./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec3_product34.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 38b53e6a Calling Ultimate with: /usr/lib/jvm/java-1.11.0-openjdk-amd64/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2cedd4c5-8de0-4009-a8ab-feb16ae007a8/bin/uautomizer-ZsLfNo2U6R/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2cedd4c5-8de0-4009-a8ab-feb16ae007a8/bin/uautomizer-ZsLfNo2U6R/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2cedd4c5-8de0-4009-a8ab-feb16ae007a8/bin/uautomizer-ZsLfNo2U6R/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2cedd4c5-8de0-4009-a8ab-feb16ae007a8/bin/uautomizer-ZsLfNo2U6R/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec3_product34.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2cedd4c5-8de0-4009-a8ab-feb16ae007a8/bin/uautomizer-ZsLfNo2U6R/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2cedd4c5-8de0-4009-a8ab-feb16ae007a8/bin/uautomizer-ZsLfNo2U6R --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 750fa47004e8b71818a419cd0705c167dc764081be79a2bed3ff642b9979f0ab --- Real Ultimate output --- [0.001s][warning][os,container] Duplicate cpuset controllers detected. Picking /sys/fs/cgroup/cpuset, skipping /sys/fs/cgroup/cpuset. This is Ultimate 0.2.2-dev-38b53e6 [2022-11-25 15:33:24,238 INFO L177 SettingsManager]: Resetting all preferences to default values... [2022-11-25 15:33:24,241 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2022-11-25 15:33:24,271 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2022-11-25 15:33:24,271 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2022-11-25 15:33:24,275 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2022-11-25 15:33:24,278 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2022-11-25 15:33:24,281 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2022-11-25 15:33:24,284 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2022-11-25 15:33:24,290 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2022-11-25 15:33:24,292 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2022-11-25 15:33:24,294 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2022-11-25 15:33:24,295 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2022-11-25 15:33:24,301 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2022-11-25 15:33:24,303 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2022-11-25 15:33:24,306 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2022-11-25 15:33:24,308 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2022-11-25 15:33:24,309 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2022-11-25 15:33:24,311 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2022-11-25 15:33:24,318 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2022-11-25 15:33:24,320 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2022-11-25 15:33:24,323 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2022-11-25 15:33:24,324 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2022-11-25 15:33:24,325 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2022-11-25 15:33:24,336 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2022-11-25 15:33:24,336 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2022-11-25 15:33:24,337 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2022-11-25 15:33:24,338 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2022-11-25 15:33:24,338 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2022-11-25 15:33:24,341 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2022-11-25 15:33:24,342 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2022-11-25 15:33:24,343 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2022-11-25 15:33:24,345 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2022-11-25 15:33:24,346 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2022-11-25 15:33:24,349 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2022-11-25 15:33:24,349 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2022-11-25 15:33:24,350 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2022-11-25 15:33:24,350 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2022-11-25 15:33:24,350 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2022-11-25 15:33:24,352 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2022-11-25 15:33:24,353 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2022-11-25 15:33:24,354 INFO L101 SettingsManager]: Beginning loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2cedd4c5-8de0-4009-a8ab-feb16ae007a8/bin/uautomizer-ZsLfNo2U6R/config/svcomp-Reach-32bit-Automizer_Default.epf [2022-11-25 15:33:24,395 INFO L113 SettingsManager]: Loading preferences was successful [2022-11-25 15:33:24,412 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2022-11-25 15:33:24,412 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2022-11-25 15:33:24,413 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2022-11-25 15:33:24,414 INFO L136 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2022-11-25 15:33:24,414 INFO L138 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2022-11-25 15:33:24,415 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2022-11-25 15:33:24,415 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2022-11-25 15:33:24,416 INFO L138 SettingsManager]: * Use SBE=true [2022-11-25 15:33:24,416 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2022-11-25 15:33:24,416 INFO L138 SettingsManager]: * sizeof long=4 [2022-11-25 15:33:24,417 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2022-11-25 15:33:24,417 INFO L138 SettingsManager]: * sizeof POINTER=4 [2022-11-25 15:33:24,417 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2022-11-25 15:33:24,418 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2022-11-25 15:33:24,418 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2022-11-25 15:33:24,418 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2022-11-25 15:33:24,418 INFO L138 SettingsManager]: * sizeof long double=12 [2022-11-25 15:33:24,419 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2022-11-25 15:33:24,419 INFO L138 SettingsManager]: * Use constant arrays=true [2022-11-25 15:33:24,419 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2022-11-25 15:33:24,420 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2022-11-25 15:33:24,420 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2022-11-25 15:33:24,420 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2022-11-25 15:33:24,421 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2022-11-25 15:33:24,421 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2022-11-25 15:33:24,421 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2022-11-25 15:33:24,422 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2022-11-25 15:33:24,422 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2022-11-25 15:33:24,422 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2022-11-25 15:33:24,423 INFO L138 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2022-11-25 15:33:24,423 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2022-11-25 15:33:24,423 INFO L138 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2022-11-25 15:33:24,424 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2022-11-25 15:33:24,424 INFO L138 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2cedd4c5-8de0-4009-a8ab-feb16ae007a8/bin/uautomizer-ZsLfNo2U6R/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2cedd4c5-8de0-4009-a8ab-feb16ae007a8/bin/uautomizer-ZsLfNo2U6R Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 750fa47004e8b71818a419cd0705c167dc764081be79a2bed3ff642b9979f0ab [2022-11-25 15:33:24,693 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2022-11-25 15:33:24,717 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2022-11-25 15:33:24,720 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2022-11-25 15:33:24,722 INFO L271 PluginConnector]: Initializing CDTParser... [2022-11-25 15:33:24,722 INFO L275 PluginConnector]: CDTParser initialized [2022-11-25 15:33:24,724 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2cedd4c5-8de0-4009-a8ab-feb16ae007a8/bin/uautomizer-ZsLfNo2U6R/../../sv-benchmarks/c/product-lines/minepump_spec3_product34.cil.c [2022-11-25 15:33:27,953 INFO L500 CDTParser]: Created temporary CDT project at NULL [2022-11-25 15:33:28,234 INFO L351 CDTParser]: Found 1 translation units. [2022-11-25 15:33:28,236 INFO L172 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2cedd4c5-8de0-4009-a8ab-feb16ae007a8/sv-benchmarks/c/product-lines/minepump_spec3_product34.cil.c [2022-11-25 15:33:28,252 INFO L394 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2cedd4c5-8de0-4009-a8ab-feb16ae007a8/bin/uautomizer-ZsLfNo2U6R/data/651307c38/9f3aae5de4fa4771b49b6993e7189189/FLAG81be0f919 [2022-11-25 15:33:28,280 INFO L402 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2cedd4c5-8de0-4009-a8ab-feb16ae007a8/bin/uautomizer-ZsLfNo2U6R/data/651307c38/9f3aae5de4fa4771b49b6993e7189189 [2022-11-25 15:33:28,286 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2022-11-25 15:33:28,289 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2022-11-25 15:33:28,296 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2022-11-25 15:33:28,296 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2022-11-25 15:33:28,303 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2022-11-25 15:33:28,304 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 25.11 03:33:28" (1/1) ... [2022-11-25 15:33:28,305 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@24fdc9dc and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.11 03:33:28, skipping insertion in model container [2022-11-25 15:33:28,305 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 25.11 03:33:28" (1/1) ... [2022-11-25 15:33:28,314 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2022-11-25 15:33:28,371 INFO L178 MainTranslator]: Built tables and reachable declarations [2022-11-25 15:33:28,632 WARN L237 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2cedd4c5-8de0-4009-a8ab-feb16ae007a8/sv-benchmarks/c/product-lines/minepump_spec3_product34.cil.c[16171,16184] [2022-11-25 15:33:28,642 INFO L210 PostProcessor]: Analyzing one entry point: main [2022-11-25 15:33:28,656 INFO L203 MainTranslator]: Completed pre-run [2022-11-25 15:33:28,732 WARN L237 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2cedd4c5-8de0-4009-a8ab-feb16ae007a8/sv-benchmarks/c/product-lines/minepump_spec3_product34.cil.c[16171,16184] [2022-11-25 15:33:28,740 INFO L210 PostProcessor]: Analyzing one entry point: main [2022-11-25 15:33:28,763 INFO L208 MainTranslator]: Completed translation [2022-11-25 15:33:28,764 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.11 03:33:28 WrapperNode [2022-11-25 15:33:28,764 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2022-11-25 15:33:28,774 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2022-11-25 15:33:28,774 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2022-11-25 15:33:28,774 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2022-11-25 15:33:28,783 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.11 03:33:28" (1/1) ... [2022-11-25 15:33:28,820 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.11 03:33:28" (1/1) ... [2022-11-25 15:33:28,863 INFO L138 Inliner]: procedures = 53, calls = 95, calls flagged for inlining = 21, calls inlined = 18, statements flattened = 176 [2022-11-25 15:33:28,863 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2022-11-25 15:33:28,864 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2022-11-25 15:33:28,864 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2022-11-25 15:33:28,865 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2022-11-25 15:33:28,875 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.11 03:33:28" (1/1) ... [2022-11-25 15:33:28,875 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.11 03:33:28" (1/1) ... [2022-11-25 15:33:28,878 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.11 03:33:28" (1/1) ... [2022-11-25 15:33:28,878 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.11 03:33:28" (1/1) ... [2022-11-25 15:33:28,884 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.11 03:33:28" (1/1) ... [2022-11-25 15:33:28,889 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.11 03:33:28" (1/1) ... [2022-11-25 15:33:28,891 INFO L185 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.11 03:33:28" (1/1) ... [2022-11-25 15:33:28,893 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.11 03:33:28" (1/1) ... [2022-11-25 15:33:28,895 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2022-11-25 15:33:28,896 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2022-11-25 15:33:28,897 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2022-11-25 15:33:28,897 INFO L275 PluginConnector]: RCFGBuilder initialized [2022-11-25 15:33:28,898 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.11 03:33:28" (1/1) ... [2022-11-25 15:33:28,910 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2022-11-25 15:33:28,931 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2cedd4c5-8de0-4009-a8ab-feb16ae007a8/bin/uautomizer-ZsLfNo2U6R/z3 [2022-11-25 15:33:28,947 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2cedd4c5-8de0-4009-a8ab-feb16ae007a8/bin/uautomizer-ZsLfNo2U6R/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2022-11-25 15:33:28,949 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2cedd4c5-8de0-4009-a8ab-feb16ae007a8/bin/uautomizer-ZsLfNo2U6R/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2022-11-25 15:33:28,993 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2022-11-25 15:33:28,993 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2022-11-25 15:33:28,993 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2022-11-25 15:33:28,994 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneLevelCritical [2022-11-25 15:33:28,994 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneLevelCritical [2022-11-25 15:33:28,995 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2022-11-25 15:33:28,998 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2022-11-25 15:33:28,999 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2022-11-25 15:33:28,999 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2022-11-25 15:33:28,999 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2022-11-25 15:33:28,999 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2022-11-25 15:33:29,000 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2022-11-25 15:33:29,000 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2022-11-25 15:33:29,000 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2022-11-25 15:33:29,000 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2022-11-25 15:33:29,000 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2022-11-25 15:33:29,090 INFO L235 CfgBuilder]: Building ICFG [2022-11-25 15:33:29,092 INFO L261 CfgBuilder]: Building CFG for each procedure with an implementation [2022-11-25 15:33:29,422 INFO L276 CfgBuilder]: Performing block encoding [2022-11-25 15:33:29,432 INFO L295 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2022-11-25 15:33:29,432 INFO L300 CfgBuilder]: Removed 2 assume(true) statements. [2022-11-25 15:33:29,435 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 25.11 03:33:29 BoogieIcfgContainer [2022-11-25 15:33:29,435 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2022-11-25 15:33:29,438 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2022-11-25 15:33:29,439 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2022-11-25 15:33:29,443 INFO L275 PluginConnector]: TraceAbstraction initialized [2022-11-25 15:33:29,443 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 25.11 03:33:28" (1/3) ... [2022-11-25 15:33:29,444 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@22f62e08 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 25.11 03:33:29, skipping insertion in model container [2022-11-25 15:33:29,445 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 25.11 03:33:28" (2/3) ... [2022-11-25 15:33:29,445 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@22f62e08 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 25.11 03:33:29, skipping insertion in model container [2022-11-25 15:33:29,445 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 25.11 03:33:29" (3/3) ... [2022-11-25 15:33:29,447 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec3_product34.cil.c [2022-11-25 15:33:29,472 INFO L203 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2022-11-25 15:33:29,473 INFO L162 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2022-11-25 15:33:29,535 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2022-11-25 15:33:29,542 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@51c12490, mLbeIndependenceSettings=[IndependenceType=SEMANTIC, AbstractionType=NONE, UseConditional=false, UseSemiCommutativity=true, Solver=Z3, SolverTimeout=1000ms] [2022-11-25 15:33:29,543 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2022-11-25 15:33:29,548 INFO L276 IsEmpty]: Start isEmpty. Operand has 77 states, 60 states have (on average 1.4) internal successors, (84), 66 states have internal predecessors, (84), 9 states have call successors, (9), 6 states have call predecessors, (9), 6 states have return successors, (9), 8 states have call predecessors, (9), 9 states have call successors, (9) [2022-11-25 15:33:29,566 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2022-11-25 15:33:29,566 INFO L187 NwaCegarLoop]: Found error trace [2022-11-25 15:33:29,567 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-25 15:33:29,568 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-25 15:33:29,574 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-25 15:33:29,575 INFO L85 PathProgramCache]: Analyzing trace with hash 77119383, now seen corresponding path program 1 times [2022-11-25 15:33:29,584 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-11-25 15:33:29,584 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [824490616] [2022-11-25 15:33:29,585 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-25 15:33:29,585 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-25 15:33:29,753 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-25 15:33:29,892 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2022-11-25 15:33:29,896 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-25 15:33:29,914 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-25 15:33:29,919 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-11-25 15:33:29,920 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [824490616] [2022-11-25 15:33:29,921 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [824490616] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-25 15:33:29,922 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-25 15:33:29,923 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2022-11-25 15:33:29,926 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [518402289] [2022-11-25 15:33:29,927 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-25 15:33:29,932 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2022-11-25 15:33:29,933 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-11-25 15:33:29,965 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2022-11-25 15:33:29,969 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2022-11-25 15:33:29,972 INFO L87 Difference]: Start difference. First operand has 77 states, 60 states have (on average 1.4) internal successors, (84), 66 states have internal predecessors, (84), 9 states have call successors, (9), 6 states have call predecessors, (9), 6 states have return successors, (9), 8 states have call predecessors, (9), 9 states have call successors, (9) Second operand has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-11-25 15:33:30,037 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-25 15:33:30,038 INFO L93 Difference]: Finished difference Result 146 states and 199 transitions. [2022-11-25 15:33:30,039 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2022-11-25 15:33:30,043 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 25 [2022-11-25 15:33:30,044 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-25 15:33:30,081 INFO L225 Difference]: With dead ends: 146 [2022-11-25 15:33:30,081 INFO L226 Difference]: Without dead ends: 68 [2022-11-25 15:33:30,087 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2022-11-25 15:33:30,095 INFO L413 NwaCegarLoop]: 96 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 0 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 96 SdHoareTripleChecker+Invalid, 0 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 0 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-11-25 15:33:30,098 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 96 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 0 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-11-25 15:33:30,133 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 68 states. [2022-11-25 15:33:30,158 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 68 to 68. [2022-11-25 15:33:30,160 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 68 states, 53 states have (on average 1.320754716981132) internal successors, (70), 58 states have internal predecessors, (70), 9 states have call successors, (9), 6 states have call predecessors, (9), 5 states have return successors, (8), 7 states have call predecessors, (8), 8 states have call successors, (8) [2022-11-25 15:33:30,162 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 68 states to 68 states and 87 transitions. [2022-11-25 15:33:30,164 INFO L78 Accepts]: Start accepts. Automaton has 68 states and 87 transitions. Word has length 25 [2022-11-25 15:33:30,165 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-25 15:33:30,165 INFO L495 AbstractCegarLoop]: Abstraction has 68 states and 87 transitions. [2022-11-25 15:33:30,165 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-11-25 15:33:30,166 INFO L276 IsEmpty]: Start isEmpty. Operand 68 states and 87 transitions. [2022-11-25 15:33:30,168 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2022-11-25 15:33:30,168 INFO L187 NwaCegarLoop]: Found error trace [2022-11-25 15:33:30,169 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-25 15:33:30,169 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2022-11-25 15:33:30,169 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-25 15:33:30,170 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-25 15:33:30,170 INFO L85 PathProgramCache]: Analyzing trace with hash -736072085, now seen corresponding path program 1 times [2022-11-25 15:33:30,171 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-11-25 15:33:30,171 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1203212432] [2022-11-25 15:33:30,171 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-25 15:33:30,172 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-25 15:33:30,199 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-25 15:33:30,298 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2022-11-25 15:33:30,303 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-25 15:33:30,312 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-25 15:33:30,312 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-11-25 15:33:30,313 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1203212432] [2022-11-25 15:33:30,313 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1203212432] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-25 15:33:30,313 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-25 15:33:30,313 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2022-11-25 15:33:30,314 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1444096894] [2022-11-25 15:33:30,314 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-25 15:33:30,315 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2022-11-25 15:33:30,316 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-11-25 15:33:30,317 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2022-11-25 15:33:30,317 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-25 15:33:30,317 INFO L87 Difference]: Start difference. First operand 68 states and 87 transitions. Second operand has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 3 states have internal predecessors, (22), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-11-25 15:33:30,336 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-25 15:33:30,336 INFO L93 Difference]: Finished difference Result 101 states and 129 transitions. [2022-11-25 15:33:30,337 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2022-11-25 15:33:30,337 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 3 states have internal predecessors, (22), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 26 [2022-11-25 15:33:30,338 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-25 15:33:30,339 INFO L225 Difference]: With dead ends: 101 [2022-11-25 15:33:30,339 INFO L226 Difference]: Without dead ends: 59 [2022-11-25 15:33:30,340 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-25 15:33:30,342 INFO L413 NwaCegarLoop]: 74 mSDtfsCounter, 13 mSDsluCounter, 57 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 16 SdHoareTripleChecker+Valid, 131 SdHoareTripleChecker+Invalid, 1 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-11-25 15:33:30,343 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [16 Valid, 131 Invalid, 1 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-11-25 15:33:30,344 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 59 states. [2022-11-25 15:33:30,352 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 59 to 59. [2022-11-25 15:33:30,353 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 59 states, 47 states have (on average 1.3404255319148937) internal successors, (63), 52 states have internal predecessors, (63), 6 states have call successors, (6), 5 states have call predecessors, (6), 5 states have return successors, (6), 5 states have call predecessors, (6), 6 states have call successors, (6) [2022-11-25 15:33:30,354 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 59 states to 59 states and 75 transitions. [2022-11-25 15:33:30,355 INFO L78 Accepts]: Start accepts. Automaton has 59 states and 75 transitions. Word has length 26 [2022-11-25 15:33:30,355 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-25 15:33:30,355 INFO L495 AbstractCegarLoop]: Abstraction has 59 states and 75 transitions. [2022-11-25 15:33:30,355 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 3 states have internal predecessors, (22), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-11-25 15:33:30,356 INFO L276 IsEmpty]: Start isEmpty. Operand 59 states and 75 transitions. [2022-11-25 15:33:30,357 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 32 [2022-11-25 15:33:30,357 INFO L187 NwaCegarLoop]: Found error trace [2022-11-25 15:33:30,357 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-25 15:33:30,358 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2022-11-25 15:33:30,358 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-25 15:33:30,359 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-25 15:33:30,359 INFO L85 PathProgramCache]: Analyzing trace with hash 1036891216, now seen corresponding path program 1 times [2022-11-25 15:33:30,359 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-11-25 15:33:30,360 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1265443541] [2022-11-25 15:33:30,360 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-25 15:33:30,360 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-25 15:33:30,388 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-25 15:33:30,541 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2022-11-25 15:33:30,543 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-25 15:33:30,546 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-25 15:33:30,547 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-11-25 15:33:30,547 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1265443541] [2022-11-25 15:33:30,547 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1265443541] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-25 15:33:30,547 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-25 15:33:30,548 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2022-11-25 15:33:30,548 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1588093127] [2022-11-25 15:33:30,548 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-25 15:33:30,549 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2022-11-25 15:33:30,549 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-11-25 15:33:30,550 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2022-11-25 15:33:30,550 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2022-11-25 15:33:30,550 INFO L87 Difference]: Start difference. First operand 59 states and 75 transitions. Second operand has 5 states, 5 states have (on average 5.6) internal successors, (28), 5 states have internal predecessors, (28), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-11-25 15:33:30,631 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-25 15:33:30,632 INFO L93 Difference]: Finished difference Result 111 states and 144 transitions. [2022-11-25 15:33:30,632 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2022-11-25 15:33:30,633 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 5.6) internal successors, (28), 5 states have internal predecessors, (28), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 31 [2022-11-25 15:33:30,633 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-25 15:33:30,634 INFO L225 Difference]: With dead ends: 111 [2022-11-25 15:33:30,634 INFO L226 Difference]: Without dead ends: 59 [2022-11-25 15:33:30,635 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2022-11-25 15:33:30,636 INFO L413 NwaCegarLoop]: 68 mSDtfsCounter, 100 mSDsluCounter, 104 mSDsCounter, 0 mSdLazyCounter, 9 mSolverCounterSat, 9 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 100 SdHoareTripleChecker+Valid, 172 SdHoareTripleChecker+Invalid, 18 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 9 IncrementalHoareTripleChecker+Valid, 9 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-11-25 15:33:30,637 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [100 Valid, 172 Invalid, 18 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [9 Valid, 9 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-11-25 15:33:30,638 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 59 states. [2022-11-25 15:33:30,655 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 59 to 59. [2022-11-25 15:33:30,656 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 59 states, 47 states have (on average 1.3191489361702127) internal successors, (62), 52 states have internal predecessors, (62), 6 states have call successors, (6), 5 states have call predecessors, (6), 5 states have return successors, (6), 5 states have call predecessors, (6), 6 states have call successors, (6) [2022-11-25 15:33:30,657 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 59 states to 59 states and 74 transitions. [2022-11-25 15:33:30,660 INFO L78 Accepts]: Start accepts. Automaton has 59 states and 74 transitions. Word has length 31 [2022-11-25 15:33:30,660 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-25 15:33:30,660 INFO L495 AbstractCegarLoop]: Abstraction has 59 states and 74 transitions. [2022-11-25 15:33:30,661 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 5.6) internal successors, (28), 5 states have internal predecessors, (28), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-11-25 15:33:30,661 INFO L276 IsEmpty]: Start isEmpty. Operand 59 states and 74 transitions. [2022-11-25 15:33:30,662 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 37 [2022-11-25 15:33:30,663 INFO L187 NwaCegarLoop]: Found error trace [2022-11-25 15:33:30,663 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-25 15:33:30,665 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2022-11-25 15:33:30,665 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-25 15:33:30,666 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-25 15:33:30,667 INFO L85 PathProgramCache]: Analyzing trace with hash -349370363, now seen corresponding path program 1 times [2022-11-25 15:33:30,668 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-11-25 15:33:30,668 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1983558002] [2022-11-25 15:33:30,669 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-25 15:33:30,669 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-25 15:33:30,709 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-25 15:33:30,865 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2022-11-25 15:33:30,866 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-25 15:33:30,868 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 25 [2022-11-25 15:33:30,871 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-25 15:33:30,873 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-25 15:33:30,874 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-11-25 15:33:30,874 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1983558002] [2022-11-25 15:33:30,874 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1983558002] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-25 15:33:30,875 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-25 15:33:30,875 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2022-11-25 15:33:30,875 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1756335462] [2022-11-25 15:33:30,875 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-25 15:33:30,876 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2022-11-25 15:33:30,876 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-11-25 15:33:30,877 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2022-11-25 15:33:30,877 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-25 15:33:30,878 INFO L87 Difference]: Start difference. First operand 59 states and 74 transitions. Second operand has 3 states, 3 states have (on average 10.333333333333334) internal successors, (31), 3 states have internal predecessors, (31), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2022-11-25 15:33:30,920 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-25 15:33:30,921 INFO L93 Difference]: Finished difference Result 152 states and 195 transitions. [2022-11-25 15:33:30,921 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2022-11-25 15:33:30,922 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 10.333333333333334) internal successors, (31), 3 states have internal predecessors, (31), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 36 [2022-11-25 15:33:30,922 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-25 15:33:30,924 INFO L225 Difference]: With dead ends: 152 [2022-11-25 15:33:30,924 INFO L226 Difference]: Without dead ends: 100 [2022-11-25 15:33:30,925 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-25 15:33:30,927 INFO L413 NwaCegarLoop]: 94 mSDtfsCounter, 47 mSDsluCounter, 52 mSDsCounter, 0 mSdLazyCounter, 7 mSolverCounterSat, 3 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 47 SdHoareTripleChecker+Valid, 146 SdHoareTripleChecker+Invalid, 10 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 3 IncrementalHoareTripleChecker+Valid, 7 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-11-25 15:33:30,928 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [47 Valid, 146 Invalid, 10 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [3 Valid, 7 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-11-25 15:33:30,929 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 100 states. [2022-11-25 15:33:30,949 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 100 to 98. [2022-11-25 15:33:30,950 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 98 states, 77 states have (on average 1.3116883116883118) internal successors, (101), 83 states have internal predecessors, (101), 10 states have call successors, (10), 10 states have call predecessors, (10), 10 states have return successors, (12), 10 states have call predecessors, (12), 10 states have call successors, (12) [2022-11-25 15:33:30,952 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 98 states to 98 states and 123 transitions. [2022-11-25 15:33:30,952 INFO L78 Accepts]: Start accepts. Automaton has 98 states and 123 transitions. Word has length 36 [2022-11-25 15:33:30,952 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-25 15:33:30,953 INFO L495 AbstractCegarLoop]: Abstraction has 98 states and 123 transitions. [2022-11-25 15:33:30,953 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 10.333333333333334) internal successors, (31), 3 states have internal predecessors, (31), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2022-11-25 15:33:30,953 INFO L276 IsEmpty]: Start isEmpty. Operand 98 states and 123 transitions. [2022-11-25 15:33:30,955 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 41 [2022-11-25 15:33:30,955 INFO L187 NwaCegarLoop]: Found error trace [2022-11-25 15:33:30,955 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-25 15:33:30,956 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2022-11-25 15:33:30,956 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-25 15:33:30,957 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-25 15:33:30,957 INFO L85 PathProgramCache]: Analyzing trace with hash 2107801392, now seen corresponding path program 1 times [2022-11-25 15:33:30,957 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-11-25 15:33:30,958 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2109865657] [2022-11-25 15:33:30,958 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-25 15:33:30,958 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-25 15:33:30,983 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-25 15:33:31,143 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 29 [2022-11-25 15:33:31,146 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-25 15:33:31,148 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-25 15:33:31,149 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-11-25 15:33:31,149 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2109865657] [2022-11-25 15:33:31,150 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2109865657] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-25 15:33:31,150 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-25 15:33:31,150 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2022-11-25 15:33:31,151 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [498875967] [2022-11-25 15:33:31,151 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-25 15:33:31,151 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2022-11-25 15:33:31,152 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-11-25 15:33:31,153 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2022-11-25 15:33:31,153 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2022-11-25 15:33:31,153 INFO L87 Difference]: Start difference. First operand 98 states and 123 transitions. Second operand has 5 states, 5 states have (on average 7.4) internal successors, (37), 5 states have internal predecessors, (37), 2 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-11-25 15:33:31,226 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-25 15:33:31,227 INFO L93 Difference]: Finished difference Result 209 states and 266 transitions. [2022-11-25 15:33:31,227 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2022-11-25 15:33:31,228 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.4) internal successors, (37), 5 states have internal predecessors, (37), 2 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 40 [2022-11-25 15:33:31,228 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-25 15:33:31,230 INFO L225 Difference]: With dead ends: 209 [2022-11-25 15:33:31,230 INFO L226 Difference]: Without dead ends: 118 [2022-11-25 15:33:31,231 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2022-11-25 15:33:31,233 INFO L413 NwaCegarLoop]: 103 mSDtfsCounter, 50 mSDsluCounter, 248 mSDsCounter, 0 mSdLazyCounter, 13 mSolverCounterSat, 7 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 52 SdHoareTripleChecker+Valid, 351 SdHoareTripleChecker+Invalid, 20 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 7 IncrementalHoareTripleChecker+Valid, 13 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-11-25 15:33:31,234 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [52 Valid, 351 Invalid, 20 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [7 Valid, 13 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-11-25 15:33:31,235 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 118 states. [2022-11-25 15:33:31,250 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 118 to 101. [2022-11-25 15:33:31,251 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 101 states, 80 states have (on average 1.3) internal successors, (104), 86 states have internal predecessors, (104), 10 states have call successors, (10), 10 states have call predecessors, (10), 10 states have return successors, (12), 10 states have call predecessors, (12), 10 states have call successors, (12) [2022-11-25 15:33:31,252 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 101 states to 101 states and 126 transitions. [2022-11-25 15:33:31,253 INFO L78 Accepts]: Start accepts. Automaton has 101 states and 126 transitions. Word has length 40 [2022-11-25 15:33:31,253 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-25 15:33:31,253 INFO L495 AbstractCegarLoop]: Abstraction has 101 states and 126 transitions. [2022-11-25 15:33:31,254 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.4) internal successors, (37), 5 states have internal predecessors, (37), 2 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-11-25 15:33:31,254 INFO L276 IsEmpty]: Start isEmpty. Operand 101 states and 126 transitions. [2022-11-25 15:33:31,255 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 41 [2022-11-25 15:33:31,255 INFO L187 NwaCegarLoop]: Found error trace [2022-11-25 15:33:31,255 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-25 15:33:31,256 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2022-11-25 15:33:31,256 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-25 15:33:31,257 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-25 15:33:31,257 INFO L85 PathProgramCache]: Analyzing trace with hash 113656686, now seen corresponding path program 1 times [2022-11-25 15:33:31,257 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-11-25 15:33:31,258 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [773382386] [2022-11-25 15:33:31,258 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-25 15:33:31,258 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-25 15:33:31,271 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-25 15:33:31,332 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 29 [2022-11-25 15:33:31,336 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-25 15:33:31,338 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-25 15:33:31,341 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-11-25 15:33:31,342 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [773382386] [2022-11-25 15:33:31,342 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [773382386] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-25 15:33:31,342 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-25 15:33:31,342 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2022-11-25 15:33:31,343 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1086882644] [2022-11-25 15:33:31,343 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-25 15:33:31,343 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2022-11-25 15:33:31,344 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-11-25 15:33:31,344 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2022-11-25 15:33:31,345 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2022-11-25 15:33:31,349 INFO L87 Difference]: Start difference. First operand 101 states and 126 transitions. Second operand has 4 states, 4 states have (on average 9.25) internal successors, (37), 4 states have internal predecessors, (37), 2 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-11-25 15:33:31,416 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-25 15:33:31,417 INFO L93 Difference]: Finished difference Result 215 states and 275 transitions. [2022-11-25 15:33:31,417 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2022-11-25 15:33:31,418 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 9.25) internal successors, (37), 4 states have internal predecessors, (37), 2 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 40 [2022-11-25 15:33:31,420 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-25 15:33:31,424 INFO L225 Difference]: With dead ends: 215 [2022-11-25 15:33:31,425 INFO L226 Difference]: Without dead ends: 121 [2022-11-25 15:33:31,428 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2022-11-25 15:33:31,431 INFO L413 NwaCegarLoop]: 90 mSDtfsCounter, 37 mSDsluCounter, 144 mSDsCounter, 0 mSdLazyCounter, 9 mSolverCounterSat, 4 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 37 SdHoareTripleChecker+Valid, 234 SdHoareTripleChecker+Invalid, 13 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 4 IncrementalHoareTripleChecker+Valid, 9 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-11-25 15:33:31,437 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [37 Valid, 234 Invalid, 13 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [4 Valid, 9 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-11-25 15:33:31,442 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 121 states. [2022-11-25 15:33:31,455 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 121 to 103. [2022-11-25 15:33:31,462 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 103 states, 82 states have (on average 1.2926829268292683) internal successors, (106), 88 states have internal predecessors, (106), 10 states have call successors, (10), 10 states have call predecessors, (10), 10 states have return successors, (12), 10 states have call predecessors, (12), 10 states have call successors, (12) [2022-11-25 15:33:31,463 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 103 states to 103 states and 128 transitions. [2022-11-25 15:33:31,463 INFO L78 Accepts]: Start accepts. Automaton has 103 states and 128 transitions. Word has length 40 [2022-11-25 15:33:31,463 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-25 15:33:31,464 INFO L495 AbstractCegarLoop]: Abstraction has 103 states and 128 transitions. [2022-11-25 15:33:31,464 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 9.25) internal successors, (37), 4 states have internal predecessors, (37), 2 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-11-25 15:33:31,464 INFO L276 IsEmpty]: Start isEmpty. Operand 103 states and 128 transitions. [2022-11-25 15:33:31,471 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 41 [2022-11-25 15:33:31,471 INFO L187 NwaCegarLoop]: Found error trace [2022-11-25 15:33:31,473 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-25 15:33:31,473 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2022-11-25 15:33:31,473 INFO L420 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-25 15:33:31,475 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-25 15:33:31,475 INFO L85 PathProgramCache]: Analyzing trace with hash -703991764, now seen corresponding path program 1 times [2022-11-25 15:33:31,475 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-11-25 15:33:31,476 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [48630270] [2022-11-25 15:33:31,476 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-25 15:33:31,477 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-25 15:33:31,503 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-25 15:33:31,607 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 29 [2022-11-25 15:33:31,611 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-25 15:33:31,617 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-25 15:33:31,618 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-11-25 15:33:31,618 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [48630270] [2022-11-25 15:33:31,618 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [48630270] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-25 15:33:31,618 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-25 15:33:31,619 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2022-11-25 15:33:31,619 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1908656340] [2022-11-25 15:33:31,619 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-25 15:33:31,620 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2022-11-25 15:33:31,620 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-11-25 15:33:31,621 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2022-11-25 15:33:31,622 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-25 15:33:31,622 INFO L87 Difference]: Start difference. First operand 103 states and 128 transitions. Second operand has 3 states, 3 states have (on average 12.333333333333334) internal successors, (37), 3 states have internal predecessors, (37), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-11-25 15:33:31,666 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-25 15:33:31,666 INFO L93 Difference]: Finished difference Result 245 states and 308 transitions. [2022-11-25 15:33:31,666 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2022-11-25 15:33:31,667 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 12.333333333333334) internal successors, (37), 3 states have internal predecessors, (37), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 40 [2022-11-25 15:33:31,667 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-25 15:33:31,668 INFO L225 Difference]: With dead ends: 245 [2022-11-25 15:33:31,669 INFO L226 Difference]: Without dead ends: 149 [2022-11-25 15:33:31,669 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-11-25 15:33:31,671 INFO L413 NwaCegarLoop]: 76 mSDtfsCounter, 39 mSDsluCounter, 61 mSDsCounter, 0 mSdLazyCounter, 10 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 39 SdHoareTripleChecker+Valid, 137 SdHoareTripleChecker+Invalid, 11 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 10 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-11-25 15:33:31,671 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [39 Valid, 137 Invalid, 11 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 10 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-11-25 15:33:31,672 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 149 states. [2022-11-25 15:33:31,695 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 149 to 147. [2022-11-25 15:33:31,698 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 147 states, 117 states have (on average 1.2735042735042734) internal successors, (149), 124 states have internal predecessors, (149), 15 states have call successors, (15), 15 states have call predecessors, (15), 14 states have return successors, (17), 14 states have call predecessors, (17), 15 states have call successors, (17) [2022-11-25 15:33:31,705 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 147 states to 147 states and 181 transitions. [2022-11-25 15:33:31,705 INFO L78 Accepts]: Start accepts. Automaton has 147 states and 181 transitions. Word has length 40 [2022-11-25 15:33:31,706 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-25 15:33:31,706 INFO L495 AbstractCegarLoop]: Abstraction has 147 states and 181 transitions. [2022-11-25 15:33:31,706 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 12.333333333333334) internal successors, (37), 3 states have internal predecessors, (37), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-11-25 15:33:31,706 INFO L276 IsEmpty]: Start isEmpty. Operand 147 states and 181 transitions. [2022-11-25 15:33:31,707 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 43 [2022-11-25 15:33:31,707 INFO L187 NwaCegarLoop]: Found error trace [2022-11-25 15:33:31,708 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-25 15:33:31,708 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2022-11-25 15:33:31,708 INFO L420 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-25 15:33:31,709 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-25 15:33:31,709 INFO L85 PathProgramCache]: Analyzing trace with hash -430431235, now seen corresponding path program 1 times [2022-11-25 15:33:31,709 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-11-25 15:33:31,709 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [713791821] [2022-11-25 15:33:31,710 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-25 15:33:31,710 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-25 15:33:31,721 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-25 15:33:31,879 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 26 [2022-11-25 15:33:31,880 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-25 15:33:31,883 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 31 [2022-11-25 15:33:31,885 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-25 15:33:31,888 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-25 15:33:31,888 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-11-25 15:33:31,888 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [713791821] [2022-11-25 15:33:31,889 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [713791821] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-25 15:33:31,889 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-25 15:33:31,889 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2022-11-25 15:33:31,889 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1977174566] [2022-11-25 15:33:31,890 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-25 15:33:31,890 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2022-11-25 15:33:31,890 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-11-25 15:33:31,891 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2022-11-25 15:33:31,891 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2022-11-25 15:33:31,892 INFO L87 Difference]: Start difference. First operand 147 states and 181 transitions. Second operand has 5 states, 5 states have (on average 7.4) internal successors, (37), 5 states have internal predecessors, (37), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2022-11-25 15:33:31,956 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-25 15:33:31,956 INFO L93 Difference]: Finished difference Result 288 states and 356 transitions. [2022-11-25 15:33:31,957 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2022-11-25 15:33:31,957 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.4) internal successors, (37), 5 states have internal predecessors, (37), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 42 [2022-11-25 15:33:31,958 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-25 15:33:31,959 INFO L225 Difference]: With dead ends: 288 [2022-11-25 15:33:31,960 INFO L226 Difference]: Without dead ends: 148 [2022-11-25 15:33:31,960 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2022-11-25 15:33:31,961 INFO L413 NwaCegarLoop]: 77 mSDtfsCounter, 30 mSDsluCounter, 210 mSDsCounter, 0 mSdLazyCounter, 23 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 30 SdHoareTripleChecker+Valid, 287 SdHoareTripleChecker+Invalid, 23 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 23 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-11-25 15:33:31,962 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [30 Valid, 287 Invalid, 23 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 23 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-11-25 15:33:31,963 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 148 states. [2022-11-25 15:33:31,981 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 148 to 145. [2022-11-25 15:33:31,982 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 145 states, 115 states have (on average 1.2608695652173914) internal successors, (145), 122 states have internal predecessors, (145), 15 states have call successors, (15), 15 states have call predecessors, (15), 14 states have return successors, (17), 14 states have call predecessors, (17), 15 states have call successors, (17) [2022-11-25 15:33:31,983 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 145 states to 145 states and 177 transitions. [2022-11-25 15:33:31,983 INFO L78 Accepts]: Start accepts. Automaton has 145 states and 177 transitions. Word has length 42 [2022-11-25 15:33:31,983 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-25 15:33:31,984 INFO L495 AbstractCegarLoop]: Abstraction has 145 states and 177 transitions. [2022-11-25 15:33:31,984 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.4) internal successors, (37), 5 states have internal predecessors, (37), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2022-11-25 15:33:31,984 INFO L276 IsEmpty]: Start isEmpty. Operand 145 states and 177 transitions. [2022-11-25 15:33:31,985 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 45 [2022-11-25 15:33:31,985 INFO L187 NwaCegarLoop]: Found error trace [2022-11-25 15:33:31,986 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-25 15:33:31,986 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2022-11-25 15:33:31,986 INFO L420 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-25 15:33:31,987 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-25 15:33:31,987 INFO L85 PathProgramCache]: Analyzing trace with hash -994693806, now seen corresponding path program 1 times [2022-11-25 15:33:31,987 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-11-25 15:33:31,987 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1344730671] [2022-11-25 15:33:31,988 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-25 15:33:31,988 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-25 15:33:32,001 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-25 15:33:32,073 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2022-11-25 15:33:32,074 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-25 15:33:32,076 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 33 [2022-11-25 15:33:32,078 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-25 15:33:32,081 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-25 15:33:32,081 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-11-25 15:33:32,081 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1344730671] [2022-11-25 15:33:32,081 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1344730671] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-25 15:33:32,082 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-25 15:33:32,082 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2022-11-25 15:33:32,082 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1839325953] [2022-11-25 15:33:32,082 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-25 15:33:32,083 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2022-11-25 15:33:32,083 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-11-25 15:33:32,084 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2022-11-25 15:33:32,084 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2022-11-25 15:33:32,084 INFO L87 Difference]: Start difference. First operand 145 states and 177 transitions. Second operand has 6 states, 6 states have (on average 6.5) internal successors, (39), 5 states have internal predecessors, (39), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2022-11-25 15:33:32,331 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-25 15:33:32,331 INFO L93 Difference]: Finished difference Result 267 states and 332 transitions. [2022-11-25 15:33:32,331 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2022-11-25 15:33:32,332 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 6.5) internal successors, (39), 5 states have internal predecessors, (39), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 44 [2022-11-25 15:33:32,332 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-25 15:33:32,337 INFO L225 Difference]: With dead ends: 267 [2022-11-25 15:33:32,337 INFO L226 Difference]: Without dead ends: 104 [2022-11-25 15:33:32,338 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 15 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 9 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 7 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=40, Invalid=70, Unknown=0, NotChecked=0, Total=110 [2022-11-25 15:33:32,342 INFO L413 NwaCegarLoop]: 99 mSDtfsCounter, 108 mSDsluCounter, 285 mSDsCounter, 0 mSdLazyCounter, 141 mSolverCounterSat, 13 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 112 SdHoareTripleChecker+Valid, 384 SdHoareTripleChecker+Invalid, 154 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 13 IncrementalHoareTripleChecker+Valid, 141 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.2s IncrementalHoareTripleChecker+Time [2022-11-25 15:33:32,342 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [112 Valid, 384 Invalid, 154 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [13 Valid, 141 Invalid, 0 Unknown, 0 Unchecked, 0.2s Time] [2022-11-25 15:33:32,344 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 104 states. [2022-11-25 15:33:32,375 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 104 to 101. [2022-11-25 15:33:32,375 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 101 states, 80 states have (on average 1.2125) internal successors, (97), 85 states have internal predecessors, (97), 10 states have call successors, (10), 10 states have call predecessors, (10), 10 states have return successors, (11), 9 states have call predecessors, (11), 10 states have call successors, (11) [2022-11-25 15:33:32,376 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 101 states to 101 states and 118 transitions. [2022-11-25 15:33:32,377 INFO L78 Accepts]: Start accepts. Automaton has 101 states and 118 transitions. Word has length 44 [2022-11-25 15:33:32,377 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-25 15:33:32,377 INFO L495 AbstractCegarLoop]: Abstraction has 101 states and 118 transitions. [2022-11-25 15:33:32,377 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 6.5) internal successors, (39), 5 states have internal predecessors, (39), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2022-11-25 15:33:32,377 INFO L276 IsEmpty]: Start isEmpty. Operand 101 states and 118 transitions. [2022-11-25 15:33:32,378 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 47 [2022-11-25 15:33:32,378 INFO L187 NwaCegarLoop]: Found error trace [2022-11-25 15:33:32,378 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-25 15:33:32,379 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2022-11-25 15:33:32,379 INFO L420 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-25 15:33:32,379 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-25 15:33:32,380 INFO L85 PathProgramCache]: Analyzing trace with hash -622219357, now seen corresponding path program 1 times [2022-11-25 15:33:32,380 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-11-25 15:33:32,380 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1111998745] [2022-11-25 15:33:32,380 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-25 15:33:32,380 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-25 15:33:32,410 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-25 15:33:32,514 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2022-11-25 15:33:32,517 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-25 15:33:32,521 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 30 [2022-11-25 15:33:32,522 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-25 15:33:32,523 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 35 [2022-11-25 15:33:32,526 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-25 15:33:32,529 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-25 15:33:32,529 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-11-25 15:33:32,529 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1111998745] [2022-11-25 15:33:32,529 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1111998745] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-25 15:33:32,530 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-25 15:33:32,530 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2022-11-25 15:33:32,530 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1933726334] [2022-11-25 15:33:32,530 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-25 15:33:32,531 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2022-11-25 15:33:32,531 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-11-25 15:33:32,532 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2022-11-25 15:33:32,532 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2022-11-25 15:33:32,532 INFO L87 Difference]: Start difference. First operand 101 states and 118 transitions. Second operand has 6 states, 6 states have (on average 6.5) internal successors, (39), 5 states have internal predecessors, (39), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2022-11-25 15:33:32,732 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-25 15:33:32,732 INFO L93 Difference]: Finished difference Result 206 states and 248 transitions. [2022-11-25 15:33:32,733 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2022-11-25 15:33:32,733 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 6.5) internal successors, (39), 5 states have internal predecessors, (39), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 46 [2022-11-25 15:33:32,735 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-25 15:33:32,737 INFO L225 Difference]: With dead ends: 206 [2022-11-25 15:33:32,737 INFO L226 Difference]: Without dead ends: 154 [2022-11-25 15:33:32,738 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 17 GetRequests, 9 SyntacticMatches, 0 SemanticMatches, 8 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=32, Invalid=58, Unknown=0, NotChecked=0, Total=90 [2022-11-25 15:33:32,738 INFO L413 NwaCegarLoop]: 56 mSDtfsCounter, 110 mSDsluCounter, 173 mSDsCounter, 0 mSdLazyCounter, 96 mSolverCounterSat, 17 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 113 SdHoareTripleChecker+Valid, 229 SdHoareTripleChecker+Invalid, 113 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 17 IncrementalHoareTripleChecker+Valid, 96 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-25 15:33:32,740 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [113 Valid, 229 Invalid, 113 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [17 Valid, 96 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-25 15:33:32,741 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 154 states. [2022-11-25 15:33:32,774 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 154 to 145. [2022-11-25 15:33:32,776 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 145 states, 114 states have (on average 1.2280701754385965) internal successors, (140), 121 states have internal predecessors, (140), 15 states have call successors, (15), 15 states have call predecessors, (15), 15 states have return successors, (18), 14 states have call predecessors, (18), 15 states have call successors, (18) [2022-11-25 15:33:32,777 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 145 states to 145 states and 173 transitions. [2022-11-25 15:33:32,777 INFO L78 Accepts]: Start accepts. Automaton has 145 states and 173 transitions. Word has length 46 [2022-11-25 15:33:32,779 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-25 15:33:32,779 INFO L495 AbstractCegarLoop]: Abstraction has 145 states and 173 transitions. [2022-11-25 15:33:32,779 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 6.5) internal successors, (39), 5 states have internal predecessors, (39), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2022-11-25 15:33:32,780 INFO L276 IsEmpty]: Start isEmpty. Operand 145 states and 173 transitions. [2022-11-25 15:33:32,782 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 47 [2022-11-25 15:33:32,783 INFO L187 NwaCegarLoop]: Found error trace [2022-11-25 15:33:32,783 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-25 15:33:32,784 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9 [2022-11-25 15:33:32,784 INFO L420 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-25 15:33:32,784 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-25 15:33:32,784 INFO L85 PathProgramCache]: Analyzing trace with hash -403364639, now seen corresponding path program 1 times [2022-11-25 15:33:32,785 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-11-25 15:33:32,785 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2124858166] [2022-11-25 15:33:32,785 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-25 15:33:32,785 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-25 15:33:32,802 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-25 15:33:32,855 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2022-11-25 15:33:32,857 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-25 15:33:32,863 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 30 [2022-11-25 15:33:32,865 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-25 15:33:32,867 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 35 [2022-11-25 15:33:32,868 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-25 15:33:32,870 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-25 15:33:32,871 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-11-25 15:33:32,871 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2124858166] [2022-11-25 15:33:32,871 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2124858166] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-25 15:33:32,871 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-25 15:33:32,871 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2022-11-25 15:33:32,871 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [379096729] [2022-11-25 15:33:32,872 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-25 15:33:32,873 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2022-11-25 15:33:32,873 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-11-25 15:33:32,874 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2022-11-25 15:33:32,874 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2022-11-25 15:33:32,874 INFO L87 Difference]: Start difference. First operand 145 states and 173 transitions. Second operand has 5 states, 5 states have (on average 7.8) internal successors, (39), 4 states have internal predecessors, (39), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2022-11-25 15:33:32,990 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-25 15:33:32,991 INFO L93 Difference]: Finished difference Result 255 states and 309 transitions. [2022-11-25 15:33:32,991 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2022-11-25 15:33:32,992 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.8) internal successors, (39), 4 states have internal predecessors, (39), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 46 [2022-11-25 15:33:32,992 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-25 15:33:32,993 INFO L225 Difference]: With dead ends: 255 [2022-11-25 15:33:32,993 INFO L226 Difference]: Without dead ends: 159 [2022-11-25 15:33:32,994 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 12 GetRequests, 7 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2022-11-25 15:33:32,995 INFO L413 NwaCegarLoop]: 67 mSDtfsCounter, 70 mSDsluCounter, 117 mSDsCounter, 0 mSdLazyCounter, 56 mSolverCounterSat, 10 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 72 SdHoareTripleChecker+Valid, 184 SdHoareTripleChecker+Invalid, 66 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 10 IncrementalHoareTripleChecker+Valid, 56 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-25 15:33:32,995 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [72 Valid, 184 Invalid, 66 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [10 Valid, 56 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-25 15:33:32,997 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 159 states. [2022-11-25 15:33:33,025 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 159 to 159. [2022-11-25 15:33:33,025 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 159 states, 125 states have (on average 1.2) internal successors, (150), 133 states have internal predecessors, (150), 17 states have call successors, (17), 15 states have call predecessors, (17), 16 states have return successors, (21), 16 states have call predecessors, (21), 17 states have call successors, (21) [2022-11-25 15:33:33,026 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 159 states to 159 states and 188 transitions. [2022-11-25 15:33:33,027 INFO L78 Accepts]: Start accepts. Automaton has 159 states and 188 transitions. Word has length 46 [2022-11-25 15:33:33,027 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-25 15:33:33,027 INFO L495 AbstractCegarLoop]: Abstraction has 159 states and 188 transitions. [2022-11-25 15:33:33,027 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.8) internal successors, (39), 4 states have internal predecessors, (39), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2022-11-25 15:33:33,028 INFO L276 IsEmpty]: Start isEmpty. Operand 159 states and 188 transitions. [2022-11-25 15:33:33,028 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 47 [2022-11-25 15:33:33,028 INFO L187 NwaCegarLoop]: Found error trace [2022-11-25 15:33:33,029 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-25 15:33:33,029 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10 [2022-11-25 15:33:33,029 INFO L420 AbstractCegarLoop]: === Iteration 12 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-11-25 15:33:33,029 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-11-25 15:33:33,030 INFO L85 PathProgramCache]: Analyzing trace with hash -1221013089, now seen corresponding path program 1 times [2022-11-25 15:33:33,030 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-11-25 15:33:33,030 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1938709445] [2022-11-25 15:33:33,030 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-11-25 15:33:33,030 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-11-25 15:33:33,055 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-25 15:33:33,172 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2022-11-25 15:33:33,173 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-25 15:33:33,175 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 30 [2022-11-25 15:33:33,176 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-25 15:33:33,177 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 35 [2022-11-25 15:33:33,179 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-11-25 15:33:33,186 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-11-25 15:33:33,186 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-11-25 15:33:33,187 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1938709445] [2022-11-25 15:33:33,187 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1938709445] provided 1 perfect and 0 imperfect interpolant sequences [2022-11-25 15:33:33,187 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-11-25 15:33:33,187 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2022-11-25 15:33:33,187 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1764237111] [2022-11-25 15:33:33,187 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-11-25 15:33:33,189 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2022-11-25 15:33:33,189 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-11-25 15:33:33,190 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2022-11-25 15:33:33,190 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=43, Unknown=0, NotChecked=0, Total=56 [2022-11-25 15:33:33,190 INFO L87 Difference]: Start difference. First operand 159 states and 188 transitions. Second operand has 8 states, 8 states have (on average 4.875) internal successors, (39), 7 states have internal predecessors, (39), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2022-11-25 15:33:33,345 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-11-25 15:33:33,346 INFO L93 Difference]: Finished difference Result 230 states and 275 transitions. [2022-11-25 15:33:33,346 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2022-11-25 15:33:33,347 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 4.875) internal successors, (39), 7 states have internal predecessors, (39), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 46 [2022-11-25 15:33:33,347 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-11-25 15:33:33,348 INFO L225 Difference]: With dead ends: 230 [2022-11-25 15:33:33,348 INFO L226 Difference]: Without dead ends: 0 [2022-11-25 15:33:33,348 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 19 GetRequests, 9 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.1s TimeCoverageRelationStatistics Valid=35, Invalid=97, Unknown=0, NotChecked=0, Total=132 [2022-11-25 15:33:33,349 INFO L413 NwaCegarLoop]: 47 mSDtfsCounter, 64 mSDsluCounter, 202 mSDsCounter, 0 mSdLazyCounter, 113 mSolverCounterSat, 10 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 66 SdHoareTripleChecker+Valid, 249 SdHoareTripleChecker+Invalid, 123 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 10 IncrementalHoareTripleChecker+Valid, 113 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-11-25 15:33:33,349 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [66 Valid, 249 Invalid, 123 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [10 Valid, 113 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-11-25 15:33:33,350 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2022-11-25 15:33:33,350 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2022-11-25 15:33:33,350 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-11-25 15:33:33,351 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2022-11-25 15:33:33,351 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 46 [2022-11-25 15:33:33,351 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-11-25 15:33:33,351 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2022-11-25 15:33:33,351 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 4.875) internal successors, (39), 7 states have internal predecessors, (39), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2022-11-25 15:33:33,351 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2022-11-25 15:33:33,352 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2022-11-25 15:33:33,355 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2022-11-25 15:33:33,355 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable11 [2022-11-25 15:33:33,358 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2022-11-25 15:33:35,263 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 257 263) no Hoare annotation was computed. [2022-11-25 15:33:35,263 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 257 263) the Hoare annotation is: true [2022-11-25 15:33:35,263 INFO L899 garLoopResultBuilder]: For program point L831-1(lines 827 838) no Hoare annotation was computed. [2022-11-25 15:33:35,263 INFO L902 garLoopResultBuilder]: At program point changeMethaneLevelENTRY(lines 827 838) the Hoare annotation is: true [2022-11-25 15:33:35,264 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 827 838) no Hoare annotation was computed. [2022-11-25 15:33:35,264 INFO L902 garLoopResultBuilder]: At program point isMethaneLevelCriticalENTRY(lines 839 847) the Hoare annotation is: true [2022-11-25 15:33:35,264 INFO L899 garLoopResultBuilder]: For program point isMethaneLevelCriticalFINAL(lines 839 847) no Hoare annotation was computed. [2022-11-25 15:33:35,264 INFO L899 garLoopResultBuilder]: For program point isMethaneLevelCriticalEXIT(lines 839 847) no Hoare annotation was computed. [2022-11-25 15:33:35,264 INFO L902 garLoopResultBuilder]: At program point L129(line 129) the Hoare annotation is: true [2022-11-25 15:33:35,264 INFO L899 garLoopResultBuilder]: For program point L129-1(line 129) no Hoare annotation was computed. [2022-11-25 15:33:35,264 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 123 152) no Hoare annotation was computed. [2022-11-25 15:33:35,265 INFO L902 garLoopResultBuilder]: At program point cleanupENTRY(lines 123 152) the Hoare annotation is: true [2022-11-25 15:33:35,265 INFO L902 garLoopResultBuilder]: At program point L148(lines 123 152) the Hoare annotation is: true [2022-11-25 15:33:35,265 INFO L899 garLoopResultBuilder]: For program point L144(line 144) no Hoare annotation was computed. [2022-11-25 15:33:35,265 INFO L899 garLoopResultBuilder]: For program point L137(lines 137 141) no Hoare annotation was computed. [2022-11-25 15:33:35,265 INFO L902 garLoopResultBuilder]: At program point L137-1(lines 137 141) the Hoare annotation is: true [2022-11-25 15:33:35,265 INFO L899 garLoopResultBuilder]: For program point L134(line 134) no Hoare annotation was computed. [2022-11-25 15:33:35,265 INFO L902 garLoopResultBuilder]: At program point L133-2(lines 133 147) the Hoare annotation is: true [2022-11-25 15:33:35,266 INFO L895 garLoopResultBuilder]: At program point L279(line 279) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 0)) .cse0 (and (= ~pumpRunning~0 0) (= |timeShift_processEnvironment_~tmp~2#1| 0) (not (= 2 ~waterLevel~0)) (= |old(~waterLevel~0)| ~waterLevel~0))) (or (not (= |old(~pumpRunning~0)| 1)) .cse0))) [2022-11-25 15:33:35,266 INFO L899 garLoopResultBuilder]: For program point timeShiftFINAL(lines 233 256) no Hoare annotation was computed. [2022-11-25 15:33:35,266 INFO L899 garLoopResultBuilder]: For program point L767(lines 767 787) no Hoare annotation was computed. [2022-11-25 15:33:35,266 INFO L895 garLoopResultBuilder]: At program point L284(line 284) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 1)) .cse0 (= ~pumpRunning~0 1)) (or (not (= |old(~pumpRunning~0)| 0)) .cse0))) [2022-11-25 15:33:35,266 INFO L899 garLoopResultBuilder]: For program point L796(line 796) no Hoare annotation was computed. [2022-11-25 15:33:35,267 INFO L895 garLoopResultBuilder]: At program point L284-1(lines 265 289) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (let ((.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (= ~pumpRunning~0 0)) (.cse4 (= |timeShift_processEnvironment_~tmp~2#1| 0)) (.cse5 (not .cse0)) (.cse1 (= ~pumpRunning~0 1))) (and (or (not (= |old(~pumpRunning~0)| 1)) .cse0 .cse1) (or .cse2 (not (= |old(~waterLevel~0)| 1)) (and .cse3 .cse4 .cse5) .cse0) (let ((.cse6 (= |old(~waterLevel~0)| ~waterLevel~0))) (or .cse2 (and .cse3 .cse4 (not (= 2 ~waterLevel~0)) .cse6 .cse5) .cse0 (and .cse6 .cse1)))))) [2022-11-25 15:33:35,267 INFO L899 garLoopResultBuilder]: For program point L371(lines 371 375) no Hoare annotation was computed. [2022-11-25 15:33:35,267 INFO L899 garLoopResultBuilder]: For program point L371-2(lines 371 375) no Hoare annotation was computed. [2022-11-25 15:33:35,267 INFO L895 garLoopResultBuilder]: At program point L322(lines 317 325) the Hoare annotation is: (let ((.cse0 (= |timeShift_isPumpRunning_#res#1| 1)) (.cse1 (= ~pumpRunning~0 1)) (.cse3 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 1)) (and .cse0 .cse1) .cse2) (or .cse3 .cse2 (and .cse0 (= |old(~waterLevel~0)| ~waterLevel~0) .cse1)) (or .cse3 (not (= |old(~waterLevel~0)| 1)) .cse2))) [2022-11-25 15:33:35,267 INFO L895 garLoopResultBuilder]: At program point L797(lines 792 799) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 0)) .cse0) (or (not (= |old(~pumpRunning~0)| 1)) .cse0))) [2022-11-25 15:33:35,268 INFO L899 garLoopResultBuilder]: For program point L884(lines 884 890) no Hoare annotation was computed. [2022-11-25 15:33:35,268 INFO L899 garLoopResultBuilder]: For program point L244-1(lines 244 250) no Hoare annotation was computed. [2022-11-25 15:33:35,268 INFO L899 garLoopResultBuilder]: For program point L273(lines 273 281) no Hoare annotation was computed. [2022-11-25 15:33:35,268 INFO L899 garLoopResultBuilder]: For program point L269(lines 269 286) no Hoare annotation was computed. [2022-11-25 15:33:35,268 INFO L895 garLoopResultBuilder]: At program point L876(lines 871 879) the Hoare annotation is: (let ((.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (= ~pumpRunning~0 0)) (.cse4 (= |timeShift_processEnvironment_~tmp~2#1| 0)) (.cse0 (= 0 ~systemActive~0)) (.cse1 (= ~pumpRunning~0 1))) (and (or (not (= |old(~pumpRunning~0)| 1)) .cse0 .cse1) (or .cse2 (not (= |old(~waterLevel~0)| 1)) .cse0 (and .cse3 .cse4 (= |timeShift_getWaterLevel_#res#1| 1))) (let ((.cse5 (= |old(~waterLevel~0)| ~waterLevel~0))) (or .cse2 (and .cse3 (not (= 2 |timeShift_getWaterLevel_#res#1|)) .cse4 (not (= 2 ~waterLevel~0)) .cse5) .cse0 (and .cse5 .cse1))))) [2022-11-25 15:33:35,268 INFO L899 garLoopResultBuilder]: For program point L777(lines 777 783) no Hoare annotation was computed. [2022-11-25 15:33:35,268 INFO L899 garLoopResultBuilder]: For program point L773(lines 773 786) no Hoare annotation was computed. [2022-11-25 15:33:35,269 INFO L895 garLoopResultBuilder]: At program point L773-1(lines 758 790) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (let ((.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (= ~pumpRunning~0 0)) (.cse4 (= |timeShift_processEnvironment_~tmp~2#1| 0)) (.cse5 (not .cse0)) (.cse1 (= ~pumpRunning~0 1))) (and (or (not (= |old(~pumpRunning~0)| 1)) .cse0 .cse1) (or .cse2 (not (= |old(~waterLevel~0)| 1)) (and .cse3 .cse4 .cse5) .cse0) (let ((.cse6 (= |old(~waterLevel~0)| ~waterLevel~0))) (or .cse2 (and .cse3 .cse4 (not (= 2 ~waterLevel~0)) .cse6 .cse5) .cse0 (and .cse6 .cse1)))))) [2022-11-25 15:33:35,269 INFO L895 garLoopResultBuilder]: At program point L765(line 765) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (let ((.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (= ~pumpRunning~0 0)) (.cse4 (= |timeShift_processEnvironment_~tmp~2#1| 0)) (.cse5 (not .cse0)) (.cse1 (= ~pumpRunning~0 1))) (and (or (not (= |old(~pumpRunning~0)| 1)) .cse0 .cse1) (or .cse2 (not (= |old(~waterLevel~0)| 1)) (and .cse3 .cse4 .cse5) .cse0) (let ((.cse6 (= |old(~waterLevel~0)| ~waterLevel~0))) (or .cse2 (and .cse3 .cse4 (not (= 2 ~waterLevel~0)) .cse6 .cse5) .cse0 (and .cse6 .cse1)))))) [2022-11-25 15:33:35,269 INFO L899 garLoopResultBuilder]: For program point L765-1(line 765) no Hoare annotation was computed. [2022-11-25 15:33:35,269 INFO L895 garLoopResultBuilder]: At program point L889(lines 880 893) the Hoare annotation is: (let ((.cse0 (= |timeShift_isHighWaterSensorDry_#res#1| 1)) (.cse1 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 (not (= |old(~waterLevel~0)| 1)) .cse2) (let ((.cse3 (= ~pumpRunning~0 0)) (.cse4 (= |old(~waterLevel~0)| ~waterLevel~0))) (or (and .cse0 .cse3 (not (= 2 ~waterLevel~0)) .cse4) .cse1 .cse2 (and .cse3 (= |timeShift_isHighWaterSensorDry_#res#1| 0) .cse4))) (or (not (= |old(~pumpRunning~0)| 1)) .cse2))) [2022-11-25 15:33:35,270 INFO L895 garLoopResultBuilder]: At program point L377(lines 362 380) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (= |timeShift_isHighWaterLevel_~tmp___0~1#1| 0)) (.cse2 (= |timeShift_isHighWaterLevel_#res#1| 0)) (.cse1 (= 0 ~systemActive~0))) (and (or .cse0 (not (= |old(~waterLevel~0)| 1)) .cse1 (and .cse2 .cse3)) (let ((.cse4 (= ~pumpRunning~0 0)) (.cse5 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse6 (not .cse1))) (or .cse0 (and .cse4 (not (= 2 ~waterLevel~0)) .cse5 .cse6) .cse1 (and .cse4 (not .cse3) (= |timeShift_isHighWaterLevel_~tmp~3#1| 0) (= |timeShift_isHighWaterSensorDry_#res#1| 0) .cse5 .cse6 (not .cse2)))) (or (not (= |old(~pumpRunning~0)| 1)) .cse1))) [2022-11-25 15:33:35,270 INFO L895 garLoopResultBuilder]: At program point timeShiftENTRY(lines 233 256) the Hoare annotation is: (let ((.cse1 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse0 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 1)) .cse0 (and .cse1 (= ~pumpRunning~0 1))) (or (not (= |old(~pumpRunning~0)| 0)) (and (= ~pumpRunning~0 0) .cse1) .cse0))) [2022-11-25 15:33:35,270 INFO L899 garLoopResultBuilder]: For program point L237-1(lines 236 255) no Hoare annotation was computed. [2022-11-25 15:33:35,270 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 233 256) no Hoare annotation was computed. [2022-11-25 15:33:35,272 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 796) no Hoare annotation was computed. [2022-11-25 15:33:35,272 INFO L899 garLoopResultBuilder]: For program point L807(lines 807 811) no Hoare annotation was computed. [2022-11-25 15:33:35,272 INFO L895 garLoopResultBuilder]: At program point L295(lines 290 297) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 (and (= |old(~waterLevel~0)| ~waterLevel~0) (= ~pumpRunning~0 1))) (or .cse0 (not (= |old(~waterLevel~0)| 1)) .cse1) (or (not (= |old(~pumpRunning~0)| 1)) .cse1))) [2022-11-25 15:33:35,272 INFO L895 garLoopResultBuilder]: At program point L807-2(lines 803 814) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 1)) .cse0 (= ~pumpRunning~0 1)) (or (not (= |old(~pumpRunning~0)| 0)) .cse0))) [2022-11-25 15:33:35,273 INFO L902 garLoopResultBuilder]: At program point L192(lines 185 194) the Hoare annotation is: true [2022-11-25 15:33:35,273 INFO L902 garLoopResultBuilder]: At program point L217(lines 198 220) the Hoare annotation is: true [2022-11-25 15:33:35,273 INFO L899 garLoopResultBuilder]: For program point L85(lines 85 91) no Hoare annotation was computed. [2022-11-25 15:33:35,273 INFO L899 garLoopResultBuilder]: For program point L85-1(lines 85 91) no Hoare annotation was computed. [2022-11-25 15:33:35,273 INFO L895 garLoopResultBuilder]: At program point L110(lines 65 112) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse2 (= |ULTIMATE.start_main_~tmp~1#1| 1)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 (= ~pumpRunning~0 1)) (and (= ~pumpRunning~0 0) .cse0 (not (= 2 ~waterLevel~0)) .cse1 .cse2 .cse3))) [2022-11-25 15:33:35,274 INFO L895 garLoopResultBuilder]: At program point L77(line 77) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse2 (= |ULTIMATE.start_main_~tmp~1#1| 1)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 (= ~pumpRunning~0 1)) (and (= ~pumpRunning~0 0) .cse0 (not (= 2 ~waterLevel~0)) .cse1 .cse2 .cse3))) [2022-11-25 15:33:35,274 INFO L899 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2022-11-25 15:33:35,274 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startENTRY(line -1) no Hoare annotation was computed. [2022-11-25 15:33:35,274 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2022-11-25 15:33:35,274 INFO L899 garLoopResultBuilder]: For program point L103(lines 103 107) no Hoare annotation was computed. [2022-11-25 15:33:35,275 INFO L895 garLoopResultBuilder]: At program point L103-2(lines 95 108) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse2 (= |ULTIMATE.start_main_~tmp~1#1| 1)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 (= ~pumpRunning~0 1)) (and (= ~pumpRunning~0 0) .cse0 .cse1 .cse2 .cse3))) [2022-11-25 15:33:35,275 INFO L899 garLoopResultBuilder]: For program point L66(lines 65 112) no Hoare annotation was computed. [2022-11-25 15:33:35,275 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2022-11-25 15:33:35,275 INFO L899 garLoopResultBuilder]: For program point L95(lines 95 108) no Hoare annotation was computed. [2022-11-25 15:33:35,276 INFO L895 garLoopResultBuilder]: At program point L925(lines 920 928) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_valid_product_#res#1| 1) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2022-11-25 15:33:35,276 INFO L895 garLoopResultBuilder]: At program point L87(line 87) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse2 (= |ULTIMATE.start_main_~tmp~1#1| 1)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 (= ~pumpRunning~0 1)) (and (= ~pumpRunning~0 0) .cse0 .cse1 .cse2 .cse3))) [2022-11-25 15:33:35,276 INFO L895 garLoopResultBuilder]: At program point L182(lines 178 184) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_valid_product_#res#1| 1) (= |ULTIMATE.start_main_~tmp~1#1| 1) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2022-11-25 15:33:35,276 INFO L895 garLoopResultBuilder]: At program point L917(lines 913 919) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2022-11-25 15:33:35,277 INFO L902 garLoopResultBuilder]: At program point L116(lines 55 120) the Hoare annotation is: true [2022-11-25 15:33:35,277 INFO L899 garLoopResultBuilder]: For program point L75(lines 75 81) no Hoare annotation was computed. [2022-11-25 15:33:35,277 INFO L899 garLoopResultBuilder]: For program point L75-1(lines 75 81) no Hoare annotation was computed. [2022-11-25 15:33:35,277 INFO L899 garLoopResultBuilder]: For program point L67(lines 67 71) no Hoare annotation was computed. [2022-11-25 15:33:35,277 INFO L895 garLoopResultBuilder]: At program point L113(lines 64 114) the Hoare annotation is: false [2022-11-25 15:33:35,277 INFO L899 garLoopResultBuilder]: For program point L208(lines 208 215) no Hoare annotation was computed. [2022-11-25 15:33:35,278 INFO L895 garLoopResultBuilder]: At program point L910(lines 906 912) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2022-11-25 15:33:35,278 INFO L899 garLoopResultBuilder]: For program point L208-2(lines 208 215) no Hoare annotation was computed. [2022-11-25 15:33:35,278 INFO L895 garLoopResultBuilder]: At program point L386(lines 381 388) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse2 (= |ULTIMATE.start_main_~tmp~1#1| 1)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 (= ~pumpRunning~0 1)) (and (= ~pumpRunning~0 0) .cse0 .cse1 .cse2 .cse3))) [2022-11-25 15:33:35,278 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 815 826) no Hoare annotation was computed. [2022-11-25 15:33:35,279 INFO L895 garLoopResultBuilder]: At program point waterRiseENTRY(lines 815 826) the Hoare annotation is: (let ((.cse0 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse1 (= 0 ~systemActive~0))) (and (or (not (= ~pumpRunning~0 1)) .cse0 .cse1) (or (not (= ~pumpRunning~0 0)) .cse0 .cse1 (= |old(~waterLevel~0)| 2)))) [2022-11-25 15:33:35,279 INFO L899 garLoopResultBuilder]: For program point L819-1(lines 815 826) no Hoare annotation was computed. [2022-11-25 15:33:35,283 INFO L445 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-11-25 15:33:35,286 INFO L178 ceAbstractionStarter]: Computing trace abstraction results [2022-11-25 15:33:35,329 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 25.11 03:33:35 BoogieIcfgContainer [2022-11-25 15:33:35,337 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2022-11-25 15:33:35,338 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2022-11-25 15:33:35,338 INFO L271 PluginConnector]: Initializing Witness Printer... [2022-11-25 15:33:35,338 INFO L275 PluginConnector]: Witness Printer initialized [2022-11-25 15:33:35,339 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 25.11 03:33:29" (3/4) ... [2022-11-25 15:33:35,343 INFO L137 WitnessPrinter]: Generating witness for correct program [2022-11-25 15:33:35,350 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2022-11-25 15:33:35,351 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2022-11-25 15:33:35,351 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneLevelCritical [2022-11-25 15:33:35,351 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2022-11-25 15:33:35,351 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2022-11-25 15:33:35,352 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2022-11-25 15:33:35,361 INFO L915 BoogieBacktranslator]: Reduced CFG by removing 21 nodes and edges [2022-11-25 15:33:35,362 INFO L915 BoogieBacktranslator]: Reduced CFG by removing 8 nodes and edges [2022-11-25 15:33:35,362 INFO L915 BoogieBacktranslator]: Reduced CFG by removing 4 nodes and edges [2022-11-25 15:33:35,363 INFO L915 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2022-11-25 15:33:35,363 INFO L915 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2022-11-25 15:33:35,411 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((pumpRunning == 0 && \result == 1) && waterLevel == 1) && !(0 == systemActive) [2022-11-25 15:33:35,412 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((pumpRunning == 0 && \result == 1) && tmp == 1) && waterLevel == 1) && !(0 == systemActive) [2022-11-25 15:33:35,412 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((\result == 1 && splverifierCounter == 0) && tmp == 1) && !(0 == systemActive)) && pumpRunning == 1) || (((((pumpRunning == 0 && \result == 1) && !(2 == waterLevel)) && splverifierCounter == 0) && tmp == 1) && !(0 == systemActive)) [2022-11-25 15:33:35,414 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(\old(pumpRunning) == 1) || 0 == systemActive) || pumpRunning == 1) && (!(\old(pumpRunning) == 0) || 0 == systemActive) [2022-11-25 15:33:35,415 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 1) || 0 == systemActive) || pumpRunning == 1) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || ((pumpRunning == 0 && tmp == 0) && !(0 == systemActive))) || 0 == systemActive)) && (((!(\old(pumpRunning) == 0) || ((((pumpRunning == 0 && tmp == 0) && !(2 == waterLevel)) && \old(waterLevel) == waterLevel) && !(0 == systemActive))) || 0 == systemActive) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) [2022-11-25 15:33:35,416 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((\result == 1 && splverifierCounter == 0) && tmp == 1) && !(0 == systemActive)) && pumpRunning == 1) || ((((pumpRunning == 0 && \result == 1) && splverifierCounter == 0) && tmp == 1) && !(0 == systemActive)) [2022-11-25 15:33:35,417 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 1) || 0 == systemActive) || pumpRunning == 1) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || ((pumpRunning == 0 && tmp == 0) && !(0 == systemActive))) || 0 == systemActive)) && (((!(\old(pumpRunning) == 0) || ((((pumpRunning == 0 && tmp == 0) && !(2 == waterLevel)) && \old(waterLevel) == waterLevel) && !(0 == systemActive))) || 0 == systemActive) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) [2022-11-25 15:33:35,417 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 1) || 0 == systemActive) || pumpRunning == 1) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive) || ((pumpRunning == 0 && tmp == 0) && \result == 1))) && (((!(\old(pumpRunning) == 0) || ((((pumpRunning == 0 && !(2 == \result)) && tmp == 0) && !(2 == waterLevel)) && \old(waterLevel) == waterLevel)) || 0 == systemActive) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) [2022-11-25 15:33:35,418 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((\result == 1 || !(\old(pumpRunning) == 0)) || !(\old(waterLevel) == 1)) || 0 == systemActive) && ((((((\result == 1 && pumpRunning == 0) && !(2 == waterLevel)) && \old(waterLevel) == waterLevel) || !(\old(pumpRunning) == 0)) || 0 == systemActive) || ((pumpRunning == 0 && \result == 0) && \old(waterLevel) == waterLevel))) && (!(\old(pumpRunning) == 1) || 0 == systemActive) [2022-11-25 15:33:35,418 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive) || (\result == 0 && tmp___0 == 0)) && (((!(\old(pumpRunning) == 0) || (((pumpRunning == 0 && !(2 == waterLevel)) && \old(waterLevel) == waterLevel) && !(0 == systemActive))) || 0 == systemActive) || ((((((pumpRunning == 0 && !(tmp___0 == 0)) && tmp == 0) && \result == 0) && \old(waterLevel) == waterLevel) && !(0 == systemActive)) && !(\result == 0)))) && (!(\old(pumpRunning) == 1) || 0 == systemActive) [2022-11-25 15:33:35,418 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 1) || (\result == 1 && pumpRunning == 1)) || 0 == systemActive) && ((!(\old(pumpRunning) == 0) || 0 == systemActive) || ((\result == 1 && \old(waterLevel) == waterLevel) && pumpRunning == 1))) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive) [2022-11-25 15:33:35,419 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 0) || 0 == systemActive) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive)) && (!(\old(pumpRunning) == 1) || 0 == systemActive) [2022-11-25 15:33:35,419 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (!(\old(pumpRunning) == 0) || 0 == systemActive) && (!(\old(pumpRunning) == 1) || 0 == systemActive) [2022-11-25 15:33:35,463 INFO L141 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2cedd4c5-8de0-4009-a8ab-feb16ae007a8/bin/uautomizer-ZsLfNo2U6R/witness.graphml [2022-11-25 15:33:35,463 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2022-11-25 15:33:35,464 INFO L158 Benchmark]: Toolchain (without parser) took 7175.55ms. Allocated memory was 176.2MB in the beginning and 243.3MB in the end (delta: 67.1MB). Free memory was 128.9MB in the beginning and 198.3MB in the end (delta: -69.4MB). There was no memory consumed. Max. memory is 16.1GB. [2022-11-25 15:33:35,464 INFO L158 Benchmark]: CDTParser took 0.29ms. Allocated memory is still 176.2MB. Free memory was 145.6MB in the beginning and 145.4MB in the end (delta: 160.8kB). There was no memory consumed. Max. memory is 16.1GB. [2022-11-25 15:33:35,465 INFO L158 Benchmark]: CACSL2BoogieTranslator took 468.43ms. Allocated memory is still 176.2MB. Free memory was 128.9MB in the beginning and 110.0MB in the end (delta: 18.9MB). Peak memory consumption was 18.9MB. Max. memory is 16.1GB. [2022-11-25 15:33:35,465 INFO L158 Benchmark]: Boogie Procedure Inliner took 89.93ms. Allocated memory is still 176.2MB. Free memory was 110.0MB in the beginning and 107.8MB in the end (delta: 2.2MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2022-11-25 15:33:35,465 INFO L158 Benchmark]: Boogie Preprocessor took 31.49ms. Allocated memory is still 176.2MB. Free memory was 107.8MB in the beginning and 106.4MB in the end (delta: 1.4MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2022-11-25 15:33:35,466 INFO L158 Benchmark]: RCFGBuilder took 538.80ms. Allocated memory is still 176.2MB. Free memory was 106.4MB in the beginning and 91.1MB in the end (delta: 15.3MB). Peak memory consumption was 14.7MB. Max. memory is 16.1GB. [2022-11-25 15:33:35,466 INFO L158 Benchmark]: TraceAbstraction took 5898.89ms. Allocated memory was 176.2MB in the beginning and 243.3MB in the end (delta: 67.1MB). Free memory was 90.5MB in the beginning and 203.5MB in the end (delta: -113.0MB). Peak memory consumption was 91.4MB. Max. memory is 16.1GB. [2022-11-25 15:33:35,467 INFO L158 Benchmark]: Witness Printer took 125.64ms. Allocated memory is still 243.3MB. Free memory was 203.5MB in the beginning and 198.3MB in the end (delta: 5.2MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. [2022-11-25 15:33:35,469 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.29ms. Allocated memory is still 176.2MB. Free memory was 145.6MB in the beginning and 145.4MB in the end (delta: 160.8kB). There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 468.43ms. Allocated memory is still 176.2MB. Free memory was 128.9MB in the beginning and 110.0MB in the end (delta: 18.9MB). Peak memory consumption was 18.9MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 89.93ms. Allocated memory is still 176.2MB. Free memory was 110.0MB in the beginning and 107.8MB in the end (delta: 2.2MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 31.49ms. Allocated memory is still 176.2MB. Free memory was 107.8MB in the beginning and 106.4MB in the end (delta: 1.4MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 538.80ms. Allocated memory is still 176.2MB. Free memory was 106.4MB in the beginning and 91.1MB in the end (delta: 15.3MB). Peak memory consumption was 14.7MB. Max. memory is 16.1GB. * TraceAbstraction took 5898.89ms. Allocated memory was 176.2MB in the beginning and 243.3MB in the end (delta: 67.1MB). Free memory was 90.5MB in the beginning and 203.5MB in the end (delta: -113.0MB). Peak memory consumption was 91.4MB. Max. memory is 16.1GB. * Witness Printer took 125.64ms. Allocated memory is still 243.3MB. Free memory was 203.5MB in the beginning and 198.3MB in the end (delta: 5.2MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 796]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 7 procedures, 77 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 5.8s, OverallIterations: 12, TraceHistogramMax: 1, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 1.4s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 1.9s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 684 SdHoareTripleChecker+Valid, 0.6s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 668 mSDsluCounter, 2600 SdHoareTripleChecker+Invalid, 0.5s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 1653 mSDsCounter, 74 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 478 IncrementalHoareTripleChecker+Invalid, 552 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 74 mSolverCounterUnsat, 947 mSDtfsCounter, 478 mSolverCounterSat, 0.1s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 123 GetRequests, 70 SyntacticMatches, 0 SemanticMatches, 53 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 13 ImplicationChecksByTransitivity, 0.3s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=159occurred in iteration=11, InterpolantAutomatonStates: 61, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.3s AutomataMinimizationTime, 12 MinimizatonAttempts, 54 StatesRemovedByMinimization, 7 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 35 LocationsWithAnnotation, 473 PreInvPairs, 584 NumberOfFragments, 878 HoareAnnotationTreeSize, 473 FomulaSimplifications, 84 FormulaSimplificationTreeSizeReduction, 0.2s HoareSimplificationTime, 35 FomulaSimplificationsInter, 2678 FormulaSimplificationTreeSizeReductionInter, 1.7s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.1s SsaConstructionTime, 0.2s SatisfiabilityAnalysisTime, 1.5s InterpolantComputationTime, 462 NumberOfCodeBlocks, 462 NumberOfCodeBlocksAsserted, 12 NumberOfCheckSat, 450 ConstructedInterpolants, 0 QuantifiedInterpolants, 708 SizeOfPredicates, 0 NumberOfNonLiveVariables, 0 ConjunctsInSsa, 0 ConjunctsInUnsatCore, 12 InterpolantComputations, 12 PerfectInterpolantSequences, 0/0 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 317]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 1) || (\result == 1 && pumpRunning == 1)) || 0 == systemActive) && ((!(\old(pumpRunning) == 0) || 0 == systemActive) || ((\result == 1 && \old(waterLevel) == waterLevel) && pumpRunning == 1))) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive) - InvariantResult [Line: 65]: Loop Invariant Derived loop invariant: ((((\result == 1 && splverifierCounter == 0) && tmp == 1) && !(0 == systemActive)) && pumpRunning == 1) || (((((pumpRunning == 0 && \result == 1) && !(2 == waterLevel)) && splverifierCounter == 0) && tmp == 1) && !(0 == systemActive)) - InvariantResult [Line: 123]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 198]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 265]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 1) || 0 == systemActive) || pumpRunning == 1) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || ((pumpRunning == 0 && tmp == 0) && !(0 == systemActive))) || 0 == systemActive)) && (((!(\old(pumpRunning) == 0) || ((((pumpRunning == 0 && tmp == 0) && !(2 == waterLevel)) && \old(waterLevel) == waterLevel) && !(0 == systemActive))) || 0 == systemActive) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) - InvariantResult [Line: 803]: Loop Invariant Derived loop invariant: ((!(\old(pumpRunning) == 1) || 0 == systemActive) || pumpRunning == 1) && (!(\old(pumpRunning) == 0) || 0 == systemActive) - InvariantResult [Line: 880]: Loop Invariant Derived loop invariant: ((((\result == 1 || !(\old(pumpRunning) == 0)) || !(\old(waterLevel) == 1)) || 0 == systemActive) && ((((((\result == 1 && pumpRunning == 0) && !(2 == waterLevel)) && \old(waterLevel) == waterLevel) || !(\old(pumpRunning) == 0)) || 0 == systemActive) || ((pumpRunning == 0 && \result == 0) && \old(waterLevel) == waterLevel))) && (!(\old(pumpRunning) == 1) || 0 == systemActive) - InvariantResult [Line: 792]: Loop Invariant Derived loop invariant: (!(\old(pumpRunning) == 0) || 0 == systemActive) && (!(\old(pumpRunning) == 1) || 0 == systemActive) - InvariantResult [Line: 913]: Loop Invariant Derived loop invariant: (pumpRunning == 0 && waterLevel == 1) && !(0 == systemActive) - InvariantResult [Line: 185]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 381]: Loop Invariant Derived loop invariant: ((((\result == 1 && splverifierCounter == 0) && tmp == 1) && !(0 == systemActive)) && pumpRunning == 1) || ((((pumpRunning == 0 && \result == 1) && splverifierCounter == 0) && tmp == 1) && !(0 == systemActive)) - InvariantResult [Line: 64]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 362]: Loop Invariant Derived loop invariant: ((((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive) || (\result == 0 && tmp___0 == 0)) && (((!(\old(pumpRunning) == 0) || (((pumpRunning == 0 && !(2 == waterLevel)) && \old(waterLevel) == waterLevel) && !(0 == systemActive))) || 0 == systemActive) || ((((((pumpRunning == 0 && !(tmp___0 == 0)) && tmp == 0) && \result == 0) && \old(waterLevel) == waterLevel) && !(0 == systemActive)) && !(\result == 0)))) && (!(\old(pumpRunning) == 1) || 0 == systemActive) - InvariantResult [Line: 55]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 920]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && \result == 1) && waterLevel == 1) && !(0 == systemActive) - InvariantResult [Line: 758]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 1) || 0 == systemActive) || pumpRunning == 1) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || ((pumpRunning == 0 && tmp == 0) && !(0 == systemActive))) || 0 == systemActive)) && (((!(\old(pumpRunning) == 0) || ((((pumpRunning == 0 && tmp == 0) && !(2 == waterLevel)) && \old(waterLevel) == waterLevel) && !(0 == systemActive))) || 0 == systemActive) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) - InvariantResult [Line: 133]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 290]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 0) || 0 == systemActive) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive)) && (!(\old(pumpRunning) == 1) || 0 == systemActive) - InvariantResult [Line: 906]: Loop Invariant Derived loop invariant: (pumpRunning == 0 && waterLevel == 1) && !(0 == systemActive) - InvariantResult [Line: 871]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 1) || 0 == systemActive) || pumpRunning == 1) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive) || ((pumpRunning == 0 && tmp == 0) && \result == 1))) && (((!(\old(pumpRunning) == 0) || ((((pumpRunning == 0 && !(2 == \result)) && tmp == 0) && !(2 == waterLevel)) && \old(waterLevel) == waterLevel)) || 0 == systemActive) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) - InvariantResult [Line: 178]: Loop Invariant Derived loop invariant: (((pumpRunning == 0 && \result == 1) && tmp == 1) && waterLevel == 1) && !(0 == systemActive) RESULT: Ultimate proved your program to be correct! [2022-11-25 15:33:35,500 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2cedd4c5-8de0-4009-a8ab-feb16ae007a8/bin/uautomizer-ZsLfNo2U6R/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE