./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/product-lines/minepump_spec4_product51.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version c3fed411 Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/config -Xmx15G -Xms4m -jar /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data -tc /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/AutomizerReach.xml -i ../sv-benchmarks/c/product-lines/minepump_spec4_product51.cil.c -s /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 2165aefdca75c2370f155996346c5c4ea8ed352d96946243b70bd7ef162ab29f --- Real Ultimate output --- This is Ultimate 0.2.2-tmp.no-commuhash-c3fed41 [2021-12-17 15:09:05,488 INFO L177 SettingsManager]: Resetting all preferences to default values... [2021-12-17 15:09:05,490 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2021-12-17 15:09:05,547 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2021-12-17 15:09:05,550 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2021-12-17 15:09:05,551 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2021-12-17 15:09:05,552 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2021-12-17 15:09:05,553 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2021-12-17 15:09:05,554 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2021-12-17 15:09:05,554 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2021-12-17 15:09:05,555 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2021-12-17 15:09:05,556 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2021-12-17 15:09:05,556 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2021-12-17 15:09:05,557 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2021-12-17 15:09:05,557 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2021-12-17 15:09:05,558 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2021-12-17 15:09:05,559 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2021-12-17 15:09:05,559 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2021-12-17 15:09:05,560 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2021-12-17 15:09:05,562 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2021-12-17 15:09:05,563 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2021-12-17 15:09:05,563 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2021-12-17 15:09:05,564 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2021-12-17 15:09:05,565 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2021-12-17 15:09:05,566 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2021-12-17 15:09:05,567 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2021-12-17 15:09:05,567 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2021-12-17 15:09:05,568 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2021-12-17 15:09:05,568 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2021-12-17 15:09:05,568 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2021-12-17 15:09:05,569 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2021-12-17 15:09:05,569 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2021-12-17 15:09:05,570 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2021-12-17 15:09:05,570 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2021-12-17 15:09:05,571 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2021-12-17 15:09:05,571 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2021-12-17 15:09:05,572 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2021-12-17 15:09:05,572 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2021-12-17 15:09:05,572 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2021-12-17 15:09:05,573 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2021-12-17 15:09:05,573 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2021-12-17 15:09:05,574 INFO L101 SettingsManager]: Beginning loading settings from /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf [2021-12-17 15:09:05,588 INFO L113 SettingsManager]: Loading preferences was successful [2021-12-17 15:09:05,589 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2021-12-17 15:09:05,589 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2021-12-17 15:09:05,589 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2021-12-17 15:09:05,590 INFO L136 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2021-12-17 15:09:05,590 INFO L138 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2021-12-17 15:09:05,591 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2021-12-17 15:09:05,591 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2021-12-17 15:09:05,591 INFO L138 SettingsManager]: * Use SBE=true [2021-12-17 15:09:05,592 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2021-12-17 15:09:05,592 INFO L138 SettingsManager]: * sizeof long=4 [2021-12-17 15:09:05,592 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2021-12-17 15:09:05,592 INFO L138 SettingsManager]: * sizeof POINTER=4 [2021-12-17 15:09:05,592 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2021-12-17 15:09:05,593 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2021-12-17 15:09:05,593 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2021-12-17 15:09:05,593 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2021-12-17 15:09:05,593 INFO L138 SettingsManager]: * sizeof long double=12 [2021-12-17 15:09:05,593 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2021-12-17 15:09:05,594 INFO L138 SettingsManager]: * Use constant arrays=true [2021-12-17 15:09:05,594 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2021-12-17 15:09:05,594 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2021-12-17 15:09:05,594 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2021-12-17 15:09:05,594 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2021-12-17 15:09:05,595 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-12-17 15:09:05,595 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2021-12-17 15:09:05,595 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2021-12-17 15:09:05,595 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2021-12-17 15:09:05,596 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2021-12-17 15:09:05,596 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2021-12-17 15:09:05,596 INFO L138 SettingsManager]: * Large block encoding in concurrent analysis=OFF [2021-12-17 15:09:05,596 INFO L138 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2021-12-17 15:09:05,596 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2021-12-17 15:09:05,597 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2021-12-17 15:09:05,597 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 2165aefdca75c2370f155996346c5c4ea8ed352d96946243b70bd7ef162ab29f [2021-12-17 15:09:05,798 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2021-12-17 15:09:05,818 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2021-12-17 15:09:05,820 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2021-12-17 15:09:05,821 INFO L271 PluginConnector]: Initializing CDTParser... [2021-12-17 15:09:05,822 INFO L275 PluginConnector]: CDTParser initialized [2021-12-17 15:09:05,823 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../sv-benchmarks/c/product-lines/minepump_spec4_product51.cil.c [2021-12-17 15:09:05,872 INFO L220 CDTParser]: Created temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/96ccf3f0e/b1db98116d2f4439a127e7031c1b5645/FLAGc43531bf1 [2021-12-17 15:09:06,317 INFO L306 CDTParser]: Found 1 translation units. [2021-12-17 15:09:06,318 INFO L160 CDTParser]: Scanning /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec4_product51.cil.c [2021-12-17 15:09:06,333 INFO L349 CDTParser]: About to delete temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/96ccf3f0e/b1db98116d2f4439a127e7031c1b5645/FLAGc43531bf1 [2021-12-17 15:09:06,348 INFO L357 CDTParser]: Successfully deleted /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/96ccf3f0e/b1db98116d2f4439a127e7031c1b5645 [2021-12-17 15:09:06,350 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2021-12-17 15:09:06,352 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2021-12-17 15:09:06,355 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2021-12-17 15:09:06,355 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2021-12-17 15:09:06,358 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2021-12-17 15:09:06,358 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 17.12 03:09:06" (1/1) ... [2021-12-17 15:09:06,359 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@23e2ca03 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:09:06, skipping insertion in model container [2021-12-17 15:09:06,359 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 17.12 03:09:06" (1/1) ... [2021-12-17 15:09:06,364 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2021-12-17 15:09:06,405 INFO L178 MainTranslator]: Built tables and reachable declarations [2021-12-17 15:09:06,614 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec4_product51.cil.c[8940,8953] [2021-12-17 15:09:06,668 INFO L209 PostProcessor]: Analyzing one entry point: main [2021-12-17 15:09:06,679 INFO L203 MainTranslator]: Completed pre-run [2021-12-17 15:09:06,713 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec4_product51.cil.c[8940,8953] [2021-12-17 15:09:06,742 INFO L209 PostProcessor]: Analyzing one entry point: main [2021-12-17 15:09:06,754 INFO L208 MainTranslator]: Completed translation [2021-12-17 15:09:06,754 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:09:06 WrapperNode [2021-12-17 15:09:06,754 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2021-12-17 15:09:06,755 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2021-12-17 15:09:06,755 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2021-12-17 15:09:06,755 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2021-12-17 15:09:06,761 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:09:06" (1/1) ... [2021-12-17 15:09:06,780 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:09:06" (1/1) ... [2021-12-17 15:09:06,808 INFO L137 Inliner]: procedures = 56, calls = 156, calls flagged for inlining = 24, calls inlined = 20, statements flattened = 260 [2021-12-17 15:09:06,809 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2021-12-17 15:09:06,809 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2021-12-17 15:09:06,809 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2021-12-17 15:09:06,809 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2021-12-17 15:09:06,815 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:09:06" (1/1) ... [2021-12-17 15:09:06,816 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:09:06" (1/1) ... [2021-12-17 15:09:06,824 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:09:06" (1/1) ... [2021-12-17 15:09:06,824 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:09:06" (1/1) ... [2021-12-17 15:09:06,828 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:09:06" (1/1) ... [2021-12-17 15:09:06,832 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:09:06" (1/1) ... [2021-12-17 15:09:06,834 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:09:06" (1/1) ... [2021-12-17 15:09:06,835 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2021-12-17 15:09:06,836 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2021-12-17 15:09:06,836 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2021-12-17 15:09:06,836 INFO L275 PluginConnector]: RCFGBuilder initialized [2021-12-17 15:09:06,842 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:09:06" (1/1) ... [2021-12-17 15:09:06,857 INFO L168 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-12-17 15:09:06,868 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2021-12-17 15:09:06,880 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2021-12-17 15:09:06,881 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2021-12-17 15:09:06,913 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2021-12-17 15:09:06,914 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2021-12-17 15:09:06,914 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2021-12-17 15:09:06,914 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2021-12-17 15:09:06,914 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2021-12-17 15:09:06,914 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2021-12-17 15:09:06,914 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2021-12-17 15:09:06,915 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__highWaterSensor [2021-12-17 15:09:06,915 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__highWaterSensor [2021-12-17 15:09:06,915 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2021-12-17 15:09:06,915 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2021-12-17 15:09:06,915 INFO L130 BoogieDeclarations]: Found specification of procedure deactivatePump [2021-12-17 15:09:06,915 INFO L138 BoogieDeclarations]: Found implementation of procedure deactivatePump [2021-12-17 15:09:06,915 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2021-12-17 15:09:06,916 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2021-12-17 15:09:06,916 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2021-12-17 15:09:06,916 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2021-12-17 15:09:06,916 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2021-12-17 15:09:07,006 INFO L236 CfgBuilder]: Building ICFG [2021-12-17 15:09:07,008 INFO L262 CfgBuilder]: Building CFG for each procedure with an implementation [2021-12-17 15:09:07,259 INFO L277 CfgBuilder]: Performing block encoding [2021-12-17 15:09:07,264 INFO L296 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2021-12-17 15:09:07,264 INFO L301 CfgBuilder]: Removed 2 assume(true) statements. [2021-12-17 15:09:07,265 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 17.12 03:09:07 BoogieIcfgContainer [2021-12-17 15:09:07,265 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2021-12-17 15:09:07,266 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2021-12-17 15:09:07,266 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2021-12-17 15:09:07,271 INFO L275 PluginConnector]: TraceAbstraction initialized [2021-12-17 15:09:07,271 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 17.12 03:09:06" (1/3) ... [2021-12-17 15:09:07,272 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@3dd6b516 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 17.12 03:09:07, skipping insertion in model container [2021-12-17 15:09:07,272 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 17.12 03:09:06" (2/3) ... [2021-12-17 15:09:07,272 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@3dd6b516 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 17.12 03:09:07, skipping insertion in model container [2021-12-17 15:09:07,272 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 17.12 03:09:07" (3/3) ... [2021-12-17 15:09:07,273 INFO L111 eAbstractionObserver]: Analyzing ICFG minepump_spec4_product51.cil.c [2021-12-17 15:09:07,276 INFO L204 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2021-12-17 15:09:07,277 INFO L163 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2021-12-17 15:09:07,313 INFO L338 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2021-12-17 15:09:07,319 INFO L339 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mLoopAccelerationTechnique=FAST_UPR [2021-12-17 15:09:07,319 INFO L340 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2021-12-17 15:09:07,335 INFO L276 IsEmpty]: Start isEmpty. Operand has 89 states, 68 states have (on average 1.3970588235294117) internal successors, (95), 77 states have internal predecessors, (95), 12 states have call successors, (12), 7 states have call predecessors, (12), 7 states have return successors, (12), 9 states have call predecessors, (12), 12 states have call successors, (12) [2021-12-17 15:09:07,339 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 20 [2021-12-17 15:09:07,339 INFO L506 BasicCegarLoop]: Found error trace [2021-12-17 15:09:07,340 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:09:07,341 INFO L402 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-17 15:09:07,344 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-17 15:09:07,345 INFO L85 PathProgramCache]: Analyzing trace with hash -883530062, now seen corresponding path program 1 times [2021-12-17 15:09:07,350 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-17 15:09:07,351 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [687319826] [2021-12-17 15:09:07,351 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:09:07,351 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-17 15:09:07,435 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:07,498 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-17 15:09:07,499 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-17 15:09:07,499 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [687319826] [2021-12-17 15:09:07,499 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [687319826] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-17 15:09:07,499 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-17 15:09:07,500 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-12-17 15:09:07,501 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [5364519] [2021-12-17 15:09:07,501 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-17 15:09:07,504 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2021-12-17 15:09:07,504 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-17 15:09:07,521 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2021-12-17 15:09:07,522 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-12-17 15:09:07,524 INFO L87 Difference]: Start difference. First operand has 89 states, 68 states have (on average 1.3970588235294117) internal successors, (95), 77 states have internal predecessors, (95), 12 states have call successors, (12), 7 states have call predecessors, (12), 7 states have return successors, (12), 9 states have call predecessors, (12), 12 states have call successors, (12) Second operand has 2 states, 2 states have (on average 8.5) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-17 15:09:07,549 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-17 15:09:07,549 INFO L93 Difference]: Finished difference Result 170 states and 233 transitions. [2021-12-17 15:09:07,550 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2021-12-17 15:09:07,551 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 8.5) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 19 [2021-12-17 15:09:07,551 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-17 15:09:07,559 INFO L225 Difference]: With dead ends: 170 [2021-12-17 15:09:07,559 INFO L226 Difference]: Without dead ends: 80 [2021-12-17 15:09:07,562 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-12-17 15:09:07,565 INFO L933 BasicCegarLoop]: 113 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 0 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 113 SdHoareTripleChecker+Invalid, 0 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 0 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-17 15:09:07,566 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [0 Valid, 113 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 0 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-17 15:09:07,577 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 80 states. [2021-12-17 15:09:07,591 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 80 to 80. [2021-12-17 15:09:07,592 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 80 states, 61 states have (on average 1.3278688524590163) internal successors, (81), 69 states have internal predecessors, (81), 12 states have call successors, (12), 7 states have call predecessors, (12), 6 states have return successors, (11), 8 states have call predecessors, (11), 11 states have call successors, (11) [2021-12-17 15:09:07,593 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 80 states to 80 states and 104 transitions. [2021-12-17 15:09:07,594 INFO L78 Accepts]: Start accepts. Automaton has 80 states and 104 transitions. Word has length 19 [2021-12-17 15:09:07,595 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-17 15:09:07,595 INFO L470 AbstractCegarLoop]: Abstraction has 80 states and 104 transitions. [2021-12-17 15:09:07,595 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 8.5) internal successors, (17), 2 states have internal predecessors, (17), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-17 15:09:07,595 INFO L276 IsEmpty]: Start isEmpty. Operand 80 states and 104 transitions. [2021-12-17 15:09:07,597 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 21 [2021-12-17 15:09:07,597 INFO L506 BasicCegarLoop]: Found error trace [2021-12-17 15:09:07,597 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:09:07,597 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2021-12-17 15:09:07,598 INFO L402 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-17 15:09:07,598 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-17 15:09:07,598 INFO L85 PathProgramCache]: Analyzing trace with hash -1969487031, now seen corresponding path program 1 times [2021-12-17 15:09:07,598 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-17 15:09:07,599 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1156038463] [2021-12-17 15:09:07,599 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:09:07,599 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-17 15:09:07,619 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:07,653 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-17 15:09:07,654 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-17 15:09:07,654 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1156038463] [2021-12-17 15:09:07,654 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1156038463] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-17 15:09:07,654 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-17 15:09:07,654 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-12-17 15:09:07,654 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1767791540] [2021-12-17 15:09:07,655 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-17 15:09:07,655 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-12-17 15:09:07,656 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-17 15:09:07,656 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-12-17 15:09:07,656 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-17 15:09:07,656 INFO L87 Difference]: Start difference. First operand 80 states and 104 transitions. Second operand has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-17 15:09:07,677 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-17 15:09:07,677 INFO L93 Difference]: Finished difference Result 122 states and 158 transitions. [2021-12-17 15:09:07,681 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-12-17 15:09:07,681 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 20 [2021-12-17 15:09:07,682 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-17 15:09:07,683 INFO L225 Difference]: With dead ends: 122 [2021-12-17 15:09:07,684 INFO L226 Difference]: Without dead ends: 71 [2021-12-17 15:09:07,686 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-17 15:09:07,687 INFO L933 BasicCegarLoop]: 91 mSDtfsCounter, 16 mSDsluCounter, 70 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 20 SdHoareTripleChecker+Valid, 161 SdHoareTripleChecker+Invalid, 1 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-17 15:09:07,689 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [20 Valid, 161 Invalid, 1 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-17 15:09:07,690 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 71 states. [2021-12-17 15:09:07,695 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 71 to 71. [2021-12-17 15:09:07,696 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 71 states, 55 states have (on average 1.3454545454545455) internal successors, (74), 63 states have internal predecessors, (74), 9 states have call successors, (9), 6 states have call predecessors, (9), 6 states have return successors, (9), 6 states have call predecessors, (9), 9 states have call successors, (9) [2021-12-17 15:09:07,697 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 71 states to 71 states and 92 transitions. [2021-12-17 15:09:07,697 INFO L78 Accepts]: Start accepts. Automaton has 71 states and 92 transitions. Word has length 20 [2021-12-17 15:09:07,697 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-17 15:09:07,697 INFO L470 AbstractCegarLoop]: Abstraction has 71 states and 92 transitions. [2021-12-17 15:09:07,698 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 6.0) internal successors, (18), 3 states have internal predecessors, (18), 1 states have call successors, (2), 1 states have call predecessors, (2), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-17 15:09:07,698 INFO L276 IsEmpty]: Start isEmpty. Operand 71 states and 92 transitions. [2021-12-17 15:09:07,698 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 25 [2021-12-17 15:09:07,699 INFO L506 BasicCegarLoop]: Found error trace [2021-12-17 15:09:07,699 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:09:07,700 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2021-12-17 15:09:07,700 INFO L402 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-17 15:09:07,700 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-17 15:09:07,701 INFO L85 PathProgramCache]: Analyzing trace with hash 389175485, now seen corresponding path program 1 times [2021-12-17 15:09:07,701 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-17 15:09:07,701 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1625145797] [2021-12-17 15:09:07,701 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:09:07,702 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-17 15:09:07,736 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:07,774 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-17 15:09:07,774 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-17 15:09:07,775 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1625145797] [2021-12-17 15:09:07,775 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1625145797] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-17 15:09:07,775 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-17 15:09:07,776 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-12-17 15:09:07,776 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1223203206] [2021-12-17 15:09:07,776 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-17 15:09:07,777 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-12-17 15:09:07,777 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-17 15:09:07,777 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-12-17 15:09:07,778 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-17 15:09:07,779 INFO L87 Difference]: Start difference. First operand 71 states and 92 transitions. Second operand has 3 states, 3 states have (on average 7.666666666666667) internal successors, (23), 2 states have internal predecessors, (23), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-17 15:09:07,805 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-17 15:09:07,806 INFO L93 Difference]: Finished difference Result 198 states and 262 transitions. [2021-12-17 15:09:07,806 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-12-17 15:09:07,806 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 7.666666666666667) internal successors, (23), 2 states have internal predecessors, (23), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 24 [2021-12-17 15:09:07,807 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-17 15:09:07,808 INFO L225 Difference]: With dead ends: 198 [2021-12-17 15:09:07,808 INFO L226 Difference]: Without dead ends: 134 [2021-12-17 15:09:07,808 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 2 GetRequests, 1 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-17 15:09:07,809 INFO L933 BasicCegarLoop]: 110 mSDtfsCounter, 72 mSDsluCounter, 82 mSDsCounter, 0 mSdLazyCounter, 4 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 72 SdHoareTripleChecker+Valid, 192 SdHoareTripleChecker+Invalid, 4 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 4 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-17 15:09:07,810 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [72 Valid, 192 Invalid, 4 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 4 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-17 15:09:07,810 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 134 states. [2021-12-17 15:09:07,821 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 134 to 131. [2021-12-17 15:09:07,822 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 131 states, 100 states have (on average 1.37) internal successors, (137), 115 states have internal predecessors, (137), 18 states have call successors, (18), 12 states have call predecessors, (18), 12 states have return successors, (18), 11 states have call predecessors, (18), 18 states have call successors, (18) [2021-12-17 15:09:07,823 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 131 states to 131 states and 173 transitions. [2021-12-17 15:09:07,823 INFO L78 Accepts]: Start accepts. Automaton has 131 states and 173 transitions. Word has length 24 [2021-12-17 15:09:07,824 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-17 15:09:07,824 INFO L470 AbstractCegarLoop]: Abstraction has 131 states and 173 transitions. [2021-12-17 15:09:07,824 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 7.666666666666667) internal successors, (23), 2 states have internal predecessors, (23), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-17 15:09:07,824 INFO L276 IsEmpty]: Start isEmpty. Operand 131 states and 173 transitions. [2021-12-17 15:09:07,825 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 29 [2021-12-17 15:09:07,825 INFO L506 BasicCegarLoop]: Found error trace [2021-12-17 15:09:07,825 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:09:07,825 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2021-12-17 15:09:07,826 INFO L402 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-17 15:09:07,826 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-17 15:09:07,826 INFO L85 PathProgramCache]: Analyzing trace with hash 1254129459, now seen corresponding path program 1 times [2021-12-17 15:09:07,826 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-17 15:09:07,827 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [926960069] [2021-12-17 15:09:07,827 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:09:07,827 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-17 15:09:07,839 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:07,870 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-17 15:09:07,870 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-17 15:09:07,870 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [926960069] [2021-12-17 15:09:07,870 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [926960069] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-17 15:09:07,870 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-17 15:09:07,871 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-12-17 15:09:07,871 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [229421775] [2021-12-17 15:09:07,871 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-17 15:09:07,871 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-12-17 15:09:07,871 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-17 15:09:07,872 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-12-17 15:09:07,872 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-12-17 15:09:07,872 INFO L87 Difference]: Start difference. First operand 131 states and 173 transitions. Second operand has 5 states, 5 states have (on average 5.4) internal successors, (27), 4 states have internal predecessors, (27), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-17 15:09:07,919 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-17 15:09:07,920 INFO L93 Difference]: Finished difference Result 367 states and 504 transitions. [2021-12-17 15:09:07,920 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-12-17 15:09:07,920 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 5.4) internal successors, (27), 4 states have internal predecessors, (27), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 28 [2021-12-17 15:09:07,920 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-17 15:09:07,922 INFO L225 Difference]: With dead ends: 367 [2021-12-17 15:09:07,922 INFO L226 Difference]: Without dead ends: 243 [2021-12-17 15:09:07,923 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-12-17 15:09:07,924 INFO L933 BasicCegarLoop]: 94 mSDtfsCounter, 63 mSDsluCounter, 267 mSDsCounter, 0 mSdLazyCounter, 29 mSolverCounterSat, 4 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 63 SdHoareTripleChecker+Valid, 361 SdHoareTripleChecker+Invalid, 33 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 4 IncrementalHoareTripleChecker+Valid, 29 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-17 15:09:07,924 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [63 Valid, 361 Invalid, 33 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [4 Valid, 29 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-17 15:09:07,925 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 243 states. [2021-12-17 15:09:07,941 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 243 to 243. [2021-12-17 15:09:07,942 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 243 states, 184 states have (on average 1.3478260869565217) internal successors, (248), 211 states have internal predecessors, (248), 36 states have call successors, (36), 24 states have call predecessors, (36), 22 states have return successors, (38), 20 states have call predecessors, (38), 36 states have call successors, (38) [2021-12-17 15:09:07,944 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 243 states to 243 states and 322 transitions. [2021-12-17 15:09:07,944 INFO L78 Accepts]: Start accepts. Automaton has 243 states and 322 transitions. Word has length 28 [2021-12-17 15:09:07,944 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-17 15:09:07,944 INFO L470 AbstractCegarLoop]: Abstraction has 243 states and 322 transitions. [2021-12-17 15:09:07,944 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 5.4) internal successors, (27), 4 states have internal predecessors, (27), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-17 15:09:07,944 INFO L276 IsEmpty]: Start isEmpty. Operand 243 states and 322 transitions. [2021-12-17 15:09:07,946 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 31 [2021-12-17 15:09:07,946 INFO L506 BasicCegarLoop]: Found error trace [2021-12-17 15:09:07,946 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:09:07,946 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2021-12-17 15:09:07,946 INFO L402 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-17 15:09:07,947 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-17 15:09:07,947 INFO L85 PathProgramCache]: Analyzing trace with hash 183678264, now seen corresponding path program 1 times [2021-12-17 15:09:07,947 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-17 15:09:07,947 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [800309925] [2021-12-17 15:09:07,947 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:09:07,948 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-17 15:09:07,957 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:07,989 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-17 15:09:07,990 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-17 15:09:07,990 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [800309925] [2021-12-17 15:09:07,990 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [800309925] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-17 15:09:07,990 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-17 15:09:07,991 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-12-17 15:09:07,991 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [737289158] [2021-12-17 15:09:07,991 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-17 15:09:07,992 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-12-17 15:09:07,992 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-17 15:09:07,993 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-12-17 15:09:07,993 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-17 15:09:07,993 INFO L87 Difference]: Start difference. First operand 243 states and 322 transitions. Second operand has 3 states, 3 states have (on average 9.666666666666666) internal successors, (29), 2 states have internal predecessors, (29), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-17 15:09:08,021 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-17 15:09:08,022 INFO L93 Difference]: Finished difference Result 593 states and 807 transitions. [2021-12-17 15:09:08,022 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-12-17 15:09:08,022 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 9.666666666666666) internal successors, (29), 2 states have internal predecessors, (29), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) Word has length 30 [2021-12-17 15:09:08,022 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-17 15:09:08,024 INFO L225 Difference]: With dead ends: 593 [2021-12-17 15:09:08,024 INFO L226 Difference]: Without dead ends: 357 [2021-12-17 15:09:08,025 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 3 GetRequests, 2 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-17 15:09:08,026 INFO L933 BasicCegarLoop]: 95 mSDtfsCounter, 51 mSDsluCounter, 59 mSDsCounter, 0 mSdLazyCounter, 11 mSolverCounterSat, 8 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 51 SdHoareTripleChecker+Valid, 154 SdHoareTripleChecker+Invalid, 19 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 8 IncrementalHoareTripleChecker+Valid, 11 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-17 15:09:08,026 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [51 Valid, 154 Invalid, 19 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [8 Valid, 11 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-17 15:09:08,027 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 357 states. [2021-12-17 15:09:08,045 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 357 to 348. [2021-12-17 15:09:08,045 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 348 states, 269 states have (on average 1.304832713754647) internal successors, (351), 289 states have internal predecessors, (351), 41 states have call successors, (41), 39 states have call predecessors, (41), 37 states have return successors, (59), 36 states have call predecessors, (59), 41 states have call successors, (59) [2021-12-17 15:09:08,047 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 348 states to 348 states and 451 transitions. [2021-12-17 15:09:08,047 INFO L78 Accepts]: Start accepts. Automaton has 348 states and 451 transitions. Word has length 30 [2021-12-17 15:09:08,047 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-17 15:09:08,047 INFO L470 AbstractCegarLoop]: Abstraction has 348 states and 451 transitions. [2021-12-17 15:09:08,048 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 9.666666666666666) internal successors, (29), 2 states have internal predecessors, (29), 1 states have call successors, (1), 1 states have call predecessors, (1), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-17 15:09:08,048 INFO L276 IsEmpty]: Start isEmpty. Operand 348 states and 451 transitions. [2021-12-17 15:09:08,049 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 33 [2021-12-17 15:09:08,049 INFO L506 BasicCegarLoop]: Found error trace [2021-12-17 15:09:08,049 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:09:08,049 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2021-12-17 15:09:08,049 INFO L402 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-17 15:09:08,049 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-17 15:09:08,050 INFO L85 PathProgramCache]: Analyzing trace with hash 211984281, now seen corresponding path program 1 times [2021-12-17 15:09:08,050 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-17 15:09:08,050 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [968495698] [2021-12-17 15:09:08,050 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:09:08,050 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-17 15:09:08,063 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:08,094 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-17 15:09:08,095 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:08,098 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-17 15:09:08,098 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-17 15:09:08,098 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [968495698] [2021-12-17 15:09:08,098 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [968495698] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-17 15:09:08,098 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-17 15:09:08,099 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2021-12-17 15:09:08,099 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1571962404] [2021-12-17 15:09:08,103 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-17 15:09:08,103 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-12-17 15:09:08,104 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-17 15:09:08,104 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-12-17 15:09:08,105 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-12-17 15:09:08,105 INFO L87 Difference]: Start difference. First operand 348 states and 451 transitions. Second operand has 6 states, 6 states have (on average 4.833333333333333) internal successors, (29), 5 states have internal predecessors, (29), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-17 15:09:08,300 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-17 15:09:08,300 INFO L93 Difference]: Finished difference Result 442 states and 576 transitions. [2021-12-17 15:09:08,301 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 11 states. [2021-12-17 15:09:08,301 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 4.833333333333333) internal successors, (29), 5 states have internal predecessors, (29), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 32 [2021-12-17 15:09:08,301 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-17 15:09:08,303 INFO L225 Difference]: With dead ends: 442 [2021-12-17 15:09:08,303 INFO L226 Difference]: Without dead ends: 440 [2021-12-17 15:09:08,304 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 14 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 12 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=45, Invalid=87, Unknown=0, NotChecked=0, Total=132 [2021-12-17 15:09:08,304 INFO L933 BasicCegarLoop]: 106 mSDtfsCounter, 125 mSDsluCounter, 299 mSDsCounter, 0 mSdLazyCounter, 149 mSolverCounterSat, 33 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 129 SdHoareTripleChecker+Valid, 405 SdHoareTripleChecker+Invalid, 182 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 33 IncrementalHoareTripleChecker+Valid, 149 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-17 15:09:08,305 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [129 Valid, 405 Invalid, 182 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [33 Valid, 149 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-17 15:09:08,305 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 440 states. [2021-12-17 15:09:08,337 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 440 to 414. [2021-12-17 15:09:08,338 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 414 states, 321 states have (on average 1.2897196261682242) internal successors, (414), 351 states have internal predecessors, (414), 47 states have call successors, (47), 39 states have call predecessors, (47), 45 states have return successors, (77), 40 states have call predecessors, (77), 47 states have call successors, (77) [2021-12-17 15:09:08,340 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 414 states to 414 states and 538 transitions. [2021-12-17 15:09:08,341 INFO L78 Accepts]: Start accepts. Automaton has 414 states and 538 transitions. Word has length 32 [2021-12-17 15:09:08,342 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-17 15:09:08,342 INFO L470 AbstractCegarLoop]: Abstraction has 414 states and 538 transitions. [2021-12-17 15:09:08,342 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 4.833333333333333) internal successors, (29), 5 states have internal predecessors, (29), 1 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-17 15:09:08,343 INFO L276 IsEmpty]: Start isEmpty. Operand 414 states and 538 transitions. [2021-12-17 15:09:08,347 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 43 [2021-12-17 15:09:08,347 INFO L506 BasicCegarLoop]: Found error trace [2021-12-17 15:09:08,348 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:09:08,348 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2021-12-17 15:09:08,348 INFO L402 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-17 15:09:08,350 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-17 15:09:08,351 INFO L85 PathProgramCache]: Analyzing trace with hash 719750173, now seen corresponding path program 1 times [2021-12-17 15:09:08,351 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-17 15:09:08,351 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [416621638] [2021-12-17 15:09:08,351 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:09:08,351 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-17 15:09:08,373 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:08,404 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-17 15:09:08,405 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:08,412 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2021-12-17 15:09:08,414 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:08,426 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-17 15:09:08,426 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-17 15:09:08,426 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [416621638] [2021-12-17 15:09:08,426 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [416621638] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-17 15:09:08,426 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-17 15:09:08,427 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2021-12-17 15:09:08,427 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [787018957] [2021-12-17 15:09:08,427 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-17 15:09:08,427 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-12-17 15:09:08,427 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-17 15:09:08,428 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-12-17 15:09:08,428 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-12-17 15:09:08,428 INFO L87 Difference]: Start difference. First operand 414 states and 538 transitions. Second operand has 6 states, 6 states have (on average 6.166666666666667) internal successors, (37), 4 states have internal predecessors, (37), 1 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2021-12-17 15:09:08,585 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-17 15:09:08,586 INFO L93 Difference]: Finished difference Result 925 states and 1250 transitions. [2021-12-17 15:09:08,586 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2021-12-17 15:09:08,586 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 6.166666666666667) internal successors, (37), 4 states have internal predecessors, (37), 1 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) Word has length 42 [2021-12-17 15:09:08,587 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-17 15:09:08,589 INFO L225 Difference]: With dead ends: 925 [2021-12-17 15:09:08,589 INFO L226 Difference]: Without dead ends: 518 [2021-12-17 15:09:08,590 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 14 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 8 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=33, Invalid=57, Unknown=0, NotChecked=0, Total=90 [2021-12-17 15:09:08,591 INFO L933 BasicCegarLoop]: 92 mSDtfsCounter, 141 mSDsluCounter, 224 mSDsCounter, 0 mSdLazyCounter, 156 mSolverCounterSat, 41 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 141 SdHoareTripleChecker+Valid, 316 SdHoareTripleChecker+Invalid, 197 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 41 IncrementalHoareTripleChecker+Valid, 156 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-17 15:09:08,591 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [141 Valid, 316 Invalid, 197 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [41 Valid, 156 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-17 15:09:08,592 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 518 states. [2021-12-17 15:09:08,606 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 518 to 458. [2021-12-17 15:09:08,606 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 458 states, 359 states have (on average 1.2701949860724233) internal successors, (456), 389 states have internal predecessors, (456), 47 states have call successors, (47), 39 states have call predecessors, (47), 51 states have return successors, (85), 44 states have call predecessors, (85), 47 states have call successors, (85) [2021-12-17 15:09:08,608 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 458 states to 458 states and 588 transitions. [2021-12-17 15:09:08,609 INFO L78 Accepts]: Start accepts. Automaton has 458 states and 588 transitions. Word has length 42 [2021-12-17 15:09:08,609 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-17 15:09:08,609 INFO L470 AbstractCegarLoop]: Abstraction has 458 states and 588 transitions. [2021-12-17 15:09:08,609 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 6.166666666666667) internal successors, (37), 4 states have internal predecessors, (37), 1 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2021-12-17 15:09:08,609 INFO L276 IsEmpty]: Start isEmpty. Operand 458 states and 588 transitions. [2021-12-17 15:09:08,610 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 43 [2021-12-17 15:09:08,610 INFO L506 BasicCegarLoop]: Found error trace [2021-12-17 15:09:08,610 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:09:08,610 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2021-12-17 15:09:08,611 INFO L402 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-17 15:09:08,611 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-17 15:09:08,611 INFO L85 PathProgramCache]: Analyzing trace with hash 1730867423, now seen corresponding path program 1 times [2021-12-17 15:09:08,611 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-17 15:09:08,611 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1378935276] [2021-12-17 15:09:08,611 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:09:08,612 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-17 15:09:08,619 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:08,630 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-17 15:09:08,631 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:08,635 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2021-12-17 15:09:08,637 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:08,654 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-17 15:09:08,654 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-17 15:09:08,654 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1378935276] [2021-12-17 15:09:08,654 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1378935276] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-17 15:09:08,654 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-17 15:09:08,654 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2021-12-17 15:09:08,655 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1856435542] [2021-12-17 15:09:08,655 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-17 15:09:08,655 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-12-17 15:09:08,655 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-17 15:09:08,656 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-12-17 15:09:08,656 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2021-12-17 15:09:08,656 INFO L87 Difference]: Start difference. First operand 458 states and 588 transitions. Second operand has 7 states, 7 states have (on average 5.285714285714286) internal successors, (37), 5 states have internal predecessors, (37), 1 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2021-12-17 15:09:08,835 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-17 15:09:08,836 INFO L93 Difference]: Finished difference Result 902 states and 1170 transitions. [2021-12-17 15:09:08,836 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2021-12-17 15:09:08,836 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 5.285714285714286) internal successors, (37), 5 states have internal predecessors, (37), 1 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) Word has length 42 [2021-12-17 15:09:08,837 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-17 15:09:08,838 INFO L225 Difference]: With dead ends: 902 [2021-12-17 15:09:08,838 INFO L226 Difference]: Without dead ends: 451 [2021-12-17 15:09:08,840 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 16 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=46, Invalid=86, Unknown=0, NotChecked=0, Total=132 [2021-12-17 15:09:08,841 INFO L933 BasicCegarLoop]: 75 mSDtfsCounter, 143 mSDsluCounter, 254 mSDsCounter, 0 mSdLazyCounter, 186 mSolverCounterSat, 47 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 143 SdHoareTripleChecker+Valid, 329 SdHoareTripleChecker+Invalid, 233 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 47 IncrementalHoareTripleChecker+Valid, 186 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-17 15:09:08,841 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [143 Valid, 329 Invalid, 233 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [47 Valid, 186 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-17 15:09:08,842 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 451 states. [2021-12-17 15:09:08,856 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 451 to 361. [2021-12-17 15:09:08,857 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 361 states, 284 states have (on average 1.267605633802817) internal successors, (360), 307 states have internal predecessors, (360), 38 states have call successors, (38), 32 states have call predecessors, (38), 38 states have return successors, (60), 33 states have call predecessors, (60), 38 states have call successors, (60) [2021-12-17 15:09:08,859 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 361 states to 361 states and 458 transitions. [2021-12-17 15:09:08,859 INFO L78 Accepts]: Start accepts. Automaton has 361 states and 458 transitions. Word has length 42 [2021-12-17 15:09:08,860 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-17 15:09:08,861 INFO L470 AbstractCegarLoop]: Abstraction has 361 states and 458 transitions. [2021-12-17 15:09:08,861 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 5.285714285714286) internal successors, (37), 5 states have internal predecessors, (37), 1 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2021-12-17 15:09:08,861 INFO L276 IsEmpty]: Start isEmpty. Operand 361 states and 458 transitions. [2021-12-17 15:09:08,863 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 43 [2021-12-17 15:09:08,863 INFO L506 BasicCegarLoop]: Found error trace [2021-12-17 15:09:08,863 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:09:08,863 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2021-12-17 15:09:08,863 INFO L402 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-17 15:09:08,864 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-17 15:09:08,864 INFO L85 PathProgramCache]: Analyzing trace with hash -301318181, now seen corresponding path program 1 times [2021-12-17 15:09:08,867 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-17 15:09:08,867 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [552630968] [2021-12-17 15:09:08,867 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:09:08,867 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-17 15:09:08,877 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:08,915 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-17 15:09:08,920 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:08,926 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2021-12-17 15:09:08,929 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:08,936 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-17 15:09:08,936 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-17 15:09:08,936 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [552630968] [2021-12-17 15:09:08,936 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [552630968] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-17 15:09:08,936 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-17 15:09:08,936 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2021-12-17 15:09:08,937 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [637034021] [2021-12-17 15:09:08,937 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-17 15:09:08,937 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-12-17 15:09:08,937 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-17 15:09:08,937 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-12-17 15:09:08,938 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=11, Invalid=31, Unknown=0, NotChecked=0, Total=42 [2021-12-17 15:09:08,938 INFO L87 Difference]: Start difference. First operand 361 states and 458 transitions. Second operand has 7 states, 7 states have (on average 5.285714285714286) internal successors, (37), 5 states have internal predecessors, (37), 1 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2021-12-17 15:09:09,197 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-17 15:09:09,197 INFO L93 Difference]: Finished difference Result 843 states and 1134 transitions. [2021-12-17 15:09:09,198 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 17 states. [2021-12-17 15:09:09,198 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 5.285714285714286) internal successors, (37), 5 states have internal predecessors, (37), 1 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) Word has length 42 [2021-12-17 15:09:09,198 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-17 15:09:09,201 INFO L225 Difference]: With dead ends: 843 [2021-12-17 15:09:09,201 INFO L226 Difference]: Without dead ends: 572 [2021-12-17 15:09:09,202 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 24 GetRequests, 6 SyntacticMatches, 1 SemanticMatches, 17 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 54 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=106, Invalid=236, Unknown=0, NotChecked=0, Total=342 [2021-12-17 15:09:09,202 INFO L933 BasicCegarLoop]: 134 mSDtfsCounter, 185 mSDsluCounter, 369 mSDsCounter, 0 mSdLazyCounter, 297 mSolverCounterSat, 54 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 187 SdHoareTripleChecker+Valid, 503 SdHoareTripleChecker+Invalid, 351 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 54 IncrementalHoareTripleChecker+Valid, 297 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2021-12-17 15:09:09,203 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [187 Valid, 503 Invalid, 351 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [54 Valid, 297 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2021-12-17 15:09:09,203 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 572 states. [2021-12-17 15:09:09,234 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 572 to 547. [2021-12-17 15:09:09,235 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 547 states, 430 states have (on average 1.2372093023255815) internal successors, (532), 460 states have internal predecessors, (532), 57 states have call successors, (57), 49 states have call predecessors, (57), 59 states have return successors, (115), 58 states have call predecessors, (115), 57 states have call successors, (115) [2021-12-17 15:09:09,238 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 547 states to 547 states and 704 transitions. [2021-12-17 15:09:09,238 INFO L78 Accepts]: Start accepts. Automaton has 547 states and 704 transitions. Word has length 42 [2021-12-17 15:09:09,238 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-17 15:09:09,238 INFO L470 AbstractCegarLoop]: Abstraction has 547 states and 704 transitions. [2021-12-17 15:09:09,239 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 5.285714285714286) internal successors, (37), 5 states have internal predecessors, (37), 1 states have call successors, (3), 3 states have call predecessors, (3), 2 states have return successors, (2), 2 states have call predecessors, (2), 1 states have call successors, (2) [2021-12-17 15:09:09,239 INFO L276 IsEmpty]: Start isEmpty. Operand 547 states and 704 transitions. [2021-12-17 15:09:09,240 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 66 [2021-12-17 15:09:09,240 INFO L506 BasicCegarLoop]: Found error trace [2021-12-17 15:09:09,240 INFO L514 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:09:09,240 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2021-12-17 15:09:09,241 INFO L402 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-17 15:09:09,241 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-17 15:09:09,241 INFO L85 PathProgramCache]: Analyzing trace with hash 796276059, now seen corresponding path program 1 times [2021-12-17 15:09:09,241 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-17 15:09:09,241 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [58488423] [2021-12-17 15:09:09,242 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:09:09,242 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-17 15:09:09,249 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:09,264 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-17 15:09:09,265 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:09,271 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 23 [2021-12-17 15:09:09,273 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:09,285 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2021-12-17 15:09:09,287 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:09,290 INFO L134 CoverageAnalysis]: Checked inductivity of 14 backedges. 14 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-17 15:09:09,291 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-17 15:09:09,291 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [58488423] [2021-12-17 15:09:09,291 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [58488423] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-17 15:09:09,291 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-17 15:09:09,291 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [7] imperfect sequences [] total 7 [2021-12-17 15:09:09,291 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [32684997] [2021-12-17 15:09:09,292 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-17 15:09:09,292 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 7 states [2021-12-17 15:09:09,292 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-17 15:09:09,292 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 7 interpolants. [2021-12-17 15:09:09,293 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=29, Unknown=0, NotChecked=0, Total=42 [2021-12-17 15:09:09,293 INFO L87 Difference]: Start difference. First operand 547 states and 704 transitions. Second operand has 7 states, 7 states have (on average 8.285714285714286) internal successors, (58), 4 states have internal predecessors, (58), 4 states have call successors, (4), 4 states have call predecessors, (4), 2 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) [2021-12-17 15:09:09,440 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-17 15:09:09,441 INFO L93 Difference]: Finished difference Result 658 states and 844 transitions. [2021-12-17 15:09:09,441 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2021-12-17 15:09:09,441 INFO L78 Accepts]: Start accepts. Automaton has has 7 states, 7 states have (on average 8.285714285714286) internal successors, (58), 4 states have internal predecessors, (58), 4 states have call successors, (4), 4 states have call predecessors, (4), 2 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) Word has length 65 [2021-12-17 15:09:09,441 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-17 15:09:09,442 INFO L225 Difference]: With dead ends: 658 [2021-12-17 15:09:09,443 INFO L226 Difference]: Without dead ends: 280 [2021-12-17 15:09:09,443 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 19 GetRequests, 9 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 14 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=40, Invalid=92, Unknown=0, NotChecked=0, Total=132 [2021-12-17 15:09:09,444 INFO L933 BasicCegarLoop]: 118 mSDtfsCounter, 197 mSDsluCounter, 240 mSDsCounter, 0 mSdLazyCounter, 194 mSolverCounterSat, 45 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 205 SdHoareTripleChecker+Valid, 358 SdHoareTripleChecker+Invalid, 239 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 45 IncrementalHoareTripleChecker+Valid, 194 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-17 15:09:09,444 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [205 Valid, 358 Invalid, 239 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [45 Valid, 194 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-17 15:09:09,445 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 280 states. [2021-12-17 15:09:09,453 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 280 to 269. [2021-12-17 15:09:09,453 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 269 states, 212 states have (on average 1.1981132075471699) internal successors, (254), 226 states have internal predecessors, (254), 27 states have call successors, (27), 24 states have call predecessors, (27), 29 states have return successors, (56), 28 states have call predecessors, (56), 27 states have call successors, (56) [2021-12-17 15:09:09,454 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 269 states to 269 states and 337 transitions. [2021-12-17 15:09:09,455 INFO L78 Accepts]: Start accepts. Automaton has 269 states and 337 transitions. Word has length 65 [2021-12-17 15:09:09,455 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-17 15:09:09,455 INFO L470 AbstractCegarLoop]: Abstraction has 269 states and 337 transitions. [2021-12-17 15:09:09,455 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 7 states, 7 states have (on average 8.285714285714286) internal successors, (58), 4 states have internal predecessors, (58), 4 states have call successors, (4), 4 states have call predecessors, (4), 2 states have return successors, (3), 3 states have call predecessors, (3), 3 states have call successors, (3) [2021-12-17 15:09:09,455 INFO L276 IsEmpty]: Start isEmpty. Operand 269 states and 337 transitions. [2021-12-17 15:09:09,456 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 77 [2021-12-17 15:09:09,456 INFO L506 BasicCegarLoop]: Found error trace [2021-12-17 15:09:09,456 INFO L514 BasicCegarLoop]: trace histogram [2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:09:09,457 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9 [2021-12-17 15:09:09,457 INFO L402 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-17 15:09:09,457 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-17 15:09:09,457 INFO L85 PathProgramCache]: Analyzing trace with hash -547601245, now seen corresponding path program 1 times [2021-12-17 15:09:09,457 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-17 15:09:09,457 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1360406328] [2021-12-17 15:09:09,458 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:09:09,458 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-17 15:09:09,468 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:09,498 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-17 15:09:09,499 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:09,507 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2021-12-17 15:09:09,509 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:09,521 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2021-12-17 15:09:09,523 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:09,529 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 61 [2021-12-17 15:09:09,530 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:09,534 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-17 15:09:09,535 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:09,537 INFO L134 CoverageAnalysis]: Checked inductivity of 20 backedges. 11 proven. 7 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2021-12-17 15:09:09,537 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-17 15:09:09,537 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1360406328] [2021-12-17 15:09:09,538 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1360406328] provided 0 perfect and 1 imperfect interpolant sequences [2021-12-17 15:09:09,538 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [1354577110] [2021-12-17 15:09:09,538 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:09:09,538 INFO L168 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-12-17 15:09:09,538 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2021-12-17 15:09:09,539 INFO L229 MonitoredProcess]: Starting monitored process 2 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2021-12-17 15:09:09,540 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Waiting until timeout for monitored process [2021-12-17 15:09:09,612 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:09,614 INFO L263 TraceCheckSpWp]: Trace formula consists of 419 conjuncts, 8 conjunts are in the unsatisfiable core [2021-12-17 15:09:09,618 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2021-12-17 15:09:09,788 INFO L134 CoverageAnalysis]: Checked inductivity of 20 backedges. 14 proven. 6 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-17 15:09:09,788 INFO L328 TraceCheckSpWp]: Computing backward predicates... [2021-12-17 15:09:09,946 INFO L134 CoverageAnalysis]: Checked inductivity of 20 backedges. 12 proven. 6 refuted. 0 times theorem prover too weak. 2 trivial. 0 not checked. [2021-12-17 15:09:09,946 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleZ3 [1354577110] provided 0 perfect and 2 imperfect interpolant sequences [2021-12-17 15:09:09,946 INFO L186 FreeRefinementEngine]: Found 0 perfect and 3 imperfect interpolant sequences. [2021-12-17 15:09:09,946 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [] imperfect sequences [9, 6, 6] total 9 [2021-12-17 15:09:09,946 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [113734977] [2021-12-17 15:09:09,947 INFO L85 oduleStraightlineAll]: Using 3 imperfect interpolants to construct interpolant automaton [2021-12-17 15:09:09,947 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 9 states [2021-12-17 15:09:09,947 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-17 15:09:09,947 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 9 interpolants. [2021-12-17 15:09:09,947 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=18, Invalid=54, Unknown=0, NotChecked=0, Total=72 [2021-12-17 15:09:09,948 INFO L87 Difference]: Start difference. First operand 269 states and 337 transitions. Second operand has 9 states, 9 states have (on average 7.888888888888889) internal successors, (71), 6 states have internal predecessors, (71), 3 states have call successors, (12), 6 states have call predecessors, (12), 3 states have return successors, (7), 3 states have call predecessors, (7), 2 states have call successors, (7) [2021-12-17 15:09:10,368 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-17 15:09:10,368 INFO L93 Difference]: Finished difference Result 635 states and 842 transitions. [2021-12-17 15:09:10,369 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 27 states. [2021-12-17 15:09:10,369 INFO L78 Accepts]: Start accepts. Automaton has has 9 states, 9 states have (on average 7.888888888888889) internal successors, (71), 6 states have internal predecessors, (71), 3 states have call successors, (12), 6 states have call predecessors, (12), 3 states have return successors, (7), 3 states have call predecessors, (7), 2 states have call successors, (7) Word has length 76 [2021-12-17 15:09:10,369 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-17 15:09:10,371 INFO L225 Difference]: With dead ends: 635 [2021-12-17 15:09:10,371 INFO L226 Difference]: Without dead ends: 413 [2021-12-17 15:09:10,372 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 194 GetRequests, 164 SyntacticMatches, 3 SemanticMatches, 27 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 191 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=227, Invalid=585, Unknown=0, NotChecked=0, Total=812 [2021-12-17 15:09:10,373 INFO L933 BasicCegarLoop]: 132 mSDtfsCounter, 238 mSDsluCounter, 469 mSDsCounter, 0 mSdLazyCounter, 498 mSolverCounterSat, 84 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.2s Time, 0 mProtectedPredicate, 0 mProtectedAction, 242 SdHoareTripleChecker+Valid, 601 SdHoareTripleChecker+Invalid, 582 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 84 IncrementalHoareTripleChecker+Valid, 498 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.3s IncrementalHoareTripleChecker+Time [2021-12-17 15:09:10,373 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [242 Valid, 601 Invalid, 582 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [84 Valid, 498 Invalid, 0 Unknown, 0 Unchecked, 0.3s Time] [2021-12-17 15:09:10,373 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 413 states. [2021-12-17 15:09:10,385 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 413 to 366. [2021-12-17 15:09:10,386 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 366 states, 285 states have (on average 1.2035087719298245) internal successors, (343), 305 states have internal predecessors, (343), 39 states have call successors, (39), 35 states have call predecessors, (39), 41 states have return successors, (85), 37 states have call predecessors, (85), 39 states have call successors, (85) [2021-12-17 15:09:10,387 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 366 states to 366 states and 467 transitions. [2021-12-17 15:09:10,387 INFO L78 Accepts]: Start accepts. Automaton has 366 states and 467 transitions. Word has length 76 [2021-12-17 15:09:10,388 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-17 15:09:10,388 INFO L470 AbstractCegarLoop]: Abstraction has 366 states and 467 transitions. [2021-12-17 15:09:10,388 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 9 states, 9 states have (on average 7.888888888888889) internal successors, (71), 6 states have internal predecessors, (71), 3 states have call successors, (12), 6 states have call predecessors, (12), 3 states have return successors, (7), 3 states have call predecessors, (7), 2 states have call successors, (7) [2021-12-17 15:09:10,388 INFO L276 IsEmpty]: Start isEmpty. Operand 366 states and 467 transitions. [2021-12-17 15:09:10,389 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 111 [2021-12-17 15:09:10,389 INFO L506 BasicCegarLoop]: Found error trace [2021-12-17 15:09:10,389 INFO L514 BasicCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:09:10,409 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (2)] Forceful destruction successful, exit code 0 [2021-12-17 15:09:10,603 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 2 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable10 [2021-12-17 15:09:10,603 INFO L402 AbstractCegarLoop]: === Iteration 12 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-17 15:09:10,604 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-17 15:09:10,604 INFO L85 PathProgramCache]: Analyzing trace with hash -1199368341, now seen corresponding path program 2 times [2021-12-17 15:09:10,604 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-17 15:09:10,604 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1863706383] [2021-12-17 15:09:10,604 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:09:10,604 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-17 15:09:10,619 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:10,638 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-17 15:09:10,639 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:10,644 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2021-12-17 15:09:10,646 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:10,654 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2021-12-17 15:09:10,655 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:10,660 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 50 [2021-12-17 15:09:10,663 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:10,716 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2021-12-17 15:09:10,717 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:10,724 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-17 15:09:10,725 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:10,726 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 95 [2021-12-17 15:09:10,726 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:10,728 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-17 15:09:10,728 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:10,729 INFO L134 CoverageAnalysis]: Checked inductivity of 74 backedges. 51 proven. 11 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2021-12-17 15:09:10,730 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-17 15:09:10,730 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1863706383] [2021-12-17 15:09:10,730 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1863706383] provided 0 perfect and 1 imperfect interpolant sequences [2021-12-17 15:09:10,730 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleZ3 [569574628] [2021-12-17 15:09:10,730 INFO L93 rtionOrderModulation]: Changing assertion order to OUTSIDE_LOOP_FIRST1 [2021-12-17 15:09:10,730 INFO L168 SolverBuilder]: Constructing external solver with command: z3 -smt2 -in SMTLIB2_COMPLIANT=true [2021-12-17 15:09:10,730 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2021-12-17 15:09:10,731 INFO L229 MonitoredProcess]: Starting monitored process 3 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (exit command is (exit), workingDir is null) [2021-12-17 15:09:10,732 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Waiting until timeout for monitored process [2021-12-17 15:09:10,806 INFO L228 tOrderPrioritization]: Assert order OUTSIDE_LOOP_FIRST1 issued 2 check-sat command(s) [2021-12-17 15:09:10,806 INFO L229 tOrderPrioritization]: Conjunction of SSA is unsat [2021-12-17 15:09:10,808 INFO L263 TraceCheckSpWp]: Trace formula consists of 502 conjuncts, 10 conjunts are in the unsatisfiable core [2021-12-17 15:09:10,810 INFO L286 TraceCheckSpWp]: Computing forward predicates... [2021-12-17 15:09:11,010 INFO L134 CoverageAnalysis]: Checked inductivity of 74 backedges. 62 proven. 0 refuted. 0 times theorem prover too weak. 12 trivial. 0 not checked. [2021-12-17 15:09:11,010 INFO L324 TraceCheckSpWp]: Omiting computation of backward sequence because forward sequence was already perfect [2021-12-17 15:09:11,010 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleZ3 [569574628] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-17 15:09:11,010 INFO L186 FreeRefinementEngine]: Found 1 perfect and 1 imperfect interpolant sequences. [2021-12-17 15:09:11,010 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [10] total 14 [2021-12-17 15:09:11,010 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [574931547] [2021-12-17 15:09:11,010 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-17 15:09:11,011 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-12-17 15:09:11,011 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-17 15:09:11,011 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-12-17 15:09:11,011 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=32, Invalid=150, Unknown=0, NotChecked=0, Total=182 [2021-12-17 15:09:11,011 INFO L87 Difference]: Start difference. First operand 366 states and 467 transitions. Second operand has 6 states, 6 states have (on average 14.166666666666666) internal successors, (85), 6 states have internal predecessors, (85), 3 states have call successors, (8), 4 states have call predecessors, (8), 3 states have return successors, (8), 3 states have call predecessors, (8), 3 states have call successors, (8) [2021-12-17 15:09:11,194 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-17 15:09:11,194 INFO L93 Difference]: Finished difference Result 1015 states and 1349 transitions. [2021-12-17 15:09:11,194 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 10 states. [2021-12-17 15:09:11,195 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 14.166666666666666) internal successors, (85), 6 states have internal predecessors, (85), 3 states have call successors, (8), 4 states have call predecessors, (8), 3 states have return successors, (8), 3 states have call predecessors, (8), 3 states have call successors, (8) Word has length 110 [2021-12-17 15:09:11,195 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-17 15:09:11,197 INFO L225 Difference]: With dead ends: 1015 [2021-12-17 15:09:11,197 INFO L226 Difference]: Without dead ends: 695 [2021-12-17 15:09:11,199 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 142 GetRequests, 122 SyntacticMatches, 3 SemanticMatches, 17 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 46 ImplicationChecksByTransitivity, 0.2s TimeCoverageRelationStatistics Valid=63, Invalid=279, Unknown=0, NotChecked=0, Total=342 [2021-12-17 15:09:11,199 INFO L933 BasicCegarLoop]: 134 mSDtfsCounter, 201 mSDsluCounter, 412 mSDsCounter, 0 mSdLazyCounter, 141 mSolverCounterSat, 30 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 201 SdHoareTripleChecker+Valid, 546 SdHoareTripleChecker+Invalid, 171 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 30 IncrementalHoareTripleChecker+Valid, 141 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-17 15:09:11,199 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [201 Valid, 546 Invalid, 171 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [30 Valid, 141 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-17 15:09:11,200 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 695 states. [2021-12-17 15:09:11,218 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 695 to 626. [2021-12-17 15:09:11,219 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 626 states, 488 states have (on average 1.1967213114754098) internal successors, (584), 516 states have internal predecessors, (584), 67 states have call successors, (67), 63 states have call predecessors, (67), 70 states have return successors, (129), 63 states have call predecessors, (129), 67 states have call successors, (129) [2021-12-17 15:09:11,221 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 626 states to 626 states and 780 transitions. [2021-12-17 15:09:11,222 INFO L78 Accepts]: Start accepts. Automaton has 626 states and 780 transitions. Word has length 110 [2021-12-17 15:09:11,222 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-17 15:09:11,222 INFO L470 AbstractCegarLoop]: Abstraction has 626 states and 780 transitions. [2021-12-17 15:09:11,222 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 14.166666666666666) internal successors, (85), 6 states have internal predecessors, (85), 3 states have call successors, (8), 4 states have call predecessors, (8), 3 states have return successors, (8), 3 states have call predecessors, (8), 3 states have call successors, (8) [2021-12-17 15:09:11,222 INFO L276 IsEmpty]: Start isEmpty. Operand 626 states and 780 transitions. [2021-12-17 15:09:11,223 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 111 [2021-12-17 15:09:11,223 INFO L506 BasicCegarLoop]: Found error trace [2021-12-17 15:09:11,223 INFO L514 BasicCegarLoop]: trace histogram [3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 3, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:09:11,241 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true (3)] Forceful destruction successful, exit code 0 [2021-12-17 15:09:11,439 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: 3 /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 -smt2 -in SMTLIB2_COMPLIANT=true,SelfDestructingSolverStorable11 [2021-12-17 15:09:11,440 INFO L402 AbstractCegarLoop]: === Iteration 13 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-17 15:09:11,440 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-17 15:09:11,440 INFO L85 PathProgramCache]: Analyzing trace with hash -755467667, now seen corresponding path program 1 times [2021-12-17 15:09:11,440 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-17 15:09:11,440 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1276510593] [2021-12-17 15:09:11,440 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-17 15:09:11,440 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-17 15:09:11,449 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:11,476 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-17 15:09:11,477 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:11,481 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 19 [2021-12-17 15:09:11,483 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:11,487 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 3 [2021-12-17 15:09:11,488 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:11,490 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 50 [2021-12-17 15:09:11,492 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:11,507 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 10 [2021-12-17 15:09:11,508 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:11,509 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-17 15:09:11,510 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:11,511 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 95 [2021-12-17 15:09:11,511 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:11,512 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 2 [2021-12-17 15:09:11,513 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-17 15:09:11,515 INFO L134 CoverageAnalysis]: Checked inductivity of 74 backedges. 42 proven. 0 refuted. 0 times theorem prover too weak. 32 trivial. 0 not checked. [2021-12-17 15:09:11,515 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-17 15:09:11,515 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1276510593] [2021-12-17 15:09:11,516 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1276510593] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-17 15:09:11,516 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-17 15:09:11,516 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2021-12-17 15:09:11,516 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [91731928] [2021-12-17 15:09:11,516 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-17 15:09:11,516 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2021-12-17 15:09:11,516 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-17 15:09:11,517 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2021-12-17 15:09:11,517 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=15, Invalid=41, Unknown=0, NotChecked=0, Total=56 [2021-12-17 15:09:11,517 INFO L87 Difference]: Start difference. First operand 626 states and 780 transitions. Second operand has 8 states, 8 states have (on average 9.5) internal successors, (76), 5 states have internal predecessors, (76), 2 states have call successors, (6), 5 states have call predecessors, (6), 2 states have return successors, (6), 2 states have call predecessors, (6), 2 states have call successors, (6) [2021-12-17 15:09:11,635 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-17 15:09:11,635 INFO L93 Difference]: Finished difference Result 868 states and 1065 transitions. [2021-12-17 15:09:11,636 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2021-12-17 15:09:11,636 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 9.5) internal successors, (76), 5 states have internal predecessors, (76), 2 states have call successors, (6), 5 states have call predecessors, (6), 2 states have return successors, (6), 2 states have call predecessors, (6), 2 states have call successors, (6) Word has length 110 [2021-12-17 15:09:11,636 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-17 15:09:11,637 INFO L225 Difference]: With dead ends: 868 [2021-12-17 15:09:11,637 INFO L226 Difference]: Without dead ends: 0 [2021-12-17 15:09:11,639 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 27 GetRequests, 17 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 14 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=39, Invalid=93, Unknown=0, NotChecked=0, Total=132 [2021-12-17 15:09:11,639 INFO L933 BasicCegarLoop]: 73 mSDtfsCounter, 136 mSDsluCounter, 209 mSDsCounter, 0 mSdLazyCounter, 168 mSolverCounterSat, 38 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 138 SdHoareTripleChecker+Valid, 282 SdHoareTripleChecker+Invalid, 206 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 38 IncrementalHoareTripleChecker+Valid, 168 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-17 15:09:11,640 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [138 Valid, 282 Invalid, 206 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [38 Valid, 168 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-17 15:09:11,641 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2021-12-17 15:09:11,641 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2021-12-17 15:09:11,641 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-17 15:09:11,641 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2021-12-17 15:09:11,641 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 110 [2021-12-17 15:09:11,641 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-17 15:09:11,641 INFO L470 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2021-12-17 15:09:11,642 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 9.5) internal successors, (76), 5 states have internal predecessors, (76), 2 states have call successors, (6), 5 states have call predecessors, (6), 2 states have return successors, (6), 2 states have call predecessors, (6), 2 states have call successors, (6) [2021-12-17 15:09:11,642 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2021-12-17 15:09:11,642 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2021-12-17 15:09:11,644 INFO L764 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2021-12-17 15:09:11,644 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable12 [2021-12-17 15:09:11,645 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2021-12-17 15:09:13,722 INFO L854 garLoopResultBuilder]: At program point deactivatePumpENTRY(lines 423 430) the Hoare annotation is: (let ((.cse0 (= ~pumpRunning~0 |old(~pumpRunning~0)|))) (and (or .cse0 (not (= ~systemActive~0 1))) (or (= 0 ~systemActive~0) .cse0 (not (<= 2 ~waterLevel~0))))) [2021-12-17 15:09:13,723 INFO L858 garLoopResultBuilder]: For program point deactivatePumpEXIT(lines 423 430) no Hoare annotation was computed. [2021-12-17 15:09:13,723 INFO L858 garLoopResultBuilder]: For program point deactivatePumpFINAL(lines 423 430) no Hoare annotation was computed. [2021-12-17 15:09:13,723 INFO L858 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 356 362) no Hoare annotation was computed. [2021-12-17 15:09:13,723 INFO L861 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 356 362) the Hoare annotation is: true [2021-12-17 15:09:13,723 INFO L861 garLoopResultBuilder]: At program point changeMethaneLevelENTRY(lines 214 225) the Hoare annotation is: true [2021-12-17 15:09:13,724 INFO L858 garLoopResultBuilder]: For program point L218-1(lines 214 225) no Hoare annotation was computed. [2021-12-17 15:09:13,724 INFO L858 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 214 225) no Hoare annotation was computed. [2021-12-17 15:09:13,724 INFO L854 garLoopResultBuilder]: At program point L263(lines 258 266) the Hoare annotation is: (let ((.cse5 (<= 2 |timeShift_getWaterLevel_#res#1|)) (.cse10 (<= 2 ~waterLevel~0)) (.cse11 (= ~waterLevel~0 |old(~waterLevel~0)|)) (.cse9 (= ~pumpRunning~0 0))) (let ((.cse3 (not (= ~systemActive~0 0))) (.cse6 (and .cse11 .cse9)) (.cse7 (and .cse5 .cse11 .cse10)) (.cse0 (not (= |old(~waterLevel~0)| 1))) (.cse1 (= |timeShift_getWaterLevel_#res#1| 1)) (.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse4 (not (<= 2 |old(~waterLevel~0)|))) (.cse8 (not (= ~systemActive~0 1)))) (and (or .cse0 .cse1 .cse2 .cse3) (or .cse4 .cse5 .cse2 .cse3) (or .cse6 .cse2 .cse3) (or .cse4 .cse7 .cse2 .cse8) (or .cse6 .cse7 .cse2 .cse8 (not (<= 1 |old(~waterLevel~0)|))) (or .cse0 .cse1 .cse2 .cse8) (or .cse4 (and (<= 1 |timeShift_isLowWaterLevel_~tmp___0~2#1|) (<= 1 |timeShift_isLowWaterLevel_#res#1|) (<= 1 |timeShift_processEnvironment_~tmp~3#1|) (<= 1 ~waterLevel~0) (<= 1 |timeShift_getWaterLevel_#res#1|) .cse9) (and .cse5 .cse10) .cse8)))) [2021-12-17 15:09:13,724 INFO L858 garLoopResultBuilder]: For program point timeShiftFINAL(lines 332 355) no Hoare annotation was computed. [2021-12-17 15:09:13,724 INFO L858 garLoopResultBuilder]: For program point L515(lines 515 519) no Hoare annotation was computed. [2021-12-17 15:09:13,724 INFO L858 garLoopResultBuilder]: For program point L515-2(lines 515 519) no Hoare annotation was computed. [2021-12-17 15:09:13,725 INFO L854 garLoopResultBuilder]: At program point L404(line 404) the Hoare annotation is: (let ((.cse1 (not (= |old(~pumpRunning~0)| 0))) (.cse0 (not (= ~systemActive~0 1)))) (and (or (not (<= 2 |old(~waterLevel~0)|)) .cse0) (or .cse1 (not (= ~systemActive~0 0))) (or .cse1 .cse0 (not (<= 1 |old(~waterLevel~0)|))))) [2021-12-17 15:09:13,725 INFO L854 garLoopResultBuilder]: At program point L400(line 400) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= ~systemActive~0 1)))) (and (or .cse0 (not (= ~systemActive~0 0))) (or .cse0 .cse1 (not (<= 1 |old(~waterLevel~0)|))) (or (not (<= 2 |old(~waterLevel~0)|)) (and (<= 1 |timeShift_isLowWaterLevel_~tmp___0~2#1|) (<= 1 |timeShift_isLowWaterLevel_#res#1|) (= |timeShift_isLowWaterSensorDry_#res#1| 0) (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 |timeShift_processEnvironment_~tmp~3#1|) (= |timeShift_isLowWaterLevel_~tmp~5#1| 0) (<= 1 ~waterLevel~0)) .cse1))) [2021-12-17 15:09:13,725 INFO L858 garLoopResultBuilder]: For program point L169(lines 169 175) no Hoare annotation was computed. [2021-12-17 15:09:13,725 INFO L858 garLoopResultBuilder]: For program point L165(lines 165 178) no Hoare annotation was computed. [2021-12-17 15:09:13,726 INFO L854 garLoopResultBuilder]: At program point L165-1(lines 157 181) the Hoare annotation is: (let ((.cse2 (<= 2 |timeShift___utac_acc__Specification4_spec__1_~tmp~1#1|)) (.cse3 (<= 2 |timeShift_getWaterLevel_#res#1|)) (.cse9 (<= 2 ~waterLevel~0)) (.cse12 (= ~waterLevel~0 |old(~waterLevel~0)|)) (.cse8 (= ~pumpRunning~0 0))) (let ((.cse5 (and .cse12 .cse8)) (.cse0 (not (<= 2 |old(~waterLevel~0)|))) (.cse6 (not (= ~systemActive~0 1))) (.cse7 (and .cse2 .cse3 .cse12 .cse9)) (.cse10 (not (= |old(~waterLevel~0)| 1))) (.cse11 (and (= |timeShift_getWaterLevel_#res#1| 1) (= |timeShift___utac_acc__Specification4_spec__1_~tmp~1#1| 1))) (.cse1 (not (= |old(~pumpRunning~0)| 0))) (.cse4 (not (= ~systemActive~0 0)))) (and (or .cse0 .cse1 (and .cse2 .cse3) .cse4) (or .cse5 .cse1 .cse6 (not (<= 1 |old(~waterLevel~0)|)) .cse7) (or .cse5 .cse1 .cse4) (or .cse0 (and (<= 1 |timeShift_isLowWaterLevel_~tmp___0~2#1|) (<= 1 |timeShift_isLowWaterLevel_#res#1|) (<= 1 |timeShift_processEnvironment_~tmp~3#1|) (<= 1 ~waterLevel~0) (<= 1 |timeShift_getWaterLevel_#res#1|) (<= 1 |timeShift___utac_acc__Specification4_spec__1_~tmp~1#1|) .cse8) (and .cse2 .cse3 .cse9) .cse6) (or .cse10 .cse11 .cse1 .cse6) (or .cse0 .cse1 .cse6 .cse7) (or .cse10 .cse11 .cse1 .cse4)))) [2021-12-17 15:09:13,726 INFO L858 garLoopResultBuilder]: For program point L194(lines 194 198) no Hoare annotation was computed. [2021-12-17 15:09:13,726 INFO L854 garLoopResultBuilder]: At program point L194-2(lines 190 201) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= ~systemActive~0 1)))) (and (or .cse0 (not (= ~systemActive~0 0))) (or (not (<= 2 |old(~waterLevel~0)|)) (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 ~waterLevel~0)) .cse1) (or .cse0 .cse1 (not (<= 1 |old(~waterLevel~0)|))))) [2021-12-17 15:09:13,727 INFO L854 garLoopResultBuilder]: At program point L409(line 409) the Hoare annotation is: (let ((.cse1 (not (= |old(~pumpRunning~0)| 0))) (.cse0 (= ~pumpRunning~0 0)) (.cse2 (not (= ~systemActive~0 1)))) (and (or (and (= ~waterLevel~0 |old(~waterLevel~0)|) .cse0) .cse1 .cse2 (not (<= 1 |old(~waterLevel~0)|))) (or .cse1 (not (= ~systemActive~0 0))) (or (not (<= 2 |old(~waterLevel~0)|)) (and (= ~pumpRunning~0 |old(~pumpRunning~0)|) .cse0) .cse2))) [2021-12-17 15:09:13,727 INFO L854 garLoopResultBuilder]: At program point L409-1(lines 390 414) the Hoare annotation is: (let ((.cse3 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (<= 2 ~waterLevel~0)) (.cse2 (= ~pumpRunning~0 0)) (.cse4 (not (= ~systemActive~0 1)))) (and (let ((.cse0 (= ~waterLevel~0 |old(~waterLevel~0)|))) (or (and .cse0 .cse1) (and .cse0 .cse2) .cse3 .cse4 (not (<= 1 |old(~waterLevel~0)|)))) (or .cse3 (not (= ~systemActive~0 0))) (or (not (<= 2 |old(~waterLevel~0)|)) .cse1 (and (<= 1 |timeShift_isLowWaterLevel_~tmp___0~2#1|) (<= 1 |timeShift_isLowWaterLevel_#res#1|) (<= 1 |timeShift_processEnvironment_~tmp~3#1|) (<= 1 ~waterLevel~0) .cse2) .cse4))) [2021-12-17 15:09:13,727 INFO L858 garLoopResultBuilder]: For program point L343-1(lines 343 349) no Hoare annotation was computed. [2021-12-17 15:09:13,727 INFO L854 garLoopResultBuilder]: At program point L521(lines 506 524) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= ~systemActive~0 1)))) (and (or .cse0 (not (= ~systemActive~0 0))) (or (not (<= 2 |old(~waterLevel~0)|)) .cse1 (and (<= 1 |timeShift_isLowWaterLevel_~tmp___0~2#1|) (<= 1 |timeShift_isLowWaterLevel_#res#1|) (= |timeShift_isLowWaterSensorDry_#res#1| 0) (= ~pumpRunning~0 |old(~pumpRunning~0)|) (= |timeShift_isLowWaterLevel_~tmp~5#1| 0) (<= 1 ~waterLevel~0))) (or .cse0 .cse1 (not (<= 1 |old(~waterLevel~0)|))))) [2021-12-17 15:09:13,727 INFO L858 garLoopResultBuilder]: For program point L612(line 612) no Hoare annotation was computed. [2021-12-17 15:09:13,727 INFO L854 garLoopResultBuilder]: At program point L447(lines 442 450) the Hoare annotation is: (let ((.cse2 (not (<= 2 |old(~waterLevel~0)|))) (.cse1 (not (= ~systemActive~0 0))) (.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (not (= ~systemActive~0 1)))) (and (or (not (= |old(~waterLevel~0)| 1)) .cse0 .cse1) (or .cse2 .cse3) (or .cse2 .cse0 .cse1) (or (and (= |timeShift_isPumpRunning_#res#1| 0) (= ~waterLevel~0 |old(~waterLevel~0)|) (= ~pumpRunning~0 0)) .cse0 .cse1) (or .cse0 .cse3 (not (<= 1 |old(~waterLevel~0)|))))) [2021-12-17 15:09:13,727 INFO L854 garLoopResultBuilder]: At program point L286(lines 281 289) the Hoare annotation is: (let ((.cse1 (not (= |old(~pumpRunning~0)| 0))) (.cse0 (not (= ~systemActive~0 1)))) (and (or (not (<= 2 |old(~waterLevel~0)|)) (and (= |timeShift_isLowWaterSensorDry_#res#1| 0) (= ~pumpRunning~0 |old(~pumpRunning~0)|) (<= 1 ~waterLevel~0)) .cse0) (or .cse1 (not (= ~systemActive~0 0))) (or .cse1 .cse0 (not (<= 1 |old(~waterLevel~0)|))))) [2021-12-17 15:09:13,728 INFO L854 garLoopResultBuilder]: At program point timeShiftENTRY(lines 332 355) the Hoare annotation is: (let ((.cse0 (= ~waterLevel~0 |old(~waterLevel~0)|))) (let ((.cse1 (not (= ~systemActive~0 1))) (.cse2 (and .cse0 (= ~pumpRunning~0 0))) (.cse3 (not (= |old(~pumpRunning~0)| 0)))) (and (or (not (<= 2 |old(~waterLevel~0)|)) (and .cse0 (= ~pumpRunning~0 |old(~pumpRunning~0)|)) .cse1) (or .cse2 .cse3 .cse1 (not (<= 1 |old(~waterLevel~0)|))) (or .cse2 .cse3 (not (= ~systemActive~0 0)))))) [2021-12-17 15:09:13,728 INFO L858 garLoopResultBuilder]: For program point L336-1(lines 335 354) no Hoare annotation was computed. [2021-12-17 15:09:13,728 INFO L858 garLoopResultBuilder]: For program point L398(lines 398 406) no Hoare annotation was computed. [2021-12-17 15:09:13,728 INFO L858 garLoopResultBuilder]: For program point timeShiftEXIT(lines 332 355) no Hoare annotation was computed. [2021-12-17 15:09:13,728 INFO L858 garLoopResultBuilder]: For program point L394(lines 394 411) no Hoare annotation was computed. [2021-12-17 15:09:13,728 INFO L858 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 612) no Hoare annotation was computed. [2021-12-17 15:09:13,728 INFO L854 garLoopResultBuilder]: At program point L613(lines 608 615) the Hoare annotation is: (let ((.cse1 (not (= |old(~pumpRunning~0)| 0))) (.cse0 (not (= ~systemActive~0 1)))) (and (or (not (<= 2 |old(~waterLevel~0)|)) .cse0) (or .cse1 (not (= ~systemActive~0 0))) (or .cse1 .cse0 (not (<= 1 |old(~waterLevel~0)|))))) [2021-12-17 15:09:13,728 INFO L861 garLoopResultBuilder]: At program point L66-1(lines 66 70) the Hoare annotation is: true [2021-12-17 15:09:13,729 INFO L858 garLoopResultBuilder]: For program point cleanupEXIT(lines 52 81) no Hoare annotation was computed. [2021-12-17 15:09:13,729 INFO L858 garLoopResultBuilder]: For program point L63(line 63) no Hoare annotation was computed. [2021-12-17 15:09:13,729 INFO L861 garLoopResultBuilder]: At program point cleanupENTRY(lines 52 81) the Hoare annotation is: true [2021-12-17 15:09:13,729 INFO L861 garLoopResultBuilder]: At program point L62-2(lines 62 76) the Hoare annotation is: true [2021-12-17 15:09:13,729 INFO L861 garLoopResultBuilder]: At program point L58(line 58) the Hoare annotation is: true [2021-12-17 15:09:13,729 INFO L858 garLoopResultBuilder]: For program point L58-1(line 58) no Hoare annotation was computed. [2021-12-17 15:09:13,729 INFO L861 garLoopResultBuilder]: At program point L77(lines 52 81) the Hoare annotation is: true [2021-12-17 15:09:13,729 INFO L858 garLoopResultBuilder]: For program point L73(line 73) no Hoare annotation was computed. [2021-12-17 15:09:13,729 INFO L858 garLoopResultBuilder]: For program point L66(lines 66 70) no Hoare annotation was computed. [2021-12-17 15:09:13,730 INFO L854 garLoopResultBuilder]: At program point L531(line 531) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0))) (or (and .cse0 (<= 2 ~waterLevel~0) (not (= 0 ~systemActive~0))) (and .cse0 (= ~systemActive~0 1)))) [2021-12-17 15:09:13,730 INFO L858 garLoopResultBuilder]: For program point L552(lines 551 598) no Hoare annotation was computed. [2021-12-17 15:09:13,730 INFO L858 garLoopResultBuilder]: For program point L581(lines 581 594) no Hoare annotation was computed. [2021-12-17 15:09:13,730 INFO L854 garLoopResultBuilder]: At program point L321(lines 316 324) the Hoare annotation is: (and (= ~waterLevel~0 1) (= ~systemActive~0 1) (= ~pumpRunning~0 0)) [2021-12-17 15:09:13,730 INFO L858 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2021-12-17 15:09:13,730 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startENTRY(line -1) no Hoare annotation was computed. [2021-12-17 15:09:13,730 INFO L854 garLoopResultBuilder]: At program point L573(line 573) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= ~systemActive~0 1)) (.cse2 (= ~pumpRunning~0 0))) (or (and .cse0 (<= 2 ~waterLevel~0) .cse1) (and .cse0 (= ~systemActive~0 0) .cse2) (and .cse0 (<= 1 ~waterLevel~0) .cse1 .cse2))) [2021-12-17 15:09:13,730 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2021-12-17 15:09:13,730 INFO L861 garLoopResultBuilder]: At program point L602(lines 541 606) the Hoare annotation is: true [2021-12-17 15:09:13,731 INFO L854 garLoopResultBuilder]: At program point L313(lines 309 315) the Hoare annotation is: (and (= ~waterLevel~0 1) (= ~systemActive~0 1) (= ~pumpRunning~0 0)) [2021-12-17 15:09:13,731 INFO L858 garLoopResultBuilder]: For program point L561(lines 561 567) no Hoare annotation was computed. [2021-12-17 15:09:13,731 INFO L858 garLoopResultBuilder]: For program point L561-1(lines 561 567) no Hoare annotation was computed. [2021-12-17 15:09:13,731 INFO L858 garLoopResultBuilder]: For program point L140(lines 140 147) no Hoare annotation was computed. [2021-12-17 15:09:13,731 INFO L858 garLoopResultBuilder]: For program point L140-2(lines 140 147) no Hoare annotation was computed. [2021-12-17 15:09:13,731 INFO L858 garLoopResultBuilder]: For program point L553(lines 553 557) no Hoare annotation was computed. [2021-12-17 15:09:13,731 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2021-12-17 15:09:13,732 INFO L861 garLoopResultBuilder]: At program point L124(lines 117 126) the Hoare annotation is: true [2021-12-17 15:09:13,732 INFO L854 garLoopResultBuilder]: At program point L537(lines 525 539) the Hoare annotation is: (and (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0) (= ~systemActive~0 0) (= ~pumpRunning~0 0)) [2021-12-17 15:09:13,732 INFO L854 garLoopResultBuilder]: At program point L599(lines 550 600) the Hoare annotation is: false [2021-12-17 15:09:13,732 INFO L861 garLoopResultBuilder]: At program point L149(lines 130 152) the Hoare annotation is: true [2021-12-17 15:09:13,732 INFO L854 garLoopResultBuilder]: At program point L306(lines 302 308) the Hoare annotation is: (and (= ~waterLevel~0 1) (= ~systemActive~0 1) (= ~pumpRunning~0 0)) [2021-12-17 15:09:13,732 INFO L858 garLoopResultBuilder]: For program point L529(lines 529 535) no Hoare annotation was computed. [2021-12-17 15:09:13,732 INFO L858 garLoopResultBuilder]: For program point L529-1(lines 529 535) no Hoare annotation was computed. [2021-12-17 15:09:13,732 INFO L858 garLoopResultBuilder]: For program point L587(lines 587 593) no Hoare annotation was computed. [2021-12-17 15:09:13,732 INFO L854 garLoopResultBuilder]: At program point L587-2(lines 581 594) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= ~systemActive~0 1)) (.cse2 (= ~pumpRunning~0 0))) (or (and .cse0 (<= 2 ~waterLevel~0) .cse1) (and .cse0 (= ~systemActive~0 0) .cse2) (and .cse0 (<= 1 ~waterLevel~0) .cse1 .cse2))) [2021-12-17 15:09:13,733 INFO L858 garLoopResultBuilder]: For program point L571(lines 571 577) no Hoare annotation was computed. [2021-12-17 15:09:13,733 INFO L858 garLoopResultBuilder]: For program point L571-1(lines 571 577) no Hoare annotation was computed. [2021-12-17 15:09:13,733 INFO L854 garLoopResultBuilder]: At program point L596(lines 551 598) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= ~systemActive~0 1)) (.cse2 (= ~pumpRunning~0 0))) (or (and .cse0 (<= 2 ~waterLevel~0) .cse1) (and .cse0 (= ~systemActive~0 0) .cse2) (and .cse0 (<= 1 ~waterLevel~0) .cse1 .cse2))) [2021-12-17 15:09:13,733 INFO L854 garLoopResultBuilder]: At program point L563(line 563) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse1 (= ~systemActive~0 1)) (.cse2 (= ~pumpRunning~0 0))) (or (and .cse0 (<= 2 ~waterLevel~0) .cse1) (and .cse0 (= ~systemActive~0 0) .cse2) (and .cse0 (<= 1 ~waterLevel~0) .cse1 .cse2))) [2021-12-17 15:09:13,733 INFO L854 garLoopResultBuilder]: At program point L113(lines 109 115) the Hoare annotation is: (and (= ~waterLevel~0 1) (= ~systemActive~0 1) (= ~pumpRunning~0 0)) [2021-12-17 15:09:13,733 INFO L854 garLoopResultBuilder]: At program point processEnvironment__wrappee__highWaterSensorENTRY(lines 364 388) the Hoare annotation is: (or (not (<= 1 ~waterLevel~0)) (not (= |old(~pumpRunning~0)| 0)) (not (= ~systemActive~0 1)) (= ~pumpRunning~0 0)) [2021-12-17 15:09:13,734 INFO L854 garLoopResultBuilder]: At program point L378(line 378) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= ~systemActive~0 1)))) (and (or (not (<= 1 ~waterLevel~0)) (and (= |processEnvironment__wrappee__highWaterSensor_~tmp~2#1| 0) (= ~pumpRunning~0 0)) .cse0 .cse1) (or (not (= ~waterLevel~0 1)) (and (= |processEnvironment__wrappee__highWaterSensor_isHighWaterSensorDry_#res#1| 1) (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp~4#1| 1) (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_#res#1| 0) (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp___0~1#1| 0)) .cse0 .cse1))) [2021-12-17 15:09:13,734 INFO L854 garLoopResultBuilder]: At program point L502(lines 487 505) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (not (= ~systemActive~0 1)))) (and (or (and (= |processEnvironment__wrappee__highWaterSensor_isHighWaterSensorDry_#res#1| 1) (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp~4#1| 1)) (not (= ~waterLevel~0 1)) .cse0 .cse1) (let ((.cse2 (= ~pumpRunning~0 |old(~pumpRunning~0)|))) (or (and (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_#res#1| 0) (= |processEnvironment__wrappee__highWaterSensor_isHighWaterLevel_~tmp___0~1#1| 0) .cse2) (and .cse2 (<= 2 ~waterLevel~0)) (not (<= 1 ~waterLevel~0)) .cse0 .cse1)))) [2021-12-17 15:09:13,734 INFO L858 garLoopResultBuilder]: For program point L372(lines 372 380) no Hoare annotation was computed. [2021-12-17 15:09:13,735 INFO L858 garLoopResultBuilder]: For program point L368(lines 368 385) no Hoare annotation was computed. [2021-12-17 15:09:13,735 INFO L858 garLoopResultBuilder]: For program point L496(lines 496 500) no Hoare annotation was computed. [2021-12-17 15:09:13,736 INFO L858 garLoopResultBuilder]: For program point L271(lines 271 277) no Hoare annotation was computed. [2021-12-17 15:09:13,736 INFO L858 garLoopResultBuilder]: For program point L496-2(lines 496 500) no Hoare annotation was computed. [2021-12-17 15:09:13,736 INFO L854 garLoopResultBuilder]: At program point L420(lines 415 422) the Hoare annotation is: (or (not (<= 1 ~waterLevel~0)) (not (= |old(~pumpRunning~0)| 0)) (<= 2 ~waterLevel~0) (not (= ~systemActive~0 1))) [2021-12-17 15:09:13,736 INFO L854 garLoopResultBuilder]: At program point L383(line 383) the Hoare annotation is: (or (not (<= 1 ~waterLevel~0)) (not (= |old(~pumpRunning~0)| 0)) (not (= ~systemActive~0 1))) [2021-12-17 15:09:13,736 INFO L858 garLoopResultBuilder]: For program point L383-1(lines 364 388) no Hoare annotation was computed. [2021-12-17 15:09:13,736 INFO L858 garLoopResultBuilder]: For program point processEnvironment__wrappee__highWaterSensorEXIT(lines 364 388) no Hoare annotation was computed. [2021-12-17 15:09:13,737 INFO L854 garLoopResultBuilder]: At program point L276(lines 267 280) the Hoare annotation is: (let ((.cse1 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (not (= ~systemActive~0 1))) (.cse0 (= ~pumpRunning~0 0))) (and (or (not (= ~waterLevel~0 1)) (and (= |processEnvironment__wrappee__highWaterSensor_isHighWaterSensorDry_#res#1| 1) .cse0) .cse1 .cse2) (or .cse1 .cse2 (not (<= 2 ~waterLevel~0)) .cse0))) [2021-12-17 15:09:13,737 INFO L858 garLoopResultBuilder]: For program point waterRiseEXIT(lines 202 213) no Hoare annotation was computed. [2021-12-17 15:09:13,737 INFO L858 garLoopResultBuilder]: For program point L206-1(lines 202 213) no Hoare annotation was computed. [2021-12-17 15:09:13,738 INFO L854 garLoopResultBuilder]: At program point waterRiseENTRY(lines 202 213) the Hoare annotation is: (let ((.cse0 (not (= ~pumpRunning~0 0))) (.cse1 (= ~waterLevel~0 |old(~waterLevel~0)|)) (.cse2 (not (= ~systemActive~0 1)))) (and (or .cse0 .cse1 .cse2 (not (<= 1 |old(~waterLevel~0)|))) (or .cse0 .cse1 (not (= ~systemActive~0 0))) (or (not (<= 2 |old(~waterLevel~0)|)) .cse1 .cse2))) [2021-12-17 15:09:13,740 INFO L732 BasicCegarLoop]: Path program histogram: [2, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-17 15:09:13,741 INFO L179 ceAbstractionStarter]: Computing trace abstraction results [2021-12-17 15:09:13,774 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 17.12 03:09:13 BoogieIcfgContainer [2021-12-17 15:09:13,774 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2021-12-17 15:09:13,775 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2021-12-17 15:09:13,775 INFO L271 PluginConnector]: Initializing Witness Printer... [2021-12-17 15:09:13,775 INFO L275 PluginConnector]: Witness Printer initialized [2021-12-17 15:09:13,775 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 17.12 03:09:07" (3/4) ... [2021-12-17 15:09:13,777 INFO L137 WitnessPrinter]: Generating witness for correct program [2021-12-17 15:09:13,781 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure deactivatePump [2021-12-17 15:09:13,781 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2021-12-17 15:09:13,781 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2021-12-17 15:09:13,781 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2021-12-17 15:09:13,782 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2021-12-17 15:09:13,782 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__highWaterSensor [2021-12-17 15:09:13,782 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2021-12-17 15:09:13,787 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 53 nodes and edges [2021-12-17 15:09:13,787 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 22 nodes and edges [2021-12-17 15:09:13,787 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 11 nodes and edges [2021-12-17 15:09:13,788 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2021-12-17 15:09:13,788 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2021-12-17 15:09:13,789 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-12-17 15:09:13,789 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-12-17 15:09:13,803 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(\old(pumpRunning) == 0) || !(systemActive == 0)) && ((!(2 <= \old(waterLevel)) || (pumpRunning == \old(pumpRunning) && 1 <= waterLevel)) || !(systemActive == 1))) && ((!(\old(pumpRunning) == 0) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) [2021-12-17 15:09:13,804 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((waterLevel == \old(waterLevel) && 2 <= waterLevel) || (waterLevel == \old(waterLevel) && pumpRunning == 0)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) && (!(\old(pumpRunning) == 0) || !(systemActive == 0))) && (((!(2 <= \old(waterLevel)) || 2 <= waterLevel) || ((((1 <= tmp___0 && 1 <= \result) && 1 <= tmp) && 1 <= waterLevel) && pumpRunning == 0)) || !(systemActive == 1)) [2021-12-17 15:09:13,804 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((!(\old(waterLevel) == 1) || \result == 1) || !(\old(pumpRunning) == 0)) || !(systemActive == 0)) && (((!(2 <= \old(waterLevel)) || 2 <= \result) || !(\old(pumpRunning) == 0)) || !(systemActive == 0))) && (((waterLevel == \old(waterLevel) && pumpRunning == 0) || !(\old(pumpRunning) == 0)) || !(systemActive == 0))) && (((!(2 <= \old(waterLevel)) || ((2 <= \result && waterLevel == \old(waterLevel)) && 2 <= waterLevel)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1))) && (((((waterLevel == \old(waterLevel) && pumpRunning == 0) || ((2 <= \result && waterLevel == \old(waterLevel)) && 2 <= waterLevel)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel)))) && (((!(\old(waterLevel) == 1) || \result == 1) || !(\old(pumpRunning) == 0)) || !(systemActive == 1))) && (((!(2 <= \old(waterLevel)) || (((((1 <= tmp___0 && 1 <= \result) && 1 <= tmp) && 1 <= waterLevel) && 1 <= \result) && pumpRunning == 0)) || (2 <= \result && 2 <= waterLevel)) || !(systemActive == 1)) [2021-12-17 15:09:13,804 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((((((!(2 <= \old(waterLevel)) || !(\old(pumpRunning) == 0)) || (2 <= tmp && 2 <= \result)) || !(systemActive == 0)) && (((((waterLevel == \old(waterLevel) && pumpRunning == 0) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) || (((2 <= tmp && 2 <= \result) && waterLevel == \old(waterLevel)) && 2 <= waterLevel))) && (((waterLevel == \old(waterLevel) && pumpRunning == 0) || !(\old(pumpRunning) == 0)) || !(systemActive == 0))) && (((!(2 <= \old(waterLevel)) || ((((((1 <= tmp___0 && 1 <= \result) && 1 <= tmp) && 1 <= waterLevel) && 1 <= \result) && 1 <= tmp) && pumpRunning == 0)) || ((2 <= tmp && 2 <= \result) && 2 <= waterLevel)) || !(systemActive == 1))) && (((!(\old(waterLevel) == 1) || (\result == 1 && tmp == 1)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1))) && (((!(2 <= \old(waterLevel)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) || (((2 <= tmp && 2 <= \result) && waterLevel == \old(waterLevel)) && 2 <= waterLevel))) && (((!(\old(waterLevel) == 1) || (\result == 1 && tmp == 1)) || !(\old(pumpRunning) == 0)) || !(systemActive == 0)) [2021-12-17 15:09:13,804 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(2 <= \old(waterLevel)) || ((\result == 0 && pumpRunning == \old(pumpRunning)) && 1 <= waterLevel)) || !(systemActive == 1)) && (!(\old(pumpRunning) == 0) || !(systemActive == 0))) && ((!(\old(pumpRunning) == 0) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) [2021-12-17 15:09:13,805 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(waterLevel == 1) || (\result == 1 && pumpRunning == 0)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) && (((!(\old(pumpRunning) == 0) || !(systemActive == 1)) || !(2 <= waterLevel)) || pumpRunning == 0) [2021-12-17 15:09:13,805 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((((!(\old(waterLevel) == 1) || !(\old(pumpRunning) == 0)) || !(systemActive == 0)) && (!(2 <= \old(waterLevel)) || !(systemActive == 1))) && ((!(2 <= \old(waterLevel)) || !(\old(pumpRunning) == 0)) || !(systemActive == 0))) && ((((\result == 0 && waterLevel == \old(waterLevel)) && pumpRunning == 0) || !(\old(pumpRunning) == 0)) || !(systemActive == 0))) && ((!(\old(pumpRunning) == 0) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) [2021-12-17 15:09:13,805 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(\old(pumpRunning) == 0) || !(systemActive == 0)) && ((!(2 <= \old(waterLevel)) || !(systemActive == 1)) || (((((1 <= tmp___0 && 1 <= \result) && \result == 0) && pumpRunning == \old(pumpRunning)) && tmp == 0) && 1 <= waterLevel))) && ((!(\old(pumpRunning) == 0) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) [2021-12-17 15:09:13,805 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((\result == 1 && tmp == 1) || !(waterLevel == 1)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) && ((((((\result == 0 && tmp___0 == 0) && pumpRunning == \old(pumpRunning)) || (pumpRunning == \old(pumpRunning) && 2 <= waterLevel)) || !(1 <= waterLevel)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) [2021-12-17 15:09:13,805 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(2 <= \old(waterLevel)) || !(systemActive == 1)) && (!(\old(pumpRunning) == 0) || !(systemActive == 0))) && ((!(\old(pumpRunning) == 0) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) [2021-12-17 15:09:13,805 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(1 <= waterLevel) || !(\old(pumpRunning) == 0)) || 2 <= waterLevel) || !(systemActive == 1) [2021-12-17 15:09:13,827 INFO L141 WitnessManager]: Wrote witness to /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/witness.graphml [2021-12-17 15:09:13,828 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2021-12-17 15:09:13,828 INFO L158 Benchmark]: Toolchain (without parser) took 7475.80ms. Allocated memory was 100.7MB in the beginning and 188.7MB in the end (delta: 88.1MB). Free memory was 70.2MB in the beginning and 155.4MB in the end (delta: -85.2MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2021-12-17 15:09:13,828 INFO L158 Benchmark]: CDTParser took 0.20ms. Allocated memory is still 100.7MB. Free memory is still 58.3MB. There was no memory consumed. Max. memory is 16.1GB. [2021-12-17 15:09:13,828 INFO L158 Benchmark]: CACSL2BoogieTranslator took 399.51ms. Allocated memory was 100.7MB in the beginning and 130.0MB in the end (delta: 29.4MB). Free memory was 69.9MB in the beginning and 96.7MB in the end (delta: -26.9MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. [2021-12-17 15:09:13,829 INFO L158 Benchmark]: Boogie Procedure Inliner took 53.52ms. Allocated memory is still 130.0MB. Free memory was 96.7MB in the beginning and 94.6MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2021-12-17 15:09:13,829 INFO L158 Benchmark]: Boogie Preprocessor took 26.33ms. Allocated memory is still 130.0MB. Free memory was 94.6MB in the beginning and 92.5MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2021-12-17 15:09:13,829 INFO L158 Benchmark]: RCFGBuilder took 429.34ms. Allocated memory is still 130.0MB. Free memory was 92.5MB in the beginning and 76.4MB in the end (delta: 16.2MB). Peak memory consumption was 14.7MB. Max. memory is 16.1GB. [2021-12-17 15:09:13,829 INFO L158 Benchmark]: TraceAbstraction took 6508.02ms. Allocated memory was 130.0MB in the beginning and 188.7MB in the end (delta: 58.7MB). Free memory was 75.8MB in the beginning and 161.7MB in the end (delta: -85.9MB). Peak memory consumption was 87.1MB. Max. memory is 16.1GB. [2021-12-17 15:09:13,830 INFO L158 Benchmark]: Witness Printer took 52.94ms. Allocated memory is still 188.7MB. Free memory was 161.7MB in the beginning and 155.4MB in the end (delta: 6.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. [2021-12-17 15:09:13,831 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.20ms. Allocated memory is still 100.7MB. Free memory is still 58.3MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 399.51ms. Allocated memory was 100.7MB in the beginning and 130.0MB in the end (delta: 29.4MB). Free memory was 69.9MB in the beginning and 96.7MB in the end (delta: -26.9MB). Peak memory consumption was 8.4MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 53.52ms. Allocated memory is still 130.0MB. Free memory was 96.7MB in the beginning and 94.6MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 26.33ms. Allocated memory is still 130.0MB. Free memory was 94.6MB in the beginning and 92.5MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 429.34ms. Allocated memory is still 130.0MB. Free memory was 92.5MB in the beginning and 76.4MB in the end (delta: 16.2MB). Peak memory consumption was 14.7MB. Max. memory is 16.1GB. * TraceAbstraction took 6508.02ms. Allocated memory was 130.0MB in the beginning and 188.7MB in the end (delta: 58.7MB). Free memory was 75.8MB in the beginning and 161.7MB in the end (delta: -85.9MB). Peak memory consumption was 87.1MB. Max. memory is 16.1GB. * Witness Printer took 52.94ms. Allocated memory is still 188.7MB. Free memory was 161.7MB in the beginning and 155.4MB in the end (delta: 6.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 612]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 8 procedures, 89 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 6.4s, OverallIterations: 13, TraceHistogramMax: 3, PathProgramHistogramMax: 2, EmptinessCheckTime: 0.0s, AutomataDifference: 1.9s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 2.1s, InitialAbstractionConstructionTime: 0.0s, PartialOrderReductionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 1592 SdHoareTripleChecker+Valid, 1.1s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 1568 mSDsluCounter, 4321 SdHoareTripleChecker+Invalid, 0.9s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 2954 mSDsCounter, 384 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 1834 IncrementalHoareTripleChecker+Invalid, 2218 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 384 mSolverCounterUnsat, 1367 mSDtfsCounter, 1834 mSolverCounterSat, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 467 GetRequests, 343 SyntacticMatches, 7 SemanticMatches, 117 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 337 ImplicationChecksByTransitivity, 0.6s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=626occurred in iteration=12, InterpolantAutomatonStates: 116, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.2s AutomataMinimizationTime, 13 MinimizatonAttempts, 340 StatesRemovedByMinimization, 9 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 41 LocationsWithAnnotation, 1565 PreInvPairs, 1703 NumberOfFragments, 1269 HoareAnnotationTreeSize, 1565 FomulaSimplifications, 1932 FormulaSimplificationTreeSizeReduction, 0.4s HoareSimplificationTime, 41 FomulaSimplificationsInter, 17151 FormulaSimplificationTreeSizeReductionInter, 1.7s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.0s SsaConstructionTime, 0.2s SatisfiabilityAnalysisTime, 1.2s InterpolantComputationTime, 826 NumberOfCodeBlocks, 826 NumberOfCodeBlocksAsserted, 16 NumberOfCheckSat, 886 ConstructedInterpolants, 0 QuantifiedInterpolants, 1655 SizeOfPredicates, 8 NumberOfNonLiveVariables, 921 ConjunctsInSsa, 18 ConjunctsInUnsatCore, 16 InterpolantComputations, 12 PerfectInterpolantSequences, 266/296 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 190]: Loop Invariant Derived loop invariant: ((!(\old(pumpRunning) == 0) || !(systemActive == 0)) && ((!(2 <= \old(waterLevel)) || (pumpRunning == \old(pumpRunning) && 1 <= waterLevel)) || !(systemActive == 1))) && ((!(\old(pumpRunning) == 0) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) - InvariantResult [Line: 442]: Loop Invariant Derived loop invariant: (((((!(\old(waterLevel) == 1) || !(\old(pumpRunning) == 0)) || !(systemActive == 0)) && (!(2 <= \old(waterLevel)) || !(systemActive == 1))) && ((!(2 <= \old(waterLevel)) || !(\old(pumpRunning) == 0)) || !(systemActive == 0))) && ((((\result == 0 && waterLevel == \old(waterLevel)) && pumpRunning == 0) || !(\old(pumpRunning) == 0)) || !(systemActive == 0))) && ((!(\old(pumpRunning) == 0) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) - InvariantResult [Line: 52]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 608]: Loop Invariant Derived loop invariant: ((!(2 <= \old(waterLevel)) || !(systemActive == 1)) && (!(\old(pumpRunning) == 0) || !(systemActive == 0))) && ((!(\old(pumpRunning) == 0) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) - InvariantResult [Line: 390]: Loop Invariant Derived loop invariant: ((((((waterLevel == \old(waterLevel) && 2 <= waterLevel) || (waterLevel == \old(waterLevel) && pumpRunning == 0)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) && (!(\old(pumpRunning) == 0) || !(systemActive == 0))) && (((!(2 <= \old(waterLevel)) || 2 <= waterLevel) || ((((1 <= tmp___0 && 1 <= \result) && 1 <= tmp) && 1 <= waterLevel) && pumpRunning == 0)) || !(systemActive == 1)) - InvariantResult [Line: 267]: Loop Invariant Derived loop invariant: (((!(waterLevel == 1) || (\result == 1 && pumpRunning == 0)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) && (((!(\old(pumpRunning) == 0) || !(systemActive == 1)) || !(2 <= waterLevel)) || pumpRunning == 0) - InvariantResult [Line: 487]: Loop Invariant Derived loop invariant: ((((\result == 1 && tmp == 1) || !(waterLevel == 1)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) && ((((((\result == 0 && tmp___0 == 0) && pumpRunning == \old(pumpRunning)) || (pumpRunning == \old(pumpRunning) && 2 <= waterLevel)) || !(1 <= waterLevel)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) - InvariantResult [Line: 309]: Loop Invariant Derived loop invariant: (waterLevel == 1 && systemActive == 1) && pumpRunning == 0 - InvariantResult [Line: 130]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 415]: Loop Invariant Derived loop invariant: ((!(1 <= waterLevel) || !(\old(pumpRunning) == 0)) || 2 <= waterLevel) || !(systemActive == 1) - InvariantResult [Line: 550]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 541]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 302]: Loop Invariant Derived loop invariant: (waterLevel == 1 && systemActive == 1) && pumpRunning == 0 - InvariantResult [Line: 109]: Loop Invariant Derived loop invariant: (waterLevel == 1 && systemActive == 1) && pumpRunning == 0 - InvariantResult [Line: 551]: Loop Invariant Derived loop invariant: (((splverifierCounter == 0 && 2 <= waterLevel) && systemActive == 1) || ((splverifierCounter == 0 && systemActive == 0) && pumpRunning == 0)) || (((splverifierCounter == 0 && 1 <= waterLevel) && systemActive == 1) && pumpRunning == 0) - InvariantResult [Line: 258]: Loop Invariant Derived loop invariant: ((((((((!(\old(waterLevel) == 1) || \result == 1) || !(\old(pumpRunning) == 0)) || !(systemActive == 0)) && (((!(2 <= \old(waterLevel)) || 2 <= \result) || !(\old(pumpRunning) == 0)) || !(systemActive == 0))) && (((waterLevel == \old(waterLevel) && pumpRunning == 0) || !(\old(pumpRunning) == 0)) || !(systemActive == 0))) && (((!(2 <= \old(waterLevel)) || ((2 <= \result && waterLevel == \old(waterLevel)) && 2 <= waterLevel)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1))) && (((((waterLevel == \old(waterLevel) && pumpRunning == 0) || ((2 <= \result && waterLevel == \old(waterLevel)) && 2 <= waterLevel)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel)))) && (((!(\old(waterLevel) == 1) || \result == 1) || !(\old(pumpRunning) == 0)) || !(systemActive == 1))) && (((!(2 <= \old(waterLevel)) || (((((1 <= tmp___0 && 1 <= \result) && 1 <= tmp) && 1 <= waterLevel) && 1 <= \result) && pumpRunning == 0)) || (2 <= \result && 2 <= waterLevel)) || !(systemActive == 1)) - InvariantResult [Line: 62]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 117]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 316]: Loop Invariant Derived loop invariant: (waterLevel == 1 && systemActive == 1) && pumpRunning == 0 - InvariantResult [Line: 281]: Loop Invariant Derived loop invariant: (((!(2 <= \old(waterLevel)) || ((\result == 0 && pumpRunning == \old(pumpRunning)) && 1 <= waterLevel)) || !(systemActive == 1)) && (!(\old(pumpRunning) == 0) || !(systemActive == 0))) && ((!(\old(pumpRunning) == 0) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) - InvariantResult [Line: 157]: Loop Invariant Derived loop invariant: ((((((((!(2 <= \old(waterLevel)) || !(\old(pumpRunning) == 0)) || (2 <= tmp && 2 <= \result)) || !(systemActive == 0)) && (((((waterLevel == \old(waterLevel) && pumpRunning == 0) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) || (((2 <= tmp && 2 <= \result) && waterLevel == \old(waterLevel)) && 2 <= waterLevel))) && (((waterLevel == \old(waterLevel) && pumpRunning == 0) || !(\old(pumpRunning) == 0)) || !(systemActive == 0))) && (((!(2 <= \old(waterLevel)) || ((((((1 <= tmp___0 && 1 <= \result) && 1 <= tmp) && 1 <= waterLevel) && 1 <= \result) && 1 <= tmp) && pumpRunning == 0)) || ((2 <= tmp && 2 <= \result) && 2 <= waterLevel)) || !(systemActive == 1))) && (((!(\old(waterLevel) == 1) || (\result == 1 && tmp == 1)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1))) && (((!(2 <= \old(waterLevel)) || !(\old(pumpRunning) == 0)) || !(systemActive == 1)) || (((2 <= tmp && 2 <= \result) && waterLevel == \old(waterLevel)) && 2 <= waterLevel))) && (((!(\old(waterLevel) == 1) || (\result == 1 && tmp == 1)) || !(\old(pumpRunning) == 0)) || !(systemActive == 0)) - InvariantResult [Line: 506]: Loop Invariant Derived loop invariant: ((!(\old(pumpRunning) == 0) || !(systemActive == 0)) && ((!(2 <= \old(waterLevel)) || !(systemActive == 1)) || (((((1 <= tmp___0 && 1 <= \result) && \result == 0) && pumpRunning == \old(pumpRunning)) && tmp == 0) && 1 <= waterLevel))) && ((!(\old(pumpRunning) == 0) || !(systemActive == 1)) || !(1 <= \old(waterLevel))) - InvariantResult [Line: 525]: Loop Invariant Derived loop invariant: (splverifierCounter == 0 && systemActive == 0) && pumpRunning == 0 RESULT: Ultimate proved your program to be correct! [2021-12-17 15:09:13,890 INFO L552 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Ended with exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE