./Ultimate.py --spec ../sv-benchmarks/c/properties/unreach-call.prp --file ../sv-benchmarks/c/product-lines/minepump_spec3_product34.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version ff03de63 Calling Ultimate with: /usr/bin/java -Dosgi.configuration.area=/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/config -Xmx15G -Xms4m -jar /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data -tc /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/AutomizerReach.xml -i ../sv-benchmarks/c/product-lines/minepump_spec3_product34.cil.c -s /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 750fa47004e8b71818a419cd0705c167dc764081be79a2bed3ff642b9979f0ab --- Real Ultimate output --- This is Ultimate 0.2.2-dev-ff03de6 [2021-12-21 13:15:23,861 INFO L177 SettingsManager]: Resetting all preferences to default values... [2021-12-21 13:15:23,863 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2021-12-21 13:15:23,917 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2021-12-21 13:15:23,917 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2021-12-21 13:15:23,918 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2021-12-21 13:15:23,919 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2021-12-21 13:15:23,920 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2021-12-21 13:15:23,921 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2021-12-21 13:15:23,923 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2021-12-21 13:15:23,924 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2021-12-21 13:15:23,925 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2021-12-21 13:15:23,925 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2021-12-21 13:15:23,926 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2021-12-21 13:15:23,927 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2021-12-21 13:15:23,927 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2021-12-21 13:15:23,928 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2021-12-21 13:15:23,929 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2021-12-21 13:15:23,931 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2021-12-21 13:15:23,935 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2021-12-21 13:15:23,936 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2021-12-21 13:15:23,937 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2021-12-21 13:15:23,937 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2021-12-21 13:15:23,938 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2021-12-21 13:15:23,943 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2021-12-21 13:15:23,943 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2021-12-21 13:15:23,943 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2021-12-21 13:15:23,944 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2021-12-21 13:15:23,945 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2021-12-21 13:15:23,945 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2021-12-21 13:15:23,945 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2021-12-21 13:15:23,946 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2021-12-21 13:15:23,947 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2021-12-21 13:15:23,959 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2021-12-21 13:15:23,961 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2021-12-21 13:15:23,961 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2021-12-21 13:15:23,962 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2021-12-21 13:15:23,963 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2021-12-21 13:15:23,963 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2021-12-21 13:15:23,963 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2021-12-21 13:15:23,964 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2021-12-21 13:15:23,965 INFO L101 SettingsManager]: Beginning loading settings from /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/config/svcomp-Reach-32bit-Automizer_Default.epf [2021-12-21 13:15:23,983 INFO L113 SettingsManager]: Loading preferences was successful [2021-12-21 13:15:23,983 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2021-12-21 13:15:23,984 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2021-12-21 13:15:23,984 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2021-12-21 13:15:23,984 INFO L136 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2021-12-21 13:15:23,984 INFO L138 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2021-12-21 13:15:23,985 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2021-12-21 13:15:23,985 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2021-12-21 13:15:23,985 INFO L138 SettingsManager]: * Use SBE=true [2021-12-21 13:15:23,985 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2021-12-21 13:15:23,986 INFO L138 SettingsManager]: * sizeof long=4 [2021-12-21 13:15:23,986 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2021-12-21 13:15:23,986 INFO L138 SettingsManager]: * sizeof POINTER=4 [2021-12-21 13:15:23,986 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2021-12-21 13:15:23,986 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2021-12-21 13:15:23,986 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2021-12-21 13:15:23,987 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2021-12-21 13:15:23,987 INFO L138 SettingsManager]: * sizeof long double=12 [2021-12-21 13:15:23,987 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2021-12-21 13:15:23,987 INFO L138 SettingsManager]: * Use constant arrays=true [2021-12-21 13:15:23,987 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2021-12-21 13:15:23,987 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2021-12-21 13:15:23,988 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2021-12-21 13:15:23,988 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2021-12-21 13:15:23,988 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-12-21 13:15:23,988 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2021-12-21 13:15:23,988 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2021-12-21 13:15:23,988 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2021-12-21 13:15:23,989 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2021-12-21 13:15:23,989 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2021-12-21 13:15:23,989 INFO L138 SettingsManager]: * Large block encoding in concurrent analysis=OFF [2021-12-21 13:15:23,989 INFO L138 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2021-12-21 13:15:23,989 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2021-12-21 13:15:23,989 INFO L138 SettingsManager]: * Trace refinement exception blacklist=NONE [2021-12-21 13:15:23,990 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 750fa47004e8b71818a419cd0705c167dc764081be79a2bed3ff642b9979f0ab [2021-12-21 13:15:24,170 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2021-12-21 13:15:24,184 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2021-12-21 13:15:24,186 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2021-12-21 13:15:24,186 INFO L271 PluginConnector]: Initializing CDTParser... [2021-12-21 13:15:24,187 INFO L275 PluginConnector]: CDTParser initialized [2021-12-21 13:15:24,188 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/../sv-benchmarks/c/product-lines/minepump_spec3_product34.cil.c [2021-12-21 13:15:24,243 INFO L220 CDTParser]: Created temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/bb0616619/3300e060ff52435e9beab6fd82c6af9e/FLAGf5f02d8cb [2021-12-21 13:15:24,598 INFO L306 CDTParser]: Found 1 translation units. [2021-12-21 13:15:24,599 INFO L160 CDTParser]: Scanning /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec3_product34.cil.c [2021-12-21 13:15:24,607 INFO L349 CDTParser]: About to delete temporary CDT project at /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/bb0616619/3300e060ff52435e9beab6fd82c6af9e/FLAGf5f02d8cb [2021-12-21 13:15:24,616 INFO L357 CDTParser]: Successfully deleted /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/data/bb0616619/3300e060ff52435e9beab6fd82c6af9e [2021-12-21 13:15:24,620 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2021-12-21 13:15:24,621 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2021-12-21 13:15:24,622 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2021-12-21 13:15:24,622 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2021-12-21 13:15:24,624 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2021-12-21 13:15:24,624 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 21.12 01:15:24" (1/1) ... [2021-12-21 13:15:24,625 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@27ffdead and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 01:15:24, skipping insertion in model container [2021-12-21 13:15:24,625 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 21.12 01:15:24" (1/1) ... [2021-12-21 13:15:24,629 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2021-12-21 13:15:24,661 INFO L178 MainTranslator]: Built tables and reachable declarations [2021-12-21 13:15:24,844 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec3_product34.cil.c[16171,16184] [2021-12-21 13:15:24,856 INFO L209 PostProcessor]: Analyzing one entry point: main [2021-12-21 13:15:24,865 INFO L203 MainTranslator]: Completed pre-run [2021-12-21 13:15:24,917 WARN L230 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /storage/repos/ultimate/releaseScripts/default/sv-benchmarks/c/product-lines/minepump_spec3_product34.cil.c[16171,16184] [2021-12-21 13:15:24,922 INFO L209 PostProcessor]: Analyzing one entry point: main [2021-12-21 13:15:24,934 INFO L208 MainTranslator]: Completed translation [2021-12-21 13:15:24,935 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 01:15:24 WrapperNode [2021-12-21 13:15:24,935 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2021-12-21 13:15:24,936 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2021-12-21 13:15:24,936 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2021-12-21 13:15:24,936 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2021-12-21 13:15:24,941 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 01:15:24" (1/1) ... [2021-12-21 13:15:24,951 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 01:15:24" (1/1) ... [2021-12-21 13:15:24,976 INFO L137 Inliner]: procedures = 53, calls = 151, calls flagged for inlining = 21, calls inlined = 18, statements flattened = 232 [2021-12-21 13:15:24,976 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2021-12-21 13:15:24,977 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2021-12-21 13:15:24,977 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2021-12-21 13:15:24,977 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2021-12-21 13:15:24,983 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 01:15:24" (1/1) ... [2021-12-21 13:15:24,983 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 01:15:24" (1/1) ... [2021-12-21 13:15:24,985 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 01:15:24" (1/1) ... [2021-12-21 13:15:24,986 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 01:15:24" (1/1) ... [2021-12-21 13:15:24,990 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 01:15:24" (1/1) ... [2021-12-21 13:15:24,995 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 01:15:24" (1/1) ... [2021-12-21 13:15:24,996 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 01:15:24" (1/1) ... [2021-12-21 13:15:24,998 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2021-12-21 13:15:24,999 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2021-12-21 13:15:24,999 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2021-12-21 13:15:24,999 INFO L275 PluginConnector]: RCFGBuilder initialized [2021-12-21 13:15:25,000 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 01:15:24" (1/1) ... [2021-12-21 13:15:25,023 INFO L168 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2021-12-21 13:15:25,034 INFO L189 MonitoredProcess]: No working directory specified, using /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 [2021-12-21 13:15:25,044 INFO L229 MonitoredProcess]: Starting monitored process 1 with /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2021-12-21 13:15:25,049 INFO L327 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2021-12-21 13:15:25,077 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2021-12-21 13:15:25,077 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2021-12-21 13:15:25,077 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2021-12-21 13:15:25,078 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneLevelCritical [2021-12-21 13:15:25,078 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneLevelCritical [2021-12-21 13:15:25,078 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2021-12-21 13:15:25,078 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2021-12-21 13:15:25,078 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2021-12-21 13:15:25,078 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2021-12-21 13:15:25,078 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2021-12-21 13:15:25,078 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2021-12-21 13:15:25,079 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2021-12-21 13:15:25,079 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2021-12-21 13:15:25,079 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2021-12-21 13:15:25,079 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2021-12-21 13:15:25,079 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2021-12-21 13:15:25,131 INFO L234 CfgBuilder]: Building ICFG [2021-12-21 13:15:25,133 INFO L260 CfgBuilder]: Building CFG for each procedure with an implementation [2021-12-21 13:15:25,361 INFO