./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/product-lines/minepump_spec4_product52.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version c3fed411 Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/config -Xmx15G -Xms4m -jar /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data -tc /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/AutomizerReach.xml -i ../sv-benchmarks/c/product-lines/minepump_spec4_product52.cil.c -s /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash e4fc698cb41b54b4c4983dda7de32b2f9c78701d9e96fbbf9a36472a5bdbde25 --- Real Ultimate output --- This is Ultimate 0.2.2-tmp.no-commuhash-c3fed41 [2021-12-16 01:00:40,061 INFO L177 SettingsManager]: Resetting all preferences to default values... [2021-12-16 01:00:40,063 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2021-12-16 01:00:40,126 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2021-12-16 01:00:40,127 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2021-12-16 01:00:40,128 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2021-12-16 01:00:40,129 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2021-12-16 01:00:40,130 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2021-12-16 01:00:40,131 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2021-12-16 01:00:40,132 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2021-12-16 01:00:40,133 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2021-12-16 01:00:40,134 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2021-12-16 01:00:40,134 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2021-12-16 01:00:40,135 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2021-12-16 01:00:40,136 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2021-12-16 01:00:40,137 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2021-12-16 01:00:40,138 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2021-12-16 01:00:40,139 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2021-12-16 01:00:40,140 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2021-12-16 01:00:40,142 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2021-12-16 01:00:40,143 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2021-12-16 01:00:40,145 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2021-12-16 01:00:40,146 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2021-12-16 01:00:40,147 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2021-12-16 01:00:40,149 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2021-12-16 01:00:40,149 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2021-12-16 01:00:40,150 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2021-12-16 01:00:40,151 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2021-12-16 01:00:40,151 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2021-12-16 01:00:40,152 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2021-12-16 01:00:40,152 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2021-12-16 01:00:40,153 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2021-12-16 01:00:40,154 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2021-12-16 01:00:40,154 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2021-12-16 01:00:40,155 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2021-12-16 01:00:40,155 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2021-12-16 01:00:40,156 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2021-12-16 01:00:40,156 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2021-12-16 01:00:40,157 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2021-12-16 01:00:40,157 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2021-12-16 01:00:40,158 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2021-12-16 01:00:40,159 INFO L101 SettingsManager]: Beginning loading settings from /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf [2021-12-16 01:00:40,179 INFO L113 SettingsManager]: Loading preferences was successful [2021-12-16 01:00:40,180 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2021-12-16 01:00:40,180 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2021-12-16 01:00:40,181 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2021-12-16 01:00:40,181 INFO L136 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2021-12-16 01:00:40,182 INFO L138 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2021-12-16 01:00:40,182 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2021-12-16 01:00:40,182 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2021-12-16 01:00:40,183 INFO L138 SettingsManager]: * Use SBE=true [2021-12-16 01:00:40,183 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2021-12-16 01:00:40,184 INFO L138 SettingsManager]: * sizeof long=4 [2021-12-16 01:00:40,184 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2021-12-16 01:00:40,184 INFO L138 SettingsManager]: * sizeof POINTER=4 [2021-12-16 01:00:40,184 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2021-12-16 01:00:40,184 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2021-12-16 01:00:40,185 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2021-12-16 01:00:40,185 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2021-12-16 01:00:40,185 INFO L138 SettingsManager]: * sizeof long double=12 [2021-12-16 01:00:40,185 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2021-12-16 01:00:40,185 INFO L138 SettingsManager]: * Use constant arrays=true [2021-12-16 01:00:40,186 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2021-12-16 01:00:40,186 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2021-12-16 01:00:40,186 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2021-12-16 01:00:40,186 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2021-12-16 01:00:40,186 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-12-16 01:00:40,187 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2021-12-16 01:00:40,187 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2021-12-16 01:00:40,187 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2021-12-16 01:00:40,187 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2021-12-16 01:00:40,188 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2021-12-16 01:00:40,189 INFO L138 SettingsManager]: * Large block encoding in concurrent analysis=OFF [2021-12-16 01:00:40,189 INFO L138 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2021-12-16 01:00:40,189 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2021-12-16 01:00:40,189 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2021-12-16 01:00:40,189 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> e4fc698cb41b54b4c4983dda7de32b2f9c78701d9e96fbbf9a36472a5bdbde25 [2021-12-16 01:00:40,458 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2021-12-16 01:00:40,481 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2021-12-16 01:00:40,484 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2021-12-16 01:00:40,484 INFO L271 PluginConnector]: Initializing CDTParser... [2021-12-16 01:00:40,485 INFO L275 PluginConnector]: CDTParser initialized [2021-12-16 01:00:40,486 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../sv-benchmarks/c/product-lines/minepump_spec4_product52.cil.c [2021-12-16 01:00:40,536 INFO L220 CDTParser]: Created temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/364119ed5/142e67b566b743f399010735d117b571/FLAG5d6abba61 [2021-12-16 01:00:40,965 INFO L306 CDTParser]: Found 1 translation units. [2021-12-16 01:00:40,969 INFO L160 CDTParser]: Scanning /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec4_product52.cil.c [2021-12-16 01:00:40,984 INFO L349 CDTParser]: About to delete temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/364119ed5/142e67b566b743f399010735d117b571/FLAG5d6abba61 [2021-12-16 01:00:41,317 INFO L357 CDTParser]: Successfully deleted /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/364119ed5/142e67b566b743f399010735d117b571 [2021-12-16 01:00:41,318 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2021-12-16 01:00:41,319 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2021-12-16 01:00:41,322 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2021-12-16 01:00:41,322 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2021-12-16 01:00:41,324 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2021-12-16 01:00:41,325 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 16.12 01:00:41" (1/1) ... [2021-12-16 01:00:41,325 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@65cf0a62 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:41, skipping insertion in model container [2021-12-16 01:00:41,326 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 16.12 01:00:41" (1/1) ... [2021-12-16 01:00:41,330 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2021-12-16 01:00:41,372 INFO L178 MainTranslator]: Built tables and reachable declarations [2021-12-16 01:00:41,671 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec4_product52.cil.c[18431,18444] [2021-12-16 01:00:41,679 INFO L209 PostProcessor]: Analyzing one entry point: main [2021-12-16 01:00:41,690 INFO L203 MainTranslator]: Completed pre-run [2021-12-16 01:00:41,760 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec4_product52.cil.c[18431,18444] [2021-12-16 01:00:41,763 INFO L209 PostProcessor]: Analyzing one entry point: main [2021-12-16 01:00:41,780 INFO L208 MainTranslator]: Completed translation [2021-12-16 01:00:41,781 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:41 WrapperNode [2021-12-16 01:00:41,781 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2021-12-16 01:00:41,782 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2021-12-16 01:00:41,782 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2021-12-16 01:00:41,782 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2021-12-16 01:00:41,788 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:41" (1/1) ... [2021-12-16 01:00:41,814 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:41" (1/1) ... [2021-12-16 01:00:41,854 INFO L137 Inliner]: procedures = 57, calls = 157, calls flagged for inlining = 25, calls inlined = 21, statements flattened = 263 [2021-12-16 01:00:41,855 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2021-12-16 01:00:41,856 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2021-12-16 01:00:41,857 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2021-12-16 01:00:41,857 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2021-12-16 01:00:41,864 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:41" (1/1) ... [2021-12-16 01:00:41,864 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:41" (1/1) ... [2021-12-16 01:00:41,868 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:41" (1/1) ... [2021-12-16 01:00:41,869 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:41" (1/1) ... [2021-12-16 01:00:41,873 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:41" (1/1) ... [2021-12-16 01:00:41,880 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:41" (1/1) ... [2021-12-16 01:00:41,882 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:41" (1/1) ... [2021-12-16 01:00:41,888 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2021-12-16 01:00:41,889 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2021-12-16 01:00:41,889 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2021-12-16 01:00:41,889 INFO L275 PluginConnector]: RCFGBuilder initialized [2021-12-16 01:00:41,890 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:41" (1/1) ... [2021-12-16 01:00:41,897 INFO L168 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-12-16 01:00:41,906 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2021-12-16 01:00:41,919 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2021-12-16 01:00:41,942 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2021-12-16 01:00:41,962 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2021-12-16 01:00:41,962 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2021-12-16 01:00:41,962 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2021-12-16 01:00:41,962 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2021-12-16 01:00:41,962 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2021-12-16 01:00:41,963 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2021-12-16 01:00:41,963 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2021-12-16 01:00:41,963 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2021-12-16 01:00:41,963 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2021-12-16 01:00:41,963 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2021-12-16 01:00:41,964 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2021-12-16 01:00:41,964 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2021-12-16 01:00:41,964 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2021-12-16 01:00:41,964 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2021-12-16 01:00:41,964 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2021-12-16 01:00:41,964 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2021-12-16 01:00:41,964 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2021-12-16 01:00:41,964 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2021-12-16 01:00:42,049 INFO L236 CfgBuilder]: Building ICFG [2021-12-16 01:00:42,051 INFO L262 CfgBuilder]: Building CFG for each procedure with an implementation [2021-12-16 01:00:42,326 INFO L277 CfgBuilder]: Performing block encoding [2021-12-16 01:00:42,334 INFO L296 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2021-12-16 01:00:42,334 INFO L301 CfgBuilder]: Removed 2 assume(true) statements. [2021-12-16 01:00:42,336 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 16.12 01:00:42 BoogieIcfgContainer [2021-12-16 01:00:42,336 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2021-12-16 01:00:42,337 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2021-12-16 01:00:42,337 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2021-12-16 01:00:42,342 INFO L275 PluginConnector]: TraceAbstraction initialized [2021-12-16 01:00:42,343 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 16.12 01:00:41" (1/3) ... [2021-12-16 01:00:42,344 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@7655df1 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 16.12 01:00:42, skipping insertion in model container [2021-12-16 01:00:42,344 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 16.12 01:00:41" (2/3) ... [2021-12-16 01:00:42,344 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@7655df1 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 16.12 01:00:42, skipping insertion in model container [2021-12-16 01:00:42,344 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 16.12 01:00:42" (3/3) ... [2021-12-16 01:00:42,346 INFO L111 eAbstractionObserver]: Analyzing ICFG minepump_spec4_product52.cil.c [2021-12-16 01:00:42,350 INFO L204 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2021-12-16 01:00:42,350 INFO L163 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2021-12-16 01:00:42,385 INFO L338 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2021-12-16 01:00:42,391 INFO L339 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mLoopAccelerationTechnique=FAST_UPR [2021-12-16 01:00:42,392 INFO L340 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2021-12-16 01:00:42,419 INFO L276 IsEmpty]: Start isEmpty. Operand has 90 states, 69 states have (on average 1.391304347826087) internal successors, (96), 78 states have internal predecessors, (96), 12 states have call successors, (12), 7 states have call predecessors, (12), 7 states have return successors, (12), 9 states have call predecessors, (12), 12 states have call successors, (12) [2021-12-16 01:00:42,424 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 20 [2021-12-16 01:00:42,424 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 01:00:42,425 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 01:00:42,425 INFO L402 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 01:00:42,432 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 01:00:42,433 INFO L85 PathProgramCache]: Analyzing trace with hash 355859289, now seen corresponding path program 1 times [2021-12-16 01:00:42,440 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 01:00:42,440 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1720716007] [2021-12-16 01:00:42,440 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 01:00:42,441 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 01:00:42,589 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:42,663 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-16 01:00:42,664 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 01:00:42,664 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1720716007] [2021-12-16 01:00:42,665 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1720716007] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 01:00:42,665 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-16 01:00:42,666 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-12-16 01:00:42,667 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [408120181] [2021-12-16 01:00:42,668 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 01:00:42,672 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2021-12-16 01:00:42,672 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 01:00:42,697 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2021-12-16 01:00:42,699 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-12-16 01:00:42,702 INFO L87 Difference]: Start difference. First operand has 90 states, 69 states have (on average 1.391304347826087) internal successors, (96), 78 states have internal predecessors, (96), 12 states have call successors, (12), 7 states have call predecessors, (12), 7 states have return successors, (12), 9 states have call predecessors, (12), 12 states have call successors, (12) Second operand has 2 states, 2 states have (on average 8.5) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-16 01:00:42,745 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 01:00:42,745 INFO L93 Difference]: Finished difference Result 172 states and 235 transitions. [2021-12-16 01:00:42,746 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2021-12-16 01:00:42,747 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 8.5) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 19 [2021-12-16 01:00:42,748 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 01:00:42,756 INFO L225 Difference]: With dead ends: 172 [2021-12-16 01:00:42,756 INFO L226 Difference]: Without dead ends: 81 [2021-12-16 01:00:42,761 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-12-16 01:00:42,765 INFO L933 BasicCegarLoop]: 114 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 0 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 114 SdHoareTripleChecker+Invalid, 0 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 0 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-16 01:00:42,766 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [0 Valid, 114 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 0 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-16 01:00:42,779 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 81 states. [2021-12-16 01:00:42,806 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 81 to 81. [2021-12-16 01:00:42,807 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 81 states, 62 states have (on average 1.3225806451612903) internal successors, (82), 70 states have internal predecessors, (82), 12 states have call successors, (12), 7 states have call predecessors, (12), 6 states have return successors, (11), 8 states have call predecessors, (11), 11 states have call successors, (11) [2021-12-16 01:00:42,812 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 81 states to 81 states and 105 transitions. [2021-12-16 01:00:42,814 INFO L78 Accepts]: Start accepts. Automaton has 81 states and 105 transitions. Word has length 19 [2021-12-16 01:00:42,814 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 01:00:42,815 INFO L470 AbstractCegarLoop]: Abstraction has 81 states and 105 transitions. [2021-12-16 01:00:42,815 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 8.5) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-16 01:00:42,815 INFO L276 IsEmpty]: Start isEmpty. Operand 81 states and 105 transitions. [2021-12-16 01:00:42,820 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 21 [2021-12-16 01:00:42,820 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 01:00:42,820 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 01:00:42,821 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2021-12-16 01:00:42,822 INFO L402 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 01:00:42,824 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 01:00:42,825 INFO L85 PathProgramCache]: Analyzing trace with hash -730097680, now seen corresponding path program 1 times [2021-12-16 01:00:42,825 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 01:00:42,825 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [736599337] [2021-12-16 01:00:42,826 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 01:00:42,826 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 01:00:42,857 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:42,927 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-16 01:00:42,927 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 01:00:42,928 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [736599337] [2021-12-16 01:00:42,929 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [736599337] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 01:00:42,929 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-16 01:00:42,929 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-12-16 01:00:42,929 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1535084140] [2021-12-16 01:00:42,930 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 01:00:42,931 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-12-16 01:00:42,931 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 01:00:42,932 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-12-16 01:00:42,932 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-16 01:00:42,933 INFO L87 Difference]: Start difference. First operand 81 states and 105 transitions. Second operand has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-16 01:00:42,953 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 01:00:42,956 INFO L93 Difference]: Finished difference Result 123 states and 159 transitions. [2021-12-16 01:00:42,958 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-12-16 01:00:42,958 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 20 [2021-12-16 01:00:42,959 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 01:00:42,960 INFO L225 Difference]: With dead ends: 123 [2021-12-16 01:00:42,961 INFO L226 Difference]: Without dead ends: 72 [2021-12-16 01:00:42,964 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-16 01:00:42,966 INFO L933 BasicCegarLoop]: 92 mSDtfsCounter, 17 mSDsluCounter, 70 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 21 SdHoareTripleChecker+Valid, 162 SdHoareTripleChecker+Invalid, 1 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-16 01:00:42,967 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [21 Valid, 162 Invalid, 1 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-16 01:00:42,969 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 72 states. [2021-12-16 01:00:42,976 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 72 to 72. [2021-12-16 01:00:42,976 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 72 states, 56 states have (on average 1.3392857142857142) internal successors, (75), 64 states have internal predecessors, (75), 9 states have call successors, (9), 6 states have call predecessors, (9), 6 states have return successors, (9), 6 states have call predecessors, (9), 9 states have call successors, (9) [2021-12-16 01:00:42,977 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 72 states to 72 states and 93 transitions. [2021-12-16 01:00:42,977 INFO L78 Accepts]: Start accepts. Automaton has 72 states and 93 transitions. Word has length 20 [2021-12-16 01:00:42,977 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 01:00:42,978 INFO L470 AbstractCegarLoop]: Abstraction has 72 states and 93 transitions. [2021-12-16 01:00:42,978 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-16 01:00:42,978 INFO L276 IsEmpty]: Start isEmpty. Operand 72 states and 93 transitions. [2021-12-16 01:00:42,979 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2021-12-16 01:00:42,981 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 01:00:42,981 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 01:00:42,981 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2021-12-16 01:00:42,981 INFO L402 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 01:00:42,982 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 01:00:42,982 INFO L85 PathProgramCache]: Analyzing trace with hash -1878665188, now seen corresponding path program 1 times [2021-12-16 01:00:42,982 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 01:00:42,983 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1701555977] [2021-12-16 01:00:42,983 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 01:00:42,983 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 01:00:43,005 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:43,040 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-16 01:00:43,041 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 01:00:43,041 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1701555977] [2021-12-16 01:00:43,041 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1701555977] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 01:00:43,041 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-16 01:00:43,042 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-12-16 01:00:43,043 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1422213249] [2021-12-16 01:00:43,043 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 01:00:43,043 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-12-16 01:00:43,044 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 01:00:43,044 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-12-16 01:00:43,044 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-16 01:00:43,044 INFO L87 Difference]: Start difference. First operand 72 states and 93 transitions. Second operand has 3 states, 3 states have (on average 8.0) internal successors, (24), 2 states have internal predecessors, (24), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-16 01:00:43,075 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 01:00:43,075 INFO L93 Difference]: Finished difference Result 200 states and 264 transitions. [2021-12-16 01:00:43,076 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-12-16 01:00:43,076 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 8.0) internal successors, (24), 2 states have internal predecessors, (24), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 25 [2021-12-16 01:00:43,076 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 01:00:43,077 INFO L225 Difference]: With dead ends: 200 [2021-12-16 01:00:43,078 INFO L226 Difference]: Without dead ends: 135 [2021-12-16 01:00:43,078 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-16 01:00:43,079 INFO L933 BasicCegarLoop]: 111 mSDtfsCounter, 71 mSDsluCounter, 81 mSDsCounter, 0 mSdLazyCounter, 4 mSolverCounterSat, 2 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 71 SdHoareTripleChecker+Valid, 192 SdHoareTripleChecker+Invalid, 6 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 2 IncrementalHoareTripleChecker+Valid, 4 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-16 01:00:43,080 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [71 Valid, 192 Invalid, 6 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [2 Valid, 4 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-16 01:00:43,080 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 135 states. [2021-12-16 01:00:43,094 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 135 to 132. [2021-12-16 01:00:43,094 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 132 states, 101 states have (on average 1.3663366336633664) internal successors, (138), 116 states have internal predecessors, (138), 18 states have call successors, (18), 12 states have call predecessors, (18), 12 states have return successors, (18), 11 states have call predecessors, (18), 18 states have call successors, (18) [2021-12-16 01:00:43,096 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 132 states to 132 states and 174 transitions. [2021-12-16 01:00:43,096 INFO L78 Accepts]: Start accepts. Automaton has 132 states and 174 transitions. Word has length 25 [2021-12-16 01:00:43,096 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 01:00:43,096 INFO L470 AbstractCegarLoop]: Abstraction has 132 states and 174 transitions. [2021-12-16 01:00:43,096 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 8.0) internal successors, (24), 2 states have internal predecessors, (24), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-16 01:00:43,097 INFO L276 IsEmpty]: Start isEmpty. Operand 132 states and 174 transitions. [2021-12-16 01:00:43,098 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 29 [2021-12-16 01:00:43,098 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 01:00:43,098 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 01:00:43,098 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2021-12-16 01:00:43,098 INFO L402 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 01:00:43,098 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 01:00:43,099 INFO L85 PathProgramCache]: Analyzing trace with hash 1340325107, now seen corresponding path program 1 times [2021-12-16 01:00:43,099 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 01:00:43,099 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [349972263] [2021-12-16 01:00:43,099 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 01:00:43,099 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 01:00:43,113 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:43,177 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-16 01:00:43,177 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 01:00:43,178 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [349972263] [2021-12-16 01:00:43,178 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [349972263] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 01:00:43,178 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-16 01:00:43,178 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-12-16 01:00:43,178 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1413726701] [2021-12-16 01:00:43,178 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 01:00:43,179 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-12-16 01:00:43,179 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 01:00:43,179 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-12-16 01:00:43,179 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-12-16 01:00:43,180 INFO L87 Difference]: Start difference. First operand 132 states and 174 transitions. Second operand has 5 states, 5 states have (on average 5.4) internal successors, (27), 4 states have internal predecessors, (27), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-16 01:00:43,267 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 01:00:43,267 INFO L93 Difference]: Finished difference Result 370 states and 507 transitions. [2021-12-16 01:00:43,269 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-12-16 01:00:43,269 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 5.4) internal successors, (27), 4 states have internal predecessors, (27), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 28 [2021-12-16 01:00:43,269 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 01:00:43,271 INFO L225 Difference]: With dead ends: 370 [2021-12-16 01:00:43,271 INFO L226 Difference]: Without dead ends: 245 [2021-12-16 01:00:43,274 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-12-16 01:00:43,275 INFO L933 BasicCegarLoop]: 95 mSDtfsCounter, 64 mSDsluCounter, 270 mSDsCounter, 0 mSdLazyCounter, 29 mSolverCounterSat, 4 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 64 SdHoareTripleChecker+Valid, 365 SdHoareTripleChecker+Invalid, 33 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 4 IncrementalHoareTripleChecker+Valid, 29 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-16 01:00:43,275 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [64 Valid, 365 Invalid, 33 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [4 Valid, 29 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-16 01:00:43,276 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 245 states. [2021-12-16 01:00:43,315 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 245 to 245. [2021-12-16 01:00:43,316 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 245 states, 186 states have (on average 1.3440860215053763) internal successors, (250), 213 states have internal predecessors, (250), 36 states have call successors, (36), 24 states have call predecessors, (36), 22 states have return successors, (38), 20 states have call predecessors, (38), 36 states have call successors, (38) [2021-12-16 01:00:43,319 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 245 states to 245 states and 324 transitions. [2021-12-16 01:00:43,319 INFO L78 Accepts]: Start accepts. Automaton has 245 states and 324 transitions. Word has length 28 [2021-12-16 01:00:43,320 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 01:00:43,320 INFO L470 AbstractCegarLoop]: Abstraction has 245 states and 324 transitions. [2021-12-16 01:00:43,320 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 5.4) internal successors, (27), 4 states have internal predecessors, (27), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-16 01:00:43,320 INFO L276 IsEmpty]: Start isEmpty. Operand 245 states and 324 transitions. [2021-12-16 01:00:43,325 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 31 [2021-12-16 01:00:43,327 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 01:00:43,327 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 01:00:43,327 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2021-12-16 01:00:43,327 INFO L402 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 01:00:43,329 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 01:00:43,329 INFO L85 PathProgramCache]: Analyzing trace with hash 1413318200, now seen corresponding path program 1 times [2021-12-16 01:00:43,330 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 01:00:43,330 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1559779613] [2021-12-16 01:00:43,330 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 01:00:43,330 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 01:00:43,342 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:43,367 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-16 01:00:43,367 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 01:00:43,367 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1559779613] [2021-12-16 01:00:43,368 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1559779613] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 01:00:43,368 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-16 01:00:43,368 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-12-16 01:00:43,368 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [37651241] [2021-12-16 01:00:43,368 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 01:00:43,368 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-12-16 01:00:43,369 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 01:00:43,369 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-12-16 01:00:43,369 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-16 01:00:43,369 INFO L87 Difference]: Start difference. First operand 245 states and 324 transitions. Second operand has 3 states, 3 states have (on average 9.666666666666666) internal successors, (29), 2 states have internal predecessors, (29), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-16 01:00:43,418 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 01:00:43,420 INFO L93 Difference]: Finished difference Result 599 states and 813 transitions. [2021-12-16 01:00:43,420 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-12-16 01:00:43,421 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 9.666666666666666) internal successors, (29), 2 states have internal predecessors, (29), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 30 [2021-12-16 01:00:43,421 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 01:00:43,423 INFO L225 Difference]: With dead ends: 599 [2021-12-16 01:00:43,424 INFO L226 Difference]: Without dead ends: 361 [2021-12-16 01:00:43,425 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-16 01:00:43,426 INFO L933 BasicCegarLoop]: 96 mSDtfsCounter, 52 mSDsluCounter, 60 mSDsCounter, 0 mSdLazyCounter, 11 mSolverCounterSat, 8 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 52 SdHoareTripleChecker+Valid, 156 SdHoareTripleChecker+Invalid, 19 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 8 IncrementalHoareTripleChecker+Valid, 11 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-16 01:00:43,426 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [52 Valid, 156 Invalid, 19 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [8 Valid, 11 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-16 01:00:43,430 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 361 states. [2021-12-16 01:00:43,465 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 361 to 352. [2021-12-16 01:00:43,468 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 352 states, 273 states have (on average 1.3003663003663004) internal successors, (355), 293 states have internal predecessors, (355), 41 states have call successors, (41), 39 states have call predecessors, (41), 37 states have return successors, (59), 36 states have call predecessors, (59), 41 states have call successors, (59) [2021-12-16 01:00:43,473 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 352 states to 352 states and 455 transitions. [2021-12-16 01:00:43,473 INFO L78 Accepts]: Start accepts. Automaton has 352 states and 455 transitions. Word has length 30 [2021-12-16 01:00:43,473 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 01:00:43,474 INFO L470 AbstractCegarLoop]: Abstraction has 352 states and 455 transitions. [2021-12-16 01:00:43,474 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 9.666666666666666) internal successors, (29), 2 states have internal predecessors, (29), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-16 01:00:43,474 INFO L276 IsEmpty]: Start isEmpty. Operand 352 states and 455 transitions. [2021-12-16 01:00:43,483 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 33 [2021-12-16 01:00:43,484 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 01:00:43,484 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 01:00:43,484 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2021-12-16 01:00:43,484 INFO L402 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 01:00:43,485 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 01:00:43,485 INFO L85 PathProgramCache]: Analyzing trace with hash 515112153, now seen corresponding path program 1 times [2021-12-16 01:00:43,485 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 01:00:43,485 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2077531384] [2021-12-16 01:00:43,485 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 01:00:43,485 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 01:00:43,496 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:43,532 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-16 01:00:43,535 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:43,538 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-16 01:00:43,538 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 01:00:43,538 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2077531384] [2021-12-16 01:00:43,539 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2077531384] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 01:00:43,539 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-16 01:00:43,539 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2021-12-16 01:00:43,539 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1923927882] [2021-12-16 01:00:43,539 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 01:00:43,540 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-12-16 01:00:43,540 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 01:00:43,540 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-12-16 01:00:43,540 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-12-16 01:00:43,541 INFO L87 Difference]: Start difference. First operand 352 states and 455 transitions. Second operand has 6 states, 6 states have (on average 4.833333333333333) internal successors, (29), 5 states have internal predecessors, (29), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-16 01:00:43,757 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 01:00:43,757 INFO L93 Difference]: Finished difference Result 446 states and 580 transitions. [2021-12-16 01:00:43,757 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2021-12-16 01:00:43,758 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 4.833333333333333) internal successors, (29), 5 states have internal predecessors, (29), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 32 [2021-12-16 01:00:43,758 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 01:00:43,761 INFO L225 Difference]: With dead ends: 446 [2021-12-16 01:00:43,761 INFO L226 Difference]: Without dead ends: 444 [2021-12-16 01:00:43,762 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 14 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 12 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=45, Invalid=87, Unknown=0, NotChecked=0, Total=132 [2021-12-16 01:00:43,762 INFO L933 BasicCegarLoop]: 107 mSDtfsCounter, 126 mSDsluCounter, 303 mSDsCounter, 0 mSdLazyCounter, 149 mSolverCounterSat, 33 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 130 SdHoareTripleChecker+Valid, 410 SdHoareTripleChecker+Invalid, 182 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 33 IncrementalHoareTripleChecker+Valid, 149 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-16 01:00:43,763 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [130 Valid, 410 Invalid, 182 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [33 Valid, 149 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-16 01:00:43,764 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 444 states. [2021-12-16 01:00:43,782 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 444 to 418. [2021-12-16 01:00:43,782 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 418 states, 325 states have (on average 1.2861538461538462) internal successors, (418), 355 states have internal predecessors, (418), 47 states have call successors, (47), 39 states have call predecessors, (47), 45 states have return successors, (77), 40 states have call predecessors, (77), 47 states have call successors, (77) [2021-12-16 01:00:43,785 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 418 states to 418 states and 542 transitions. [2021-12-16 01:00:43,785 INFO L78 Accepts]: Start accepts. Automaton has 418 states and 542 transitions. Word has length 32 [2021-12-16 01:00:43,785 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 01:00:43,785 INFO L470 AbstractCegarLoop]: Abstraction has 418 states and 542 transitions. [2021-12-16 01:00:43,786 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 4.833333333333333) internal successors, (29), 5 states have internal predecessors, (29), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-16 01:00:43,786 INFO L276 IsEmpty]: Start isEmpty. Operand 418 states and 542 transitions. [2021-12-16 01:00:43,787 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 44 [2021-12-16 01:00:43,787 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 01:00:43,787 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 01:00:43,787 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2021-12-16 01:00:43,788 INFO L402 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 01:00:43,788 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 01:00:43,788 INFO L85 PathProgramCache]: Analyzing trace with hash 585600178, now seen corresponding path program 1 times [2021-12-16 01:00:43,788 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 01:00:43,788 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [529201417] [2021-12-16 01:00:43,789 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 01:00:43,789 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 01:00:43,800 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:43,815 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-16 01:00:43,816 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:43,820 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 24 [2021-12-16 01:00:43,823 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:43,845 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-16 01:00:43,845 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 01:00:43,845 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [529201417] [2021-12-16 01:00:43,846 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [529201417] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 01:00:43,846 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-16 01:00:43,846 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2021-12-16 01:00:43,846 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1964633923] [2021-12-16 01:00:43,861 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 01:00:43,862 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-12-16 01:00:43,862 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 01:00:43,862 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-12-16 01:00:43,862 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2021-12-16 01:00:43,862 INFO L87 Difference]: Start difference. First operand 418 states and 542 transitions. Second operand has 7 states, 7 states have (on average 5.428571428571429) internal successors, (38), 5 states have internal predecessors, (38), 1 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2021-12-16 01:00:44,135 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 01:00:44,135 INFO L93 Difference]: Finished difference Result 935 states and 1234 transitions. [2021-12-16 01:00:44,136 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2021-12-16 01:00:44,136 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 5.428571428571429) internal successors, (38), 5 states have internal predecessors, (38), 1 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) Word has length 43 [2021-12-16 01:00:44,137 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 01:00:44,140 INFO L225 Difference]: With dead ends: 935 [2021-12-16 01:00:44,141 INFO L226 Difference]: Without dead ends: 524 [2021-12-16 01:00:44,142 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 16 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=46, Invalid=86, Unknown=0, NotChecked=0, Total=132 [2021-12-16 01:00:44,143 INFO L933 BasicCegarLoop]: 90 mSDtfsCounter, 130 mSDsluCounter, 298 mSDsCounter, 0 mSdLazyCounter, 194 mSolverCounterSat, 42 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 130 SdHoareTripleChecker+Valid, 388 SdHoareTripleChecker+Invalid, 236 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 42 IncrementalHoareTripleChecker+Valid, 194 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2021-12-16 01:00:44,143 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [130 Valid, 388 Invalid, 236 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [42 Valid, 194 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2021-12-16 01:00:44,144 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 524 states. [2021-12-16 01:00:44,167 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 524 to 470. [2021-12-16 01:00:44,169 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 470 states, 371 states have (on average 1.266846361185984) internal successors, (470), 401 states have internal predecessors, (470), 47 states have call successors, (47), 39 states have call predecessors, (47), 51 states have return successors, (85), 44 states have call predecessors, (85), 47 states have call successors, (85) [2021-12-16 01:00:44,171 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 470 states to 470 states and 602 transitions. [2021-12-16 01:00:44,172 INFO L78 Accepts]: Start accepts. Automaton has 470 states and 602 transitions. Word has length 43 [2021-12-16 01:00:44,172 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 01:00:44,172 INFO L470 AbstractCegarLoop]: Abstraction has 470 states and 602 transitions. [2021-12-16 01:00:44,173 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 5.428571428571429) internal successors, (38), 5 states have internal predecessors, (38), 1 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2021-12-16 01:00:44,173 INFO L276 IsEmpty]: Start isEmpty. Operand 470 states and 602 transitions. [2021-12-16 01:00:44,174 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 44 [2021-12-16 01:00:44,174 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 01:00:44,174 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 01:00:44,175 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2021-12-16 01:00:44,175 INFO L402 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 01:00:44,175 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 01:00:44,175 INFO L85 PathProgramCache]: Analyzing trace with hash -425517072, now seen corresponding path program 1 times [2021-12-16 01:00:44,176 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 01:00:44,176 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1079980581] [2021-12-16 01:00:44,176 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 01:00:44,176 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 01:00:44,188 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:44,211 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-16 01:00:44,214 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:44,220 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 24 [2021-12-16 01:00:44,223 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:44,247 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-16 01:00:44,248 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 01:00:44,248 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1079980581] [2021-12-16 01:00:44,248 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1079980581] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 01:00:44,248 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-16 01:00:44,248 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2021-12-16 01:00:44,248 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [878653747] [2021-12-16 01:00:44,249 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 01:00:44,249 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-12-16 01:00:44,249 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 01:00:44,250 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-12-16 01:00:44,250 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2021-12-16 01:00:44,250 INFO L87 Difference]: Start difference. First operand 470 states and 602 transitions. Second operand has 7 states, 7 states have (on average 5.428571428571429) internal successors, (38), 5 states have internal predecessors, (38), 2 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2021-12-16 01:00:44,630 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 01:00:44,630 INFO L93 Difference]: Finished difference Result 941 states and 1233 transitions. [2021-12-16 01:00:44,630 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 15 states. [2021-12-16 01:00:44,631 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 5.428571428571429) internal successors, (38), 5 states have internal predecessors, (38), 2 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 43 [2021-12-16 01:00:44,631 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 01:00:44,633 INFO L225 Difference]: With dead ends: 941 [2021-12-16 01:00:44,634 INFO L226 Difference]: Without dead ends: 478 [2021-12-16 01:00:44,635 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 23 GetRequests, 8 SyntacticMatches, 0 SemanticMatches, 15 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 41 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=90, Invalid=182, Unknown=0, NotChecked=0, Total=272 [2021-12-16 01:00:44,636 INFO L933 BasicCegarLoop]: 107 mSDtfsCounter, 356 mSDsluCounter, 326 mSDsCounter, 0 mSdLazyCounter, 265 mSolverCounterSat, 123 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 361 SdHoareTripleChecker+Valid, 433 SdHoareTripleChecker+Invalid, 388 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 123 IncrementalHoareTripleChecker+Valid, 265 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2021-12-16 01:00:44,636 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [361 Valid, 433 Invalid, 388 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [123 Valid, 265 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2021-12-16 01:00:44,643 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 478 states. [2021-12-16 01:00:44,662 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 478 to 364. [2021-12-16 01:00:44,663 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 364 states, 287 states have (on average 1.264808362369338) internal successors, (363), 310 states have internal predecessors, (363), 38 states have call successors, (38), 32 states have call predecessors, (38), 38 states have return successors, (60), 33 states have call predecessors, (60), 38 states have call successors, (60) [2021-12-16 01:00:44,665 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 364 states to 364 states and 461 transitions. [2021-12-16 01:00:44,665 INFO L78 Accepts]: Start accepts. Automaton has 364 states and 461 transitions. Word has length 43 [2021-12-16 01:00:44,666 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 01:00:44,666 INFO L470 AbstractCegarLoop]: Abstraction has 364 states and 461 transitions. [2021-12-16 01:00:44,666 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 5.428571428571429) internal successors, (38), 5 states have internal predecessors, (38), 2 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2021-12-16 01:00:44,666 INFO L276 IsEmpty]: Start isEmpty. Operand 364 states and 461 transitions. [2021-12-16 01:00:44,667 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 44 [2021-12-16 01:00:44,667 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 01:00:44,667 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 01:00:44,668 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2021-12-16 01:00:44,668 INFO L402 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 01:00:44,668 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 01:00:44,668 INFO L85 PathProgramCache]: Analyzing trace with hash -1446585426, now seen corresponding path program 1 times [2021-12-16 01:00:44,668 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 01:00:44,669 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1646054811] [2021-12-16 01:00:44,669 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 01:00:44,669 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 01:00:44,683 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:44,713 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-16 01:00:44,714 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:44,721 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 24 [2021-12-16 01:00:44,723 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:44,733 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-16 01:00:44,733 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 01:00:44,733 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1646054811] [2021-12-16 01:00:44,734 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1646054811] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 01:00:44,734 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-16 01:00:44,734 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2021-12-16 01:00:44,734 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [752391970] [2021-12-16 01:00:44,734 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 01:00:44,736 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-12-16 01:00:44,736 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 01:00:44,736 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-12-16 01:00:44,737 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2021-12-16 01:00:44,737 INFO L87 Difference]: Start difference. First operand 364 states and 461 transitions. Second operand has 7 states, 7 states have (on average 5.428571428571429) internal successors, (38), 5 states have internal predecessors, (38), 1 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2021-12-16 01:00:45,088 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 01:00:45,089 INFO L93 Difference]: Finished difference Result 850 states and 1141 transitions. [2021-12-16 01:00:45,089 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 17 states. [2021-12-16 01:00:45,090 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 5.428571428571429) internal successors, (38), 5 states have internal predecessors, (38), 1 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) Word has length 43 [2021-12-16 01:00:45,090 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 01:00:45,093 INFO L225 Difference]: With dead ends: 850 [2021-12-16 01:00:45,093 INFO L226 Difference]: Without dead ends: 577 [2021-12-16 01:00:45,094 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 24 GetRequests, 6 SyntacticMatches, 1 SemanticMatches, 17 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 58 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=106, Invalid=236, Unknown=0, NotChecked=0, Total=342 [2021-12-16 01:00:45,097 INFO L933 BasicCegarLoop]: 134 mSDtfsCounter, 198 mSDsluCounter, 371 mSDsCounter, 0 mSdLazyCounter, 286 mSolverCounterSat, 59 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 200 SdHoareTripleChecker+Valid, 505 SdHoareTripleChecker+Invalid, 345 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 59 IncrementalHoareTripleChecker+Valid, 286 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2021-12-16 01:00:45,097 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [200 Valid, 505 Invalid, 345 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [59 Valid, 286 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2021-12-16 01:00:45,098 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 577 states. [2021-12-16 01:00:45,123 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 577 to 552. [2021-12-16 01:00:45,124 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 552 states, 435 states have (on average 1.2344827586206897) internal successors, (537), 465 states have internal predecessors, (537), 57 states have call successors, (57), 49 states have call predecessors, (57), 59 states have return successors, (115), 58 states have call predecessors, (115), 57 states have call successors, (115) [2021-12-16 01:00:45,126 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 552 states to 552 states and 709 transitions. [2021-12-16 01:00:45,127 INFO L78 Accepts]: Start accepts. Automaton has 552 states and 709 transitions. Word has length 43 [2021-12-16 01:00:45,127 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 01:00:45,127 INFO L470 AbstractCegarLoop]: Abstraction has 552 states and 709 transitions. [2021-12-16 01:00:45,127 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 5.428571428571429) internal successors, (38), 5 states have internal predecessors, (38), 1 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2021-12-16 01:00:45,127 INFO L276 IsEmpty]: Start isEmpty. Operand 552 states and 709 transitions. [2021-12-16 01:00:45,129 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 67 [2021-12-16 01:00:45,129 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 01:00:45,129 INFO L514 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 01:00:45,129 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2021-12-16 01:00:45,129 INFO L402 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 01:00:45,130 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 01:00:45,130 INFO L85 PathProgramCache]: Analyzing trace with hash -1821640304, now seen corresponding path program 1 times [2021-12-16 01:00:45,130 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 01:00:45,130 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2074899404] [2021-12-16 01:00:45,130 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 01:00:45,130 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 01:00:45,140 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:45,169 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-16 01:00:45,170 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:45,176 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2021-12-16 01:00:45,179 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:45,192 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2021-12-16 01:00:45,194 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:45,199 INFO L134 CoverageAnalysis]: Checked inductivity of 15 backedges. 15 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-16 01:00:45,199 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 01:00:45,199 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2074899404] [2021-12-16 01:00:45,199 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2074899404] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 01:00:45,199 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-16 01:00:45,199 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2021-12-16 01:00:45,200 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1259583531] [2021-12-16 01:00:45,200 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 01:00:45,200 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-12-16 01:00:45,200 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 01:00:45,200 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-12-16 01:00:45,201 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=29, Unknown=0, NotChecked=0, Total=42 [2021-12-16 01:00:45,201 INFO L87 Difference]: Start difference. First operand 552 states and 709 transitions. Second operand has 7 states, 7 states have (on average 8.428571428571429) internal successors, (59), 4 states have internal predecessors, (59), 4 states have call successors, (4), 4 states have call predecessors, (4), 2 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) [2021-12-16 01:00:45,377 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 01:00:45,377 INFO L93 Difference]: Finished difference Result 930 states and 1192 transitions. [2021-12-16 01:00:45,378 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2021-12-16 01:00:45,378 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 8.428571428571429) internal successors, (59), 4 states have internal predecessors, (59), 4 states have call successors, (4), 4 states have call predecessors, (4), 2 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) Word has length 66 [2021-12-16 01:00:45,378 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 01:00:45,380 INFO L225 Difference]: With dead ends: 930 [2021-12-16 01:00:45,380 INFO L226 Difference]: Without dead ends: 385 [2021-12-16 01:00:45,382 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 19 GetRequests, 9 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 14 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=40, Invalid=92, Unknown=0, NotChecked=0, Total=132 [2021-12-16 01:00:45,383 INFO L933 BasicCegarLoop]: 119 mSDtfsCounter, 196 mSDsluCounter, 242 mSDsCounter, 0 mSdLazyCounter, 196 mSolverCounterSat, 47 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 204 SdHoareTripleChecker+Valid, 361 SdHoareTripleChecker+Invalid, 243 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 47 IncrementalHoareTripleChecker+Valid, 196 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-16 01:00:45,383 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [204 Valid, 361 Invalid, 243 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [47 Valid, 196 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-16 01:00:45,383 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 385 states. [2021-12-16 01:00:45,397 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 385 to 368. [2021-12-16 01:00:45,397 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 368 states, 291 states have (on average 1.2268041237113403) internal successors, (357), 312 states have internal predecessors, (357), 38 states have call successors, (38), 34 states have call predecessors, (38), 38 states have return successors, (68), 38 states have call predecessors, (68), 38 states have call successors, (68) [2021-12-16 01:00:45,399 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 368 states to 368 states and 463 transitions. [2021-12-16 01:00:45,399 INFO L78 Accepts]: Start accepts. Automaton has 368 states and 463 transitions. Word has length 66 [2021-12-16 01:00:45,400 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 01:00:45,400 INFO L470 AbstractCegarLoop]: Abstraction has 368 states and 463 transitions. [2021-12-16 01:00:45,400 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 8.428571428571429) internal successors, (59), 4 states have internal predecessors, (59), 4 states have call successors, (4), 4 states have call predecessors, (4), 2 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) [2021-12-16 01:00:45,400 INFO L276 IsEmpty]: Start isEmpty. Operand 368 states and 463 transitions. [2021-12-16 01:00:45,401 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 79 [2021-12-16 01:00:45,401 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 01:00:45,402 INFO L514 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 01:00:45,402 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9 [2021-12-16 01:00:45,402 INFO L402 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 01:00:45,402 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 01:00:45,402 INFO L85 PathProgramCache]: Analyzing trace with hash 781656095, now seen corresponding path program 1 times [2021-12-16 01:00:45,402 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 01:00:45,403 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [296376794] [2021-12-16 01:00:45,403 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 01:00:45,403 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 01:00:45,417 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:45,463 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-16 01:00:45,467 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:45,483 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2021-12-16 01:00:45,486 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:45,505 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2021-12-16 01:00:45,507 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:45,517 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 63 [2021-12-16 01:00:45,518 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:45,520 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-16 01:00:45,521 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:45,522 INFO L134 CoverageAnalysis]: Checked inductivity of 21 backedges. 12 proven. 7 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2021-12-16 01:00:45,523 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 01:00:45,523 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [296376794] [2021-12-16 01:00:45,523 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [296376794] provided 0 perfect and 1 imperfect interpolant sequences [2021-12-16 01:00:45,523 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [215577069] [2021-12-16 01:00:45,523 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 01:00:45,523 INFO L168 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-12-16 01:00:45,524 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2021-12-16 01:00:45,525 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2021-12-16 01:00:45,543 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2021-12-16 01:00:45,615 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:45,621 INFO L263 TraceCheckSpWp]: Trace formula consists of 433 conjuncts, 8 conjunts are in the unsatisfiable core [2021-12-16 01:00:45,626 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2021-12-16 01:00:45,890 INFO L134 CoverageAnalysis]: Checked inductivity of 21 backedges. 15 proven. 6 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-16 01:00:45,890 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2021-12-16 01:00:46,068 INFO L134 CoverageAnalysis]: Checked inductivity of 21 backedges. 13 proven. 6 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2021-12-16 01:00:46,069 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleZ3 [215577069] provided 0 perfect and 2 imperfect interpolant sequences [2021-12-16 01:00:46,069 INFO L186 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2021-12-16 01:00:46,069 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [9, 6, 6] total 9 [2021-12-16 01:00:46,069 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1791993266] [2021-12-16 01:00:46,069 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2021-12-16 01:00:46,070 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 9 states [2021-12-16 01:00:46,070 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 01:00:46,071 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 9 interpolants. [2021-12-16 01:00:46,071 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=18, Invalid=54, Unknown=0, NotChecked=0, Total=72 [2021-12-16 01:00:46,072 INFO L87 Difference]: Start difference. First operand 368 states and 463 transitions. Second operand has 9 states, 9 states have (on average 8.11111111111111) internal successors, (73), 6 states have internal predecessors, (73), 3 states have call successors, (12), 6 states have call predecessors, (12), 3 states have return successors, (7), 3 states have call predecessors, (7), 2 states have call successors, (7) [2021-12-16 01:00:46,639 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 01:00:46,639 INFO L93 Difference]: Finished difference Result 872 states and 1152 transitions. [2021-12-16 01:00:46,639 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 27 states. [2021-12-16 01:00:46,640 INFO L78 Accepts]: Start accepts. Automaton has has 9 states, 9 states have (on average 8.11111111111111) internal successors, (73), 6 states have internal predecessors, (73), 3 states have call successors, (12), 6 states have call predecessors, (12), 3 states have return successors, (7), 3 states have call predecessors, (7), 2 states have call successors, (7) Word has length 78 [2021-12-16 01:00:46,640 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 01:00:46,643 INFO L225 Difference]: With dead ends: 872 [2021-12-16 01:00:46,643 INFO L226 Difference]: Without dead ends: 579 [2021-12-16 01:00:46,645 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 198 GetRequests, 168 SyntacticMatches, 3 SemanticMatches, 27 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 199 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=227, Invalid=585, Unknown=0, NotChecked=0, Total=812 [2021-12-16 01:00:46,646 INFO L933 BasicCegarLoop]: 136 mSDtfsCounter, 386 mSDsluCounter, 442 mSDsCounter, 0 mSdLazyCounter, 405 mSolverCounterSat, 149 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.3s Time, 0 mProtectedPredicate, 0 mProtectedAction, 392 SdHoareTripleChecker+Valid, 578 SdHoareTripleChecker+Invalid, 554 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 149 IncrementalHoareTripleChecker+Valid, 405 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.4s IncrementalHoareTripleChecker+Time [2021-12-16 01:00:46,646 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [392 Valid, 578 Invalid, 554 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [149 Valid, 405 Invalid, 0 Unknown, 0 Unchecked, 0.4s Time] [2021-12-16 01:00:46,647 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 579 states. [2021-12-16 01:00:46,668 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 579 to 498. [2021-12-16 01:00:46,669 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 498 states, 390 states have (on average 1.2333333333333334) internal successors, (481), 420 states have internal predecessors, (481), 54 states have call successors, (54), 48 states have call predecessors, (54), 53 states have return successors, (102), 50 states have call predecessors, (102), 54 states have call successors, (102) [2021-12-16 01:00:46,671 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 498 states to 498 states and 637 transitions. [2021-12-16 01:00:46,671 INFO L78 Accepts]: Start accepts. Automaton has 498 states and 637 transitions. Word has length 78 [2021-12-16 01:00:46,672 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 01:00:46,673 INFO L470 AbstractCegarLoop]: Abstraction has 498 states and 637 transitions. [2021-12-16 01:00:46,673 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 9 states, 9 states have (on average 8.11111111111111) internal successors, (73), 6 states have internal predecessors, (73), 3 states have call successors, (12), 6 states have call predecessors, (12), 3 states have return successors, (7), 3 states have call predecessors, (7), 2 states have call successors, (7) [2021-12-16 01:00:46,673 INFO L276 IsEmpty]: Start isEmpty. Operand 498 states and 637 transitions. [2021-12-16 01:00:46,674 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 114 [2021-12-16 01:00:46,674 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 01:00:46,675 INFO L514 BasicCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 01:00:46,700 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2021-12-16 01:00:46,898 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable10 [2021-12-16 01:00:46,899 INFO L402 AbstractCegarLoop]: === Iteration 12 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 01:00:46,899 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 01:00:46,899 INFO L85 PathProgramCache]: Analyzing trace with hash 313015822, now seen corresponding path program 2 times [2021-12-16 01:00:46,899 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 01:00:46,900 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1120799814] [2021-12-16 01:00:46,900 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 01:00:46,900 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 01:00:46,919 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:46,957 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-16 01:00:46,958 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:46,969 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2021-12-16 01:00:46,973 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:46,987 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2021-12-16 01:00:46,989 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:46,995 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 52 [2021-12-16 01:00:46,998 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:47,059 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2021-12-16 01:00:47,060 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:47,069 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-16 01:00:47,070 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:47,072 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 98 [2021-12-16 01:00:47,072 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:47,075 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-16 01:00:47,075 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:47,078 INFO L134 CoverageAnalysis]: Checked inductivity of 77 backedges. 54 proven. 11 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2021-12-16 01:00:47,079 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 01:00:47,079 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1120799814] [2021-12-16 01:00:47,079 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1120799814] provided 0 perfect and 1 imperfect interpolant sequences [2021-12-16 01:00:47,079 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [818447231] [2021-12-16 01:00:47,079 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2021-12-16 01:00:47,079 INFO L168 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-12-16 01:00:47,080 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2021-12-16 01:00:47,084 INFO L229 MonitoredProcess]: Starting monitored process 3 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2021-12-16 01:00:47,096 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2021-12-16 01:00:47,184 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2021-12-16 01:00:47,184 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2021-12-16 01:00:47,187 INFO L263 TraceCheckSpWp]: Trace formula consists of 523 conjuncts, 10 conjunts are in the unsatisfiable core [2021-12-16 01:00:47,190 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2021-12-16 01:00:47,479 INFO L134 CoverageAnalysis]: Checked inductivity of 77 backedges. 64 proven. 0 refuted. 0 times theorem prover too weak. 13 trivial. 0 not checked. [2021-12-16 01:00:47,479 INFO L324 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2021-12-16 01:00:47,479 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleZ3 [818447231] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 01:00:47,479 INFO L186 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2021-12-16 01:00:47,479 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [10] total 14 [2021-12-16 01:00:47,479 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1218099657] [2021-12-16 01:00:47,479 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 01:00:47,480 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-12-16 01:00:47,480 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 01:00:47,480 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-12-16 01:00:47,480 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=32, Invalid=150, Unknown=0, NotChecked=0, Total=182 [2021-12-16 01:00:47,481 INFO L87 Difference]: Start difference. First operand 498 states and 637 transitions. Second operand has 6 states, 6 states have (on average 14.5) internal successors, (87), 6 states have internal predecessors, (87), 3 states have call successors, (8), 4 states have call predecessors, (8), 3 states have return successors, (8), 3 states have call predecessors, (8), 3 states have call successors, (8) [2021-12-16 01:00:47,764 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 01:00:47,764 INFO L93 Difference]: Finished difference Result 1348 states and 1789 transitions. [2021-12-16 01:00:47,764 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2021-12-16 01:00:47,765 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 14.5) internal successors, (87), 6 states have internal predecessors, (87), 3 states have call successors, (8), 4 states have call predecessors, (8), 3 states have return successors, (8), 3 states have call predecessors, (8), 3 states have call successors, (8) Word has length 113 [2021-12-16 01:00:47,765 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 01:00:47,769 INFO L225 Difference]: With dead ends: 1348 [2021-12-16 01:00:47,769 INFO L226 Difference]: Without dead ends: 924 [2021-12-16 01:00:47,773 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 145 GetRequests, 125 SyntacticMatches, 3 SemanticMatches, 17 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 46 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=63, Invalid=279, Unknown=0, NotChecked=0, Total=342 [2021-12-16 01:00:47,774 INFO L933 BasicCegarLoop]: 156 mSDtfsCounter, 262 mSDsluCounter, 375 mSDsCounter, 0 mSdLazyCounter, 132 mSolverCounterSat, 40 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 262 SdHoareTripleChecker+Valid, 531 SdHoareTripleChecker+Invalid, 172 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 40 IncrementalHoareTripleChecker+Valid, 132 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-16 01:00:47,774 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [262 Valid, 531 Invalid, 172 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [40 Valid, 132 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-16 01:00:47,776 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 924 states. [2021-12-16 01:00:47,830 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 924 to 859. [2021-12-16 01:00:47,832 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 859 states, 676 states have (on average 1.2337278106508875) internal successors, (834), 721 states have internal predecessors, (834), 93 states have call successors, (93), 84 states have call predecessors, (93), 89 states have return successors, (157), 86 states have call predecessors, (157), 93 states have call successors, (157) [2021-12-16 01:00:47,835 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 859 states to 859 states and 1084 transitions. [2021-12-16 01:00:47,835 INFO L78 Accepts]: Start accepts. Automaton has 859 states and 1084 transitions. Word has length 113 [2021-12-16 01:00:47,836 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 01:00:47,836 INFO L470 AbstractCegarLoop]: Abstraction has 859 states and 1084 transitions. [2021-12-16 01:00:47,836 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 14.5) internal successors, (87), 6 states have internal predecessors, (87), 3 states have call successors, (8), 4 states have call predecessors, (8), 3 states have return successors, (8), 3 states have call predecessors, (8), 3 states have call successors, (8) [2021-12-16 01:00:47,836 INFO L276 IsEmpty]: Start isEmpty. Operand 859 states and 1084 transitions. [2021-12-16 01:00:47,840 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 114 [2021-12-16 01:00:47,840 INFO L506 BasicCegarLoop]: Found error trace [2021-12-16 01:00:47,840 INFO L514 BasicCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 01:00:47,867 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Forceful destruction successful, exit code 0 [2021-12-16 01:00:48,060 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 3 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable11 [2021-12-16 01:00:48,061 INFO L402 AbstractCegarLoop]: === Iteration 13 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-16 01:00:48,061 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-16 01:00:48,061 INFO L85 PathProgramCache]: Analyzing trace with hash 1189034828, now seen corresponding path program 1 times [2021-12-16 01:00:48,061 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-16 01:00:48,061 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1291915550] [2021-12-16 01:00:48,061 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-16 01:00:48,062 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-16 01:00:48,075 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:48,095 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-16 01:00:48,096 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:48,102 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2021-12-16 01:00:48,104 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:48,114 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2021-12-16 01:00:48,115 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:48,117 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 52 [2021-12-16 01:00:48,120 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:48,137 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2021-12-16 01:00:48,138 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:48,144 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-16 01:00:48,144 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:48,146 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 98 [2021-12-16 01:00:48,147 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:48,148 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-16 01:00:48,148 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-16 01:00:48,150 INFO L134 CoverageAnalysis]: Checked inductivity of 77 backedges. 44 proven. 0 refuted. 0 times theorem prover too weak. 33 trivial. 0 not checked. [2021-12-16 01:00:48,150 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-16 01:00:48,150 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1291915550] [2021-12-16 01:00:48,151 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1291915550] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-16 01:00:48,151 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-16 01:00:48,151 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2021-12-16 01:00:48,151 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2038721818] [2021-12-16 01:00:48,151 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-16 01:00:48,151 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2021-12-16 01:00:48,151 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-16 01:00:48,152 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2021-12-16 01:00:48,152 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=15, Invalid=41, Unknown=0, NotChecked=0, Total=56 [2021-12-16 01:00:48,152 INFO L87 Difference]: Start difference. First operand 859 states and 1084 transitions. Second operand has 8 states, 8 states have (on average 9.75) internal successors, (78), 5 states have internal predecessors, (78), 2 states have call successors, (6), 5 states have call predecessors, (6), 2 states have return successors, (6), 2 states have call predecessors, (6), 2 states have call successors, (6) [2021-12-16 01:00:48,310 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-16 01:00:48,310 INFO L93 Difference]: Finished difference Result 1206 states and 1503 transitions. [2021-12-16 01:00:48,310 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2021-12-16 01:00:48,311 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 9.75) internal successors, (78), 5 states have internal predecessors, (78), 2 states have call successors, (6), 5 states have call predecessors, (6), 2 states have return successors, (6), 2 states have call predecessors, (6), 2 states have call successors, (6) Word has length 113 [2021-12-16 01:00:48,311 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-16 01:00:48,311 INFO L225 Difference]: With dead ends: 1206 [2021-12-16 01:00:48,311 INFO L226 Difference]: Without dead ends: 0 [2021-12-16 01:00:48,314 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 27 GetRequests, 17 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 14 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=39, Invalid=93, Unknown=0, NotChecked=0, Total=132 [2021-12-16 01:00:48,314 INFO L933 BasicCegarLoop]: 82 mSDtfsCounter, 111 mSDsluCounter, 252 mSDsCounter, 0 mSdLazyCounter, 178 mSolverCounterSat, 31 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 113 SdHoareTripleChecker+Valid, 334 SdHoareTripleChecker+Invalid, 209 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 31 IncrementalHoareTripleChecker+Valid, 178 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-16 01:00:48,314 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [113 Valid, 334 Invalid, 209 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [31 Valid, 178 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-16 01:00:48,315 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2021-12-16 01:00:48,315 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2021-12-16 01:00:48,315 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-16 01:00:48,315 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2021-12-16 01:00:48,315 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 113 [2021-12-16 01:00:48,316 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-16 01:00:48,316 INFO L470 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2021-12-16 01:00:48,316 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 9.75) internal successors, (78), 5 states have internal predecessors, (78), 2 states have call successors, (6), 5 states have call predecessors, (6), 2 states have return successors, (6), 2 states have call predecessors, (6), 2 states have call successors, (6) [2021-12-16 01:00:48,316 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2021-12-16 01:00:48,316 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2021-12-16 01:00:48,318 INFO L764 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2021-12-16 01:00:48,318 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable12 [2021-12-16 01:00:48,320 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2021-12-16 01:00:51,225 INFO L854 garLoopResultBuilder]: At program point deactivatePumpENTRY(lines 263 270) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 |old(~pumpRunning~0)|))) (and (or (= 0 ~systemActive~0) .cse0 (not (<= 2 ~waterLevel~0))) (or (not (= 1 ~systemActive~0)) (not (<= 1 ~waterLevel~0)) .cse0))) [2021-12-16 01:00:51,225 INFO L858 garLoopResultBuilder]: For program point deactivatePumpEXIT(lines 263 270) no Hoare annotation was computed. [2021-12-16 01:00:51,225 INFO L858 garLoopResultBuilder]: For program point deactivatePumpFINAL(lines 263 270) no Hoare annotation was computed. [2021-12-16 01:00:51,225 INFO L858 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 196 202) no Hoare annotation was computed. [2021-12-16 01:00:51,225 INFO L861 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 196 202) the Hoare annotation is: true [2021-12-16 01:00:51,226 INFO L861 garLoopResultBuilder]: At program point changeMethaneLevelENTRY(lines 84 95) the Hoare annotation is: true [2021-12-16 01:00:51,226 INFO L858 garLoopResultBuilder]: For program point L88-1(lines 84 95) no Hoare annotation was computed. [2021-12-16 01:00:51,226 INFO L858 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 84 95) no Hoare annotation was computed. [2021-12-16 01:00:51,226 INFO L861 garLoopResultBuilder]: At program point L832(line 832) the Hoare annotation is: true [2021-12-16 01:00:51,226 INFO L858 garLoopResultBuilder]: For program point cleanupEXIT(lines 826 855) no Hoare annotation was computed. [2021-12-16 01:00:51,226 INFO L858 garLoopResultBuilder]: For program point L832-1(line 832) no Hoare annotation was computed. [2021-12-16 01:00:51,226 INFO L861 garLoopResultBuilder]: At program point cleanupENTRY(lines 826 855) the Hoare annotation is: true [2021-12-16 01:00:51,227 INFO L861 garLoopResultBuilder]: At program point L851(lines 826 855) the Hoare annotation is: true [2021-12-16 01:00:51,227 INFO L858 garLoopResultBuilder]: For program point L847(line 847) no Hoare annotation was computed. [2021-12-16 01:00:51,227 INFO L858 garLoopResultBuilder]: For program point L840(lines 840 844) no Hoare annotation was computed. [2021-12-16 01:00:51,227 INFO L861 garLoopResultBuilder]: At program point L840-1(lines 840 844) the Hoare annotation is: true [2021-12-16 01:00:51,227 INFO L858 garLoopResultBuilder]: For program point L837(line 837) no Hoare annotation was computed. [2021-12-16 01:00:51,227 INFO L861 garLoopResultBuilder]: At program point L836-2(lines 836 850) the Hoare annotation is: true [2021-12-16 01:00:51,227 INFO L858 garLoopResultBuilder]: For program point L64(lines 64 68) no Hoare annotation was computed. [2021-12-16 01:00:51,228 INFO L854 garLoopResultBuilder]: At program point L287(lines 282 290) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (<= 1 |old(~waterLevel~0)|))) (.cse2 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 (not (= ~systemActive~0 0))) (or .cse2 .cse0 .cse1) (or (not (<= 2 |old(~waterLevel~0)|)) .cse2))) [2021-12-16 01:00:51,228 INFO L854 garLoopResultBuilder]: At program point L64-2(lines 60 71) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (<= 1 |old(~waterLevel~0)|))) (.cse2 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 (not (= ~systemActive~0 0))) (or .cse2 .cse0 .cse1) (or (not (<= 2 |old(~waterLevel~0)|)) .cse2 (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 ~waterLevel~0))))) [2021-12-16 01:00:51,228 INFO L858 garLoopResultBuilder]: For program point L176-1(lines 175 194) no Hoare annotation was computed. [2021-12-16 01:00:51,228 INFO L858 garLoopResultBuilder]: For program point L238(lines 238 246) no Hoare annotation was computed. [2021-12-16 01:00:51,228 INFO L858 garLoopResultBuilder]: For program point L234(lines 234 251) no Hoare annotation was computed. [2021-12-16 01:00:51,228 INFO L858 garLoopResultBuilder]: For program point timeShiftFINAL(lines 172 195) no Hoare annotation was computed. [2021-12-16 01:00:51,229 INFO L854 garLoopResultBuilder]: At program point L156(lines 151 159) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (not (<= 1 |old(~waterLevel~0)|)))) (and (or (not (<= 2 |old(~waterLevel~0)|)) .cse0 (and (= |timeShift_isLowWaterSensorDry_#res#1| 0) (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 ~waterLevel~0))) (or .cse1 .cse2 (not (= ~systemActive~0 0))) (or .cse0 .cse1 .cse2))) [2021-12-16 01:00:51,229 INFO L858 garLoopResultBuilder]: For program point L355(lines 355 359) no Hoare annotation was computed. [2021-12-16 01:00:51,229 INFO L858 garLoopResultBuilder]: For program point L355-2(lines 355 359) no Hoare annotation was computed. [2021-12-16 01:00:51,229 INFO L854 garLoopResultBuilder]: At program point L244(line 244) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (<= 1 |old(~waterLevel~0)|))) (.cse2 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 (not (= ~systemActive~0 0))) (or .cse2 .cse0 .cse1) (or (not (<= 2 |old(~waterLevel~0)|)) .cse2))) [2021-12-16 01:00:51,229 INFO L854 garLoopResultBuilder]: At program point L240(line 240) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (<= 1 |old(~waterLevel~0)|))) (.cse2 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 (not (= ~systemActive~0 0))) (or .cse2 .cse0 .cse1) (or (not (<= 2 |old(~waterLevel~0)|)) .cse2 (and (<= 1 |timeShift_isLowWaterLevel_~tmp___0~1#1|) (<= 1 |timeShift_isLowWaterLevel_#res#1|) (= |timeShift_isLowWaterSensorDry_#res#1| 0) (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 |timeShift_processEnvironment_~tmp~1#1|) (= |timeShift_isLowWaterLevel_~tmp~3#1| 0) (<= 1 ~waterLevel~0))))) [2021-12-16 01:00:51,229 INFO L854 garLoopResultBuilder]: At program point L133(lines 128 136) the Hoare annotation is: (let ((.cse3 (not (= ~systemActive~0 0))) (.cse1 (= |timeShift_getWaterLevel_#res#1| 1)) (.cse7 (= ~waterLevel~0 |old(~waterLevel~0)|)) (.cse0 (not (= |old(~waterLevel~0)| 1))) (.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse4 (not (<= 2 |old(~waterLevel~0)|))) (.cse5 (not (= 1 ~systemActive~0))) (.cse8 (<= 1 |timeShift_getWaterLevel_#res#1|)) (.cse9 (= ~pumpRunning~0 0)) (.cse6 (<= 2 |timeShift_getWaterLevel_#res#1|))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse4 .cse5 .cse2 (and .cse6 .cse7)) (or (and .cse7 .cse8 .cse9) .cse2 (not (<= 1 |old(~waterLevel~0)|)) .cse3) (or (and .cse1 .cse7 .cse9) .cse0 .cse5 .cse2) (or .cse4 .cse5 (and (<= 1 |timeShift_isLowWaterLevel_~tmp___0~1#1|) (<= 1 |timeShift_isLowWaterLevel_#res#1|) (<= 1 |timeShift_processEnvironment_~tmp~1#1|) (<= 1 ~waterLevel~0) .cse8 .cse9) (and .cse6 (<= 2 ~waterLevel~0))))) [2021-12-16 01:00:51,230 INFO L858 garLoopResultBuilder]: For program point L963(line 963) no Hoare annotation was computed. [2021-12-16 01:00:51,230 INFO L854 garLoopResultBuilder]: At program point L249(line 249) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (not (= 1 ~systemActive~0))) (.cse1 (= ~waterLevel~0 |old(~waterLevel~0)|)) (.cse2 (= ~pumpRunning~0 0))) (and (or .cse0 (not (<= 1 |old(~waterLevel~0)|)) (not (= ~systemActive~0 0))) (or (not (= |old(~waterLevel~0)| 1)) (and .cse1 .cse2) .cse3 .cse0) (or (not (<= 2 |old(~waterLevel~0)|)) .cse3 (and .cse1 (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse2)))) [2021-12-16 01:00:51,230 INFO L854 garLoopResultBuilder]: At program point L249-1(lines 230 254) the Hoare annotation is: (let ((.cse2 (= ~waterLevel~0 |old(~waterLevel~0)|)) (.cse3 (not (= |old(~pumpRunning~0)| 0))) (.cse0 (not (<= 2 |old(~waterLevel~0)|))) (.cse1 (not (= 1 ~systemActive~0))) (.cse4 (= ~pumpRunning~0 0))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse3 (not (<= 1 |old(~waterLevel~0)|)) (not (= ~systemActive~0 0))) (or (not (= |old(~waterLevel~0)| 1)) (and .cse2 .cse4) .cse1 .cse3) (or .cse0 .cse1 (and (<= 1 |timeShift_isLowWaterLevel_~tmp___0~1#1|) (<= 1 |timeShift_isLowWaterLevel_#res#1|) (<= 1 |timeShift_processEnvironment_~tmp~1#1|) (<= 1 ~waterLevel~0) .cse4) (<= 2 ~waterLevel~0)))) [2021-12-16 01:00:51,230 INFO L858 garLoopResultBuilder]: For program point L183-1(lines 183 189) no Hoare annotation was computed. [2021-12-16 01:00:51,230 INFO L858 garLoopResultBuilder]: For program point L980(lines 980 986) no Hoare annotation was computed. [2021-12-16 01:00:51,231 INFO L858 garLoopResultBuilder]: For program point L976(lines 976 989) no Hoare annotation was computed. [2021-12-16 01:00:51,231 INFO L854 garLoopResultBuilder]: At program point timeShiftENTRY(lines 172 195) the Hoare annotation is: (let ((.cse0 (= ~waterLevel~0 |old(~waterLevel~0)|))) (let ((.cse2 (and .cse0 (= ~pumpRunning~0 0))) (.cse1 (not (= 1 ~systemActive~0))) (.cse3 (not (= |old(~pumpRunning~0)| 0)))) (and (or (not (<= 2 |old(~waterLevel~0)|)) (and .cse0 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) .cse1) (or .cse2 .cse3 (not (<= 1 |old(~waterLevel~0)|)) (not (= ~systemActive~0 0))) (or (not (= |old(~waterLevel~0)| 1)) .cse2 .cse1 .cse3)))) [2021-12-16 01:00:51,231 INFO L854 garLoopResultBuilder]: At program point L976-1(lines 968 992) the Hoare annotation is: (let ((.cse12 (<= 2 |timeShift___utac_acc__Specification4_spec__1_~tmp~9#1|)) (.cse13 (<= 2 |timeShift_getWaterLevel_#res#1|)) (.cse2 (= ~waterLevel~0 |old(~waterLevel~0)|)) (.cse14 (<= 2 ~waterLevel~0)) (.cse15 (= 1 ~systemActive~0))) (let ((.cse4 (not (= |old(~waterLevel~0)| 1))) (.cse0 (= |timeShift___utac_acc__Specification4_spec__1_~tmp~9#1| 1)) (.cse1 (= |timeShift_getWaterLevel_#res#1| 1)) (.cse6 (not (= ~systemActive~0 0))) (.cse7 (not (<= 2 |old(~waterLevel~0)|))) (.cse10 (<= 1 |timeShift___utac_acc__Specification4_spec__1_~tmp~9#1|)) (.cse11 (<= 1 |timeShift_getWaterLevel_#res#1|)) (.cse8 (and .cse12 .cse13 .cse2 .cse14 .cse15)) (.cse3 (= ~pumpRunning~0 0)) (.cse9 (not .cse15)) (.cse5 (not (= |old(~pumpRunning~0)| 0)))) (and (or (and .cse0 .cse1 .cse2 .cse3) .cse4 .cse5 .cse6) (or .cse7 .cse8 .cse9 .cse5) (or .cse4 .cse9 .cse5 (and .cse0 .cse1)) (or .cse7 .cse5 (and .cse10 .cse2 (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse11) .cse6) (or .cse7 (and .cse12 .cse13 .cse14) .cse9 (and (<= 1 |timeShift_isLowWaterLevel_~tmp___0~1#1|) .cse10 (<= 1 |timeShift_isLowWaterLevel_#res#1|) (<= 1 |timeShift_processEnvironment_~tmp~1#1|) (<= 1 ~waterLevel~0) .cse11 .cse3)) (or .cse8 (and .cse2 .cse3) .cse9 .cse5 (not (<= 1 |old(~waterLevel~0)|)))))) [2021-12-16 01:00:51,231 INFO L858 garLoopResultBuilder]: For program point timeShiftEXIT(lines 172 195) no Hoare annotation was computed. [2021-12-16 01:00:51,231 INFO L854 garLoopResultBuilder]: At program point L361(lines 346 364) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (<= 1 |old(~waterLevel~0)|))) (.cse2 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 (not (= ~systemActive~0 0))) (or .cse2 .cse0 .cse1) (or (not (<= 2 |old(~waterLevel~0)|)) (and (<= 1 |timeShift_isLowWaterLevel_~tmp___0~1#1|) (<= 1 |timeShift_isLowWaterLevel_#res#1|) (= |timeShift_isLowWaterSensorDry_#res#1| 0) (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= |timeShift_isLowWaterLevel_~tmp~3#1| 0) (<= 1 ~waterLevel~0)) .cse2))) [2021-12-16 01:00:51,232 INFO L858 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 963) no Hoare annotation was computed. [2021-12-16 01:00:51,232 INFO L854 garLoopResultBuilder]: At program point L964(lines 959 966) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (<= 1 |old(~waterLevel~0)|))) (.cse2 (not (= 1 ~systemActive~0)))) (and (or .cse0 .cse1 (not (= ~systemActive~0 0))) (or .cse2 .cse0 .cse1) (or (not (<= 2 |old(~waterLevel~0)|)) .cse2))) [2021-12-16 01:00:51,232 INFO L861 garLoopResultBuilder]: At program point L894(lines 887 896) the Hoare annotation is: true [2021-12-16 01:00:51,232 INFO L861 garLoopResultBuilder]: At program point L919(lines 900 922) the Hoare annotation is: true [2021-12-16 01:00:51,232 INFO L861 garLoopResultBuilder]: At program point L453(lines 390 457) the Hoare annotation is: true [2021-12-16 01:00:51,232 INFO L858 garLoopResultBuilder]: For program point L420(lines 420 426) no Hoare annotation was computed. [2021-12-16 01:00:51,232 INFO L858 garLoopResultBuilder]: For program point L420-1(lines 420 426) no Hoare annotation was computed. [2021-12-16 01:00:51,233 INFO L858 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2021-12-16 01:00:51,233 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startENTRY(line -1) no Hoare annotation was computed. [2021-12-16 01:00:51,233 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2021-12-16 01:00:51,233 INFO L854 garLoopResultBuilder]: At program point L412(line 412) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse2 (<= 1 ~waterLevel~0)) (.cse1 (= ~systemActive~0 1)) (.cse3 (= ~pumpRunning~0 0))) (or (and .cse0 (<= 2 ~waterLevel~0) .cse1) (and .cse0 (= ~systemActive~0 0) .cse2 .cse3) (and .cse0 .cse2 .cse1 .cse3))) [2021-12-16 01:00:51,233 INFO L854 garLoopResultBuilder]: At program point L371(line 371) the Hoare annotation is: (and (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0) (<= 2 ~waterLevel~0) (not (= 0 ~systemActive~0))) [2021-12-16 01:00:51,233 INFO L854 garLoopResultBuilder]: At program point L450(lines 399 451) the Hoare annotation is: false [2021-12-16 01:00:51,234 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2021-12-16 01:00:51,234 INFO L854 garLoopResultBuilder]: At program point L954(lines 949 957) the Hoare annotation is: (and (= ~waterLevel~0 1) (= ~systemActive~0 1) (= ~pumpRunning~0 0)) [2021-12-16 01:00:51,234 INFO L858 garLoopResultBuilder]: For program point L438(lines 438 444) no Hoare annotation was computed. [2021-12-16 01:00:51,234 INFO L854 garLoopResultBuilder]: At program point L884(lines 880 886) the Hoare annotation is: (and (= ~waterLevel~0 1) (= ~systemActive~0 1) (= ~pumpRunning~0 0)) [2021-12-16 01:00:51,234 INFO L854 garLoopResultBuilder]: At program point L438-2(lines 430 445) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse2 (<= 1 ~waterLevel~0)) (.cse1 (= ~systemActive~0 1)) (.cse3 (= ~pumpRunning~0 0))) (or (and .cse0 (<= 2 ~waterLevel~0) .cse1) (and .cse0 (= ~systemActive~0 0) .cse2 .cse3) (and .cse0 .cse2 .cse1 .cse3))) [2021-12-16 01:00:51,234 INFO L854 garLoopResultBuilder]: At program point L946(lines 942 948) the Hoare annotation is: (and (= ~waterLevel~0 1) (= ~systemActive~0 1) (= ~pumpRunning~0 0)) [2021-12-16 01:00:51,234 INFO L858 garLoopResultBuilder]: For program point L401(lines 400 449) no Hoare annotation was computed. [2021-12-16 01:00:51,235 INFO L858 garLoopResultBuilder]: For program point L430(lines 430 445) no Hoare annotation was computed. [2021-12-16 01:00:51,235 INFO L854 garLoopResultBuilder]: At program point L422(line 422) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse2 (<= 1 ~waterLevel~0)) (.cse1 (= ~systemActive~0 1)) (.cse3 (= ~pumpRunning~0 0))) (or (and .cse0 (<= 2 ~waterLevel~0) .cse1) (and .cse0 (= ~systemActive~0 0) .cse2 .cse3) (and .cse0 .cse2 .cse1 .cse3))) [2021-12-16 01:00:51,235 INFO L854 garLoopResultBuilder]: At program point L385(lines 380 387) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= ~systemActive~0 1))) (or (and .cse0 (<= 2 ~waterLevel~0) .cse1) (and .cse0 (<= 1 ~waterLevel~0) .cse1 (= ~pumpRunning~0 0)))) [2021-12-16 01:00:51,235 INFO L854 garLoopResultBuilder]: At program point L447(lines 400 449) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse2 (<= 1 ~waterLevel~0)) (.cse1 (= ~systemActive~0 1)) (.cse3 (= ~pumpRunning~0 0))) (or (and .cse0 (<= 2 ~waterLevel~0) .cse1) (and .cse0 (= ~systemActive~0 0) .cse2 .cse3) (and .cse0 .cse2 .cse1 .cse3))) [2021-12-16 01:00:51,235 INFO L858 garLoopResultBuilder]: For program point L410(lines 410 416) no Hoare annotation was computed. [2021-12-16 01:00:51,235 INFO L858 garLoopResultBuilder]: For program point L410-1(lines 410 416) no Hoare annotation was computed. [2021-12-16 01:00:51,235 INFO L854 garLoopResultBuilder]: At program point L377(lines 365 379) the Hoare annotation is: (and (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0) (= ~systemActive~0 0) (<= 1 ~waterLevel~0) (= ~pumpRunning~0 0)) [2021-12-16 01:00:51,236 INFO L858 garLoopResultBuilder]: For program point L402(lines 402 406) no Hoare annotation was computed. [2021-12-16 01:00:51,236 INFO L858 garLoopResultBuilder]: For program point L369(lines 369 375) no Hoare annotation was computed. [2021-12-16 01:00:51,236 INFO L858 garLoopResultBuilder]: For program point L369-1(lines 369 375) no Hoare annotation was computed. [2021-12-16 01:00:51,236 INFO L858 garLoopResultBuilder]: For program point L910(lines 910 917) no Hoare annotation was computed. [2021-12-16 01:00:51,236 INFO L858 garLoopResultBuilder]: For program point L910-2(lines 910 917) no Hoare annotation was computed. [2021-12-16 01:00:51,236 INFO L854 garLoopResultBuilder]: At program point L939(lines 935 941) the Hoare annotation is: (and (= ~waterLevel~0 1) (= ~systemActive~0 1) (= ~pumpRunning~0 0)) [2021-12-16 01:00:51,236 INFO L854 garLoopResultBuilder]: At program point processEnvironment__wrappee__highWaterSensorENTRY(lines 204 228) the Hoare annotation is: (or (not (= 1 ~systemActive~0)) (not (<= 1 ~waterLevel~0)) (not (= |old(~pumpRunning~0)| 0)) (= ~pumpRunning~0 0)) [2021-12-16 01:00:51,237 INFO L854 garLoopResultBuilder]: At program point L223(line 223) the Hoare annotation is: (or (not (= 1 ~systemActive~0)) (not (<= 1 ~waterLevel~0)) (not (= |old(~pumpRunning~0)| 0))) [2021-12-16 01:00:51,237 INFO L858 garLoopResultBuilder]: For program point L223-1(lines 204 228) no Hoare annotation was computed. [2021-12-16 01:00:51,237 INFO L858 garLoopResultBuilder]: For program point L141(lines 141 147) no Hoare annotation was computed. [2021-12-16 01:00:51,237 INFO L858 garLoopResultBuilder]: For program point processEnvironment__wrappee__highWaterSensorEXIT(lines 204 228) no Hoare annotation was computed. [2021-12-16 01:00:51,237 INFO L854 garLoopResultBuilder]: At program point L218(line 218) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (= |old(~pumpRunning~0)| 0)))) (and (or (and (not (= |processEnvironment__wrappee__highWaterSensor_isHighWaterSensorDry_#res#1| 0)) (not (= 0 |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp~2#1|))) (not (= ~waterLevel~0 1)) .cse0 .cse1) (or .cse0 (and (= |processEnvironment__wrappee__highWaterSensor_~tmp~0#1| 0) (= ~pumpRunning~0 0)) (not (<= 1 ~waterLevel~0)) .cse1))) [2021-12-16 01:00:51,237 INFO L854 garLoopResultBuilder]: At program point L342(lines 327 345) the Hoare annotation is: (let ((.cse0 (not (= 1 ~systemActive~0))) (.cse1 (not (= |old(~pumpRunning~0)| 0)))) (and (or (not (= |processEnvironment__wrappee__highWaterSensor_isHighWaterSensorDry_#res#1| 0)) (not (= ~waterLevel~0 1)) .cse0 .cse1) (let ((.cse2 (= ~pumpRunning~0 0))) (or (and (<= 2 ~waterLevel~0) .cse2) (and (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp___0~0#1| 0) (not (= 0 |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp~2#1|)) (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_#res#1| 0) .cse2) .cse0 (not (<= 1 ~waterLevel~0)) .cse1)))) [2021-12-16 01:00:51,237 INFO L858 garLoopResultBuilder]: For program point L212(lines 212 220) no Hoare annotation was computed. [2021-12-16 01:00:51,238 INFO L854 garLoopResultBuilder]: At program point L146(lines 137 150) the Hoare annotation is: (let ((.cse1 (not (= 1 ~systemActive~0))) (.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse0 (= ~pumpRunning~0 0))) (and (or (and (not (= |processEnvironment__wrappee__highWaterSensor_isHighWaterSensorDry_#res#1| 0)) .cse0) (not (= ~waterLevel~0 1)) .cse1 .cse2) (or .cse1 .cse2 (not (<= 2 ~waterLevel~0)) .cse0))) [2021-12-16 01:00:51,238 INFO L858 garLoopResultBuilder]: For program point L208(lines 208 225) no Hoare annotation was computed. [2021-12-16 01:00:51,238 INFO L858 garLoopResultBuilder]: For program point L336(lines 336 340) no Hoare annotation was computed. [2021-12-16 01:00:51,238 INFO L858 garLoopResultBuilder]: For program point L336-2(lines 336 340) no Hoare annotation was computed. [2021-12-16 01:00:51,238 INFO L854 garLoopResultBuilder]: At program point L260(lines 255 262) the Hoare annotation is: (or (not (= ~waterLevel~0 1)) (not (= 1 ~systemActive~0)) (not (= |old(~pumpRunning~0)| 0))) [2021-12-16 01:00:51,238 INFO L858 garLoopResultBuilder]: For program point waterRiseEXIT(lines 72 83) no Hoare annotation was computed. [2021-12-16 01:00:51,238 INFO L858 garLoopResultBuilder]: For program point L76-1(lines 72 83) no Hoare annotation was computed. [2021-12-16 01:00:51,239 INFO L854 garLoopResultBuilder]: At program point waterRiseENTRY(lines 72 83) the Hoare annotation is: (let ((.cse0 (not (= ~pumpRunning~0 0))) (.cse3 (not (= 1 ~systemActive~0))) (.cse1 (= ~waterLevel~0 |old(~waterLevel~0)|)) (.cse2 (not (<= 1 |old(~waterLevel~0)|)))) (and (or .cse0 .cse1 .cse2 (not (= ~systemActive~0 0))) (or (not (<= 2 |old(~waterLevel~0)|)) .cse3 .cse1) (or .cse0 .cse3 .cse1 .cse2))) [2021-12-16 01:00:51,242 INFO L732 BasicCegarLoop]: Path program histogram: [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-16 01:00:51,243 INFO L179 ceAbstractionStarter]: Computing trace abstraction results [2021-12-16 01:00:51,265 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 16.12 01:00:51 BoogieIcfgContainer [2021-12-16 01:00:51,265 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2021-12-16 01:00:51,266 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2021-12-16 01:00:51,266 INFO L271 PluginConnector]: Initializing Witness Printer... [2021-12-16 01:00:51,266 INFO L275 PluginConnector]: Witness Printer initialized [2021-12-16 01:00:51,267 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 16.12 01:00:42" (3/4) ... [2021-12-16 01:00:51,269 INFO L137 WitnessPrinter]: Generating witness for correct program [2021-12-16 01:00:51,274 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure deactivatePump [2021-12-16 01:00:51,275 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2021-12-16 01:00:51,275 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2021-12-16 01:00:51,275 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2021-12-16 01:00:51,275 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2021-12-16 01:00:51,275 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__highWaterSensor [2021-12-16 01:00:51,275 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2021-12-16 01:00:51,287 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 52 nodes and edges [2021-12-16 01:00:51,288 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 22 nodes and edges [2021-12-16 01:00:51,288 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 11 nodes and edges [2021-12-16 01:00:51,289 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2021-12-16 01:00:51,289 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2021-12-16 01:00:51,291 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-12-16 01:00:51,291 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-12-16 01:00:51,310 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel))) || !(systemActive == 0)) && ((!(1 == systemActive) || !(\old(pumpRunning) == 0)) || !(1 <= \old(waterLevel)))) && ((!(2 <= \old(waterLevel)) || !(1 == systemActive)) || (pumpRunning == \old(pumpRunning) && 1 <= waterLevel)) [2021-12-16 01:00:51,311 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!(2 <= \old(waterLevel)) || !(1 == systemActive)) || waterLevel == \old(waterLevel)) || !(\old(pumpRunning) == 0)) && ((!(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel))) || !(systemActive == 0))) && (((!(\old(waterLevel) == 1) || (waterLevel == \old(waterLevel) && pumpRunning == 0)) || !(1 == systemActive)) || !(\old(pumpRunning) == 0))) && (((!(2 <= \old(waterLevel)) || !(1 == systemActive)) || ((((1 <= tmp___0 && 1 <= \result) && 1 <= tmp) && 1 <= waterLevel) && pumpRunning == 0)) || 2 <= waterLevel) [2021-12-16 01:00:51,312 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((!(\old(waterLevel) == 1) || \result == 1) || !(\old(pumpRunning) == 0)) || !(systemActive == 0)) && (((!(2 <= \old(waterLevel)) || !(1 == systemActive)) || !(\old(pumpRunning) == 0)) || (2 <= \result && waterLevel == \old(waterLevel)))) && (((((waterLevel == \old(waterLevel) && 1 <= \result) && pumpRunning == 0) || !(\old(pumpRunning) == 0)) || !(1 <= \old(waterLevel))) || !(systemActive == 0))) && (((((\result == 1 && waterLevel == \old(waterLevel)) && pumpRunning == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || !(\old(pumpRunning) == 0))) && (((!(2 <= \old(waterLevel)) || !(1 == systemActive)) || (((((1 <= tmp___0 && 1 <= \result) && 1 <= tmp) && 1 <= waterLevel) && 1 <= \result) && pumpRunning == 0)) || (2 <= \result && 2 <= waterLevel)) [2021-12-16 01:00:51,312 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((((tmp == 1 && \result == 1) && waterLevel == \old(waterLevel)) && pumpRunning == 0) || !(\old(waterLevel) == 1)) || !(\old(pumpRunning) == 0)) || !(systemActive == 0)) && (((!(2 <= \old(waterLevel)) || ((((2 <= tmp && 2 <= \result) && waterLevel == \old(waterLevel)) && 2 <= waterLevel) && 1 == systemActive)) || !(1 == systemActive)) || !(\old(pumpRunning) == 0))) && (((!(\old(waterLevel) == 1) || !(1 == systemActive)) || !(\old(pumpRunning) == 0)) || (tmp == 1 && \result == 1))) && (((!(2 <= \old(waterLevel)) || !(\old(pumpRunning) == 0)) || (((1 <= tmp && waterLevel == \old(waterLevel)) && pumpRunning == \old(pumpRunning)) && 1 <= \result)) || !(systemActive == 0))) && (((!(2 <= \old(waterLevel)) || ((2 <= tmp && 2 <= \result) && 2 <= waterLevel)) || !(1 == systemActive)) || ((((((1 <= tmp___0 && 1 <= tmp) && 1 <= \result) && 1 <= tmp) && 1 <= waterLevel) && 1 <= \result) && pumpRunning == 0))) && ((((((((2 <= tmp && 2 <= \result) && waterLevel == \old(waterLevel)) && 2 <= waterLevel) && 1 == systemActive) || (waterLevel == \old(waterLevel) && pumpRunning == 0)) || !(1 == systemActive)) || !(\old(pumpRunning) == 0)) || !(1 <= \old(waterLevel))) [2021-12-16 01:00:51,312 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(2 <= \old(waterLevel)) || !(1 == systemActive)) || ((\result == 0 && pumpRunning == \old(pumpRunning)) && 1 <= waterLevel)) && ((!(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel))) || !(systemActive == 0))) && ((!(1 == systemActive) || !(\old(pumpRunning) == 0)) || !(1 <= \old(waterLevel))) [2021-12-16 01:00:51,313 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!(\result == 0) && pumpRunning == 0) || !(waterLevel == 1)) || !(1 == systemActive)) || !(\old(pumpRunning) == 0)) && (((!(1 == systemActive) || !(\old(pumpRunning) == 0)) || !(2 <= waterLevel)) || pumpRunning == 0) [2021-12-16 01:00:51,313 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel))) || !(systemActive == 0)) && ((!(1 == systemActive) || !(\old(pumpRunning) == 0)) || !(1 <= \old(waterLevel)))) && (!(2 <= \old(waterLevel)) || !(1 == systemActive)) [2021-12-16 01:00:51,313 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel))) || !(systemActive == 0)) && ((!(1 == systemActive) || !(\old(pumpRunning) == 0)) || !(1 <= \old(waterLevel)))) && ((!(2 <= \old(waterLevel)) || (((((1 <= tmp___0 && 1 <= \result) && \result == 0) && pumpRunning == \old(pumpRunning)) && tmp == 0) && 1 <= waterLevel)) || !(1 == systemActive)) [2021-12-16 01:00:51,313 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\result == 0) || !(waterLevel == 1)) || !(1 == systemActive)) || !(\old(pumpRunning) == 0)) && (((((2 <= waterLevel && pumpRunning == 0) || (((tmp___0 == 0 && !(0 == tmp)) && \result == 0) && pumpRunning == 0)) || !(1 == systemActive)) || !(1 <= waterLevel)) || !(\old(pumpRunning) == 0)) [2021-12-16 01:00:51,314 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel))) || !(systemActive == 0)) && ((!(1 == systemActive) || !(\old(pumpRunning) == 0)) || !(1 <= \old(waterLevel)))) && (!(2 <= \old(waterLevel)) || !(1 == systemActive)) [2021-12-16 01:00:51,314 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (!(waterLevel == 1) || !(1 == systemActive)) || !(\old(pumpRunning) == 0) [2021-12-16 01:00:51,337 INFO L141 WitnessManager]: Wrote witness to /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/witness.graphml [2021-12-16 01:00:51,337 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2021-12-16 01:00:51,338 INFO L158 Benchmark]: Toolchain (without parser) took 10018.57ms. Allocated memory was 90.2MB in the beginning and 167.8MB in the end (delta: 77.6MB). Free memory was 57.5MB in the beginning and 95.2MB in the end (delta: -37.7MB). Peak memory consumption was 40.4MB. Max. memory is 16.1GB. [2021-12-16 01:00:51,338 INFO L158 Benchmark]: CDTParser took 0.14ms. Allocated memory is still 90.2MB. Free memory was 48.2MB in the beginning and 48.1MB in the end (delta: 39.2kB). There was no memory consumed. Max. memory is 16.1GB. [2021-12-16 01:00:51,339 INFO L158 Benchmark]: CACSL2BoogieTranslator took 459.33ms. Allocated memory was 90.2MB in the beginning and 115.3MB in the end (delta: 25.2MB). Free memory was 57.5MB in the beginning and 83.5MB in the end (delta: -26.0MB). Peak memory consumption was 10.5MB. Max. memory is 16.1GB. [2021-12-16 01:00:51,339 INFO L158 Benchmark]: Boogie Procedure Inliner took 73.48ms. Allocated memory is still 115.3MB. Free memory was 83.5MB in the beginning and 80.7MB in the end (delta: 2.7MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2021-12-16 01:00:51,339 INFO L158 Benchmark]: Boogie Preprocessor took 32.47ms. Allocated memory is still 115.3MB. Free memory was 80.7MB in the beginning and 79.3MB in the end (delta: 1.5MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2021-12-16 01:00:51,340 INFO L158 Benchmark]: RCFGBuilder took 447.18ms. Allocated memory is still 115.3MB. Free memory was 79.3MB in the beginning and 63.1MB in the end (delta: 16.1MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. [2021-12-16 01:00:51,340 INFO L158 Benchmark]: TraceAbstraction took 8928.06ms. Allocated memory was 115.3MB in the beginning and 167.8MB in the end (delta: 52.4MB). Free memory was 62.5MB in the beginning and 101.5MB in the end (delta: -39.0MB). Peak memory consumption was 70.3MB. Max. memory is 16.1GB. [2021-12-16 01:00:51,340 INFO L158 Benchmark]: Witness Printer took 71.69ms. Allocated memory is still 167.8MB. Free memory was 101.5MB in the beginning and 95.2MB in the end (delta: 6.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. [2021-12-16 01:00:51,342 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.14ms. Allocated memory is still 90.2MB. Free memory was 48.2MB in the beginning and 48.1MB in the end (delta: 39.2kB). There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 459.33ms. Allocated memory was 90.2MB in the beginning and 115.3MB in the end (delta: 25.2MB). Free memory was 57.5MB in the beginning and 83.5MB in the end (delta: -26.0MB). Peak memory consumption was 10.5MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 73.48ms. Allocated memory is still 115.3MB. Free memory was 83.5MB in the beginning and 80.7MB in the end (delta: 2.7MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 32.47ms. Allocated memory is still 115.3MB. Free memory was 80.7MB in the beginning and 79.3MB in the end (delta: 1.5MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 447.18ms. Allocated memory is still 115.3MB. Free memory was 79.3MB in the beginning and 63.1MB in the end (delta: 16.1MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. * TraceAbstraction took 8928.06ms. Allocated memory was 115.3MB in the beginning and 167.8MB in the end (delta: 52.4MB). Free memory was 62.5MB in the beginning and 101.5MB in the end (delta: -39.0MB). Peak memory consumption was 70.3MB. Max. memory is 16.1GB. * Witness Printer took 71.69ms. Allocated memory is still 167.8MB. Free memory was 101.5MB in the beginning and 95.2MB in the end (delta: 6.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 963]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 8 procedures, 90 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 8.9s, OverallIterations: 13, TraceHistogramMax: 3, PathProgramHistogramMax: 2, EmptinessCheckTime: 0.0s, AutomataDifference: 2.8s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 2.9s, InitialAbstractionConstructionTime: 0.0s, PartialOrderReductionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 2000 SdHoareTripleChecker+Valid, 1.6s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 1969 mSDsluCounter, 4529 SdHoareTripleChecker+Invalid, 1.3s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 3090 mSDsCounter, 538 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 1850 IncrementalHoareTripleChecker+Invalid, 2388 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 538 mSolverCounterUnsat, 1439 mSDtfsCounter, 1850 mSolverCounterSat, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 483 GetRequests, 352 SyntacticMatches, 7 SemanticMatches, 124 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 387 ImplicationChecksByTransitivity, 0.9s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=859occurred in iteration=12, InterpolantAutomatonStates: 123, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.4s AutomataMinimizationTime, 13 MinimizatonAttempts, 394 StatesRemovedByMinimization, 9 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 42 LocationsWithAnnotation, 1858 PreInvPairs, 2007 NumberOfFragments, 1286 HoareAnnotationTreeSize, 1858 FomulaSimplifications, 3345 FormulaSimplificationTreeSizeReduction, 0.8s HoareSimplificationTime, 42 FomulaSimplificationsInter, 19609 FormulaSimplificationTreeSizeReductionInter, 2.1s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.3s SatisfiabilityAnalysisTime, 1.6s InterpolantComputationTime, 844 NumberOfCodeBlocks, 844 NumberOfCodeBlocksAsserted, 16 NumberOfCheckSat, 906 ConstructedInterpolants, 0 QuantifiedInterpolants, 1727 SizeOfPredicates, 8 NumberOfNonLiveVariables, 956 ConjunctsInSsa, 18 ConjunctsInUnsatCore, 16 InterpolantComputations, 12 PerfectInterpolantSequences, 279/309 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 346]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel))) || !(systemActive == 0)) && ((!(1 == systemActive) || !(\old(pumpRunning) == 0)) || !(1 <= \old(waterLevel)))) && ((!(2 <= \old(waterLevel)) || (((((1 <= tmp___0 && 1 <= \result) && \result == 0) && pumpRunning == \old(pumpRunning)) && tmp == 0) && 1 <= waterLevel)) || !(1 == systemActive)) - InvariantResult [Line: 255]: Loop Invariant Derived loop invariant: (!(waterLevel == 1) || !(1 == systemActive)) || !(\old(pumpRunning) == 0) - InvariantResult [Line: 968]: Loop Invariant Derived loop invariant: ((((((((((tmp == 1 && \result == 1) && waterLevel == \old(waterLevel)) && pumpRunning == 0) || !(\old(waterLevel) == 1)) || !(\old(pumpRunning) == 0)) || !(systemActive == 0)) && (((!(2 <= \old(waterLevel)) || ((((2 <= tmp && 2 <= \result) && waterLevel == \old(waterLevel)) && 2 <= waterLevel) && 1 == systemActive)) || !(1 == systemActive)) || !(\old(pumpRunning) == 0))) && (((!(\old(waterLevel) == 1) || !(1 == systemActive)) || !(\old(pumpRunning) == 0)) || (tmp == 1 && \result == 1))) && (((!(2 <= \old(waterLevel)) || !(\old(pumpRunning) == 0)) || (((1 <= tmp && waterLevel == \old(waterLevel)) && pumpRunning == \old(pumpRunning)) && 1 <= \result)) || !(systemActive == 0))) && (((!(2 <= \old(waterLevel)) || ((2 <= tmp && 2 <= \result) && 2 <= waterLevel)) || !(1 == systemActive)) || ((((((1 <= tmp___0 && 1 <= tmp) && 1 <= \result) && 1 <= tmp) && 1 <= waterLevel) && 1 <= \result) && pumpRunning == 0))) && ((((((((2 <= tmp && 2 <= \result) && waterLevel == \old(waterLevel)) && 2 <= waterLevel) && 1 == systemActive) || (waterLevel == \old(waterLevel) && pumpRunning == 0)) || !(1 == systemActive)) || !(\old(pumpRunning) == 0)) || !(1 <= \old(waterLevel))) - InvariantResult [Line: 128]: Loop Invariant Derived loop invariant: ((((((!(\old(waterLevel) == 1) || \result == 1) || !(\old(pumpRunning) == 0)) || !(systemActive == 0)) && (((!(2 <= \old(waterLevel)) || !(1 == systemActive)) || !(\old(pumpRunning) == 0)) || (2 <= \result && waterLevel == \old(waterLevel)))) && (((((waterLevel == \old(waterLevel) && 1 <= \result) && pumpRunning == 0) || !(\old(pumpRunning) == 0)) || !(1 <= \old(waterLevel))) || !(systemActive == 0))) && (((((\result == 1 && waterLevel == \old(waterLevel)) && pumpRunning == 0) || !(\old(waterLevel) == 1)) || !(1 == systemActive)) || !(\old(pumpRunning) == 0))) && (((!(2 <= \old(waterLevel)) || !(1 == systemActive)) || (((((1 <= tmp___0 && 1 <= \result) && 1 <= tmp) && 1 <= waterLevel) && 1 <= \result) && pumpRunning == 0)) || (2 <= \result && 2 <= waterLevel)) - InvariantResult [Line: 942]: Loop Invariant Derived loop invariant: (waterLevel == 1 && systemActive == 1) && pumpRunning == 0 - InvariantResult [Line: 959]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel))) || !(systemActive == 0)) && ((!(1 == systemActive) || !(\old(pumpRunning) == 0)) || !(1 <= \old(waterLevel)))) && (!(2 <= \old(waterLevel)) || !(1 == systemActive)) - InvariantResult [Line: 880]: Loop Invariant Derived loop invariant: (waterLevel == 1 && systemActive == 1) && pumpRunning == 0 - InvariantResult [Line: 60]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel))) || !(systemActive == 0)) && ((!(1 == systemActive) || !(\old(pumpRunning) == 0)) || !(1 <= \old(waterLevel)))) && ((!(2 <= \old(waterLevel)) || !(1 == systemActive)) || (pumpRunning == \old(pumpRunning) && 1 <= waterLevel)) - InvariantResult [Line: 399]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 836]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 949]: Loop Invariant Derived loop invariant: (waterLevel == 1 && systemActive == 1) && pumpRunning == 0 - InvariantResult [Line: 390]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 400]: Loop Invariant Derived loop invariant: (((splverifierCounter == 0 && 2 <= waterLevel) && systemActive == 1) || (((splverifierCounter == 0 && systemActive == 0) && 1 <= waterLevel) && pumpRunning == 0)) || (((splverifierCounter == 0 && 1 <= waterLevel) && systemActive == 1) && pumpRunning == 0) - InvariantResult [Line: 151]: Loop Invariant Derived loop invariant: (((!(2 <= \old(waterLevel)) || !(1 == systemActive)) || ((\result == 0 && pumpRunning == \old(pumpRunning)) && 1 <= waterLevel)) && ((!(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel))) || !(systemActive == 0))) && ((!(1 == systemActive) || !(\old(pumpRunning) == 0)) || !(1 <= \old(waterLevel))) - InvariantResult [Line: 137]: Loop Invariant Derived loop invariant: ((((!(\result == 0) && pumpRunning == 0) || !(waterLevel == 1)) || !(1 == systemActive)) || !(\old(pumpRunning) == 0)) && (((!(1 == systemActive) || !(\old(pumpRunning) == 0)) || !(2 <= waterLevel)) || pumpRunning == 0) - InvariantResult [Line: 282]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel))) || !(systemActive == 0)) && ((!(1 == systemActive) || !(\old(pumpRunning) == 0)) || !(1 <= \old(waterLevel)))) && (!(2 <= \old(waterLevel)) || !(1 == systemActive)) - InvariantResult [Line: 365]: Loop Invariant Derived loop invariant: ((splverifierCounter == 0 && systemActive == 0) && 1 <= waterLevel) && pumpRunning == 0 - InvariantResult [Line: 327]: Loop Invariant Derived loop invariant: (((!(\result == 0) || !(waterLevel == 1)) || !(1 == systemActive)) || !(\old(pumpRunning) == 0)) && (((((2 <= waterLevel && pumpRunning == 0) || (((tmp___0 == 0 && !(0 == tmp)) && \result == 0) && pumpRunning == 0)) || !(1 == systemActive)) || !(1 <= waterLevel)) || !(\old(pumpRunning) == 0)) - InvariantResult [Line: 380]: Loop Invariant Derived loop invariant: ((splverifierCounter == 0 && 2 <= waterLevel) && systemActive == 1) || (((splverifierCounter == 0 && 1 <= waterLevel) && systemActive == 1) && pumpRunning == 0) - InvariantResult [Line: 230]: Loop Invariant Derived loop invariant: (((((!(2 <= \old(waterLevel)) || !(1 == systemActive)) || waterLevel == \old(waterLevel)) || !(\old(pumpRunning) == 0)) && ((!(\old(pumpRunning) == 0) || !(1 <= \old(waterLevel))) || !(systemActive == 0))) && (((!(\old(waterLevel) == 1) || (waterLevel == \old(waterLevel) && pumpRunning == 0)) || !(1 == systemActive)) || !(\old(pumpRunning) == 0))) && (((!(2 <= \old(waterLevel)) || !(1 == systemActive)) || ((((1 <= tmp___0 && 1 <= \result) && 1 <= tmp) && 1 <= waterLevel) && pumpRunning == 0)) || 2 <= waterLevel) - InvariantResult [Line: 887]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 826]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 935]: Loop Invariant Derived loop invariant: (waterLevel == 1 && systemActive == 1) && pumpRunning == 0 - InvariantResult [Line: 900]: Loop Invariant Derived loop invariant: 1 RESULT: Ultimate proved your program to be correct! [2021-12-16 01:00:51,405 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE