./Ultimate.py --spec ../../sv-benchmarks/c/properties/unreach-call.prp --file ../../sv-benchmarks/c/product-lines/minepump_spec3_product34.cil.c --full-output --architecture 32bit -------------------------------------------------------------------------------- Checking for ERROR reachability Using default analysis Version 2329fc70 Calling Ultimate with: /usr/lib/jvm/java-1.11.0-openjdk-amd64/bin/java -Dosgi.configuration.area=/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2f793717-ab40-4522-aeee-ea72a61d165c/bin/uautomizer-uyxdKDjOR8/data/config -Xmx15G -Xms4m -jar /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2f793717-ab40-4522-aeee-ea72a61d165c/bin/uautomizer-uyxdKDjOR8/plugins/org.eclipse.equinox.launcher_1.5.800.v20200727-1323.jar -data @noDefault -ultimatedata /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2f793717-ab40-4522-aeee-ea72a61d165c/bin/uautomizer-uyxdKDjOR8/data -tc /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2f793717-ab40-4522-aeee-ea72a61d165c/bin/uautomizer-uyxdKDjOR8/config/AutomizerReach.xml -i ../../sv-benchmarks/c/product-lines/minepump_spec3_product34.cil.c -s /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2f793717-ab40-4522-aeee-ea72a61d165c/bin/uautomizer-uyxdKDjOR8/config/svcomp-Reach-32bit-Automizer_Default.epf --cacsl2boogietranslator.entry.function main --witnessprinter.witness.directory /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2f793717-ab40-4522-aeee-ea72a61d165c/bin/uautomizer-uyxdKDjOR8 --witnessprinter.witness.filename witness.graphml --witnessprinter.write.witness.besides.input.file false --witnessprinter.graph.data.specification CHECK( init(main()), LTL(G ! call(reach_error())) ) --witnessprinter.graph.data.producer Automizer --witnessprinter.graph.data.architecture 32bit --witnessprinter.graph.data.programhash 750fa47004e8b71818a419cd0705c167dc764081be79a2bed3ff642b9979f0ab --- Real Ultimate output --- [0.001s][warning][os,container] Duplicate cpuset controllers detected. Picking /sys/fs/cgroup/cpuset, skipping /sys/fs/cgroup/cpuset. This is Ultimate 0.2.2-dev-2329fc7 [2022-12-13 11:06:33,819 INFO L177 SettingsManager]: Resetting all preferences to default values... [2022-12-13 11:06:33,821 INFO L181 SettingsManager]: Resetting UltimateCore preferences to default values [2022-12-13 11:06:33,834 INFO L184 SettingsManager]: Ultimate Commandline Interface provides no preferences, ignoring... [2022-12-13 11:06:33,834 INFO L181 SettingsManager]: Resetting Boogie Preprocessor preferences to default values [2022-12-13 11:06:33,835 INFO L181 SettingsManager]: Resetting Boogie Procedure Inliner preferences to default values [2022-12-13 11:06:33,835 INFO L181 SettingsManager]: Resetting Abstract Interpretation preferences to default values [2022-12-13 11:06:33,836 INFO L181 SettingsManager]: Resetting LassoRanker preferences to default values [2022-12-13 11:06:33,837 INFO L181 SettingsManager]: Resetting Reaching Definitions preferences to default values [2022-12-13 11:06:33,838 INFO L181 SettingsManager]: Resetting SyntaxChecker preferences to default values [2022-12-13 11:06:33,838 INFO L181 SettingsManager]: Resetting Sifa preferences to default values [2022-12-13 11:06:33,839 INFO L184 SettingsManager]: Büchi Program Product provides no preferences, ignoring... [2022-12-13 11:06:33,839 INFO L181 SettingsManager]: Resetting LTL2Aut preferences to default values [2022-12-13 11:06:33,840 INFO L181 SettingsManager]: Resetting PEA to Boogie preferences to default values [2022-12-13 11:06:33,841 INFO L181 SettingsManager]: Resetting BlockEncodingV2 preferences to default values [2022-12-13 11:06:33,841 INFO L181 SettingsManager]: Resetting ChcToBoogie preferences to default values [2022-12-13 11:06:33,842 INFO L181 SettingsManager]: Resetting AutomataScriptInterpreter preferences to default values [2022-12-13 11:06:33,843 INFO L181 SettingsManager]: Resetting BuchiAutomizer preferences to default values [2022-12-13 11:06:33,844 INFO L181 SettingsManager]: Resetting CACSL2BoogieTranslator preferences to default values [2022-12-13 11:06:33,845 INFO L181 SettingsManager]: Resetting CodeCheck preferences to default values [2022-12-13 11:06:33,846 INFO L181 SettingsManager]: Resetting InvariantSynthesis preferences to default values [2022-12-13 11:06:33,847 INFO L181 SettingsManager]: Resetting RCFGBuilder preferences to default values [2022-12-13 11:06:33,848 INFO L181 SettingsManager]: Resetting Referee preferences to default values [2022-12-13 11:06:33,848 INFO L181 SettingsManager]: Resetting TraceAbstraction preferences to default values [2022-12-13 11:06:33,850 INFO L184 SettingsManager]: TraceAbstractionConcurrent provides no preferences, ignoring... [2022-12-13 11:06:33,850 INFO L184 SettingsManager]: TraceAbstractionWithAFAs provides no preferences, ignoring... [2022-12-13 11:06:33,851 INFO L181 SettingsManager]: Resetting TreeAutomizer preferences to default values [2022-12-13 11:06:33,851 INFO L181 SettingsManager]: Resetting IcfgToChc preferences to default values [2022-12-13 11:06:33,852 INFO L181 SettingsManager]: Resetting IcfgTransformer preferences to default values [2022-12-13 11:06:33,852 INFO L184 SettingsManager]: ReqToTest provides no preferences, ignoring... [2022-12-13 11:06:33,852 INFO L181 SettingsManager]: Resetting Boogie Printer preferences to default values [2022-12-13 11:06:33,853 INFO L181 SettingsManager]: Resetting ChcSmtPrinter preferences to default values [2022-12-13 11:06:33,853 INFO L181 SettingsManager]: Resetting ReqPrinter preferences to default values [2022-12-13 11:06:33,854 INFO L181 SettingsManager]: Resetting Witness Printer preferences to default values [2022-12-13 11:06:33,854 INFO L184 SettingsManager]: Boogie PL CUP Parser provides no preferences, ignoring... [2022-12-13 11:06:33,855 INFO L181 SettingsManager]: Resetting CDTParser preferences to default values [2022-12-13 11:06:33,855 INFO L184 SettingsManager]: AutomataScriptParser provides no preferences, ignoring... [2022-12-13 11:06:33,855 INFO L184 SettingsManager]: ReqParser provides no preferences, ignoring... [2022-12-13 11:06:33,855 INFO L181 SettingsManager]: Resetting SmtParser preferences to default values [2022-12-13 11:06:33,856 INFO L181 SettingsManager]: Resetting Witness Parser preferences to default values [2022-12-13 11:06:33,856 INFO L188 SettingsManager]: Finished resetting all preferences to default values... [2022-12-13 11:06:33,857 INFO L101 SettingsManager]: Beginning loading settings from /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2f793717-ab40-4522-aeee-ea72a61d165c/bin/uautomizer-uyxdKDjOR8/config/svcomp-Reach-32bit-Automizer_Default.epf [2022-12-13 11:06:33,872 INFO L113 SettingsManager]: Loading preferences was successful [2022-12-13 11:06:33,872 INFO L115 SettingsManager]: Preferences different from defaults after loading the file: [2022-12-13 11:06:33,872 INFO L136 SettingsManager]: Preferences of UltimateCore differ from their defaults: [2022-12-13 11:06:33,872 INFO L138 SettingsManager]: * Log level for class=de.uni_freiburg.informatik.ultimate.lib.smtlibutils.quantifier.QuantifierPusher=ERROR; [2022-12-13 11:06:33,873 INFO L136 SettingsManager]: Preferences of Boogie Procedure Inliner differ from their defaults: [2022-12-13 11:06:33,873 INFO L138 SettingsManager]: * Ignore calls to procedures called more than once=ONLY_FOR_SEQUENTIAL_PROGRAMS [2022-12-13 11:06:33,873 INFO L136 SettingsManager]: Preferences of BlockEncodingV2 differ from their defaults: [2022-12-13 11:06:33,874 INFO L138 SettingsManager]: * Create parallel compositions if possible=false [2022-12-13 11:06:33,874 INFO L138 SettingsManager]: * Use SBE=true [2022-12-13 11:06:33,874 INFO L136 SettingsManager]: Preferences of CACSL2BoogieTranslator differ from their defaults: [2022-12-13 11:06:33,874 INFO L138 SettingsManager]: * sizeof long=4 [2022-12-13 11:06:33,874 INFO L138 SettingsManager]: * Overapproximate operations on floating types=true [2022-12-13 11:06:33,874 INFO L138 SettingsManager]: * sizeof POINTER=4 [2022-12-13 11:06:33,874 INFO L138 SettingsManager]: * Check division by zero=IGNORE [2022-12-13 11:06:33,874 INFO L138 SettingsManager]: * Pointer to allocated memory at dereference=IGNORE [2022-12-13 11:06:33,874 INFO L138 SettingsManager]: * If two pointers are subtracted or compared they have the same base address=IGNORE [2022-12-13 11:06:33,875 INFO L138 SettingsManager]: * Check array bounds for arrays that are off heap=IGNORE [2022-12-13 11:06:33,875 INFO L138 SettingsManager]: * sizeof long double=12 [2022-12-13 11:06:33,875 INFO L138 SettingsManager]: * Check if freed pointer was valid=false [2022-12-13 11:06:33,875 INFO L138 SettingsManager]: * Use constant arrays=true [2022-12-13 11:06:33,875 INFO L138 SettingsManager]: * Pointer base address is valid at dereference=IGNORE [2022-12-13 11:06:33,875 INFO L136 SettingsManager]: Preferences of RCFGBuilder differ from their defaults: [2022-12-13 11:06:33,875 INFO L138 SettingsManager]: * Size of a code block=SequenceOfStatements [2022-12-13 11:06:33,875 INFO L138 SettingsManager]: * SMT solver=External_DefaultMode [2022-12-13 11:06:33,875 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2022-12-13 11:06:33,875 INFO L136 SettingsManager]: Preferences of TraceAbstraction differ from their defaults: [2022-12-13 11:06:33,876 INFO L138 SettingsManager]: * Compute Interpolants along a Counterexample=FPandBP [2022-12-13 11:06:33,876 INFO L138 SettingsManager]: * Positions where we compute the Hoare Annotation=LoopsAndPotentialCycles [2022-12-13 11:06:33,876 INFO L138 SettingsManager]: * Trace refinement strategy=CAMEL [2022-12-13 11:06:33,876 INFO L138 SettingsManager]: * Command for external solver=z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in [2022-12-13 11:06:33,876 INFO L138 SettingsManager]: * Automaton type used in concurrency analysis=PETRI_NET [2022-12-13 11:06:33,876 INFO L138 SettingsManager]: * Compute Hoare Annotation of negated interpolant automaton, abstraction and CFG=true [2022-12-13 11:06:33,876 INFO L138 SettingsManager]: * Order on configurations for Petri net unfoldings=DBO [2022-12-13 11:06:33,876 INFO L138 SettingsManager]: * SMT solver=External_ModelsAndUnsatCoreMode [2022-12-13 11:06:33,876 INFO L138 SettingsManager]: * Independence relation used for large block encoding in concurrent analysis=SYNTACTIC [2022-12-13 11:06:33,876 INFO L138 SettingsManager]: * Looper check in Petri net analysis=SEMANTIC WARNING: An illegal reflective access operation has occurred WARNING: Illegal reflective access by com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 (file:/tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2f793717-ab40-4522-aeee-ea72a61d165c/bin/uautomizer-uyxdKDjOR8/plugins/com.sun.xml.bind_2.2.0.v201505121915.jar) to method java.lang.ClassLoader.defineClass(java.lang.String,byte[],int,int) WARNING: Please consider reporting this to the maintainers of com.sun.xml.bind.v2.runtime.reflect.opt.Injector$1 WARNING: Use --illegal-access=warn to enable warnings of further illegal reflective access operations WARNING: All illegal access operations will be denied in a future release Applying setting for plugin de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator: Entry function -> main Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness directory -> /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2f793717-ab40-4522-aeee-ea72a61d165c/bin/uautomizer-uyxdKDjOR8 Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Witness filename -> witness.graphml Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Write witness besides input file -> false Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data specification -> CHECK( init(main()), LTL(G ! call(reach_error())) ) Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data producer -> Automizer Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data architecture -> 32bit Applying setting for plugin de.uni_freiburg.informatik.ultimate.witnessprinter: Graph data programhash -> 750fa47004e8b71818a419cd0705c167dc764081be79a2bed3ff642b9979f0ab [2022-12-13 11:06:34,057 INFO L75 nceAwareModelManager]: Repository-Root is: /tmp [2022-12-13 11:06:34,076 INFO L261 ainManager$Toolchain]: [Toolchain 1]: Applicable parser(s) successfully (re)initialized [2022-12-13 11:06:34,078 INFO L217 ainManager$Toolchain]: [Toolchain 1]: Toolchain selected. [2022-12-13 11:06:34,079 INFO L271 PluginConnector]: Initializing CDTParser... [2022-12-13 11:06:34,079 INFO L275 PluginConnector]: CDTParser initialized [2022-12-13 11:06:34,080 INFO L432 ainManager$Toolchain]: [Toolchain 1]: Parsing single file: /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2f793717-ab40-4522-aeee-ea72a61d165c/bin/uautomizer-uyxdKDjOR8/../../sv-benchmarks/c/product-lines/minepump_spec3_product34.cil.c [2022-12-13 11:06:36,689 INFO L500 CDTParser]: Created temporary CDT project at NULL [2022-12-13 11:06:36,834 INFO L351 CDTParser]: Found 1 translation units. [2022-12-13 11:06:36,835 INFO L172 CDTParser]: Scanning /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2f793717-ab40-4522-aeee-ea72a61d165c/sv-benchmarks/c/product-lines/minepump_spec3_product34.cil.c [2022-12-13 11:06:36,843 INFO L394 CDTParser]: About to delete temporary CDT project at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2f793717-ab40-4522-aeee-ea72a61d165c/bin/uautomizer-uyxdKDjOR8/data/33a00b983/63e5418fa0bc462cac3b9c04241ee4e1/FLAGda8eefad0 [2022-12-13 11:06:36,854 INFO L402 CDTParser]: Successfully deleted /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2f793717-ab40-4522-aeee-ea72a61d165c/bin/uautomizer-uyxdKDjOR8/data/33a00b983/63e5418fa0bc462cac3b9c04241ee4e1 [2022-12-13 11:06:36,857 INFO L299 ainManager$Toolchain]: ####################### [Toolchain 1] ####################### [2022-12-13 11:06:36,859 INFO L131 ToolchainWalker]: Walking toolchain with 6 elements. [2022-12-13 11:06:36,860 INFO L113 PluginConnector]: ------------------------CACSL2BoogieTranslator---------------------------- [2022-12-13 11:06:36,860 INFO L271 PluginConnector]: Initializing CACSL2BoogieTranslator... [2022-12-13 11:06:36,863 INFO L275 PluginConnector]: CACSL2BoogieTranslator initialized [2022-12-13 11:06:36,863 INFO L185 PluginConnector]: Executing the observer ACSLObjectContainerObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 13.12 11:06:36" (1/1) ... [2022-12-13 11:06:36,864 INFO L205 PluginConnector]: Invalid model from CACSL2BoogieTranslator for observer de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator.ACSLObjectContainerObserver@3965e516 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.12 11:06:36, skipping insertion in model container [2022-12-13 11:06:36,864 INFO L185 PluginConnector]: Executing the observer CACSL2BoogieTranslatorObserver from plugin CACSL2BoogieTranslator for "CDTParser AST 13.12 11:06:36" (1/1) ... [2022-12-13 11:06:36,870 INFO L145 MainTranslator]: Starting translation in SV-COMP mode [2022-12-13 11:06:36,895 INFO L178 MainTranslator]: Built tables and reachable declarations [2022-12-13 11:06:37,067 WARN L237 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2f793717-ab40-4522-aeee-ea72a61d165c/sv-benchmarks/c/product-lines/minepump_spec3_product34.cil.c[16171,16184] [2022-12-13 11:06:37,074 INFO L210 PostProcessor]: Analyzing one entry point: main [2022-12-13 11:06:37,083 INFO L203 MainTranslator]: Completed pre-run [2022-12-13 11:06:37,123 WARN L237 ndardFunctionHandler]: Function reach_error is already implemented but we override the implementation for the call at /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2f793717-ab40-4522-aeee-ea72a61d165c/sv-benchmarks/c/product-lines/minepump_spec3_product34.cil.c[16171,16184] [2022-12-13 11:06:37,127 INFO L210 PostProcessor]: Analyzing one entry point: main [2022-12-13 11:06:37,139 INFO L208 MainTranslator]: Completed translation [2022-12-13 11:06:37,139 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.12 11:06:37 WrapperNode [2022-12-13 11:06:37,139 INFO L132 PluginConnector]: ------------------------ END CACSL2BoogieTranslator---------------------------- [2022-12-13 11:06:37,140 INFO L113 PluginConnector]: ------------------------Boogie Procedure Inliner---------------------------- [2022-12-13 11:06:37,140 INFO L271 PluginConnector]: Initializing Boogie Procedure Inliner... [2022-12-13 11:06:37,140 INFO L275 PluginConnector]: Boogie Procedure Inliner initialized [2022-12-13 11:06:37,146 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.12 11:06:37" (1/1) ... [2022-12-13 11:06:37,156 INFO L185 PluginConnector]: Executing the observer Inliner from plugin Boogie Procedure Inliner for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.12 11:06:37" (1/1) ... [2022-12-13 11:06:37,173 INFO L138 Inliner]: procedures = 53, calls = 95, calls flagged for inlining = 21, calls inlined = 18, statements flattened = 176 [2022-12-13 11:06:37,173 INFO L132 PluginConnector]: ------------------------ END Boogie Procedure Inliner---------------------------- [2022-12-13 11:06:37,173 INFO L113 PluginConnector]: ------------------------Boogie Preprocessor---------------------------- [2022-12-13 11:06:37,174 INFO L271 PluginConnector]: Initializing Boogie Preprocessor... [2022-12-13 11:06:37,174 INFO L275 PluginConnector]: Boogie Preprocessor initialized [2022-12-13 11:06:37,181 INFO L185 PluginConnector]: Executing the observer EnsureBoogieModelObserver from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.12 11:06:37" (1/1) ... [2022-12-13 11:06:37,181 INFO L185 PluginConnector]: Executing the observer TypeChecker from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.12 11:06:37" (1/1) ... [2022-12-13 11:06:37,182 INFO L185 PluginConnector]: Executing the observer ConstExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.12 11:06:37" (1/1) ... [2022-12-13 11:06:37,183 INFO L185 PluginConnector]: Executing the observer StructExpander from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.12 11:06:37" (1/1) ... [2022-12-13 11:06:37,186 INFO L185 PluginConnector]: Executing the observer UnstructureCode from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.12 11:06:37" (1/1) ... [2022-12-13 11:06:37,189 INFO L185 PluginConnector]: Executing the observer FunctionInliner from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.12 11:06:37" (1/1) ... [2022-12-13 11:06:37,190 INFO L185 PluginConnector]: Executing the observer LTLStepAnnotator from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.12 11:06:37" (1/1) ... [2022-12-13 11:06:37,191 INFO L185 PluginConnector]: Executing the observer BoogieSymbolTableConstructor from plugin Boogie Preprocessor for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.12 11:06:37" (1/1) ... [2022-12-13 11:06:37,192 INFO L132 PluginConnector]: ------------------------ END Boogie Preprocessor---------------------------- [2022-12-13 11:06:37,193 INFO L113 PluginConnector]: ------------------------RCFGBuilder---------------------------- [2022-12-13 11:06:37,194 INFO L271 PluginConnector]: Initializing RCFGBuilder... [2022-12-13 11:06:37,194 INFO L275 PluginConnector]: RCFGBuilder initialized [2022-12-13 11:06:37,194 INFO L185 PluginConnector]: Executing the observer RCFGBuilderObserver from plugin RCFGBuilder for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.12 11:06:37" (1/1) ... [2022-12-13 11:06:37,200 INFO L173 SolverBuilder]: Constructing external solver with command: z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 [2022-12-13 11:06:37,210 INFO L189 MonitoredProcess]: No working directory specified, using /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2f793717-ab40-4522-aeee-ea72a61d165c/bin/uautomizer-uyxdKDjOR8/z3 [2022-12-13 11:06:37,221 INFO L229 MonitoredProcess]: Starting monitored process 1 with /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2f793717-ab40-4522-aeee-ea72a61d165c/bin/uautomizer-uyxdKDjOR8/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (exit command is (exit), workingDir is null) [2022-12-13 11:06:37,223 INFO L327 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2f793717-ab40-4522-aeee-ea72a61d165c/bin/uautomizer-uyxdKDjOR8/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Waiting until timeout for monitored process [2022-12-13 11:06:37,255 INFO L130 BoogieDeclarations]: Found specification of procedure #Ultimate.allocInit [2022-12-13 11:06:37,255 INFO L130 BoogieDeclarations]: Found specification of procedure processEnvironment__wrappee__base [2022-12-13 11:06:37,255 INFO L138 BoogieDeclarations]: Found implementation of procedure processEnvironment__wrappee__base [2022-12-13 11:06:37,255 INFO L130 BoogieDeclarations]: Found specification of procedure isMethaneLevelCritical [2022-12-13 11:06:37,255 INFO L138 BoogieDeclarations]: Found implementation of procedure isMethaneLevelCritical [2022-12-13 11:06:37,255 INFO L130 BoogieDeclarations]: Found specification of procedure cleanup [2022-12-13 11:06:37,256 INFO L138 BoogieDeclarations]: Found implementation of procedure cleanup [2022-12-13 11:06:37,256 INFO L130 BoogieDeclarations]: Found specification of procedure timeShift [2022-12-13 11:06:37,256 INFO L138 BoogieDeclarations]: Found implementation of procedure timeShift [2022-12-13 11:06:37,256 INFO L130 BoogieDeclarations]: Found specification of procedure waterRise [2022-12-13 11:06:37,256 INFO L138 BoogieDeclarations]: Found implementation of procedure waterRise [2022-12-13 11:06:37,256 INFO L130 BoogieDeclarations]: Found specification of procedure write~init~int [2022-12-13 11:06:37,256 INFO L130 BoogieDeclarations]: Found specification of procedure changeMethaneLevel [2022-12-13 11:06:37,257 INFO L138 BoogieDeclarations]: Found implementation of procedure changeMethaneLevel [2022-12-13 11:06:37,257 INFO L130 BoogieDeclarations]: Found specification of procedure ULTIMATE.start [2022-12-13 11:06:37,257 INFO L138 BoogieDeclarations]: Found implementation of procedure ULTIMATE.start [2022-12-13 11:06:37,320 INFO L235 CfgBuilder]: Building ICFG [2022-12-13 11:06:37,322 INFO L261 CfgBuilder]: Building CFG for each procedure with an implementation [2022-12-13 11:06:37,528 INFO L276 CfgBuilder]: Performing block encoding [2022-12-13 11:06:37,534 INFO L295 CfgBuilder]: Using the 1 location(s) as analysis (start of procedure ULTIMATE.start) [2022-12-13 11:06:37,534 INFO L300 CfgBuilder]: Removed 2 assume(true) statements. [2022-12-13 11:06:37,536 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 13.12 11:06:37 BoogieIcfgContainer [2022-12-13 11:06:37,536 INFO L132 PluginConnector]: ------------------------ END RCFGBuilder---------------------------- [2022-12-13 11:06:37,538 INFO L113 PluginConnector]: ------------------------TraceAbstraction---------------------------- [2022-12-13 11:06:37,538 INFO L271 PluginConnector]: Initializing TraceAbstraction... [2022-12-13 11:06:37,541 INFO L275 PluginConnector]: TraceAbstraction initialized [2022-12-13 11:06:37,541 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "CDTParser AST 13.12 11:06:36" (1/3) ... [2022-12-13 11:06:37,542 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@1e71caf1 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 13.12 11:06:37, skipping insertion in model container [2022-12-13 11:06:37,542 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.cacsl2boogietranslator AST 13.12 11:06:37" (2/3) ... [2022-12-13 11:06:37,542 INFO L205 PluginConnector]: Invalid model from TraceAbstraction for observer de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction.TraceAbstractionObserver@1e71caf1 and model type de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction AST 13.12 11:06:37, skipping insertion in model container [2022-12-13 11:06:37,542 INFO L185 PluginConnector]: Executing the observer TraceAbstractionObserver from plugin TraceAbstraction for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 13.12 11:06:37" (3/3) ... [2022-12-13 11:06:37,543 INFO L112 eAbstractionObserver]: Analyzing ICFG minepump_spec3_product34.cil.c [2022-12-13 11:06:37,558 INFO L203 ceAbstractionStarter]: Automizer settings: Hoare:true NWA Interpolation:FPandBP Determinization: PREDICATE_ABSTRACTION [2022-12-13 11:06:37,558 INFO L162 ceAbstractionStarter]: Applying trace abstraction to program that has 1 error locations. [2022-12-13 11:06:37,619 INFO L356 AbstractCegarLoop]: ======== Iteration 0 == of CEGAR loop == AllErrorsAtOnce ======== [2022-12-13 11:06:37,624 INFO L357 AbstractCegarLoop]: Settings: SEPARATE_VIOLATION_CHECK=true, mInterprocedural=true, mMaxIterations=1000000, mWatchIteration=1000000, mArtifact=RCFG, mInterpolation=FPandBP, mInterpolantAutomaton=STRAIGHT_LINE, mDumpAutomata=false, mAutomataFormat=ATS_NUMERATE, mDumpPath=., mDeterminiation=PREDICATE_ABSTRACTION, mMinimize=MINIMIZE_SEVPA, mHoare=true, mAutomataTypeConcurrency=PETRI_NET, mHoareTripleChecks=INCREMENTAL, mHoareAnnotationPositions=LoopsAndPotentialCycles, mDumpOnlyReuseAutomata=false, mLimitTraceHistogram=0, mErrorLocTimeLimit=0, mLimitPathProgramCount=0, mCollectInterpolantStatistics=true, mHeuristicEmptinessCheck=false, mHeuristicEmptinessCheckAStarHeuristic=ZERO, mHeuristicEmptinessCheckAStarHeuristicRandomSeed=1337, mHeuristicEmptinessCheckSmtFeatureScoringMethod=DAGSIZE, mSMTFeatureExtraction=false, mSMTFeatureExtractionDumpPath=., mOverrideInterpolantAutomaton=false, mMcrInterpolantMethod=WP, mPorIndependenceSettings=[Lde.uni_freiburg.informatik.ultimate.lib.tracecheckerutils.partialorder.independence.IndependenceSettings;@281c4e90, mLbeIndependenceSettings=[IndependenceType=SYNTACTIC, AbstractionType=NONE, UseConditional=, UseSemiCommutativity=, Solver=, SolverTimeout=] [2022-12-13 11:06:37,624 INFO L358 AbstractCegarLoop]: Starting to check reachability of 1 error locations. [2022-12-13 11:06:37,627 INFO L276 IsEmpty]: Start isEmpty. Operand has 77 states, 60 states have (on average 1.4) internal successors, (84), 66 states have internal predecessors, (84), 9 states have call successors, (9), 6 states have call predecessors, (9), 6 states have return successors, (9), 8 states have call predecessors, (9), 9 states have call successors, (9) [2022-12-13 11:06:37,634 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 26 [2022-12-13 11:06:37,634 INFO L187 NwaCegarLoop]: Found error trace [2022-12-13 11:06:37,635 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-12-13 11:06:37,635 INFO L420 AbstractCegarLoop]: === Iteration 1 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-12-13 11:06:37,639 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-12-13 11:06:37,640 INFO L85 PathProgramCache]: Analyzing trace with hash 77119383, now seen corresponding path program 1 times [2022-12-13 11:06:37,647 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-12-13 11:06:37,647 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [544947958] [2022-12-13 11:06:37,648 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-12-13 11:06:37,648 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-12-13 11:06:37,730 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 11:06:37,777 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 14 [2022-12-13 11:06:37,779 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 11:06:37,783 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-12-13 11:06:37,783 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-12-13 11:06:37,784 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [544947958] [2022-12-13 11:06:37,784 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [544947958] provided 1 perfect and 0 imperfect interpolant sequences [2022-12-13 11:06:37,784 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-12-13 11:06:37,785 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [2] imperfect sequences [] total 2 [2022-12-13 11:06:37,786 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [669577645] [2022-12-13 11:06:37,786 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-12-13 11:06:37,790 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 2 states [2022-12-13 11:06:37,790 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-12-13 11:06:37,811 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 2 interpolants. [2022-12-13 11:06:37,812 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2022-12-13 11:06:37,814 INFO L87 Difference]: Start difference. First operand has 77 states, 60 states have (on average 1.4) internal successors, (84), 66 states have internal predecessors, (84), 9 states have call successors, (9), 6 states have call predecessors, (9), 6 states have return successors, (9), 8 states have call predecessors, (9), 9 states have call successors, (9) Second operand has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-12-13 11:06:37,837 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-12-13 11:06:37,837 INFO L93 Difference]: Finished difference Result 146 states and 199 transitions. [2022-12-13 11:06:37,838 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 2 states. [2022-12-13 11:06:37,839 INFO L78 Accepts]: Start accepts. Automaton has has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 25 [2022-12-13 11:06:37,839 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-12-13 11:06:37,845 INFO L225 Difference]: With dead ends: 146 [2022-12-13 11:06:37,846 INFO L226 Difference]: Without dead ends: 68 [2022-12-13 11:06:37,848 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 4 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 0 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=1, Invalid=1, Unknown=0, NotChecked=0, Total=2 [2022-12-13 11:06:37,850 INFO L413 NwaCegarLoop]: 96 mSDtfsCounter, 0 mSDsluCounter, 0 mSDsCounter, 0 mSdLazyCounter, 0 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 0 SdHoareTripleChecker+Valid, 96 SdHoareTripleChecker+Invalid, 0 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 0 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-12-13 11:06:37,851 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [0 Valid, 96 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 0 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-12-13 11:06:37,863 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 68 states. [2022-12-13 11:06:37,878 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 68 to 68. [2022-12-13 11:06:37,879 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 68 states, 53 states have (on average 1.320754716981132) internal successors, (70), 58 states have internal predecessors, (70), 9 states have call successors, (9), 6 states have call predecessors, (9), 5 states have return successors, (8), 7 states have call predecessors, (8), 8 states have call successors, (8) [2022-12-13 11:06:37,880 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 68 states to 68 states and 87 transitions. [2022-12-13 11:06:37,881 INFO L78 Accepts]: Start accepts. Automaton has 68 states and 87 transitions. Word has length 25 [2022-12-13 11:06:37,881 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-12-13 11:06:37,881 INFO L495 AbstractCegarLoop]: Abstraction has 68 states and 87 transitions. [2022-12-13 11:06:37,881 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 2 states, 2 states have (on average 10.5) internal successors, (21), 2 states have internal predecessors, (21), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-12-13 11:06:37,881 INFO L276 IsEmpty]: Start isEmpty. Operand 68 states and 87 transitions. [2022-12-13 11:06:37,883 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 27 [2022-12-13 11:06:37,883 INFO L187 NwaCegarLoop]: Found error trace [2022-12-13 11:06:37,883 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-12-13 11:06:37,883 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable0 [2022-12-13 11:06:37,883 INFO L420 AbstractCegarLoop]: === Iteration 2 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-12-13 11:06:37,884 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-12-13 11:06:37,884 INFO L85 PathProgramCache]: Analyzing trace with hash -736072085, now seen corresponding path program 1 times [2022-12-13 11:06:37,884 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-12-13 11:06:37,884 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [175791744] [2022-12-13 11:06:37,884 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-12-13 11:06:37,885 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-12-13 11:06:37,902 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 11:06:37,962 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 15 [2022-12-13 11:06:37,964 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 11:06:37,966 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-12-13 11:06:37,967 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-12-13 11:06:37,967 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [175791744] [2022-12-13 11:06:37,967 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [175791744] provided 1 perfect and 0 imperfect interpolant sequences [2022-12-13 11:06:37,967 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-12-13 11:06:37,967 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2022-12-13 11:06:37,967 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1999795144] [2022-12-13 11:06:37,967 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-12-13 11:06:37,968 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2022-12-13 11:06:37,969 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-12-13 11:06:37,969 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2022-12-13 11:06:37,969 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-12-13 11:06:37,970 INFO L87 Difference]: Start difference. First operand 68 states and 87 transitions. Second operand has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 3 states have internal predecessors, (22), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-12-13 11:06:37,982 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-12-13 11:06:37,982 INFO L93 Difference]: Finished difference Result 101 states and 129 transitions. [2022-12-13 11:06:37,983 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2022-12-13 11:06:37,983 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 3 states have internal predecessors, (22), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 26 [2022-12-13 11:06:37,983 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-12-13 11:06:37,984 INFO L225 Difference]: With dead ends: 101 [2022-12-13 11:06:37,984 INFO L226 Difference]: Without dead ends: 59 [2022-12-13 11:06:37,984 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 5 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-12-13 11:06:37,985 INFO L413 NwaCegarLoop]: 74 mSDtfsCounter, 13 mSDsluCounter, 57 mSDsCounter, 0 mSdLazyCounter, 1 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 16 SdHoareTripleChecker+Valid, 131 SdHoareTripleChecker+Invalid, 1 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 1 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-12-13 11:06:37,985 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [16 Valid, 131 Invalid, 1 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 1 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-12-13 11:06:37,986 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 59 states. [2022-12-13 11:06:37,990 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 59 to 59. [2022-12-13 11:06:37,990 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 59 states, 47 states have (on average 1.3404255319148937) internal successors, (63), 52 states have internal predecessors, (63), 6 states have call successors, (6), 5 states have call predecessors, (6), 5 states have return successors, (6), 5 states have call predecessors, (6), 6 states have call successors, (6) [2022-12-13 11:06:37,991 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 59 states to 59 states and 75 transitions. [2022-12-13 11:06:37,991 INFO L78 Accepts]: Start accepts. Automaton has 59 states and 75 transitions. Word has length 26 [2022-12-13 11:06:37,991 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-12-13 11:06:37,991 INFO L495 AbstractCegarLoop]: Abstraction has 59 states and 75 transitions. [2022-12-13 11:06:37,991 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 7.333333333333333) internal successors, (22), 3 states have internal predecessors, (22), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-12-13 11:06:37,991 INFO L276 IsEmpty]: Start isEmpty. Operand 59 states and 75 transitions. [2022-12-13 11:06:37,992 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 32 [2022-12-13 11:06:37,992 INFO L187 NwaCegarLoop]: Found error trace [2022-12-13 11:06:37,992 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-12-13 11:06:37,992 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable1 [2022-12-13 11:06:37,992 INFO L420 AbstractCegarLoop]: === Iteration 3 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-12-13 11:06:37,993 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-12-13 11:06:37,993 INFO L85 PathProgramCache]: Analyzing trace with hash 1036891216, now seen corresponding path program 1 times [2022-12-13 11:06:37,993 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-12-13 11:06:37,993 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [2100092129] [2022-12-13 11:06:37,993 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-12-13 11:06:37,993 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-12-13 11:06:38,007 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 11:06:38,082 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2022-12-13 11:06:38,084 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 11:06:38,086 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-12-13 11:06:38,087 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-12-13 11:06:38,087 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [2100092129] [2022-12-13 11:06:38,087 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [2100092129] provided 1 perfect and 0 imperfect interpolant sequences [2022-12-13 11:06:38,087 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-12-13 11:06:38,087 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2022-12-13 11:06:38,087 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [926463328] [2022-12-13 11:06:38,088 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-12-13 11:06:38,088 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2022-12-13 11:06:38,088 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-12-13 11:06:38,089 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2022-12-13 11:06:38,089 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2022-12-13 11:06:38,089 INFO L87 Difference]: Start difference. First operand 59 states and 75 transitions. Second operand has 5 states, 5 states have (on average 5.6) internal successors, (28), 5 states have internal predecessors, (28), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-12-13 11:06:38,141 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-12-13 11:06:38,141 INFO L93 Difference]: Finished difference Result 111 states and 144 transitions. [2022-12-13 11:06:38,141 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2022-12-13 11:06:38,142 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 5.6) internal successors, (28), 5 states have internal predecessors, (28), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 31 [2022-12-13 11:06:38,142 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-12-13 11:06:38,143 INFO L225 Difference]: With dead ends: 111 [2022-12-13 11:06:38,143 INFO L226 Difference]: Without dead ends: 59 [2022-12-13 11:06:38,143 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2022-12-13 11:06:38,144 INFO L413 NwaCegarLoop]: 68 mSDtfsCounter, 100 mSDsluCounter, 104 mSDsCounter, 0 mSdLazyCounter, 9 mSolverCounterSat, 9 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 100 SdHoareTripleChecker+Valid, 172 SdHoareTripleChecker+Invalid, 18 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 9 IncrementalHoareTripleChecker+Valid, 9 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-12-13 11:06:38,144 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [100 Valid, 172 Invalid, 18 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [9 Valid, 9 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-12-13 11:06:38,145 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 59 states. [2022-12-13 11:06:38,150 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 59 to 59. [2022-12-13 11:06:38,150 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 59 states, 47 states have (on average 1.3191489361702127) internal successors, (62), 52 states have internal predecessors, (62), 6 states have call successors, (6), 5 states have call predecessors, (6), 5 states have return successors, (6), 5 states have call predecessors, (6), 6 states have call successors, (6) [2022-12-13 11:06:38,151 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 59 states to 59 states and 74 transitions. [2022-12-13 11:06:38,151 INFO L78 Accepts]: Start accepts. Automaton has 59 states and 74 transitions. Word has length 31 [2022-12-13 11:06:38,151 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-12-13 11:06:38,152 INFO L495 AbstractCegarLoop]: Abstraction has 59 states and 74 transitions. [2022-12-13 11:06:38,152 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 5.6) internal successors, (28), 5 states have internal predecessors, (28), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-12-13 11:06:38,152 INFO L276 IsEmpty]: Start isEmpty. Operand 59 states and 74 transitions. [2022-12-13 11:06:38,152 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 37 [2022-12-13 11:06:38,152 INFO L187 NwaCegarLoop]: Found error trace [2022-12-13 11:06:38,153 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-12-13 11:06:38,153 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable2 [2022-12-13 11:06:38,153 INFO L420 AbstractCegarLoop]: === Iteration 4 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-12-13 11:06:38,153 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-12-13 11:06:38,153 INFO L85 PathProgramCache]: Analyzing trace with hash -349370363, now seen corresponding path program 1 times [2022-12-13 11:06:38,153 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-12-13 11:06:38,153 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [698745656] [2022-12-13 11:06:38,154 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-12-13 11:06:38,154 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-12-13 11:06:38,163 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 11:06:38,205 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 20 [2022-12-13 11:06:38,207 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 11:06:38,208 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 25 [2022-12-13 11:06:38,210 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 11:06:38,212 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-12-13 11:06:38,212 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-12-13 11:06:38,212 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [698745656] [2022-12-13 11:06:38,212 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [698745656] provided 1 perfect and 0 imperfect interpolant sequences [2022-12-13 11:06:38,212 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-12-13 11:06:38,213 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2022-12-13 11:06:38,213 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1444052794] [2022-12-13 11:06:38,213 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-12-13 11:06:38,213 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2022-12-13 11:06:38,213 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-12-13 11:06:38,214 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2022-12-13 11:06:38,214 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-12-13 11:06:38,214 INFO L87 Difference]: Start difference. First operand 59 states and 74 transitions. Second operand has 3 states, 3 states have (on average 10.333333333333334) internal successors, (31), 3 states have internal predecessors, (31), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2022-12-13 11:06:38,247 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-12-13 11:06:38,247 INFO L93 Difference]: Finished difference Result 152 states and 195 transitions. [2022-12-13 11:06:38,247 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2022-12-13 11:06:38,247 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 10.333333333333334) internal successors, (31), 3 states have internal predecessors, (31), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 36 [2022-12-13 11:06:38,248 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-12-13 11:06:38,248 INFO L225 Difference]: With dead ends: 152 [2022-12-13 11:06:38,248 INFO L226 Difference]: Without dead ends: 100 [2022-12-13 11:06:38,249 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-12-13 11:06:38,250 INFO L413 NwaCegarLoop]: 94 mSDtfsCounter, 47 mSDsluCounter, 52 mSDsCounter, 0 mSdLazyCounter, 7 mSolverCounterSat, 3 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 47 SdHoareTripleChecker+Valid, 146 SdHoareTripleChecker+Invalid, 10 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 3 IncrementalHoareTripleChecker+Valid, 7 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-12-13 11:06:38,250 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [47 Valid, 146 Invalid, 10 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [3 Valid, 7 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-12-13 11:06:38,251 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 100 states. [2022-12-13 11:06:38,261 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 100 to 98. [2022-12-13 11:06:38,262 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 98 states, 77 states have (on average 1.3116883116883118) internal successors, (101), 83 states have internal predecessors, (101), 10 states have call successors, (10), 10 states have call predecessors, (10), 10 states have return successors, (12), 10 states have call predecessors, (12), 10 states have call successors, (12) [2022-12-13 11:06:38,263 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 98 states to 98 states and 123 transitions. [2022-12-13 11:06:38,263 INFO L78 Accepts]: Start accepts. Automaton has 98 states and 123 transitions. Word has length 36 [2022-12-13 11:06:38,263 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-12-13 11:06:38,263 INFO L495 AbstractCegarLoop]: Abstraction has 98 states and 123 transitions. [2022-12-13 11:06:38,263 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 10.333333333333334) internal successors, (31), 3 states have internal predecessors, (31), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2022-12-13 11:06:38,263 INFO L276 IsEmpty]: Start isEmpty. Operand 98 states and 123 transitions. [2022-12-13 11:06:38,264 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 41 [2022-12-13 11:06:38,264 INFO L187 NwaCegarLoop]: Found error trace [2022-12-13 11:06:38,264 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-12-13 11:06:38,264 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable3 [2022-12-13 11:06:38,264 INFO L420 AbstractCegarLoop]: === Iteration 5 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-12-13 11:06:38,265 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-12-13 11:06:38,265 INFO L85 PathProgramCache]: Analyzing trace with hash 2107801392, now seen corresponding path program 1 times [2022-12-13 11:06:38,265 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-12-13 11:06:38,265 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [13745199] [2022-12-13 11:06:38,265 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-12-13 11:06:38,266 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-12-13 11:06:38,276 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 11:06:38,326 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 29 [2022-12-13 11:06:38,328 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 11:06:38,329 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-12-13 11:06:38,329 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-12-13 11:06:38,329 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [13745199] [2022-12-13 11:06:38,329 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [13745199] provided 1 perfect and 0 imperfect interpolant sequences [2022-12-13 11:06:38,329 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-12-13 11:06:38,329 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2022-12-13 11:06:38,330 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1341228154] [2022-12-13 11:06:38,330 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-12-13 11:06:38,330 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2022-12-13 11:06:38,330 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-12-13 11:06:38,331 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2022-12-13 11:06:38,331 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2022-12-13 11:06:38,331 INFO L87 Difference]: Start difference. First operand 98 states and 123 transitions. Second operand has 5 states, 5 states have (on average 7.4) internal successors, (37), 5 states have internal predecessors, (37), 2 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-12-13 11:06:38,377 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-12-13 11:06:38,377 INFO L93 Difference]: Finished difference Result 209 states and 266 transitions. [2022-12-13 11:06:38,378 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 6 states. [2022-12-13 11:06:38,378 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.4) internal successors, (37), 5 states have internal predecessors, (37), 2 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 40 [2022-12-13 11:06:38,378 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-12-13 11:06:38,379 INFO L225 Difference]: With dead ends: 209 [2022-12-13 11:06:38,380 INFO L226 Difference]: Without dead ends: 118 [2022-12-13 11:06:38,380 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 9 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2022-12-13 11:06:38,381 INFO L413 NwaCegarLoop]: 103 mSDtfsCounter, 50 mSDsluCounter, 248 mSDsCounter, 0 mSdLazyCounter, 13 mSolverCounterSat, 7 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 52 SdHoareTripleChecker+Valid, 351 SdHoareTripleChecker+Invalid, 20 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 7 IncrementalHoareTripleChecker+Valid, 13 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-12-13 11:06:38,381 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [52 Valid, 351 Invalid, 20 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [7 Valid, 13 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-12-13 11:06:38,382 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 118 states. [2022-12-13 11:06:38,391 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 118 to 101. [2022-12-13 11:06:38,391 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 101 states, 80 states have (on average 1.3) internal successors, (104), 86 states have internal predecessors, (104), 10 states have call successors, (10), 10 states have call predecessors, (10), 10 states have return successors, (12), 10 states have call predecessors, (12), 10 states have call successors, (12) [2022-12-13 11:06:38,392 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 101 states to 101 states and 126 transitions. [2022-12-13 11:06:38,392 INFO L78 Accepts]: Start accepts. Automaton has 101 states and 126 transitions. Word has length 40 [2022-12-13 11:06:38,393 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-12-13 11:06:38,393 INFO L495 AbstractCegarLoop]: Abstraction has 101 states and 126 transitions. [2022-12-13 11:06:38,393 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.4) internal successors, (37), 5 states have internal predecessors, (37), 2 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-12-13 11:06:38,393 INFO L276 IsEmpty]: Start isEmpty. Operand 101 states and 126 transitions. [2022-12-13 11:06:38,394 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 41 [2022-12-13 11:06:38,394 INFO L187 NwaCegarLoop]: Found error trace [2022-12-13 11:06:38,394 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-12-13 11:06:38,394 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable4 [2022-12-13 11:06:38,394 INFO L420 AbstractCegarLoop]: === Iteration 6 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-12-13 11:06:38,395 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-12-13 11:06:38,395 INFO L85 PathProgramCache]: Analyzing trace with hash 113656686, now seen corresponding path program 1 times [2022-12-13 11:06:38,395 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-12-13 11:06:38,395 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [349314696] [2022-12-13 11:06:38,395 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-12-13 11:06:38,396 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-12-13 11:06:38,405 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 11:06:38,450 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 29 [2022-12-13 11:06:38,452 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 11:06:38,453 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-12-13 11:06:38,453 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-12-13 11:06:38,454 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [349314696] [2022-12-13 11:06:38,454 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [349314696] provided 1 perfect and 0 imperfect interpolant sequences [2022-12-13 11:06:38,454 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-12-13 11:06:38,454 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [4] imperfect sequences [] total 4 [2022-12-13 11:06:38,454 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1917765102] [2022-12-13 11:06:38,454 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-12-13 11:06:38,455 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 4 states [2022-12-13 11:06:38,455 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-12-13 11:06:38,455 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 4 interpolants. [2022-12-13 11:06:38,455 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=5, Invalid=7, Unknown=0, NotChecked=0, Total=12 [2022-12-13 11:06:38,456 INFO L87 Difference]: Start difference. First operand 101 states and 126 transitions. Second operand has 4 states, 4 states have (on average 9.25) internal successors, (37), 4 states have internal predecessors, (37), 2 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-12-13 11:06:38,484 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-12-13 11:06:38,484 INFO L93 Difference]: Finished difference Result 215 states and 275 transitions. [2022-12-13 11:06:38,484 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 4 states. [2022-12-13 11:06:38,484 INFO L78 Accepts]: Start accepts. Automaton has has 4 states, 4 states have (on average 9.25) internal successors, (37), 4 states have internal predecessors, (37), 2 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 40 [2022-12-13 11:06:38,485 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-12-13 11:06:38,485 INFO L225 Difference]: With dead ends: 215 [2022-12-13 11:06:38,485 INFO L226 Difference]: Without dead ends: 121 [2022-12-13 11:06:38,486 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 7 GetRequests, 4 SyntacticMatches, 0 SemanticMatches, 3 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=9, Invalid=11, Unknown=0, NotChecked=0, Total=20 [2022-12-13 11:06:38,487 INFO L413 NwaCegarLoop]: 90 mSDtfsCounter, 37 mSDsluCounter, 144 mSDsCounter, 0 mSdLazyCounter, 9 mSolverCounterSat, 4 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 37 SdHoareTripleChecker+Valid, 234 SdHoareTripleChecker+Invalid, 13 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 4 IncrementalHoareTripleChecker+Valid, 9 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-12-13 11:06:38,487 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [37 Valid, 234 Invalid, 13 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [4 Valid, 9 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-12-13 11:06:38,488 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 121 states. [2022-12-13 11:06:38,496 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 121 to 103. [2022-12-13 11:06:38,497 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 103 states, 82 states have (on average 1.2926829268292683) internal successors, (106), 88 states have internal predecessors, (106), 10 states have call successors, (10), 10 states have call predecessors, (10), 10 states have return successors, (12), 10 states have call predecessors, (12), 10 states have call successors, (12) [2022-12-13 11:06:38,497 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 103 states to 103 states and 128 transitions. [2022-12-13 11:06:38,498 INFO L78 Accepts]: Start accepts. Automaton has 103 states and 128 transitions. Word has length 40 [2022-12-13 11:06:38,498 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-12-13 11:06:38,498 INFO L495 AbstractCegarLoop]: Abstraction has 103 states and 128 transitions. [2022-12-13 11:06:38,498 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 4 states, 4 states have (on average 9.25) internal successors, (37), 4 states have internal predecessors, (37), 2 states have call successors, (2), 1 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-12-13 11:06:38,498 INFO L276 IsEmpty]: Start isEmpty. Operand 103 states and 128 transitions. [2022-12-13 11:06:38,499 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 41 [2022-12-13 11:06:38,499 INFO L187 NwaCegarLoop]: Found error trace [2022-12-13 11:06:38,499 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-12-13 11:06:38,499 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable5 [2022-12-13 11:06:38,499 INFO L420 AbstractCegarLoop]: === Iteration 7 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-12-13 11:06:38,500 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-12-13 11:06:38,500 INFO L85 PathProgramCache]: Analyzing trace with hash -703991764, now seen corresponding path program 1 times [2022-12-13 11:06:38,500 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-12-13 11:06:38,500 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [669261995] [2022-12-13 11:06:38,500 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-12-13 11:06:38,500 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-12-13 11:06:38,508 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 11:06:38,558 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 29 [2022-12-13 11:06:38,559 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 11:06:38,561 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-12-13 11:06:38,562 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-12-13 11:06:38,562 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [669261995] [2022-12-13 11:06:38,562 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [669261995] provided 1 perfect and 0 imperfect interpolant sequences [2022-12-13 11:06:38,562 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-12-13 11:06:38,562 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [3] imperfect sequences [] total 3 [2022-12-13 11:06:38,562 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1538214690] [2022-12-13 11:06:38,563 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-12-13 11:06:38,563 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 3 states [2022-12-13 11:06:38,563 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-12-13 11:06:38,564 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 3 interpolants. [2022-12-13 11:06:38,564 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-12-13 11:06:38,564 INFO L87 Difference]: Start difference. First operand 103 states and 128 transitions. Second operand has 3 states, 3 states have (on average 12.333333333333334) internal successors, (37), 3 states have internal predecessors, (37), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-12-13 11:06:38,592 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-12-13 11:06:38,592 INFO L93 Difference]: Finished difference Result 245 states and 308 transitions. [2022-12-13 11:06:38,592 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 3 states. [2022-12-13 11:06:38,592 INFO L78 Accepts]: Start accepts. Automaton has has 3 states, 3 states have (on average 12.333333333333334) internal successors, (37), 3 states have internal predecessors, (37), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) Word has length 40 [2022-12-13 11:06:38,592 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-12-13 11:06:38,593 INFO L225 Difference]: With dead ends: 245 [2022-12-13 11:06:38,593 INFO L226 Difference]: Without dead ends: 149 [2022-12-13 11:06:38,594 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 6 GetRequests, 5 SyntacticMatches, 0 SemanticMatches, 1 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=3, Invalid=3, Unknown=0, NotChecked=0, Total=6 [2022-12-13 11:06:38,595 INFO L413 NwaCegarLoop]: 76 mSDtfsCounter, 39 mSDsluCounter, 61 mSDsCounter, 0 mSdLazyCounter, 10 mSolverCounterSat, 1 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 39 SdHoareTripleChecker+Valid, 137 SdHoareTripleChecker+Invalid, 11 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 1 IncrementalHoareTripleChecker+Valid, 10 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-12-13 11:06:38,595 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [39 Valid, 137 Invalid, 11 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [1 Valid, 10 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-12-13 11:06:38,596 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 149 states. [2022-12-13 11:06:38,608 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 149 to 147. [2022-12-13 11:06:38,608 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 147 states, 117 states have (on average 1.2735042735042734) internal successors, (149), 124 states have internal predecessors, (149), 15 states have call successors, (15), 15 states have call predecessors, (15), 14 states have return successors, (17), 14 states have call predecessors, (17), 15 states have call successors, (17) [2022-12-13 11:06:38,609 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 147 states to 147 states and 181 transitions. [2022-12-13 11:06:38,609 INFO L78 Accepts]: Start accepts. Automaton has 147 states and 181 transitions. Word has length 40 [2022-12-13 11:06:38,609 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-12-13 11:06:38,609 INFO L495 AbstractCegarLoop]: Abstraction has 147 states and 181 transitions. [2022-12-13 11:06:38,609 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 3 states, 3 states have (on average 12.333333333333334) internal successors, (37), 3 states have internal predecessors, (37), 2 states have call successors, (2), 2 states have call predecessors, (2), 1 states have return successors, (1), 1 states have call predecessors, (1), 1 states have call successors, (1) [2022-12-13 11:06:38,609 INFO L276 IsEmpty]: Start isEmpty. Operand 147 states and 181 transitions. [2022-12-13 11:06:38,610 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 43 [2022-12-13 11:06:38,610 INFO L187 NwaCegarLoop]: Found error trace [2022-12-13 11:06:38,610 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-12-13 11:06:38,610 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable6 [2022-12-13 11:06:38,611 INFO L420 AbstractCegarLoop]: === Iteration 8 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-12-13 11:06:38,611 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-12-13 11:06:38,611 INFO L85 PathProgramCache]: Analyzing trace with hash -430431235, now seen corresponding path program 1 times [2022-12-13 11:06:38,611 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-12-13 11:06:38,611 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1201206226] [2022-12-13 11:06:38,611 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-12-13 11:06:38,611 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-12-13 11:06:38,619 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 11:06:38,681 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 26 [2022-12-13 11:06:38,682 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 11:06:38,684 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 31 [2022-12-13 11:06:38,686 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 11:06:38,689 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-12-13 11:06:38,689 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-12-13 11:06:38,689 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1201206226] [2022-12-13 11:06:38,689 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1201206226] provided 1 perfect and 0 imperfect interpolant sequences [2022-12-13 11:06:38,689 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-12-13 11:06:38,689 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2022-12-13 11:06:38,690 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [871355876] [2022-12-13 11:06:38,690 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-12-13 11:06:38,690 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2022-12-13 11:06:38,690 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-12-13 11:06:38,691 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2022-12-13 11:06:38,691 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2022-12-13 11:06:38,691 INFO L87 Difference]: Start difference. First operand 147 states and 181 transitions. Second operand has 5 states, 5 states have (on average 7.4) internal successors, (37), 5 states have internal predecessors, (37), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2022-12-13 11:06:38,738 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-12-13 11:06:38,738 INFO L93 Difference]: Finished difference Result 288 states and 356 transitions. [2022-12-13 11:06:38,739 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2022-12-13 11:06:38,739 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.4) internal successors, (37), 5 states have internal predecessors, (37), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) Word has length 42 [2022-12-13 11:06:38,739 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-12-13 11:06:38,741 INFO L225 Difference]: With dead ends: 288 [2022-12-13 11:06:38,741 INFO L226 Difference]: Without dead ends: 148 [2022-12-13 11:06:38,742 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 11 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2022-12-13 11:06:38,743 INFO L413 NwaCegarLoop]: 77 mSDtfsCounter, 30 mSDsluCounter, 210 mSDsCounter, 0 mSdLazyCounter, 23 mSolverCounterSat, 0 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 30 SdHoareTripleChecker+Valid, 287 SdHoareTripleChecker+Invalid, 23 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Valid, 23 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-12-13 11:06:38,743 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [30 Valid, 287 Invalid, 23 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [0 Valid, 23 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-12-13 11:06:38,744 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 148 states. [2022-12-13 11:06:38,754 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 148 to 145. [2022-12-13 11:06:38,755 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 145 states, 115 states have (on average 1.2608695652173914) internal successors, (145), 122 states have internal predecessors, (145), 15 states have call successors, (15), 15 states have call predecessors, (15), 14 states have return successors, (17), 14 states have call predecessors, (17), 15 states have call successors, (17) [2022-12-13 11:06:38,755 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 145 states to 145 states and 177 transitions. [2022-12-13 11:06:38,755 INFO L78 Accepts]: Start accepts. Automaton has 145 states and 177 transitions. Word has length 42 [2022-12-13 11:06:38,756 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-12-13 11:06:38,756 INFO L495 AbstractCegarLoop]: Abstraction has 145 states and 177 transitions. [2022-12-13 11:06:38,756 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.4) internal successors, (37), 5 states have internal predecessors, (37), 1 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 1 states have call predecessors, (2), 1 states have call successors, (2) [2022-12-13 11:06:38,756 INFO L276 IsEmpty]: Start isEmpty. Operand 145 states and 177 transitions. [2022-12-13 11:06:38,757 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 45 [2022-12-13 11:06:38,757 INFO L187 NwaCegarLoop]: Found error trace [2022-12-13 11:06:38,757 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-12-13 11:06:38,757 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable7 [2022-12-13 11:06:38,757 INFO L420 AbstractCegarLoop]: === Iteration 9 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-12-13 11:06:38,757 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-12-13 11:06:38,757 INFO L85 PathProgramCache]: Analyzing trace with hash -994693806, now seen corresponding path program 1 times [2022-12-13 11:06:38,758 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-12-13 11:06:38,758 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1818404681] [2022-12-13 11:06:38,758 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-12-13 11:06:38,758 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-12-13 11:06:38,766 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 11:06:38,810 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2022-12-13 11:06:38,811 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 11:06:38,813 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 33 [2022-12-13 11:06:38,814 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 11:06:38,817 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-12-13 11:06:38,817 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-12-13 11:06:38,817 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1818404681] [2022-12-13 11:06:38,817 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1818404681] provided 1 perfect and 0 imperfect interpolant sequences [2022-12-13 11:06:38,817 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-12-13 11:06:38,817 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2022-12-13 11:06:38,818 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1934683596] [2022-12-13 11:06:38,818 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-12-13 11:06:38,818 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2022-12-13 11:06:38,818 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-12-13 11:06:38,818 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2022-12-13 11:06:38,819 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2022-12-13 11:06:38,819 INFO L87 Difference]: Start difference. First operand 145 states and 177 transitions. Second operand has 6 states, 6 states have (on average 6.5) internal successors, (39), 5 states have internal predecessors, (39), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2022-12-13 11:06:38,969 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-12-13 11:06:38,969 INFO L93 Difference]: Finished difference Result 267 states and 332 transitions. [2022-12-13 11:06:38,970 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 9 states. [2022-12-13 11:06:38,970 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 6.5) internal successors, (39), 5 states have internal predecessors, (39), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) Word has length 44 [2022-12-13 11:06:38,970 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-12-13 11:06:38,971 INFO L225 Difference]: With dead ends: 267 [2022-12-13 11:06:38,971 INFO L226 Difference]: Without dead ends: 104 [2022-12-13 11:06:38,972 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 15 GetRequests, 6 SyntacticMatches, 0 SemanticMatches, 9 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 7 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=40, Invalid=70, Unknown=0, NotChecked=0, Total=110 [2022-12-13 11:06:38,972 INFO L413 NwaCegarLoop]: 99 mSDtfsCounter, 108 mSDsluCounter, 285 mSDsCounter, 0 mSdLazyCounter, 141 mSolverCounterSat, 13 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 112 SdHoareTripleChecker+Valid, 384 SdHoareTripleChecker+Invalid, 154 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 13 IncrementalHoareTripleChecker+Valid, 141 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-12-13 11:06:38,972 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [112 Valid, 384 Invalid, 154 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [13 Valid, 141 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-12-13 11:06:38,973 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 104 states. [2022-12-13 11:06:38,980 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 104 to 101. [2022-12-13 11:06:38,981 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 101 states, 80 states have (on average 1.2125) internal successors, (97), 85 states have internal predecessors, (97), 10 states have call successors, (10), 10 states have call predecessors, (10), 10 states have return successors, (11), 9 states have call predecessors, (11), 10 states have call successors, (11) [2022-12-13 11:06:38,981 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 101 states to 101 states and 118 transitions. [2022-12-13 11:06:38,981 INFO L78 Accepts]: Start accepts. Automaton has 101 states and 118 transitions. Word has length 44 [2022-12-13 11:06:38,982 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-12-13 11:06:38,982 INFO L495 AbstractCegarLoop]: Abstraction has 101 states and 118 transitions. [2022-12-13 11:06:38,982 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 6.5) internal successors, (39), 5 states have internal predecessors, (39), 2 states have call successors, (3), 2 states have call predecessors, (3), 1 states have return successors, (2), 2 states have call predecessors, (2), 2 states have call successors, (2) [2022-12-13 11:06:38,982 INFO L276 IsEmpty]: Start isEmpty. Operand 101 states and 118 transitions. [2022-12-13 11:06:38,983 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 47 [2022-12-13 11:06:38,983 INFO L187 NwaCegarLoop]: Found error trace [2022-12-13 11:06:38,983 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-12-13 11:06:38,983 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable8 [2022-12-13 11:06:38,983 INFO L420 AbstractCegarLoop]: === Iteration 10 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-12-13 11:06:38,983 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-12-13 11:06:38,983 INFO L85 PathProgramCache]: Analyzing trace with hash -622219357, now seen corresponding path program 1 times [2022-12-13 11:06:38,984 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-12-13 11:06:38,984 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1107680154] [2022-12-13 11:06:38,984 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-12-13 11:06:38,984 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-12-13 11:06:38,993 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 11:06:39,050 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2022-12-13 11:06:39,052 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 11:06:39,053 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 30 [2022-12-13 11:06:39,054 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 11:06:39,056 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 35 [2022-12-13 11:06:39,057 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 11:06:39,059 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-12-13 11:06:39,059 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-12-13 11:06:39,059 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1107680154] [2022-12-13 11:06:39,059 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1107680154] provided 1 perfect and 0 imperfect interpolant sequences [2022-12-13 11:06:39,060 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-12-13 11:06:39,060 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [6] imperfect sequences [] total 6 [2022-12-13 11:06:39,060 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [2104278522] [2022-12-13 11:06:39,060 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-12-13 11:06:39,060 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 6 states [2022-12-13 11:06:39,060 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-12-13 11:06:39,061 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 6 interpolants. [2022-12-13 11:06:39,061 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=9, Invalid=21, Unknown=0, NotChecked=0, Total=30 [2022-12-13 11:06:39,061 INFO L87 Difference]: Start difference. First operand 101 states and 118 transitions. Second operand has 6 states, 6 states have (on average 6.5) internal successors, (39), 5 states have internal predecessors, (39), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2022-12-13 11:06:39,186 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-12-13 11:06:39,186 INFO L93 Difference]: Finished difference Result 206 states and 248 transitions. [2022-12-13 11:06:39,186 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2022-12-13 11:06:39,186 INFO L78 Accepts]: Start accepts. Automaton has has 6 states, 6 states have (on average 6.5) internal successors, (39), 5 states have internal predecessors, (39), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 46 [2022-12-13 11:06:39,187 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-12-13 11:06:39,188 INFO L225 Difference]: With dead ends: 206 [2022-12-13 11:06:39,188 INFO L226 Difference]: Without dead ends: 154 [2022-12-13 11:06:39,189 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 17 GetRequests, 9 SyntacticMatches, 0 SemanticMatches, 8 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=32, Invalid=58, Unknown=0, NotChecked=0, Total=90 [2022-12-13 11:06:39,189 INFO L413 NwaCegarLoop]: 56 mSDtfsCounter, 110 mSDsluCounter, 173 mSDsCounter, 0 mSdLazyCounter, 96 mSolverCounterSat, 17 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 113 SdHoareTripleChecker+Valid, 229 SdHoareTripleChecker+Invalid, 113 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 17 IncrementalHoareTripleChecker+Valid, 96 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-12-13 11:06:39,190 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [113 Valid, 229 Invalid, 113 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [17 Valid, 96 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-12-13 11:06:39,190 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 154 states. [2022-12-13 11:06:39,210 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 154 to 145. [2022-12-13 11:06:39,211 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 145 states, 114 states have (on average 1.2280701754385965) internal successors, (140), 121 states have internal predecessors, (140), 15 states have call successors, (15), 15 states have call predecessors, (15), 15 states have return successors, (18), 14 states have call predecessors, (18), 15 states have call successors, (18) [2022-12-13 11:06:39,212 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 145 states to 145 states and 173 transitions. [2022-12-13 11:06:39,212 INFO L78 Accepts]: Start accepts. Automaton has 145 states and 173 transitions. Word has length 46 [2022-12-13 11:06:39,212 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-12-13 11:06:39,212 INFO L495 AbstractCegarLoop]: Abstraction has 145 states and 173 transitions. [2022-12-13 11:06:39,212 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 6 states, 6 states have (on average 6.5) internal successors, (39), 5 states have internal predecessors, (39), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2022-12-13 11:06:39,212 INFO L276 IsEmpty]: Start isEmpty. Operand 145 states and 173 transitions. [2022-12-13 11:06:39,213 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 47 [2022-12-13 11:06:39,213 INFO L187 NwaCegarLoop]: Found error trace [2022-12-13 11:06:39,213 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-12-13 11:06:39,213 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable9 [2022-12-13 11:06:39,214 INFO L420 AbstractCegarLoop]: === Iteration 11 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-12-13 11:06:39,214 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-12-13 11:06:39,214 INFO L85 PathProgramCache]: Analyzing trace with hash -403364639, now seen corresponding path program 1 times [2022-12-13 11:06:39,214 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-12-13 11:06:39,214 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [932961978] [2022-12-13 11:06:39,214 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-12-13 11:06:39,215 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-12-13 11:06:39,221 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 11:06:39,254 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2022-12-13 11:06:39,255 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 11:06:39,257 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 30 [2022-12-13 11:06:39,257 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 11:06:39,258 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 35 [2022-12-13 11:06:39,259 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 11:06:39,261 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-12-13 11:06:39,261 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-12-13 11:06:39,261 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [932961978] [2022-12-13 11:06:39,261 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [932961978] provided 1 perfect and 0 imperfect interpolant sequences [2022-12-13 11:06:39,261 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-12-13 11:06:39,261 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [5] imperfect sequences [] total 5 [2022-12-13 11:06:39,262 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [1952546075] [2022-12-13 11:06:39,262 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-12-13 11:06:39,262 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 5 states [2022-12-13 11:06:39,262 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-12-13 11:06:39,263 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 5 interpolants. [2022-12-13 11:06:39,263 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=7, Invalid=13, Unknown=0, NotChecked=0, Total=20 [2022-12-13 11:06:39,263 INFO L87 Difference]: Start difference. First operand 145 states and 173 transitions. Second operand has 5 states, 5 states have (on average 7.8) internal successors, (39), 4 states have internal predecessors, (39), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2022-12-13 11:06:39,343 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-12-13 11:06:39,343 INFO L93 Difference]: Finished difference Result 255 states and 309 transitions. [2022-12-13 11:06:39,344 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 5 states. [2022-12-13 11:06:39,344 INFO L78 Accepts]: Start accepts. Automaton has has 5 states, 5 states have (on average 7.8) internal successors, (39), 4 states have internal predecessors, (39), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 46 [2022-12-13 11:06:39,344 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-12-13 11:06:39,345 INFO L225 Difference]: With dead ends: 255 [2022-12-13 11:06:39,345 INFO L226 Difference]: Without dead ends: 159 [2022-12-13 11:06:39,345 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 12 GetRequests, 7 SyntacticMatches, 0 SemanticMatches, 5 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 0 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=17, Invalid=25, Unknown=0, NotChecked=0, Total=42 [2022-12-13 11:06:39,346 INFO L413 NwaCegarLoop]: 67 mSDtfsCounter, 70 mSDsluCounter, 117 mSDsCounter, 0 mSdLazyCounter, 56 mSolverCounterSat, 10 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.0s Time, 0 mProtectedPredicate, 0 mProtectedAction, 72 SdHoareTripleChecker+Valid, 184 SdHoareTripleChecker+Invalid, 66 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 10 IncrementalHoareTripleChecker+Valid, 56 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.0s IncrementalHoareTripleChecker+Time [2022-12-13 11:06:39,346 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [72 Valid, 184 Invalid, 66 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [10 Valid, 56 Invalid, 0 Unknown, 0 Unchecked, 0.0s Time] [2022-12-13 11:06:39,347 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 159 states. [2022-12-13 11:06:39,359 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 159 to 159. [2022-12-13 11:06:39,360 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 159 states, 125 states have (on average 1.2) internal successors, (150), 133 states have internal predecessors, (150), 17 states have call successors, (17), 15 states have call predecessors, (17), 16 states have return successors, (21), 16 states have call predecessors, (21), 17 states have call successors, (21) [2022-12-13 11:06:39,361 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 159 states to 159 states and 188 transitions. [2022-12-13 11:06:39,361 INFO L78 Accepts]: Start accepts. Automaton has 159 states and 188 transitions. Word has length 46 [2022-12-13 11:06:39,361 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-12-13 11:06:39,361 INFO L495 AbstractCegarLoop]: Abstraction has 159 states and 188 transitions. [2022-12-13 11:06:39,361 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 5 states, 5 states have (on average 7.8) internal successors, (39), 4 states have internal predecessors, (39), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2022-12-13 11:06:39,361 INFO L276 IsEmpty]: Start isEmpty. Operand 159 states and 188 transitions. [2022-12-13 11:06:39,362 INFO L282 IsEmpty]: Finished isEmpty. Found accepting run of length 47 [2022-12-13 11:06:39,362 INFO L187 NwaCegarLoop]: Found error trace [2022-12-13 11:06:39,362 INFO L195 NwaCegarLoop]: trace histogram [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-12-13 11:06:39,362 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable10 [2022-12-13 11:06:39,362 INFO L420 AbstractCegarLoop]: === Iteration 12 === Targeting timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION === [timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION] === [2022-12-13 11:06:39,362 INFO L144 PredicateUnifier]: Initialized classic predicate unifier [2022-12-13 11:06:39,363 INFO L85 PathProgramCache]: Analyzing trace with hash -1221013089, now seen corresponding path program 1 times [2022-12-13 11:06:39,363 INFO L118 FreeRefinementEngine]: Executing refinement strategy CAMEL [2022-12-13 11:06:39,363 INFO L333 FreeRefinementEngine]: Using trace check IpTcStrategyModuleSmtInterpolCraig [1408048956] [2022-12-13 11:06:39,363 INFO L95 rtionOrderModulation]: Keeping assertion order NOT_INCREMENTALLY [2022-12-13 11:06:39,363 INFO L127 SolverBuilder]: Constructing new instance of SMTInterpol with explicit timeout -1 ms and remaining time -1 ms [2022-12-13 11:06:39,372 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 11:06:39,431 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 11 [2022-12-13 11:06:39,433 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 11:06:39,434 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 30 [2022-12-13 11:06:39,434 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 11:06:39,435 INFO L376 atingTraceCheckCraig]: Compute interpolants for subsequence at non-pending call position 35 [2022-12-13 11:06:39,435 INFO L136 AnnotateAndAsserter]: Conjunction of SSA is unsat [2022-12-13 11:06:39,436 INFO L134 CoverageAnalysis]: Checked inductivity of 0 backedges. 0 proven. 0 refuted. 0 times theorem prover too weak. 0 trivial. 0 not checked. [2022-12-13 11:06:39,436 INFO L136 FreeRefinementEngine]: Strategy CAMEL found an infeasible trace [2022-12-13 11:06:39,436 INFO L333 FreeRefinementEngine]: Using interpolant generator IpTcStrategyModuleSmtInterpolCraig [1408048956] [2022-12-13 11:06:39,437 INFO L157 FreeRefinementEngine]: IpTcStrategyModuleSmtInterpolCraig [1408048956] provided 1 perfect and 0 imperfect interpolant sequences [2022-12-13 11:06:39,437 INFO L184 FreeRefinementEngine]: Found 1 perfect and 0 imperfect interpolant sequences. [2022-12-13 11:06:39,437 INFO L197 FreeRefinementEngine]: Number of different interpolants: perfect sequences [8] imperfect sequences [] total 8 [2022-12-13 11:06:39,437 INFO L121 tionRefinementEngine]: Using interpolant automaton builder IpAbStrategyModuleStraightlineAll [355721672] [2022-12-13 11:06:39,437 INFO L85 oduleStraightlineAll]: Using 1 perfect interpolants to construct interpolant automaton [2022-12-13 11:06:39,437 INFO L571 AbstractCegarLoop]: INTERPOLANT automaton has 8 states [2022-12-13 11:06:39,437 INFO L100 FreeRefinementEngine]: Using predicate unifier PredicateUnifier provided by strategy CAMEL [2022-12-13 11:06:39,438 INFO L143 InterpolantAutomaton]: Constructing interpolant automaton starting with 8 interpolants. [2022-12-13 11:06:39,438 INFO L145 InterpolantAutomaton]: CoverageRelationStatistics Valid=13, Invalid=43, Unknown=0, NotChecked=0, Total=56 [2022-12-13 11:06:39,438 INFO L87 Difference]: Start difference. First operand 159 states and 188 transitions. Second operand has 8 states, 8 states have (on average 4.875) internal successors, (39), 7 states have internal predecessors, (39), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2022-12-13 11:06:39,546 INFO L144 Difference]: Subtrahend was deterministic. Have not used determinization. [2022-12-13 11:06:39,546 INFO L93 Difference]: Finished difference Result 230 states and 275 transitions. [2022-12-13 11:06:39,546 INFO L141 InterpolantAutomaton]: Switched to read-only mode: deterministic interpolant automaton has 8 states. [2022-12-13 11:06:39,546 INFO L78 Accepts]: Start accepts. Automaton has has 8 states, 8 states have (on average 4.875) internal successors, (39), 7 states have internal predecessors, (39), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) Word has length 46 [2022-12-13 11:06:39,547 INFO L84 Accepts]: Finished accepts. some prefix is accepted. [2022-12-13 11:06:39,547 INFO L225 Difference]: With dead ends: 230 [2022-12-13 11:06:39,547 INFO L226 Difference]: Without dead ends: 0 [2022-12-13 11:06:39,547 INFO L412 NwaCegarLoop]: 0 DeclaredPredicates, 19 GetRequests, 9 SyntacticMatches, 0 SemanticMatches, 10 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 3 ImplicationChecksByTransitivity, 0.0s TimeCoverageRelationStatistics Valid=35, Invalid=97, Unknown=0, NotChecked=0, Total=132 [2022-12-13 11:06:39,548 INFO L413 NwaCegarLoop]: 47 mSDtfsCounter, 64 mSDsluCounter, 202 mSDsCounter, 0 mSdLazyCounter, 113 mSolverCounterSat, 10 mSolverCounterUnsat, 0 mSolverCounterUnknown, 0 mSolverCounterNotChecked, 0.1s Time, 0 mProtectedPredicate, 0 mProtectedAction, 66 SdHoareTripleChecker+Valid, 249 SdHoareTripleChecker+Invalid, 123 SdHoareTripleChecker+Unknown, 0 SdHoareTripleChecker+Unchecked, 0.0s SdHoareTripleChecker+Time, 10 IncrementalHoareTripleChecker+Valid, 113 IncrementalHoareTripleChecker+Invalid, 0 IncrementalHoareTripleChecker+Unknown, 0 IncrementalHoareTripleChecker+Unchecked, 0.1s IncrementalHoareTripleChecker+Time [2022-12-13 11:06:39,548 INFO L414 NwaCegarLoop]: SdHoareTripleChecker [66 Valid, 249 Invalid, 123 Unknown, 0 Unchecked, 0.0s Time], IncrementalHoareTripleChecker [10 Valid, 113 Invalid, 0 Unknown, 0 Unchecked, 0.1s Time] [2022-12-13 11:06:39,549 INFO L82 GeneralOperation]: Start minimizeSevpa. Operand 0 states. [2022-12-13 11:06:39,549 INFO L88 GeneralOperation]: Finished minimizeSevpa. Reduced states from 0 to 0. [2022-12-13 11:06:39,549 INFO L82 GeneralOperation]: Start removeUnreachable. Operand has 0 states, 0 states have (on average 0.0) internal successors, (0), 0 states have internal predecessors, (0), 0 states have call successors, (0), 0 states have call predecessors, (0), 0 states have return successors, (0), 0 states have call predecessors, (0), 0 states have call successors, (0) [2022-12-13 11:06:39,549 INFO L88 GeneralOperation]: Finished removeUnreachable. Reduced from 0 states to 0 states and 0 transitions. [2022-12-13 11:06:39,549 INFO L78 Accepts]: Start accepts. Automaton has 0 states and 0 transitions. Word has length 46 [2022-12-13 11:06:39,549 INFO L84 Accepts]: Finished accepts. word is rejected. [2022-12-13 11:06:39,550 INFO L495 AbstractCegarLoop]: Abstraction has 0 states and 0 transitions. [2022-12-13 11:06:39,550 INFO L496 AbstractCegarLoop]: INTERPOLANT automaton has has 8 states, 8 states have (on average 4.875) internal successors, (39), 7 states have internal predecessors, (39), 2 states have call successors, (4), 2 states have call predecessors, (4), 1 states have return successors, (3), 2 states have call predecessors, (3), 2 states have call successors, (3) [2022-12-13 11:06:39,550 INFO L276 IsEmpty]: Start isEmpty. Operand 0 states and 0 transitions. [2022-12-13 11:06:39,550 INFO L282 IsEmpty]: Finished isEmpty. No accepting run. [2022-12-13 11:06:39,552 INFO L805 garLoopResultBuilder]: Registering result SAFE for location timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION (0 of 1 remaining) [2022-12-13 11:06:39,553 WARN L477 AbstractCegarLoop]: Destroyed unattended storables created during the last iteration: SelfDestructingSolverStorable11 [2022-12-13 11:06:39,555 INFO L343 DoubleDeckerVisitor]: Before removal of dead ends 0 states and 0 transitions. [2022-12-13 11:06:40,613 INFO L899 garLoopResultBuilder]: For program point processEnvironment__wrappee__baseEXIT(lines 257 263) no Hoare annotation was computed. [2022-12-13 11:06:40,613 INFO L902 garLoopResultBuilder]: At program point processEnvironment__wrappee__baseFINAL(lines 257 263) the Hoare annotation is: true [2022-12-13 11:06:40,613 INFO L899 garLoopResultBuilder]: For program point L831-1(lines 827 838) no Hoare annotation was computed. [2022-12-13 11:06:40,613 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 827 838) the Hoare annotation is: true [2022-12-13 11:06:40,613 INFO L899 garLoopResultBuilder]: For program point changeMethaneLevelEXIT(lines 827 838) no Hoare annotation was computed. [2022-12-13 11:06:40,613 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 839 847) the Hoare annotation is: true [2022-12-13 11:06:40,613 INFO L899 garLoopResultBuilder]: For program point isMethaneLevelCriticalFINAL(lines 839 847) no Hoare annotation was computed. [2022-12-13 11:06:40,613 INFO L899 garLoopResultBuilder]: For program point isMethaneLevelCriticalEXIT(lines 839 847) no Hoare annotation was computed. [2022-12-13 11:06:40,613 INFO L902 garLoopResultBuilder]: At program point L129(line 129) the Hoare annotation is: true [2022-12-13 11:06:40,614 INFO L899 garLoopResultBuilder]: For program point L129-1(line 129) no Hoare annotation was computed. [2022-12-13 11:06:40,614 INFO L899 garLoopResultBuilder]: For program point cleanupEXIT(lines 123 152) no Hoare annotation was computed. [2022-12-13 11:06:40,614 INFO L902 garLoopResultBuilder]: At program point L148(lines 123 152) the Hoare annotation is: true [2022-12-13 11:06:40,614 INFO L899 garLoopResultBuilder]: For program point L144(line 144) no Hoare annotation was computed. [2022-12-13 11:06:40,614 INFO L902 garLoopResultBuilder]: At program point $Ultimate##0(lines 123 152) the Hoare annotation is: true [2022-12-13 11:06:40,614 INFO L899 garLoopResultBuilder]: For program point L137(lines 137 141) no Hoare annotation was computed. [2022-12-13 11:06:40,614 INFO L902 garLoopResultBuilder]: At program point L137-1(lines 137 141) the Hoare annotation is: true [2022-12-13 11:06:40,614 INFO L899 garLoopResultBuilder]: For program point L134(line 134) no Hoare annotation was computed. [2022-12-13 11:06:40,614 INFO L902 garLoopResultBuilder]: At program point L133-2(lines 133 147) the Hoare annotation is: true [2022-12-13 11:06:40,614 INFO L895 garLoopResultBuilder]: At program point L279(line 279) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 0)) .cse0 (and (= ~pumpRunning~0 0) (= |timeShift_processEnvironment_~tmp~2#1| 0) (not (= 2 ~waterLevel~0)) (= |old(~waterLevel~0)| ~waterLevel~0))) (or (not (= |old(~pumpRunning~0)| 1)) .cse0))) [2022-12-13 11:06:40,615 INFO L899 garLoopResultBuilder]: For program point timeShiftFINAL(lines 233 256) no Hoare annotation was computed. [2022-12-13 11:06:40,615 INFO L895 garLoopResultBuilder]: At program point isHighWaterSensorDry_returnLabel#1(lines 880 893) the Hoare annotation is: (let ((.cse0 (= |timeShift_isHighWaterSensorDry_#res#1| 1)) (.cse1 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 (not (= |old(~waterLevel~0)| 1)) .cse2) (let ((.cse3 (= ~pumpRunning~0 0)) (.cse4 (= |old(~waterLevel~0)| ~waterLevel~0))) (or (and .cse0 .cse3 (not (= 2 ~waterLevel~0)) .cse4) .cse1 .cse2 (and .cse3 (= |timeShift_isHighWaterSensorDry_#res#1| 0) .cse4))) (or (not (= |old(~pumpRunning~0)| 1)) .cse2))) [2022-12-13 11:06:40,615 INFO L899 garLoopResultBuilder]: For program point L767(lines 767 787) no Hoare annotation was computed. [2022-12-13 11:06:40,615 INFO L895 garLoopResultBuilder]: At program point L284(line 284) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 1)) .cse0 (= ~pumpRunning~0 1)) (or (not (= |old(~pumpRunning~0)| 0)) .cse0))) [2022-12-13 11:06:40,615 INFO L899 garLoopResultBuilder]: For program point L796(line 796) no Hoare annotation was computed. [2022-12-13 11:06:40,615 INFO L895 garLoopResultBuilder]: At program point L284-1(lines 265 289) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (let ((.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (= ~pumpRunning~0 0)) (.cse4 (= |timeShift_processEnvironment_~tmp~2#1| 0)) (.cse5 (not .cse0)) (.cse1 (= ~pumpRunning~0 1))) (and (or (not (= |old(~pumpRunning~0)| 1)) .cse0 .cse1) (or .cse2 (not (= |old(~waterLevel~0)| 1)) (and .cse3 .cse4 .cse5) .cse0) (let ((.cse6 (= |old(~waterLevel~0)| ~waterLevel~0))) (or .cse2 (and .cse3 .cse4 (not (= 2 ~waterLevel~0)) .cse6 .cse5) .cse0 (and .cse6 .cse1)))))) [2022-12-13 11:06:40,616 INFO L895 garLoopResultBuilder]: At program point getWaterLevel_returnLabel#1(lines 871 879) the Hoare annotation is: (let ((.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (= ~pumpRunning~0 0)) (.cse4 (= |timeShift_processEnvironment_~tmp~2#1| 0)) (.cse0 (= 0 ~systemActive~0)) (.cse1 (= ~pumpRunning~0 1))) (and (or (not (= |old(~pumpRunning~0)| 1)) .cse0 .cse1) (or .cse2 (not (= |old(~waterLevel~0)| 1)) .cse0 (and .cse3 .cse4 (= |timeShift_getWaterLevel_#res#1| 1))) (let ((.cse5 (= |old(~waterLevel~0)| ~waterLevel~0))) (or .cse2 (and .cse3 (not (= 2 |timeShift_getWaterLevel_#res#1|)) .cse4 (not (= 2 ~waterLevel~0)) .cse5) .cse0 (and .cse5 .cse1))))) [2022-12-13 11:06:40,616 INFO L899 garLoopResultBuilder]: For program point L371(lines 371 375) no Hoare annotation was computed. [2022-12-13 11:06:40,616 INFO L899 garLoopResultBuilder]: For program point L371-2(lines 371 375) no Hoare annotation was computed. [2022-12-13 11:06:40,616 INFO L895 garLoopResultBuilder]: At program point activatePump_returnLabel#1(lines 290 297) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse1 (= 0 ~systemActive~0))) (and (or .cse0 .cse1 (and (= |old(~waterLevel~0)| ~waterLevel~0) (= ~pumpRunning~0 1))) (or .cse0 (not (= |old(~waterLevel~0)| 1)) .cse1) (or (not (= |old(~pumpRunning~0)| 1)) .cse1))) [2022-12-13 11:06:40,616 INFO L899 garLoopResultBuilder]: For program point L884(lines 884 890) no Hoare annotation was computed. [2022-12-13 11:06:40,616 INFO L899 garLoopResultBuilder]: For program point L244-1(lines 244 250) no Hoare annotation was computed. [2022-12-13 11:06:40,616 INFO L899 garLoopResultBuilder]: For program point L273(lines 273 281) no Hoare annotation was computed. [2022-12-13 11:06:40,616 INFO L899 garLoopResultBuilder]: For program point L269(lines 269 286) no Hoare annotation was computed. [2022-12-13 11:06:40,617 INFO L895 garLoopResultBuilder]: At program point __automaton_fail_returnLabel#1(lines 792 799) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 0)) .cse0) (or (not (= |old(~pumpRunning~0)| 1)) .cse0))) [2022-12-13 11:06:40,617 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 233 256) the Hoare annotation is: (let ((.cse1 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse0 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 1)) .cse0 (and .cse1 (= ~pumpRunning~0 1))) (or (not (= |old(~pumpRunning~0)| 0)) (and (= ~pumpRunning~0 0) .cse1) .cse0))) [2022-12-13 11:06:40,617 INFO L899 garLoopResultBuilder]: For program point L777(lines 777 783) no Hoare annotation was computed. [2022-12-13 11:06:40,617 INFO L899 garLoopResultBuilder]: For program point L773(lines 773 786) no Hoare annotation was computed. [2022-12-13 11:06:40,617 INFO L895 garLoopResultBuilder]: At program point L773-1(lines 758 790) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (let ((.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (= ~pumpRunning~0 0)) (.cse4 (= |timeShift_processEnvironment_~tmp~2#1| 0)) (.cse5 (not .cse0)) (.cse1 (= ~pumpRunning~0 1))) (and (or (not (= |old(~pumpRunning~0)| 1)) .cse0 .cse1) (or .cse2 (not (= |old(~waterLevel~0)| 1)) (and .cse3 .cse4 .cse5) .cse0) (let ((.cse6 (= |old(~waterLevel~0)| ~waterLevel~0))) (or .cse2 (and .cse3 .cse4 (not (= 2 ~waterLevel~0)) .cse6 .cse5) .cse0 (and .cse6 .cse1)))))) [2022-12-13 11:06:40,617 INFO L895 garLoopResultBuilder]: At program point isHighWaterLevel_returnLabel#1(lines 362 380) the Hoare annotation is: (let ((.cse0 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (= |timeShift_isHighWaterLevel_~tmp___0~1#1| 0)) (.cse2 (= |timeShift_isHighWaterLevel_#res#1| 0)) (.cse1 (= 0 ~systemActive~0))) (and (or .cse0 (not (= |old(~waterLevel~0)| 1)) .cse1 (and .cse2 .cse3)) (let ((.cse4 (= ~pumpRunning~0 0)) (.cse5 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse6 (not .cse1))) (or .cse0 (and .cse4 (not (= 2 ~waterLevel~0)) .cse5 .cse6) .cse1 (and .cse4 (not .cse3) (= |timeShift_isHighWaterLevel_~tmp~3#1| 0) (= |timeShift_isHighWaterSensorDry_#res#1| 0) .cse5 .cse6 (not .cse2)))) (or (not (= |old(~pumpRunning~0)| 1)) .cse1))) [2022-12-13 11:06:40,618 INFO L895 garLoopResultBuilder]: At program point L765(line 765) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (let ((.cse2 (not (= |old(~pumpRunning~0)| 0))) (.cse3 (= ~pumpRunning~0 0)) (.cse4 (= |timeShift_processEnvironment_~tmp~2#1| 0)) (.cse5 (not .cse0)) (.cse1 (= ~pumpRunning~0 1))) (and (or (not (= |old(~pumpRunning~0)| 1)) .cse0 .cse1) (or .cse2 (not (= |old(~waterLevel~0)| 1)) (and .cse3 .cse4 .cse5) .cse0) (let ((.cse6 (= |old(~waterLevel~0)| ~waterLevel~0))) (or .cse2 (and .cse3 .cse4 (not (= 2 ~waterLevel~0)) .cse6 .cse5) .cse0 (and .cse6 .cse1)))))) [2022-12-13 11:06:40,618 INFO L899 garLoopResultBuilder]: For program point L765-1(line 765) no Hoare annotation was computed. [2022-12-13 11:06:40,618 INFO L899 garLoopResultBuilder]: For program point L237-1(lines 236 255) no Hoare annotation was computed. [2022-12-13 11:06:40,618 INFO L899 garLoopResultBuilder]: For program point timeShiftEXIT(lines 233 256) no Hoare annotation was computed. [2022-12-13 11:06:40,618 INFO L895 garLoopResultBuilder]: At program point isPumpRunning_returnLabel#1(lines 317 325) the Hoare annotation is: (let ((.cse0 (= |timeShift_isPumpRunning_#res#1| 1)) (.cse1 (= ~pumpRunning~0 1)) (.cse3 (not (= |old(~pumpRunning~0)| 0))) (.cse2 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 1)) (and .cse0 .cse1) .cse2) (or .cse3 .cse2 (and .cse0 (= |old(~waterLevel~0)| ~waterLevel~0) .cse1)) (or .cse3 (not (= |old(~waterLevel~0)| 1)) .cse2))) [2022-12-13 11:06:40,618 INFO L899 garLoopResultBuilder]: For program point timeShiftErr0ASSERT_VIOLATIONERROR_FUNCTION(line 796) no Hoare annotation was computed. [2022-12-13 11:06:40,618 INFO L899 garLoopResultBuilder]: For program point L807(lines 807 811) no Hoare annotation was computed. [2022-12-13 11:06:40,618 INFO L895 garLoopResultBuilder]: At program point L807-2(lines 803 814) the Hoare annotation is: (let ((.cse0 (= 0 ~systemActive~0))) (and (or (not (= |old(~pumpRunning~0)| 1)) .cse0 (= ~pumpRunning~0 1)) (or (not (= |old(~pumpRunning~0)| 0)) .cse0))) [2022-12-13 11:06:40,619 INFO L895 garLoopResultBuilder]: At program point startSystem_returnLabel#1(lines 381 388) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse2 (= |ULTIMATE.start_main_~tmp~1#1| 1)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 (= ~pumpRunning~0 1)) (and (= ~pumpRunning~0 0) .cse0 .cse1 .cse2 .cse3))) [2022-12-13 11:06:40,619 INFO L899 garLoopResultBuilder]: For program point L85(lines 85 91) no Hoare annotation was computed. [2022-12-13 11:06:40,619 INFO L899 garLoopResultBuilder]: For program point L85-1(lines 85 91) no Hoare annotation was computed. [2022-12-13 11:06:40,619 INFO L902 garLoopResultBuilder]: At program point runTest_returnLabel#1(lines 185 194) the Hoare annotation is: true [2022-12-13 11:06:40,619 INFO L895 garLoopResultBuilder]: At program point L110(lines 65 112) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse2 (= |ULTIMATE.start_main_~tmp~1#1| 1)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 (= ~pumpRunning~0 1)) (and (= ~pumpRunning~0 0) .cse0 (not (= 2 ~waterLevel~0)) .cse1 .cse2 .cse3))) [2022-12-13 11:06:40,619 INFO L895 garLoopResultBuilder]: At program point L77(line 77) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse2 (= |ULTIMATE.start_main_~tmp~1#1| 1)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 (= ~pumpRunning~0 1)) (and (= ~pumpRunning~0 0) .cse0 (not (= 2 ~waterLevel~0)) .cse1 .cse2 .cse3))) [2022-12-13 11:06:40,619 INFO L895 garLoopResultBuilder]: At program point select_features_returnLabel#1(lines 906 912) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2022-12-13 11:06:40,619 INFO L902 garLoopResultBuilder]: At program point main_returnLabel#1(lines 198 220) the Hoare annotation is: true [2022-12-13 11:06:40,620 INFO L899 garLoopResultBuilder]: For program point L-1(line -1) no Hoare annotation was computed. [2022-12-13 11:06:40,620 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startFINAL(line -1) no Hoare annotation was computed. [2022-12-13 11:06:40,620 INFO L895 garLoopResultBuilder]: At program point setup_returnLabel#1(lines 178 184) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_valid_product_#res#1| 1) (= |ULTIMATE.start_main_~tmp~1#1| 1) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2022-12-13 11:06:40,620 INFO L899 garLoopResultBuilder]: For program point L103(lines 103 107) no Hoare annotation was computed. [2022-12-13 11:06:40,620 INFO L895 garLoopResultBuilder]: At program point L103-2(lines 95 108) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse2 (= |ULTIMATE.start_main_~tmp~1#1| 1)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 (= ~pumpRunning~0 1)) (and (= ~pumpRunning~0 0) .cse0 .cse1 .cse2 .cse3))) [2022-12-13 11:06:40,620 INFO L899 garLoopResultBuilder]: For program point L66(lines 65 112) no Hoare annotation was computed. [2022-12-13 11:06:40,620 INFO L899 garLoopResultBuilder]: For program point ULTIMATE.startEXIT(line -1) no Hoare annotation was computed. [2022-12-13 11:06:40,620 INFO L899 garLoopResultBuilder]: For program point L95(lines 95 108) no Hoare annotation was computed. [2022-12-13 11:06:40,620 INFO L895 garLoopResultBuilder]: At program point L87(line 87) the Hoare annotation is: (let ((.cse0 (= |ULTIMATE.start_valid_product_#res#1| 1)) (.cse1 (= |ULTIMATE.start_test_~splverifierCounter~0#1| 0)) (.cse2 (= |ULTIMATE.start_main_~tmp~1#1| 1)) (.cse3 (not (= 0 ~systemActive~0)))) (or (and .cse0 .cse1 .cse2 .cse3 (= ~pumpRunning~0 1)) (and (= ~pumpRunning~0 0) .cse0 .cse1 .cse2 .cse3))) [2022-12-13 11:06:40,620 INFO L902 garLoopResultBuilder]: At program point L116(lines 55 120) the Hoare annotation is: true [2022-12-13 11:06:40,620 INFO L899 garLoopResultBuilder]: For program point L75(lines 75 81) no Hoare annotation was computed. [2022-12-13 11:06:40,620 INFO L899 garLoopResultBuilder]: For program point L75-1(lines 75 81) no Hoare annotation was computed. [2022-12-13 11:06:40,620 INFO L899 garLoopResultBuilder]: For program point $Ultimate##0(line -1) no Hoare annotation was computed. [2022-12-13 11:06:40,620 INFO L895 garLoopResultBuilder]: At program point select_helpers_returnLabel#1(lines 913 919) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2022-12-13 11:06:40,621 INFO L899 garLoopResultBuilder]: For program point L67(lines 67 71) no Hoare annotation was computed. [2022-12-13 11:06:40,621 INFO L895 garLoopResultBuilder]: At program point L113(lines 64 114) the Hoare annotation is: false [2022-12-13 11:06:40,621 INFO L899 garLoopResultBuilder]: For program point L208(lines 208 215) no Hoare annotation was computed. [2022-12-13 11:06:40,621 INFO L899 garLoopResultBuilder]: For program point L208-2(lines 208 215) no Hoare annotation was computed. [2022-12-13 11:06:40,621 INFO L895 garLoopResultBuilder]: At program point valid_product_returnLabel#1(lines 920 928) the Hoare annotation is: (and (= ~pumpRunning~0 0) (= |ULTIMATE.start_valid_product_#res#1| 1) (= ~waterLevel~0 1) (not (= 0 ~systemActive~0))) [2022-12-13 11:06:40,621 INFO L899 garLoopResultBuilder]: For program point waterRiseEXIT(lines 815 826) no Hoare annotation was computed. [2022-12-13 11:06:40,621 INFO L895 garLoopResultBuilder]: At program point $Ultimate##0(lines 815 826) the Hoare annotation is: (let ((.cse0 (= |old(~waterLevel~0)| ~waterLevel~0)) (.cse1 (= 0 ~systemActive~0))) (and (or (not (= ~pumpRunning~0 1)) .cse0 .cse1) (or (not (= ~pumpRunning~0 0)) .cse0 .cse1 (= |old(~waterLevel~0)| 2)))) [2022-12-13 11:06:40,621 INFO L899 garLoopResultBuilder]: For program point L819-1(lines 815 826) no Hoare annotation was computed. [2022-12-13 11:06:40,624 INFO L445 BasicCegarLoop]: Path program histogram: [1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1, 1] [2022-12-13 11:06:40,626 INFO L178 ceAbstractionStarter]: Computing trace abstraction results [2022-12-13 11:06:40,646 INFO L202 PluginConnector]: Adding new model de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction CFG 13.12 11:06:40 BoogieIcfgContainer [2022-12-13 11:06:40,646 INFO L132 PluginConnector]: ------------------------ END TraceAbstraction---------------------------- [2022-12-13 11:06:40,647 INFO L113 PluginConnector]: ------------------------Witness Printer---------------------------- [2022-12-13 11:06:40,647 INFO L271 PluginConnector]: Initializing Witness Printer... [2022-12-13 11:06:40,647 INFO L275 PluginConnector]: Witness Printer initialized [2022-12-13 11:06:40,647 INFO L185 PluginConnector]: Executing the observer RCFGCatcher from plugin Witness Printer for "de.uni_freiburg.informatik.ultimate.plugins.generator.rcfgbuilder CFG 13.12 11:06:37" (3/4) ... [2022-12-13 11:06:40,650 INFO L137 WitnessPrinter]: Generating witness for correct program [2022-12-13 11:06:40,656 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure processEnvironment__wrappee__base [2022-12-13 11:06:40,657 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure changeMethaneLevel [2022-12-13 11:06:40,657 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure isMethaneLevelCritical [2022-12-13 11:06:40,657 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure cleanup [2022-12-13 11:06:40,657 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure timeShift [2022-12-13 11:06:40,657 INFO L361 RCFGBacktranslator]: Ignoring RootEdge to procedure waterRise [2022-12-13 11:06:40,663 INFO L961 BoogieBacktranslator]: Reduced CFG by removing 21 nodes and edges [2022-12-13 11:06:40,663 INFO L961 BoogieBacktranslator]: Reduced CFG by removing 8 nodes and edges [2022-12-13 11:06:40,663 INFO L961 BoogieBacktranslator]: Reduced CFG by removing 4 nodes and edges [2022-12-13 11:06:40,664 INFO L961 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2022-12-13 11:06:40,664 INFO L961 BoogieBacktranslator]: Reduced CFG by removing 1 nodes and edges [2022-12-13 11:06:40,682 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((pumpRunning == 0 && \result == 1) && waterLevel == 1) && !(0 == systemActive) [2022-12-13 11:06:40,682 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((pumpRunning == 0 && \result == 1) && tmp == 1) && waterLevel == 1) && !(0 == systemActive) [2022-12-13 11:06:40,683 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((\result == 1 && splverifierCounter == 0) && tmp == 1) && !(0 == systemActive)) && pumpRunning == 1) || (((((pumpRunning == 0 && \result == 1) && !(2 == waterLevel)) && splverifierCounter == 0) && tmp == 1) && !(0 == systemActive)) [2022-12-13 11:06:40,683 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((!(\old(pumpRunning) == 1) || 0 == systemActive) || pumpRunning == 1) && (!(\old(pumpRunning) == 0) || 0 == systemActive) [2022-12-13 11:06:40,683 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 1) || 0 == systemActive) || pumpRunning == 1) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || ((pumpRunning == 0 && tmp == 0) && !(0 == systemActive))) || 0 == systemActive)) && (((!(\old(pumpRunning) == 0) || ((((pumpRunning == 0 && tmp == 0) && !(2 == waterLevel)) && \old(waterLevel) == waterLevel) && !(0 == systemActive))) || 0 == systemActive) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) [2022-12-13 11:06:40,684 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((\result == 1 && splverifierCounter == 0) && tmp == 1) && !(0 == systemActive)) && pumpRunning == 1) || ((((pumpRunning == 0 && \result == 1) && splverifierCounter == 0) && tmp == 1) && !(0 == systemActive)) [2022-12-13 11:06:40,684 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 1) || 0 == systemActive) || pumpRunning == 1) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || ((pumpRunning == 0 && tmp == 0) && !(0 == systemActive))) || 0 == systemActive)) && (((!(\old(pumpRunning) == 0) || ((((pumpRunning == 0 && tmp == 0) && !(2 == waterLevel)) && \old(waterLevel) == waterLevel) && !(0 == systemActive))) || 0 == systemActive) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) [2022-12-13 11:06:40,684 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 1) || 0 == systemActive) || pumpRunning == 1) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive) || ((pumpRunning == 0 && tmp == 0) && \result == 1))) && (((!(\old(pumpRunning) == 0) || ((((pumpRunning == 0 && !(2 == \result)) && tmp == 0) && !(2 == waterLevel)) && \old(waterLevel) == waterLevel)) || 0 == systemActive) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) [2022-12-13 11:06:40,685 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((\result == 1 || !(\old(pumpRunning) == 0)) || !(\old(waterLevel) == 1)) || 0 == systemActive) && ((((((\result == 1 && pumpRunning == 0) && !(2 == waterLevel)) && \old(waterLevel) == waterLevel) || !(\old(pumpRunning) == 0)) || 0 == systemActive) || ((pumpRunning == 0 && \result == 0) && \old(waterLevel) == waterLevel))) && (!(\old(pumpRunning) == 1) || 0 == systemActive) [2022-12-13 11:06:40,685 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: ((((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive) || (\result == 0 && tmp___0 == 0)) && (((!(\old(pumpRunning) == 0) || (((pumpRunning == 0 && !(2 == waterLevel)) && \old(waterLevel) == waterLevel) && !(0 == systemActive))) || 0 == systemActive) || ((((((pumpRunning == 0 && !(tmp___0 == 0)) && tmp == 0) && \result == 0) && \old(waterLevel) == waterLevel) && !(0 == systemActive)) && !(\result == 0)))) && (!(\old(pumpRunning) == 1) || 0 == systemActive) [2022-12-13 11:06:40,685 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 1) || (\result == 1 && pumpRunning == 1)) || 0 == systemActive) && ((!(\old(pumpRunning) == 0) || 0 == systemActive) || ((\result == 1 && \old(waterLevel) == waterLevel) && pumpRunning == 1))) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive) [2022-12-13 11:06:40,685 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (((!(\old(pumpRunning) == 0) || 0 == systemActive) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive)) && (!(\old(pumpRunning) == 1) || 0 == systemActive) [2022-12-13 11:06:40,685 WARN L220 nessWitnessGenerator]: Not writing invariant because ACSL is forbidden: (!(\old(pumpRunning) == 0) || 0 == systemActive) && (!(\old(pumpRunning) == 1) || 0 == systemActive) [2022-12-13 11:06:40,704 INFO L141 WitnessManager]: Wrote witness to /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2f793717-ab40-4522-aeee-ea72a61d165c/bin/uautomizer-uyxdKDjOR8/witness.graphml [2022-12-13 11:06:40,704 INFO L132 PluginConnector]: ------------------------ END Witness Printer---------------------------- [2022-12-13 11:06:40,704 INFO L158 Benchmark]: Toolchain (without parser) took 3846.09ms. Allocated memory was 123.7MB in the beginning and 151.0MB in the end (delta: 27.3MB). Free memory was 87.5MB in the beginning and 84.6MB in the end (delta: 2.9MB). Peak memory consumption was 32.1MB. Max. memory is 16.1GB. [2022-12-13 11:06:40,705 INFO L158 Benchmark]: CDTParser took 0.12ms. Allocated memory is still 123.7MB. Free memory is still 96.6MB. There was no memory consumed. Max. memory is 16.1GB. [2022-12-13 11:06:40,705 INFO L158 Benchmark]: CACSL2BoogieTranslator took 280.11ms. Allocated memory is still 123.7MB. Free memory was 87.0MB in the beginning and 68.8MB in the end (delta: 18.2MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. [2022-12-13 11:06:40,705 INFO L158 Benchmark]: Boogie Procedure Inliner took 32.90ms. Allocated memory is still 123.7MB. Free memory was 68.8MB in the beginning and 66.7MB in the end (delta: 2.2MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2022-12-13 11:06:40,705 INFO L158 Benchmark]: Boogie Preprocessor took 19.06ms. Allocated memory is still 123.7MB. Free memory was 66.7MB in the beginning and 65.4MB in the end (delta: 1.3MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. [2022-12-13 11:06:40,705 INFO L158 Benchmark]: RCFGBuilder took 342.87ms. Allocated memory is still 123.7MB. Free memory was 65.4MB in the beginning and 50.3MB in the end (delta: 15.0MB). Peak memory consumption was 14.7MB. Max. memory is 16.1GB. [2022-12-13 11:06:40,706 INFO L158 Benchmark]: TraceAbstraction took 3108.21ms. Allocated memory was 123.7MB in the beginning and 151.0MB in the end (delta: 27.3MB). Free memory was 49.6MB in the beginning and 89.9MB in the end (delta: -40.2MB). Peak memory consumption was 38.7MB. Max. memory is 16.1GB. [2022-12-13 11:06:40,706 INFO L158 Benchmark]: Witness Printer took 57.27ms. Allocated memory is still 151.0MB. Free memory was 89.9MB in the beginning and 84.6MB in the end (delta: 5.2MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. [2022-12-13 11:06:40,708 INFO L339 ainManager$Toolchain]: ####################### End [Toolchain 1] ####################### --- Results --- * Results from de.uni_freiburg.informatik.ultimate.core: - StatisticsResult: Toolchain Benchmarks Benchmark results are: * CDTParser took 0.12ms. Allocated memory is still 123.7MB. Free memory is still 96.6MB. There was no memory consumed. Max. memory is 16.1GB. * CACSL2BoogieTranslator took 280.11ms. Allocated memory is still 123.7MB. Free memory was 87.0MB in the beginning and 68.8MB in the end (delta: 18.2MB). Peak memory consumption was 16.8MB. Max. memory is 16.1GB. * Boogie Procedure Inliner took 32.90ms. Allocated memory is still 123.7MB. Free memory was 68.8MB in the beginning and 66.7MB in the end (delta: 2.2MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * Boogie Preprocessor took 19.06ms. Allocated memory is still 123.7MB. Free memory was 66.7MB in the beginning and 65.4MB in the end (delta: 1.3MB). Peak memory consumption was 2.1MB. Max. memory is 16.1GB. * RCFGBuilder took 342.87ms. Allocated memory is still 123.7MB. Free memory was 65.4MB in the beginning and 50.3MB in the end (delta: 15.0MB). Peak memory consumption was 14.7MB. Max. memory is 16.1GB. * TraceAbstraction took 3108.21ms. Allocated memory was 123.7MB in the beginning and 151.0MB in the end (delta: 27.3MB). Free memory was 49.6MB in the beginning and 89.9MB in the end (delta: -40.2MB). Peak memory consumption was 38.7MB. Max. memory is 16.1GB. * Witness Printer took 57.27ms. Allocated memory is still 151.0MB. Free memory was 89.9MB in the beginning and 84.6MB in the end (delta: 5.2MB). Peak memory consumption was 4.2MB. Max. memory is 16.1GB. * Results from de.uni_freiburg.informatik.ultimate.plugins.generator.traceabstraction: - StatisticsResult: ErrorAutomatonStatistics NumberErrorTraces: 0, NumberStatementsAllTraces: 0, NumberRelevantStatements: 0, 0.0s ErrorAutomatonConstructionTimeTotal, 0.0s FaulLocalizationTime, NumberStatementsFirstTrace: -1, TraceLengthAvg: 0, 0.0s ErrorAutomatonConstructionTimeAvg, 0.0s ErrorAutomatonDifferenceTimeAvg, 0.0s ErrorAutomatonDifferenceTimeTotal, NumberOfNoEnhancement: 0, NumberOfFiniteEnhancement: 0, NumberOfInfiniteEnhancement: 0 - PositiveResult [Line: 796]: call to reach_error is unreachable For all program executions holds that call to reach_error is unreachable at this location - StatisticsResult: Ultimate Automizer benchmark data CFG has 7 procedures, 77 locations, 1 error locations. Started 1 CEGAR loops. OverallTime: 3.0s, OverallIterations: 12, TraceHistogramMax: 1, PathProgramHistogramMax: 1, EmptinessCheckTime: 0.0s, AutomataDifference: 0.8s, DeadEndRemovalTime: 0.0s, HoareAnnotationTime: 1.1s, InitialAbstractionConstructionTime: 0.0s, HoareTripleCheckerStatistics: 0 mSolverCounterUnknown, 684 SdHoareTripleChecker+Valid, 0.4s IncrementalHoareTripleChecker+Time, 0 mSdLazyCounter, 668 mSDsluCounter, 2600 SdHoareTripleChecker+Invalid, 0.3s Time, 0 mProtectedAction, 0 SdHoareTripleChecker+Unchecked, 0 IncrementalHoareTripleChecker+Unchecked, 1653 mSDsCounter, 74 IncrementalHoareTripleChecker+Valid, 0 mProtectedPredicate, 478 IncrementalHoareTripleChecker+Invalid, 552 SdHoareTripleChecker+Unknown, 0 mSolverCounterNotChecked, 74 mSolverCounterUnsat, 947 mSDtfsCounter, 478 mSolverCounterSat, 0.0s SdHoareTripleChecker+Time, 0 IncrementalHoareTripleChecker+Unknown, PredicateUnifierStatistics: 0 DeclaredPredicates, 123 GetRequests, 70 SyntacticMatches, 0 SemanticMatches, 53 ConstructedPredicates, 0 IntricatePredicates, 0 DeprecatedPredicates, 13 ImplicationChecksByTransitivity, 0.2s Time, 0.0s BasicInterpolantAutomatonTime, BiggestAbstraction: size=159occurred in iteration=11, InterpolantAutomatonStates: 61, traceCheckStatistics: No data available, InterpolantConsolidationStatistics: No data available, PathInvariantsStatistics: No data available, 0/0 InterpolantCoveringCapability, TotalInterpolationStatistics: No data available, 0.0s DumpTime, AutomataMinimizationStatistics: 0.1s AutomataMinimizationTime, 12 MinimizatonAttempts, 54 StatesRemovedByMinimization, 7 NontrivialMinimizations, HoareAnnotationStatistics: 0.0s HoareAnnotationTime, 35 LocationsWithAnnotation, 473 PreInvPairs, 584 NumberOfFragments, 878 HoareAnnotationTreeSize, 473 FomulaSimplifications, 84 FormulaSimplificationTreeSizeReduction, 0.1s HoareSimplificationTime, 35 FomulaSimplificationsInter, 2678 FormulaSimplificationTreeSizeReductionInter, 0.9s HoareSimplificationTimeInter, RefinementEngineStatistics: TRACE_CHECK: 0.0s SsaConstructionTime, 0.1s SatisfiabilityAnalysisTime, 0.7s InterpolantComputationTime, 462 NumberOfCodeBlocks, 462 NumberOfCodeBlocksAsserted, 12 NumberOfCheckSat, 450 ConstructedInterpolants, 0 QuantifiedInterpolants, 708 SizeOfPredicates, 0 NumberOfNonLiveVariables, 0 ConjunctsInSsa, 0 ConjunctsInUnsatCore, 12 InterpolantComputations, 12 PerfectInterpolantSequences, 0/0 InterpolantCoveringCapability, INVARIANT_SYNTHESIS: No data available, INTERPOLANT_CONSOLIDATION: No data available, ABSTRACT_INTERPRETATION: No data available, PDR: No data available, ACCELERATED_INTERPOLATION: No data available, SIFA: No data available, ReuseStatistics: No data available - AllSpecificationsHoldResult: All specifications hold 1 specifications checked. All of them hold - InvariantResult [Line: 65]: Loop Invariant Derived loop invariant: ((((\result == 1 && splverifierCounter == 0) && tmp == 1) && !(0 == systemActive)) && pumpRunning == 1) || (((((pumpRunning == 0 && \result == 1) && !(2 == waterLevel)) && splverifierCounter == 0) && tmp == 1) && !(0 == systemActive)) - InvariantResult [Line: 178]: Loop Invariant Derived loop invariant: (((pumpRunning == 0 && \result == 1) && tmp == 1) && waterLevel == 1) && !(0 == systemActive) - InvariantResult [Line: 123]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 381]: Loop Invariant Derived loop invariant: ((((\result == 1 && splverifierCounter == 0) && tmp == 1) && !(0 == systemActive)) && pumpRunning == 1) || ((((pumpRunning == 0 && \result == 1) && splverifierCounter == 0) && tmp == 1) && !(0 == systemActive)) - InvariantResult [Line: 792]: Loop Invariant Derived loop invariant: (!(\old(pumpRunning) == 0) || 0 == systemActive) && (!(\old(pumpRunning) == 1) || 0 == systemActive) - InvariantResult [Line: 290]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 0) || 0 == systemActive) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive)) && (!(\old(pumpRunning) == 1) || 0 == systemActive) - InvariantResult [Line: 906]: Loop Invariant Derived loop invariant: (pumpRunning == 0 && waterLevel == 1) && !(0 == systemActive) - InvariantResult [Line: 871]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 1) || 0 == systemActive) || pumpRunning == 1) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive) || ((pumpRunning == 0 && tmp == 0) && \result == 1))) && (((!(\old(pumpRunning) == 0) || ((((pumpRunning == 0 && !(2 == \result)) && tmp == 0) && !(2 == waterLevel)) && \old(waterLevel) == waterLevel)) || 0 == systemActive) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) - InvariantResult [Line: 920]: Loop Invariant Derived loop invariant: ((pumpRunning == 0 && \result == 1) && waterLevel == 1) && !(0 == systemActive) - InvariantResult [Line: 265]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 1) || 0 == systemActive) || pumpRunning == 1) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || ((pumpRunning == 0 && tmp == 0) && !(0 == systemActive))) || 0 == systemActive)) && (((!(\old(pumpRunning) == 0) || ((((pumpRunning == 0 && tmp == 0) && !(2 == waterLevel)) && \old(waterLevel) == waterLevel) && !(0 == systemActive))) || 0 == systemActive) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) - InvariantResult [Line: 803]: Loop Invariant Derived loop invariant: ((!(\old(pumpRunning) == 1) || 0 == systemActive) || pumpRunning == 1) && (!(\old(pumpRunning) == 0) || 0 == systemActive) - InvariantResult [Line: 913]: Loop Invariant Derived loop invariant: (pumpRunning == 0 && waterLevel == 1) && !(0 == systemActive) - InvariantResult [Line: 880]: Loop Invariant Derived loop invariant: ((((\result == 1 || !(\old(pumpRunning) == 0)) || !(\old(waterLevel) == 1)) || 0 == systemActive) && ((((((\result == 1 && pumpRunning == 0) && !(2 == waterLevel)) && \old(waterLevel) == waterLevel) || !(\old(pumpRunning) == 0)) || 0 == systemActive) || ((pumpRunning == 0 && \result == 0) && \old(waterLevel) == waterLevel))) && (!(\old(pumpRunning) == 1) || 0 == systemActive) - InvariantResult [Line: 198]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 64]: Loop Invariant Derived loop invariant: 0 - InvariantResult [Line: 317]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 1) || (\result == 1 && pumpRunning == 1)) || 0 == systemActive) && ((!(\old(pumpRunning) == 0) || 0 == systemActive) || ((\result == 1 && \old(waterLevel) == waterLevel) && pumpRunning == 1))) && ((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive) - InvariantResult [Line: 55]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 758]: Loop Invariant Derived loop invariant: (((!(\old(pumpRunning) == 1) || 0 == systemActive) || pumpRunning == 1) && (((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || ((pumpRunning == 0 && tmp == 0) && !(0 == systemActive))) || 0 == systemActive)) && (((!(\old(pumpRunning) == 0) || ((((pumpRunning == 0 && tmp == 0) && !(2 == waterLevel)) && \old(waterLevel) == waterLevel) && !(0 == systemActive))) || 0 == systemActive) || (\old(waterLevel) == waterLevel && pumpRunning == 1)) - InvariantResult [Line: 133]: Loop Invariant Derived loop invariant: 1 - InvariantResult [Line: 362]: Loop Invariant Derived loop invariant: ((((!(\old(pumpRunning) == 0) || !(\old(waterLevel) == 1)) || 0 == systemActive) || (\result == 0 && tmp___0 == 0)) && (((!(\old(pumpRunning) == 0) || (((pumpRunning == 0 && !(2 == waterLevel)) && \old(waterLevel) == waterLevel) && !(0 == systemActive))) || 0 == systemActive) || ((((((pumpRunning == 0 && !(tmp___0 == 0)) && tmp == 0) && \result == 0) && \old(waterLevel) == waterLevel) && !(0 == systemActive)) && !(\result == 0)))) && (!(\old(pumpRunning) == 1) || 0 == systemActive) - InvariantResult [Line: 185]: Loop Invariant Derived loop invariant: 1 RESULT: Ultimate proved your program to be correct! [2022-12-13 11:06:40,730 INFO L540 MonitoredProcess]: [MP /tmp/vcloud_worker_vcloud-master_on_vcloud-master/run_dir_2f793717-ab40-4522-aeee-ea72a61d165c/bin/uautomizer-uyxdKDjOR8/z3 SMTLIB2_COMPLIANT=true -memory:2024 -smt2 -in -t:2000 (1)] Forceful destruction successful, exit code 0 Received shutdown request... --- End real Ultimate output --- Execution finished normally Writing output log to file Ultimate.log Result: TRUE