L275 CfgBuilder]: Performing block encoding [2021-12-21 13:15:25,369 INFO L294 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2021-12-21 13:15:25,370 INFO L299 CfgBuilder]: Removed 2 assume(true) statements. [2021-12-21 13:15:25,371 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.12 01:15:25 BoogieIcfgContainer [2021-12-21 13:15:25,371 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2021-12-21 13:15:25,372 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2021-12-21 13:15:25,372 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2021-12-21 13:15:25,374 INFO L275 PluginConnector]: TraceAbstraction initialized [2021-12-21 13:15:25,375 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 21.12 01:15:24" (1/3) ... [2021-12-21 13:15:25,375 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@160b7ce1 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 21.12 01:15:25, skipping insertion in model container [2021-12-21 13:15:25,375 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 21.12 01:15:24" (2/3) ... [2021-12-21 13:15:25,376 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@160b7ce1 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 21.12 01:15:25, skipping insertion in model container [2021-12-21 13:15:25,376 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.12 01:15:25" (3/3) ... [2021-12-21 13:15:25,377 INFO L111 eAbstractionObserver]: Analyzing ICFG minepump_spec3_product34.cil.c [2021-12-21 13:15:25,398 INFO L204 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2021-12-21 13:15:25,398 INFO L163 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2021-12-21 13:15:25,429 INFO L338 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2021-12-21 13:15:25,433 INFO L339 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mLoopAccelerationTechnique=FAST_UPR [2021-12-21 13:15:25,434 INFO L340 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2021-12-21 13:15:25,445 INFO L276 IsEmpty]: Start isEmpty. Operand has 77 states, 60 states have (on average 1.4) internal successors, (84), 66 states have internal predecessors, (84), 9 states have call successors, (9), 6 states have call predecessors, (9), 6 states have return successors, (9), 8 states have call predecessors, (9), 9 states have call successors, (9) [2021-12-21 13:15:25,450 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2021-12-21 13:15:25,450 INFO L506 BasicCegarLoop]: Found error trace [2021-12-21 13:15:25,450 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-21 13:15:25,451 INFO L402 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-21 13:15:25,457 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-21 13:15:25,458 INFO L85 PathProgramCache]: Analyzing trace with hash 77119383, now seen corresponding path program 1 times [2021-12-21 13:15:25,465 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-21 13:15:25,468 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1012677700] [2021-12-21 13:15:25,468 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-21 13:15:25,469 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-21 13:15:25,593 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:15:25,665 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2021-12-21 13:15:25,672 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:15:25,679 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-21 13:15:25,679 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-21 13:15:25,680 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1012677700] [2021-12-21 13:15:25,681 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1012677700] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-21 13:15:25,681 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-21 13:15:25,681 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2021-12-21 13:15:25,684 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1693558652] [2021-12-21 13:15:25,685 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-21 13:15:25,688 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2021-12-21 13:15:25,688 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-21 13:15:25,712 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2021-12-21 13:15:25,713 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-12-21 13:15:25,715 INFO L87 Difference]: Start difference. First operand has 77 states, 60 states have (on average 1.4) internal successors, (84), 66 states have internal predecessors, (84), 9 states have call successors, (9), 6 states have call predecessors, (9), 6 states have return successors, (9), 8 states have call predecessors, (9), 9 states have call successors, (9) Second operand has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-21 13:15:25,735 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-21 13:15:25,738 INFO L93 Difference]: Finished difference Result 146 states and 199 transitions. [2021-12-21 13:15:25,739 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2021-12-21 13:15:25,740 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 25 [2021-12-21 13:15:25,740 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-21 13:15:25,747 INFO L225 Difference]: With dead ends: 146 [2021-12-21 13:15:25,747 INFO L226 Difference]: Without dead ends: 68 [2021-12-21 13:15:25,750 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2021-12-21 13:15:25,752 INFO L933 BasicCegarLoop]: 96 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 0 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 96 SdHoareTripleChecker+Invalid, 0 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 0 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-21 13:15:25,753 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [0 Valid, 96 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 0 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-21 13:15:25,764 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 68 states. [2021-12-21 13:15:25,777 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 68 to 68. [2021-12-21 13:15:25,778 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 68 states, 53 states have (on average 1.320754716981132) internal successors, (70), 58 states have internal predecessors, (70), 9 states have call successors, (9), 6 states have call predecessors, (9), 5 states have return successors, (8), 7 states have call predecessors, (8), 8 states have call successors, (8) [2021-12-21 13:15:25,779 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 68 states to 68 states and 87 transitions. [2021-12-21 13:15:25,780 INFO L78 Accepts]: Start accepts. Automaton has 68 states and 87 transitions. Word has length 25 [2021-12-21 13:15:25,780 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-21 13:15:25,781 INFO L470 AbstractCegarLoop]: Abstraction has 68 states and 87 transitions. [2021-12-21 13:15:25,781 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-21 13:15:25,781 INFO L276 IsEmpty]: Start isEmpty. Operand 68 states and 87 transitions. [2021-12-21 13:15:25,782 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2021-12-21 13:15:25,783 INFO L506 BasicCegarLoop]: Found error trace [2021-12-21 13:15:25,783 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-21 13:15:25,783 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2021-12-21 13:15:25,784 INFO L402 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-21 13:15:25,784 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-21 13:15:25,784 INFO L85 PathProgramCache]: Analyzing trace with hash -736072085, now seen corresponding path program 1 times [2021-12-21 13:15:25,784 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-21 13:15:25,785 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [199511857] [2021-12-21 13:15:25,785 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-21 13:15:25,785 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-21 13:15:25,812 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:15:25,844 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2021-12-21 13:15:25,846 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:15:25,848 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-21 13:15:25,848 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-21 13:15:25,849 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [199511857] [2021-12-21 13:15:25,849 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [199511857] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-21 13:15:25,849 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-21 13:15:25,849 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-12-21 13:15:25,849 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [661334604] [2021-12-21 13:15:25,849 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-21 13:15:25,850 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-12-21 13:15:25,850 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-21 13:15:25,851 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-12-21 13:15:25,851 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-21 13:15:25,851 INFO L87 Difference]: Start difference. First operand 68 states and 87 transitions. Second operand has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 3 states have internal predecessors, (22), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-21 13:15:25,866 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-21 13:15:25,867 INFO L93 Difference]: Finished difference Result 101 states and 129 transitions. [2021-12-21 13:15:25,868 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-12-21 13:15:25,868 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 3 states have internal predecessors, (22), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 26 [2021-12-21 13:15:25,868 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-21 13:15:25,869 INFO L225 Difference]: With dead ends: 101 [2021-12-21 13:15:25,872 INFO L226 Difference]: Without dead ends: 59 [2021-12-21 13:15:25,872 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-21 13:15:25,874 INFO L933 BasicCegarLoop]: 74 mSDtfsCounter, 13 mSDsluCounter, 57 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 16 SdHoareTripleChecker+Valid, 131 SdHoareTripleChecker+Invalid, 1 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-21 13:15:25,875 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [16 Valid, 131 Invalid, 1 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-21 13:15:25,875 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 59 states. [2021-12-21 13:15:25,880 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 59 to 59. [2021-12-21 13:15:25,882 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 59 states, 47 states have (on average 1.3404255319148937) internal successors, (63), 52 states have internal predecessors, (63), 6 states have call successors, (6), 5 states have call predecessors, (6), 5 states have return successors, (6), 5 states have call predecessors, (6), 6 states have call successors, (6) [2021-12-21 13:15:25,883 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 59 states to 59 states and 75 transitions. [2021-12-21 13:15:25,886 INFO L78 Accepts]: Start accepts. Automaton has 59 states and 75 transitions. Word has length 26 [2021-12-21 13:15:25,886 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-21 13:15:25,886 INFO L470 AbstractCegarLoop]: Abstraction has 59 states and 75 transitions. [2021-12-21 13:15:25,886 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 3 states have internal predecessors, (22), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-21 13:15:25,887 INFO L276 IsEmpty]: Start isEmpty. Operand 59 states and 75 transitions. [2021-12-21 13:15:25,888 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 32 [2021-12-21 13:15:25,889 INFO L506 BasicCegarLoop]: Found error trace [2021-12-21 13:15:25,889 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-21 13:15:25,889 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2021-12-21 13:15:25,889 INFO L402 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-21 13:15:25,890 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-21 13:15:25,890 INFO L85 PathProgramCache]: Analyzing trace with hash 1036891216, now seen corresponding path program 1 times [2021-12-21 13:15:25,890 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-21 13:15:25,890 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1732294544] [2021-12-21 13:15:25,891 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-21 13:15:25,891 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-21 13:15:25,908 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:15:25,958 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2021-12-21 13:15:25,960 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:15:25,962 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-21 13:15:25,962 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-21 13:15:25,962 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1732294544] [2021-12-21 13:15:25,962 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1732294544] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-21 13:15:25,962 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-21 13:15:25,963 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-12-21 13:15:25,963 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [581750454] [2021-12-21 13:15:25,963 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-21 13:15:25,963 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-12-21 13:15:25,963 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-21 13:15:25,964 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-12-21 13:15:25,964 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-12-21 13:15:25,964 INFO L87 Difference]: Start difference. First operand 59 states and 75 transitions. Second operand has 5 states, 5 states have (on average 5.6) internal successors, (28), 5 states have internal predecessors, (28), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-21 13:15:26,036 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-21 13:15:26,039 INFO L93 Difference]: Finished difference Result 111 states and 144 transitions. [2021-12-21 13:15:26,040 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-12-21 13:15:26,040 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 5.6) internal successors, (28), 5 states have internal predecessors, (28), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 31 [2021-12-21 13:15:26,040 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-21 13:15:26,041 INFO L225 Difference]: With dead ends: 111 [2021-12-21 13:15:26,042 INFO L226 Difference]: Without dead ends: 59 [2021-12-21 13:15:26,043 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-12-21 13:15:26,045 INFO L933 BasicCegarLoop]: 68 mSDtfsCounter, 100 mSDsluCounter, 104 mSDsCounter, 0 mSdLazyCounter, 9 mSolverCounterSat, 9 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 100 SdHoareTripleChecker+Valid, 172 SdHoareTripleChecker+Invalid, 18 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 9 IncrementalHoareTripleChecker+Valid, 9 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-21 13:15:26,046 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [100 Valid, 172 Invalid, 18 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [9 Valid, 9 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-21 13:15:26,047 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 59 states. [2021-12-21 13:15:26,052 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 59 to 59. [2021-12-21 13:15:26,055 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 59 states, 47 states have (on average 1.3191489361702127) internal successors, (62), 52 states have internal predecessors, (62), 6 states have call successors, (6), 5 states have call predecessors, (6), 5 states have return successors, (6), 5 states have call predecessors, (6), 6 states have call successors, (6) [2021-12-21 13:15:26,057 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 59 states to 59 states and 74 transitions. [2021-12-21 13:15:26,059 INFO L78 Accepts]: Start accepts. Automaton has 59 states and 74 transitions. Word has length 31 [2021-12-21 13:15:26,059 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-21 13:15:26,059 INFO L470 AbstractCegarLoop]: Abstraction has 59 states and 74 transitions. [2021-12-21 13:15:26,060 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 5.6) internal successors, (28), 5 states have internal predecessors, (28), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-21 13:15:26,060 INFO L276 IsEmpty]: Start isEmpty. Operand 59 states and 74 transitions. [2021-12-21 13:15:26,060 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 37 [2021-12-21 13:15:26,062 INFO L506 BasicCegarLoop]: Found error trace [2021-12-21 13:15:26,062 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-21 13:15:26,062 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2021-12-21 13:15:26,062 INFO L402 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-21 13:15:26,063 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-21 13:15:26,063 INFO L85 PathProgramCache]: Analyzing trace with hash -349370363, now seen corresponding path program 1 times [2021-12-21 13:15:26,063 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-21 13:15:26,063 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [757475800] [2021-12-21 13:15:26,064 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-21 13:15:26,064 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-21 13:15:26,084 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:15:26,104 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2021-12-21 13:15:26,105 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:15:26,107 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 25 [2021-12-21 13:15:26,112 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:15:26,116 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-21 13:15:26,116 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-21 13:15:26,119 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [757475800] [2021-12-21 13:15:26,119 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [757475800] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-21 13:15:26,119 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-21 13:15:26,120 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-12-21 13:15:26,120 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1960001104] [2021-12-21 13:15:26,120 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-21 13:15:26,120 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-12-21 13:15:26,120 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-21 13:15:26,121 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-12-21 13:15:26,121 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-21 13:15:26,121 INFO L87 Difference]: Start difference. First operand 59 states and 74 transitions. Second operand has 3 states, 3 states have (on average 10.333333333333334) internal successors, (31), 3 states have internal predecessors, (31), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2021-12-21 13:15:26,144 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-21 13:15:26,146 INFO L93 Difference]: Finished difference Result 152 states and 195 transitions. [2021-12-21 13:15:26,146 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-12-21 13:15:26,146 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 10.333333333333334) internal successors, (31), 3 states have internal predecessors, (31), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 36 [2021-12-21 13:15:26,147 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-21 13:15:26,148 INFO L225 Difference]: With dead ends: 152 [2021-12-21 13:15:26,149 INFO L226 Difference]: Without dead ends: 100 [2021-12-21 13:15:26,150 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-21 13:15:26,152 INFO L933 BasicCegarLoop]: 94 mSDtfsCounter, 47 mSDsluCounter, 52 mSDsCounter, 0 mSdLazyCounter, 7 mSolverCounterSat, 3 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 47 SdHoareTripleChecker+Valid, 146 SdHoareTripleChecker+Invalid, 10 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 3 IncrementalHoareTripleChecker+Valid, 7 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-21 13:15:26,154 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [47 Valid, 146 Invalid, 10 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [3 Valid, 7 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-21 13:15:26,155 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 100 states. [2021-12-21 13:15:26,166 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 100 to 98. [2021-12-21 13:15:26,168 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 98 states, 77 states have (on average 1.3116883116883118) internal successors, (101), 83 states have internal predecessors, (101), 10 states have call successors, (10), 10 states have call predecessors, (10), 10 states have return successors, (12), 10 states have call predecessors, (12), 10 states have call successors, (12) [2021-12-21 13:15:26,170 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 98 states to 98 states and 123 transitions. [2021-12-21 13:15:26,172 INFO L78 Accepts]: Start accepts. Automaton has 98 states and 123 transitions. Word has length 36 [2021-12-21 13:15:26,172 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-21 13:15:26,172 INFO L470 AbstractCegarLoop]: Abstraction has 98 states and 123 transitions. [2021-12-21 13:15:26,172 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 10.333333333333334) internal successors, (31), 3 states have internal predecessors, (31), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2021-12-21 13:15:26,173 INFO L276 IsEmpty]: Start isEmpty. Operand 98 states and 123 transitions. [2021-12-21 13:15:26,173 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 41 [2021-12-21 13:15:26,174 INFO L506 BasicCegarLoop]: Found error trace [2021-12-21 13:15:26,174 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-21 13:15:26,175 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2021-12-21 13:15:26,175 INFO L402 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-21 13:15:26,175 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-21 13:15:26,176 INFO L85 PathProgramCache]: Analyzing trace with hash 2107801392, now seen corresponding path program 1 times [2021-12-21 13:15:26,176 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-21 13:15:26,176 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [928489398] [2021-12-21 13:15:26,176 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-21 13:15:26,177 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-21 13:15:26,187 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:15:26,222 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 29 [2021-12-21 13:15:26,223 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:15:26,226 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-21 13:15:26,226 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-21 13:15:26,226 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [928489398] [2021-12-21 13:15:26,226 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [928489398] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-21 13:15:26,226 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-21 13:15:26,227 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-12-21 13:15:26,227 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [27337297] [2021-12-21 13:15:26,227 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-21 13:15:26,227 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-12-21 13:15:26,227 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-21 13:15:26,227 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-12-21 13:15:26,227 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-12-21 13:15:26,228 INFO L87 Difference]: Start difference. First operand 98 states and 123 transitions. Second operand has 5 states, 5 states have (on average 7.4) internal successors, (37), 5 states have internal predecessors, (37), 2 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-21 13:15:26,276 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-21 13:15:26,276 INFO L93 Difference]: Finished difference Result 209 states and 266 transitions. [2021-12-21 13:15:26,277 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2021-12-21 13:15:26,277 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.4) internal successors, (37), 5 states have internal predecessors, (37), 2 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 40 [2021-12-21 13:15:26,277 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-21 13:15:26,278 INFO L225 Difference]: With dead ends: 209 [2021-12-21 13:15:26,278 INFO L226 Difference]: Without dead ends: 118 [2021-12-21 13:15:26,278 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-12-21 13:15:26,279 INFO L933 BasicCegarLoop]: 103 mSDtfsCounter, 50 mSDsluCounter, 248 mSDsCounter, 0 mSdLazyCounter, 13 mSolverCounterSat, 7 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 52 SdHoareTripleChecker+Valid, 351 SdHoareTripleChecker+Invalid, 20 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 7 IncrementalHoareTripleChecker+Valid, 13 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-21 13:15:26,279 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [52 Valid, 351 Invalid, 20 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [7 Valid, 13 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-21 13:15:26,280 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 118 states. [2021-12-21 13:15:26,286 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 118 to 101. [2021-12-21 13:15:26,286 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 101 states, 80 states have (on average 1.3) internal successors, (104), 86 states have internal predecessors, (104), 10 states have call successors, (10), 10 states have call predecessors, (10), 10 states have return successors, (12), 10 states have call predecessors, (12), 10 states have call successors, (12) [2021-12-21 13:15:26,287 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 101 states to 101 states and 126 transitions. [2021-12-21 13:15:26,287 INFO L78 Accepts]: Start accepts. Automaton has 101 states and 126 transitions. Word has length 40 [2021-12-21 13:15:26,287 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-21 13:15:26,287 INFO L470 AbstractCegarLoop]: Abstraction has 101 states and 126 transitions. [2021-12-21 13:15:26,287 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.4) internal successors, (37), 5 states have internal predecessors, (37), 2 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-21 13:15:26,287 INFO L276 IsEmpty]: Start isEmpty. Operand 101 states and 126 transitions. [2021-12-21 13:15:26,288 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 41 [2021-12-21 13:15:26,288 INFO L506 BasicCegarLoop]: Found error trace [2021-12-21 13:15:26,288 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-21 13:15:26,288 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2021-12-21 13:15:26,288 INFO L402 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-21 13:15:26,289 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-21 13:15:26,289 INFO L85 PathProgramCache]: Analyzing trace with hash 113656686, now seen corresponding path program 1 times [2021-12-21 13:15:26,289 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-21 13:15:26,289 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1482494260] [2021-12-21 13:15:26,289 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-21 13:15:26,289 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-21 13:15:26,301 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:15:26,319 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 29 [2021-12-21 13:15:26,320 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:15:26,321 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-21 13:15:26,322 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-21 13:15:26,322 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1482494260] [2021-12-21 13:15:26,322 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1482494260] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-21 13:15:26,322 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-21 13:15:26,322 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2021-12-21 13:15:26,322 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1936224858] [2021-12-21 13:15:26,322 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-21 13:15:26,322 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2021-12-21 13:15:26,322 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-21 13:15:26,323 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2021-12-21 13:15:26,323 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2021-12-21 13:15:26,323 INFO L87 Difference]: Start difference. First operand 101 states and 126 transitions. Second operand has 4 states, 4 states have (on average 9.25) internal successors, (37), 4 states have internal predecessors, (37), 2 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-21 13:15:26,344 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-21 13:15:26,344 INFO L93 Difference]: Finished difference Result 215 states and 275 transitions. [2021-12-21 13:15:26,344 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2021-12-21 13:15:26,345 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 9.25) internal successors, (37), 4 states have internal predecessors, (37), 2 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 40 [2021-12-21 13:15:26,345 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-21 13:15:26,345 INFO L225 Difference]: With dead ends: 215 [2021-12-21 13:15:26,345 INFO L226 Difference]: Without dead ends: 121 [2021-12-21 13:15:26,346 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2021-12-21 13:15:26,347 INFO L933 BasicCegarLoop]: 90 mSDtfsCounter, 37 mSDsluCounter, 144 mSDsCounter, 0 mSdLazyCounter, 9 mSolverCounterSat, 4 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 37 SdHoareTripleChecker+Valid, 234 SdHoareTripleChecker+Invalid, 13 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 4 IncrementalHoareTripleChecker+Valid, 9 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-21 13:15:26,347 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [37 Valid, 234 Invalid, 13 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [4 Valid, 9 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-21 13:15:26,347 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 121 states. [2021-12-21 13:15:26,353 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 121 to 103. [2021-12-21 13:15:26,354 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 103 states, 82 states have (on average 1.2926829268292683) internal successors, (106), 88 states have internal predecessors, (106), 10 states have call successors, (10), 10 states have call predecessors, (10), 10 states have return successors, (12), 10 states have call predecessors, (12), 10 states have call successors, (12) [2021-12-21 13:15:26,354 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 103 states to 103 states and 128 transitions. [2021-12-21 13:15:26,354 INFO L78 Accepts]: Start accepts. Automaton has 103 states and 128 transitions. Word has length 40 [2021-12-21 13:15:26,354 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-21 13:15:26,355 INFO L470 AbstractCegarLoop]: Abstraction has 103 states and 128 transitions. [2021-12-21 13:15:26,355 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 9.25) internal successors, (37), 4 states have internal predecessors, (37), 2 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-21 13:15:26,355 INFO L276 IsEmpty]: Start isEmpty. Operand 103 states and 128 transitions. [2021-12-21 13:15:26,355 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 41 [2021-12-21 13:15:26,355 INFO L506 BasicCegarLoop]: Found error trace [2021-12-21 13:15:26,356 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-21 13:15:26,356 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2021-12-21 13:15:26,356 INFO L402 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-21 13:15:26,356 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-21 13:15:26,356 INFO L85 PathProgramCache]: Analyzing trace with hash -703991764, now seen corresponding path program 1 times [2021-12-21 13:15:26,356 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-21 13:15:26,356 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [595225163] [2021-12-21 13:15:26,356 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-21 13:15:26,356 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-21 13:15:26,365 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:15:26,421 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 29 [2021-12-21 13:15:26,423 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:15:26,424 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-21 13:15:26,424 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-21 13:15:26,424 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [595225163] [2021-12-21 13:15:26,425 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [595225163] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-21 13:15:26,425 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-21 13:15:26,425 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2021-12-21 13:15:26,425 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [72547] [2021-12-21 13:15:26,425 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-21 13:15:26,425 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2021-12-21 13:15:26,425 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-21 13:15:26,425 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2021-12-21 13:15:26,425 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-21 13:15:26,426 INFO L87 Difference]: Start difference. First operand 103 states and 128 transitions. Second operand has 3 states, 3 states have (on average 12.333333333333334) internal successors, (37), 3 states have internal predecessors, (37), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-21 13:15:26,457 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-21 13:15:26,457 INFO L93 Difference]: Finished difference Result 245 states and 308 transitions. [2021-12-21 13:15:26,457 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2021-12-21 13:15:26,458 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 12.333333333333334) internal successors, (37), 3 states have internal predecessors, (37), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 40 [2021-12-21 13:15:26,458 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-21 13:15:26,459 INFO L225 Difference]: With dead ends: 245 [2021-12-21 13:15:26,459 INFO L226 Difference]: Without dead ends: 149 [2021-12-21 13:15:26,459 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 4 SyntacticMatches, 1 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2021-12-21 13:15:26,460 INFO L933 BasicCegarLoop]: 76 mSDtfsCounter, 39 mSDsluCounter, 61 mSDsCounter, 0 mSdLazyCounter, 10 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 39 SdHoareTripleChecker+Valid, 137 SdHoareTripleChecker+Invalid, 11 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 10 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-21 13:15:26,460 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [39 Valid, 137 Invalid, 11 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 10 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-21 13:15:26,460 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 149 states. [2021-12-21 13:15:26,469 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 149 to 147. [2021-12-21 13:15:26,469 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 147 states, 117 states have (on average 1.2735042735042734) internal successors, (149), 124 states have internal predecessors, (149), 15 states have call successors, (15), 15 states have call predecessors, (15), 14 states have return successors, (17), 14 states have call predecessors, (17), 15 states have call successors, (17) [2021-12-21 13:15:26,470 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 147 states to 147 states and 181 transitions. [2021-12-21 13:15:26,470 INFO L78 Accepts]: Start accepts. Automaton has 147 states and 181 transitions. Word has length 40 [2021-12-21 13:15:26,470 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-21 13:15:26,470 INFO L470 AbstractCegarLoop]: Abstraction has 147 states and 181 transitions. [2021-12-21 13:15:26,470 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 12.333333333333334) internal successors, (37), 3 states have internal predecessors, (37), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2021-12-21 13:15:26,470 INFO L276 IsEmpty]: Start isEmpty. Operand 147 states and 181 transitions. [2021-12-21 13:15:26,471 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 43 [2021-12-21 13:15:26,471 INFO L506 BasicCegarLoop]: Found error trace [2021-12-21 13:15:26,471 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-21 13:15:26,471 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2021-12-21 13:15:26,471 INFO L402 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-21 13:15:26,472 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-21 13:15:26,472 INFO L85 PathProgramCache]: Analyzing trace with hash -430431235, now seen corresponding path program 1 times [2021-12-21 13:15:26,472 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-21 13:15:26,472 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [825164974] [2021-12-21 13:15:26,472 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-21 13:15:26,472 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-21 13:15:26,481 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:15:26,516 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 26 [2021-12-21 13:15:26,517 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:15:26,521 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 31 [2021-12-21 13:15:26,522 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:15:26,524 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-21 13:15:26,525 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-21 13:15:26,525 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [825164974] [2021-12-21 13:15:26,525 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [825164974] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-21 13:15:26,525 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-21 13:15:26,525 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-12-21 13:15:26,525 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [224400301] [2021-12-21 13:15:26,525 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-21 13:15:26,526 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-12-21 13:15:26,526 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-21 13:15:26,526 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-12-21 13:15:26,526 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-12-21 13:15:26,526 INFO L87 Difference]: Start difference. First operand 147 states and 181 transitions. Second operand has 5 states, 5 states have (on average 7.4) internal successors, (37), 5 states have internal predecessors, (37), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2021-12-21 13:15:26,554 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-21 13:15:26,554 INFO L93 Difference]: Finished difference Result 288 states and 356 transitions. [2021-12-21 13:15:26,555 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-12-21 13:15:26,555 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.4) internal successors, (37), 5 states have internal predecessors, (37), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 42 [2021-12-21 13:15:26,556 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-21 13:15:26,556 INFO L225 Difference]: With dead ends: 288 [2021-12-21 13:15:26,556 INFO L226 Difference]: Without dead ends: 148 [2021-12-21 13:15:26,557 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-12-21 13:15:26,557 INFO L933 BasicCegarLoop]: 77 mSDtfsCounter, 30 mSDsluCounter, 210 mSDsCounter, 0 mSdLazyCounter, 23 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 30 SdHoareTripleChecker+Valid, 287 SdHoareTripleChecker+Invalid, 23 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 23 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-21 13:15:26,557 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [30 Valid, 287 Invalid, 23 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 23 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-21 13:15:26,558 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 148 states. [2021-12-21 13:15:26,565 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 148 to 145. [2021-12-21 13:15:26,565 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 145 states, 115 states have (on average 1.2608695652173914) internal successors, (145), 122 states have internal predecessors, (145), 15 states have call successors, (15), 15 states have call predecessors, (15), 14 states have return successors, (17), 14 states have call predecessors, (17), 15 states have call successors, (17) [2021-12-21 13:15:26,565 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 145 states to 145 states and 177 transitions. [2021-12-21 13:15:26,566 INFO L78 Accepts]: Start accepts. Automaton has 145 states and 177 transitions. Word has length 42 [2021-12-21 13:15:26,566 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-21 13:15:26,566 INFO L470 AbstractCegarLoop]: Abstraction has 145 states and 177 transitions. [2021-12-21 13:15:26,566 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.4) internal successors, (37), 5 states have internal predecessors, (37), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2021-12-21 13:15:26,567 INFO L276 IsEmpty]: Start isEmpty. Operand 145 states and 177 transitions. [2021-12-21 13:15:26,567 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 45 [2021-12-21 13:15:26,567 INFO L506 BasicCegarLoop]: Found error trace [2021-12-21 13:15:26,567 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-21 13:15:26,567 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2021-12-21 13:15:26,567 INFO L402 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-21 13:15:26,568 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-21 13:15:26,568 INFO L85 PathProgramCache]: Analyzing trace with hash -994693806, now seen corresponding path program 1 times [2021-12-21 13:15:26,568 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-21 13:15:26,568 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1186765118] [2021-12-21 13:15:26,568 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-21 13:15:26,568 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-21 13:15:26,578 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:15:26,603 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-21 13:15:26,604 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:15:26,606 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 33 [2021-12-21 13:15:26,607 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:15:26,609 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-21 13:15:26,609 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-21 13:15:26,610 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1186765118] [2021-12-21 13:15:26,610 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1186765118] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-21 13:15:26,610 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-21 13:15:26,610 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2021-12-21 13:15:26,610 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1765698495] [2021-12-21 13:15:26,610 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-21 13:15:26,610 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-12-21 13:15:26,610 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-21 13:15:26,611 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-12-21 13:15:26,611 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-12-21 13:15:26,611 INFO L87 Difference]: Start difference. First operand 145 states and 177 transitions. Second operand has 6 states, 6 states have (on average 6.5) internal successors, (39), 5 states have internal predecessors, (39), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2021-12-21 13:15:26,736 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-21 13:15:26,737 INFO L93 Difference]: Finished difference Result 267 states and 332 transitions. [2021-12-21 13:15:26,737 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2021-12-21 13:15:26,737 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 6.5) internal successors, (39), 5 states have internal predecessors, (39), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 44 [2021-12-21 13:15:26,737 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-21 13:15:26,740 INFO L225 Difference]: With dead ends: 267 [2021-12-21 13:15:26,740 INFO L226 Difference]: Without dead ends: 104 [2021-12-21 13:15:26,741 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 15 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 9 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 7 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=40, Invalid=70, Unknown=0, NotChecked=0, Total=110 [2021-12-21 13:15:26,743 INFO L933 BasicCegarLoop]: 111 mSDtfsCounter, 106 mSDsluCounter, 294 mSDsCounter, 0 mSdLazyCounter, 120 mSolverCounterSat, 15 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 110 SdHoareTripleChecker+Valid, 405 SdHoareTripleChecker+Invalid, 135 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 15 IncrementalHoareTripleChecker+Valid, 120 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-21 13:15:26,743 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [110 Valid, 405 Invalid, 135 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [15 Valid, 120 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-21 13:15:26,744 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 104 states. [2021-12-21 13:15:26,755 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 104 to 101. [2021-12-21 13:15:26,756 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 101 states, 80 states have (on average 1.2125) internal successors, (97), 85 states have internal predecessors, (97), 10 states have call successors, (10), 10 states have call predecessors, (10), 10 states have return successors, (11), 9 states have call predecessors, (11), 10 states have call successors, (11) [2021-12-21 13:15:26,756 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 101 states to 101 states and 118 transitions. [2021-12-21 13:15:26,756 INFO L78 Accepts]: Start accepts. Automaton has 101 states and 118 transitions. Word has length 44 [2021-12-21 13:15:26,757 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-21 13:15:26,757 INFO L470 AbstractCegarLoop]: Abstraction has 101 states and 118 transitions. [2021-12-21 13:15:26,757 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 6.5) internal successors, (39), 5 states have internal predecessors, (39), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2021-12-21 13:15:26,757 INFO L276 IsEmpty]: Start isEmpty. Operand 101 states and 118 transitions. [2021-12-21 13:15:26,757 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 47 [2021-12-21 13:15:26,757 INFO L506 BasicCegarLoop]: Found error trace [2021-12-21 13:15:26,757 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-21 13:15:26,757 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2021-12-21 13:15:26,758 INFO L402 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-21 13:15:26,758 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-21 13:15:26,758 INFO L85 PathProgramCache]: Analyzing trace with hash -622219357, now seen corresponding path program 1 times [2021-12-21 13:15:26,758 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-21 13:15:26,758 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2055954454] [2021-12-21 13:15:26,758 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-21 13:15:26,758 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-21 13:15:26,795 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:15:26,829 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-21 13:15:26,831 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:15:26,835 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 30 [2021-12-21 13:15:26,836 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:15:26,838 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 35 [2021-12-21 13:15:26,840 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:15:26,846 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-21 13:15:26,846 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-21 13:15:26,846 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2055954454] [2021-12-21 13:15:26,846 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2055954454] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-21 13:15:26,846 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-21 13:15:26,846 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2021-12-21 13:15:26,847 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1950500147] [2021-12-21 13:15:26,847 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-21 13:15:26,847 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2021-12-21 13:15:26,847 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-21 13:15:26,848 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2021-12-21 13:15:26,848 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2021-12-21 13:15:26,848 INFO L87 Difference]: Start difference. First operand 101 states and 118 transitions. Second operand has 6 states, 6 states have (on average 6.5) internal successors, (39), 5 states have internal predecessors, (39), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2021-12-21 13:15:26,941 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-21 13:15:26,941 INFO L93 Difference]: Finished difference Result 206 states and 248 transitions. [2021-12-21 13:15:26,941 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2021-12-21 13:15:26,942 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 6.5) internal successors, (39), 5 states have internal predecessors, (39), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 46 [2021-12-21 13:15:26,942 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-21 13:15:26,944 INFO L225 Difference]: With dead ends: 206 [2021-12-21 13:15:26,944 INFO L226 Difference]: Without dead ends: 154 [2021-12-21 13:15:26,944 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 17 GetRequests, 9 SyntacticMatches, 0 SemanticMatches, 8 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=32, Invalid=58, Unknown=0, NotChecked=0, Total=90 [2021-12-21 13:15:26,945 INFO L933 BasicCegarLoop]: 62 mSDtfsCounter, 110 mSDsluCounter, 175 mSDsCounter, 0 mSdLazyCounter, 88 mSolverCounterSat, 17 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 113 SdHoareTripleChecker+Valid, 237 SdHoareTripleChecker+Invalid, 105 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 17 IncrementalHoareTripleChecker+Valid, 88 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-21 13:15:26,945 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [113 Valid, 237 Invalid, 105 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [17 Valid, 88 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-21 13:15:26,946 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 154 states. [2021-12-21 13:15:26,956 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 154 to 145. [2021-12-21 13:15:26,957 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 145 states, 114 states have (on average 1.2280701754385965) internal successors, (140), 121 states have internal predecessors, (140), 15 states have call successors, (15), 15 states have call predecessors, (15), 15 states have return successors, (18), 14 states have call predecessors, (18), 15 states have call successors, (18) [2021-12-21 13:15:26,958 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 145 states to 145 states and 173 transitions. [2021-12-21 13:15:26,958 INFO L78 Accepts]: Start accepts. Automaton has 145 states and 173 transitions. Word has length 46 [2021-12-21 13:15:26,958 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-21 13:15:26,959 INFO L470 AbstractCegarLoop]: Abstraction has 145 states and 173 transitions. [2021-12-21 13:15:26,959 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 6.5) internal successors, (39), 5 states have internal predecessors, (39), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2021-12-21 13:15:26,959 INFO L276 IsEmpty]: Start isEmpty. Operand 145 states and 173 transitions. [2021-12-21 13:15:26,960 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 47 [2021-12-21 13:15:26,960 INFO L506 BasicCegarLoop]: Found error trace [2021-12-21 13:15:26,962 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-21 13:15:26,963 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9 [2021-12-21 13:15:26,963 INFO L402 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-21 13:15:26,963 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-21 13:15:26,963 INFO L85 PathProgramCache]: Analyzing trace with hash -403364639, now seen corresponding path program 1 times [2021-12-21 13:15:26,963 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-21 13:15:26,964 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [977513035] [2021-12-21 13:15:26,964 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-21 13:15:26,964 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-21 13:15:26,978 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:15:27,002 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-21 13:15:27,004 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:15:27,008 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 30 [2021-12-21 13:15:27,009 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:15:27,013 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 35 [2021-12-21 13:15:27,014 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:15:27,015 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-21 13:15:27,015 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-21 13:15:27,016 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [977513035] [2021-12-21 13:15:27,016 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [977513035] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-21 13:15:27,016 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-21 13:15:27,016 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2021-12-21 13:15:27,016 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1278698939] [2021-12-21 13:15:27,016 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-21 13:15:27,017 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2021-12-21 13:15:27,017 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-21 13:15:27,018 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2021-12-21 13:15:27,018 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2021-12-21 13:15:27,018 INFO L87 Difference]: Start difference. First operand 145 states and 173 transitions. Second operand has 5 states, 5 states have (on average 7.8) internal successors, (39), 4 states have internal predecessors, (39), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2021-12-21 13:15:27,072 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-21 13:15:27,072 INFO L93 Difference]: Finished difference Result 255 states and 309 transitions. [2021-12-21 13:15:27,072 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2021-12-21 13:15:27,073 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.8) internal successors, (39), 4 states have internal predecessors, (39), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 46 [2021-12-21 13:15:27,073 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-21 13:15:27,075 INFO L225 Difference]: With dead ends: 255 [2021-12-21 13:15:27,075 INFO L226 Difference]: Without dead ends: 159 [2021-12-21 13:15:27,075 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 12 GetRequests, 7 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2021-12-21 13:15:27,076 INFO L933 BasicCegarLoop]: 73 mSDtfsCounter, 70 mSDsluCounter, 119 mSDsCounter, 0 mSdLazyCounter, 48 mSolverCounterSat, 10 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 72 SdHoareTripleChecker+Valid, 192 SdHoareTripleChecker+Invalid, 58 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 10 IncrementalHoareTripleChecker+Valid, 48 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2021-12-21 13:15:27,076 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [72 Valid, 192 Invalid, 58 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [10 Valid, 48 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2021-12-21 13:15:27,077 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 159 states. [2021-12-21 13:15:27,087 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 159 to 159. [2021-12-21 13:15:27,088 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 159 states, 125 states have (on average 1.2) internal successors, (150), 133 states have internal predecessors, (150), 17 states have call successors, (17), 15 states have call predecessors, (17), 16 states have return successors, (21), 16 states have call predecessors, (21), 17 states have call successors, (21) [2021-12-21 13:15:27,089 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 159 states to 159 states and 188 transitions. [2021-12-21 13:15:27,089 INFO L78 Accepts]: Start accepts. Automaton has 159 states and 188 transitions. Word has length 46 [2021-12-21 13:15:27,089 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-21 13:15:27,089 INFO L470 AbstractCegarLoop]: Abstraction has 159 states and 188 transitions. [2021-12-21 13:15:27,089 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.8) internal successors, (39), 4 states have internal predecessors, (39), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2021-12-21 13:15:27,089 INFO L276 IsEmpty]: Start isEmpty. Operand 159 states and 188 transitions. [2021-12-21 13:15:27,090 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 47 [2021-12-21 13:15:27,090 INFO L506 BasicCegarLoop]: Found error trace [2021-12-21 13:15:27,090 INFO L514 BasicCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-21 13:15:27,090 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10 [2021-12-21 13:15:27,090 INFO L402 AbstractCegarLoop]: === Iteration 12 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2021-12-21 13:15:27,091 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2021-12-21 13:15:27,091 INFO L85 PathProgramCache]: Analyzing trace with hash -1221013089, now seen corresponding path program 1 times [2021-12-21 13:15:27,091 INFO L121 FreeRefinementEngine]: Executing refinement strategy CAMEL [2021-12-21 13:15:27,091 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1297488180] [2021-12-21 13:15:27,091 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2021-12-21 13:15:27,091 INFO L126 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2021-12-21 13:15:27,117 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:15:27,168 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2021-12-21 13:15:27,170 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:15:27,172 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 30 [2021-12-21 13:15:27,173 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:15:27,175 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 35 [2021-12-21 13:15:27,176 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2021-12-21 13:15:27,178 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2021-12-21 13:15:27,178 INFO L139 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2021-12-21 13:15:27,178 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1297488180] [2021-12-21 13:15:27,178 INFO L160 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1297488180] provided 1 perfect and 0 imperfect interpolant sequences [2021-12-21 13:15:27,178 INFO L186 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2021-12-21 13:15:27,178 INFO L199 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2021-12-21 13:15:27,178 INFO L115 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [904936631] [2021-12-21 13:15:27,178 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2021-12-21 13:15:27,179 INFO L546 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2021-12-21 13:15:27,179 INFO L103 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2021-12-21 13:15:27,179 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2021-12-21 13:15:27,179 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=43, Unknown=0, NotChecked=0, Total=56 [2021-12-21 13:15:27,179 INFO L87 Difference]: Start difference. First operand 159 states and 188 transitions. Second operand has 8 states, 8 states have (on average 4.875) internal successors, (39), 7 states have internal predecessors, (39), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2021-12-21 13:15:27,268 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2021-12-21 13:15:27,268 INFO L93 Difference]: Finished difference Result 230 states and 275 transitions. [2021-12-21 13:15:27,268 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2021-12-21 13:15:27,269 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 4.875) internal successors, (39), 7 states have internal predecessors, (39), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 46 [2021-12-21 13:15:27,269 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2021-12-21 13:15:27,269 INFO L225 Difference]: With dead ends: 230 [2021-12-21 13:15:27,269 INFO L226 Difference]: Without dead ends: 0 [2021-12-21 13:15:27,269 INFO L932 BasicCegarLoop]: 0 DeclaredPredicates, 19 GetRequests, 9 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=35, Invalid=97, Unknown=0, NotChecked=0, Total=132 [2021-12-21 13:15:27,270 INFO L933 BasicCegarLoop]: 53 mSDtfsCounter, 64 mSDsluCounter, 205 mSDsCounter, 0 mSdLazyCounter, 104 mSolverCounterSat, 10 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 66 SdHoareTripleChecker+Valid, 258 SdHoareTripleChecker+Invalid, 114 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 10 IncrementalHoareTripleChecker+Valid, 104 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2021-12-21 13:15:27,270 INFO L934 BasicCegarLoop]: SdHoareTripleChecker [66 Valid, 258 Invalid, 114 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [10 Valid, 104 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2021-12-21 13:15:27,270 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2021-12-21 13:15:27,270 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2021-12-21 13:15:27,270 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2021-12-21 13:15:27,271 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2021-12-21 13:15:27,271 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 46 [2021-12-21 13:15:27,271 INFO L84 Accepts]: Finished accepts. word is rejected. [2021-12-21 13:15:27,271 INFO L470 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2021-12-21 13:15:27,271 INFO L471 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 4.875) internal successors, (39), 7 states have internal predecessors, (39), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2021-12-21 13:15:27,271 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2021-12-21 13:15:27,271 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2021-12-21 13:15:27,273 INFO L764 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2021-12-21 13:15:27,273 WARN L452 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable11 [2021-12-21 13:15:27,275 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2021-12-21 13:15:28,300 INFO L858 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 257 263) no Hoare annotation was computed. [2021-12-21 13:15:28,300 INFO L861 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 257 263) the Hoare annotation is: true [2021-12-21 13:15:28,301 INFO L858 garLoopResultBuilder]: For program point L831-1(lines 827 838) no Hoare annotation was computed. [2021-12-21 13:15:28,301 INFO L861 garLoopResultBuilder]: At program point changeMethaneLevelENTRY(lines 827 838) the Hoare annotation is: true [2021-12-21 13:15:28,301 INFO L858 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 827 838) no Hoare annotation was computed. [2021-12-21 13:15:28,301 INFO L861 garLoopResultBuilder]: At program point isMethaneLevelCriticalENTRY(lines 839 847) the Hoare annotation is: true [2021-12-21 13:15:28,301 INFO L858 garLoopResultBuilder]: For program point isMethaneLevelCriticalFINAL(lines 839 847) no Hoare annotation was computed. [2021-12-21 13:15:28,301 INFO L858 garLoopResultBuilder]: For program point isMethaneLevelCriticalEXIT(lines 839 847) no Hoare annotation was computed. [2021-12-21 13:15:28,301 INFO L861 garLoopResultBuilder]: At program point L129(line 129) the Hoare annotation is: true [2021-12-21 13:15:28,301 INFO L858 garLoopResultBuilder]: For program point L129-1(line 129) no Hoare annotation was computed. [2021-12-21 13:15:28,302 INFO L858 garLoopResultBuilder]: For program point cleanupEXIT(lines 123 152) no Hoare annotation was computed. [2021-12-21 13:15:28,302 INFO L861 garLoopResultBuilder]: At program point cleanupENTRY(lines 123 152) the Hoare annotation is: true [2021-12-21 13:15:28,302 INFO L861 garLoopResultBuilder]: At program point L148(lines 123 152) the Hoare annotation is: true [2021-12-21 13:15:28,302 INFO L858 garLoopResultBuilder]: For program point L144(line 144) no Hoare annotation was computed. [2021-12-21 13:15:28,302 INFO L858 garLoopResultBuilder]: For program point L137(lines 137 141) no Hoare annotation was computed. [2021-12-21 13:15:28,302 INFO L861 garLoopResultBuilder]: At program point L137-1(lines 137 141) the Hoare annotation is: true [2021-12-21 13:15:28,303 INFO L858 garLoopResultBuilder]: For program point L134(line 134) no Hoare annotation was computed. [2021-12-21 13:15:28,304 INFO L861 garLoopResultBuilder]: At program point L133-2(lines 133 147) the Hoare annotation is: true [2021-12-21 13:15:28,304 INFO L854 garLoopResultBuilder]: At program point L279(line 279) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 0)) .cse0 (and (= ~pumpRunning~0 0) (= |timeShift_processEnvironment_~tmp~2#1| 0) (not (= 2 ~waterLevel~0)) (= |old(~waterLevel~0)| ~waterLevel~0))) (or (not (= |old(~pumpRunning~0)| 1)) .cse0))) [2021-12-21 13:15:28,304 INFO L858 garLoopResultBuilder]: For program point timeShiftFINAL(lines 233 256) no Hoare annotation was computed. [2021-12-21 13:15:28,304 INFO L858 garLoopResultBuilder]: For program point L767(lines 767 787) no Hoare annotation was computed. [2021-12-21 13:15:28,304 INFO L854 garLoopResultBuilder]: At program point L284(line 284) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 1)) .cse0 (= ~pumpRunning~0 1)) (or (not (= |old(~pumpRunning~0)| 0)) .cse0))) [2021-12-21 13:15:28,304 INFO L858 garLoopResultBuilder]: For program point L796(line 796) no Hoare annotation was computed. [2021-12-21 13:15:28,304 INFO L854 garLoopResultBuilder]: At program point L284-1(lines 265 289) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (let ((.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (= ~pumpRunning~0 0)) (.cse4 (= |timeShift_processEnvironment_~tmp~2#1| 0)) (.cse5 (not .cse0)) (.cse1 (= ~pumpRunning~0 1))) (and (or (not (= |old(~pumpRunning~0)| 1)) .cse0 .cse1) (or .cse2 (not (= |old(~waterLevel~0)| 1)) (and .cse3 .cse4 .cse5) .cse0) (let ((.cse6 (= |old(~waterLevel~0)| ~waterLevel~0))) (or .cse2 (and .cse3 .cse4 (not (= 2 ~waterLevel~0)) .cse6 .cse5) .cse0 (and .cse6 .cse1)))))) [2021-12-21 13:15:28,304 INFO L858 garLoopResultBuilder]: For program point L371(lines 371 375) no Hoare annotation was computed. [2021-12-21 13:15:28,304 INFO L858 garLoopResultBuilder]: For program point L371-2(lines 371 375) no Hoare annotation was computed. [2021-12-21 13:15:28,304 INFO L854 garLoopResultBuilder]: At program point L322(lines 317 325) the Hoare annotation is: (let ((.cse0 (= |timeShift_isPumpRunning_#res#1| 1)) (.cse1 (= ~pumpRunning~0 1)) (.cse3 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 1)) (and .cse0 .cse1) .cse2) (or .cse3 .cse2 (and .cse0 (= |old(~waterLevel~0)| ~waterLevel~0) .cse1)) (or .cse3 (not (= |old(~waterLevel~0)| 1)) .cse2))) [2021-12-21 13:15:28,304 INFO L854 garLoopResultBuilder]: At program point L797(lines 792 799) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 0)) .cse0) (or (not (= |old(~pumpRunning~0)| 1)) .cse0))) [2021-12-21 13:15:28,304 INFO L858 garLoopResultBuilder]: For program point L884(lines 884 890) no Hoare annotation was computed. [2021-12-21 13:15:28,304 INFO L858 garLoopResultBuilder]: For program point L244-1(lines 244 250) no Hoare annotation was computed. [2021-12-21 13:15:28,304 INFO L858 garLoopResultBuilder]: For program point L273(lines 273 281) no Hoare annotation was computed. [2021-12-21 13:15:28,304 INFO L858 garLoopResultBuilder]: For program point L269(lines 269 286) no Hoare annotation was computed. [2021-12-21 13:15:28,304 INFO L854 garLoopResultBuilder]: At program point L876(lines 871 879) the Hoare annotation is: (let ((.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (= ~pumpRunning~0 0)) (.cse4 (= |timeShift_processEnvironment_~tmp~2#1| 0)) (.cse0 (= 0 ~systemActive~0)) (.cse1 (= ~pumpRunning~0 1))) (and (or (not (= |old(~pumpRunning~0)| 1)) .cse0 .cse1) (or .cse2 (not (= |old(~waterLevel~0)| 1)) .cse0 (and .cse3 .cse4 (= |timeShift_getWaterLevel_#res#1| 1))) (let ((.cse5 (= |old(~waterLevel~0)| ~waterLevel~0))) (or .cse2 (and .cse3 (not (= 2 |timeShift_getWaterLevel_#res#1|)) .cse4 (not (= 2 ~waterLevel~0)) .cse5) .cse0 (and .cse5 .cse1))))) [2021-12-21 13:15:28,305 INFO L858 garLoopResultBuilder]: For program point L777(lines 777 783) no Hoare annotation was computed. [2021-12-21 13:15:28,305 INFO L858 garLoopResultBuilder]: For program point L773(lines 773 786) no Hoare annotation was computed. [2021-12-21 13:15:28,305 INFO L854 garLoopResultBuilder]: At program point L773-1(lines 758 790) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (let ((.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (= ~pumpRunning~0 0)) (.cse4 (= |timeShift_processEnvironment_~tmp~2#1| 0)) (.cse5 (not .cse0)) (.cse1 (= ~pumpRunning~0 1))) (and (or (not (= |old(~pumpRunning~0)| 1)) .cse0 .cse1) (or .cse2 (not (= |old(~waterLevel~0)| 1)) (and .cse3 .cse4 .cse5) .cse0) (let ((.cse6 (= |old(~waterLevel~0)| ~waterLevel~0))) (or .cse2 (and .cse3 .cse4 (not (= 2 ~waterLevel~0)) .cse6 .cse5) .cse0 (and .cse6 .cse1)))))) [2021-12-21 13:15:28,305 INFO L854 garLoopResultBuilder]: At program point L765(line 765) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (let ((.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (= ~pumpRunning~0 0)) (.cse4 (= |timeShift_processEnvironment_~tmp~2#1| 0)) (.cse5 (not .cse0)) (.cse1 (= ~pumpRunning~0 1))) (and (or (not (= |old(~pumpRunning~0)| 1)) .cse0 .cse1) (or .cse2 (not (= |old(~waterLevel~0)| 1)) (and .cse3 .cse4 .cse5) .cse0) (let ((.cse6 (= |old(~waterLevel~0)| ~waterLevel~0))) (or .cse2 (and .cse3 .cse4 (not (= 2 ~waterLevel~0)) .cse6 .cse5) .cse0 (and .cse6 .cse1)))))) [2021-12-21 13:15:28,305 INFO L858 garLoopResultBuilder]: For program point L765-1(line 765) no Hoare annotation was computed. [2021-12-21 13:15:28,305 INFO L854 garLoopResultBuilder]: At program point L889(lines 880 893) the Hoare annotation is: (let ((.cse0 (= |timeShift_isHighWaterSensorDry_#res#1| 1)) (.cse1 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 (not (= |old(~waterLevel~0)| 1)) .cse2) (let ((.cse3 (= ~pumpRunning~0 0)) (.cse4 (= |old(~waterLevel~0)| ~waterLevel~0))) (or (and .cse0 .cse3 (not (= 2 ~waterLevel~0)) .cse4) .cse1 .cse2 (and .cse3 (= |timeShift_isHighWaterSensorDry_#res#1| 0) .cse4))) (or (not (= |old(~pumpRunning~0)| 1)) .cse2))) [2021-12-21 13:15:28,305 INFO L854 garLoopResultBuilder]: At program point L377(lines 362 380) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (= |timeShift_isHighWaterLevel_~tmp___0~1#1| 0)) (.cse2 (= |timeShift_isHighWaterLevel_#res#1| 0)) (.cse1 (= 0 ~systemActive~0))) (and (or .cse0 (not (= |old(~waterLevel~0)| 1)) .cse1 (and .cse2 .cse3)) (let ((.cse4 (= ~pumpRunning~0 0)) (.cse5 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse6 (not .cse1))) (or .cse0 (and .cse4 (not (= 2 ~waterLevel~0)) .cse5 .cse6) .cse1 (and .cse4 (not .cse3) (= |timeShift_isHighWaterLevel_~tmp~3#1| 0) (= |timeShift_isHighWaterSensorDry_#res#1| 0) .cse5 .cse6 (not .cse2)))) (or (not (= |old(~pumpRunning~0)| 1)) .cse1))) [2021-12-21 13:15:28,305 INFO L854 garLoopResultBuilder]: At program point timeShiftENTRY(lines 233 256) the Hoare annotation is: (let ((.cse1 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse0 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 1)) .cse0 (and .cse1 (= ~pumpRunning~0 1))) (or (not (= |old(~pumpRunning~0)| 0)) (and (= ~pumpRunning~0 0) .cse1) .cse0))) [2021-12-21 13:15:28,305 INFO L858 garLoopResultBuilder]: For program point L237-1(lines 236 255) no Hoare annotation was computed. [2021-12-21 13:15:28,305 INFO L858 garLoopResultBuilder]: For program point timeShiftEXIT(lines 233 256) no Hoare annotation was computed. [2021-12-21 13:15:28,305 INFO L858 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 796) no Hoare annotation was computed. [2021-12-21 13:15:28,305 INFO L858 garLoopResultBuilder]: For program point L807(lines 807 811) no Hoare annotation was computed. [2021-12-21 13:15:28,305 INFO L854 garLoopResultBuilder]: At program point L295(lines 290 297) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 (and (= |old(~waterLevel~0)| ~waterLevel~0) (= ~pumpRunning~0 1))) (or .cse0 (not (= |old(~waterLevel~0)| 1)) .cse1) (or (not (= |old(~pumpRunning~0)| 1)) .cse1))) [2021-12-21 13:15:28,305 INFO L854 garLoopResultBuilder]: At program point L807-2(lines 803 814) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 1)) .cse0 (= ~pumpRunning~0 1)) (or (not (= |old(~pumpRunning~0)| 0)) .cse0))) [2021-12-21 13:15:28,306 INFO L861 garLoopResultBuilder]: At program point L192(lines 185 194) the Hoare annotation is: true [2021-12-21 13:15:28,306 INFO L861 garLoopResultBuilder]: At program point L217(lines 198 220) the Hoare annotation is: true [2021-12-21 13:15:28,306 INFO L858 garLoopResultBuilder]: For program point L85(lines 85 91) no Hoare annotation was computed. [2021-12-21 13:15:28,306 INFO L858 garLoopResultBuilder]: For program point L85-1(lines 85 91) no Hoare annotation was computed. [2021-12-21 13:15:28,306 INFO L854 garLoopResultBuilder]: At program point L110(lines 65 112) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse2 (= |ULTIMATE.start_main_~tmp~1#1| 1)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 (= ~pumpRunning~0 1)) (and (= ~pumpRunning~0 0) .cse0 (not (= 2 ~waterLevel~0)) .cse1 .cse2 .cse3))) [2021-12-21 13:15:28,306 INFO L854 garLoopResultBuilder]: At program point L77(line 77) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse2 (= |ULTIMATE.start_main_~tmp~1#1| 1)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 (= ~pumpRunning~0 1)) (and (= ~pumpRunning~0 0) .cse0 (not (= 2 ~waterLevel~0)) .cse1 .cse2 .cse3))) [2021-12-21 13:15:28,306 INFO L858 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2021-12-21 13:15:28,306 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startENTRY(line -1) no Hoare annotation was computed. [2021-12-21 13:15:28,306 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2021-12-21 13:15:28,306 INFO L858 garLoopResultBuilder]: For program point L103(lines 103 107) no Hoare annotation was computed. [2021-12-21 13:15:28,306 INFO L854 garLoopResultBuilder]: At program point L103-2(lines 95 108) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse2 (= |ULTIMATE.start_main_~tmp~1#1| 1)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 (= ~pumpRunning~0 1)) (and (= ~pumpRunning~0 0) .cse0 .cse1 .cse2 .cse3))) [2021-12-21 13:15:28,306 INFO L858 garLoopResultBuilder]: For program point L66(lines 65 112) no Hoare annotation was computed. [2021-12-21 13:15:28,306 INFO L858 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2021-12-21 13:15:28,306 INFO L858 garLoopResultBuilder]: For program point L95(lines 95 108) no Hoare annotation was computed. [2021-12-21 13:15:28,306 INFO L854 garLoopResultBuilder]: At program point L925(lines 920 928) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_valid_product_#res#1| 1) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2021-12-21 13:15:28,306 INFO L854 garLoopResultBuilder]: At program point L87(line 87) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse2 (= |ULTIMATE.start_main_~tmp~1#1| 1)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 (= ~pumpRunning~0 1)) (and (= ~pumpRunning~0 0) .cse0 .cse1 .cse2 .cse3))) [2021-12-21 13:15:28,306 INFO L854 garLoopResultBuilder]: At program point L182(lines 178 184) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_valid_product_#res#1| 1) (= |ULTIMATE.start_main_~tmp~1#1| 1) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2021-12-21 13:15:28,306 INFO L854 garLoopResultBuilder]: At program point L917(lines 913 919) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2021-12-21 13:15:28,306 INFO L861 garLoopResultBuilder]: At program point L116(lines 55 120) the Hoare annotation is: true [2021-12-21 13:15:28,306 INFO L858 garLoopResultBuilder]: For program point L75(lines 75 81) no Hoare annotation was computed. [2021-12-21 13:15:28,307 INFO L858 garLoopResultBuilder]: For program point L75-1(lines 75 81) no Hoare annotation was computed. [2021-12-21 13:15:28,307 INFO L858 garLoopResultBuilder]: For program point L67(lines 67 71) no Hoare annotation was computed. [2021-12-21 13:15:28,307 INFO L854 garLoopResultBuilder]: At program point L113(lines 64 114) the Hoare annotation is: false [2021-12-21 13:15:28,307 INFO L858 garLoopResultBuilder]: For program point L208(lines 208 215) no Hoare annotation was computed. [2021-12-21 13:15:28,307 INFO L854 garLoopResultBuilder]: At program point L910(lines 906 912) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2021-12-21 13:15:28,307 INFO L858 garLoopResultBuilder]: For program point L208-2(lines 208 215) no Hoare annotation was computed. [2021-12-21 13:15:28,307 INFO L854 garLoopResultBuilder]: At program point L386(lines 381 388) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse2 (= |ULTIMATE.start_main_~tmp~1#1| 1)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 (= ~pumpRunning~0 1)) (and (= ~pumpRunning~0 0) .cse0 .cse1 .cse2 .cse3))) [2021-12-21 13:15:28,307 INFO L858 garLoopResultBuilder]: For program point waterRiseEXIT(lines 815 826) no Hoare annotation was computed. [2021-12-21 13:15:28,307 INFO L854 garLoopResultBuilder]: At program point waterRiseENTRY(lines 815 826) the Hoare annotation is: (let ((.cse0 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse1 (= 0 ~systemActive~0))) (and (or (not (= ~pumpRunning~0 1)) .cse0 .cse1) (or (not (= ~pumpRunning~0 0)) .cse0 .cse1 (= |old(~waterLevel~0)| 2)))) [2021-12-21 13:15:28,307 INFO L858 garLoopResultBuilder]: For program point L819-1(lines 815 826) no Hoare annotation was computed. [2021-12-21 13:15:28,309 INFO L732 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2021-12-21 13:15:28,310 INFO L179 ceAbstractionStarter]: Computing trace abstraction results [2021-12-21 13:15:28,337 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 21.12 01:15:28 BoogieIcfgContainer [2021-12-21 13:15:28,337 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2021-12-21 13:15:28,338 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2021-12-21 13:15:28,338 INFO L271 PluginConnector]: Initializing Witness Printer... [2021-12-21 13:15:28,338 INFO L275 PluginConnector]: Witness Printer initialized [2021-12-21 13:15:28,338 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 21.12 01:15:25" (3/4) ... [2021-12-21 13:15:28,340 INFO L137 WitnessPrinter]: Generating witness for correct program [2021-12-21 13:15:28,347 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2021-12-21 13:15:28,347 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2021-12-21 13:15:28,347 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneLevelCritical [2021-12-21 13:15:28,347 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2021-12-21 13:15:28,347 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2021-12-21 13:15:28,347 INFO L354 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2021-12-21 13:15:28,354 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 49 nodes and edges [2021-12-21 13:15:28,354 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 22 nodes and edges [2021-12-21 13:15:28,354 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 11 nodes and edges [2021-12-21 13:15:28,355 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 5 nodes and edges [2021-12-21 13:15:28,355 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 2 nodes and edges [2021-12-21 13:15:28,355 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-12-21 13:15:28,355 INFO L910 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2021-12-21 13:15:28,374 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((pumpRunning == 0 && \result == 1) && waterLevel == 1) && !(0 == systemActive) [2021-12-21 13:15:28,374 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((pumpRunning == 0 && \result == 1) && tmp == 1) && waterLevel == 1) && !(0 == systemActive) [2021-12-21 13:15:28,374 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((\result == 1 && splverifierCounter == 0) && tmp == 1) && !(0 == systemActive)) && pumpRunning == 1) || (((((pumpRunning == 0 && \result == 1) && !(2 == waterLevel)) && splverifierCounter == 0) && tmp == 1) && !(0 == systemActive)) [2021-12-21 13:15:28,375 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(\old(pumpRunning) == 1) || 0 == systemActive) || pumpRunning == 1) && (!(\old(pumpRunning) == 0) || 0 == systemActive) [2021-12-21 13:15:28,376 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 1) || 0 == systemActive) || pumpRunning == 1) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || ((pumpRunning == 0 && tmp == 0) && !(0 == systemActive))) || 0 == systemActive)) && (((!(\old(pumpRunning) == 0) || ((((pumpRunning == 0 && tmp == 0) && !(2 == waterLevel)) && \old(waterLevel) == waterLevel) && !(0 == systemActive))) || 0 == systemActive) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) [2021-12-21 13:15:28,376 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((\result == 1 && splverifierCounter == 0) && tmp == 1) && !(0 == systemActive)) && pumpRunning == 1) || ((((pumpRunning == 0 && \result == 1) && splverifierCounter == 0) && tmp == 1) && !(0 == systemActive)) [2021-12-21 13:15:28,377 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 1) || 0 == systemActive) || pumpRunning == 1) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || ((pumpRunning == 0 && tmp == 0) && !(0 == systemActive))) || 0 == systemActive)) && (((!(\old(pumpRunning) == 0) || ((((pumpRunning == 0 && tmp == 0) && !(2 == waterLevel)) && \old(waterLevel) == waterLevel) && !(0 == systemActive))) || 0 == systemActive) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) [2021-12-21 13:15:28,377 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 1) || 0 == systemActive) || pumpRunning == 1) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive) || ((pumpRunning == 0 && tmp == 0) && \result == 1))) && (((!(\old(pumpRunning) == 0) || ((((pumpRunning == 0 && !(2 == \result)) && tmp == 0) && !(2 == waterLevel)) && \old(waterLevel) == waterLevel)) || 0 == systemActive) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) [2021-12-21 13:15:28,377 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((\result == 1 || !(\old(pumpRunning) == 0)) || !(\old(waterLevel) == 1)) || 0 == systemActive) && ((((((\result == 1 && pumpRunning == 0) && !(2 == waterLevel)) && \old(waterLevel) == waterLevel) || !(\old(pumpRunning) == 0)) || 0 == systemActive) || ((pumpRunning == 0 && \result == 0) && \old(waterLevel) == waterLevel))) && (!(\old(pumpRunning) == 1) || 0 == systemActive) [2021-12-21 13:15:28,377 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive) || (\result == 0 && tmp___0 == 0)) && (((!(\old(pumpRunning) == 0) || (((pumpRunning == 0 && !(2 == waterLevel)) && \old(waterLevel) == waterLevel) && !(0 == systemActive))) || 0 == systemActive) || ((((((pumpRunning == 0 && !(tmp___0 == 0)) && tmp == 0) && \result == 0) && \old(waterLevel) == waterLevel) && !(0 == systemActive)) && !(\result == 0)))) && (!(\old(pumpRunning) == 1) || 0 == systemActive) [2021-12-21 13:15:28,377 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 1) || (\result == 1 && pumpRunning == 1)) || 0 == systemActive) && ((!(\old(pumpRunning) == 0) || 0 == systemActive) || ((\result == 1 && \old(waterLevel) == waterLevel) && pumpRunning == 1))) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive) [2021-12-21 13:15:28,377 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 0) || 0 == systemActive) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive)) && (!(\old(pumpRunning) == 1) || 0 == systemActive) [2021-12-21 13:15:28,377 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (!(\old(pumpRunning) == 0) || 0 == systemActive) && (!(\old(pumpRunning) == 1) || 0 == systemActive) [2021-12-21 13:15:28,409 INFO L141 WitnessManager]: Wrote witness to /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/witness.graphml [2021-12-21 13:15:28,410 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2021-12-21 13:15:28,410 INFO L158 Benchmark]: Toolchain (without parser) took 3789.38ms. Allocated memory was 102.8MB in the beginning and 123.7MB in the end (delta: 21.0MB). Free memory was 74.0MB in the beginning and 59.1MB in the end (delta: 14.9MB). Peak memory consumption was 36.7MB. Max. memory is 16.1GB. [2021-12-21 13:15:28,410 INFO L158 Benchmark]: CDTParser took 0.17ms. Allocated memory is still 102.8MB. Free memory was 60.3MB in the beginning and 60.2MB in the end (delta: 76.9kB). There was no memory consumed. Max. memory is 16.1GB. [2021-12-21 13:15:28,410 INFO L158 Benchmark]: CACSL2BoogieTranslator took 313.41ms. Allocated memory is still 102.8MB. Free memory was 73.9MB in the beginning and 71.8MB in the end (delta: 2.0MB). Peak memory consumption was 10.5MB. Max. memory is 16.1GB. [2021-12-21 13:15:28,410 INFO L158 Benchmark]: Boogie Procedure Inliner took 40.63ms. Allocated memory is still 102.8MB. Free memory was 71.8MB in the beginning and 69.8MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2021-12-21 13:15:28,411 INFO L158 Benchmark]: Boogie Preprocessor took 21.35ms. Allocated memory is still 102.8MB. Free memory was 69.8MB in the beginning and 68.0MB in the end (delta: 1.7MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2021-12-21 13:15:28,411 INFO L158 Benchmark]: RCFGBuilder took 372.65ms. Allocated memory is still 102.8MB. Free memory was 68.0MB in the beginning and 52.6MB in the end (delta: 15.4MB). Peak memory consumption was 14.7MB. Max. memory is 16.1GB. [2021-12-21 13:15:28,411 INFO L158 Benchmark]: TraceAbstraction took 2965.05ms. Allocated memory was 102.8MB in the beginning and 123.7MB in the end (delta: 21.0MB). Free memory was 52.2MB in the beginning and 65.4MB in the end (delta: -13.2MB). Peak memory consumption was 31.6MB. Max. memory is 16.1GB. [2021-12-21 13:15:28,411 INFO L158 Benchmark]: Witness Printer took 71.97ms. Allocated memory is still 123.7MB. Free memory was 65.4MB in the beginning and 59.1MB in the end (delta: 6.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. [2021-12-21 13:15:28,412 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.17ms. Allocated memory is still 102.8MB. Free memory was 60.3MB in the beginning and 60.2MB in the end (delta: 76.9kB). There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 313.41ms. Allocated memory is still 102.8MB. Free memory was 73.9MB in the beginning and 71.8MB in the end (delta: 2.0MB). Peak memory consumption was 10.5MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 40.63ms. Allocated memory is still 102.8MB. Free memory was 71.8MB in the beginning and 69.8MB in the end (delta: 2.1MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 21.35ms. Allocated memory is still 102.8MB. Free memory was 69.8MB in the beginning and 68.0MB in the end (delta: 1.7MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 372.65ms. Allocated memory is still 102.8MB. Free memory was 68.0MB in the beginning and 52.6MB in the end (delta: 15.4MB). Peak memory consumption was 14.7MB. Max. memory is 16.1GB. * TraceAbstraction took 2965.05ms. Allocated memory was 102.8MB in the beginning and 123.7MB in the end (delta: 21.0MB). Free memory was 52.2MB in the beginning and 65.4MB in the end (delta: -13.2MB). Peak memory consumption was 31.6MB. Max. memory is 16.1GB. * Witness Printer took 71.97ms. Allocated memory is still 123.7MB. Free memory was 65.4MB in the beginning and 59.1MB in the end (delta: 6.3MB). Peak memory consumption was 6.3MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 796]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 7 procedures, 77 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 2.9s, OverallIterations: 12, TraceHistogramMax: 1, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 0.7s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 1.0s, InitialAbstractionConstructionTime: 0.0s, PartialOrderReductionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 682 SdHoareTripleChecker+Valid, 0.3s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 666 mSDsluCounter, 2646 SdHoareTripleChecker+Invalid, 0.3s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 1669 mSDsCounter, 76 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 432 IncrementalHoareTripleChecker+Invalid, 508 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 76 mSolverCounterUnsat, 977 mSDtfsCounter, 432 mSolverCounterSat, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 123 GetRequests, 69 SyntacticMatches, 1 SemanticMatches, 53 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 13 ImplicationChecksByTransitivity, 0.2s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=159occurred in iteration=11, InterpolantAutomatonStates: 61, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.1s AutomataMinimizationTime, 12 MinimizatonAttempts, 54 StatesRemovedByMinimization, 7 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 35 LocationsWithAnnotation, 473 PreInvPairs, 584 NumberOfFragments, 878 HoareAnnotationTreeSize, 473 FomulaSimplifications, 94 FormulaSimplificationTreeSizeReduction, 0.1s HoareSimplificationTime, 35 FomulaSimplificationsInter, 2726 FormulaSimplificationTreeSizeReductionInter, 0.9s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.0s SsaConstructionTime, 0.2s SatisfiabilityAnalysisTime, 0.5s InterpolantComputationTime, 462 NumberOfCodeBlocks, 462 NumberOfCodeBlocksAsserted, 12 NumberOfCheckSat, 450 ConstructedInterpolants, 0 QuantifiedInterpolants, 712 SizeOfPredicates, 0 NumberOfNonLiveVariables, 0 ConjunctsInSsa, 0 ConjunctsInUnsatCore, 12 InterpolantComputations, 12 PerfectInterpolantSequences, 0/0 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 317]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 1) || (\result == 1 && pumpRunning == 1)) || 0 == systemActive) && ((!(\old(pumpRunning) == 0) || 0 == systemActive) || ((\result == 1 && \old(waterLevel) == waterLevel) && pumpRunning == 1))) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive) - InvariantResult [Line: 65]: Loop Invariant Derived loop invariant: ((((\result == 1 && splverifierCounter == 0) && tmp == 1) && !(0 == systemActive)) && pumpRunning == 1) || (((((pumpRunning == 0 && \result == 1) && !(2 == waterLevel)) && splverifierCounter == 0) && tmp == 1) && !(0 == systemActive)) - InvariantResult [Line: 123]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 198]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 265]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 1) || 0 == systemActive) || pumpRunning == 1) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || ((pumpRunning == 0 && tmp == 0) && !(0 == systemActive))) || 0 == systemActive)) && (((!(\old(pumpRunning) == 0) || ((((pumpRunning == 0 && tmp == 0) && !(2 == waterLevel)) && \old(waterLevel) == waterLevel) && !(0 == systemActive))) || 0 == systemActive) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) - InvariantResult [Line: 803]: Loop Invariant Derived loop invariant: ((!(\old(pumpRunning) == 1) || 0 == systemActive) || pumpRunning == 1) && (!(\old(pumpRunning) == 0) || 0 == systemActive) - InvariantResult [Line: 880]: Loop Invariant Derived loop invariant: ((((\result == 1 || !(\old(pumpRunning) == 0)) || !(\old(waterLevel) == 1)) || 0 == systemActive) && ((((((\result == 1 && pumpRunning == 0) && !(2 == waterLevel)) && \old(waterLevel) == waterLevel) || !(\old(pumpRunning) == 0)) || 0 == systemActive) || ((pumpRunning == 0 && \result == 0) && \old(waterLevel) == waterLevel))) && (!(\old(pumpRunning) == 1) || 0 == systemActive) - InvariantResult [Line: 792]: Loop Invariant Derived loop invariant: (!(\old(pumpRunning) == 0) || 0 == systemActive) && (!(\old(pumpRunning) == 1) || 0 == systemActive) - InvariantResult [Line: 913]: Loop Invariant Derived loop invariant: (pumpRunning == 0 && waterLevel == 1) && !(0 == systemActive) - InvariantResult [Line: 185]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 381]: Loop Invariant Derived loop invariant: ((((\result == 1 && splverifierCounter == 0) && tmp == 1) && !(0 == systemActive)) && pumpRunning == 1) || ((((pumpRunning == 0 && \result == 1) && splverifierCounter == 0) && tmp == 1) && !(0 == systemActive)) - InvariantResult [Line: 64]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 362]: Loop Invariant Derived loop invariant: ((((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive) || (\result == 0 && tmp___0 == 0)) && (((!(\old(pumpRunning) == 0) || (((pumpRunning == 0 && !(2 == waterLevel)) && \old(waterLevel) == waterLevel) && !(0 == systemActive))) || 0 == systemActive) || ((((((pumpRunning == 0 && !(tmp___0 == 0)) && tmp == 0) && \result == 0) && \old(waterLevel) == waterLevel) && !(0 == systemActive)) && !(\result == 0)))) && (!(\old(pumpRunning) == 1) || 0 == systemActive) - InvariantResult [Line: 55]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 920]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && \result == 1) && waterLevel == 1) && !(0 == systemActive) - InvariantResult [Line: 758]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 1) || 0 == systemActive) || pumpRunning == 1) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || ((pumpRunning == 0 && tmp == 0) && !(0 == systemActive))) || 0 == systemActive)) && (((!(\old(pumpRunning) == 0) || ((((pumpRunning == 0 && tmp == 0) && !(2 == waterLevel)) && \old(waterLevel) == waterLevel) && !(0 == systemActive))) || 0 == systemActive) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) - InvariantResult [Line: 133]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 290]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 0) || 0 == systemActive) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive)) && (!(\old(pumpRunning) == 1) || 0 == systemActive) - InvariantResult [Line: 906]: Loop Invariant Derived loop invariant: (pumpRunning == 0 && waterLevel == 1) && !(0 == systemActive) - InvariantResult [Line: 871]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 1) || 0 == systemActive) || pumpRunning == 1) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive) || ((pumpRunning == 0 && tmp == 0) && \result == 1))) && (((!(\old(pumpRunning) == 0) || ((((pumpRunning == 0 && !(2 == \result)) && tmp == 0) && !(2 == waterLevel)) && \old(waterLevel) == waterLevel)) || 0 == systemActive) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) - InvariantResult [Line: 178]: Loop Invariant Derived loop invariant: (((pumpRunning == 0 && \result == 1) && tmp == 1) && waterLevel == 1) && !(0 == systemActive) RESULT: Ultimate proved your program to be correct! [2021-12-21 13:15:28,457 INFO L540 MonitoredProcess]: [MP /storage/repos/ultimate/releaseScripts/default/UAutomizer-linux/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE