, 269 states have (on average 1.304832713754647) internal successors, (351), 289 states have internal predecessors, (351), 41 states have call successors, (41), 39 states have call predecessors, (41), 37 states have return successors, (59), 36 states have call predecessors, (59), 41 states have call successors, (59) [2021-12-16 01:00:41,003 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 348 states to 348 states and 451 transitions. [2021-12-16 01:00:41,004 INFO L78 Accepts]: Start accepts. Automaton has 348 states and 451 transitions. Word has length 30 [2021-12-16 01:00:41,004 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 01:00:41,004 INFO L470 AbstractCegarLoop]: Abstraction has 348 states and 451 transitions. [2021-12-16 01:00:41,004 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 9.666666666666666) internal successors, (29), 2 states have internal predecessors, (29), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-16 01:00:41,006 INFO L276 IsEmpty]: Start isEmpty. Operand 348 states and 451 transitions. [2021-12-16 01:00:41,008 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 33 [2021-12-16 01:00:41,009 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 01:00:41,009 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 01:00:41,009 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2021-12-16 01:00:41,009 INFO L402 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 01:00:41,009 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 01:00:41,010 INFO L85 PathProgramCache]: Analyzing trace with hash 211984281, now seen corresponding path program 1 times [2021-12-16 01:00:41,010 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 01:00:41,010 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [135348270] [2021-12-16 01:00:41,010 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 01:00:41,010 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 01:00:41,022 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:41,063 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-16 01:00:41,066 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:41,070 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-16 01:00:41,070 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 01:00:41,070 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [135348270] [2021-12-16 01:00:41,070 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [135348270] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 01:00:41,071 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-16 01:00:41,071 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2021-12-16 01:00:41,071 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [496403021] [2021-12-16 01:00:41,083 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 01:00:41,083 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-12-16 01:00:41,084 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 01:00:41,084 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-12-16 01:00:41,084 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-12-16 01:00:41,084 INFO L87 Difference]: Start difference. First operand 348 states and 451 transitions. Second operand has 6 states, 6 states have (on average 4.833333333333333) internal successors, (29), 5 states have internal predecessors, (29), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-16 01:00:41,271 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 01:00:41,271 INFO L93 Difference]: Finished difference Result 442 states and 576 transitions. [2021-12-16 01:00:41,272 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2021-12-16 01:00:41,272 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 4.833333333333333) internal successors, (29), 5 states have internal predecessors, (29), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 32 [2021-12-16 01:00:41,272 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 01:00:41,279 INFO L225 Difference]: With dead ends: 442 [2021-12-16 01:00:41,280 INFO L226 Difference]: Without dead ends: 440 [2021-12-16 01:00:41,281 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 14 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 12 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=45, Invalid=87, Unknown=0, NotChecked=0, Total=132 [2021-12-16 01:00:41,283 INFO L933 BasicCegarLoop]: 106 mSDtfsCounter, 125 mSDsluCounter, 299 mSDsCounter, 0 mSdLazyCounter, 149 mSolverCounterSat, 33 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 129 SdHoareTripleChecker+Valid, 405 SdHoareTripleChecker+Invalid, 182 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 33 IncrementalHoareTripleChecker+Valid, 149 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-16 01:00:41,284 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [129 Valid, 405 Invalid, 182 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [33 Valid, 149 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-16 01:00:41,286 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 440 states. [2021-12-16 01:00:41,311 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 440 to 414. [2021-12-16 01:00:41,312 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 414 states, 321 states have (on average 1.2897196261682242) internal successors, (414), 351 states have internal predecessors, (414), 47 states have call successors, (47), 39 states have call predecessors, (47), 45 states have return successors, (77), 40 states have call predecessors, (77), 47 states have call successors, (77) [2021-12-16 01:00:41,314 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 414 states to 414 states and 538 transitions. [2021-12-16 01:00:41,315 INFO L78 Accepts]: Start accepts. Automaton has 414 states and 538 transitions. Word has length 32 [2021-12-16 01:00:41,316 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 01:00:41,316 INFO L470 AbstractCegarLoop]: Abstraction has 414 states and 538 transitions. [2021-12-16 01:00:41,316 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 4.833333333333333) internal successors, (29), 5 states have internal predecessors, (29), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-16 01:00:41,316 INFO L276 IsEmpty]: Start isEmpty. Operand 414 states and 538 transitions. [2021-12-16 01:00:41,321 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 43 [2021-12-16 01:00:41,321 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 01:00:41,321 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 01:00:41,321 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2021-12-16 01:00:41,322 INFO L402 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 01:00:41,322 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 01:00:41,323 INFO L85 PathProgramCache]: Analyzing trace with hash 719750173, now seen corresponding path program 1 times [2021-12-16 01:00:41,323 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 01:00:41,323 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2569270] [2021-12-16 01:00:41,323 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 01:00:41,324 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 01:00:41,346 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:41,369 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-16 01:00:41,371 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:41,377 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2021-12-16 01:00:41,380 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:41,395 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-16 01:00:41,395 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 01:00:41,395 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2569270] [2021-12-16 01:00:41,395 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2569270] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 01:00:41,396 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-16 01:00:41,396 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2021-12-16 01:00:41,396 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [938775468] [2021-12-16 01:00:41,396 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 01:00:41,396 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-12-16 01:00:41,396 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 01:00:41,397 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-12-16 01:00:41,397 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-12-16 01:00:41,397 INFO L87 Difference]: Start difference. First operand 414 states and 538 transitions. Second operand has 6 states, 6 states have (on average 6.166666666666667) internal successors, (37), 4 states have internal predecessors, (37), 1 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2021-12-16 01:00:41,583 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 01:00:41,583 INFO L93 Difference]: Finished difference Result 925 states and 1250 transitions. [2021-12-16 01:00:41,584 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2021-12-16 01:00:41,584 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 6.166666666666667) internal successors, (37), 4 states have internal predecessors, (37), 1 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) Word has length 42 [2021-12-16 01:00:41,584 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 01:00:41,589 INFO L225 Difference]: With dead ends: 925 [2021-12-16 01:00:41,589 INFO L226 Difference]: Without dead ends: 518 [2021-12-16 01:00:41,590 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 14 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 8 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=33, Invalid=57, Unknown=0, NotChecked=0, Total=90 [2021-12-16 01:00:41,594 INFO L933 BasicCegarLoop]: 92 mSDtfsCounter, 141 mSDsluCounter, 224 mSDsCounter, 0 mSdLazyCounter, 156 mSolverCounterSat, 41 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 141 SdHoareTripleChecker+Valid, 316 SdHoareTripleChecker+Invalid, 197 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 41 IncrementalHoareTripleChecker+Valid, 156 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-16 01:00:41,595 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [141 Valid, 316 Invalid, 197 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [41 Valid, 156 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-16 01:00:41,596 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 518 states. [2021-12-16 01:00:41,626 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 518 to 458. [2021-12-16 01:00:41,627 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 458 states, 359 states have (on average 1.2701949860724233) internal successors, (456), 389 states have internal predecessors, (456), 47 states have call successors, (47), 39 states have call predecessors, (47), 51 states have return successors, (85), 44 states have call predecessors, (85), 47 states have call successors, (85) [2021-12-16 01:00:41,631 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 458 states to 458 states and 588 transitions. [2021-12-16 01:00:41,631 INFO L78 Accepts]: Start accepts. Automaton has 458 states and 588 transitions. Word has length 42 [2021-12-16 01:00:41,632 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 01:00:41,632 INFO L470 AbstractCegarLoop]: Abstraction has 458 states and 588 transitions. [2021-12-16 01:00:41,632 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 6.166666666666667) internal successors, (37), 4 states have internal predecessors, (37), 1 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2021-12-16 01:00:41,632 INFO L276 IsEmpty]: Start isEmpty. Operand 458 states and 588 transitions. [2021-12-16 01:00:41,633 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 43 [2021-12-16 01:00:41,633 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 01:00:41,633 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 01:00:41,634 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2021-12-16 01:00:41,634 INFO L402 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 01:00:41,634 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 01:00:41,634 INFO L85 PathProgramCache]: Analyzing trace with hash 1730867423, now seen corresponding path program 1 times [2021-12-16 01:00:41,634 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 01:00:41,635 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1885485775] [2021-12-16 01:00:41,635 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 01:00:41,635 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 01:00:41,656 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:41,666 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-16 01:00:41,667 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:41,671 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2021-12-16 01:00:41,672 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:41,689 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-16 01:00:41,689 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 01:00:41,689 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1885485775] [2021-12-16 01:00:41,689 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1885485775] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 01:00:41,689 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-16 01:00:41,689 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2021-12-16 01:00:41,689 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [615142169] [2021-12-16 01:00:41,690 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 01:00:41,690 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-12-16 01:00:41,690 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 01:00:41,690 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-12-16 01:00:41,690 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2021-12-16 01:00:41,690 INFO L87 Difference]: Start difference. First operand 458 states and 588 transitions. Second operand has 7 states, 7 states have (on average 5.285714285714286) internal successors, (37), 5 states have internal predecessors, (37), 1 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2021-12-16 01:00:41,854 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 01:00:41,854 INFO L93 Difference]: Finished difference Result 902 states and 1170 transitions. [2021-12-16 01:00:41,855 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2021-12-16 01:00:41,855 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 5.285714285714286) internal successors, (37), 5 states have internal predecessors, (37), 1 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) Word has length 42 [2021-12-16 01:00:41,855 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 01:00:41,857 INFO L225 Difference]: With dead ends: 902 [2021-12-16 01:00:41,857 INFO L226 Difference]: Without dead ends: 451 [2021-12-16 01:00:41,858 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 16 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=46, Invalid=86, Unknown=0, NotChecked=0, Total=132 [2021-12-16 01:00:41,859 INFO L933 BasicCegarLoop]: 75 mSDtfsCounter, 143 mSDsluCounter, 254 mSDsCounter, 0 mSdLazyCounter, 186 mSolverCounterSat, 47 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 143 SdHoareTripleChecker+Valid, 329 SdHoareTripleChecker+Invalid, 233 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 47 IncrementalHoareTripleChecker+Valid, 186 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-16 01:00:41,859 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [143 Valid, 329 Invalid, 233 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [47 Valid, 186 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-16 01:00:41,860 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 451 states. [2021-12-16 01:00:41,872 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 451 to 361. [2021-12-16 01:00:41,872 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 361 states, 284 states have (on average 1.267605633802817) internal successors, (360), 307 states have internal predecessors, (360), 38 states have call successors, (38), 32 states have call predecessors, (38), 38 states have return successors, (60), 33 states have call predecessors, (60), 38 states have call successors, (60) [2021-12-16 01:00:41,874 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 361 states to 361 states and 458 transitions. [2021-12-16 01:00:41,874 INFO L78 Accepts]: Start accepts. Automaton has 361 states and 458 transitions. Word has length 42 [2021-12-16 01:00:41,874 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 01:00:41,874 INFO L470 AbstractCegarLoop]: Abstraction has 361 states and 458 transitions. [2021-12-16 01:00:41,874 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 5.285714285714286) internal successors, (37), 5 states have internal predecessors, (37), 1 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2021-12-16 01:00:41,874 INFO L276 IsEmpty]: Start isEmpty. Operand 361 states and 458 transitions. [2021-12-16 01:00:41,875 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 43 [2021-12-16 01:00:41,875 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 01:00:41,876 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 01:00:41,876 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2021-12-16 01:00:41,876 INFO L402 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 01:00:41,876 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 01:00:41,877 INFO L85 PathProgramCache]: Analyzing trace with hash -301318181, now seen corresponding path program 1 times [2021-12-16 01:00:41,877 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 01:00:41,877 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [287196295] [2021-12-16 01:00:41,877 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 01:00:41,877 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 01:00:41,888 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:41,922 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-16 01:00:41,923 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:41,929 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2021-12-16 01:00:41,931 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:41,940 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-16 01:00:41,940 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 01:00:41,940 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [287196295] [2021-12-16 01:00:41,940 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [287196295] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 01:00:41,940 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-16 01:00:41,940 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2021-12-16 01:00:41,940 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [584635434] [2021-12-16 01:00:41,940 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 01:00:41,941 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-12-16 01:00:41,941 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 01:00:41,942 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-12-16 01:00:41,942 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2021-12-16 01:00:41,942 INFO L87 Difference]: Start difference. First operand 361 states and 458 transitions. Second operand has 7 states, 7 states have (on average 5.285714285714286) internal successors, (37), 5 states have internal predecessors, (37), 1 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2021-12-16 01:00:42,224 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 01:00:42,225 INFO L93 Difference]: Finished difference Result 843 states and 1134 transitions. [2021-12-16 01:00:42,225 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 17 states. [2021-12-16 01:00:42,225 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 5.285714285714286) internal successors, (37), 5 states have internal predecessors, (37), 1 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) Word has length 42 [2021-12-16 01:00:42,225 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 01:00:42,228 INFO L225 Difference]: With dead ends: 843 [2021-12-16 01:00:42,228 INFO L226 Difference]: Without dead ends: 572 [2021-12-16 01:00:42,228 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 24 GetRequests, 6 SyntacticMatches, 1 SemanticMatches, 17 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 54 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=106, Invalid=236, Unknown=0, NotChecked=0, Total=342 [2021-12-16 01:00:42,229 INFO L933 BasicCegarLoop]: 134 mSDtfsCounter, 185 mSDsluCounter, 369 mSDsCounter, 0 mSdLazyCounter, 297 mSolverCounterSat, 54 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 187 SdHoareTripleChecker+Valid, 503 SdHoareTripleChecker+Invalid, 351 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 54 IncrementalHoareTripleChecker+Valid, 297 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2021-12-16 01:00:42,229 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [187 Valid, 503 Invalid, 351 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [54 Valid, 297 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2021-12-16 01:00:42,230 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 572 states. [2021-12-16 01:00:42,244 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 572 to 547. [2021-12-16 01:00:42,245 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 547 states, 430 states have (on average 1.2372093023255815) internal successors, (532), 460 states have internal predecessors, (532), 57 states have call successors, (57), 49 states have call predecessors, (57), 59 states have return successors, (115), 58 states have call predecessors, (115), 57 states have call successors, (115) [2021-12-16 01:00:42,246 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 547 states to 547 states and 704 transitions. [2021-12-16 01:00:42,247 INFO L78 Accepts]: Start accepts. Automaton has 547 states and 704 transitions. Word has length 42 [2021-12-16 01:00:42,247 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 01:00:42,247 INFO L470 AbstractCegarLoop]: Abstraction has 547 states and 704 transitions. [2021-12-16 01:00:42,247 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 5.285714285714286) internal successors, (37), 5 states have internal predecessors, (37), 1 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2021-12-16 01:00:42,247 INFO L276 IsEmpty]: Start isEmpty. Operand 547 states and 704 transitions. [2021-12-16 01:00:42,248 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 66 [2021-12-16 01:00:42,248 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 01:00:42,248 INFO L514 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 01:00:42,248 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2021-12-16 01:00:42,248 INFO L402 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 01:00:42,249 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 01:00:42,249 INFO L85 PathProgramCache]: Analyzing trace with hash 796276059, now seen corresponding path program 1 times [2021-12-16 01:00:42,249 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 01:00:42,249 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1051983433] [2021-12-16 01:00:42,249 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 01:00:42,249 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 01:00:42,255 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:42,268 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-16 01:00:42,269 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:42,273 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2021-12-16 01:00:42,275 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:42,284 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2021-12-16 01:00:42,286 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:42,288 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 14 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-16 01:00:42,288 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 01:00:42,288 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1051983433] [2021-12-16 01:00:42,288 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1051983433] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 01:00:42,288 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-16 01:00:42,288 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2021-12-16 01:00:42,288 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2142386955] [2021-12-16 01:00:42,288 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 01:00:42,289 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-12-16 01:00:42,289 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 01:00:42,289 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-12-16 01:00:42,289 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=29, Unknown=0, NotChecked=0, Total=42 [2021-12-16 01:00:42,289 INFO L87 Difference]: Start difference. First operand 547 states and 704 transitions. Second operand has 7 states, 7 states have (on average 8.285714285714286) internal successors, (58), 4 states have internal predecessors, (58), 4 states have call successors, (4), 4 states have call predecessors, (4), 2 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) [2021-12-16 01:00:42,418 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 01:00:42,418 INFO L93 Difference]: Finished difference Result 658 states and 844 transitions. [2021-12-16 01:00:42,418 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2021-12-16 01:00:42,418 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 8.285714285714286) internal successors, (58), 4 states have internal predecessors, (58), 4 states have call successors, (4), 4 states have call predecessors, (4), 2 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) Word has length 65 [2021-12-16 01:00:42,419 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 01:00:42,420 INFO L225 Difference]: With dead ends: 658 [2021-12-16 01:00:42,420 INFO L226 Difference]: Without dead ends: 280 [2021-12-16 01:00:42,421 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 19 GetRequests, 9 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 14 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=40, Invalid=92, Unknown=0, NotChecked=0, Total=132 [2021-12-16 01:00:42,421 INFO L933 BasicCegarLoop]: 118 mSDtfsCounter, 197 mSDsluCounter, 240 mSDsCounter, 0 mSdLazyCounter, 194 mSolverCounterSat, 45 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 205 SdHoareTripleChecker+Valid, 358 SdHoareTripleChecker+Invalid, 239 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 45 IncrementalHoareTripleChecker+Valid, 194 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-16 01:00:42,421 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [205 Valid, 358 Invalid, 239 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [45 Valid, 194 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-16 01:00:42,422 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 280 states. [2021-12-16 01:00:42,429 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 280 to 269. [2021-12-16 01:00:42,430 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 269 states, 212 states have (on average 1.1981132075471699) internal successors, (254), 226 states have internal predecessors, (254), 27 states have call successors, (27), 24 states have call predecessors, (27), 29 states have return successors, (56), 28 states have call predecessors, (56), 27 states have call successors, (56) [2021-12-16 01:00:42,431 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 269 states to 269 states and 337 transitions. [2021-12-16 01:00:42,431 INFO L78 Accepts]: Start accepts. Automaton has 269 states and 337 transitions. Word has length 65 [2021-12-16 01:00:42,431 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 01:00:42,431 INFO L470 AbstractCegarLoop]: Abstraction has 269 states and 337 transitions. [2021-12-16 01:00:42,431 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 8.285714285714286) internal successors, (58), 4 states have internal predecessors, (58), 4 states have call successors, (4), 4 states have call predecessors, (4), 2 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) [2021-12-16 01:00:42,431 INFO L276 IsEmpty]: Start isEmpty. Operand 269 states and 337 transitions. [2021-12-16 01:00:42,432 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 77 [2021-12-16 01:00:42,432 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 01:00:42,432 INFO L514 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 01:00:42,432 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9 [2021-12-16 01:00:42,432 INFO L402 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 01:00:42,432 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 01:00:42,432 INFO L85 PathProgramCache]: Analyzing trace with hash -547601245, now seen corresponding path program 1 times [2021-12-16 01:00:42,432 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 01:00:42,432 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [660260653] [2021-12-16 01:00:42,433 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 01:00:42,433 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 01:00:42,442 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:42,484 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-16 01:00:42,486 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:42,494 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2021-12-16 01:00:42,498 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:42,518 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2021-12-16 01:00:42,519 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:42,526 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 61 [2021-12-16 01:00:42,527 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:42,531 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-16 01:00:42,532 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:42,534 INFO L134 CoverageAnalysis]: Checked inductivity of 20 backedges. 11 proven. 7 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2021-12-16 01:00:42,534 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 01:00:42,534 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [660260653] [2021-12-16 01:00:42,534 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [660260653] provided 0 perfect and 1 imperfect interpolant sequences [2021-12-16 01:00:42,535 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1526519080] [2021-12-16 01:00:42,535 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 01:00:42,535 INFO L168 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-12-16 01:00:42,535 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2021-12-16 01:00:42,551 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2021-12-16 01:00:42,553 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2021-12-16 01:00:42,627 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:42,630 INFO L263 TraceCheckSpWp]: Trace formula consists of 419 conjuncts, 8 conjunts are in the unsatisfiable core [2021-12-16 01:00:42,634 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2021-12-16 01:00:42,823 INFO L134 CoverageAnalysis]: Checked inductivity of 20 backedges. 14 proven. 6 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-16 01:00:42,823 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2021-12-16 01:00:43,008 INFO L134 CoverageAnalysis]: Checked inductivity of 20 backedges. 12 proven. 6 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2021-12-16 01:00:43,009 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1526519080] provided 0 perfect and 2 imperfect interpolant sequences [2021-12-16 01:00:43,009 INFO L186 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2021-12-16 01:00:43,009 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [9, 6, 6] total 9 [2021-12-16 01:00:43,009 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [280020735] [2021-12-16 01:00:43,009 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2021-12-16 01:00:43,009 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 9 states [2021-12-16 01:00:43,009 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 01:00:43,010 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 9 interpolants. [2021-12-16 01:00:43,010 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=18, Invalid=54, Unknown=0, NotChecked=0, Total=72 [2021-12-16 01:00:43,010 INFO L87 Difference]: Start difference. First operand 269 states and 337 transitions. Second operand has 9 states, 9 states have (on average 7.888888888888889) internal successors, (71), 6 states have internal predecessors, (71), 3 states have call successors, (12), 6 states have call predecessors, (12), 3 states have return successors, (7), 3 states have call predecessors, (7), 2 states have call successors, (7) [2021-12-16 01:00:43,452 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 01:00:43,453 INFO L93 Difference]: Finished difference Result 635 states and 842 transitions. [2021-12-16 01:00:43,453 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 27 states. [2021-12-16 01:00:43,453 INFO L78 Accepts]: Start accepts. Automaton has has 9 states, 9 states have (on average 7.888888888888889) internal successors, (71), 6 states have internal predecessors, (71), 3 states have call successors, (12), 6 states have call predecessors, (12), 3 states have return successors, (7), 3 states have call predecessors, (7), 2 states have call successors, (7) Word has length 76 [2021-12-16 01:00:43,453 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 01:00:43,455 INFO L225 Difference]: With dead ends: 635 [2021-12-16 01:00:43,455 INFO L226 Difference]: Without dead ends: 413 [2021-12-16 01:00:43,456 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 194 GetRequests, 164 SyntacticMatches, 3 SemanticMatches, 27 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 191 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=227, Invalid=585, Unknown=0, NotChecked=0, Total=812 [2021-12-16 01:00:43,457 INFO L933 BasicCegarLoop]: 132 mSDtfsCounter, 238 mSDsluCounter, 469 mSDsCounter, 0 mSdLazyCounter, 498 mSolverCounterSat, 84 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 242 SdHoareTripleChecker+Valid, 601 SdHoareTripleChecker+Invalid, 582 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 84 IncrementalHoareTripleChecker+Valid, 498 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2021-12-16 01:00:43,457 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [242 Valid, 601 Invalid, 582 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [84 Valid, 498 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2021-12-16 01:00:43,457 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 413 states. [2021-12-16 01:00:43,468 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 413 to 366. [2021-12-16 01:00:43,469 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 366 states, 285 states have (on average 1.2035087719298245) internal successors, (343), 305 states have internal predecessors, (343), 39 states have call successors, (39), 35 states have call predecessors, (39), 41 states have return successors, (85), 37 states have call predecessors, (85), 39 states have call successors, (85) [2021-12-16 01:00:43,470 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 366 states to 366 states and 467 transitions. [2021-12-16 01:00:43,470 INFO L78 Accepts]: Start accepts. Automaton has 366 states and 467 transitions. Word has length 76 [2021-12-16 01:00:43,471 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 01:00:43,471 INFO L470 AbstractCegarLoop]: Abstraction has 366 states and 467 transitions. [2021-12-16 01:00:43,471 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 9 states, 9 states have (on average 7.888888888888889) internal successors, (71), 6 states have internal predecessors, (71), 3 states have call successors, (12), 6 states have call predecessors, (12), 3 states have return successors, (7), 3 states have call predecessors, (7), 2 states have call successors, (7) [2021-12-16 01:00:43,471 INFO L276 IsEmpty]: Start isEmpty. Operand 366 states and 467 transitions. [2021-12-16 01:00:43,472 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 111 [2021-12-16 01:00:43,472 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 01:00:43,472 INFO L514 BasicCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 01:00:43,493 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2021-12-16 01:00:43,687 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable10 [2021-12-16 01:00:43,688 INFO L402 AbstractCegarLoop]: === Iteration 12 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 01:00:43,688 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 01:00:43,688 INFO L85 PathProgramCache]: Analyzing trace with hash -1199368341, now seen corresponding path program 2 times [2021-12-16 01:00:43,688 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 01:00:43,688 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [254738917] [2021-12-16 01:00:43,688 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 01:00:43,688 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 01:00:43,713 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:43,732 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-16 01:00:43,733 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:43,738 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2021-12-16 01:00:43,740 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:43,760 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2021-12-16 01:00:43,762 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:43,766 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 50 [2021-12-16 01:00:43,768 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:43,812 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2021-12-16 01:00:43,813 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:43,815 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-16 01:00:43,816 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:43,817 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 95 [2021-12-16 01:00:43,817 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:43,818 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-16 01:00:43,819 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:43,821 INFO L134 CoverageAnalysis]: Checked inductivity of 74 backedges. 51 proven. 11 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2021-12-16 01:00:43,821 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 01:00:43,821 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [254738917] [2021-12-16 01:00:43,821 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [254738917] provided 0 perfect and 1 imperfect interpolant sequences [2021-12-16 01:00:43,821 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [2005005532] [2021-12-16 01:00:43,822 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2021-12-16 01:00:43,822 INFO L168 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-12-16 01:00:43,822 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2021-12-16 01:00:43,823 INFO L229 MonitoredProcess]: Starting monitored process 3 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2021-12-16 01:00:43,824 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2021-12-16 01:00:43,903 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2021-12-16 01:00:43,903 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2021-12-16 01:00:43,906 INFO L263 TraceCheckSpWp]: Trace formula consists of 502 conjuncts, 10 conjunts are in the unsatisfiable core [2021-12-16 01:00:43,912 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2021-12-16 01:00:44,104 INFO L134 CoverageAnalysis]: Checked inductivity of 74 backedges. 62 proven. 0 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2021-12-16 01:00:44,105 INFO L324 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2021-12-16 01:00:44,105 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleZ3 [2005005532] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 01:00:44,105 INFO L186 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2021-12-16 01:00:44,105 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [10] total 14 [2021-12-16 01:00:44,105 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1492364631] [2021-12-16 01:00:44,105 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 01:00:44,105 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-12-16 01:00:44,106 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 01:00:44,106 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-12-16 01:00:44,106 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=32, Invalid=150, Unknown=0, NotChecked=0, Total=182 [2021-12-16 01:00:44,106 INFO L87 Difference]: Start difference. First operand 366 states and 467 transitions. Second operand has 6 states, 6 states have (on average 14.166666666666666) internal successors, (85), 6 states have internal predecessors, (85), 3 states have call successors, (8), 4 states have call predecessors, (8), 3 states have return successors, (8), 3 states have call predecessors, (8), 3 states have call successors, (8) [2021-12-16 01:00:44,299 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 01:00:44,299 INFO L93 Difference]: Finished difference Result 1015 states and 1349 transitions. [2021-12-16 01:00:44,300 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2021-12-16 01:00:44,300 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 14.166666666666666) internal successors, (85), 6 states have internal predecessors, (85), 3 states have call successors, (8), 4 states have call predecessors, (8), 3 states have return successors, (8), 3 states have call predecessors, (8), 3 states have call successors, (8) Word has length 110 [2021-12-16 01:00:44,300 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 01:00:44,303 INFO L225 Difference]: With dead ends: 1015 [2021-12-16 01:00:44,303 INFO L226 Difference]: Without dead ends: 695 [2021-12-16 01:00:44,306 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 142 GetRequests, 122 SyntacticMatches, 3 SemanticMatches, 17 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 46 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=63, Invalid=279, Unknown=0, NotChecked=0, Total=342 [2021-12-16 01:00:44,306 INFO L933 BasicCegarLoop]: 134 mSDtfsCounter, 201 mSDsluCounter, 412 mSDsCounter, 0 mSdLazyCounter, 141 mSolverCounterSat, 30 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 201 SdHoareTripleChecker+Valid, 546 SdHoareTripleChecker+Invalid, 171 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 30 IncrementalHoareTripleChecker+Valid, 141 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-16 01:00:44,307 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [201 Valid, 546 Invalid, 171 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [30 Valid, 141 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-16 01:00:44,307 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 695 states. [2021-12-16 01:00:44,344 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 695 to 626. [2021-12-16 01:00:44,345 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 626 states, 488 states have (on average 1.1967213114754098) internal successors, (584), 516 states have internal predecessors, (584), 67 states have call successors, (67), 63 states have call predecessors, (67), 70 states have return successors, (129), 63 states have call predecessors, (129), 67 states have call successors, (129) [2021-12-16 01:00:44,347 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 626 states to 626 states and 780 transitions. [2021-12-16 01:00:44,347 INFO L78 Accepts]: Start accepts. Automaton has 626 states and 780 transitions. Word has length 110 [2021-12-16 01:00:44,348 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 01:00:44,348 INFO L470 AbstractCegarLoop]: Abstraction has 626 states and 780 transitions. [2021-12-16 01:00:44,348 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 14.166666666666666) internal successors, (85), 6 states have internal predecessors, (85), 3 states have call successors, (8), 4 states have call predecessors, (8), 3 states have return successors, (8), 3 states have call predecessors, (8), 3 states have call successors, (8) [2021-12-16 01:00:44,348 INFO L276 IsEmpty]: Start isEmpty. Operand 626 states and 780 transitions. [2021-12-16 01:00:44,353 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 111 [2021-12-16 01:00:44,353 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 01:00:44,354 INFO L514 BasicCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 01:00:44,377 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Forceful destruction successful, exit code 0 [2021-12-16 01:00:44,558 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 3 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable11 [2021-12-16 01:00:44,558 INFO L402 AbstractCegarLoop]: === Iteration 13 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 01:00:44,558 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 01:00:44,558 INFO L85 PathProgramCache]: Analyzing trace with hash -755467667, now seen corresponding path program 1 times [2021-12-16 01:00:44,558 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 01:00:44,559 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1420757140] [2021-12-16 01:00:44,559 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 01:00:44,559 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 01:00:44,569 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:44,581 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-16 01:00:44,581 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:44,587 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2021-12-16 01:00:44,588 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:44,593 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2021-12-16 01:00:44,594 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:44,597 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 50 [2021-12-16 01:00:44,599 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:44,622 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2021-12-16 01:00:44,624 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:44,625 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-16 01:00:44,625 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:44,627 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 95 [2021-12-16 01:00:44,629 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:44,630 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-16 01:00:44,630 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:44,633 INFO L134 CoverageAnalysis]: Checked inductivity of 74 backedges. 42 proven. 0 refuted. 0 times theorem prover too weak. 32 trivial. 0 not checked. [2021-12-16 01:00:44,633 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 01:00:44,633 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1420757140] [2021-12-16 01:00:44,633 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1420757140] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 01:00:44,633 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-16 01:00:44,633 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2021-12-16 01:00:44,633 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [769054160] [2021-12-16 01:00:44,633 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 01:00:44,634 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2021-12-16 01:00:44,634 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 01:00:44,634 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2021-12-16 01:00:44,634 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=15, Invalid=41, Unknown=0, NotChecked=0, Total=56 [2021-12-16 01:00:44,635 INFO L87 Difference]: Start difference. First operand 626 states and 780 transitions. Second operand has 8 states, 8 states have (on average 9.5) internal successors, (76), 5 states have internal predecessors, (76), 2 states have call successors, (6), 5 states have call predecessors, (6), 2 states have return successors, (6), 2 states have call predecessors, (6), 2 states have call successors, (6) [2021-12-16 01:00:44,761 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 01:00:44,761 INFO L93 Difference]: Finished difference Result 868 states and 1065 transitions. [2021-12-16 01:00:44,761 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2021-12-16 01:00:44,761 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 9.5) internal successors, (76), 5 states have internal predecessors, (76), 2 states have call successors, (6), 5 states have call predecessors, (6), 2 states have return successors, (6), 2 states have call predecessors, (6), 2 states have call successors, (6) Word has length 110 [2021-12-16 01:00:44,761 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 01:00:44,762 INFO L225 Difference]: With dead ends: 868 [2021-12-16 01:00:44,762 INFO L226 Difference]: Without dead ends: 0 [2021-12-16 01:00:44,763 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 27 GetRequests, 17 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 14 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=39, Invalid=93, Unknown=0, NotChecked=0, Total=132 [2021-12-16 01:00:44,764 INFO L933 BasicCegarLoop]: 73 mSDtfsCounter, 136 mSDsluCounter, 209 mSDsCounter, 0 mSdLazyCounter, 168 mSolverCounterSat, 38 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 138 SdHoareTripleChecker+Valid, 282 SdHoareTripleChecker+Invalid, 206 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 38 IncrementalHoareTripleChecker+Valid, 168 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-16 01:00:44,764 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [138 Valid, 282 Invalid, 206 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [38 Valid, 168 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-16 01:00:44,764 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2021-12-16 01:00:44,764 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2021-12-16 01:00:44,764 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-16 01:00:44,765 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2021-12-16 01:00:44,765 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 110 [2021-12-16 01:00:44,765 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 01:00:44,765 INFO L470 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2021-12-16 01:00:44,765 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 9.5) internal successors, (76), 5 states have internal predecessors, (76), 2 states have call successors, (6), 5 states have call predecessors, (6), 2 states have return successors, (6), 2 states have call predecessors, (6), 2 states have call successors, (6) [2021-12-16 01:00:44,765 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2021-12-16 01:00:44,765 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2021-12-16 01:00:44,767 INFO L764 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2021-12-16 01:00:44,767 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable12 [2021-12-16 01:00:44,769 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2021-12-16 01:00:46,976 INFO L854 garLoopResultBuilder]: At program point deactivatePumpENTRY(lines 423 430) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 |old(~pumpRunning~0)|))) (and (or .cse0 (not (= ~systemActive~0 1))) (or (= 0 ~systemActive~0) .cse0 (not (<= 2 ~waterLevel~0))))) [2021-12-16 01:00:46,976 INFO L858 garLoopResultBuilder]: For program point deactivatePumpEXIT(lines 423 430) no Hoare annotation was computed. [2021-12-16 01:00:46,976 INFO L858 garLoopResultBuilder]: For program point deactivatePumpFINAL(lines 423 430) no Hoare annotation was computed. [2021-12-16 01:00:46,976 INFO L858 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 356 362) no Hoare annotation was computed. [2021-12-16 01:00:46,976 INFO L861 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 356 362) the Hoare annotation is: true [2021-12-16 01:00:46,976 INFO L861 garLoopResultBuilder]: At program point changeMethaneLevelENTRY(lines 214 225) the Hoare annotation is: true [2021-12-16 01:00:46,976 INFO L858 garLoopResultBuilder]: For program point L218-1(lines 214 225) no Hoare annotation was computed. [2021-12-16 01:00:46,976 INFO L858 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 214 225) no Hoare annotation was computed. [2021-12-16 01:00:46,977 INFO L854 garLoopResultBuilder]: At program point L263(lines 258 266) the Hoare annotation is: (let ((.cse5 (<= 2 |timeShift_getWaterLevel_#res#1|)) (.cse10 (<= 2 ~waterLevel~0)) (.cse11 (= ~waterLevel~0 |old(~waterLevel~0)|)) (.cse9 (= ~pumpRunning~0 0))) (let ((.cse3 (not (= ~systemActive~0 0))) (.cse6 (and .cse11 .cse9)) (.cse7 (and .cse5 .cse11 .cse10)) (.cse0 (not (= |old(~waterLevel~0)| 1))) (.cse1 (= |timeShift_getWaterLevel_#res#1| 1)) (.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse4 (not (<= 2 |old(~waterLevel~0)|))) (.cse8 (not (= ~systemActive~0 1)))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse4 .cse5 .cse2 .cse3) (or .cse6 .cse2 .cse3) (or .cse4 .cse7 .cse2 .cse8) (or .cse6 .cse7 .cse2 .cse8 (not (<= 1 |old(~waterLevel~0)|))) (or .cse0 .cse1 .cse2 .cse8) (or .cse4 (and (<= 1 |timeShift_isLowWaterLevel_~tmp___0~2#1|) (<= 1 |timeShift_isLowWaterLevel_#res#1|) (<= 1 |timeShift_processEnvironment_~tmp~3#1|) (<= 1 ~waterLevel~0) (<= 1 |timeShift_getWaterLevel_#res#1|) .cse9) (and .cse5 .cse10) .cse8)))) [2021-12-16 01:00:46,977 INFO L858 garLoopResultBuilder]: For program point timeShiftFINAL(lines 332 355) no Hoare annotation was computed. [2021-12-16 01:00:46,977 INFO L858 garLoopResultBuilder]: For program point L515(lines 515 519) no Hoare annotation was computed. [2021-12-16 01:00:46,977 INFO L858 garLoopResultBuilder]: For program point L515-2(lines 515 519) no Hoare annotation was computed. [2021-12-16 01:00:46,978 INFO L854 garLoopResultBuilder]: At program point L404(line 404) the Hoare annotation is: (let ((.cse1 (not (= |old(~pumpRunning~0)| 0))) (.cse0 (not (= ~systemActive~0 1)))) (and (or (not (<= 2 |old(~waterLevel~0)|)) .cse0) (or .cse1 (not (= ~systemActive~0 0))) (or .cse1 .cse0 (not (<= 1 |old(~waterLevel~0)|))))) [2021-12-16 01:00:46,985 INFO L854 garLoopResultBuilder]: At program point L400(line 400) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= ~systemActive~0 1)))) (and (or .cse0 (not (= ~systemActive~0 0))) (or .cse0 .cse1 (not (<= 1 |old(~waterLevel~0)|))) (or (not (<= 2 |old(~waterLevel~0)|)) (and (<= 1 |timeShift_isLowWaterLevel_~tmp___0~2#1|) (<= 1 |timeShift_isLowWaterLevel_#res#1|) (= |timeShift_isLowWaterSensorDry_#res#1| 0) (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 |timeShift_processEnvironment_~tmp~3#1|) (= |timeShift_isLowWaterLevel_~tmp~5#1| 0) (<= 1 ~waterLevel~0)) .cse1))) [2021-12-16 01:00:46,985 INFO L858 garLoopResultBuilder]: For program point L169(lines 169 175) no Hoare annotation was computed. [2021-12-16 01:00:46,985 INFO L858 garLoopResultBuilder]: For program point L165(lines 165 178) no Hoare annotation was computed. [2021-12-16 01:00:46,985 INFO L854 garLoopResultBuilder]: At program point L165-1(lines 157 181) the Hoare annotation is: (let ((.cse2 (<= 2 |timeShift___utac_acc__Specification4_spec__1_~tmp~1#1|)) (.cse3 (<= 2 |timeShift_getWaterLevel_#res#1|)) (.cse9 (<= 2 ~waterLevel~0)) (.cse12 (= ~waterLevel~0 |old(~waterLevel~0)|)) (.cse8 (= ~pumpRunning~0 0))) (let ((.cse5 (and .cse12 .cse8)) (.cse0 (not (<= 2 |old(~waterLevel~0)|))) (.cse6 (not (= ~systemActive~0 1))) (.cse7 (and .cse2 .cse3 .cse12 .cse9)) (.cse10 (not (= |old(~waterLevel~0)| 1))) (.cse11 (and (= |timeShift_getWaterLevel_#res#1| 1) (= |timeShift___utac_acc__Specification4_spec__1_~tmp~1#1| 1))) (.cse1 (not (= |old(~pumpRunning~0)| 0))) (.cse4 (not (= ~systemActive~0 0)))) (and (or .cse0 .cse1 (and .cse2 .cse3) .cse4) (or .cse5 .cse1 .cse6 (not (<= 1 |old(~waterLevel~0)|)) .cse7) (or .cse5 .cse1 .cse4) (or .cse0 (and (<= 1 |timeShift_isLowWaterLevel_~tmp___0~2#1|) (<= 1 |timeShift_isLowWaterLevel_#res#1|) (<= 1 |timeShift_processEnvironment_~tmp~3#1|) (<= 1 ~waterLevel~0) (<= 1 |timeShift_getWaterLevel_#res#1|) (<= 1 |timeShift___utac_acc__Specification4_spec__1_~tmp~1#1|) .cse8) (and .cse2 .cse3 .cse9) .cse6) (or .cse10 .cse11 .cse1 .cse6) (or .cse0 .cse1 .cse6 .cse7) (or .cse10 .cse11 .cse1 .cse4)))) [2021-12-16 01:00:46,985 INFO L858 garLoopResultBuilder]: For program point L194(lines 194 198) no Hoare annotation was computed. [2021-12-16 01:00:46,986 INFO L854 garLoopResultBuilder]: At program point L194-2(lines 190 201) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= ~systemActive~0 1)))) (and (or .cse0 (not (= ~systemActive~0 0))) (or (not (<= 2 |old(~waterLevel~0)|)) (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 ~waterLevel~0)) .cse1) (or .cse0 .cse1 (not (<= 1 |old(~waterLevel~0)|))))) [2021-12-16 01:00:46,986 INFO L854 garLoopResultBuilder]: At program point L409(line 409) the Hoare annotation is: (let ((.cse1 (not (= |old(~pumpRunning~0)| 0))) (.cse0 (= ~pumpRunning~0 0)) (.cse2 (not (= ~systemActive~0 1)))) (and (or (and (= ~waterLevel~0 |old(~waterLevel~0)|) .cse0) .cse1 .cse2 (not (<= 1 |old(~waterLevel~0)|))) (or .cse1 (not (= ~systemActive~0 0))) (or (not (<= 2 |old(~waterLevel~0)|)) (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse0) .cse2))) [2021-12-16 01:00:46,986 INFO L854 garLoopResultBuilder]: At program point L409-1(lines 390 414) the Hoare annotation is: (let ((.cse3 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (<= 2 ~waterLevel~0)) (.cse2 (= ~pumpRunning~0 0)) (.cse4 (not (= ~systemActive~0 1)))) (and (let ((.cse0 (= ~waterLevel~0 |old(~waterLevel~0)|))) (or (and .cse0 .cse1) (and .cse0 .cse2) .cse3 .cse4 (not (<= 1 |old(~waterLevel~0)|)))) (or .cse3 (not (= ~systemActive~0 0))) (or (not (<= 2 |old(~waterLevel~0)|)) .cse1 (and (<= 1 |timeShift_isLowWaterLevel_~tmp___0~2#1|) (<= 1 |timeShift_isLowWaterLevel_#res#1|) (<= 1 |timeShift_processEnvironment_~tmp~3#1|) (<= 1 ~waterLevel~0) .cse2) .cse4))) [2021-12-16 01:00:46,986 INFO L858 garLoopResultBuilder]: For program point L343-1(lines 343 349) no Hoare annotation was computed. [2021-12-16 01:00:46,986 INFO L854 garLoopResultBuilder]: At program point L521(lines 506 524) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= ~systemActive~0 1)))) (and (or .cse0 (not (= ~systemActive~0 0))) (or (not (<= 2 |old(~waterLevel~0)|)) .cse1 (and (<= 1 |timeShift_isLowWaterLevel_~tmp___0~2#1|) (<= 1 |timeShift_isLowWaterLevel_#res#1|) (= |timeShift_isLowWaterSensorDry_#res#1| 0) (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= |timeShift_isLowWaterLevel_~tmp~5#1| 0) (<= 1 ~waterLevel~0))) (or .cse0 .cse1 (not (<= 1 |old(~waterLevel~0)|))))) [2021-12-16 01:00:46,986 INFO L858 garLoopResultBuilder]: For program point L612(line 612) no Hoare annotation was computed. [2021-12-16 01:00:46,986 INFO L854 garLoopResultBuilder]: At program point L447(lines 442 450) the Hoare annotation is: (let ((.cse2 (not (<= 2 |old(~waterLevel~0)|))) (.cse1 (not (= ~systemActive~0 0))) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (not (= ~systemActive~0 1)))) (and (or (not (= |old(~waterLevel~0)| 1)) .cse0 .cse1) (or .cse2 .cse3) (or .cse2 .cse0 .cse1) (or (and (= |timeShift_isPumpRunning_#res#1| 0) (= ~waterLevel~0 |old(~waterLevel~0)|) (= ~pumpRunning~0 0)) .cse0 .cse1) (or .cse0 .cse3 (not (<= 1 |old(~waterLevel~0)|))))) [2021-12-16 01:00:46,987 INFO L854 garLoopResultBuilder]: At program point L286(lines 281 289) the Hoare annotation is: (let ((.cse1 (not (= |old(~pumpRunning~0)| 0))) (.cse0 (not (= ~systemActive~0 1)))) (and (or (not (<= 2 |old(~waterLevel~0)|)) (and (= |timeShift_isLowWaterSensorDry_#res#1| 0) (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 ~waterLevel~0)) .cse0) (or .cse1 (not (= ~systemActive~0 0))) (or .cse1 .cse0 (not (<= 1 |old(~waterLevel~0)|))))) [2021-12-16 01:00:46,987 INFO L854 garLoopResultBuilder]: At program point timeShiftENTRY(lines 332 355) the Hoare annotation is: (let ((.cse0 (= ~waterLevel~0 |old(~waterLevel~0)|))) (let ((.cse1 (not (= ~systemActive~0 1))) (.cse2 (and .cse0 (= ~pumpRunning~0 0))) (.cse3 (not (= |old(~pumpRunning~0)| 0)))) (and (or (not (<= 2 |old(~waterLevel~0)|)) (and .cse0 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) .cse1) (or .cse2 .cse3 .cse1 (not (<= 1 |old(~waterLevel~0)|))) (or .cse2 .cse3 (not (= ~systemActive~0 0)))))) [2021-12-16 01:00:46,987 INFO L858 garLoopResultBuilder]: For program point L336-1(lines 335 354) no Hoare annotation was computed. [2021-12-16 01:00:46,987 INFO L858 garLoopResultBuilder]: For program point L398(lines 398 406) no Hoare annotation was computed. [2021-12-16 01:00:46,987 INFO L858 garLoopResultBuilder]: For program point timeShiftEXIT(lines 332 355) no Hoare annotation was computed. [2021-12-16 01:00:46,987 INFO L858 garLoopResultBuilder]: For program point L394(lines 394 411) no Hoare annotation was computed. [2021-12-16 01:00:46,987 INFO L858 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 612) no Hoare annotation was computed. [2021-12-16 01:00:46,987 INFO L854 garLoopResultBuilder]: At program point L613(lines 608 615) the Hoare annotation is: (let ((.cse1 (not (= |old(~pumpRunning~0)| 0))) (.cse0 (not (= ~systemActive~0 1)))) (and (or (not (<= 2 |old(~waterLevel~0)|)) .cse0) (or .cse1 (not (= ~systemActive~0 0))) (or .cse1 .cse0 (not (<= 1 |old(~waterLevel~0)|))))) [2021-12-16 01:00:46,988 INFO L861 garLoopResultBuilder]: At program point L66-1(lines 66 70) the Hoare annotation is: true [2021-12-16 01:00:46,988 INFO L858 garLoopResultBuilder]: For program point cleanupEXIT(lines 52 81) no Hoare annotation was computed. [2021-12-16 01:00:46,988 INFO L858 garLoopResultBuilder]: For program point L63(line 63) no Hoare annotation was computed. [2021-12-16 01:00:46,988 INFO L861 garLoopResultBuilder]: At program point cleanupENTRY(lines 52 81) the Hoare annotation is: true [2021-12-16 01:00:46,988 INFO L861 garLoopResultBuilder]: At program point L62-2(lines 62 76) the Hoare annotation is: true [2021-12-16 01:00:46,988 INFO L861 garLoopResultBuilder]: At program point L58(line 58) the Hoare annotation is: true [2021-12-16 01:00:46,988 INFO L858 garLoopResultBuilder]: For program point L58-1(line 58) no Hoare annotation was computed. [2021-12-16 01:00:46,988 INFO L861 garLoopResultBuilder]: At program point L77(lines 52 81) the Hoare annotation is: true [2021-12-16 01:00:46,988 INFO L858 garLoopResultBuilder]: For program point L73(line 73) no Hoare annotation was computed. [2021-12-16 01:00:46,988 INFO L858 garLoopResultBuilder]: For program point L66(lines 66 70) no Hoare annotation was computed. [2021-12-16 01:00:46,989 INFO L854 garLoopResultBuilder]: At program point L531(line 531) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 (<= 2 ~waterLevel~0) (not (= 0 ~systemActive~0))) (and .cse0 (= ~systemActive~0 1)))) [2021-12-16 01:00:46,989 INFO L858 garLoopResultBuilder]: For program point L552(lines 551 598) no Hoare annotation was computed. [2021-12-16 01:00:46,989 INFO L858 garLoopResultBuilder]: For program point L581(lines 581 594) no Hoare annotation was computed. [2021-12-16 01:00:46,989 INFO L854 garLoopResultBuilder]: At program point L321(lines 316 324) the Hoare annotation is: (and (= ~waterLevel~0 1) (= ~systemActive~0 1) (= ~pumpRunning~0 0)) [2021-12-16 01:00:46,989 INFO L858 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2021-12-16 01:00:46,989 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startENTRY(line -1) no Hoare annotation was computed. [2021-12-16 01:00:46,989 INFO L854 garLoopResultBuilder]: At program point L573(line 573) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= ~systemActive~0 1)) (.cse2 (= ~pumpRunning~0 0))) (or (and .cse0 (<= 2 ~waterLevel~0) .cse1) (and .cse0 (= ~systemActive~0 0) .cse2) (and .cse0 (<= 1 ~waterLevel~0) .cse1 .cse2))) [2021-12-16 01:00:46,989 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2021-12-16 01:00:46,989 INFO L861 garLoopResultBuilder]: At program point L602(lines 541 606) the Hoare annotation is: true [2021-12-16 01:00:46,990 INFO L854 garLoopResultBuilder]: At program point L313(lines 309 315) the Hoare annotation is: (and (= ~waterLevel~0 1) (= ~systemActive~0 1) (= ~pumpRunning~0 0)) [2021-12-16 01:00:46,990 INFO L858 garLoopResultBuilder]: For program point L561(lines 561 567) no Hoare annotation was computed. [2021-12-16 01:00:46,990 INFO L858 garLoopResultBuilder]: For program point L561-1(lines 561 567) no Hoare annotation was computed. [2021-12-16 01:00:46,990 INFO L858 garLoopResultBuilder]: For program point L140(lines 140 147) no Hoare annotation was computed. [2021-12-16 01:00:46,990 INFO L858 garLoopResultBuilder]: For program point L140-2(lines 140 147) no Hoare annotation was computed. [2021-12-16 01:00:46,990 INFO L858 garLoopResultBuilder]: For program point L553(lines 553 557) no Hoare annotation was computed. [2021-12-16 01:00:46,990 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2021-12-16 01:00:46,991 INFO L861 garLoopResultBuilder]: At program point L124(lines 117 126) the Hoare annotation is: true [2021-12-16 01:00:46,991 INFO L854 garLoopResultBuilder]: At program point L537(lines 525 539) the Hoare annotation is: (and (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0) (= ~systemActive~0 0) (= ~pumpRunning~0 0)) [2021-12-16 01:00:46,991 INFO L854 garLoopResultBuilder]: At program point L599(lines 550 600) the Hoare annotation is: false [2021-12-16 01:00:46,991 INFO L861 garLoopResultBuilder]: At program point L149(lines 130 152) the Hoare annotation is: true [2021-12-16 01:00:46,991 INFO L854 garLoopResultBuilder]: At program point L306(lines 302 308) the Hoare annotation is: (and (= ~waterLevel~0 1) (= ~systemActive~0 1) (= ~pumpRunning~0 0)) [2021-12-16 01:00:46,991 INFO L858 garLoopResultBuilder]: For program point L529(lines 529 535) no Hoare annotation was computed. [2021-12-16 01:00:46,991 INFO L858 garLoopResultBuilder]: For program point L529-1(lines 529 535) no Hoare annotation was computed. [2021-12-16 01:00:46,992 INFO L858 garLoopResultBuilder]: For program point L587(lines 587 593) no Hoare annotation was computed. [2021-12-16 01:00:46,992 INFO L854 garLoopResultBuilder]: At program point L587-2(lines 581 594) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= ~systemActive~0 1)) (.cse2 (= ~pumpRunning~0 0))) (or (and .cse0 (<= 2 ~waterLevel~0) .cse1) (and .cse0 (= ~systemActive~0 0) .cse2) (and .cse0 (<= 1 ~waterLevel~0) .cse1 .cse2))) [2021-12-16 01:00:46,992 INFO L858 garLoopResultBuilder]: For program point L571(lines 571 577) no Hoare annotation was computed. [2021-12-16 01:00:46,992 INFO L858 garLoopResultBuilder]: For program point L571-1(lines 571 577) no Hoare annotation was computed. [2021-12-16 01:00:46,992 INFO L854 garLoopResultBuilder]: At program point L596(lines 551 598) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= ~systemActive~0 1)) (.cse2 (= ~pumpRunning~0 0))) (or (and .cse0 (<= 2 ~waterLevel~0) .cse1) (and .cse0 (= ~systemActive~0 0) .cse2) (and .cse0 (<= 1 ~waterLevel~0) .cse1 .cse2))) [2021-12-16 01:00:46,992 INFO L854 garLoopResultBuilder]: At program point L563(line 563) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= ~systemActive~0 1)) (.cse2 (= ~pumpRunning~0 0))) (or (and .cse0 (<= 2 ~waterLevel~0) .cse1) (and .cse0 (= ~systemActive~0 0) .cse2) (and .cse0 (<= 1 ~waterLevel~0) .cse1 .cse2))) [2021-12-16 01:00:46,993 INFO L854 garLoopResultBuilder]: At program point L113(lines 109 115) the Hoare annotation is: (and (= ~waterLevel~0 1) (= ~systemActive~0 1) (= ~pumpRunning~0 0)) [2021-12-16 01:00:46,993 INFO L854 garLoopResultBuilder]: At program point processEnvironment__wrappee__highWaterSensorENTRY(lines 364 388) the Hoare annotation is: (or (not (<= 1 ~waterLevel~0)) (not (= |old(~pumpRunning~0)| 0)) (not (= ~systemActive~0 1)) (= ~pumpRunning~0 0)) [2021-12-16 01:00:46,993 INFO L854 garLoopResultBuilder]: At program point L378(line 378) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= ~systemActive~0 1)))) (and (or (not (<= 1 ~waterLevel~0)) (and (= |processEnvironment__wrappee__highWaterSensor_~tmp~2#1| 0) (= ~pumpRunning~0 0)) .cse0 .cse1) (or (not (= ~waterLevel~0 1)) (and (= |processEnvironment__wrappee__highWaterSensor_isHighWaterSensorDry_#res#1| 1) (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp~4#1| 1) (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_#res#1| 0) (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp___0~1#1| 0)) .cse0 .cse1))) [2021-12-16 01:00:46,993 INFO L854 garLoopResultBuilder]: At program point L502(lines 487 505) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= ~systemActive~0 1)))) (and (or (and (= |processEnvironment__wrappee__highWaterSensor_isHighWaterSensorDry_#res#1| 1) (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp~4#1| 1)) (not (= ~waterLevel~0 1)) .cse0 .cse1) (let ((.cse2 (= ~pumpRunning~0 |old(~pumpRunning~0)|))) (or (and (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_#res#1| 0) (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp___0~1#1| 0) .cse2) (and .cse2 (<= 2 ~waterLevel~0)) (not (<= 1 ~waterLevel~0)) .cse0 .cse1)))) [2021-12-16 01:00:46,994 INFO L858 garLoopResultBuilder]: For program point L372(lines 372 380) no Hoare annotation was computed. [2021-12-16 01:00:46,995 INFO L858 garLoopResultBuilder]: For program point L368(lines 368 385) no Hoare annotation was computed. [2021-12-16 01:00:46,995 INFO L858 garLoopResultBuilder]: For program point L496(lines 496 500) no Hoare annotation was computed. [2021-12-16 01:00:46,995 INFO L858 garLoopResultBuilder]: For program point L271(lines 271 277) no Hoare annotation was computed. [2021-12-16 01:00:46,996 INFO L858 garLoopResultBuilder]: For program point L496-2(lines 496 500) no Hoare annotation was computed. [2021-12-16 01:00:46,996 INFO L854 garLoopResultBuilder]: At program point L420(lines 415 422) the Hoare annotation is: (or (not (<= 1 ~waterLevel~0)) (not (= |old(~pumpRunning~0)| 0)) (<= 2 ~waterLevel~0) (not (= ~systemActive~0 1))) [2021-12-16 01:00:46,996 INFO L854 garLoopResultBuilder]: At program point L383(line 383) the Hoare annotation is: (or (not (<= 1 ~waterLevel~0)) (not (= |old(~pumpRunning~0)| 0)) (not (= ~systemActive~0 1))) [2021-12-16 01:00:46,996 INFO L858 garLoopResultBuilder]: For program point L383-1(lines 364 388) no Hoare annotation was computed. [2021-12-16 01:00:46,996 INFO L858 garLoopResultBuilder]: For program point processEnvironment__wrappee__highWaterSensorEXIT(lines 364 388) no Hoare annotation was computed. [2021-12-16 01:00:46,996 INFO L854 garLoopResultBuilder]: At program point L276(lines 267 280) the Hoare annotation is: (let ((.cse1 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (not (= ~systemActive~0 1))) (.cse0 (= ~pumpRunning~0 0))) (and (or (not (= ~waterLevel~0 1)) (and (= |processEnvironment__wrappee__highWaterSensor_isHighWaterSensorDry_#res#1| 1) .cse0) .cse1 .cse2) (or .cse1 .cse2 (not (<= 2 ~waterLevel~0)) .cse0))) [2021-12-16 01:00:46,997 INFO L858 garLoopResultBuilder]: For program point waterRiseEXIT(lines 202 213) no Hoare annotation was computed. [2021-12-16 01:00:46,997 INFO L858 garLoopResultBuilder]: For program point L206-1(lines 202 213) no Hoare annotation was computed. [2021-12-16 01:00:46,997 INFO L854 garLoopResultBuilder]: At program point waterRiseENTRY(lines 202 213) the Hoare annotation is: (let ((.cse0 (not (= ~pumpRunning~0 0))) (.cse1 (= ~waterLevel~0 |old(~waterLevel~0)|)) (.cse2 (not (= ~systemActive~0 1)))) (and (or .cse0 .cse1 .cse2 (not (<= 1 |old(~waterLevel~0)|))) (or .cse0 .cse1 (not (= ~systemActive~0 0))) (or (not (<= 2 |old(~waterLevel~0)|)) .cse1 .cse2))) [2021-12-16 01:00:47,000 INFO L732 BasicCegarLoop]: Path program histogram: [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 01:00:47,001 INFO L179 ceAbstractionStarter]: Computing trace abstraction results [2021-12-16 01:00:47,034 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 16.12 01:00:47 BoogieIcfgContainer [2021-12-16 01:00:47,037 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2021-12-16 01:00:47,038 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2021-12-16 01:00:47,039 INFO L271 PluginConnector]: Initializing Witness Printer... [2021-12-16 01:00:47,039 INFO L275 PluginConnector]: Witness Printer initialized [2021-12-16 01:00:47,040 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 16.12 01:00:40" (3/4) ... [2021-12-16 01:00:47,042 INFO L137 WitnessPrinter]: Generating witness for correct program [2021-12-16 01:00:47,047 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure deactivatePump [2021-12-16 01:00:47,047 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2021-12-16 01:00:47,047 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2021-12-16 01:00:47,047 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2021-12-16 01:00:47,047 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2021-12-16 01:00:47,047 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__highWaterSensor [2021-12-16 01:00:47,047 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2021-12-16 01:00:47,058 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 53 nodes and edges [2021-12-16 01:00:47,059 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 22 nodes and edges [2021-12-16 01:00:47,059 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 11 nodes and edges [2021-12-16 01:00:47,059 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2021-12-16 01:00:47,060 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2021-12-16 01:00:47,060 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-12-16 01:00:47,060 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-12-16 01:00:47,079 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(\old(pumpRunning) == 0) || !(systemActive == 0)) && ((!(2 <= \old(waterLevel)) || (pumpRunning == \old(pumpRunning) && 1 <= waterLevel)) || !(systemActive == 1))) && ((!(\old(pumpRunning) == 0) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) [2021-12-16 01:00:47,080 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((waterLevel == \old(waterLevel) && 2 <= waterLevel) || (waterLevel == \old(waterLevel) && pumpRunning == 0)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) && (!(\old(pumpRunning) == 0) || !(systemActive == 0))) && (((!(2 <= \old(waterLevel)) || 2 <= waterLevel) || ((((1 <= tmp___0 && 1 <= \result) && 1 <= tmp) && 1 <= waterLevel) && pumpRunning == 0)) || !(systemActive == 1)) [2021-12-16 01:00:47,081 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((!(\old(waterLevel) == 1) || \result == 1) || !(\old(pumpRunning) == 0)) || !(systemActive == 0)) && (((!(2 <= \old(waterLevel)) || 2 <= \result) || !(\old(pumpRunning) == 0)) || !(systemActive == 0))) && (((waterLevel == \old(waterLevel) && pumpRunning == 0) || !(\old(pumpRunning) == 0)) || !(systemActive == 0))) && (((!(2 <= \old(waterLevel)) || ((2 <= \result && waterLevel == \old(waterLevel)) && 2 <= waterLevel)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1))) && (((((waterLevel == \old(waterLevel) && pumpRunning == 0) || ((2 <= \result && waterLevel == \old(waterLevel)) && 2 <= waterLevel)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel)))) && (((!(\old(waterLevel) == 1) || \result == 1) || !(\old(pumpRunning) == 0)) || !(systemActive == 1))) && (((!(2 <= \old(waterLevel)) || (((((1 <= tmp___0 && 1 <= \result) && 1 <= tmp) && 1 <= waterLevel) && 1 <= \result) && pumpRunning == 0)) || (2 <= \result && 2 <= waterLevel)) || !(systemActive == 1)) [2021-12-16 01:00:47,081 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((!(2 <= \old(waterLevel)) || !(\old(pumpRunning) == 0)) || (2 <= tmp && 2 <= \result)) || !(systemActive == 0)) && (((((waterLevel == \old(waterLevel) && pumpRunning == 0) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) || (((2 <= tmp && 2 <= \result) && waterLevel == \old(waterLevel)) && 2 <= waterLevel))) && (((waterLevel == \old(waterLevel) && pumpRunning == 0) || !(\old(pumpRunning) == 0)) || !(systemActive == 0))) && (((!(2 <= \old(waterLevel)) || ((((((1 <= tmp___0 && 1 <= \result) && 1 <= tmp) && 1 <= waterLevel) && 1 <= \result) && 1 <= tmp) && pumpRunning == 0)) || ((2 <= tmp && 2 <= \result) && 2 <= waterLevel)) || !(systemActive == 1))) && (((!(\old(waterLevel) == 1) || (\result == 1 && tmp == 1)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1))) && (((!(2 <= \old(waterLevel)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) || (((2 <= tmp && 2 <= \result) && waterLevel == \old(waterLevel)) && 2 <= waterLevel))) && (((!(\old(waterLevel) == 1) || (\result == 1 && tmp == 1)) || !(\old(pumpRunning) == 0)) || !(systemActive == 0)) [2021-12-16 01:00:47,081 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(2 <= \old(waterLevel)) || ((\result == 0 && pumpRunning == \old(pumpRunning)) && 1 <= waterLevel)) || !(systemActive == 1)) && (!(\old(pumpRunning) == 0) || !(systemActive == 0))) && ((!(\old(pumpRunning) == 0) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) [2021-12-16 01:00:47,081 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(waterLevel == 1) || (\result == 1 && pumpRunning == 0)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) && (((!(\old(pumpRunning) == 0) || !(systemActive == 1)) || !(2 <= waterLevel)) || pumpRunning == 0) [2021-12-16 01:00:47,082 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!(\old(waterLevel) == 1) || !(\old(pumpRunning) == 0)) || !(systemActive == 0)) && (!(2 <= \old(waterLevel)) || !(systemActive == 1))) && ((!(2 <= \old(waterLevel)) || !(\old(pumpRunning) == 0)) || !(systemActive == 0))) && ((((\result == 0 && waterLevel == \old(waterLevel)) && pumpRunning == 0) || !(\old(pumpRunning) == 0)) || !(systemActive == 0))) && ((!(\old(pumpRunning) == 0) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) [2021-12-16 01:00:47,082 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(\old(pumpRunning) == 0) || !(systemActive == 0)) && ((!(2 <= \old(waterLevel)) || !(systemActive == 1)) || (((((1 <= tmp___0 && 1 <= \result) && \result == 0) && pumpRunning == \old(pumpRunning)) && tmp == 0) && 1 <= waterLevel))) && ((!(\old(pumpRunning) == 0) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) [2021-12-16 01:00:47,082 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((\result == 1 && tmp == 1) || !(waterLevel == 1)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) && ((((((\result == 0 && tmp___0 == 0) && pumpRunning == \old(pumpRunning)) || (pumpRunning == \old(pumpRunning) && 2 <= waterLevel)) || !(1 <= waterLevel)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) [2021-12-16 01:00:47,082 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(2 <= \old(waterLevel)) || !(systemActive == 1)) && (!(\old(pumpRunning) == 0) || !(systemActive == 0))) && ((!(\old(pumpRunning) == 0) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) [2021-12-16 01:00:47,082 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(1 <= waterLevel) || !(\old(pumpRunning) == 0)) || 2 <= waterLevel) || !(systemActive == 1) [2021-12-16 01:00:47,114 INFO L141 WitnessManager]: Wrote witness to /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/witness.graphml [2021-12-16 01:00:47,114 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2021-12-16 01:00:47,115 INFO L158 Benchmark]: Toolchain (without parser) took 7811.98ms. Allocated memory was 92.3MB in the beginning and 176.2MB in the end (delta: 83.9MB). Free memory was 61.4MB in the beginning and 115.7MB in the end (delta: -54.3MB). Peak memory consumption was 29.8MB. Max. memory is 16.1GB. [2021-12-16 01:00:47,115 INFO L158 Benchmark]: CDTParser took 0.13ms. Allocated memory is still 92.3MB. Free memory was 49.8MB in the beginning and 49.8MB in the end (delta: 38.1kB). There was no memory consumed. Max. memory is 16.1GB. [2021-12-16 01:00:47,115 INFO L158 Benchmark]: CACSL2BoogieTranslator took 323.87ms. Allocated memory is still 92.3MB. Free memory was 61.2MB in the beginning and 60.3MB in the end (delta: 868.1kB). Peak memory consumption was 10.5MB. Max. memory is 16.1GB. [2021-12-16 01:00:47,116 INFO L158 Benchmark]: Boogie Procedure Inliner took 45.14ms. Allocated memory is still 92.3MB. Free memory was 60.3MB in the beginning and 57.9MB in the end (delta: 2.5MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2021-12-16 01:00:47,116 INFO L158 Benchmark]: Boogie Preprocessor took 27.02ms. Allocated memory is still 92.3MB. Free memory was 57.9MB in the beginning and 56.1MB in the end (delta: 1.7MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2021-12-16 01:00:47,117 INFO L158 Benchmark]: RCFGBuilder took 401.96ms. Allocated memory was 92.3MB in the beginning and 121.6MB in the end (delta: 29.4MB). Free memory was 56.1MB in the beginning and 93.9MB in the end (delta: -37.8MB). Peak memory consumption was 17.3MB. Max. memory is 16.1GB. [2021-12-16 01:00:47,117 INFO L158 Benchmark]: TraceAbstraction took 6932.84ms. Allocated memory was 121.6MB in the beginning and 176.2MB in the end (delta: 54.5MB). Free memory was 93.3MB in the beginning and 123.1MB in the end (delta: -29.7MB). Peak memory consumption was 101.4MB. Max. memory is 16.1GB. [2021-12-16 01:00:47,118 INFO L158 Benchmark]: Witness Printer took 76.34ms. Allocated memory is still 176.2MB. Free memory was 123.1MB in the beginning and 115.7MB in the end (delta: 7.3MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. [2021-12-16 01:00:47,125 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.13ms. Allocated memory is still 92.3MB. Free memory was 49.8MB in the beginning and 49.8MB in the end (delta: 38.1kB). There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 323.87ms. Allocated memory is still 92.3MB. Free memory was 61.2MB in the beginning and 60.3MB in the end (delta: 868.1kB). Peak memory consumption was 10.5MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 45.14ms. Allocated memory is still 92.3MB. Free memory was 60.3MB in the beginning and 57.9MB in the end (delta: 2.5MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 27.02ms. Allocated memory is still 92.3MB. Free memory was 57.9MB in the beginning and 56.1MB in the end (delta: 1.7MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 401.96ms. Allocated memory was 92.3MB in the beginning and 121.6MB in the end (delta: 29.4MB). Free memory was 56.1MB in the beginning and 93.9MB in the end (delta: -37.8MB). Peak memory consumption was 17.3MB. Max. memory is 16.1GB. * TraceAbstraction took 6932.84ms. Allocated memory was 121.6MB in the beginning and 176.2MB in the end (delta: 54.5MB). Free memory was 93.3MB in the beginning and 123.1MB in the end (delta: -29.7MB). Peak memory consumption was 101.4MB. Max. memory is 16.1GB. * Witness Printer took 76.34ms. Allocated memory is still 176.2MB. Free memory was 123.1MB in the beginning and 115.7MB in the end (delta: 7.3MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 612]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 8 procedures, 89 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 6.9s, OverallIterations: 13, TraceHistogramMax: 3, PathProgramHistogramMax: 2, EmptinessCheckTime: 0.0s, AutomataDifference: 2.0s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 2.2s, InitialAbstractionConstructionTime: 0.0s, PartialOrderReductionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 1592 SdHoareTripleChecker+Valid, 1.1s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 1568 mSDsluCounter, 4321 SdHoareTripleChecker+Invalid, 0.9s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 2954 mSDsCounter, 384 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 1834 IncrementalHoareTripleChecker+Invalid, 2218 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 384 mSolverCounterUnsat, 1367 mSDtfsCounter, 1834 mSolverCounterSat, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 467 GetRequests, 343 SyntacticMatches, 7 SemanticMatches, 117 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 337 ImplicationChecksByTransitivity, 0.6s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=626occurred in iteration=12, InterpolantAutomatonStates: 116, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.3s AutomataMinimizationTime, 13 MinimizatonAttempts, 340 StatesRemovedByMinimization, 9 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 41 LocationsWithAnnotation, 1565 PreInvPairs, 1703 NumberOfFragments, 1269 HoareAnnotationTreeSize, 1565 FomulaSimplifications, 1932 FormulaSimplificationTreeSizeReduction, 0.4s HoareSimplificationTime, 41 FomulaSimplificationsInter, 17151 FormulaSimplificationTreeSizeReductionInter, 1.8s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.3s SatisfiabilityAnalysisTime, 1.2s InterpolantComputationTime, 826 NumberOfCodeBlocks, 826 NumberOfCodeBlocksAsserted, 16 NumberOfCheckSat, 886 ConstructedInterpolants, 0 QuantifiedInterpolants, 1655 SizeOfPredicates, 8 NumberOfNonLiveVariables, 921 ConjunctsInSsa, 18 ConjunctsInUnsatCore, 16 InterpolantComputations, 12 PerfectInterpolantSequences, 266/296 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 190]: Loop Invariant Derived loop invariant: ((!(\old(pumpRunning) == 0) || !(systemActive == 0)) && ((!(2 <= \old(waterLevel)) || (pumpRunning == \old(pumpRunning) && 1 <= waterLevel)) || !(systemActive == 1))) && ((!(\old(pumpRunning) == 0) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) - InvariantResult [Line: 442]: Loop Invariant Derived loop invariant: (((((!(\old(waterLevel) == 1) || !(\old(pumpRunning) == 0)) || !(systemActive == 0)) && (!(2 <= \old(waterLevel)) || !(systemActive == 1))) && ((!(2 <= \old(waterLevel)) || !(\old(pumpRunning) == 0)) || !(systemActive == 0))) && ((((\result == 0 && waterLevel == \old(waterLevel)) && pumpRunning == 0) || !(\old(pumpRunning) == 0)) || !(systemActive == 0))) && ((!(\old(pumpRunning) == 0) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) - InvariantResult [Line: 52]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 608]: Loop Invariant Derived loop invariant: ((!(2 <= \old(waterLevel)) || !(systemActive == 1)) && (!(\old(pumpRunning) == 0) || !(systemActive == 0))) && ((!(\old(pumpRunning) == 0) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) - InvariantResult [Line: 390]: Loop Invariant Derived loop invariant: ((((((waterLevel == \old(waterLevel) && 2 <= waterLevel) || (waterLevel == \old(waterLevel) && pumpRunning == 0)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) && (!(\old(pumpRunning) == 0) || !(systemActive == 0))) && (((!(2 <= \old(waterLevel)) || 2 <= waterLevel) || ((((1 <= tmp___0 && 1 <= \result) && 1 <= tmp) && 1 <= waterLevel) && pumpRunning == 0)) || !(systemActive == 1)) - InvariantResult [Line: 267]: Loop Invariant Derived loop invariant: (((!(waterLevel == 1) || (\result == 1 && pumpRunning == 0)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) && (((!(\old(pumpRunning) == 0) || !(systemActive == 1)) || !(2 <= waterLevel)) || pumpRunning == 0) - InvariantResult [Line: 487]: Loop Invariant Derived loop invariant: ((((\result == 1 && tmp == 1) || !(waterLevel == 1)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) && ((((((\result == 0 && tmp___0 == 0) && pumpRunning == \old(pumpRunning)) || (pumpRunning == \old(pumpRunning) && 2 <= waterLevel)) || !(1 <= waterLevel)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) - InvariantResult [Line: 309]: Loop Invariant Derived loop invariant: (waterLevel == 1 && systemActive == 1) && pumpRunning == 0 - InvariantResult [Line: 130]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 415]: Loop Invariant Derived loop invariant: ((!(1 <= waterLevel) || !(\old(pumpRunning) == 0)) || 2 <= waterLevel) || !(systemActive == 1) - InvariantResult [Line: 550]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 541]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 302]: Loop Invariant Derived loop invariant: (waterLevel == 1 && systemActive == 1) && pumpRunning == 0 - InvariantResult [Line: 109]: Loop Invariant Derived loop invariant: (waterLevel == 1 && systemActive == 1) && pumpRunning == 0 - InvariantResult [Line: 551]: Loop Invariant Derived loop invariant: (((splverifierCounter == 0 && 2 <= waterLevel) && systemActive == 1) || ((splverifierCounter == 0 && systemActive == 0) && pumpRunning == 0)) || (((splverifierCounter == 0 && 1 <= waterLevel) && systemActive == 1) && pumpRunning == 0) - InvariantResult [Line: 258]: Loop Invariant Derived loop invariant: ((((((((!(\old(waterLevel) == 1) || \result == 1) || !(\old(pumpRunning) == 0)) || !(systemActive == 0)) && (((!(2 <= \old(waterLevel)) || 2 <= \result) || !(\old(pumpRunning) == 0)) || !(systemActive == 0))) && (((waterLevel == \old(waterLevel) && pumpRunning == 0) || !(\old(pumpRunning) == 0)) || !(systemActive == 0))) && (((!(2 <= \old(waterLevel)) || ((2 <= \result && waterLevel == \old(waterLevel)) && 2 <= waterLevel)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1))) && (((((waterLevel == \old(waterLevel) && pumpRunning == 0) || ((2 <= \result && waterLevel == \old(waterLevel)) && 2 <= waterLevel)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel)))) && (((!(\old(waterLevel) == 1) || \result == 1) || !(\old(pumpRunning) == 0)) || !(systemActive == 1))) && (((!(2 <= \old(waterLevel)) || (((((1 <= tmp___0 && 1 <= \result) && 1 <= tmp) && 1 <= waterLevel) && 1 <= \result) && pumpRunning == 0)) || (2 <= \result && 2 <= waterLevel)) || !(systemActive == 1)) - InvariantResult [Line: 62]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 117]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 316]: Loop Invariant Derived loop invariant: (waterLevel == 1 && systemActive == 1) && pumpRunning == 0 - InvariantResult [Line: 281]: Loop Invariant Derived loop invariant: (((!(2 <= \old(waterLevel)) || ((\result == 0 && pumpRunning == \old(pumpRunning)) && 1 <= waterLevel)) || !(systemActive == 1)) && (!(\old(pumpRunning) == 0) || !(systemActive == 0))) && ((!(\old(pumpRunning) == 0) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) - InvariantResult [Line: 157]: Loop Invariant Derived loop invariant: ((((((((!(2 <= \old(waterLevel)) || !(\old(pumpRunning) == 0)) || (2 <= tmp && 2 <= \result)) || !(systemActive == 0)) && (((((waterLevel == \old(waterLevel) && pumpRunning == 0) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) || (((2 <= tmp && 2 <= \result) && waterLevel == \old(waterLevel)) && 2 <= waterLevel))) && (((waterLevel == \old(waterLevel) && pumpRunning == 0) || !(\old(pumpRunning) == 0)) || !(systemActive == 0))) && (((!(2 <= \old(waterLevel)) || ((((((1 <= tmp___0 && 1 <= \result) && 1 <= tmp) && 1 <= waterLevel) && 1 <= \result) && 1 <= tmp) && pumpRunning == 0)) || ((2 <= tmp && 2 <= \result) && 2 <= waterLevel)) || !(systemActive == 1))) && (((!(\old(waterLevel) == 1) || (\result == 1 && tmp == 1)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1))) && (((!(2 <= \old(waterLevel)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) || (((2 <= tmp && 2 <= \result) && waterLevel == \old(waterLevel)) && 2 <= waterLevel))) && (((!(\old(waterLevel) == 1) || (\result == 1 && tmp == 1)) || !(\old(pumpRunning) == 0)) || !(systemActive == 0)) - InvariantResult [Line: 506]: Loop Invariant Derived loop invariant: ((!(\old(pumpRunning) == 0) || !(systemActive == 0)) && ((!(2 <= \old(waterLevel)) || !(systemActive == 1)) || (((((1 <= tmp___0 && 1 <= \result) && \result == 0) && pumpRunning == \old(pumpRunning)) && tmp == 0) && 1 <= waterLevel))) && ((!(\old(pumpRunning) == 0) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) - InvariantResult [Line: 525]: Loop Invariant Derived loop invariant: (splverifierCounter == 0 && systemActive == 0) && pumpRunning == 0 RESULT: Ultimate proved your program to be correct! [2021-12-16 01:00:47,170 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE